<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>T3H Blog</title>
	<atom:link href="http://www.triple3house.com/http:/www.triple3house.com/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.triple3house.com</link>
	<description>Blog by Ecaps Rebyc</description>
	<lastBuildDate>Wed, 14 Apr 2010 04:09:30 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Political Mercy</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Wed, 14 Apr 2010 03:58:43 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Hatoyama]]></category>
		<category><![CDATA[Nuclear Security Summit]]></category>
		<category><![CDATA[Obama]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1472</guid>
		<description><![CDATA[President Barack Obama met with Japanese Prime Minister Yukio Hatoyama for 10 minutes during the Nuclear Security Summit held in Washington (April 12, 2010). Originally PM Hatoyama had not be on the list of exalted leaders that were to meet with President Obama; however, through diplomatic wrangling PM Hatoyama managed to save face back home [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/04/O-meet-H.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1473" title="President Obama met with Japanese Prime Minister Hatoyama" src="http://www.triple3house.com/wp-content/uploads/2010/04/O-meet-H-150x150.jpg" alt="" width="150" height="150" /></a>President Barack Obama met with Japanese <a href="http://en.wikipedia.org/wiki/Yukio_Hatoyama" target="_blank">Prime Minister Yukio Hatoyama</a> for 10 minutes during the <em><a href="http://www.rferl.org/content/Obama_Says_Nuclear_Security_Summit_Work_Will_Continue/2011500.html" target="_blank">Nuclear Security Summit </a></em>held in Washington (April 12, 2010). Originally PM Hatoyama had not be on the list of exalted leaders that were to meet with President Obama; however, through diplomatic wrangling PM Hatoyama managed to save face back home with the inconsequential 10 minutes meeting during dinner Monday night marking the opening the summit. Nevertheless, the meeting will likely do very little to improve on his credibility and popularity at home (or anywhere else).</p>
<p>It is nice to see that President Obama can be so magnanimous to a brother politician in desperate need… (I guess he had lots of practice with people like <a href="http://en.wikipedia.org/wiki/Nouri_al-Maliki" target="_blank">al-Maliki</a>, <a href="http://en.wikipedia.org/wiki/Hamid_Karzai" target="_blank">Karzai</a>, <a href="http://en.wikipedia.org/wiki/Asif_Ali_Zardari" target="_blank">Zardari</a>, and the likes)</p>
<p>PS. I wonder if President Obama quibbled “trust me” to PM Hatoyama to reassure him that thing would be OK?</p>
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Harbinger of things to come</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Wed, 07 Apr 2010 02:03:40 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[COMINT]]></category>
		<category><![CDATA[ELINT]]></category>
		<category><![CDATA[HUMINT]]></category>
		<category><![CDATA[INFINT]]></category>
		<category><![CDATA[Information Warfare Monitor]]></category>
		<category><![CDATA[SigInt]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1448</guid>
		<description><![CDATA[The Canadian Information Warfare Monitor released two great reports related to cyberspace espionage and crime: Tracking GhostNet: Investigating a Cyber Espionage Network and Shadows in the Cloud: An investigation into cyber espionage 2.0. The reports document a complex ecosystem of cyber espionage and crime that systematically targets and compromises computer systems around the world (Afghanistan, [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/04/The-Team1.jpg" target="_blank"><img class="alignleft size-full wp-image-1450" title="Photographed by Tim Leyes of the New York Times the research team investigating cyberspace espionage: (L~R) Ronald Deibert, Greg Walton, Nart Villeneuve, and Rafal Rohozinski" src="http://www.triple3house.com/wp-content/uploads/2010/04/The-Team1.jpg" alt="" width="234" height="152" /></a>The Canadian <a href="http://infowar-monitor.net/" target="_blank">Information Warfare Monitor</a> released two great reports related to cyberspace espionage and crime: <a href="http://www.scribd.com/doc/13731776/Tracking-GhostNet-Investigating-a-Cyber-Espionage-Network" target="_blank">Tracking GhostNet: Investigating a Cyber Espionage Network</a> and <em><a href="http://www.scribd.com/doc/29435784/SHADOWS-IN-THE-CLOUD-Investigating-Cyber-Espionage-2-0" target="_blank">Shadows in the Cloud: An investigation into cyber espionage 2.0</a>.</em></p>
<p>The reports document a complex ecosystem of cyber espionage and crime that systematically targets and compromises computer systems around the world (Afghanistan, India, Russia, all the way to Zimbabwe), and organizations (an alphabet soup of acronyms from the U.N. to <a href="http://www.nato.int/" target="_blank">NATO</a>, and lots of NGOs). The reports point out an ever enlarging ecosystem of crime and espionage taking root in cyberspace. Much of the reports easily point to China – with its stated aim to advance China’s economy via any means – seen as the obvious culprit (currently).</p>
<p>The reports and the recent plethora of exploit revelations indicate that China is well ahead with the deployment of its INFINT, with the likely assistance from its global HUMINT network.</p>
<p>Consequently and in addition to these two reports, with their stated aims of INFINT (Information Intelligence), we need now a report studying the great <a href="http://en.wikipedia.org/wiki/HUMINT" target="_blank">HUMINT</a> network China deployed worldwide and its connection to their INFINT. For a start, China has citizens in just about every center of higher learning around the world – from the <a href="http://www.utn.edu.ar/default.utn" target="_blank">National Technological University of Argentina</a> to the <a href="http://www.unizg.hr/" target="_blank">University of Zagreb</a> – not to mention governments, companies, and so on. These post-graduate and graduate students learn the best a country has to offer; and, often contributing to local organizations as interns. However, the end game is to return home with a solid body of knowledge (BoK) readily usable to advance China – nothing wrong with that, especially since they pay full price, often inflated, for the education and the take home BoK.</p>
<p>Premise: How many of these ‘students/interns’ leave little gift in computers (and throughout networks) they have access to during their stay?</p>
<p>What is extremely interesting in both reports is that they reveal the harbinger of things to come. However, in my opinion I think that much of the complaints among the industrialize countries regarding China’s cyberspace activities may be a little sour grape… The “Free World” needs a villain, always – the USSR is dead; long live the PRC!</p>
<p>Note 1: INFINT (Information Intelligence) – information gathering in cyberspace by compromising computer systems – the term is more reflective of the current cyberspace activity than <a href="http://en.wikipedia.org/wiki/SIGINT" target="_blank">SIGINT</a> (Signal Intelligence) the predominate mean of information gathering in the not so distance past and still going strong with its <a title="COMINT" href="http://en.wikipedia.org/wiki/COMINT" target="_blank">COMINT</a> (communications intelligence) and <a title="ELINT" href="http://en.wikipedia.org/wiki/ELINT" target="_blank">ELINT</a> (electronic intelligence) elements in some part of the “physical” world.</p>
<p>Note 2: Currently, there is not a single country among the <a title="United Nations" href="http://en.wikipedia.org/wiki/List_of_United_Nations_member_states" target="_blank">current 192 United Nations (UN) member states</a> without a Chinese community (excluding diplomats).</p>
<p><a href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Thinking of pulling out of Afghanistan</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Mon, 05 Apr 2010 02:55:19 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[afghanistan]]></category>
		<category><![CDATA[Aimaq]]></category>
		<category><![CDATA[Baluch]]></category>
		<category><![CDATA[Barakzai dynasty]]></category>
		<category><![CDATA[cannon fodder]]></category>
		<category><![CDATA[cut and run]]></category>
		<category><![CDATA[Durrani Empire]]></category>
		<category><![CDATA[epiphany]]></category>
		<category><![CDATA[Farsiwan]]></category>
		<category><![CDATA[Hazara]]></category>
		<category><![CDATA[opium poppy]]></category>
		<category><![CDATA[Pashtun]]></category>
		<category><![CDATA[Qezelbash]]></category>
		<category><![CDATA[stay the course]]></category>
		<category><![CDATA[Tajik]]></category>
		<category><![CDATA[Turkmen]]></category>
		<category><![CDATA[Uzbek]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1424</guid>
		<description><![CDATA[Many tribes in Afghanistan are in existence since much before the development of a state and have largely remained outside of any nation building. Afghan borders with neighbouring countries, as those countries&#8217; borders, are artificial delineation made by strangers to the region (mostly by from the British and Russian Empires), incapable to contain these tribes. [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/04/Remnants_of_an_army2.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1425" title="First Anglo-Afghan War (1839–42). William Brydon was the sole survivor of the invading British army of 16,500 soldiers and civilian camp followers." src="http://www.triple3house.com/wp-content/uploads/2010/04/Remnants_of_an_army2-150x150.jpg" alt="" width="150" height="150" /></a>Many tribes in Afghanistan are in existence since much before the development of a state and have largely remained outside of any nation building. Afghan borders with neighbouring countries, as those countries&#8217; borders, are artificial delineation made by strangers to the region (mostly by from the British and Russian Empires), incapable to contain these tribes. These tribes have been conducting endemic warfare – living in a state of continual, low-threshold warfare, for nearly two millennia – starting with Alexander the Great in 330 BC.</p>
<p>From the <a title="Durrani  Empire" href="http://en.wikipedia.org/wiki/Durrani_Empire" target="_blank">Durrani Empire</a> (1747-1826) on the “Afghanis” have known very little peace from war with the Sikhs (starting in 1760s), the Uzbeks (from 1770s), the British (<a href="http://en.wikipedia.org/wiki/First_Anglo-Afghan_War" target="_blank">1839~42</a>, <a href="http://en.wikipedia.org/wiki/Second_Anglo-Afghan_War" target="_blank">1878~80</a>, <a href="http://en.wikipedia.org/wiki/Third_Anglo-Afghan_War" target="_blank">1919</a>), all the way to the Soviet (<a href="http://en.wikipedia.org/wiki/Soviet_war_in_Afghanistan" target="_blank">1979~88</a>) and now the United States (<a href="http://en.wikipedia.org/wiki/War_in_Afghanistan_%282001%E2%80%93present%29" target="_blank">2001~</a>); and the period between these wars, pretty well for the entire <a title="Barakzai  dynasty" href="http://en.wikipedia.org/wiki/Barakzai_dynasty" target="_blank">Barakzai dynasty</a> (1826-1973) a civil war or another punctuated Afghanistan’s history.</p>
<p>To add oil to the fire – many of the tribes are not only aligned along ethnicity – <a href="http://en.wikipedia.org/wiki/Pashtun" target="_blank">Pashtun</a>, <a href="http://en.wikipedia.org/wiki/Tajik_people" target="_blank">Tajik</a>, <a href="http://en.wikipedia.org/wiki/Farsiwan" target="_blank">Farsiwan</a>, <a href="http://en.wikipedia.org/wiki/Qezelbash" target="_blank">Qezelbash</a>, <a href="http://en.wikipedia.org/wiki/Hazara_people" target="_blank">Hazara</a>, <a href="http://en.wikipedia.org/wiki/Uzbeks" target="_blank">Uzbek</a>, <a href="http://en.wikipedia.org/wiki/Aimak" target="_blank">Aimaq</a>, <a href="http://en.wikipedia.org/wiki/Turkmen_people" target="_blank">Turkmen</a>, <a href="http://en.wikipedia.org/wiki/Baloch" target="_blank">Baluch</a> (just to name a few) – but kinship, with its endless clans like feuds. This make-up leads to segregation from valley to valley (regions) complicating ever arriving to a just and equitable peace any time soon within Afghanistan (as a nation). The shared Afghan heritage either based on putative common ancestry, history, kinship, religion, language, shared territory, nationality, physical appearance will continue to be corrupt, always dominated by the strongest man (based on guns or money, or both).</p>
<p>However the obvious seem to be lost on politicians that for the greater majority have never worn a pair of combat boots, had them covered in Afghan dust, had their hands and lips crack by the cold nights, the sweat from exertion make their clothes stick to their body, be perpetually thirsty, hungry, tired, and so on. Therefore, they keep sending <a href="http://en.wikipedia.org/wiki/Cannon_fodder" target="_blank">cannon fodder</a> to a land where the best resource is <a href="http://en.wikipedia.org/wiki/Opium_poppy" target="_blank">opium poppy</a>.</p>
<p>Yes, the country has natural resources such as gold, silver, copper, zinc, and iron ore (Southeast); precious and semi-precious stones (Northeast); and significant petroleum and natural gas reserves (North), along with uranium, coal, chromites, talc, barites, sulphur, lead, and salt – but even these untapped resources are regionally distributed and amount to very little in the daily survival of most Afghanis.</p>
<p>Afghanistan cannot be fenced off and simply ignored or become the subject of endless rhetoric like in Palestine or meaningless resolution like Iraq – thus, it is too soon for any politicians to think that they will find a politically expedient solution to the region based on their schedule. This endeavour has to go all the way to the end. This festering wound has to be bandaged and nursed to health; in end that will take courage that few current politicians have – As <a title="Winston  Churchill" href="http://en.wikipedia.org/wiki/Winston_Churchill" target="_blank">Winston Churchill</a> had pondered at the close of World War II, <em>&#8220;America, it is a great and strong country, like a workhorse pulling the rest of the world out of despond and despair. But will <a href="http://en.wikipedia.org/wiki/Stay_the_course" target="_blank">it stay the course</a>?&#8221; </em>I like to add – <em>or simply <a title="Cut and run" href="http://en.wikipedia.org/wiki/Cut_and_run" target="_blank">cut and run</a> before the next election…</em></p>
<p>Maybe one true leader will have an <a href="http://en.wikipedia.org/wiki/Epiphany_%28feeling%29" target="_blank">epiphany</a> and stay the course regardless of what America does – bring a different unifying perspective to this land and safeguard it no matter what – and more importantly give meaning to all the lives of yesterday, today, and tomorrow.</p>
<p>PS. Solutions to the Karzai brothers problem exist, such as accidents, many of them costing less than US$100 (price of 50 cal bullets from stray sniper shots)</p>
<p>Hey dreaming is free, and in colour!</p>
<p>References:</p>
<ul>
<li><a onclick="pageTracker._trackPageview('/outgoing/related_news');" href="http://www.time.com/time/world/article/0,8599,1977781,00.html?xid=rss-topstories">Afghanistan:  Why Karzai Is Pushing Back Against the U.S.</a></li>
<li><a onclick="pageTracker._trackPageview('/outgoing/related_news');" href="http://in.reuters.com/article/southAsiaNews/idINIndia-47436620100404">Afghan  woman seeks help when Karzai comes to town</a></li>
<li><a onclick="pageTracker._trackPageview('/outgoing/related_news');" href="http://www.scrippsnews.com/node/52760">Editorial:  Karzai&#8217;s outburst is indeed troubling</a></li>
</ul>
<p><a href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Advanced Persistent Threat (APT) the new FUD in the industry</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Tue, 30 Mar 2010 06:27:33 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[APT]]></category>
		<category><![CDATA[Biometrics]]></category>
		<category><![CDATA[blacklist]]></category>
		<category><![CDATA[DUMBASS]]></category>
		<category><![CDATA[Echelon]]></category>
		<category><![CDATA[EFS]]></category>
		<category><![CDATA[FUD]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[intelligence agencies]]></category>
		<category><![CDATA[IPS]]></category>
		<category><![CDATA[SigInt]]></category>
		<category><![CDATA[UTM]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1417</guid>
		<description><![CDATA[According to the new Fear, Uncertainty, and Doubt (FUD) mill, APT is apparently the work of skilled professional teams (often working in relays). As the name implies, it is a very skilled long-term siege of a network and computer systems. The attack is taken slowly and carefully; the stealth approach is so as not to trigger [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000006935338XSmall.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1420" title="iStock_000006935338XSmall" src="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000006935338XSmall-150x150.jpg" alt="" width="150" height="150" /></a>According to the new Fear, Uncertainty, and Doubt (<a href="http://en.wikipedia.org/wiki/Fear,_uncertainty_and_doubt" target="_blank">FUD</a>) mill, <a href="http://en.wikipedia.org/wiki/Advanced_Persistent_Threat" target="_blank">APT</a> is apparently the work of skilled professional teams (often working in relays). As the name implies, it is a very skilled long-term siege of a network and computer systems. The attack is taken slowly and carefully; the stealth approach is so as not to trigger any <a href="http://en.wikipedia.org/wiki/Intrusion_prevention_system" target="_blank">IPS</a>/<a href="http://en.wikipedia.org/wiki/Intrusion_Detection_System" target="_blank">IDS</a> alerts or be detected during internal pen test, vulnerability scans, and logs reviews at the target.</p>
<p>Based on the scale and logistics of the detected (known) APT operations, these professionals are more likely state or terrorist organization sponsored. However, I would be surprise if they were not some operations backed by well-funded organized crime organizations. (For an organized crime organization, APT would be part of a long-term business plan with clear ROI.)</p>
<p>According to people knowledgeable about this, APT teams aim is to compromise networks and systems for gaining access to information and set-up so that they can keep coming back. According to the media, what makes APT frightful is that regardless of the countermeasures put in place to thwart attacks; these people have the resources and knowledge to work around those countermeasures.</p>
<p>As I have been saying, systems infiltration has been, is, and will be around for a long time – granted that they many are routed in old programme like the <em>AUSCANZUKUS </em><a title="Signals intelligence" href="http://en.wikipedia.org/wiki/Signals_intelligence" target="_blank">signals intelligence</a> (SIGINT) collection and analysis network <a href="http://en.wikipedia.org/wiki/Echelon_%28signals_intelligence%29" target="_blank">Echelon</a> and evolved (or is it intelligently designed) into <em>“<strong>D</strong></em><em>ynamically </em><strong><em>U</em></strong><em>nique </em><strong><em>M</em></strong><em>etrics </em><strong><em>B</em></strong><em>ased </em><strong><em>A</em></strong><em>nalysis for </em><strong><em>S</em></strong><em>ecure </em><strong><em>S</em></strong><em>ystems</em><em>”</em> or <em>DUMBASS programmes</em>. It is not surprising that cold war era methodology to still state and defence secrets would find it was into the hands of those seeing financial gains from financial institutions, ecommerce retailers, or just about anyone with a cyberspace presence.</p>
<p>The uncomfortable inconvenient truth is that in most organization with a cyberspace presence top management is more concern with their take home package than the cyber security of their ICT infrastructure; the people in charge of the ICT infrastructure are busy make life easier for themselves; and, the general population (users) just could not be bothered with having to jump trough a few simple hoops to avoid oops. (<a href="http://en.wikipedia.org/wiki/Biometrics" target="_blank">Biometrics</a>, encrypted data (like <a href="http://en.wikipedia.org/wiki/Encrypting_File_System" target="_blank">EFS</a>), mandatory <a href="http://en.wikipedia.org/wiki/Unified_threat_management" target="_blank">UTM</a>, and opt-in <a href="http://en.wikipedia.org/wiki/Category:Signals_intelligence_agencies" target="_blank">intelligence agencies</a> supported <a href="http://en.wikipedia.org/wiki/Blacklist_%28computing%29" target="_blank">blacklist</a>, etc.)</p>
<p>Security is always an afterthought, like condoms! Therefore, DUMASS programmes to redistribute wealth, knowledge, and anything else of value will flourish – my only astonishment is that we learn very little but new rhetoric and acronyms from our security laps…</p>
<p>References:</p>
<p>Wired: <a href="http://www.wired.com/beyond_the_beyond/2010/01/the-advanced-persistent-threat-attack/" target="_blank">The Advanced Persistent Threat Attack</a></p>
<p>TMCNet: <a href="http://blog.tmcnet.com/blog/rich-tehrani/security/espionage-via-apt-or-advanced-persistent-threat-widespread.html" target="_blank">Espionage via APT or Advanced Persistent Threat Widespread</a></p>
<p>SCMA Magazine: <a href="http://www.scmagazineus.com/state-of-the-hack--addressing-the-advanced-persistent-threat/article/129432/" target="_blank">State of the Hack &#8211; Addressing the Advanced Persistent Threat</a></p>
<p>ZDNet: <a href="http://blogs.zdnet.com/security/?p=5691" target="_blank">Advanced Persistent Threats: Should your panties be in a bunch, and how do you un-bunch them?</a></p>
<p>(And lots more…)</p>
<p>DUMBASS reference from <a href="http://www.theaeonsolution.com/security/?p=231" target="_blank">AEON Security Blog</a></p>
<p><a href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Thanks To Google, Baidu Share Price Tops $600+ For First Time Ever (March 26, 2010)</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Mon, 29 Mar 2010 08:18:24 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Baidu]]></category>
		<category><![CDATA[Google]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1404</guid>
		<description><![CDATA[With Google gone, Baidu rules China and with a little effort if can gain substantial market-shares around Asia, easily. What can I say but thank you Google. // < ![CDATA[ // < ![CDATA[ // < ![CDATA[ // < ![CDATA[ // < ![CDATA[ // < ![CDATA[ // < ![CDATA[ // < ![CDATA[ // < ![CDATA[ // [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/baidu1.jpg"><img class="alignleft size-full wp-image-1406" title="baidu" src="http://www.triple3house.com/wp-content/uploads/2010/03/baidu1.jpg" alt="" width="280" height="240" /></a>With Google gone, <a href="http://www.baidu.com/" target="_blank">Baidu</a> rules China and with a little effort if can gain substantial market-shares around Asia, easily.</p>
<p>What can I say but thank you Google. <img src='http://www.triple3house.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
<p><a href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ברומא התנהג כרומאי (Be&#8217;Roma hitnaheg ke&#8217;Roma&#8217;i)</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Mon, 29 Mar 2010 06:43:08 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[China]]></category>
		<category><![CDATA[Google]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1385</guid>
		<description><![CDATA[News media reports describing the praise coming from every possible opinionated spectrum about Google’s recent decision to end government-induced censorship over its search results and pullout of China, Hey, wake-up! Google’s actions in China are purely self-serving – the pretentious Googlelites could not get things there way so they had a tantrum, took their toys, [...]]]></description>
			<content:encoded><![CDATA[<p>News media reports<a href="http://www.triple3house.com/wp-content/uploads/2010/03/China.jpg" target="_blank"><img class="alignleft size-full wp-image-1391" title="China" src="http://www.triple3house.com/wp-content/uploads/2010/03/China.jpg" alt="" width="112" height="145" /></a> describing the praise coming from every possible opinionated spectrum about Google’s recent decision to end government-induced censorship over its search results and pullout of China,</p>
<p>Hey, wake-up! Google’s actions in China are purely self-serving – the pretentious Googlelites could not get things there way so they had a tantrum, took their toys, and went hope – boohoo!</p>
<p><a href="http://en.wikipedia.org/wiki/Censorship_by_Google" target="_blank">Google commonly censors and/or alter search results to comply with many countries&#8217; laws or government requests </a>(i.e., Germany and France: Nazi memorabilia, anti-Semite statements, etc.) – yet, we do not ear Google breaking laws, threatening to pullout, and political dribble about Google’s “a remarkable, historic and welcomed action.”</p>
<p>Simply put Google found itself in a market it could not dominate, adequately compete in, and likely loose money – so it moved on.</p>
<p>I am not fan of censorship of any kind, but let us face it cyberspace is a wild frontier that chafe politicians and nationalists everywhere – people incapable to imagine a self-regulated space in no need of their controls. Their psychosis, which normally insure that their mouth gets in gear before their brain get anywhere near, their need to control leads to some form or another of suppression to satisfy their delusions of persecution.</p>
<p>(If you want to read more abut Internet Censoring Countries start <a href="http://en.wikipedia.org/wiki/Internet_censorship" target="_blank">here</a>.)</p>
<p>As for the hacking (by governments) – well folks welcome to the ‘big brother’ factor, which goes tongue and groove with paranoia and small minded politicians and nationalists! (By criminals) Well the Internet is big business for many organizations and easy picking for criminals. The Internet will never be 100% safe, we just have to learn to protect ourselves better.</p>
<p>(One would not walk into a dark alley in a cede neighbourhood alone or step on a battlefield naked… <a href="http://csrc.nist.gov/publications/drafts/ir-7621/draft-nistir-7621.pdf" target="_blank">commonsense</a> is a key word here.)</p>
<p>In addition, there is no reason to condemn Microsoft and others for staying and abiding by Chinese laws, just as they do elsewhere.</p>
<p>Like the old Hebraic proverb says – ברומא התנהג כרומאי (In Rome act like a Roman)</p>
<p>What Google should have done is stay in China and used some of the googleions to support projects like to advance cyberspace freedom and choice:</p>
<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/iwm.png" target="_blank"><img class="alignleft size-full wp-image-1386" title="iwm" src="http://www.triple3house.com/wp-content/uploads/2010/03/iwm.png" alt="The informatin Warfare Monitor" width="44" height="50" /></a><a href="http://www.infowar-monitor.net/" target="_blank">The Information Warfare Monitor</a> is a joint project of the Citizen Lab and the SecDev Group, (Ottawa Ontario). The aim of the Information Warfare Monitor is to monitor and analyze the exercise of power in cyberspace.</p>
<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/oni.png" target="_blank"><img class="alignleft size-full wp-image-1387" title="oni" src="http://www.triple3house.com/wp-content/uploads/2010/03/oni.png" alt="The OpenNet Initiative" width="44" height="50" /></a>The <a href="http://www.infowar-monitor.net/" target="_blank">OpenNet Initiative</a> is a partnership with The Berkman Center for Internet &amp; Society at Harvard  Law School and The SecDev Group. The aim of the ONI is to document patterns of Internet censorship and surveillance worldwide.</p>
<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/oniasia.png" target="_blank"><img class="alignleft size-full wp-image-1388" title="oniasia" src="http://www.triple3house.com/wp-content/uploads/2010/03/oniasia.png" alt="OpenNet.Asia" width="44" height="50" /></a>The aim of <a href="http://www.opennet.asia/" target="_blank">Opennet.Asia</a> is to engage academic, policy, and civil society stakeholders in each of the countries of the regions concerned by surveillance and censorship to build institutional capacity and networked resources to conduct research and public policy advocacy around those issues.</p>
<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/psilab.png" target="_blank"><img class="alignleft size-full wp-image-1389" title="psilab" src="http://www.triple3house.com/wp-content/uploads/2010/03/psilab.png" alt="Psilab" width="44" height="50" /></a>PsiLab is a joint activity of the <a href="http://citizenlab.org/" target="_blank">Citizen Lab</a> and <a href="http://psiphon.ca/" target="_blank">Psiphon</a>, oriented around advanced research of circumvention technologies, threat analysis, and the consideration of political and legal issues surrounding their use in denied environments.</p>
<p><a href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Shaoxing, Zhejiang, China</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Mon, 29 Mar 2010 02:19:06 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[China]]></category>
		<category><![CDATA[HUMINT]]></category>
		<category><![CDATA[IMINT]]></category>
		<category><![CDATA[intelligence]]></category>
		<category><![CDATA[MessageLabs]]></category>
		<category><![CDATA[Shaoxing]]></category>
		<category><![CDATA[SigInt]]></category>
		<category><![CDATA[Third Department]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1374</guid>
		<description><![CDATA[MessageLabs Intelligence identified the number one source of malicious emails – Shaoxing, Zhejiang province in eastern China. Shaoxing is the birthplace of the pragmatic Zhou Enlai（周恩来） and a Third Department facility training and operation location. In its March 2010 report, MessageLabs Intelligence traced 12 billion emails and found that almost 30 per cent of malicious [...]]]></description>
			<content:encoded><![CDATA[<div id="attachment_1377" class="wp-caption alignleft" style="width: 160px"> <a href="http://www.triple3house.com/wp-content/uploads/2010/03/Shaoxing.jpg" target="_blank"><img class="size-thumbnail wp-image-1377     " title="Shaoxing Municipal Civil-Military Relations Leadership Group" src="http://www.triple3house.com/wp-content/uploads/2010/03/Shaoxing-150x150.jpg" alt="" width="150" height="150" /></a><p class="wp-caption-text">If the People and Soldiers Unite as One, All Enemies Under Heaven Will Disappear</p></div>
<p><a href="http://www.messagelabs.com/default.aspx" target="_blank">MessageLabs Intelligence</a> identified the number one source of malicious emails – <a href="http://en.wikipedia.org/wiki/Shaoxing" target="_blank">Shaoxing</a>, <a title="Zhejiang" href="http://en.wikipedia.org/wiki/Zhejiang" target="_blank">Zhejiang</a> province in eastern China. Shaoxing is the birthplace of the pragmatic <a title="Zhou Enlai" href="http://en.wikipedia.org/wiki/Zhou_Enlai" target="_blank">Zhou Enlai</a>（周恩来） and a Third Department facility training and operation location.</p>
<p>In its <a href="http://www.messagelabs.com/mlireport/MLI_2010_03_Mar_FINAL-EN.pdf" target="_blank">March 2010 report,</a> MessageLabs Intelligence traced 12 billion emails and found that almost 30 per cent of malicious emails were sent from China and 21.3 per cent came from the city of Shaoxing. They said key targets for the hackers were experts in Asian defense policy and human rights activists, suggesting state involvement.</p>
<p>Cyber-espionage uses emails sent in small volumes with legitimate-looking attachments or documents to fool the user into letting a malicious code infect their computer. According to the report, <em>“The ultimate aim . . . is to gain access to sensitive data or internal systems by targeting specific individuals or companies.”</em></p>
<p>Researchers succeeded in tracing individual computer registration numbers to find the true source of the attacks. Previously hackers in China had been able to camouflage themselves behind servers in Taiwan and Hong Kong.</p>
<p>The findings show China was the source of 28.2 per cent of global targeted attacks. It was followed by Romania with 21.1 per cent, presumed to be mostly attempts at commercial fraud. The US was third, followed by Taiwan and then Britain, with 12 per cent of attacks.</p>
<p>While China improves it’s SIGINT and IMINT capabilities and continues to use its HUMINT intelligence collection to advance its economic position globally. Through the Third Department of the General Staff Department of the Central Military Commission, its national agency responsible for managing China&#8217;s strategic SIGINT program, China continues to modernize its intelligence gathering capabilities to obtain access to advanced technologies and gain economic advantages.</p>
<p>Its SIGINT efforts are an integral part of its multipronged approach to intelligence gathering with the use of open source information gathered through its HUMINT activities – using students and businesspeople scattered at around the globe, scientific researchers on exchanges, attending conferences, and seminars worldwide, and the New China News Agency – to gather tidbits of intelligence. China is demonstrating that it knows where to focus its efforts to gain economic advantage while keeping its INT well exercised for other activities.</p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>…though poppies grow</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Fri, 26 Mar 2010 03:40:34 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[afghanistan]]></category>
		<category><![CDATA[NAOMI]]></category>
		<category><![CDATA[opium poppy]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1366</guid>
		<description><![CDATA[NATO will have to look the other way if they want local support as someone at Strategic Advisory Group quipped “we don’t trample the livelihood of those we’re trying to win over” – thus postponing eradication. That will not sit well with many drug enforcement agencies around the globe, especially in the EU, UK, and [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/777px-Lest_we_forget.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1367" title="777px-Lest_we_forget" src="http://www.triple3house.com/wp-content/uploads/2010/03/777px-Lest_we_forget-150x150.jpg" alt="" width="150" height="150" /></a>NATO will have to look the other way if they want local support as someone at Strategic Advisory Group quipped <em>“we don’t trample the livelihood of those we’re trying to win over” – </em>thus postponing eradication. That will not sit well with many drug enforcement agencies around the globe, especially in the EU, UK, and the US (the byproducts marketplaces).</p>
<p>So to ease the dilemma that the poppy fields will likely generate much needed revenues for the Taliban SAG should be planning realistic replacement crops and/or industries instead to just ignoring this conundrum until it is OK to start eradication again (after they unlikely win the hearth and minds of the offending farmers) – kind of disinfecting a wound after you stitched it. It may be simpler to connect the Afghans with an extended NAOMI study (<a href="http://www.naomistudy.ca/" target="_blank">North American Opiate Medication Initiative</a>) where heroin-assisted therapy benefits people suffering from chronic disease.</p>
<p>Another option would be for governments to purchase the harvest outright from Afghan opium poppy farmers – the price at the end of the supply chain is certainly affordable when compare to the cost of suppression at the street end (opium and heroin); thus keeping all things in balance in Afghanistan.</p>
<p>Personally, I always though of poppies as commemorating the sacrifices of members of the armed forces and of civilians in times of war – at the end of the day it is better to turn a blind eye so that Afghanistan’s poppy fields do not give rise to another poem like Lieutenant Colonel <a title="John McCrae" href="http://en.wikipedia.org/wiki/John_McCrae">John McCrae</a>’s <em>In Flanders Fields</em>…</p>
<p>Reference:</p>
<p><a href="http://www.nytimes.com/2010/03/21/world/asia/21marja.html?scp=1&amp;sq=poppy%20field&amp;st=cse">http://www.nytimes.com/2010/03/21/world/asia/21marja.html?scp=1&amp;sq=poppy%20field&amp;st=cse</a></p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Causus belli</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Wed, 24 Mar 2010 07:43:26 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[cyber war]]></category>
		<category><![CDATA[warfare]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1349</guid>
		<description><![CDATA[Here is a very scary thought – Some fool (or fools) has charged the U.S. Department of Justice’s lawyers to determine what constitute an act of war during a cyber attack. No matter how smart these government lawyers are (or the fool in question think they are) leaving the definition of Casus belli to any [...]]]></description>
			<content:encoded><![CDATA[<p><a title="cyber warfare" href="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000001849090XSmall.jpg" target="_blank"><img class="size-thumbnail wp-image-1348 alignleft" title="Cyber warfare" src="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000001849090XSmall-150x150.jpg" alt="" width="150" height="150" /></a>Here is a very scary thought – Some fool (or fools) has charged the U.S. Department of Justice’s lawyers to determine what constitute an act of war during a cyber attack. No matter how smart these government lawyers are (or the fool in question think they are) leaving the definition of <em>Casus belli</em> to any government lawyers, but especially from a warmongering nation, is just a guaranteed war looking for an excuse…</p>
<p>Reference:</p>
<p><a href="http://bbvm.wordpress.com/2010/02/21/justice-lawyers-try-to-define-cyber-war/">http://bbvm.wordpress.com/2010/02/21/justice-lawyers-try-to-define-cyber-war/</a></p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
<input id="gwProxy" type="hidden" />
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Saudi wants to control BBM messages</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Tue, 16 Mar 2010 05:34:06 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[Al Qaeda]]></category>
		<category><![CDATA[BBM]]></category>
		<category><![CDATA[BlackBerry]]></category>
		<category><![CDATA[RIM]]></category>
		<category><![CDATA[Saudi Arabia]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1339</guid>
		<description><![CDATA[The Saudi Communication and Internet Technology Commission (CITC) has reportedly contacted Canada’s Research in Motion (RIM) seeking to have access to and monitor communications by BlackBerry Messenger, known as BBM. Another demonstration that many ‘conservative’ governments paranoiac needs to control all information flow… or maybe they want to keep better tab on their Al Queda [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000004493250XSmall.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1340" title="Saudi Arabia" src="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000004493250XSmall-150x150.jpg" alt="" width="150" height="150" /></a>The Saudi Communication and Internet Technology Commission (CITC) has reportedly contacted Canada’s Research in Motion (RIM) seeking to have access to and monitor communications by BlackBerry Messenger, known as BBM.</p>
<p>Another demonstration that many ‘conservative’ governments paranoiac needs to control all information flow… or maybe they want to keep better tab on their Al Queda membership!</p>
<p><a href="http://www.google.com/hostednews/afp/article/ALeqM5i7NxlHItbx2fl-LqFf9SAqD9c1QA" target="_blank">http://www.google.com/hostednews/afp/article/ALeqM5i7NxlHItbx2fl-LqFf9SAqD9c1QA</a></p>
<p>Again , this is not big deal most ME and many Asian countries monitor and/or keep copies of text messages (SMS, emails, twitters, etc.) – as demonstrated when two Emirates airlines cabin crew were ordered jailed for three months in Dubai over sexually explicit text messages. Of course the loudest complains against this practice comes from the U.S.A. &#8211; were one recalls that the U.S. government, with assistance from major telecommunications carriers including AT&amp;T, engaged in a massive program of surveillance of domestic communications and communications records of millions of ordinary Americans (people).</p>
<p>References:</p>
<p><a href="http://www.canada.com/technology/story.html?id=2695216" target="_blank"></a><a href="http://www.canada.com/technology/story.html?id=2695216" target="_blank">http://www.canada.com/technology/story.html?id=2695216</a> &#8211; Emirates airline crew members face jail over sexual text messages</p>
<p><a href="http://www.eff.org/issues/nsa-spying" target="_blank">http://www.eff.org/issues/nsa-spying</a> &#8211; NSA Spying</p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Professor Ronald Deibert writes on China and cyberspace</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Tue, 16 Mar 2010 04:50:57 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[China]]></category>
		<category><![CDATA[Cyberspace]]></category>
		<category><![CDATA[Ronald Deibert]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1336</guid>
		<description><![CDATA[China is among the world’s most dynamic countries when it comes to information and community technology research, development and consumer use. It is now the world’s largest national Internet population. China is also the world’s most pervasive filterer of Internet content engages in widespread electronic surveillance and has been suspected of global cyber-espionage against adversaries [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/Ron_DEIBERT.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1337" title="Ron_DEIBERT" src="http://www.triple3house.com/wp-content/uploads/2010/03/Ron_DEIBERT-150x150.jpg" alt="" width="150" height="150" /></a>China is among the world’s most dynamic countries when it comes to information and community technology research, development and consumer use. It is now the world’s largest national Internet population. China is also the world’s most pervasive filterer of Internet content engages in widespread electronic surveillance and has been suspected of global cyber-espionage against adversaries abroad. This paper draws upon the experiences of several Canadian-based research and development projects that focus directly upon (and confront) China’s cyberspace control strategy to map out its main features and discuss the challenges they present for Canada (and by extension many others).</p>
<p>The main part of the paper provides an overview of China’s content filtering, surveillance and information warfare policies and practices. This overview is followed by a consideration of issues for Canada. Like many other countries, Canada depends on economic exchange with China and is home to a large and growing Chinese Diaspora community that can be vocal critics of China’s human rights policies. Canada is also the home of some of the leading research and development projects on Internet censorship, surveillance and information warfare that, at times, are antagonistically linked to China. The conclusion considers some of the challenges and opportunities for Canadian interests and presents three recommendations for Canadian policy.</p>
<p>Dr Deibert’s paper is a good and timely read.</p>
<p><a href="http://www.canadianinternationalcouncil.org/download/resourcece/archives/chinapapers/chinapapersno7deibertpdf?attachment=1" target="_blank">http://www.canadianinternationalcouncil.org/download/resourcece/archives/chinapapers/chinapapersno7deibertpdf?attachment=1</a></p>
<p>Dr Deibert is a Director, The Citizen Lab, Munk Centre for International Studies, University  of Toronto. His academic website at <a href="http://deibert.citizenlab.org/" target="_blank">http://deibert.citizenlab.org/</a> is a great source of knowledge.</p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cybercrime booming, you can take that to the bank..</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Tue, 16 Mar 2010 02:26:24 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[Cybercrime]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[online banking]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1320</guid>
		<description><![CDATA[Law Enforcement agencies and cybersecurity experts warned that they have seen significant increased bank fraud attacks targeting small and mid-sized organizations. Attackers prefer organizations that use small regional banks since they most likely do not have adequate security measure in place. The current increase involves the automated clearinghouse (ACH) transfers that can be processed overnights. [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000005708993XSmall.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1321" title="iStock_000005708993XSmall" src="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000005708993XSmall-150x150.jpg" alt="" width="150" height="150" /></a>Law Enforcement agencies and cybersecurity experts warned that they have seen significant increased bank fraud attacks targeting small and mid-sized organizations. Attackers prefer organizations that use small regional banks since they most likely do not have adequate security measure in place. The current increase involves the automated clearinghouse (ACH) transfers that can be processed overnights. Attackers typically send targeted phishing emails that install keyloggers, Trojan, and/or malware that can harvest victim’s credential to initiate transfers (hops) over the weekend or overnight.</p>
<p>Typically, using the stolen credential of people authorized to manage bank accounts the attackers will initiate a string of transfers (hopes) to a final destination were the funds can be withdrawn soonest (cashed in). Even if the bank manages to trace the transfers, there are simply no funds to recover.</p>
<p>This trend will certainly continue to increase as banks continue to encourage their clients to go on-line – as on-line banking save banks significant cost of doing business, but in most case actually show real revenue. Unfortunately, too many banks fail to devote any portion of their new found ROI into realistic security measures, including employees and clients education; this compounded with simply pitiable security measures taken by the majority of their online banking clients.</p>
<p>Online accounts related fraud is a multi-billion euro business – simply too good a revenue stream for criminal not to invest efforts and money in.</p>
<p><a href="http://uk.finance.yahoo.com/news/online-bank-fraud-doubles-in-two-years-tele-3f0e4cea61be.html?x=0" target="_blank">http://uk.finance.yahoo.com/news/online-bank-fraud-doubles-in-two-years-tele-3f0e4cea61be.html?x=0</a></p>
<p><a href="http://www.compareprepaid.co.uk/cards/videos/03/2010/bank-fraud-on-the-rise/" target="_blank">http://www.compareprepaid.co.uk/cards/videos/03/2010/bank-fraud-on-the-rise/</a></p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>China MOD Website attacked (and why not)</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Tue, 16 Mar 2010 01:49:29 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[China]]></category>
		<category><![CDATA[cyber attack]]></category>
		<category><![CDATA[MOD]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/http:/www.triple3house.com/blog/</guid>
		<description><![CDATA[According to numerous media sources, malfeasants attacked the China’s ministry of defense’s English Website [http://eng.mod.gov.cn], launched last year (August), more than 2.3 million times in its first month. Experts say that it is currently averaging nearly a million attacks a month since going online, without any incident (success) to date. The ministry deflected all the [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000010261174XSmall.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1318" title="iStock_000010261174XSmall" src="http://www.triple3house.com/wp-content/uploads/2010/03/iStock_000010261174XSmall-150x150.jpg" alt="" width="150" height="150" /></a>According to numerous media sources, malfeasants attacked the China’s ministry of defense’s English Website [<a href="http://eng.mod.gov.cn/" target="_blank">http://eng.mod.gov.cn</a>], launched last year (August), more than 2.3 million times in its first month.</p>
<p>Experts say that it is currently averaging nearly a million attacks a month since going online, without any incident (success) to date. The ministry deflected all the attacks with its security measures in-place (FW, WAF, IDS, EB1, etc.). However, I doubt very much that the MOD would tell anyone if it was hacked!</p>
<p>Note: According to the MOD, it had over 3.1 billion page viewed to date (first six months).</p>
<p><a href="http://www.reuters.com/article/idUSTRE5AI0SP20091119" target="_blank">http://www.reuters.com/article/idUSTRE5AI0SP20091119</a></p>
<p><a href="http://english.peopledaily.com.cn/90001/90776/90786/6816970.html" target="_blank">http://english.peopledaily.com.cn/90001/90776/90786/6816970.html</a></p>
<p><a href="http://www.dailytech.com/China+Defense+Ministry+Targeted+by+Cyber+Attacks+2+Million+Times/article16891.htm" target="_blank">http://www.dailytech.com/China+Defense+Ministry+Targeted+by+Cyber+Attacks+2+Million+Times/article16891.htm</a></p>
<p><a href="http://www.chinadaily.com.cn/china/2009-11/18/content_8995678.htm" target="_blank">http://www.chinadaily.com.cn/china/2009-11/18/content_8995678.htm</a></p>
<p><a href="http://www.digitaltrends.com/computing/china-defense-ministry-targeted-by-mass-cyber-attacks/" target="_blank">http://www.digitaltrends.com/computing/china-defense-ministry-targeted-by-mass-cyber-attacks/</a></p>
<p><a href="http://www.physorg.com/news177759440.html" target="_blank">http://www.physorg.com/news177759440.html</a></p>
<p><a href="http://www.networkworld.com/news/2009/111809-china-defense-ministry-site-fends.html" target="_blank">http://www.networkworld.com/news/2009/111809-china-defense-ministry-site-fends.html</a></p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Voluntary Breach Disclosure (cyber attack)</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 08:59:54 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Technology]]></category>
		<category><![CDATA[cyber attack]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[voluntary breach disclosure]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1308</guid>
		<description><![CDATA[Just about any one involved with cyber security in this region knows that hundred of servers operated by local governments in Japan are vulnerable to cyber-attacks; and, most entities failing to take countermeasures. According to the Japanese Local Authorities Systems Development Center report describes that servers managed by nearly 200 prefectural and municipal governments across [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/disclosure.jpg" target="_blank"><img class="alignleft size-thumbnail wp-image-1309" title="disclosure" src="http://www.triple3house.com/wp-content/uploads/2010/03/disclosure-150x150.jpg" alt="" width="150" height="150" /></a>Just about any one involved with cyber security in this region knows that hundred of servers operated by local governments in Japan are vulnerable to cyber-attacks; and, most entities failing to take countermeasures.</p>
<p>According to the Japanese Local Authorities Systems Development Center report describes that servers managed by nearly 200 prefectural and municipal governments across Japan (and likely national-level ministries), and other government affiliated organizations, can easily be compromised.</p>
<p>About 1,400 local entities – mainly prefectural and municipal governments – belong to the center, a foundation operated under the jurisdiction of the Internal Affairs and Communications Ministry. Each year, it surveys these local entities regarding server safety and other matters. However, until now it has never publicly released information on how local governments manage their servers.</p>
<p>In fiscal 2008, the center investigated 3,467 servers operated by 647 local entities. The result showed that 193 entities, or 30 percent of those investigated, continue to use problematic servers.</p>
<p>Of these entities, 70 had so many server-related problems the center concluded they needed to urgently improve their operational environments.</p>
<p>The 495 servers contain residents&#8217; personal information, but use an old cryptographic system in which defects were detected more than a decade ago.</p>
<p>Furthermore, 27 servers loaded with basic software are still being used without updated security measures after the support period provided by a software company expired more than five years ago.</p>
<p>In both cases, the center pointed out that the use of such servers was problematic.</p>
<p>According to a post-survey questionnaire, despite being fully aware that local residents&#8217; personal information could be leaked, 54 entities of those with security problems, said they had no plans to improve their operational environments, with some saying they could not afford to do so, while others said the matter was of no importance (the later being my all time favorite, having heard it so often over the last 10 years).</p>
<p>Elsewhere, many governments are trying to establish Voluntary Breach Disclosure regulations. (Australia, <a href="http://www.priv.gc.ca/speech/2009/sp-d_20090608_ed_e.cfm" target="_blank">Canada</a>, New Zealand, <a href="http://bit.ly/BTAlC" target="_blank">United States</a>) Currently there is no common way for organizations to safely and confidentially share data about attacks they suffer, nor is there necessarily much incentive to do so.</p>
<p>Aside from the obvious privacy concerns and worries about damage to their public images in the event of a publicly disclosed hack. Many organizations have reservations about sharing their breach information with law enforcement because it is often more of a one-way street than an information-sharing arrangement. They supply their attack information to the authorities and more often than not never hear back from them.</p>
<p>But that soon could change, at least in the United States. FBI director Robert Mueller last week in a keynote address at the RSA Conference 2010 said while today it&#8217;s the exception rather than the rule for organizations to report cyber-attacks to the bureau, he <a href="http://www.darkreading.com/security/cybercrime/showArticle.jhtml?articleID=223101656" target="_blank">promised some big changes</a> that could allay privacy concerns. &#8220;We will minimize the disruption to your business. We will safeguard your privacy and your data. Where necessary, we will seek protective orders to preserve trade secrets and business confidentiality. And we will share with you what we can, as quickly as we can, about the means and methods of attack,&#8221; Mueller told attendees.</p>
<p>Well that would be a definite step in the right direction and an impetus for other to follow.</p>
<p>Source: <a href="http://bit.ly/dlLa91" target="_blank">Voluntary Breach Disclosure Rare But Valuable</a> by Kelly Jackson Higgins, <em>Dark Reading</em></p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Discipline</title>
		<link>http://www.triple3house.com/http:/www.triple3house.com/blog/</link>
		<comments>http://www.triple3house.com/http:/www.triple3house.com/blog/#comments</comments>
		<pubDate>Wed, 10 Mar 2010 07:22:08 +0000</pubDate>
		<dc:creator>rioux</dc:creator>
				<category><![CDATA[Travels]]></category>
		<category><![CDATA[Jakarta]]></category>
		<category><![CDATA[Kuala Lumpur]]></category>
		<category><![CDATA[Singapore]]></category>

		<guid isPermaLink="false">http://www.triple3house.com/?p=1300</guid>
		<description><![CDATA[Recently I travelled to Kuala Lumpur, Singapore, and Jakarta. In KL I attended a cyber security seminar – interestingly enough the so called ‘emerging’ economies are doing somewhat better overall than the ‘advanced’ economies in respect to security; I gather it comes from less legacy baggage and the benefits of years of experimenting by old [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.triple3house.com/wp-content/uploads/2010/03/jakarta1.jpg"><img class="alignleft size-thumbnail wp-image-1299" title="The sites (or  sight?)" src="http://www.triple3house.com/wp-content/uploads/2010/03/jakarta1-150x150.jpg" alt="" width="150" height="150" /></a>Recently I travelled to Kuala Lumpur, Singapore, and Jakarta. In KL I attended a cyber security seminar – interestingly enough the so called ‘emerging’ economies are doing somewhat better overall than the ‘advanced’ economies in respect to security; I gather it comes from less legacy baggage and the benefits of years of experimenting by old countries (in term of cyberspace).</p>
<p>As for Singapore, in the last year I was in SIN 14 times, but this was my first time in downtown in a long time. Given a free weekend, I walked about town and even managed to find nature among all that concrete.<a href="http://www.triple3house.com/wp-content/uploads/2010/03/jakarta2.jpg"><img class="size-thumbnail wp-image-1301 alignright" title="munchkins" src="http://www.triple3house.com/wp-content/uploads/2010/03/jakarta2-150x150.jpg" alt="" width="150" height="150" /></a></p>
<p>In Jakarta, time was precious and rain abundant – being the rainy season. Nevertheless, some of my local colleagues took time to drive me about town on an overcast, but rain free, Sunday. I took in the sites (or was it sight) and a few pictures. The highlight of the day was being mobbed by munchkins while visiting a museum.</p>
<p>PS. On blogging, it is not so much as not having time as not having the discipline to blog in a consistent manner, sorry.</p>
<p><a class="a2a_dd" href="http://www.addtoany.com/share_save?linkname=&amp;linkurl=https%3A%2F%2Fwww.triple3house.com%2F"><img src="http://static.addtoany.com/buttons/share_save_171_16.png" border="0" alt="Share/Bookmark" width="171" height="16" /></a><script type="text/javascript">// < ![CDATA[
// < ![CDATA[
// < ![CDATA[ a2a_linkurl="https://www.triple3house.com/";a2a_show_title=1;
// ]]&gt;</script><script src="http://static.addtoany.com/menu/page.js" type="text/javascript"></script></p>
]]></content:encoded>
			<wfw:commentRss>http://www.triple3house.com/http:/www.triple3house.com/blog/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
