<?xml version="1.0" encoding="UTF-8"?>
<opml version="1.0">
  <head>
    <title>cmdln.net_2008-03-09</title>
    <expansionState>0,1,21,22,32,35,46,47,49,52,59,63,69,74,78,83,87,90,96,98,103,109,115,118,122,127,134,137,139,143,150,158,162,163,172,179,180,188</expansionState>
  </head>
  <body>
    <outline text="Intro" Offset="00:17">
      <outline text="OmniFocus review">
        <outline text="http://www.omnigroup.com/applications/omnifocus/"/>
        <outline text="Not a fan of GTD, per se"/>
        <outline text="Had been trying to get more organized"/>
        <outline text="Whiteboard full of work tasks"/>
        <outline text="Started by pulling into outliner, OmniOutliner"/>
        <outline text="Didn't do much to help track progress, prioritize"/>
        <outline text="Remembered Omni had a task manager"/>
        <outline text="Not free but cheaper if you already have OmniOutliner"/>
        <outline text="After one week, I like it"/>
        <outline text="Especially like the inbox hot key"/>
        <outline text="Ability to define different perspectives great for separating work, personal views"/>
        <outline text="Uses simple model, task, project context"/>
        <outline text="Follows capture, organize, do cycle in GTD"/>
        <outline text="Not wedded to GTD"/>
        <outline text="Recommend some tool, easy to search for GTD or to do or task manager"/>
        <outline text="I supplement with a report notebook from moleskine"/>
        <outline text="Biggest trick for me has always been capture"/>
        <outline text="Organize data is easy after years of practice"/>
        <outline text="Not having to remember next actions is best secret for low stress"/>
      </outline>
    </outline>
    <outline text="Security Alerts" Offset="07:14">
      <outline text="Pre-testing of malware foils generic commercial detectors" Offset="07:33">
        <outline text="http://go.theregister.com/feed/www.theregister.co.uk/2008/03/03/underground_malware_testing/"/>
        <outline text="One reason that malware gets harder to detect"/>
        <outline text="Any tool for doing so can be acquired by attackers"/>
        <outline text="Why I think forbidding tools like Metasploit is foolish"/>
        <outline text="In the article, authors are using knock off tool"/>
        <outline text="Apparently because the legit tool now phones home"/>
        <outline text="Helps better identify new threats, characterize unknowns"/>
        <outline text="Clever means to prevent pre-testing"/>
        <outline text="The value of pre-testing means attackers clearly will find ways around"/>
      </outline>
      <outline text="New tool cracks Windows passwords in seconds" Offset="08:49">
        <outline text="http://www.hackszine.com/blog/archive/2008/03/ram_dump_over_firewire.html?CMP=OTC-7G2N43923558"/>
        <outline text="FireWire supports for direct memory access"/>
        <outline text="This means you can access all memory from a target PC">
          <outline text="Must physically connect by FireWire"/>
          <outline text="Attacking machine must impersonate appropriate device"/>
        </outline>
        <outline text="Adam Boileau released Linux utility to do just that"/>
        <outline text="By connecting to target XP system can overwrite admin password"/>
        <outline text="The DMA access is a feature of the spec, not a flaw"/>
        <outline text="Boileau's tool can even extract BIOS passwords"/>
        <outline text="Such passwords often recommended to foil physical access attacks"/>
        <outline text="Doesn't appear to be any defense"/>
        <outline text="Maybe someone will figure out an easy why to toggle the ports"/>
        <outline text="Simple step to enable for use, then disable when not in use"/>
      </outline>
    </outline>
    <outline text="News" Offset="11:09">
      <outline text="Rudy Rucker vs. the singularity" Offset="11:23">
        <outline text="http://feeds.feedburner.com/~r/boingboing/iBag/~3/245501701/rudy-rucker-versus-t.html"/>
        <outline text="Singularity is the idea change is accelerating asymptotically">
          <outline text="When it approaches asymptote, we cannot understand that"/>
          <outline text="Like a singularity, it is an event horizon past which we cannot see"/>
        </outline>
        <outline text="In SF, common trope of singularity futures is computronium">
          <outline text="Stross coined the term in Accelerando"/>
          <outline text="One possible element beyond singularity is post human intelligence"/>
          <outline text="Runs on silicon or other non-biological substrate"/>
          <outline text="Material science will have improved to allow conversion of all matter"/>
          <outline text="Change to matter with maximum computational density"/>
        </outline>
        <outline text="In a variation, normal humans may be uploaded, simulated"/>
        <outline text="In his latest, Postsingular, Rucker questions these ideas">
          <outline text="Rucker believes the universe itself is computation"/>
          <outline text="As such, matter is not dumb, is computing itself in realtime"/>
          <outline text="Sees hubris in idea of human descended intelligence trying to outdo universe"/>
        </outline>
        <outline text="Cites actual work in computer science">
          <outline text="Wolfram's computation irreducibility"/>
          <outline text="Cost to compute reality is the same as reality"/>
          <outline text="No shortcuts"/>
          <outline text="Any shortcuts mean a virtual earth is less than reality"/>
          <outline text="Bitmapped textures, other simplifications"/>
        </outline>
        <outline text="I think there is an issue of emulation, too">
          <outline text="Any universal Turing machine can emulate any other"/>
          <outline text="This does not mean all architectures can do so efficiently"/>
          <outline text="Running a simulation on most efficient smart matter may represent loss"/>
          <outline text="Hard to imagine an emulation running faster than &quot;native code&quot;"/>
        </outline>
        <outline text="I am more attracted to upload, simulation in the small">
          <outline text="Appending to an ordinary human life span"/>
          <outline text="Artificial simulations just for continuity"/>
          <outline text="Not an attempt to replace reality"/>
        </outline>
      </outline>
      <outline text="Johnny Long, no-tech hacker" Offset="16:35">
        <outline text="http://feeds.feedburner.com/~r/TheGlobeAndMail-Technology/~3/245703671/"/>
        <outline text="Saw Johnny Long at Shmoocon last year"/>
        <outline text="He was evangelizing, even then, no tech hacking"/>
        <outline text="Article highlights his work as a pen tester for CSC"/>
        <outline text="What he does is more than social engineering">
          <outline text="An attacker will not limit themselves to networks"/>
          <outline text="They will find anyway in"/>
          <outline text="As cold boot attacks reminded us, physical access trumps all"/>
        </outline>
        <outline text="A reminder that security isn't about the latest attack">
          <outline text="These issues of trust, physical security are persistent"/>
          <outline text="Lost or stolen hardware accounted for half of losses last year"/>
        </outline>
        <outline text="Article covers Long's history">
          <outline text="Started as a criminal hacker"/>
          <outline text="Captures some of the draw of hacking, legitimate and otherwise"/>
          <outline text="Was lucky to transition into legitimate work"/>
          <outline text="After some frustration, found work at CSC doing security testing"/>
        </outline>
        <outline text="Has a book out detailing the latest in social engineering attacks"/>
      </outline>
      <outline text="Kelly on how creators can deal with The Long Tail" Offset="19:26">
        <outline text="http://feeds.feedburner.com/~r/thetechnium/~3/245752960/1000_true_fans.php"/>
        <outline text="Highlights challenge of creator">
          <outline text="Long tail serves aggregators"/>
          <outline text="Also a benefit to consumers"/>
          <outline text="What does a creator do who cannot afford to create a blockbuster?"/>
        </outline>
        <outline text="Like Better than Free, focuses on positive solutions"/>
        <outline text="Suggest creator needs to find a set number of fans willing to consistently pay for works">
          <outline text="Admits this is not a new idea"/>
          <outline text="Wants to formalize its name, get people thinking about it"/>
          <outline text="He picks 1000 &quot;True Fans&quot; willing to spend $100 a year"/>
          <outline text="Yields a six figure income, gross"/>
          <outline text="Numbers are less important than the idea of connection"/>
        </outline>
        <outline text="Have to maintain direct contact with true fans">
          <outline text="This is where the internet pays of"/>
          <outline text="All kinds of conversational media, not even just social media"/>
          <outline text="Highlights how drop cost of fab, distribution favor small audiences"/>
          <outline text="Creators need to have a mentality of rewarding best fans"/>
          <outline text="Helps reward lesser fans, too, who contribute to creators ability to thrive, too"/>
        </outline>
        <outline text="Some caveats">
          <outline text="Number of fans needs to scale with collaborators"/>
          <outline text="Linear scale, though, unlike traditional publishing"/>
          <outline text="Some creators aren't suited or don't want to cultivate fans">
            <outline text="Positive reasons, like focus on creativity, as well as negative, don't like fans"/>
            <outline text="Need an intermediary willing to do this work"/>
          </outline>
          <outline text="The more direct the payment, the easier the model is"/>
        </outline>
        <outline text="Antecedents, examples">
          <outline text="Micro-celebrity, famous to 1,500 people"/>
          <outline text="Micro-patronage or street performer protocol"/>
          <outline text="Lawrence Watt-Evans published a chapter for $100 from online fans"/>
          <outline text="Working on second book using this model"/>
        </outline>
        <outline text="New mediators capitalizing on this">
          <outline text="Micro-financing"/>
          <outline text="Fundable manages building capital for small projects"/>
          <outline text="Includes managing risk for contributors, refunds if goal not reached"/>
          <outline text="Amelia, Jill Sobule, both singers, examples of this model working"/>
        </outline>
        <outline text="Traditionally, alternatives for artists have been poverty or stardom"/>
        <outline text="Kelly is suggesting a viable alternative"/>
        <outline text="Jonathan Coulton is a particular favorite example">
          <outline text="He even blogged about the Kelly piece shortly after it was posted"/>
          <outline text="Not hard to find examples, will keep getting easier"/>
        </outline>
      </outline>
      <outline text="Technology may yet foil warrantless wire taps" Offset="26:29">
        <outline text="http://techdirt.com/articles/20080227/212053377.shtml"/>
        <outline text="Tim Lee writes about Matt Blaze's critique of Michael McConnell">
          <outline text="McConnell is leading the charge for warrantless wire taps"/>
          <outline text="He was also responsible for clipper chip"/>
          <outline text="Blaze was also pivotal in foiling clipper chip"/>
        </outline>
        <outline text="Lee thinks technology ultimately foiled clipper, will foil wiretaps">
          <outline text="Cites lack of horse power for software only encryption"/>
          <outline text="Thinks Moore's law leveled playing field"/>
          <outline text="Other commercial hardware crypto was available long before clipper"/>
          <outline text="Problem was one of trust, market, norms"/>
          <outline text="Clipper tried to directly legislate standard"/>
          <outline text="Didn't adequately consider risks of key escrow"/>
        </outline>
        <outline text="Lee thinks encrypted VoIP will foil wiretaps">
          <outline text="Encrypted comms are noting new"/>
          <outline text="How will this change anything?"/>
          <outline text="Technology cannot alter this policy"/>
          <outline text="Worse, technology may help the government"/>
          <outline text="Germany using malware, other tools to bypass Skype encryption"/>
        </outline>
        <outline text="An administration willing to override FISA, other checks, balances may legalize anything"/>
        <outline text="Pinning hopes on technical solutions is foolish"/>
        <outline text="Disagree with his naive optimism">
          <outline text="This needs to be actively fought"/>
          <outline text="Administration wants to downplay impact on liberties"/>
          <outline text="That cannot stand, due process of law needs to be restored"/>
        </outline>
      </outline>
    </outline>
    <outline text="tail -f" Offset="31:35">
      <outline text="Results of Norwegian broadcaster's experiment with BitTorrent" Offset="31:54">
        <outline text="http://feeds.feedburner.com/~r/boingboing/iBag/~3/244595734/public-broadcaster-b.html"/>
        <outline text="NRK, norwegian broadcaster, released a wildlife program via BT"/>
        <outline text="As high quality video, without DRM"/>
        <outline text="The net-net is the experiment was positive"/>
        <outline text="Confirmed that success of download hasn't hurt DVD sales"/>
        <outline text="Want to clear more rights, to distribute more NRK programming"/>
        <outline text="3rd party rights, like music, is the real challenge to that"/>
        <outline text="Positive cost savings, 90K downloads so far"/>
      </outline>
      <outline text="Case against Wikileaks is dropped" Offset="33:04">
        <outline text="http://www.eff.org/deeplinks/2008/03/julius-baer-drops-case-against-wikileaks-after-eff-aclu-help-restore-wikileaks-org"/>
        <outline text="Julius Baer filed a  motion of voluntary dismissal"/>
        <outline text="After the judges reversal of two earlier orders in the case"/>
        <outline text="Plaintiff said it might later pursue claims in another court"/>
        <outline text="For now, win of free speech rights of Wikileaks"/>
        <outline text="Motion to dismiss won't help in future cases"/>
      </outline>
    </outline>
    <outline text="Outro" Offset="34:17">
      <outline text="Contact me">
        <outline text="Email to feedback@thecommandline.net"/>
        <outline text="Web site at http://thecommandline.net/"/>
        <outline text="IM to command.line@skype"/>
        <outline text="Listener comment line is 240-949-2638"/>
        <outline text="del.icio.us tag is &quot;for:cmdln&quot;"/>
        <outline text="http://twitter.com/cmdln"/>
      </outline>
      <outline text="I'd like to thank libsyn.com for AAC hosting and Wouter de Bie for MP3 hosting"/>
      <outline text="These notes and the show audio and music are covered by a Creative Commons license">
        <outline text="http://creativecommons.org/licenses/by-nc-sa/3.0/us/"/>
        <outline text="Attribution, non-commercial, share alike"/>
      </outline>
    </outline>
  </body>
</opml>
