[funsec] Subject line misleading. AT&T Pwned. Sweet Irony: Metasploit Creator a Victim of His Own Creation (fwd)

I guess history decided the previous discussion in favor of vix. Although I doubt vix sees this compromise at ATT as a victory, but rather a loss.

Note: HD has not been compromised.

   Gadi.

Well so if any of you uses an iphone to surf the net now's the time to
see if an iphone's nameservers can be changed to opendns :slight_smile:

Not so quick. Privacy policy?

-M<

Between a potential problem with privacy, and an actual problem with
having my sessions redirected to the RBN, I'll take the privacy risk.

YMMV.

Between a potential problem with privacy, and an actual problem with
having my sessions redirected to the RBN, I'll take the privacy risk.

YMMV.

Depends on your priorities--and that of whoever owns the phone. You, or your employer.

   Gadi.

If you don't mind OpenDNS proxying all your Google searches, sure. < http://blog.metasploit.com/2008/07/on-dns-attacks-in-wild-and-journalistic.html >

Personally, I would never use OpenDNS. Tactics like that are not particularly acceptable in my book, well-meaning or not. Not, however, trying to start a political debate - but OpenDNS does do a bit more than just act as a plain DNS resolver for you, and you should make that aware to anyone who uses it.

- S

I can point it to a colo'd resolver I have elsewhere - but opendns is
rather more redundant. Yes I know what else it does re advertising
and such, but I dont do any sensitive work related stuff through those
resolvers anyway.

oddly enough, i was chatting with a friend from the w3c while walking off-site to lunch from the dublin ietf about the life, and death, of the w3c's p3p project (i was a contributor, he works in a different area), and its possible re-animation.

without meaning to (i assume) martin's made a landmark post -- one mentioning "privacy policy", on nanog.

Martin Hannigan wrote: