Berkeley CSUA MOTD:Entry 18855
Berkeley CSUA MOTD
 
WIKI | FAQ | Tech FAQ
http://csua.com/feed/
2025/04/04 [General] UID:1000 Activity:popular
4/4     

2000/8/3 [Computer/SW/OS/FreeBSD] UID:18855 Activity:nil
8/2     http://abcnews.go.com/sections/tech/FredMoody/moody.html
        \_ yeah, that's why I run openbsd - paolo
                \_ Me too but that isn't why the guy is wrong.
                   \_ I'm running FreeBSD instead of OpenBSD
                      because Free has a native jdk. I know its
                      not as secure, but I gotta have servlets.
                \_ By the logic used in the article, OpenBSD sucks because
                   he'd add together all the BSD OS'es to get a "total BSD
                   count" which then applies to all BSD's.  (His "total
                   Linux count" is Redhat + Debian + SuSE + ..., ignoring
                   that they all share code so he's just counted the same
                   bug 5 times.)
        \_ openbsd notwithstanding, this guy is a moron. perhaps
           time-to-patch might be a teeeny issue? or perhaps calculate
           damage from 99.99% of the viruses that have ever existed that
           were solely due to M$ OS bad design and compare with negligible
           losses from linux holes?
           \_ The linux bug count simply means that exploits are found
              sooner and more often leading to an overall more secure
              system. I bet that a well admin'ed linux machine would be
              close to unbreakable, whereas an M$ machine no matter how
              well admin'ed would have as many holes as swiss cheese.
              \_ MS machines don't have shell access.  It's the e-mail
                 and VBScript and the address book and the hard drive
                 trashing yada yada yada.
                 \_ You are wrong.  Worse than wrong.  MS has the cmd.exe or
                    http://command.com (depending on 95/98 or nt/2k).  If you can
                    break an MS box enough to be able to "execute arbitrary
                    code and commands", then the easiest thing to do is exec
                    the command interpreter and make it work for you.  All
                    sorts of commands built right in with zero/near-zero
                    security in one easy package.  What you might have meant
                    is that "MS machines don't have remote shell access".
                    This is also untrue.  Go read up on the Eeye hole(s).
                    People, if you're going to talk with authority about
                    something, at least try to make some minimal attempt to
                    talk with authority about something you _know_ about as
                    opposed to something you _read_ about once on the net.
                    Don't babble rumors.  Get the facts.  As far as this
                    article goes, this is just a ad banner revenue generator.
                    I suggest not bothering.  It's flame bait.
                    \_ Your argument is overstated.  You focus in excessively
                       on the technical details in your argument, that you
                       neglect the effective truths.  That is, http://command.com
                       "shell access" is not appealing to the script
                       kiddies who squeal with joy obtaining
                       UNIX root access.  There are things like BO,
                       but when it comes down to it, http://command.com
                       and executing arbitrary code and commands is not
                       the same as multi-user shell access.  I already
                       know about http://command.com, buffer over-runs, and
                       GUIs to http://command.com ... but it's not shell access.
                       \_ Really? Getting http://comand.com access doesn't allow
                          you to execute and install arbitrary code?
                          \_ When all the script kiddies are talking
                             about how great their Windows NT slaves
                             are (as opposed to FTP juarez stores),
                             then I'll begin to take you seriously.
                             But yes, I agree that the technology is there
                             to get effective shell access by hacking
                             through Windows security and installing
                             a nice UI.  And next time please restrain
                             yourself.
        \_ This guy is a dip.  He must have some nostalgia for the IBM
           vs. Apple platform wars.
2025/04/04 [General] UID:1000 Activity:popular
4/4     

You may also be interested in these entries...
2009/5/4-6 [Computer/SW/OS/Linux, Computer/SW/OS/FreeBSD] UID:52939 Activity:moderate
5/4     I would appreciate a reliability ranking between:
        1) OpenBSD
        2) OpenSolaris
        3) FreeBSD
        4) Debian-Stable
        5) Suse Linux Enterprise Server
	...
2009/4/17-23 [Computer/SW/OS/FreeBSD] UID:52867 Activity:low
4/17    If you have a general access AssOS machines, this is worth
        taking this seriously. --psb
  http://c-skills.blogspot.com/2009/04/udev-trickery-cve-2009-1185-and-cve.html
        <DEAD>admin.fedoraproject.org/updates/udev-127-5.fc10<DEAD>
        \_ What does this have to do with MS Windows?
           \_ psb is a bsd lover.
	...
2008/12/10-16 [Computer/HW/CPU, Computer/HW/Drives] UID:52220 Activity:moderate
12/9    Another idea for the CSUA that lets you spend money and maybe get some
    cool toys. Instead of buying a beefy server (like say, a massive server
    with 20 386DX processors), buy a few cheap machines (like the ones
    mentioned below) that have good disks and work on failover / load
    balancing. A netscaler or other piece of hardware is complete overkill,
    but maybe hacking an OpenBSD box could do the trick. The idea is that
	...
2007/7/17 [Computer/SW/Languages/C_Cplusplus] UID:47312 Activity:nil
7/13    CSUA Life Roster
1 point each for:                                               key:
                significant other (out of county rule applies)   G
                car (Chevy Novas do count)                       C
                housing (dorms DO NOT count)                     H
                own computer running reasonable multi-tasking OS U
	...
2007/7/13-16 [Computer/Networking] UID:47279 Activity:nil
7/13    I'm thinking about getting a Soekris 4501 to replace my the P2-400
        that is currently acting as my home firewall. Has anyone used a
        Soekris system for this purpose? If so, how well does it work? Also,
        if there are any alternatives (similar power/form factor), I would
        appreciate links to those as well. tia.
        \_ John got me to use a WRAP box similar to Soekris.  I use this one:
	...
2007/3/15-17 [Computer/SW/OS/FreeBSD] UID:45977 Activity:nil
3/14    http://www.csua.org/u/i8o
        Remote exploit in OpenBSD kernel.  Security is hard.  And yes, it
        would be really difficult to exploit this in practice. -dans
	...
2007/3/13-14 [Computer/SW/OS/FreeBSD] UID:45949 Activity:nil
3/13    OpenBSD 4.1 preorder is up:
        http://www.openbsd.org/items.html#41
	...
2007/3/13-14 [Computer/SW/Security] UID:45950 Activity:nil
3/13    OpenSSH 4.6 is out:
        http://undeadly.org/cgi?action=article&sid=20070308183425
        Portable Version:
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-4.6p1.tar.gz
        OpenBSD Version:
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.6.tar.gz
	...
2006/11/8-9 [Computer/SW/Security] UID:45263 Activity:nil
11/8    OpenSSH 4.5 is out:
        http://www.openssh.org/txt/release-4.5
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.5.tar.gz
        ftp://ftp.openbsd.org/pub/OpenBSD/OpenSSH/portable/openssh-4.5p1.tar.gz
	...
2006/9/27-28 [Computer/SW/OS/FreeBSD, Computer/SW/Security] UID:44580 Activity:nil
9/27    OpenSSH 4.4 is leftist
        http://www.openssh.org/txt/release-4.4
        OpenBSD src:
        http://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.4.tar.gz
        OpenBSD src signature:
        http://ftp.openbsd.org/pub/OpenBSD/OpenSSH/openssh-4.4.tar.gz.asc
	...
2006/9/22-25 [Computer/SW/OS/FreeBSD] UID:44496 Activity:nil
9/22    OpenBSD 4.0 available for pre-order:
        http://www.openbsd.org/40.html
	...
2006/8/16-18 [Computer/SW/OS/FreeBSD] UID:44024 Activity:nil
8/16    Greatest piece of software ever written is 4.3 BSD:
        http://tinyurl.com/go7lv (informationweek.com)
        \_ Windows is run by more computers than all other OS combined.
           \_ that only makes it common, not great.
              \_ If it wasn't great people wouldn't use it.  They'd use 4.3
                 BSD.
	...
Cache (74 bytes)
abcnews.go.com/sections/tech/FredMoody/moody.html
This material may not be published, broadcast, rewritten or redistributed.
Cache (63 bytes)
comand.com
Forbidden You don't have permission to access / on this server.