Journaling on estrip is free and easy. get started today

Last Visit 2018-12-22 21:33:45 |Start Date 2003-07-07 03:39:31 |Comments 5,609 |Entries 6,422 |Images 14,677 |Sounds 119 |SWF 21 |Videos 322 |Mobl 2,935 |

02/28/10 03:39 - 35ºF - ID#51090 pmobl

The ice throne


We went late yesterday evening to the ice maze. I think it was a good
time to go because although there were still a lot if people out, we
didn't have to wait in lime. I thought it was pretty awesome but a bit
slushy. Afterwards we listened to some music but sadly the tubing was
closed at that point.
image
print add/read comments

Permalink: The_ice_throne.html
Words: 65
Location: Buffalo, NY


Category: food

02/27/10 11:11 - 32ºF - ID#51086

Pomelo

The next fruit on my quest for the citrus Holy Grail was a pomelo . It tasted like a grapefruit but without the bitter. It acrually tasted very pleasant. I keep hoping there is some other citrus flavor that is as unique to the other citrus fruits as orange or lemon is to lime. I guess the subtle nuances between tangerine and orange, mandarin and the other orange-a-likes are interesting but my absolute favorite right now is meyer lemon

The problem was that it is almost the size of a volleyball and the
skin is so thick. The ugli fruit from my earlier journal was much
easier to peel and eat. I managed to peel it abou 10 minutes. Each
section was in a leathery fiber pouch. I don't think I would ever get
one again.
image
print addComment

Permalink: Pomelo.html
Words: 152
Location: Buffalo, NY


Category: buffalo

02/27/10 09:18 - 32ºF - ID#51085 pmobl

So clean you could eat off it

One good thing about buffalo. Everytime I go down in the buffalo
subway I am amazed at how clean the tracks are compared to everywhere
else I have ever visited.
image
print add/read comments

Permalink: So_clean_you_could_eat_off_it.html
Words: 36
Location: Buffalo, NY


Category: web

02/27/10 03:05 - 33ºF - ID#51082

An, Ban, Gan list-style-type

I was working with CSS for HTML lists today and decided to look over the specs for list-style-type options. I was fully aware of image, disc, squae, circle, alpha, latin, and greek but what surprised me was the inclusion of georgian and armenian numbering options . How did they make it into the basic CSS spec for list types? It seems like such a small isolated part of the world.

Armenia Numerals

Georgian numerals don't even have a wikipedia page.


print addComment

Permalink: An_Ban_Gan_list_style_type.html
Words: 95
Location: Buffalo, NY


Category: web

02/26/10 05:10 - 26ºF - ID#51079

Software patents suck

Can you believe this? I hope the facebook people die. If the U.S. goes further in this direction than I am leaving.

Facebook received a patent for:

"dynamically providing a news feed about a user of a social network." In the most basic terms, this means Facebook has patented technology that delivers the stuff filling up your newsfeed like shared



Think how ridiculous this is. Its one thing when you do something unique but "dynamically providing a news feed about a user of a social network." is something that was going on way before facebook.
print add/read comments

Permalink: Software_patents_suck.html
Words: 108
Location: Buffalo, NY


Category: food

02/25/10 09:30 - 26ºF - ID#51073

Ugli fruit

The ugli fruit sure is ugly and the taste is not unique enough to warrant looking at it. It basically tastes like a tangerine.
image
print addComment

Permalink: Ugli_fruit.html
Words: 36
Location: Buffalo, NY


Category: signs

02/22/10 10:23 - 32ºF - ID#51063 pmobl

Sign at work

Does everyone see the irony in this. (E:enknot) put this in the microwave at work to remind people to be clean with it and now the sign is dirty too.

image
print add/read comments

Permalink: Sign_at_work.html
Words: 35
Location: Buffalo, NY


Category: holidays

02/22/10 10:22 - 32ºF - ID#51062 pmobl

I am ready for st patrick's day

Look at that beer mug hat from (e:james,51014) on my hall tree.
image
print add/read comments

Permalink: I_am_ready_for_st_patrick_s_day.html
Words: 18
Location: Buffalo, NY


Category: food

02/22/10 09:51 - 26ºF - ID#51059

The swordfish was delicious

Even the mercury was good

image
print addComment

Permalink: The_swordfish_was_delicious.html
Words: 16
Location: Buffalo, NY


Category: computers

02/20/10 11:02 - 30ºF - ID#51054

Jamf sendImageCapture and video spying

In light of the recent school video recording laptop drama I decided to investigate the system my work uses to manage my laptop.

My camera is taped over and this story explains why. The pack of the cigarettes in the background are candy ones for anyone who is curious and yes I am addicted.
image

JAMF ENABLES REMOTE IMAGE CAPTURE WITH BUILT IN WEBCAM

The system my work uses to manage the macs there is called JAMF casper suite The system seems pretty solid and allows easy management of macs in an enterprise environment. It basically allows a third party at work to control and monitor the client computer and its usage at all times, install software and to run scripts as root from afar. I frankly haven't trusted or loved my computer the same since it was installed but I realize I have no choice about this as I do not own the machine. The real point of this article is about the image capture part capability which is downright sketchy.

Disclaimer: I am in no way suggesting this is being used inappropriately at my work nor am I suggesting that there was any tampering with the Jamf binary or that there is any malicious intent from anyone. I just thought this might be of interest to anyone else who has their laptop managed with JAMF.

I decided to go ahead and explore the JAMF binary on my computer with a hex editor to see if it had an mention of images.

image

I found a reference to sendImageCapture. It was also interesting to see they must also be using svn for development. When executed with /usr/sbin/jamf sendImageCapture it attempts to take a picture with the laptop webcam and send an image to the JSS (a server) which manages my computer. It does it pretty sneakily putting the file into /private/snapshot.jpg for a millisecond and then quickly removing it with no notice to the user.

I put a sniffer on the folder to trap the file upon creation and copy it somewhere else so I could examine it. It is indeed a snapshot from my webcam although the feature is either intentionally underexposed as some sort of encryption or slightly flawed in that the images are quite dark. Nevertheless, that can certainly be fixed with some simple image editing I was able to see the room around me in photoshop and possibly they are auto fixed when arriving at the JSS.

In defense of the current deployment I found a Jamf KB about it which seems to mentioned you could not deploy the sendImageCapture.sh and that script is in fact not deployed by our JSS means they probably thought about this and decided not to. The problem is that that script is only one line which executes:

/usr/sbin/jamf sendImageCapture

meaning it is essentially just an alias for something that is already deployed on every computer controlled by JAMF and it can be both locally and remotely executed by the casper user or any other admin user on the machine. Once again: I am in no way suggesting it is being used.

The strange part is that unlike all of the other Jamf functionality it reports nothing in either the system or jamf.log when fired but reports: Uploading /private/tmp/snapshot.jpg to the JSS_URL ... to stdout. Additionally, this feature is not listed when you use /usr/sbin/jamf help which lists all the other jamf commands.

I could not find anything referencing the microphone or sound but I am not assured that does not exist. I assume they would not have this as it would be totally illegal to record randomly without consent.
print add/read comments

Permalink: Jamf_sendImageCapture_and_video_spying.html
Words: 659
Location: Buffalo, NY


Search

Chatter

New Site Wide Comments

mike said to mike
Well really I did not bury the hatched in my mind I guess because now 5 years later, I just saw him ...

mike said to mike
Well really I did not bury the hatched in my mind I guess because now 5 years later, I just saw him ...

mike said to mike
Well 14 years later I have more grays but still solidly more pepper than salt so that's good at leas...

mike said to mike
Well 14 years later I have more grays but still solidly more pepper than salt so that's good at leas...