Welcome, Guest. Please login or register.

Author Topic: Statement From Bill McEwen on Thendic-Amiga  (Read 35605 times)

Description:

0 Members and 2 Guests are viewing this topic.

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« on: August 21, 2003, 12:01:41 PM »
Im speechless, this may be a relief to you.
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #1 on: August 21, 2003, 12:26:46 PM »
There are several points of entry into xoops.

First is the database tables, where the password can be read and deciphered quite easily. This requires someone with database read rights at the least on user tables.

Second is also the tables, where a row can simply be read and copied, and then updated and restored later on.

Thirdly are cookies. :-)

Fourthly are debug output inserted into php scripts.

Fifthly are social engineering methods and guessing.

Sixthly are man in the middle scenarios.

Finally, its not known when the password "guess" attack occurred.

So excuse me while I dispute the likelyhood of a guess. However any administrator worth his salt would go and check the contents of /var/log/httpd and trace back the users that made requests at the same time the article entries were made in the table.

That of course is just for starters.
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #2 on: August 21, 2003, 12:35:16 PM »
I agree.

You have a tough job on your hand right now Kees. Good luck!  :-)
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #3 on: August 21, 2003, 12:37:56 PM »
Jules

You are correct, I am searching for the EULA right now on the install CD as a plain text file.
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #4 on: August 21, 2003, 01:01:56 PM »
BBRV is Bill Buck and Raquel Velasco ( I think I got that right ) who are two pretty nice people that run Genesi, formerly Thendic who had a contract with Amiga Inc. to port AmigaDE onto WINCE for the SmartBoy product.

Thendic from what I can see was formerly involved in security products, for airports and the like and famously ran the "muscle" at French airports - or something.

You can use Google to look those up to see the current status of all three ;-)

The contract, according to hearsay, included a clause that stipulated that Thendic had the right to request further platforms for consideration.

Thendic somehow turned into Genesi and merged with BPlan to market their Pegasos and MorphOS product ( a competitor to Amiga ).

Then Genesi requested, using that contract clause, a port of AmigaDE onto Pegasos. This was refused and it goes to court in November 2003.

Dave.
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #5 on: August 21, 2003, 02:56:40 PM »
@Mark

Correct, although it doesn't stop a person with DB write access from overwriting the row entirely with their own password.

@bbrv

Thanks for the clarification, the situation is as I thought it was.

@thread

Chill. Its not worth it.
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #6 on: August 21, 2003, 03:13:10 PM »
I gotta point out, that I was the messanger that was shot over how angry some people are about Amiga.org.
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #7 on: August 21, 2003, 03:25:19 PM »
Thats OK I needed something to put on my chips

:-)

( fries )
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #8 on: August 21, 2003, 03:39:40 PM »
@Warface

Kees will have a hard time if people continue to bring further old arguments into the sphere of discussion just for the hell of it, like you just did.
Hate figure. :lol:
 

Offline DaveP

  • Hero Member
  • *****
  • Join Date: Feb 2002
  • Posts: 2116
    • Show all replies
Re: Statement From Bill McEwen on Thendic-Amiga
« Reply #9 on: August 21, 2003, 03:53:04 PM »
Sounds like how I feel after I take a break from the "scene" :-)
Hate figure. :lol: