Microsoft um, extends, Digest Authentication

[ via Privacy Digest ] An inconsistent version of Digest Authentication in updates to Internet Explorer means that those clients may only authenticate to Microsoft’s IIS web server. Furthermore, other clients implementing Digest Authentication such as Opera, can’t authenticate with IIS. Microsoft claims a different reading of the standard for Digest Authentication, a method of [...]

And you thought HTTP GET was safe…

The Mothership in Redmond suggests, Security Recommendation: Disable HTTP-GET and HTTP-POST Protocols for Production XML Web Services. I need to read the report to see if this is an IIS or a more general problem. Sigh, I suppose we could just unplug the damned things from the router.

Return of the Trojan Authenticator

Will MS Passport bring back the old fake-a-legit-looking-login-screen attack?

Word HTML to HTML converter

[ via Zeldman ] Dean Allen at Textism released the PHP source to his Word HTML cleaner.

New Win32 Worm Nimda

@#!$! We don’t need a new Win32 worm. But we got one anyway.

Moglen on the US Surrender to Microsoft

Eben Moglen thinks the surrender to MS has to do with campaign money, Hollywood’s quest to prevent copying, and PC makers wanting to sell new hardware.

Steve Ballmer channels Tim Roth as Leader of the Ape Army

All that’s missing in this video clip are the acrobatic leaps and wire work (you’d think MS could spring for a harness) as Steve “All your data are belong to us” Ballmer exhorts the troops. The Register thought this was a screen test for “Planet of the Apes”. Compare and contrast with Christopher Walken’s dance [...]

Smart Tags Weblog

I’ve been thinking about what bothers me about Smart Tags. It’s a cultural thing. Annotations are one thing. Heck, that’s what a weblogs is all about. However, Smart Tags just strike me as another attempt to paper over public spaces with advertising. Dave Winer started a weblog devoted to blocking them.

Much Ado about Smart Tags

A List Apart this week features a great analysis of Microsoft’s Smart Tags feature in Windows XP. Chris Kaminski wonders how this technology can go wrong. What if spammers found a way to exploit it: Imagine trying to read F. Scott Fitzgerald’s The Great Gatsby online and having every mention of Daisy sport a smart [...]

Hacking Outlook

How to start messing with your Outlook Today pane.

PiXML

[ via XSLT list ] PiXML is an XML/XSLT application that takes an XML document with filenames, captions, and topics, and generates a web browsable photo album with them. [ Requries IE and MSXML3 ]

Linus on the MS Shared Source Speech

Dan Gillmore asked Linus Torvalds for his reaction to MS’s policy speech yesterday. I’d rather listen to Newton than to Mundie. He may have been dead for almost three hundred years, but despite that he stinks up the room less.

Don Box on SOAP History

Don Box said he had a “Jerry Maguire” moment, and wrote a history of SOAP. I’ve never seen that movie, so all that comes to mind when I think of a “Jerry Maguire” moment is Dave Winer chanting “show me the interop, show me the interop” during a phone call to Redmond.

How to RTFM

[ via suggestion ] How to read the effin’ manual.

Choosing a server side language

A plea for thinking it through before picking a server side language for Web development. Only a couple of points I’d disagree with. One, PHP is not a direct descendant of Perl. Two, I don’t think PC Labs and CNet are entirely objective since they live and die on advertising.