2006年12月25日星期一
2006年12月19日星期二
真实世界中的密码
黑客们做了一个MySpace的仿冒注册页面,专门收集大家所使用的密码(大约10万平民上当:-))。里面有很多有趣的东西。
首先,密码长度:有65%的注册用户的密码<=8位,17%的用户密码<=6位,所有用户密码的平均长度是8位。下面的表格是一个详细的分析。
1-4 | 0.82 percent |
5 | 1.1 percent |
6 | 15 percent |
7 | 23 percent |
8 | 25 percent |
9 | 17 percent |
10 | 13 percent |
11 | 2.7 percent |
12 | 0.93 percent |
13-32 | 0.93 percent |
注意,居然有人使用32位的密码:-) "1ancheste23nite41ancheste23nite4". 还有两个亚32位的"fool2thinkfool2thinkol2think", "dokitty17darling7g7darling7"。晕倒~
混合密码:居然有81%的密码包含有字母跟数字(不过看看下面的你就知道这些密码是多么的搞笑)。
numbers only | 1.3 percent |
letters only | 9.6 percent |
alphanumeric | 81 percent |
non-alphanumeric | 8.3 percent |
使用最多的密码:使用最多的密码前20个是:password1, abc123, myspace1, password, blink182, qwerty1, fuckyou, 123abc, baseball1, football1, 123456, soccer, monkey1, liverpool1, princess1, jordan23, slipknot1, superman1, iloveyou1 和 monkey。
以前用的最多的大概就是password当作自己的密码了,不过现在人知道安全的重要性了,改为了password1 :-) , 更有趣的是blink182, 因为这是一个乐队的名称,并且由于包含数字跟字母,所以使用的人也很多,乐队中的乐手Slipknot由于名字中没有密码,所以大家使用Slipknot1作为密码:-),而身披23号战袍的乔丹也有幸入选。
BadVista.Org

FSF今天开辟了一个专门的博客 -- BadVista.Org, 按照博客的文章说,这个BadVista的作用有两个,1是专注于揭露微软的Vista对用户所造成损害的报道,2是宣传使用尊重用户隐私的免费软件。
看了下仅有的几个文章,把微软的Vista骂得狗写喷头,如果你感兴趣的话,可以注册一个用户,发表评论,订阅mailing list.
2006年12月18日星期一
2006年12月15日星期五
最强的防火墙
matrix 写道 "Matousec.com对Windows上的个人防火墙进行了分析,对21个防火墙进了防漏洞测试(Leak test)。测试模仿了木马和间谍软件使用的普遍方法从你的电脑发送你的信息。Windows Firewall XP SP2自带的防火墙在所有的测试中都没有通过,显然依靠第三方防火墙软件不是没有依据的。令人感到惊讶的是测试中最好的两款软件都是免费软件。Comodo Personal Firewall 2.3.6.81,Jetico Personal Firewall 2.0.0.16 beta就是前两位。"
测试遇到的一个问题是软件的默认设置和最高安全级别设置下的得分有很大不同,典型的是Kaspersky Internet Security 6.0.0.303。另有多款防火墙软件都带有杀毒引擎。
一直使用的ZoneAlarm排名第三,不负众望。很值得一提的是,WinXp+SP2自带的防火墙以0分的成绩排名倒数第一
Product | Product Score | Level of Anti-leak Protection | |
---|---|---|---|
![]() | Comodo Personal Firewall 2.3.6.81 | 9350 | Excellent |
![]() | Jetico Personal Firewall 2.0.0.16 beta | 9125 | Excellent |
![]() | ZoneAlarm PRO 6.5.737.000 | 8250 | Very good |
![]() | Trend Micro PC-cillin Internet Security 2007 15.00.1329 | 7500 | Very good |
![]() | Outpost Firewall PRO 4.0 (971.584.079) | 6675 | Good |
![]() | Lavasoft Personal Firewall 1.0.543.5722 (433) | 6500 | Good |
![]() | Kaspersky Internet Security 6.0.0.303 | 6350 | Good |
![]() | BlackICE PC Protection 3.6.cpv | 5750 | Poor |
![]() | Sunbelt Kerio Personal Firewall 4.3.268 | 4825 | Poor |
![]() | Look 'n' Stop 2.05p2 | 4675 | Poor |
![]() | Norton Personal Firewall 2006 9.1.0.33 | 4600 | Poor |
![]() | Safety.Net 3.61.0002 | 4000 | Poor |
![]() | Sygate Personal Firewall 5.6.2808 | 2350 | Very poor |
![]() | McAfee Internet Security Suite 2006 8.0 | 2325 | Very poor |
![]() | CA Personal Firewall 2007 3.0.0.196 | 1000 | None |
![]() | BitDefender Internet Security 10.108 | 750 | None |
![]() | F-Secure Internet Security 2007 7.01.128 | 750 | None |
![]() | Panda Antivirus + Firewall 2007 6.00.00 | 650 | None |
![]() | AVG Anti-Virus plus Firewall 7.5.431 | 500 | None |
![]() | Filseclab Personal Firewall 3.0.0.8686 | 500 | None |
![]() | Windows Firewall XP SP2 | 0 | None |
2006年12月14日星期四
2006年12月13日星期三
2006年12月12日星期二
2006年12月10日星期日
2006-Ubuntu年
Mono 1.2 支持部分 .net2
Novell has released Mono version 1.2, an expansion of the Mono Project and a major step forward in compatibility with version 2.0 of the .NET framework.
The Mono Project is an open source initiative sponsored by Novell to develop a UNIX version of the Microsoft .NET development framework. Its objective is to enable UNIX developers to build and deploy cross-platform .NET applications. The 1.2 release of Mono is compliant with and provides full support for .NET 1.1 and partial support for .NET 2.0.
Mono 1.2 adds support for the Microsoft Windows Forms API to more easily port .NET client-side applications to Linux. Other enhancements in this release include virtual machine upgrades and enhanced Java support, significant performance, memory consumption and stability improvements, and support for many .NET 2.0 features. With this release, traditional Microsoft developers can leverage their existing skill sets to use the Mono framework to effortlessly make their .NET desktop and server applications available to the fast-growing Linux market, the company explained.
With full Mono support for the Windows Forms API, the graphical user interface portion of the Microsoft .NET development framework, developers can now bring their existing Microsoft-based client applications to Linux while significantly minimising the time and effort required to migrate these applications, Novell said.
The inclusion of Windows Forms capabilities in this version is an important milestone in the expansion of the Mono Project. It provides corporate IT and ISV developers with operating system alternatives for hosting existing .NET applications and opens up the possibility of new desktop applications on Linux. Novell's SUSE Linux Enterprise Desktop 10, which debuted in July of this year, includes a number of new Mono-based desktop Linux applications such as the Banshee music player, F-spot photo management tool and the Beagle desktop search tool.
The Mono framework supports a variety of platforms, including Linux, Mac OS X, Solaris, BSD and Windows. It also supports a variety of hardware options, including ARM.
2006年12月9日星期六
Firefox 3 Alpha 发布
Mozilla today hit an early milestone on the road to the next version of its open-source browser, but the final product is still a year away, developers say.
The Mozilla team released its first alpha release of Firefox 3.0 today, giving Firefox and Web application developers an early look at the next-generation browser. This release is not intended for regular users, not even those who like to play around with early versions of a product, Mozilla said.
The software, code-named Gran Paradiso, comes just six weeks after Mozilla shipped version 2.0 of the browser, but it has already been more than a year in development, according to Mike Schroepfer, Mozilla's vice president of engineering.
3.0 Features
The final version of Firefox 3.0 is expected to be released by the end of 2007. Developers hope that it will be a major step toward making Web applications indistinguishable from programs that are installed on the desktop, Schroepfer said.
Gran Paradiso features better support for a number of graphics standards, such as the Scalable Vector Graphics (SVG) language and the Canvas specification, Schroepfer said. "These are fairly major architectural changes to enable us to improve performance."
Firefox 3.0 also supports the Cairo graphics library, which aims to make Web pages look the same whether they are being printed or viewed on a Windows PC, a Macintosh, or a small-screen device.
The Firefox 3.0 plan calls for browsing, bookmarking, and privacy enhancements to be built into the browser, but Schroepfer said there is still a lot of time to work out new features. "It's a bit early to be talking about the user-facing features," he said.
Update: 到这里下载Firefox3 alpha
2006年12月8日星期五
Opensuse 10.2放出
1 CD ISO (700 MB) | 5 CD ISOs (3.5 GB) | 1 DVD ISO (4.7 GB) | |
---|---|---|---|
56 KBit | 28 hours | 139 hours | 187 hours |
64 KBit (ISDN) | 25 hours | 122 hours | 164 hours |
1024 KBit (Broadband) | 1.5 hours | 8 hours | 11 hours |
2048 KBit (Broadband) | 45 minutes | 4 hours | 5.5 hours |
8192 KBit (Broadband) | 12 minutes | 1 hour | 1.5 hours |
24 MBit (ADSL2) | 4 minutes | 20 minutes | 28 minutes |
100 MBit (Fibre) | 1 minute | 5 minutes | 7 minutes |
openSUSE 10.2 Installation Media | |||||||
---|---|---|---|---|---|---|---|
Architecture | Protocol | CDs1 | DVD2 | ||||
i386 | HTTP | ||||||
Torrent | |||||||
Metalink | |||||||
x86_64 | HTTP | ||||||
Torrent | |||||||
Metalink | |||||||
ppc | HTTP | ||||||
Torrent | |||||||
Metalink | |||||||
Checksums | CD MD5SUMS | DVD MD5SUMS |
代号为Factory的openSUSE 10.2终于放出。