2011年3月31日星期四

Top 10 IT Security Recommendations to Avoid Being Fooled

With April Fool's Day coming up, it's a great time to consider ways of preventing your customers, users, business, and yourself from being fooled by spammers and other high-tech malefactors. To get some advice, I spoke with, Craig Speizle, the executive director and president of Online Trust Alliance (OTA), a member-driven organization committed to helping businesses protect themselves and their customers against any potential security breach that could compromise identities as well as consumer trust.

These recommendations are targeted at small to medium businesses (SMBs), though Fortune 100 companies could benefit from implementing these suggestions if they're not already doing them. To put some context around the advice, Speizle says, "There's a recurring trend of some of the common breaches or incidents that some simple precautions, some simple operational disciplines, could have resolved. It's estimated by multiple organizations that 90 percent of the instances could be prevented. Most companies aren't doing these things, because they're concerned with running their business; they're not security professionals."

Speizle says these fixes are the low-hanging fruit that's often overlooked. They're vendor neutral and cross platform, and they can be done within a matter of a few days with little or no acquisition cost or upgrading costs. So why aren't people already implementing these measures? "Quite frankly," Speizle declares, "it's like a lot of things—we all have the best intentions, but we lose sight of things."

So without further ado, here are OTA's top 10 recommendations to help businesses and government agencies protect their customers' and employees' personal and financial data from being compromised.

1. Use up-to-date browsers. Upgrade all employees to the most current version of browsers that have integrated phishing and malware protection and privacy controls, including support of "Do Not Track" mechanisms and controls. Such controls provide users the control on third-party data collection, usage, and sharing of their online browsing activities, while balancing out the value of ad supported online services. Further, protect site visitors by notifying them of insecure and outdated browsers that lack integrated anti-phishing, malware protection, and online tracking privacy controls. Consider terminating support for end-of-life browsers with known vulnerabilities by preventing logons and providing instructions to upgrade.

"I would say the two leading browsers are Firefox and Internet Explorer 9," Speizle states.

2. Establish and maintain a Domain Portfolio Management program. This includes monitoring look-alike domains and tracking renewals to prevent "drop catching" of expiring domains. Domain locking is recommended to help guard against unintended changes, deletions, or domain transfers to third parties. Such programs and practices can help protect a company's brand assets and consumers from landing on look-alike sites compromising trademarks and trade names.

Speizle explains that companies need to proactively monitor for look-alike domain names that are registered. "I'm sure you've had it happen where you've typed in something wrong by one letter, and the browser comes up with a site where you have to think twice. 'Is this the site? What am I looking at here?'" But what malefactors are doing is capturing that traffic, and potentially, they could be using that site to defraud customers. This monitoring is something you can do yourself, and there are also companies that offer this monitoring as a service.

2011年3月30日星期三

2011 New Mustang Parts Showcase

Each year we scour the floors of the annual Las Vegas SEMA show preview the hottest new parts coming at you from the host of manufacturers that keeps us in Mustang mods. This year was special because of the arrival of the new 2011 5.0 Mustang. There was no shortage of new items for that car as well as every other Mustang going back to 1965.

Here are some of the hottest new performance parts and automotive eye candy for your Mustang in 2011. We would like to thank our friends at Stage3MotorSports for making this section possible! And note that a lot of the hot new parts on the market are available from them!

With the popularity of their decorative aluminum engine covers for the 2005-2009 Ford Mustang GT models- BBK engineers were looking for another affordable way to further dress up the under hood appeal. By utilizing a design that is built as a die casting – BBK was able to deliver a pair of performance valve covers that are both lightweight and a great value. The precise finish of the die casting also allowed for a chrome plated version without the expense of extension polishing as with standard cast units. These Mustang GT valve covers are sold in pairs and are available in a great looking durable titanium powder coat or the show quality chrome. No modifications are required for installation. More information from BBK Performance.

Magnacharger has rolled out this new TVS based supercharger system for the first generation EFI 5.0 small block Ford engines. Featuring the same technology that has been so popular in the past decade for the Ford modular motors, the TVS supercharger system offers the same low end grunt for the venerable small block Fords. Assembly comes with all parts needed for full installation including fuel rails shown. May not be smog legal in all 50 states. The perfect addition to your Fox, SN-95 Mustang or even classic Mustang depending on the engine assembly used.

2011年3月29日星期二

EDITORIAL: Light bulb law probably isn't a bright idea

South Carolina's feisty, anti-federalist streak is once again shining brightly for all to see.

As brightly as a good old-fashioned, energy-sucking incandescent light bulb, in fact.

The source is he inspiringly named "Light Bulb Freedom Act," a piece of legislation currently wending its way through the state house that seeks to illuminate and redress the ills of a recent light bulb bill passed by the U.S. Congress. The federal legislation, turned into law in 2007 by George W. Bush (who was not always thought of as the brightest of bulbs himself) calls for phasing out incandescent lights in the U.S., starting with 100-watt bulbs in 2012 and other, lesser wattages a few years after that. The old bulbs will be replaced by those cute little, curly cues known as compact fluorescent bulbs, of CFLs, or possibly by some other future technology, such as enhanced LED bulbs (which are currently on the market in a limited way but are quite expensive – more than $100 per bulb).

The point of banishing the stone age incandescent light bulb from American sockets is to save energy (and probably money). CFLs use about one seventh as much energy as an incandescent bulb and last thousands of hours longer.

Nobody really thinks saving energy is a bad idea, but some South Carolinians, and most importantly, state representative Bill Sandifer (R-Oconee), think the feds telling us what to do and when to do it is. Sandifer, a conservative (but not, apparently, of energy), is the chief sponsor of the Light Bulb Freedom Act. He told the Greenville News he drafted the legislation because he doesn't like CFL bulbs and because he wanted to stand up for states rights (again).

Sandifer's not a lone light in the light bulb darkness. U.S. Senator Jim DeMint of South Carolina

is sponsoring a senate bill that would repeal the federal law, and legislators in three others states (Texas, Georgia, Minnesota) are waving the state's right bulb flag as well, having launched state legislation that's akin to Sandifer.

The Light Bulb Freedom Act is a clever bill in that it attacks the foundation of the federal bill, not its upper stories. It proposes to allow the sale of incandescent bulbs in South Carolina to continue – so long as the bulbs are all sold in state. That's a potential winner, legally anyway, because the feds' ability to give us orders stems in large part from the interstate commerce clause in the constitution. If there's no interstate commerce, then the clause is moot.

Whether Sandifer's cleverness is usefully employed is another matter.

There are problems with CFLs. The bulbs run on mercury, which is toxic metal. That makes both handling and disposal more complicated than with a conventional bulb. And CFLs are more expensive to buy, although they will actually save money over their life because of the savings in power useage.

But the savings in energy useage – enough to make a real dent in U.S. power needs – would seem to trump all that. Estimates do vary, but a recent United States Department of Energy report suggested that the almost 400 million CFLs shipped to the U.S. in 2007 would save 111 billion kilowatt hours, which is about what the state of South Carolina uses in a year.



Both patriots and tree huggers can rally round a technology that reduces the need for imported fuels in the country.

Yes, that will mean letting the feds tell us how to screw in a light bulb, or which one to screw in, but if we did otherwise the joke would be on us.

2011年3月28日星期一

First Aussie review of Duke Nukem Forever (sort of)

THE critics might still be waiting to play it, but there is one organisation that's been given a sneak peak at the Duke's return.

After more than a decade in development — and despite a last-minute delay — Duke Nukem Forever will soon see the light of day.

So what's in store for gamers? More sex, drugs, violence and toilet humour?

Precisely that, according to the Australian Classification Board, which granted the game an MA15+ rating last month.

Below are some of the highlights from the Board's Decision Report, containing descriptions of the game's smuttiest moments.

Be warned, there are spoilers — but it's worth it. You can read the full Classification Board decision report here (PDF).

An example of crude humour includes playable elements which enable Duke to "piss" and "throw" faeces.

In various bathroom locations throughout the game, the player can have Duke "piss" in urinals and on occasion, in these same venues can also pick up faecal matter from a toilet bowl and throw it about.

Dialogue contains various crude reference to "pissing" and when throwing faecal matter Duke is heard to utter "what sick motherf---er picks up wet faeces" and "what am I? A monkey?"

The Board also notes the player ability, in a final climactic scene when Duke kills the alien general, to implicitly urinate into the defeated creature's eye socket.

Violence

The game contains violence that is strong in impact and justified by context. Constant battle with robot-like alien creatures is present throughout the game and is therefore strong in viewing impact.

Battles incorporate the use of futuristic weapons such as a Freeze Ray, Shrink Ray, other super-sized guns, grenade launchers and hand-to-hand combat.

In one of the game levels, Duke enters an alien lair to "rescue" kidnapped Earth women who have been implicitly impregnated by the alien enemy.

These women are rendered with a mannequin-like appearance, and appear torso nude and partially cocooned either suspected from a cave-like roof or against walls.

In order to "spare" the women's suffering Duke has the ability to shoot the women resulting in small blood bursts. Those he does not shoot are seen implicitly exploding as the alien "baby" matures.


The game contains implied sexual activity that is strong in impact.

In the level Duke Lives, the player sees a first person perspective of Duke's lounge room, as he implicitly sits on a couch, playing a computer game on a big screen TV.

Off-screen, sexual noises are heard and the shot widens to reveal two women rising up from a kneeling position just below Duke's waist line. Fellatio is implied as the women wipe their mouths and giggle.

In the level Titty City, Duke enters a strip club where he meets a stripper who invites him to locate (among other items) a vibrator and a condom.

In the men's toilet, Duke can enter a toilet cubicle with what appears to be a "glory hole" in the cubicle wall. A cartoon image of a woman's face is on the wall with a hole evident in the drawing's mouth and the word "Yum" beside it.

Upon the successful completion of this level, Duke is given a "special" lap-dance by the stripper. The breast nude female is depicted in a first person perspective implicitly gyrating on Duke's lap.

The Board notes a facility also exists for the player to "jiggle" the stripper's breasts during this scene.

2011年3月27日星期日

Red Hat alert RHSA-2011:0303-01 (kernel)

1. Summary:

Updated kernel packages that fix three security issues and several bugs are
now available for Red Hat Enterprise Linux 5.

The Red Hat Security Response Team has rated this update as having moderate
security impact. Common Vulnerability Scoring System (CVSS) base scores,
which give detailed severity ratings, are available for each vulnerability
from the CVE links in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux (v. 5 server) - i386, ia64, noarch, ppc, s390x, x86_64
Red Hat Enterprise Linux Desktop (v. 5 client) - i386, noarch, x86_64

3. Description:

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* A flaw was found in the Linux kernel's garbage collector for AF_UNIX
sockets. A local, unprivileged user could use this flaw to trigger a
denial of service (out-of-memory condition). (CVE-2010-4249, Moderate)

* A flaw was found in the Linux kernel's networking subsystem. If the
number of packets received exceeded the receiver's buffer limit, they were
queued in a backlog, consuming memory, instead of being discarded. A remote
attacker could abuse this flaw to cause a denial of service (out-of-memory
condition). (CVE-2010-4251, Moderate)

* A missing initialization flaw was found in the ethtool_get_regs()
function in the Linux kernel's ethtool IOCTL handler. A local user who has
the CAP_NET_ADMIN capability could use this flaw to cause an information
leak. (CVE-2010-4655, Low)

Red Hat would like to thank Vegard Nossum for reporting CVE-2010-4249, and
Kees Cook for reporting CVE-2010-4655.

This update also fixes several bugs. Documentation for these bug fixes will
be available shortly from the Technical Notes document linked to in the
References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues, and fix the bugs noted in the Technical
Notes. The system must be rebooted for this update to take effect.

4. Solution:

Before applying this update, make sure all previously-released errata
relevant to your system have been applied.
Glynn Academy student wins on and off the baseball field


BRUNSWICK | Johnny “Buckshot” Simmons is a winner in the classroom and on the baseball diamond.

The Glynn Academy senior has come back strong, academically and athletically, from a devastating eye injury last year.

Simmons, a pitcher, was practicing with his Red Terror teammates in May when a line drive struck him in the left eye crushing the socket, breaking his nose and causing his right eye to swell shut.

He spent the next four weeks either hospitalized or recovering at home after surgeons at the Mayo Clinic in Jacksonville saved his eye and his sight. Surgeons performed a cornea transplant, and reattached his retina in his left eye.

Initially told by doctors that he would never play baseball again, the soft-spoken Simmons politely rejected their prognosis then set about proving them wrong.

“I tried to just keep going,” Simmons said. “You push forward through it. There was nothing I could do about it [the accident], but I could do something about what happened after it.”

As hard as he trained to get back into shape to return to the team, which rallied to support him after he was hurt, Simmons worked just as hard to catch up on his studies.

“He’s always been a good student and a great kid,” Glynn Academy Principal Scott Spence said. “He did not let his injury impact socket him at all.”

Simmons’ focus has earned him state recognition. The 18-year-old became state champion in precision machining technology March 18 during the SkillsUSA Georgia Leadership and Skills Conference in Atlanta.

The day after he won the state competition, Simmons returned to Brunswick to pitch a winning game against Ware County, Spence said.

Representing Golden Isles Career Academy, Simmons will compete in the 47th annual National Leadership and Skills Conference June 19-24 in Kansas City, Mo. He will be among nearly 6,000 students showcasing their  skills, Principal Ralph Gornto said.

The competition will test Simmons in reading blueprints, completing milling projects and working with a lathe, Gornto said.

“Throwing a curve ball is a lot easier,” Simmons said.

Simmons is as passionate about the metal work as he is about baseball.

“I’m good at it and I like doing it,” he said with genuine modesty. “I like working with real-life objects and making things that people are going to use.”

The son of Johnny and Michele Simmons, he plans to major in mechanical engineering in college.

“I’ll be the fourth- generation machinist if I go into it,” said Simmons, who explained that his father is a reliability engineer at the Georgia-Pacific Koch Cellulose mill in Brunswick.

Simmons hasn’t decided which college he wants to attend, but he knows he wants to play baseball there.

If his record is any indication, he should be a welcome addition to any college team. He has a 3-0 record this season, and his earned run average ERA is under 3, his coach said.

“I wish I had 20 more kids just like him on the team,” Glynn Academy head coach Bobby Link said. “He’s a great athlete and all-round great kid.”

Simmons said his teammates, Glynn Academy’s Diamond Club and the community rallied to help him recover and return to do the things that he loves.

“Everybody has been so supportive and I can’t thank them enough,” he said.

2011年3月22日星期二

CRAWFORD / Should we give money to those who don't need it?

When your elected legislators start giving gifts to our neediest corporations, you eventually reach a point where the question is asked: when does the giving stop?

The House of Representatives reached that point last week when it debated a bill that will continue to provide a beneficial tax break to one of the state's stellar corporate citizens: Delta Air Lines.

HB 322 would extend for another two years a sales tax exemption the state gave Delta on the jet fuel it purchases for its aircraft. This is a tax break worth about $20 million a year to the airline.

The General Assembly first adopted this tax break in 2005 when Delta was being pushed into bankruptcy by the financial chaos caused by the 9/11 terrorist attacks. Lawmakers thought they should do whatever they could to help the airline through a period of economic uncertainty. The Legislature subsequently voted to extend the tax break for a few more years.

I think it would be safe to declare "mission accomplished."

Delta did file for bankruptcy after receiving that tax break in 2005, but the carrier emerged from bankruptcy in 2007 and today is doing quite well. For calendar year 2010, Delta reported a net income of $1.4 billion. That's billion with a "B."

Even when you exclude what the accountants call "special items" from that total, Delta's profits still came in at $593 million. The airline also distributed $313 million in profit sharing to its employees because of the company's success in meeting its financial targets.

That is surely good news. Delta is prospering again and continues to employ large numbers of people in Georgia. A rational person would think that the state's tax break was no longer necessary and could now be retired.

That person would be wrong. The bill to extend Delta's tax break was adopted last week on a 113-61 vote in the House and sent to the Senate where it no doubt will be warmly received.

"When our homegrown companies are successful, by God, we're going to stand behind them," Rep. Ron Stephens (R-Savannah) declared. "What we're telling Delta is, we still want you."

The vote was far from unanimous and several House members, while commending Delta for its role as a major employer, were incredulous that the airline would continue to receive the gift that keeps on giving.

"Everybody likes Delta," said Rep. Winfred Dukes (D-Albany). "I like Delta. But I also like Home Depot and I like UPS. I like Cox Communications, I like Chick-fil-A."

He was making the point that all of these large corporations contribute greatly to the state's economic prosperity and are major sources of jobs. What justifies singling out Delta from the others to receive this particular tax break?

Dukes also noted that there are many small businesses in Georgia that have been struggling for the past few years while the state has been mired in the worst economic downturn since the Great Depression.

Let's stop and think about enterprises like Vann's Auto Mart in Jesup, Dave's Goody Barn in Gainesville, Mickey's Grocery in Blackshear, Reeves Home Furnishings in Clayton, or the Dogwood Bakery in Commerce.

Small businesses like these collectively employ far more people than Delta Air Lines, but none of them are getting a tax break like Delta's.

It was only last year that the Legislature established a study committee of economists and business experts to review the state tax code and determine how it should be reformed.

One of the findings was that too many tax breaks and exemptions had been granted over the years to various businesses and special interest groups. These tax breaks should be phased out to give us a tax code that is more equitable.

"In the face of that advice, a majority of the House members went ahead and voted to keep giving a $20 million tax break to a corporation that reported $1.4 billion in net income last year and did so well that it shared $313 million in profits with its employees."

It reminds me of the parents who warn their child that he'll be electrocuted if he sticks his finger in a wall socket. The child then proceeds to stick his finger in a wall socket anyway.

2011年3月20日星期日

Socket to 'em

If there is one thing that Kevin Yu loves to do, it is drive. If you visit the Tesla Motors

Asia Pacific director at his showroom in Tokyo, he’ll be happy to take you for a drive

around the block. On weekends, he’s often on the roads in one of his company’s colorful

electric cars.

Tesla opened its Aoyama showroom last November to much fanfare, the first Asian destination

for the lithium ion battery-powered Roadster – the only car it currently makes. The hand-

built, carbon fiber electric Roadster accelerates from 0-100 kilometers in 3.7 seconds. Last

year, Tesla formed a partnership with Panasonic Corp to market battery packs for electric

cars and more recently, Toyota Motor Corp invested $50 million in Tesla which will help

develop an electric version of Toyota’s RAV4 crossover vehicle.

Tesla has so far sold only about 1,500 of its Roadster sports cars worldwide. In February,

the Palo Alto, California-based company reported that its 4th-quarter net loss doubled to

$51.4 million from a year earlier as research and development costs for its upcoming Model S

sedan soared. However, revenue almost doubled to $36.3 million from $18.6 million a year

earlier.

Yu, who also oversees Hong Kong, has high hopes for Japan. Since the showroom opened last

November, Tesla has sold several dozen Roadsters. Prior to joining Tesla last year, he spent

four years here as head of PayPal (whose founder Elon Musk is also Tesla Chief Executive).

Japan Today editor Chris Betros visits Yu at the Tesla showroom to hear more.

What are some of the biggest misperceptions that people have about electric cars?

The biggest one in general that people have about electric cars worldwide is that they think

electric cars do not perform as well as gasoline cars, that there’s a technical limitation

that prevents electric cars from outperforming gasoline cars. That’s wrong.

Another is that somehow, electricity is more dangerous than gasoline. I don’t see how that’

s possible. Most people drive around with explosive gasoline in their car every day and think

nothing of it. I’ve also had people look at a Roadster and ask: “Can it go down the block?



What is your approach to marketing?

Tesla’s goal in Japan is to prepare the market for mainstream electric vehicles and change

people’s mindsets about electric cars. We think the best marketing is word of mouth –

specifically from our owners – and therefore, we place a high priority on finding real-world

customers for the Roadster. We have to basically introduce consumers to what is a brand new

concept to many of them. Up until Tesla came out and even after, many consumers thought about

electric cars the same way they thought about golf carts. The golf cart is probably the most

common electric vehicle that consumers are acquainted with. Many of the people who come into

the showroom think our cars are like that, despite the fact that they obviously look like

sports cars.

How well known is Tesla’s name in Japan?

Not as well known as in the U.S. where there has been more news about the company for years.

There was no concerted effort to get the word out in Japan until last year. In general,

though, Japanese consumers are familiar with electric cars because Nissan and Mitsubishi are

marketing them.

How many Roadsters have been sold so far?

We have sold 1,500 worldwide. Sales in Japan started last year, but we can’t give country-

level specifics.

What sort of interest does the showroom draw?

Weekends, especially in warmer weather, we get a lot of people. It has even become a tourist

destination. We get people from Thailand, Taiwan, Korea, all over Asia, and more and more

Europeans. You’d be surprised at how many people from Europe and the U.S. have their first

Tesla experience here in Tokyo. Many people who never thought about electric cars at home

check it out when they walk by.

One unique thing about our showroom is that we allow visitors to go on test drives. No matter

who you are, if you have an interest in trying out a Tesla, you can come by and have a ride

around the block. On weekends, there is a line. We don’t do that in any other country.

How much does the Roadster cost?

The price, which includes all the taxes and inspection fees, starts at 12.8 million yen and

can go past 20 million, depending on options.

That’s much more expensive than what Nissan and Mitsubishi Motors are selling.

That’s true. If you’re looking for an economy car that seats four people, then you don’t

buy the Roadster. If you’re looking for a super car that will accelerate from 0 to 100 in a

third of the time that most other cars take, you buy this.

When the company started, the choice was: Do they want to build a car in the $30,000 price

range and compromise on things like performance and range? At what point could they make an

electric car that was both less expensive and performed better than gasoline cars? The answer

was at the sports car level. If you look at the Ferrari 430 which accelerates from 0 to 100

in about 4.1 seconds, and you look at the Porsche 911 Turbo that costs $130,000, you realize

that there is a segment in which an electric vehicle can really be the performance and value

leader. The result was the Roadster that undercuts the Porsche by 15-20% pricewise and still

goes 0-100 faster than the Ferrari.

What was the reaction from Panasonic at first concerning the battery collaboration?

This is a good example of how quickly people can change their minds if you show them

something that actually works. Panasonic did not think automobiles would be an acceptable use

of their batteries at first. Our engineers ended up having to take matters into their own

hands, and demonstrate to Panasonic that our application was not only safe, it was

revolutionary. That was in the mid-2000s. In 2010, Panasonic opened a billion-dollar battery

factor in Osaka specifically to build batteries for electric cars, the same type they said

was not suitable five years earlier. They made a strategic shift pretty quickly all because a

start-up company like Tesla did something with their technology that they had originally

thought was impossible.

When will the cost of Tesla cars come down?

From next year, we will be making a 4-door Model S sedan and the price starts coming down

with that. The Model S will be our bread and butter car and will cost roughly half the price

of the Roadster. It will be more functional.

2011年3月14日星期一

Ingersoll Rand Launches New Industrial-Grade Impact Sockets

The method of pipe joining is an important factor when designing and installing a piping

system. Before choosing the joining method, it is important to consider several factors,

including installation conditions, project schedule, available labor skills and tooling

requirements, as well as other design and construction considerations. Each of these elements

has an impact on which piping method will be the most suitable.

The primary methods of joining carbon steel and stainless steel pipe in the commercial market

are welding, flanging, threading and, of course, grooved. Because every project has its own

set of challenges, for each project one must consider the best possible solution for that

application. In the case of mechanical systems, the opportunities to use grooved systems are

numerous, but the concept/methodology, and the benefits they can provide are not widely

known.

A grooved pipe joint is comprised of four elements: the grooved pipe, the gasket, the

coupling housings, and the nuts and bolts. The groove is made by cold forming or machining a

groove into the end of a pipe. A gasket encompassed by the coupling housing is wrapped around

the two pipe ends, and the key sections of the coupling housing engage the grooves. The bolts

and nuts are tightened with a socket wrench or impact wrench. In the installed state, the

coupling housing encases the gasket and engages the grooves around the circumference of the

pipe to create a leak-tight seal in a self-restrained pipe joint.

2011年3月13日星期日

Crossbow, tools stolen from Crawford County camp

A burglar stole a crossbow and several tools from a camp house and garage in Steuben Township, Crawford County, state police said.

The items were taken from a Station Road property sometime between March 1 and Friday, state police at Corry said. They included a crossbow and scope, a chain saw, a circular saw, a reciprocating saw, a socket set and an electric impact wrench.


Some applications call for impact sockets that may not be readily available. Starting April 1, 2011, Snap-on Industrial will launch its new 45K4W Custom Socket program to provide customers with virtually any impact socket—more than 45,000 custom SKUs—needed to work those unique jobs. The goal of the 45K4W Custom Socket program is to expand Snap-on Industrial's product offering by working with customers to identify needed non-standard tool sizes, and to manufacture and deliver those tools in a timely and efficient process.

"We're receiving more requests for specialized impact sockets—sockets that are not in our catalog or product offering," said John Martell, product manager, Snap-on Industrial. "This new program will offer our customers the ability to order an impact socket made to their specifications, built with the same quality and durability they've come to expect from Snap-on."

The 45K4W Custom Socket program is starting with custom-manufactured impact sockets, with six- and 12-point hex and, in any square drive size between 1/2" and 2 1/2".

The advantage Snap-on Industrial brings to customers is quality, service and shorter lead times. Each tool manufactured under the 45K4W Custom Socket program comes with the Snap-on quality and performance. And by offering combinations of drive size, hex size, six- and 12-point hex, and socket length, Snap-on Industrial will work with customers to ensure the tools they purchase fit their needs. Snap-on Industrial is able to design, manufacture and deliver custom impact sockets in about four weeks.

2011年3月9日星期三

Wright Tool Introduces New Striking Wrench Adaptor to Save Time, Money and Tool Storage Space

Wright Tool introduces its new striking wrench adaptor, which saves money, time and tool

storage space.

The 11 1/2-inch long adaptor allows for a single striking wrench to be used on a variety of

fasteners by attaching to any size 1-inch drive impact socket. Versatility for a wide range

of applications is enabled when the adaptor is used with an impact socket.

"The striking wrench adaptor is another way that Wright Tool is keeping the customer in mind

and perfecting our performance," said Ty Smith, director of business development at Wright

Tool. "The adaptor is a simple solution for making striking wrenches more versatile, allowing

the user to have a more cost-effective answer to their needs."

The adaptor can be used in conjunction with a 1-inch drive extension or flex handle to hold

the adaptor in place. To use the striking wrench adaptor safely, it always should be used

with the proper safety equipment and the proper socket ret-ring.

Wright Tool offers both straight and offset style striking wrenches that range in sizes from

1- to 4-5/8-inches. The offset style is designed for situations where easy access to the bolt

from above the work surface is necessary. The striking wrenches are ideal for applications

involving heavy construction equipment, off-highway equipment, power plants and large

chemical and processing facilities.

Wright Tool manufactures a complete line of more than 4,000 professional-grade hand tools for

the industrial, contractor, and MRO markets. All Wright-manufactured products are

manufactured in the U.S. and carry lifetime guarantees against defects in workmanship.

2011年3月7日星期一

Tinker gets security improvement

TINKER AIR FORCE BASE, Okla. -- The gate keepers at Tinker Air Force Base are the

ones who make sure that anyone who enters has a valid reason to be there and the

proper credentials to prove it.

Of all the gates on base, Tinker Gate handles the largest workload.

About 30,000 pass through it daily.

Ten months and $6.7 million later, it reopened after a major renovation.

Troy Roberts, 72nd Security Forces Squadron Commander at Tinker, said, "One of the

things that happened after 9-11 is people did studies and thought we could do

security a lot better than in the past."

So they designed buildings to make them resistant to blasts, created weaves in lanes

to slow any high-speed threat and added pop-up barriers to stop cars that made it

past the guards.

Roberts said, "And this net would pop up. The vehicle would run into it, net would

wrap around it and these sockets would help disperse the impact of the vehicle."

The new visitor center where you check in to get a pass is Tinker's first building to

go green.

It's not only energy efficient, but bomb proof and could be used as a shelter.

2011年3月2日星期三

Red Hat alert RHSA-2011:0303-01 (kernel)

1. Summary:

Updated kernel packages that fix three security issues and several bugs are
now available for Red Hat Enterprise Linux 5.

The Red Hat Security Response Team has rated this update as having moderate
security impact. Common Vulnerability Scoring System (CVSS) base scores,
which give detailed severity ratings, are available for each vulnerability
from the CVE links in the References section.

2. Relevant releases/architectures:

Red Hat Enterprise Linux (v. 5 server) - i386, ia64, noarch, ppc, s390x, x86_64
Red Hat Enterprise Linux Desktop (v. 5 client) - i386, noarch, x86_64

3. Description:

The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* A flaw was found in the Linux kernel's garbage collector for AF_UNIX
sockets. A local, unprivileged user could use this flaw to trigger a
denial of service (out-of-memory condition). (CVE-2010-4249, Moderate)

* A flaw was found in the Linux kernel's networking subsystem. If the
number of packets received exceeded the receiver's buffer limit, they were
queued in a backlog, consuming memory, instead of being discarded. A remote
attacker could abuse this flaw to cause a denial of service (out-of-memory
condition). (CVE-2010-4251, Moderate)

* A missing initialization flaw was found in the ethtool_get_regs()
function in the Linux kernel's ethtool IOCTL handler. A local user who has
the CAP_NET_ADMIN capability could use this flaw to cause an information
leak. (CVE-2010-4655, Low)

Red Hat would like to thank Vegard Nossum for reporting CVE-2010-4249, and
Kees Cook for reporting CVE-2010-4655.

This update also fixes several bugs. Documentation for these bug fixes will
be available shortly from the Technical Notes document linked to in the
References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues, and fix the bugs noted in the Technical
Notes. The system must be rebooted for this update to take effect.

4. Solution:

Before applying this update, make sure all previously-released errata
relevant to your system have been applied.