<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Russell Heimlich &#187; Internet</title>
	<atom:link href="http://www.russellheimlich.com/blog/tags/internet/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.russellheimlich.com/blog</link>
	<description>The Blog of Russell Heimlich</description>
	<lastBuildDate>Thu, 01 Jul 2010 17:13:10 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Revision3 Not Immune From Bad Economy</title>
		<link>http://www.russellheimlich.com/blog/revision3-not-immune-from-bad-economy/</link>
		<comments>http://www.russellheimlich.com/blog/revision3-not-immune-from-bad-economy/#comments</comments>
		<pubDate>Tue, 28 Oct 2008 03:30:43 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Digital Media]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[Diggnation]]></category>
		<category><![CDATA[Jim Louderback]]></category>
		<category><![CDATA[Kevin Rose]]></category>
		<category><![CDATA[layoffs]]></category>
		<category><![CDATA[Leo Laporte]]></category>
		<category><![CDATA[Martin Sargent]]></category>
		<category><![CDATA[PixelPerfect]]></category>
		<category><![CDATA[popSiren]]></category>
		<category><![CDATA[Revision3]]></category>
		<category><![CDATA[Sarah Lane]]></category>
		<category><![CDATA[TWiT]]></category>
		<category><![CDATA[Web Drifter]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/?p=1198</guid>
		<description><![CDATA[Internet video may be in the midst of a boom, but the Tech-TV haven Revision3 canceled 3 (how ironic) shows and laid off several well-known production staff today. If you were a fan of the shows PixelPerfect, popSiren, or Internet Superstar you&#8217;ll be disappointed to hear the shows have been canned, or more appropriate for [...]<p><a href="http://www.russellheimlich.com/blog/revision3-not-immune-from-bad-economy/">Revision3 Not Immune From Bad Economy</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p>Internet video may be in the midst of a boom, but the Tech-TV haven Revision3 canceled 3 (how ironic) shows and <a href="http://newteevee.com/2008/10/27/revision3-makes-layoffs/">laid off</a> several well-known production staff today. If you were a fan of the shows <a href="http://revision3.com/pixelperfect">PixelPerfect</a>, <a href="http://revision3.com/popsiren">popSiren</a>, or <a href="http://revision3.com/internetsuperstar">Internet Superstar</a> you&#8217;ll be disappointed to hear the shows have been canned, or more appropriate for the Internet medium, 404&#8242;d. Apparently the shows don&#8217;t fit in the long-term plan for Revision3 (grow a large audience and make a gazillion dollars.) </p>
<p><img src="http://www.russellheimlich.com/blog/wp-content/uploads/2008/10/revision3-cancels-shows.jpg" alt="Revision3 Cancels Shows" title="Revision3 Cancels Shows" class="size-full wp-image-1200" /></p>
<p>Part of the staffers let go today are producers/talent <a href="http://www.imdb.com/name/nm1376499/">Jay Speiden</a>, <a href="http://www.sarahlane.com/blog/2008/10/27/look-ma-im-a-free-agent-a-short-story-by-sarah-lane.html">Sarah Lane</a>, and <a href="http://twitter.com/martinsargent/status/977886209">Martin Sargent</a>, and Diggnation cameraman Glenn &#8220;Hippie&#8221; McElhose who is now freelancing for Revision3.  Even though Glenn makes an appearance in nearly every episode, I figured <a href="http://revision3.com/diggnation">Diggnation</a> would be excluded from cuts due to the popularity/revenue of the show and the low cost of production. After all, how hard could it be to film two guys on a couch who frequently plug sponsors for 45 minutes every week?</p>
<p>I&#8217;m sad to hear that Martin is getting the boot. His show <a href="http://revision3.com/webdrifter/">Web Drifter</a> was a personal favorite of mine. Seeing the wacky, kooky individuals behind some of the strangest sites on the net always brought a smile to my face on my morning commute. They were supposed to start the series up this fall but it appears that won&#8217;t be happening anymore. I wonder what they will do with any unreleased episodes they&#8217;re sitting on. I&#8217;m interested to see what Martin and Jay will be doing next. </p>
<p><img src="http://www.russellheimlich.com/blog/wp-content/uploads/2008/10/martin-seargent-sarah-lane-bricked-by-revision3.jpg" alt="Martin Seargent and Sarah Lane Bricked By Revision3" title="Martin Seargent and Sarah Lane Bricked By Revision3" class="size-full wp-image-1201" /></p>
<p>So while Internet video may be gaining large audiences, they sure aren&#8217;t getting enough advertisers to join them. Most of the ads I&#8217;ve seen on the shows I watch are for GoDaddy.com and Audible. I&#8217;m guessing the core audience for Revision3 shows is a techie crowd. If Revision3 wants to succeed they&#8217;ll need to move more into the mainstream and/or support shows that cost a lot less to make. They are starting to do this with their <a href="http://revision3beta.com/">Revision3 Beta</a> program which has many shows taking cue from the couch-centric Diggnation.  Maybe they should adopt a donation model like <a href="http://www.npr.org/">NPR</a> or the <a href="http://www.twit.tv">TWiT</a> network. Leo Laporte seems to be <a href="http://twitter.com/leolaporte/status/977731289">doing ok</a> for himself. </p>
<ul>
<li><a href="http://revision3.com/blog/2008/10/27/changes-to-revision3/">Official response</a> from Revision3 CEO Jim Louderback</li>
<li>Founder <a href="http://kevinrose.com/blogg/2008/10/27/changes-at-revision3.html" class="broken_link">Kevin Rose&#8217;s Thoughts</a></li>
<li><a href="http://newteevee.com/2008/10/27/revision3-makes-layoffs/">NewTeeVee&#8217;s Coverage</a></li>
</ul>
<p><a href="http://www.russellheimlich.com/blog/revision3-not-immune-from-bad-economy/">Revision3 Not Immune From Bad Economy</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/revision3-not-immune-from-bad-economy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The .ME Rush Of &#8217;08</title>
		<link>http://www.russellheimlich.com/blog/the-me-rush-of-08/</link>
		<comments>http://www.russellheimlich.com/blog/the-me-rush-of-08/#comments</comments>
		<pubDate>Fri, 18 Jul 2008 03:10:38 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[.me]]></category>
		<category><![CDATA[domain name]]></category>
		<category><![CDATA[Go Daddy]]></category>
		<category><![CDATA[Star Trek]]></category>
		<category><![CDATA[top-level]]></category>
		<category><![CDATA[website]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/?p=938</guid>
		<description><![CDATA[.Com, .net, .org. These are the website suffixes most people are familiar with. Today Go Daddy, and a slew of other registars, began offering .Me names in hopes of reinvigorating the domain squatter market. And boy did Go Daddy rile up a stampede of people. At 11 am eastern when the landrush began Go Daddy&#8217;s [...]<p><a href="http://www.russellheimlich.com/blog/the-me-rush-of-08/">The .ME Rush Of &#8217;08</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.domain.me"><img src="http://www.russellheimlich.com/blog/wp-content/uploads/2008/07/me-logo.png" alt="Red circle with white ME in the middle." title=".ME Logo" width="223" height="210" class="size-full wp-image-939" /></a></p>
<p>.Com, .net, .org.  These are the website suffixes most people are familiar with. Today <a href="http://www.godaddy.com">Go Daddy</a>, and a slew of <a href="http://domain.me/index.php?page=3">other registars</a>, began offering .Me names in hopes of reinvigorating the domain squatter market. And boy did Go Daddy rile up a stampede of people. At 11 am eastern when the landrush began Go Daddy&#8217;s servers took a hit. The site was sluggish and searching for an available new cyber-property became grueling.</p>
<p>I was just poking around looking for something slightly amusing. I think I managed to buy beam.me but as of now it hasn&#8217;t shown up in my domain queue on my Go Daddy control panel. Other people are <a href="http://www.techcrunch.com/2008/07/17/godaddys-domain-registration-totally-screws-me/">reporting failure notices</a> after they think they have registered a domain which I have not received.  A co-worker was trying to grab lemonli.me and treadon.me so he could create dont.treadon.me.  As for me (pun intended), the possibilities of my geeky beam.me include a funny Star Trek reference at beam.me/up or something else. On the train ride home I was thinking I could partner with an uber Star Trek geek who would blog on my domain while I managed and ran the technical stuff. I would even be willing to split the ad revenue 50/50.  </p>
<p><img src="http://www.russellheimlich.com/blog/wp-content/uploads/2008/07/startrek-phasers.jpg" alt="Star Trek Phasers" title="Star Trek Phasers" class="size-full wp-image-940" /></p>
<p>But this is most likely only speculation for now. If I don&#8217;t get it, no big deal. These secondary extensions will soon be just as worthless as .info, .ws, and the dreadful .biz. But this will be nothing compared to when <abbr title="Internet Corporation for Assigned Names and Numbers">ICANN</abbr> roles out <a href="http://news.bbc.co.uk/1/hi/technology/7475986.stm">custom top-level domains</a> in 2009.</p>
<p><a href="http://www.russellheimlich.com/blog/the-me-rush-of-08/">The .ME Rush Of &#8217;08</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/the-me-rush-of-08/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Steve Gibson Explains Internet Congestion</title>
		<link>http://www.russellheimlich.com/blog/steve-gibson-explains-internet-congestion/</link>
		<comments>http://www.russellheimlich.com/blog/steve-gibson-explains-internet-congestion/#comments</comments>
		<pubDate>Tue, 15 Apr 2008 02:28:01 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[audio]]></category>
		<category><![CDATA[congestion]]></category>
		<category><![CDATA[Internet Service Provider]]></category>
		<category><![CDATA[Leo Laporte]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[packet shaping]]></category>
		<category><![CDATA[packets]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[Security Now]]></category>
		<category><![CDATA[slowdown]]></category>
		<category><![CDATA[Steve Gibson]]></category>
		<category><![CDATA[traffic]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/?p=753</guid>
		<description><![CDATA[There has been a lot of commotion about net neutrality and packet shaping in the news recently. All of the stories that I have read have been from the point of view of the common Internet user whose freedom of access has been threatened by the gatekeepers of the Internet, the service providers. On the [...]<p><a href="http://www.russellheimlich.com/blog/steve-gibson-explains-internet-congestion/">Steve Gibson Explains Internet Congestion</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p>There has been a lot of commotion about net neutrality and <a href="http://torrentfreak.com/comcast-throttles-bittorrent-traffic-seeding-impossible/">packet shaping in the news</a> recently. All of the stories that I have read have been from the point of view of the common Internet user whose freedom of access has been threatened by the gatekeepers of the Internet, the service providers.  On the <a href="http://twit.tv/sn139">recent episode of Security Now</a>, Steve Gibson and Leo Laporte take an objective look at how the Internet clogs up and what the ISPs have to do to manage their network.  Starting off at how the HTTP protocol was designed through how ISPs swap traffic at the backbone of the Internet (known as peering) to the future of fatter broadband pipes, Steve doesn&#8217;t miss a beat.  </p>
<p>To be frank about it, the Internet is short on bandwidth. There is simply too much demand and not enough space to squeeze all of the data around the world fast enough.  Everybody wants fast, snappy web pages to spring up as soon as they click a link. But services like Bittorrent tend to max out the network&#8217;s resources causing the other web traffic to grind to a halt until the bottleneck is gone.<br />
<a href="http://www.telegeography.com/products/map_cable/index.php"><br />
<img src="http://www.russellheimlich.com/blog/wp-content/uploads/2008/04/2008-submariane-cable-map.png" alt="Submariane Cable Map of the Internet - 2008" title="2008-submariane-cable-map" width="500" height="360" class="alignnone size-full wp-image-754" /></a><br />
<em>Map of the under-sea cables connecting the continents to the Internet. If one should fail then the packets will be sent through an alternate route.</em></p>
<p>The Internet was designed for traffic to automatically re-route itself for the best available delivery route. But if the packets encounter holes, your connection will slow down the sending of packets in hopes that the strain on the route to the destination clears up. This is why your connection might seem to slow to a crawl around the time people are getting off of work and heading home to surf the web there.</p>
<p>The Internet was never designed with the scale that it is today in mind. ISP&#8217;s are simply trying to manage their networks for the sake of everybody&#8217;s experience. For the sake of the net, researchers are busy devising new protocols to make network traffic more efficient but it is a tough nut to crack with many variables to take into consideration. And then there is always the ethical and political issues. Internet congestion is one tough pill to swallow!</p>
<p>You can listen to the 1:21:12 <a href="http://media.grc.com/sn/SN-139.mp3">mp3</a> for <a href="http://twit.tv/sn139">Security Now Episode #139</a> and follow along with <a href="http://www.grc.com/sn/SN-139.htm">the transcript</a>.</p>
<p><a href="http://www.russellheimlich.com/blog/steve-gibson-explains-internet-congestion/">Steve Gibson Explains Internet Congestion</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/steve-gibson-explains-internet-congestion/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://media.grc.com/sn/SN-139.mp3" length="39016951" type="audio/mpeg" />
		</item>
		<item>
		<title>More Internet Options For Apartment Dwellers</title>
		<link>http://www.russellheimlich.com/blog/more-internet-options-for-apartment-dwellers/</link>
		<comments>http://www.russellheimlich.com/blog/more-internet-options-for-apartment-dwellers/#comments</comments>
		<pubDate>Wed, 31 Oct 2007 02:30:52 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Internet]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/more-internet-options-for-apartment-dwellers/</guid>
		<description><![CDATA[The New York Times is reporting the FCC is aiming to strike down thousands of cable contracts. Previously, apartment land lords decided who would provide cable and Internet to it&#8217;s residents resulting in residents with only one option. With this new plan from the FCC, apartment dwellers would be in control of deciding their service [...]<p><a href="http://www.russellheimlich.com/blog/more-internet-options-for-apartment-dwellers/">More Internet Options For Apartment Dwellers</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img src='http://www.russellheimlich.com/blog/wp-content/uploads/2007/10/monopoly.gif' alt='Monopoly' /></p>
<p>The New York Times is reporting the FCC is aiming to <a href="http://www.nytimes.com/2007/10/29/business/media/29cable.html">strike down</a> thousands of cable contracts. Previously, apartment land lords decided who would provide cable and Internet to it&#8217;s residents resulting in residents with only one option.  With this new plan from the FCC, apartment dwellers would be in control of deciding their service provider.  This is good news for Verizon which has previously been locked out of many deals and bad news for the largest cable provider, Comcast.</p>
<p>Lack of competition results in higher prices and less innovation. I&#8217;ve seen this myself as my monthly Comcast bill is just under $150 for TV, Internet, and phone (which my roommates and I never use, but it makes the bill cheaper) service.  Recently, Verizon started offering it&#8217;s fiber optic, blazingly fast Internet and TV service, <a href="http://www22.verizon.com/content/consumerfios/">Fios</a>, to neighboring residence and when our Comcast contract is up in January we hope to switch.  It&#8217;s not that the service is terrible, it&#8217;s that we got in on a special 3 for $33 deal and after January we expect those rates to go up. </p>
<p>Speaking of rate increases, FCC Chairman Kevin Martin noted cable rates have risen 93 percent over the past 10 years.  Breaking the multi dwelling unit contracts will help spur competition in the space.  Companies offering fiber service face a large cost in building out the infrastructure.  Targeting areas with a greater density of customers makes more economic sense and a more lucrative opportunity.</p>
<p>This is good news for people like me, but it still doesn&#8217;t address the lack of choice to the big telelcos. </p>
<p><a href="http://www.russellheimlich.com/blog/more-internet-options-for-apartment-dwellers/">More Internet Options For Apartment Dwellers</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/more-internet-options-for-apartment-dwellers/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Survey Results About The Web Industry</title>
		<link>http://www.russellheimlich.com/blog/survey-results-about-the-web-industry/</link>
		<comments>http://www.russellheimlich.com/blog/survey-results-about-the-web-industry/#comments</comments>
		<pubDate>Thu, 18 Oct 2007 15:02:38 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Business]]></category>
		<category><![CDATA[Coding]]></category>
		<category><![CDATA[Design]]></category>
		<category><![CDATA[Digital Media]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Random Musings]]></category>
		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/survey-results-about-the-web-industry/</guid>
		<description><![CDATA[The popular online web magazine, A List Apart, conducted a survey of web professionals in April 2007 via their website. This week they finally released the results in a massive, though well designed, 80+ page PDF. Being the first major survey of the web industry, I, and many others I&#8217;m sure, was anxious to see [...]<p><a href="http://www.russellheimlich.com/blog/survey-results-about-the-web-industry/">Survey Results About The Web Industry</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p>The popular online web magazine, A List Apart, conducted a survey of web professionals in April 2007 via their website.  This week they finally <a href="http://alistapart.com/articles/2007surveyresults">released the results</a> in a massive, though well designed, <a href="http://alistapart.com/d/2007surveyresults/2007surveyresults.pdf">80+ page PDF</a>.</p>
<p>Being the first major survey of the web industry, I, and many others I&#8217;m sure, was anxious to see how I stacked up. The survey focused on the core areas of classification (gender, ethnicity, location etc.), education, work and job titles, and money.  There are too many findings to even begin listing here but the PDF does a great job at explaining their conclusions with many, many graphs. Speaking of data, A List Apart is giving away all of the anonymized raw data for people to dig through and reach their own conclusions. </p>
<p><a href="http://alistapart.com/articles/2007surveyresults"><img src='http://www.russellheimlich.com/blog/wp-content/uploads/2007/10/survey-logo.gif' alt='A List Apart 2007 Web Survey' /></a></p>
<p>I can&#8217;t wait to see the results from the next survey to compare the changes in the industry from this year. </p>
<p><a href="http://www.russellheimlich.com/blog/survey-results-about-the-web-industry/">Survey Results About The Web Industry</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/survey-results-about-the-web-industry/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Adobe.com Had A Security Hole</title>
		<link>http://www.russellheimlich.com/blog/adobecom-had-a-security-hole/</link>
		<comments>http://www.russellheimlich.com/blog/adobecom-had-a-security-hole/#comments</comments>
		<pubDate>Thu, 27 Sep 2007 02:47:55 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Coding]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/adobecom-had-a-security-hole/</guid>
		<description><![CDATA[Earlier this morning a friend sent me a link he found on Reddit that pointed to a very large security hole on the Adobe.com website. It has since been patched but I thought I would take some time to explain a little bit about how it worked and how it could have been exploited further. [...]<p><a href="http://www.russellheimlich.com/blog/adobecom-had-a-security-hole/">Adobe.com Had A Security Hole</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p><img class="right" src='http://www.russellheimlich.com/blog/wp-content/uploads/2007/09/adobe-hacker.png' alt='Adobe.com Gave Anyone Server Access' /><br />
Earlier this morning a friend sent me a link he found on <a href="http://www.reddit.com/comments/2tpxi/hello_adobes_etcpasswd">Reddit</a> that pointed to a very large security hole on the Adobe.com website.  It has since been patched but I thought I would take some time to explain a little bit about how it worked and how it could have been exploited further.  The problem was due to a lack of sanitizing a URL path passed as a query string from the Shockwave download page to a Perl script for back end processing.</p>
<p>A hacker could use this flaw to enter a local server path in the query string and get the server to spit back information about itself like file directories, usernames and passwords, and even important encryption keys. The following URL used to return a long string of what <a href="http://regmedia.co.uk/2007/09/27/adobe_key_grab.gif">appears to be garbled text</a>.<br />
<a href="http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=../../../../../../../../../usr/local/apache/conf/ssl.key/www.adobe.com.key%00"></p>
<p>http://www.adobe.com/shockwave/download/download.cgi?P1_Prod_Version=</p>
<p>../../../../../../../../../usr/local/apache/conf/ssl.key/www.adobe.com.key%00</a></p>
<p>What was happening was the path goes up to the root level of the server (the series of ../&#8217;s) and then into the local apache configuration files. Here the private encryption key used to encrypt SSL traffic would be exposed.  </p>
<p>Whenever you conduct a secure transaction over the web, like giving a website your credit card information for a purchase, the traffic gets encrypted so it cannot be intercepted between the server and your computer. This keeps your confidential information safe and prevents a third party from sniffing your traffic to see what you are sending or receiving.  You can tell you are using a secure connection by the yellow lock icon used in most browsers and the <em>https://</em> instead of <em>http://</em> in your address bar.</p>
<p>For this connection to work the server needs to have two keys; a public key and a private key. The public key is sent to your computer which it uses to encrypt a random number to send back to the server.  A private key is kept on the server which is the only key that can decrypt the random numbers sent from your computer. From this transaction, both parties can generate key material used in encrypting and decrypting data. When an attacker looks at traffic over an SSL connection it looks like completely random and garbled text with no discernable pattern to it. The server and client can easily decrypt the garbled text putting it back to the original plain text.  </p>
<p>Releasing the private encryption key of a web server into the wild compromises security allowing a 3rd party to easily decrypt SSL traffic or impersonate the server to perform a phishing attack.  Adobe&#8217;s security hole wouldn&#8217;t directly break anything right away but a malicious user could use the flaw to probe for other weak spots and conduct an attack on those. Such attacks could expose personal data or intercepting sensitive traffic.</p>
<p>When coding a web application it is a good idea to build in a sanitize function that will strip out any non-alphanumeric characters like backslashes and periods.  This can be done easily with a regular expression like <strong>replace(/\W/ig,&#8221;")</strong> that is common to most any programming language. This regular expression would change this <em>../../../../../../../../../usr/local/apache/conf/ssl.key/www.adobe.com.key%00</em> to this <em>usrlocalapacheconfsslkeywwwadobecomkey00 </em>. For more help with regular expressions check out this <a href="http://www.russellheimlich.com/blog/the-best-regular-expression-tool-on-the-net/">great tool I found</a>.</p>
<p>For more information about SSL and Public Key Cryptogaphy check out Security Now Episode #34 <a href="http://www.grc.com/sn/SN-034.htm">Public Key Cryptography</a> and Episode #85 <a href="http://www.grc.com/sn/SN-085.htm">Intro to Web Code Injection</a>. </p>
<p>UPDATE: The Register has a <a href="http://www.theregister.co.uk/2007/09/27/adobe_website_leak/">complete write up</a> about the security leak. </p>
<p><a href="http://www.russellheimlich.com/blog/adobecom-had-a-security-hole/">Adobe.com Had A Security Hole</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/adobecom-had-a-security-hole/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Shirts In The Mozilla Store</title>
		<link>http://www.russellheimlich.com/blog/new-shirts-in-the-mozilla-store/</link>
		<comments>http://www.russellheimlich.com/blog/new-shirts-in-the-mozilla-store/#comments</comments>
		<pubDate>Mon, 17 Sep 2007 21:08:14 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Random Musings]]></category>
		<category><![CDATA[Wishlist]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/new-shirts-in-the-mozilla-store/</guid>
		<description><![CDATA[The guys who brought you Mozilla have added some new shcwag to their store. I really like this spanking-new t-shirt. And every order over $10 comes with free stickers. Woopee! New Shirts In The Mozilla Store by Russell Heimlich<p><a href="http://www.russellheimlich.com/blog/new-shirts-in-the-mozilla-store/">New Shirts In The Mozilla Store</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p>The guys who brought you Mozilla have added some new shcwag to their <a href="http://store.mozilla.org/">store</a>. I really like this spanking-new t-shirt.</p>
<p><a href="http://store.mozilla.org/product.php?code=MZ13031&amp;catid=9" class="broken_link"><img src='http://www.russellheimlich.com/blog/wp-content/uploads/2007/09/cutefirefox-shirt.jpg' alt='Firefox Open Standards Shirt' /></a></p>
<p>And every order over $10 comes with free stickers. Woopee!</p>
<p><a href="http://www.russellheimlich.com/blog/new-shirts-in-the-mozilla-store/">New Shirts In The Mozilla Store</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/new-shirts-in-the-mozilla-store/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter Launches Blocks&#8230; And I Am Confused</title>
		<link>http://www.russellheimlich.com/blog/twitter-launches-blocks-and-i-am-confused/</link>
		<comments>http://www.russellheimlich.com/blog/twitter-launches-blocks-and-i-am-confused/#comments</comments>
		<pubDate>Sat, 01 Sep 2007 02:02:02 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/twitter-launches-blocks-and-i-am-confused/</guid>
		<description><![CDATA[Twitter has been pumping out new features these past couple of weeks. Their latest, which just launched this evening, is Blocks. This is what it looks like and so far all I can figure out is blue squares are you, orange are your friends, and gray are um.. gray. You can click on squares to [...]<p><a href="http://www.russellheimlich.com/blog/twitter-launches-blocks-and-i-am-confused/">Twitter Launches Blocks&#8230; And I Am Confused</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.twitter.com/kingkool68">Twitter</a> has been pumping out new features these past couple of weeks. Their latest, which just launched this evening, is <a href="http://explore.twitter.com/blocks/">Blocks</a>. </p>
<p><a href="http://explore.twitter.com/blocks/"><img src='http://www.russellheimlich.com/blog/wp-content/uploads/2007/08/twitter-blocks.png' alt='Twitter Blocks' /></a></p>
<p>This is what it looks like and so far all I can figure out is blue squares are you, orange are your friends, and gray are um.. gray. You can click on squares to see the tweets of others. What is the point? Beats me.</p>
<p>Twitter Blocks was created by <a href="http://stamen.com/">Stamen Design</a>, the same folks who brought us those neat <a href="http://labs.digg.com/">Digg visualizations</a>.</p>
<p>Twitter also launched something a little more useful. Have you ever wanted to see a list of all the third party twitter apps in existence all in one spot? Then check out the <a href="http://twitter.pbwiki.com/">Twitter Fan Wiki</a> which categorizes apps into distinct categories for your exploration.  I guess that is why they launched everything mentioned in this post at <a href="http://explore.twitter.com">http://explore.twitter.com</a></p>
<p><a href="http://www.russellheimlich.com/blog/twitter-launches-blocks-and-i-am-confused/">Twitter Launches Blocks&#8230; And I Am Confused</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/twitter-launches-blocks-and-i-am-confused/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Problems In Comcast Internet Land</title>
		<link>http://www.russellheimlich.com/blog/problems-in-comcast-internet-land/</link>
		<comments>http://www.russellheimlich.com/blog/problems-in-comcast-internet-land/#comments</comments>
		<pubDate>Tue, 21 Aug 2007 15:31:09 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Rant]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/problems-in-comcast-internet-land/</guid>
		<description><![CDATA[For the past couple of weeks my Internet connection at home has been flakey and irratic. Sites would take multiple refreshes to fully load and there is a good amount of packet loss. Unfortunately this has been on and off making it very hard to troubleshoot exactly what is going on. I called technical support [...]<p><a href="http://www.russellheimlich.com/blog/problems-in-comcast-internet-land/">Problems In Comcast Internet Land</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p>For the past couple of weeks my Internet connection at home has been flakey and irratic. Sites would take multiple refreshes to fully load and there is a good amount of packet loss. Unfortunately this has been on and off making it very hard to troubleshoot exactly what is going on.</p>
<p>I called technical support and the lady on the phone said everything seemed fine on her end. Then she tried to ping my IP address and noticed an 80% packet loss proving there was something going on between my cable modem and Comcast. She put in an order for a tech to come out and replace my rented cable modem. </p>
<p>The tech came and said &#8220;Nothin&#8217; is wrong with the modem. It&#8217;s something outside which should be fixed in 48-72 hours.&#8221;  Low and behold 72 hours later nothing has really changed. The connection seems a little better but it is still unusable if I want to get anything done.  Apparently I&#8217;m not the only person noticing this.</p>
<p>Over at DSLReports.com someone posted a topic titled &#8220;<a href="http://www.dslreports.com/forum/r18871930-ConnectivityConstant-Downtim-East-Coast-Maryland-Area">[Connectivity]Constant Downtim | East Coast | Maryland Area</a>&#8221; and included a graph of his packet loss using a line monitoring tool.</p>
<p><a href="http://www.dslreports.com/forum/r18871930-ConnectivityConstant-Downtim-East-Coast-Maryland-Area"><img src='http://www.russellheimlich.com/blog/wp-content/uploads/2007/08/comcast_line_monitor_08142007.jpg' alt='Comcast Line Monitoring Results' /></a><br />
Blue = Bad!</p>
<p>Looks like until this gets resolved, I won&#8217;t be updating my blog as much. </p>
<p><a href="http://www.russellheimlich.com/blog/problems-in-comcast-internet-land/">Problems In Comcast Internet Land</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/problems-in-comcast-internet-land/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Have A Blog? Take Action!</title>
		<link>http://www.russellheimlich.com/blog/have-a-blog-take-action/</link>
		<comments>http://www.russellheimlich.com/blog/have-a-blog-take-action/#comments</comments>
		<pubDate>Sun, 19 Aug 2007 02:56:46 +0000</pubDate>
		<dc:creator>Russell Heimlich</dc:creator>
				<category><![CDATA[Digital Media]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[Web]]></category>

		<guid isPermaLink="false">http://www.russellheimlich.com/blog/have-a-blog-take-action/</guid>
		<description><![CDATA[October 15th is Blog Action Day where bloggers across the globe will focus on one specific topic &#8211; the environment. Every blogger will post about the environment in their own way and relating to their own topic. This is all in hopes that the focused mass commotion will start the ball rolling towards a better [...]<p><a href="http://www.russellheimlich.com/blog/have-a-blog-take-action/">Have A Blog? Take Action!</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.blogactionday.org/"><img src='http://www.russellheimlich.com/blog/wp-content/uploads/2007/08/blogactionday.jpg' alt='Blog Action Day - October 15th' /></a></p>
<p>October 15th is <a href="http://www.blogactionday.org/">Blog Action Day</a> where bloggers across the globe will focus on one specific topic &#8211; the environment.  Every blogger will post about the environment in their own way and relating to their own topic. This is all in hopes that the focused mass commotion will start the ball rolling towards a better environment for the future.</p>
<p>How do you participate? Simple. Just register your blog at BlogActionDay.org and write up an entry about the environment on October 15th.  If you want to do more you can donate your blog&#8217;s earnings for that day or promote the event with <a href="http://www.blogactionday.org/promote">their banners</a>.  Check out everyone that is <a href="http://www.blogactionday.org/participants" class="broken_link">participating</a> and I hope that you add your blog to the list.</p>
<p><object width="425" height="350"><param name="movie" value="http://www.youtube.com/v/WfO8mGjXoe8"></param><param name="wmode" value="transparent"></param><embed src="http://www.youtube.com/v/WfO8mGjXoe8" type="application/x-shockwave-flash" wmode="transparent" width="425" height="350"></embed></object></p>
<p><a href="http://www.russellheimlich.com/blog/have-a-blog-take-action/">Have A Blog? Take Action!</a> by <a href="http://www.russellheimlich.com/blog">Russell Heimlich</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.russellheimlich.com/blog/have-a-blog-take-action/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
