Read more at http://www.phpclasses.org/package/7499-PHP-Parse-BASIC-language-statements.html
16445 items (10773 unread) in 27 feeds
ComputerTechnology
(5297 unread)
RantsandRamblings
(4202 unread)
In November I wrote SEC Guidance Emphasizes Materiality for Cyber Incidents, my thoughts after reading an article by Senator Jay Rockefeller and former DHS Secretary Michael Chertoff. They explained why the CF Disclosure Guidance: Topic No. 2, Cybersecurity issued by the SEC in October is a big deal. Since then I attended a conference on Director's and Officer's insurance in Connecticut, and spoke on a panel about that SEC guidance. During the conference I learned that the SEC guidance isn't a big deal -- it's a really big deal. We're talking a game changer, potentially on three fronts. Here's what I heard at the conference.
Clients bombarded insurance firms asking what language they should use in their SEC disclosure documents. They asked "what are other companies saying? What should we say?" The firms noted similar boiler plate shared among clients, most of which insufficiently met the SEC's requirements.
One lawyer I spoke with said she expects the SEC to give publicly traded firms a "one year pass" before bringing enforcement actions against them for insufficiently outlining digital risk, pre- and post-breach.
Although it doesn't appear that this new office has paid any whisteblowers yet, it is apparently gearing up to do so. Imagine a case where security staff believes that management is not treating a breach as the staff thinks it should be treated, and decides to report the incident to the SEC -- with the possibility of a payout waiting!
At least a half-dozen major U.S. companies whose computers have been infiltrated by cyber criminals or international spies have not admitted to the incidents despite new guidance from securities regulators urging such disclosures.
Top U.S. cybersecurity officials believe corporate hacking is widespread, and the Securities and Exchange Commission issued a lengthy "guidance" document on October 13 outlining how and when publicly traded companies should report hacking incidents and cybersecurity risk.
But with one full quarter having elapsed since the SEC request, some major companies that are known to have had significant digital security breaches have said nothing about the incidents in their regulatory filings.
Now Senator Rockefeller is taking a closer look as reported by Jennifer Martinez of Politico this week:
Senate Commerce Chairman Jay Rockefeller thinks the SEC needs to ensure hacked companies are adequately informing their investors about when they suffer a security breach or cybersecurity risk that could jeopardize their financial standing.
The West Virginia Democrat wants the full commission to issue guidance for companies — right now they only have staff-level instructions — on when they have to report cyber breaches or threats and what steps they’re taking to minimize the risks.
“It’s crucial that companies are disclosing to investors how cybersecurity risks affect their bottom lines, and what they are doing to address those risks,” Rockefeller said in a statement to POLITICO.
Rockefeller will soon introduce an amendment that calls on the SEC to issue interpretive guidance on when companies must disclose cybersecurity risks and intrusions. Staffers for the Commerce Committee are finalizing the amendment and aim to introduce it before Sen. Joe Lieberman’s (I-Conn.) cybersecurity bill goes to the floor.
This is the sort of activity that I think is going to mark a sea change in digital security over the coming years. I don't expect engineering or technical developments to have anywhere near the same level of impact as issues that involve legislators, lawyers, insurers, and financiers. Stay tuned!
TweetCopyright 2003-2012 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com and www.taosecurity.com)
Alhamdulillah, kini majalah IK isu #3 sudah berada di pasaran. Walaupun masih setahun (3 bulan) jagung, tetapi mendapat sambutan yang amat hebat di seluruh Malaysia dengan berpuluh ribu pembaca! Thanks kepada semua yang menyokong Majalah IK - Inspirasi Kejayaan!
Ramai juga yang baru menjumpai majalah IK di pasaran, ingin dapatkan back issues, iaitu isu #1 dan juga #2 untuk dibuat koleksi. Untuk maklumat anda, info di dalam majalah IK tidak luput usia, oleh itu, isu-isu yang lepas juga boleh dibeli dan dikumpul semua untuk melengkapkan set majalah IK. Untuk melanggan majalah IK dan mendapatkan siu-isu yang lepas, sila lawati [www.ik.com.my] dan mulakan langganan anda!
Menarik dalam isu ke#03 kali ini:
ps: Oleh kerana Majalah IK masih lagi baru, dan pengedaran belum meluas lagi, kami kini sedang berusaha memperluaskan kawasan pengedaran. Sementara itu, untuk memastikan anda tidak ketinggalan mendapatkan majalah IK, langgan di [www.ik.com.my] hari ini
Untuk berjaya dalam perniagaan yang dipenuhi pesaing kini, usahawan perlu mencari satu ‘kelainan’ dalam produk dan perkhidmatan yang diberikan. Untuk menonjolkan perniagaan kita dalam pasaran yang amat gamat, kelainan diperlukan.

Teringat saya ketika ke pasar malam dan ingin membeli burger. Sudah tentunya di pasar malam, kurang-kurang ada 3-4 gerai burger. Kesemuanya menjual burger yang sama, kecuali satu gerai burger ni, mempunyai kelainan!
Si peniaga burger tersebut, sambil membuat burger tersebut, melambung daging burger itu ke udara, dan menyambut semula ke kuali. Selang beberapa saat, dia akan lakukan lagi, melambung daging burger keudara dan menyambutnya semula. Pada gerainya ditulis ‘Burger lambung’!
Wah! Hebat sungguh dan memang ramai beratur untuk membeli ‘burger lambung’ ni. Tidak seperti gerai-gerai burger yang lain. Usahwan ini berjaya menciptakan kelainan sehingga barisan beratur pun panjang- termasuk diri saya sendiri yang ingin merasa ‘burger lambung’ ini.
Setelah 20 minit menunggu, baru dapat merasa burger lambung ini. Ingatkan, sedaplah sangat burger lambung ni, rupa-rupanya, rasanya sama sahaja dengan burger-burger lain! Lambung tak lambung, serupa sahaja rasanya!
Walaupun lucu juga kisah ini, tetapi, apa yang penting adalah ‘kelainan’ yang berjaya dibawa oleh usahawan ‘burger lambung’ ini. Walaupun produknya sama dengan produk pesaing yang lain, tetapi, kelainan perniagaan yang dibawanya berjaya menarik perhatian pengunjung-pengunjung pasar malam itu.
Salah satu strategi pemasaran perniagaan kita adalah pemasaran mulut-ke-mulut, atau word-of-mouth- di mana ianya adalah strategi yang percuma dan datangnya dari pelanggan-pelanggan yang berpuas hati. Ianya dikatakan juga, 60% daripada keuntungan sesuatu perniagaan, datangnya daripada promosi mulut-ke-mulut yang positif.
Promosi sebegini hanya boleh dicipta dengan melahirkan rasa puas hati daripada pelanggan.
Pelanggan bergembiran dengan belian yang dilakukan, gembira dengan bantuan yang diberikan, dan merasakan mereka melakukan keputusan yang amat baik. Perasaan yang lahir dalam hati ini akan membuatkan mereka tergerak untuk kongsikan pengalaman dan keputusan belian mereka bersama rakan-rakan dan keluarga.
Sebagai usahawan, kita perlu ingat bahawa perniagaan bukan hanya untuk mengaut keuntungan semata. Tetapi, perniagaan juga adalah bertujuan untuk memberi kemudahan dan membantu mereka yang membeli.
Banyakkan senyuman ketika berniaga, di riwayatkan Rasulullah juga ketika berniaga amat murah dengan senyuman dan berlaku adil kepada semua pelanggan. Seraya mengakibatkan perniagaan baginda laris disambut pelanggan.
Istilah “customer is King” sering kali digunakan di buku-buku perniagaan barat. Lebih lagi, kita perlu melakukan tuntutan konsep persaudaran dengan Islam bersama pelanggan-pelanggan kita.
Dalam perniagaan, sekiranya pelanggan tidak puas, maka untung perniagaan kita juga tidak akan puas!
Package:
Form Build
Summary:
Compose and output HTML forms
Groups:
HTML, PHP 5
Author:
srihari
Description:
This class can be used to compose and output HTML forms...
Mengapa blog masih lagi relevan pada zaman media sosial yang lebih aktif seperti Facebook, Twitter dan You Tube? Jom ikuti akronim B-L-O-G
B - Bina Jenama
Blog amat penting dalam mebina jenama perniagaan kita. Seseorang masuk ke laman web kita sekali, dua, belum lagi akan membeli produk yang kita pasarkan. Ia memerlukan pelawat melawati laman web kita berkali-kali (5-6 kali) barulah mereka akan membeli daripada kita. Ini kerana, ia mengambil masa untuk membina kepercayaan orang ramai keatas laman kita, dan blog yang sering dikemaskini akan membina kepercayaan dan jenama perniagaan anda!
L - Letakkan imej/gambar
A picture paints a thousand words! Untuk memberi tarikan kepada blog kita, pastikan setiap posting kita mengandungi imej atau gambar (dan bukan hanya teks sahaja). Imej atau gambar pada setiap posting blog anda akan memberi tarikan untuk pelawat membaca. Satu tip tambahan, meletakkan gambar orang/manusia dapat menarik psikologi pelawat oleh kerana manusia boleh relate dengan manusia lain.
O - Optima di enjin pencari
Enjin pencari seperti Google, Yahoo atau MSN suka pada laman web yang banyak maklumat dan sering dikemaskini. Blog, boleh mengoptimakan laman web kita di enjin pencari dan membawanya ke muka hadapan enjin pencari. Segala mesej-mesej yang ditulis di blog akan diarkibkan untuk selama-lamanya- tidak kira sama ada artikel yang ditulis pada tahun 2006 (seperti di blog ini), masih lagi boleh dijumpai di enjin pencari di muka hadapan!
G - Gandakan pendapatan
Di blog, kita boleh menjana pendapatan tambahan dengan meletakkan iklan Google.com/adsense ataupun NuffNang.com.my. Dengan meletakkan iklan di blog kita, sambil blogging, kita boleh menjana pendapatan.Jangan lupa juga, blog merupakan platform yang amat baik untuk menjalankan perniagaan berbentuk affiliate tanpa sebarang modal!
Package:
Protect Image
Summary:
Put transparent watermark text on images
Groups:
Graphics, PHP 5
Author:
Karl Holz
Description:
This class can put transparent watermark text on images...
Package:
Protect Image
Summary:
Put transparent watermark text on images
Groups:
Graphics, PHP 5
Author:
Karl Holz
Description:
This class can put transparent watermark text on images...
Package:
ApPHP Data Validator
Summary:
Validate sets of values in different ways
Groups:
PHP 5, Validation
Author:
Chara Miteo
Description:
This package can validate sets of values in different ways...
By now you've likely heard the proposal that the University of Florida plans to drastically restructure its Computer Science department, CISE.
While the details are not as provocative a picture as the Forbes article paints, the proposal is still bad for the university and its students (read the actual proposal). Also, as an alumnus, the proposal is, frankly, embarrassing.At a time when the United States needs more STEM graduates than ever, universities ought be doubling down on their Computer Science programs. I encourage you to write to the university. Even if unaffiliated with Florida, this restructuring sets a bad precedent for other institutions.
Today, I sent this email:
President Machen & Dean Abernathy,
I am writing to express my concern with the proposed changes to CISE. Contra more provocative coverage, I understand that the department is to undergo restructure and not outright elimination. I also understand the significant budgetary pressures facing Florida. Nonetheless, the proposed changes to CISE are wrong for the university and wrong for its students. Moreover, they set an ill precedent for other institutions at a time when the world needs not fewer, but more, CS graduates.
The proposed restructuring will irremediably harm the ability of Florida to attract top-caliber CS instructors, researchers, and students. The elimination of graduate and research programs will result in the loss of existing top faculty and place current students, who enrolled in graduate programs in good faith, in an unfortunate and precarious situation.
I am an engineer at Google and sit on a Hiring Committee, responsible for hiring decisions across my office. I am also an engineering manager. While we look for smart, driven individuals of varied and many backgrounds, this proposal will assuredly hurt Florida graduates beginning their careers. Universities with strong software--that is, CS--curricula and deep research programs matriculate students best equipped to excel in today's technology companies--or start the companies of tomorrow.
When the largest, most successful companies in the world are software companies clamoring for more and better engineers, Florida should increase, not decrease, its investment in Computer Science.
I understand these budget cuts were imposed upon you. I wish they were not. Important decisions are rarely easy, but you must revert this proposal.
Yours sincerely,
Robert Love
Staff Software Engineer, Google
BA Math & BS CS, UF '04
Update: Hours after my email becomes the focus of his day, President Machen issued this statement to the university community regarding the budget:
Engineering Dean Abernathy has agreed to set aside the previously announced proposal as the department chairmen of CISE and ECE continue to flesh out details of a new proposal in consultation with students, faculty, staff, alumni and industry partners. The college has no plans to close any departments.
The budgetary issues facing our states and public universities are not over. Nor do I believe that the threat to Florida's CISE department is past. Nonetheless, this is an important victory, a crucial step worthy of celebration.
Package:
Random Secure Password
Summary:
Generate a random text from lists of characters
Groups:
Security
Author:
Hossam Suliman
Description:
This class can generate a random text from lists of characters...
The latest Ubuntu 12.04 LTS is going to be released in (28 April 2012), that is less than a week! The latest features of Precise Pangolin are:
1. Linux Kernel
Ubuntu 12.04 will use a kernel based on the 3.2.12 upstream Linux kernel, which include a patch that makes Linux powered laptop consumes more efficiently
2. HUD – Intelligent search feature in Ubuntu 12.04
Stands for Heads-up Display, HUD can be used to search for items in the menu bar in most applications. For example, if you are looking for a particular menu (or functionality) in GIMP, but can’t quite recall its position, you can use HUD to search it. Pictured here here is an attempt to search for ‘Blur’ filter for GIMP.

Currently HUD only works with application that supported Global menu, which means you can’t use it in LibreOffice.
3. Rhythmbox replaced Bansee as the default multimedia player
A decision came during the last Ubuntu Developer Summit (UDS). This move is connected to the new community decision to remove Mono and any application that depends on it from the default installation.
Another casualty is Tomboy note-taking application and gbrainy (game) which also depends on Monoi
**personally, I find depending on Mono application could be problematic, moreover those applications aren’t taking advantage of the ‘portability’ of the .NET platforms (It can’t be used on Microsoft Windows either, not without extensive hacking). So what’s the use of including Mono application on Ubuntu, except for bloating distros?
4. Global Privacy Settings
Ubuntu 12.04 LTS features “Privacy” option in the System Settings screen. The new Privacy Menu gives users the option of turning off History recording for users activities with a click of a menu.


Users may also disable activity recording for a specific group of applications (Instant Messaging, Web browsing, Office Documents, Emails and Multimedia), note that this option *MAY* only work on application that comes with Ubuntu default-installation.
5. Ubuntu *.ISO installer will exceed CD-ROM size
CD-ROM was used as installers on computer platform since 1994, back then the 650MB storage was larger than the average hdd capacity of around 320MB-500MB. The practice of releasing CD-sized ISO have since followed Linux distro for years, well after DVD drive and DVD-writers have become common.
Starting with Ubuntu Precise Pangolin (12.04 LTS), Ubuntu *.iso sizes will not fit CD-ROM anymore. it’s ISO size is estimated to be around 750MB to 800MB. Users may burn the ISO on DVD or use utilities such as UNetBootin to create bootable USB Drive.
My Thoughts
I think Ubuntu is going strong on this release with vast improvements on the usability, especially on the aspect of the UI user-friendliness to those who are new to GNU/Linux. However, I still thinks that Unity UI (and to the extend, the Ubuntu Software Center) is VERY SLOW even when running on a modern system as it took about 10 seconds to load Ubuntu Software Center.
Frankly, I think Ubuntu and the general GNU/Linux desktop community should improve the perceived latency of its UI first in order to persuade people to use open source operating system.
Source:
If you've been reading this blog for a while, you know I don't think very highly of mathematical valuations of "risk." I think even less highly of the clowns in the financial sector who call security professionals "stupid" because we can't match their "five digit accuracy" for risk valuation. We all know how well those "five digit" models worked out. (And as you see from the last link, I was calling their bluff in 2007 before the markets imploded.) Catching up on last week's Economist this morning I found another example of financial buffoonery that boggles the mind. The article is online: Inter-bank interest rates; Cleaning up LIBOR -- A benchmark which matters to everyone needs fixing:
It is among the most important prices in finance. So allegations that LIBOR (the London inter-bank offered rate) has been manipulated are a serious worry.
LIBOR is meant to be a measure of banks’ own borrowing costs, and is used as the foundation for a host of other interest rates. Everyone is affected by LIBOR: it influences the payments made on mortgages and personal loans, and those received on investments and pensions.
Given its importance, the way LIBOR is calculated is astonishingly flimsy. LIBOR rates are needed, every day, for 15 different borrowing maturities in ten different currencies. But hard data on banks’ borrowing costs are not available every day, and this is the root of the LIBOR problem.
The British Bankers’ Association (BBA), responsible for LIBOR, gets around it by asking banks, each day, what they feel they should pay to borrow.
So LIBOR rates—and the returns on $360 trillion of financial contracts related to them, five times global GDP—are based on best guesses rather than hard data.
Let that sink in and forget about what you learned in business school or economics classes. LIBOR isn't based on actual rates; it's based on feelings!
The next part of the article talks about suspicions that banks manipulate this broken process to the advantage of the financial sector.
The remainder offers recommendations for improvement:
[T]he BBA should revamp LIBOR to ensure it is simple, transparent and accountable. These principles suggest LIBOR should be based on actual inter-bank lending, with any gaps filled in with the help of statistical techniques. Banks’ own guesses should be used as a last resort, not the first.
And regulators should collect data that could help spot LIBOR cheats: banks should be required to submit information on other banks’ borrowing costs, as well as their own. Regulators could cross-check submissions against hard data on banking-sector risk, and publicly report LIBOR abusers.
Keep this system in mind the next time a so-called "master of the universe" offers a lecture on measuring risk in digital security.
TweetCopyright 2003-2012 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com and www.taosecurity.com)
Package:
TrialPay Dynamic Products Generator
Summary:
Create buttons to pay for products using TrialPay
Groups:
E-Commerce, HTML, PHP 5
Author:
Steven
Description:
This class can create buttons to pay for products using TrialPay...
Package:
Verify User
Summary:
Validate user with a record in a MySQL table
Groups:
Databases, PHP 5, User Management
Author:
Renato Menezes Portugal
Description:
This is a simple class can validate user with a record in a MySQL table...
Package:
FormGenerator
Summary:
Generate and validate Web forms
Groups:
HTML, PHP 5, Validation
Author:
Kacper Rowinski
Description:
This class can generate and validate Web forms...