Results of Vegan December

January 2, 2010 – 11:58 AM

As some of you know, I decided to go vegan for the month of December just to try it out and see what all the hype was.  This morning was my final weigh-in for this vegan experiment and I must say the results were really impressive.

First off, those who know me know that I was born and raised a “meat and potatoes” kind of guy and maintained this throughout my entire 36 years.  I kept my weight somewhat under control until I got into the IT field which required me sitting at a desk for 8 hours a day with little to no exercise.  This has been increasingly catching up to me in the last few years and I could feel my clothes getting tighter and tighter.  We bought a Bowflex and an Elliptical Trainer and I started working out as much as possible.  Yes, I dropped a few pounds here and there but I knew my diet was holding me back from seeing the full results.  I love food and this was going to be hard for me to change.  My girlfriend took a nutrition class a couple of years ago so we decided to start changing a few smalls things in our diet (aka “baby steps”).  We started by replacing white bread with whole wheat, whole milk with soy milk, etc.  We started seeing some small results almost immediately but we still kept meat and dairy in our diet because I was very reluctant on totally getting rid of it.  This is all I “knew” to eat and I was afraid my body would start wigging out and going into convulsions (hey, it could happen..).  Finally, late this year I started reading a few health websites, watching a few horrible videos and decided to just go vegan for a while and see what happens.  I had nothing to lose at this point.  It was a major culture shock at first but got easier and easier as we went.  We had some awesome recipes from various sites to carry us through the whole month and I must admit that some of them even rivaled their meaty counterparts.  We ate everything from tacos to burgers to lasagna.  All were extremely tasty and in the end I can safely say that I was not missing meat or dairy at all.  Even now that the month is over I do not see myself going back to eating what I was previously.  Here are the main reasons why:

Noticeable results:

  • Lost 11 pounds  (did not even exercise at all during the month so the results were just from the diet change)
  • BMI dropped almost 2 full points
  • Lost almost 2 inches from my waistline
  • Feel healthier
  • Look healthier
  • Have more energy
  • Sleep better at night
  • Random asthma-like symptoms vanished

These are just what I noticed and I’m sure there would be many more if I would have done it more scientifically like getting before and after blood work for example.  But these are more than enough to be impressed and start considering a major change in your permanent diet.

Roll your eyes all you want – I know I did for 36 years – but there truly is something to this.

Fox Sports Web Site Compromised

December 29, 2009 – 2:55 PM

Websense Security Labs ThreatSeeker Network has detected that the Fox Sports site has been compromised and injected with malicious code. Fox Sports is a division of the Fox Broadcasting Company. It specializes in the latest sports news and world sports updates. Fox Sports has an Alexa ranking of 330.

Our research shows that the site has been injected with two pieces of malicious code. One of them is the latest Gumblar campaign, and the other redirects individuals to a malicious Web site, whose link was unreachable at the time of this alert.

The ThreatSeeker Network has detected that thousands of Web sites have been compromised by the latest Gumblar campaign. The Gumblar page is highly obfuscated. After deobfuscation, the page uses PDF and Flash exploits to run malware in order to control a victim’s computer. In addition, a piece of VBScript is executed to download malware.

Source:
http://securitylabs.websense.com/content/Alerts/3516.aspx?cmpid=slalert

Microsoft confirms IIS hole

December 29, 2009 – 5:46 AM

Microsoft has confirmed the security hole in its IIS web server, but hasn’t disclosed which versions of the product are affected. According to the finder of the “semi-colon bug”, versions up to and including version 6 are vulnerable. The hole allows attackers, for instance, to camouflage executable ASP files as harmless JPEG files and upload malicious code to a server.

Microsoft’s Security Response Center (MSRC) says it is investigating the vulnerability and has so far not found evidence of any attackers actively exploiting the hole to compromise a server. According to the vendor, the required conditions present an obstacle for successful attacks: Attackers must have authenticated themselves on a server and possess read as well as upload privileges to a directory which, in turn, must allow the execution of code.

Source:
http://www.h-online.com/security/news/item/Microsoft-confirms-IIS-hole-893413.html

W3 Total Cache

December 26, 2009 – 5:29 PM

I’m trying out a new caching plugin for Wordpress called W3 Total Cache and so far I am very impressed.  PC Sympathy is now running it and using Amazon Cloudfront as the CDN.  I see a tremendous improvement over the other caching plugins.  Here’s some bullet points for W3 Total Cache from their website:

Benefits:

  • At least 10x improvement in site performance (when fully configured: Grade A in YSlow or great Google Page Speed Improvements)
  • “Instant” second page views (browser caching after first page view)
  • Reduced page load time: increased visitor time on site (visitors view more pages)
  • Optimized progressive render (pages appear to load instantly)
  • Improved web server performance (easily sustain high traffic spikes)
  • Up to 80% Bandwidth savings via Minify and HTTP compression of HTML, CSS, JavaScript and RSS feeds

Features:

  • Compatible with shared hosting, virtual private servers and dedicated servers / clusters
  • Transparent content delivery network (CDN) integration with Media Library, theme files and WordPress itself
  • Caching of (minified and compressed) pages and posts in memory or on disk
  • Caching of (minified and compressed) CSS and JavaScript in memory, on disk or on CDN
  • Caching of RSS (comments, page and site) feeds in memory or on disk
  • Caching of search results pages (i.e. URIs with query string variables) in memory or on disk
  • Caching of database objects in memory
  • Minification of posts and pages and RSS feeds
  • Minification (combine and remove comments / white space) of inline, embedded or 3rd party JavaScript (with automated updates)
  • Minification (combine and remove comments / white space) of inline, embedded or 3rd party CSS (with automated updates)
  • Browser caching of CSS, JavaScript and HTML using future expire headers and entity tags (ETag)
  • JavaScript grouping by template (home page, post page etc) with embed location management
  • Non-blocking JavaScript embedding
  • Import post attachments directly into the Media Library (and CDN)

Again, so far so good.  But I would like to give it a full month and then check some server stats.

Secure DNS server launched

December 17, 2009 – 9:13 AM

Secure64, which specializes in products designed to support the domain name system (DNS), has released the product to help prevent a condition in which the server’s local list of domain name mappings is corrupted. Attackers create this condition by pretending to be another DNS server responding to a DNS query.

One of the best defenses against DNS cache poisoning is speed. The more queries that a DNS server can process, the less chance there is of an attacker swamping the system with spoofed queries and having a strained DNS server accept one of them. Secure64 DNS Cache can cope with 125 000 queries per second, the company said.

The product also sports other cache poisoning countermeasures, including an operating system called SourceT running on HP Integrity servers. The DNS server uses a completely different implementation to the standard BIND mechanism. It features SNMP traps, and logs abnormal conditions. It also includes a moving statistics feature to provide rolling updates of attack conditions.

“Under attack, the system can provide details to help administrators set upstream router filters to protect bandwidth,” Secure64 said.

Source:
http://www.infosecurity-us.com/view/6023/secure-dns-server-launched/