<?xml version="1.0" encoding="ISO-8859-15"?>
<!-- generator="wordpress/2.3.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>etd's Dos and Dont's</title>
	<link>http://weblog.nomejortu.com</link>
	<description>specialization is for insects</description>
	<pubDate>Sun, 20 Jul 2008 21:45:15 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.3.3</generator>
	<language>en</language>
			<item>
		<title>usefulfor.com</title>
		<link>http://weblog.nomejortu.com/uncategorized/usefulforcom</link>
		<comments>http://weblog.nomejortu.com/uncategorized/usefulforcom#comments</comments>
		<pubDate>Sun, 20 Jul 2008 17:48:25 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/uncategorized/usefulforcom</guid>
		<description><![CDATA[Several people wanted to contribute to this blog, as a result, we have been working on a new project for the last few weeks, it is called usefulfor.com. It is not my personal blog any more, it is an open forum were other people will also contribute. You can also contribute  
I have split [...]]]></description>
			<content:encoded><![CDATA[<p>Several people wanted to contribute to this blog, as a result, we have been working on a new project for the last few weeks, it is called <a href="http://usefulfor.com/">usefulfor.com</a>. It is not my personal blog any more, it is an open forum were other people will also contribute. You can also <a href="http://usefulfor.com/contact/">contribute</a> <img src='http://weblog.nomejortu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>I have split my posts of this blog into three communities:</p>
<ul>
<li><a href="http://usefulfor.com/security/">/security</a>: information security related content. Techniques, howtos, security advisories, etc.</li>
<li><a href="http://usefulfor.com/ruby/">/ruby</a>: ruby and ruby on rails related articles.</li>
<li><a href="http://usefulfor.com/nothing/">/nothing</a>: Any article that doesn&#8217;t fit in the previous categories goes here.</li>
</ul>
<p>We will give more info in the site when we have it! In the mean time, you can subscribe to the site <a href="http://usefulfor.com/blog/sitefeed.xml">RSS feed</a>.</p>
<p>By the way, this is how it looks:</p>
<p><a href="http://usefulfor.com/"><img src="/wp-content/uploads/2008/07/usefulfor.jpg"/></a></p>
<p>good night and good luck</p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/uncategorized/usefulforcom/feed</wfw:commentRss>
		</item>
		<item>
		<title>dradis v1.2 - now with one-click installer</title>
		<link>http://weblog.nomejortu.com/ruby/dradis-v12-now-with-one-click-installer</link>
		<comments>http://weblog.nomejortu.com/ruby/dradis-v12-now-with-one-click-installer#comments</comments>
		<pubDate>Fri, 13 Jun 2008 10:16:25 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Ruby]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/uncategorized/dradis-v12-now-with-one-click-installer</guid>
		<description><![CDATA[
In adition to the changes released on the 4th of April, yesterday we released a Windows one-click installer for dradis.
The summary of the features of the v1.2 release:

in the client:

export to XML module is now part of the standard module set.
a new implementation of the command line parser: now it is possible to use single [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://dradis.nomejortu.com/download.html#windows"><img style="float: right; border: none; margin: 2ex;" src="/data/img/nsis.png" alt="Windows one-click installer icon" /></a><br />
In adition to the changes released on the 4<sup>th</sup> of April, yesterday we released a Windows <a href="http://dradis.nomejortu.com/download.html#windows">one-click installer</a> for <strong>dradis</strong>.</p>
<p>The summary of the features of the v1.2 release:</p>
<ul>
<li>in the client:
<ul>
<li>export to XML module is now part of the standard module set.</li>
<li>a new implementation of the command line parser: now it is possible to use single and double quotes to pass multi-word arguments to the different commands.</li>
<li>fixed the window.rb:159 bug.</li>
</ul>
</li>
<li>in the server:
<ul>
<li>a slightly less annoying implementation of the web interface <em>auto refresh</em> functionality.</li>
<li>the services added through the web interface can have a name now <img src='http://weblog.nomejortu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </li>
<li>simple prevention against embedded XSS.</li>
</ul>
</li>
</ul>
<p>You can also download the platform-independent ruby source in the <a href="http://dradis.nomejortu.com/download.html">download</a> section of the site.</p>
<p style="text-align: center;"><a href="http://dradis.nomejortu.com/"><img style="border: none;" src="/data/img/dradis-banner.png" alt="dradis banner. click to go to dradis home" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/ruby/dradis-v12-now-with-one-click-installer/feed</wfw:commentRss>
		</item>
		<item>
		<title>miniconomics.com - your expenses under control</title>
		<link>http://weblog.nomejortu.com/uncategorized/miniconomicscom-your-expenses-under-control</link>
		<comments>http://weblog.nomejortu.com/uncategorized/miniconomicscom-your-expenses-under-control#comments</comments>
		<pubDate>Mon, 09 Jun 2008 21:31:16 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/uncategorized/miniconomicscom-your-expenses-under-control</guid>
		<description><![CDATA[
miniconomics.com is an easy-to-use tool designed to manage your personal expenses that we have been developing over the last few months. The key benefits of the tool at this point in time:

It is alive, changing every day, release early, release often. miniconomics.com is under a never ending churning process.
It is simple, a no brainer, you [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: center;"><a href="https://secure.miniconomics.com/"><img src ="/data/img/miniconomics_in_text300.png" /></a></p>
<p><a href="https://secure.miniconomics.com/">miniconomics.com</a> is an easy-to-use tool designed to manage your personal expenses that we have been developing over the last few months. The key benefits of the tool at this point in time:</p>
<ul>
<li>It is alive, changing every day, <em>release early, release often</em>. <a href="https://secure.miniconomics.com/">miniconomics.com</a> is under a never ending churning process.</li>
<li>It is <strong>simple</strong>, a no brainer, you have categories and you have expenses, you put expenses in your categories and <a href="https://secure.miniconomics.com/">miniconomics.com</a> gives you all sorts of useful information, stats and nice shinny graphs.</li>
<li>Is <strong>accessible</strong>, forget about maintaing a spreadsheet with your data in your home computer or laptop. Use an online service, use it no matter where you are, no matter when, just log in and add your expenses.</li>
<li>It is as <strong>geek</strong> as a tool can be. We are still developing it and we are keen on trying all sorts of approaches. We have some cool toughts on plugins and addons that we will be developing in the future. Give us your feedback and let us know what you do you want out of the tool, chances are we will develop it!</li>
<li><a href="https://secure.miniconomics.com/">miniconomics.com</a> is free, free to use, free to register, free to enjoy, free to everything <img src='http://weblog.nomejortu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </li>
</ul>
<p>I hope you decide to give it a try (you don&#8217;t have to register for a test drive) and let us know what you think. And of course if you like it, just <strong>spread the word</strong>.</p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/uncategorized/miniconomicscom-your-expenses-under-control/feed</wfw:commentRss>
		</item>
		<item>
		<title>restful_authentication howto, step-by-step (part 2)</title>
		<link>http://weblog.nomejortu.com/ruby/restful_authentication-howto-step-by-step-part-2</link>
		<comments>http://weblog.nomejortu.com/ruby/restful_authentication-howto-step-by-step-part-2#comments</comments>
		<pubDate>Fri, 06 Jun 2008 01:36:46 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Ruby]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/ruby/restful_authentication-howto-step-by-step-part-2</guid>
		<description><![CDATA[Picking it up were we left it on restful_authentication howto, step-by-step (part 1) the second article of this series is a hands on example on how to use the restful_authentication plugin.
Things that will be covered include:

remove the need of a login
the use of an activation email, the application will require it&#8217;s users to activate their [...]]]></description>
			<content:encoded><![CDATA[<p>Picking it up were we left it on <a href="/ruby/restful_authentication-step-by-step-part-1">restful_authentication howto, step-by-step (part 1)</a> the second article of this series is a hands on example on how to use the <a href="http://agilewebdevelopment.com/plugins/restful_authentication">restful_authentication</a> plugin.</p>
<p>Things that will be covered include:</p>
<ul>
<li>remove the need of a <strong>login</strong></li>
<li>the use of an <em>activation email</em>, the application will require it&#8217;s users to activate their accounts upong sign up.</li>
<li>howto get rid of the <strong>remember me</strong> functionality (just in case you don&#8217;t need it).</li>
<li>howto strengthen a bit the default security of the framework.</li>
</ul>
<p> <a href="http://weblog.nomejortu.com/ruby/restful_authentication-howto-step-by-step-part-2#more-52" class="more-link">(more&#8230;)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/ruby/restful_authentication-howto-step-by-step-part-2/feed</wfw:commentRss>
		</item>
		<item>
		<title>winning without fighting</title>
		<link>http://weblog.nomejortu.com/uncategorized/winning-without-fighting</link>
		<comments>http://weblog.nomejortu.com/uncategorized/winning-without-fighting#comments</comments>
		<pubDate>Sun, 01 Jun 2008 11:08:19 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/uncategorized/winning-without-fighting</guid>
		<description><![CDATA[Directly inspired by The Art of War of Sun Tzu, yesterday I found the following piece of wisdom:
After years of thinking about, writing about, and filtering messages, I&#8217;ve decided that the best strategy for me is to not filter spam, but instead to filter non-spam
The full article at Reverse Spam Filtering: &#8220;Winning Without Fighting&#8221; by [...]]]></description>
			<content:encoded><![CDATA[<p>Directly inspired by <a href="http://www.amazon.co.uk/gp/redirect.html?ie=UTF8&#038;location=http%3A%2F%2Fwww.amazon.co.uk%2FArt-War-Sun-Tzu%2Fdp%2F1599869772%3Fie%3DUTF8%26s%3Dbooks%26qid%3D1211017468%26sr%3D8-1&#038;tag=etsdoandos-21&#038;linkCode=ur2&#038;camp=1634&#038;creative=6738">The Art of War</a><img src="http://www.assoc-amazon.co.uk/e/ir?t=etsdoandos-21&amp;l=ur2&amp;o=2" width="1" height="1" border="0" alt="" style="border:none !important; margin:0px !important;" /> of Sun Tzu, yesterday I found the following piece of wisdom:</p>
<blockquote><p>After years of thinking about, writing about, and filtering messages, I&#8217;ve decided that the best strategy for me is to <em>not</em> filter spam, but instead to filter non-spam</p></blockquote>
<p>The full article at <a href="http://www.ii.com/internet/messaging/spam/">Reverse Spam Filtering: &#8220;Winning Without Fighting&#8221;</a> by Nancy McGough.</p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/uncategorized/winning-without-fighting/feed</wfw:commentRss>
		</item>
		<item>
		<title>restful_authentication howto, step-by-step (part 1)</title>
		<link>http://weblog.nomejortu.com/ruby/restful_authentication-step-by-step-part-1</link>
		<comments>http://weblog.nomejortu.com/ruby/restful_authentication-step-by-step-part-1#comments</comments>
		<pubDate>Fri, 16 May 2008 23:53:20 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Ruby]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/ruby/restful_authentication-step-by-step-part-1</guid>
		<description><![CDATA[There are more than a hundred thousand different ways of implementing authentication in ruby on rails. Authentication in the rails world is definetly not for the faint hearted. After some random reading through the rails wiki it seemed quite clear that there is one winner: acts_as_authenticated. However, after including this plugin in one of my [...]]]></description>
			<content:encoded><![CDATA[<p>There are <a href="http://wiki.rubyonrails.com/rails/pages/Authentication">more than a hundred thousand</a> different ways of implementing authentication in ruby on rails. Authentication in the rails world is definetly not for the faint hearted. After some random reading through the rails wiki it seemed quite clear that there is one winner: <a href="http://wiki.rubyonrails.org/rails/pages/acts_as_authenticated">acts_as_authenticated</a>. However, after including this plugin in one of my secret projects to take over the world, it seems that is lacking some functionality, what I need out of the authentication framework is:</p>
<ul>
<li>A no non-sense authentication: just email and password. No bells, no wistles.</li>
<li>The system should send an <em>activation email</em> after the user signs up.</li>
</ul>
<p>Let&#8217;s explore the alternatives <img src='http://weblog.nomejortu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
 <a href="http://weblog.nomejortu.com/ruby/restful_authentication-step-by-step-part-1#more-51" class="more-link">(more&#8230;)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/ruby/restful_authentication-step-by-step-part-1/feed</wfw:commentRss>
		</item>
		<item>
		<title>the Buddhist monk puzzle</title>
		<link>http://weblog.nomejortu.com/uncategorized/the-buddhist-monk-puzzle</link>
		<comments>http://weblog.nomejortu.com/uncategorized/the-buddhist-monk-puzzle#comments</comments>
		<pubDate>Thu, 15 May 2008 10:37:16 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/uncategorized/the-buddhist-monk-puzzle</guid>
		<description><![CDATA[A new puzzle, this time from Conceptual Blockbusting: A Guide to Better Ideas by Jams L. Adams:

One morning, exactly at sunrise, a Buddhist monk began to climb a tall mountain. A narrow path, no more than a foot or two wide, spiraled around the mountain to a glittering temple at the summit. The monk ascended [...]]]></description>
			<content:encoded><![CDATA[<p>A new puzzle, this time from <a href="http://www.amazon.co.uk/gp/redirect.html?ie=UTF8&#038;location=http%3A%2F%2Fwww.amazon.co.uk%2FConceptual-Blockbusting-Guide-Better-Ideas%2Fdp%2F0738205370%3Fie%3DUTF8%26s%3Dbooks%26qid%3D1210842884%26sr%3D8-1&#038;tag=etsdoandos-21&#038;linkCode=ur2&#038;camp=1634&#038;creative=6738">Conceptual Blockbusting: A Guide to Better Ideas</a><img src="http://www.assoc-amazon.co.uk/e/ir?t=etsdoandos-21&amp;l=ur2&amp;o=2" width="1" height="1" border="0" alt="" style="border:none !important; margin:0px !important;" /> by <em>Jams L. Adams</em>:</p>
<blockquote><p>
One morning, exactly at sunrise, a Buddhist monk began to climb a tall mountain. A narrow path, no more than a foot or two wide, spiraled around the mountain to a glittering temple at the summit. The monk ascended at varying rates of speed, stopping many times along the way to rest and eat dried fruit he carried with him. He reached the temple shortly before sunset. After several days of fasting and meditation he began his journey back along the same path, starting at sunrise and again walking at variable speeds with many pauses along the way. His average speed descending was, of course, greater than his average climbing speed. Prove that there is <em>a spot</em> along the path that the monk will occupy on both trips at precisely the same time of day.
</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/uncategorized/the-buddhist-monk-puzzle/feed</wfw:commentRss>
		</item>
		<item>
		<title>middleware and me (part 1)</title>
		<link>http://weblog.nomejortu.com/security/middleware-and-me-part-1</link>
		<comments>http://weblog.nomejortu.com/security/middleware-and-me-part-1#comments</comments>
		<pubDate>Tue, 06 May 2008 18:31:11 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/security/middleware-and-me-part-1</guid>
		<description><![CDATA[hack-fu by: rux0r
This post is the first in a series on the subject of enterprise messaging and in particular on IBM&#8217;s flavour of it. The objective of these posts will be to remove some of the confusion about its purpose, the technologies and the methods of securing it. Hopefully this will help both security testers [...]]]></description>
			<content:encoded><![CDATA[<p><strong>hack-fu by</strong>: rux0r</p>
<p>This post is the first in a series on the subject of enterprise messaging and in particular on IBM&#8217;s flavour of it. The objective of these posts will be to remove some of the confusion about its purpose, the technologies and the methods of securing it. Hopefully this will help both security testers and other interested parties to feel confident about this important area of IT security.<br />
 <a href="http://weblog.nomejortu.com/security/middleware-and-me-part-1#more-49" class="more-link">(more&#8230;)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/security/middleware-and-me-part-1/feed</wfw:commentRss>
		</item>
		<item>
		<title>ruby application configuration settings</title>
		<link>http://weblog.nomejortu.com/ruby/ruby-application-configuration-settings</link>
		<comments>http://weblog.nomejortu.com/ruby/ruby-application-configuration-settings#comments</comments>
		<pubDate>Thu, 17 Apr 2008 09:53:46 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Ruby]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/?p=48</guid>
		<description><![CDATA[In this article I want to discuss a way of storing and retrieving the configuration settings of a ruby application. The first thing you need to decide is whether you want to store your settings in a database, a XML file, a YAML,&#8230; 
Since this is not an easy choice we can mitigate the impact [...]]]></description>
			<content:encoded><![CDATA[<p>In this article I want to discuss a way of storing and retrieving the configuration settings of a ruby application. The first thing you need to decide is whether you want to store your settings in a database, a XML file, a YAML,&#8230; </p>
<p>Since this is not an easy choice we can mitigate the impact of making the decision upfront by doing some interface based design.</p>
<p> <a href="http://weblog.nomejortu.com/ruby/ruby-application-configuration-settings#more-48" class="more-link">(more&#8230;)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/ruby/ruby-application-configuration-settings/feed</wfw:commentRss>
		</item>
		<item>
		<title>Black Hat Europe 2008</title>
		<link>http://weblog.nomejortu.com/security/black-hat-europe-2008</link>
		<comments>http://weblog.nomejortu.com/security/black-hat-europe-2008#comments</comments>
		<pubDate>Wed, 02 Apr 2008 08:46:02 +0000</pubDate>
		<dc:creator>etd</dc:creator>
		
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://weblog.nomejortu.com/?p=47</guid>
		<description><![CDATA[
I have just arrived from Black Hat Europe 2008 in Amsterdam (this one, not this one). It has been a cool experience, not exactly what I expected but really interesting.
Briefings were held during the 27th and 28th of March, and the presentations are available for download. If you want to see what the chef recommends [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: center;"><img src='http://weblog.nomejortu.com/wp-content/uploads/2008/04/bh2008.jpg' alt='Black Hat logo' /></p>
<p>I have just arrived from <a href="http://www.blackhat.com/html/bh-europe-08/bh-eu-08-main.html">Black Hat Europe 2008</a> in Amsterdam (<a href="http://en.wikipedia.org/wiki/Amsterdam">this one</a>, not <a href="http://en.wikipedia.org/wiki/De_Wallen">this one</a>). It has been a cool experience, not exactly what I expected but really interesting.</p>
<p>Briefings were held during the 27<sup>th</sup> and 28<sup>th</sup> of March, and the <a href="http://www.blackhat.com/html/bh-europe-08/bh-eu-08-archives.html">presentations</a> are available for download. If you want to see what the <em>chef</em> recommends just keep reading&#8230; <img src='http://weblog.nomejortu.com/wp-includes/images/smilies/icon_rolleyes.gif' alt=':roll:' class='wp-smiley' /> </p>
<p> <a href="http://weblog.nomejortu.com/security/black-hat-europe-2008#more-47" class="more-link">(more&#8230;)</a></p>
]]></content:encoded>
			<wfw:commentRss>http://weblog.nomejortu.com/security/black-hat-europe-2008/feed</wfw:commentRss>
		</item>
	</channel>
</rss>
