Category Archives: Web

I guess I’m now a Mozilla core developer, too

About a month ago, I dived into the world of Mozilla add-on development by adopting the abandoned Thunderbird “Send Later” add-on and porting it to Thunderbird 3.1. The learning curve was pretty steep, and it took a lot more work than I expected to stabilize the add-on, but I think it was worth it, considering… Read More: I guess I’m now a Mozilla core developer, too »

Supposed SysAdmin & Network Security experts don’t know how to run a secure Web site

Yesterday, I decided I wanted to unsubscribe from one of the e-newsletters published by SANS, which bills itself as, “the most trusted source for computer security training, certification and research.” There were no instructions in the e-newsletter for how to unsubscribe, so I went to their Web site. It told me that I had to… Read More: Supposed SysAdmin & Network Security experts don’t know how to… »

New Massachusetts unemployment insurance employer Web site crashes and burns upon launch

(Simulblogged at universalhub.com.) The Commonwealth of Massachusetts has a convoluted(*) unemployment insurance system, under which employers are required to make various quarterly and annual filings and quarterly payments involving at least two different state agencies. This system is administered by the Department of Unemployment Assistance (DUA), who decided to replace their old, paper-based system with… Read More: New Massachusetts unemployment insurance employer Web site crashes and burns… »

WordPress inadvertent disclosure bug

As I previously wrote, I recently had to change my password on over 300 Web sites because my default “medium-security password” was compromised.  The compromise was caused by a bug in the WordPress blogging platform which can result in inadvertent disclosure of information when content is pasted into the WYSIWYG text editor built into WordPress.… Read More: WordPress inadvertent disclosure bug »

Password security hall of shame

As I wrote earlier today, I just changed my password on over 300 Web sites. In the process, I encountered a large number of sites which simply don’t know how to do password security properly. Some of these sites are operated by major corporations which are entrusted by their users with confidential and sensitive personal… Read More: Password security hall of shame »