security
-
"...your visitor will have a limited amount of time (specified by you) to fill in the form and send it. And if a spammer tries to post information to your form processor remotely they’re going to hit a big fat roadblock."
-
"...you can create a honeypot form field that should be left blank and then use CSS to hide it from human users, but not bots." Pure CSS bot thwarting.
Paul Bausch
-
"But it is now also possible to use a Multi-domain UCC SSL certificate. This allows you to have a single certificate which covers up to 150 domains."
-
This is a good answer about responding to a server intrusion. The stuff of nightmares, but it's good to think about how to respond to a crisis when you're not in the middle of a crisis. [via anil]
Paul Bausch
-
A simple way to set up a mod_evasive style defense with the more popular mod_security.
-
"mod_evasive is an evasive maneuvers module for Apache to provide evasive action in the event of an HTTP DoS or DDoS attack or brute force attack." Filed for (hopefully) non-use.
Paul Bausch
-
API + No-Hurdle Accounts + Incentives = some krazy foursquare hacking. "...I think the combination of a poorly moderated and insecure folksonomy with incentives (e.g. badges, mayorships, free meals, etc.) is a fragile one. The greater the incentives, the greater the motivation for cheating." [via mathowie]
Paul Bausch
-
A peek behind the curtain at Facebook with an anonymous FB developer.
-
"...Brad's work was altogether more messy and funny and human and passionate and complicated, just like the man himself. I can offer no more succinct summation of the man than that he was a good man and a good friend, profoundly funny and profoundly kind." Anil shares some memories of Brad.
-
"...the hero is the most damaging person on a team, particularly on a team that’s supposed to be writing high-availability or otherwise mission-critical software." Interesting analysis of team dynamics. [via
jessamyn]
-
"One user following another in social media is analogous to one page linking to another on the Web. Both are a form of recommendation." Amit Singhal on how Google ranks Tweets for real-time search.
-
Rules for PR folks who want to work with bloggers. "FOR IMMEDIATE RELEASE means FOR IMMEDIATE DELETE."
Paul Bausch
-
Anil collects more thoughts on the coming storm of apps vs. open web. "This, for me, is a social issue, a cultural issue, and a political issue, not just a technological issue. Perhaps we need to speak of it that way more often, to make the stakes clear."
-
"...it's time for developers to take a stand. If you don't want a repeat of the PC era, place your bets now on open systems. Don't wait till it's too late." Tim O'Reilly on the coming platform storm. [via anil]
Paul Bausch
-
A nice summary of fire lookout towers that dot Pacific Northwest peaks.
-
Nice, quick guide to setting ColdFusion error-handlers for public applications.
Paul Bausch
-
Cortex is go! Josh is using the All You Can Jet promotion from Jetblue to meet MetaFilter members across the country. This is where he'll be posting about his month-long adventure.
-
This is where you can adjust your Flash security settings, including managing Flash cookies that you can't control via the browser.
Paul Bausch
Paul Bausch
-
-
Privacy, Security, Lock-In, and Downtime. Gina runs down some problems with outsourcing your data management.
-
"The cloud, however, comes with real dangers...If you entrust your data to others, they can let you down or outright betray you." A good summary of some problems yet to be solved with cloud computing.
-
"Enclosure is a process whereby a resource held in common is taken into private control....The acts of enclosure of the information age are about social assets, they are subtle and invisible, and they are being implemented, to a large degree, by peer pressure." [via
anil]
Paul Bausch
-
1. Start with an original but memorable phrase. 2. Turn your phrase into an acronym. "These mnemonic passwords are hard to forget, but they contain no guessable English words." [via
lifehacker]
Paul Bausch
Paul Bausch
Showing 37 through 48 of 63 posts tagged security.