<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments for Adam On...</title>
	<atom:link href="http://www.adamdodge.com/blog/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.adamdodge.com/blog</link>
	<description>Ramblings on Higher Education, Information Security and other Topics Du Jour</description>
	<pubDate>Tue, 06 Jan 2009 05:16:21 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.5.1</generator>
		<item>
		<title>Comment on CBE: The Data Breach CVE? by Adam Shostack</title>
		<link>http://www.adamdodge.com/blog/2008/07/10/cbe-the-data-breach-cve/#comment-13</link>
		<dc:creator>Adam Shostack</dc:creator>
		<pubDate>Sat, 12 Jul 2008 21:19:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.adamdodge.com/blog/?p=95#comment-13</guid>
		<description>We don't need or want a common lexicon.  Trying to get to one would have killed the CVE.  CVE worked because we didn't do that.

What's really needed is someone with time and energy to do this.  It might be an interesting experiment to try it and see what problems come up.  That might lead to an academic paper or two.  (Thus letting you start with grad students. :)</description>
		<content:encoded><![CDATA[<p>We don&#8217;t need or want a common lexicon.  Trying to get to one would have killed the CVE.  CVE worked because we didn&#8217;t do that.</p>
<p>What&#8217;s really needed is someone with time and energy to do this.  It might be an interesting experiment to try it and see what problems come up.  That might lead to an academic paper or two.  (Thus letting you start with grad students. <img src='http://www.adamdodge.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on The State of Security Sales Calls by alan shimel</title>
		<link>http://www.adamdodge.com/blog/2008/06/18/the-state-of-security-sales-calls/#comment-11</link>
		<dc:creator>alan shimel</dc:creator>
		<pubDate>Thu, 19 Jun 2008 11:33:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.adamdodge.com/blog/?p=74#comment-11</guid>
		<description>Adam - thanks for picking up on my theme. Here at StillSecure, we are trying but have learned the hard way too.  Am interested in how you would like a security vendor to engage you?</description>
		<content:encoded><![CDATA[<p>Adam - thanks for picking up on my theme. Here at StillSecure, we are trying but have learned the hard way too.  Am interested in how you would like a security vendor to engage you?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Why I Love The Internet, Reason #2 by Kees Leune</title>
		<link>http://www.adamdodge.com/blog/2008/04/19/why-i-love-the-internet-reason-2/#comment-9</link>
		<dc:creator>Kees Leune</dc:creator>
		<pubDate>Sat, 19 Apr 2008 15:21:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.adamdodge.com/blog/?p=65#comment-9</guid>
		<description>I can totally related to this post ;-) I used to play and DM a lot 2nd edition and 3rd edition adventures, and I really enjoyed it a lot. Time to start finding the dice and play some slow games on an IRC channel, perhaps?</description>
		<content:encoded><![CDATA[<p>I can totally related to this post <img src='http://www.adamdodge.com/blog/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> I used to play and DM a lot 2nd edition and 3rd edition adventures, and I really enjoyed it a lot. Time to start finding the dice and play some slow games on an IRC channel, perhaps?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on [UPDATE] Missing Out On Good PR by Sham Sao</title>
		<link>http://www.adamdodge.com/blog/2008/04/01/missing-out-on-good-pr/#comment-6</link>
		<dc:creator>Sham Sao</dc:creator>
		<pubDate>Wed, 02 Apr 2008 14:50:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.adamdodge.com/blog/?p=33#comment-6</guid>
		<description>Just wanted to add some information regarding IdentityTruth.  IdentityTruth is not just a credit monitoring service - it offers multiple levels of protection against Identity Theft including tracking of breaches like the LaSalle breach, scanning of Internet sites, change of address and phone data, and billions of other database records.

There's an interesting timeline on the IdentityTruth website showing how identity theft happens, why Credit Monitoring alone is not enough, and where IdentityTruth helps:

http://www.identitytruth.com/services/demo/timeline_audio.html</description>
		<content:encoded><![CDATA[<p>Just wanted to add some information regarding IdentityTruth.  IdentityTruth is not just a credit monitoring service - it offers multiple levels of protection against Identity Theft including tracking of breaches like the LaSalle breach, scanning of Internet sites, change of address and phone data, and billions of other database records.</p>
<p>There&#8217;s an interesting timeline on the IdentityTruth website showing how identity theft happens, why Credit Monitoring alone is not enough, and where IdentityTruth helps:</p>
<p><a href="http://www.identitytruth.com/services/demo/timeline_audio.html" rel="nofollow">http://www.identitytruth.com/services/demo/timeline_audio.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on [UPDATE] Missing Out On Good PR by Adam Dodge</title>
		<link>http://www.adamdodge.com/blog/2008/04/01/missing-out-on-good-pr/#comment-4</link>
		<dc:creator>Adam Dodge</dc:creator>
		<pubDate>Tue, 01 Apr 2008 20:23:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.adamdodge.com/blog/?p=33#comment-4</guid>
		<description>I received this e-mail from an individual claiming to be a "Ruth Shuman" from Lasell College. Given that the IP address traces back to a Verizon Internet account in the Boston area, I'm going to take it as valid

Subject: Are all of your reports inaccurate? -- Adam On... contact form
From: Ruth Shuman &lt;omitted&gt;

I hope that IdentityTruth is paying you a lot of money for its free
advertising.  If you cared enough to do fact checking before putting out
this false information, you would see that Lasell College is offering free
credit monitoring through a competitor.  IdentityTruth has equally bad
practices putting out a press release as if it was on behalf of Lasell to
get business.  Your business practices, as well as IdentityTruth's are
unprofessional and should be scrutinized by the Attorneys General Offices
around the country and the Better Business Bureaus in all major markets. If
you don't publically correct these false accusations I will be happy to
contact them directly.  Thank you.

--- End E-mail

[Adam: By the way, I have received no money from IdentityTruth nor do I expect to]</description>
		<content:encoded><![CDATA[<p>I received this e-mail from an individual claiming to be a &#8220;Ruth Shuman&#8221; from Lasell College. Given that the IP address traces back to a Verizon Internet account in the Boston area, I&#8217;m going to take it as valid</p>
<p>Subject: Are all of your reports inaccurate? &#8212; Adam On&#8230; contact form<br />
From: Ruth Shuman <omitted></p>
<p>I hope that IdentityTruth is paying you a lot of money for its free<br />
advertising.  If you cared enough to do fact checking before putting out<br />
this false information, you would see that Lasell College is offering free<br />
credit monitoring through a competitor.  IdentityTruth has equally bad<br />
practices putting out a press release as if it was on behalf of Lasell to<br />
get business.  Your business practices, as well as IdentityTruth&#8217;s are<br />
unprofessional and should be scrutinized by the Attorneys General Offices<br />
around the country and the Better Business Bureaus in all major markets. If<br />
you don&#8217;t publically correct these false accusations I will be happy to<br />
contact them directly.  Thank you.</p>
<p>&#8212; End E-mail</p>
<p>[Adam: By the way, I have received no money from IdentityTruth nor do I expect to]</omitted></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Yeah&#8230; I Don&#8217;t Get It by Adam Dodge</title>
		<link>http://www.adamdodge.com/blog/2008/03/13/yeah-i-dont-get-it/#comment-3</link>
		<dc:creator>Adam Dodge</dc:creator>
		<pubDate>Thu, 13 Mar 2008 19:19:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.adamdodge.com/blog/2008/03/13/yeah-i-dont-get-it/#comment-3</guid>
		<description>Yeah, which is why I just don't get it ;)</description>
		<content:encoded><![CDATA[<p>Yeah, which is why I just don&#8217;t get it <img src='http://www.adamdodge.com/blog/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Yeah&#8230; I Don&#8217;t Get It by tkrabec</title>
		<link>http://www.adamdodge.com/blog/2008/03/13/yeah-i-dont-get-it/#comment-2</link>
		<dc:creator>tkrabec</dc:creator>
		<pubDate>Thu, 13 Mar 2008 19:11:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.adamdodge.com/blog/2008/03/13/yeah-i-dont-get-it/#comment-2</guid>
		<description>Wouldn't it be more effective to block p2p, rather than IM?  Especially when you need to share files with individual users or groups on IM, and all you have to do to share a file with the masses(with p2p) is have it in the wrong folder or share the share the wrong thing.

--Tim Krabec</description>
		<content:encoded><![CDATA[<p>Wouldn&#8217;t it be more effective to block p2p, rather than IM?  Especially when you need to share files with individual users or groups on IM, and all you have to do to share a file with the masses(with p2p) is have it in the wrong folder or share the share the wrong thing.</p>
<p>&#8211;Tim Krabec</p>
]]></content:encoded>
	</item>
</channel>
</rss>
