Why are common services using implicit SSL not considered obsolete in the way that SMTPS is?

SMTPS (implicit SSL) has been deprecated/obsolete since SMTP+STARTTLS (explicit SSL) was defined in RFC2487. I’m not entirely clear on the reasoning behind that, but it was clearly considered a good idea at the time.

A paral… Continue reading Why are common services using implicit SSL not considered obsolete in the way that SMTPS is?

VU#676632: IBM Lotus Domino server mailbox name stack buffer overflow

The IBM Lotus Domino server IMAP service contains a stack-based buffer overflow vulnerability in IMAP commands that refer to a mailbox name. This can allow a remote,authenticated attacker to execute arbitrary code with the privileges of the Domino server Continue reading VU#676632: IBM Lotus Domino server mailbox name stack buffer overflow

Raspberry Pi, Send Me a Letter

The abundance of small networked boards running Linux — like the Raspberry Pi — is a boon for developers. It is easy enough to put a small cheap computer on the network. The fact that Linux has a lot of software is a double-edged sword. On the one hand, it is a good bet that anything you want to do has been done. On the other hand, some of the solutions are a bit large for a tiny embedded system.

Take, for example, e-mail. Historically, Linux hosts operate as mail transfer agents that can send and receive mail for all …read more

Continue reading Raspberry Pi, Send Me a Letter