<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-328010919691635719.post2482545101123607883..comments</id><updated>2007-04-20T14:52:08.574+02:00</updated><title type='text'>Comments on Eamon Nerbonne: Leaking Information</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://eamon.nerbonne.org/feeds/2482545101123607883/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default'/><link rel='alternate' type='text/html' href='http://eamon.nerbonne.org/2007/01/leaking-information.html'/><author><name>Eamon Nerbonne</name><uri>http://www.blogger.com/profile/00388124191987595398</uri><email>noreply@blogger.com</email></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>4</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-328010919691635719.post-5076248192746583102</id><published>2007-04-20T14:52:00.000+02:00</published><updated>2007-04-20T14:52:00.000+02:00</updated><title type='text'>Ahh... It's a feature ;-)</title><content type='html'>Ahh... It's a feature ;-)</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/5076248192746583102'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/5076248192746583102'/><link rel='alternate' type='text/html' href='http://eamon.nerbonne.org/2007/01/leaking-information.html?showComment=1177073520000#c5076248192746583102' title=''/><author><name>Eamon Nerbonne</name><uri>http://www.blogger.com/profile/00388124191987595398</uri><email>noreply@blogger.com</email><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='OpenSocialUserId' value='02630258399520339063'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://eamon.nerbonne.org/2007/01/leaking-information.html' ref='tag:blogger.com,1999:blog-328010919691635719.post-2482545101123607883' source='http://www.blogger.com/feeds/328010919691635719/posts/default/2482545101123607883' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-328010919691635719.post-2765743829638814719</id><published>2007-04-20T10:59:00.000+02:00</published><updated>2007-04-20T10:59:00.000+02:00</updated><title type='text'>Maybe google uses the picasa web album users to up...</title><content type='html'>Maybe google uses the picasa web album users to upgrade their spam filters for gmail.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/2765743829638814719'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/2765743829638814719'/><link rel='alternate' type='text/html' href='http://eamon.nerbonne.org/2007/01/leaking-information.html?showComment=1177059540000#c2765743829638814719' title=''/><author><name>Nicolaas</name><uri>http://www.blogger.com/profile/08460525167363022615</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://eamon.nerbonne.org/2007/01/leaking-information.html' ref='tag:blogger.com,1999:blog-328010919691635719.post-2482545101123607883' source='http://www.blogger.com/feeds/328010919691635719/posts/default/2482545101123607883' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-328010919691635719.post-976787885145301205</id><published>2007-01-25T19:06:00.000+01:00</published><updated>2007-01-25T19:06:00.000+01:00</updated><title type='text'>Although the credential leak is pretty blatant, it...</title><content type='html'>Although the credential leak is pretty blatant, it was restricted to a very small number of specific credentials; and it's an almost unavoidable symptom of a site being phished.  Furthermore; these people were notified quickly thereafter, and it's an error you can try to avoid.&lt;br /&gt;&lt;br /&gt;Frankly, if your data has reached an anti-phishing list, you already have a huge problem.&lt;br /&gt;&lt;br /&gt;The picasaweb issue is nasty not because of its individual impact, but because it's widespread (most picasaweb users will be gmail users), and because it's a design flaw - it can no longer be fixed (easily)!  So yeah, I think that this issue is more relevant than two or three (it really was a small number) credentials appearing on the list; not that the credential leak isn't ironic, it's just a ephemeral thing, that's all.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/976787885145301205'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/976787885145301205'/><link rel='alternate' type='text/html' href='http://eamon.nerbonne.org/2007/01/leaking-information.html?showComment=1169748360000#c976787885145301205' title=''/><author><name>Eamon Nerbonne</name><uri>http://www.blogger.com/profile/00388124191987595398</uri><email>noreply@blogger.com</email><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='OpenSocialUserId' value='02630258399520339063'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://eamon.nerbonne.org/2007/01/leaking-information.html' ref='tag:blogger.com,1999:blog-328010919691635719.post-2482545101123607883' source='http://www.blogger.com/feeds/328010919691635719/posts/default/2482545101123607883' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-328010919691635719.post-7902549420363752359</id><published>2007-01-25T17:59:00.000+01:00</published><updated>2007-01-25T17:59:00.000+01:00</updated><title type='text'>And you thought that was a bad case of leakage? Tr...</title><content type='html'>And you thought that was a bad case of leakage? Try google leaking credentials with their antiphishing features...</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/7902549420363752359'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328010919691635719/2482545101123607883/comments/default/7902549420363752359'/><link rel='alternate' type='text/html' href='http://eamon.nerbonne.org/2007/01/leaking-information.html?showComment=1169744340000#c7902549420363752359' title=''/><author><name>Mark IJbema</name><uri>http://www.blogger.com/profile/12619570589502015540</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://eamon.nerbonne.org/2007/01/leaking-information.html' ref='tag:blogger.com,1999:blog-328010919691635719.post-2482545101123607883' source='http://www.blogger.com/feeds/328010919691635719/posts/default/2482545101123607883' type='text/html'/></entry></feed>