Need help with your business technology?

p: (415) 409-9557 e: adria@butyoureagirl.com

Category: Politics

Loving Day: How Interracial Marriage Became Legal [VIDEO]

June 12th is Loving Day and marks a time in history when people thought quite differently about who could love who.

They did this sort of thinking out out and put laws in place to match those thoughts.  I knew about the court case but didn’t know there was an actual day to celebrate and recognize a change on love an marriage in America.

I participated in a guided interview on Growing up mixed in America this Sunday as a part of MTV’s ACT awareness campaign and decided to do a video to share what’s become known as “The Loving Story”:

In 1958 two people decided to get married.  They were in love.  Unfortunately, Mildred and Richard lived in Virginia at the time where laws like the Racial Integrity Act of 1924 prevented them from legally getting married.  Why?  Mildred was Black and Richard was White.  They decided to go to Washington D.C. to get married because it was important to take those vows and pledge their love for each other.

Well, it turned out Virginia not only had a law against interracial marriage but also one against getting married in anther state and trying to be all uppity and return to Virginia!  The Lovings were arrested in their home and taken to jail.  The judge was going to sentence them for one to three years but told them if they left the state (for at least 25 years), he would let them leave.   Read More…

SXSW 2011 Vote Up: Socio-Tech Panels With A Bit Of Drama Sauce

SXSW 2011 conference header banner
Last week voting opened up for SXSW and I’ve pulled together a collection of panels submitted by some of my favorite people on Twitter (and in person!) and I’ll be doing a followup SXSW post on cloud companies with panel submissions.

My submission made it in even though I didn’t get an email from the SXSW staff.  I’ve been graciously invited to speak on two panels so if you want me presenting out SXSW, please vote for the second panel listed, WordPress: The Small Business Swiss Army Knife , because WordPress and  business is where my heart is.

How to Vote for a SXSW panel

First off.  How important is voting anyway?

Voting accounts for 30% of the final vote on which panels are selected.  The other 70% is split between a SXSW board (40%) and SXSW staff 30%.  Last year for my presentation, “How Sci-Fi Shapes The Internet“, I did very little promotion or “vote begging” and it was still selected.  Cream will always rise to the top.

My advice for anyone who feels strongly about getting votes for their panel is to write up a post expanding on the value your topic delivers to the SXSW audience, ask for a vote in the post and ask people to comment on your panel.

Voting for a SXSW panel

You can vote between August 11th – 27th.
You need an account at SXSW.com to cast your vote.
Here are instructions directly from the conference site:

Just sign-up for an account here. During the public voting phase (August 11-27, 2010) all you need to do is sign-up for an account. Signing-up is free, quick and easy. And your sign-up information remains completely confidential.

The SXSW Panels!

Here they are! I’ll tell you which one I voted for at the end *smile*

What The Government Can Learn From Amazon

Adria Richards, ButYoureAGirl.com
Have you ever bought something on Amazon and wondered, “Why isn’t buying a passport as easy as this?” With over 300 million people in the United States, there is certainly room for improvement how their lives are recorded, updated and exchanged.  If the Arpanet was created to provide a centralized, communications network, why are we not taking advantage of this access to lower costs and reduce data errors? Amazon processes, ships, and delivers packages all over the world and can now predict delivery within 12 hours of ordering. Why does your driver’s license take two weeks? We will explore what advances in digital data records and key benefits including: savings on redundant data entry and mistakes, less identity theft and fraud, rewarding efficiency and creating social benchmarks. The other side of this data coin includes managing expectations, privacy, security and opt-out from such programs. RFID’s in passports, pets and popcorn seem like the stuff of science fiction.
READ MORE

Government and Technology government, Privacy, RFID

WordPress: The Small Business Swiss Army Knife <<<< VOTE FOR THIS ONE FOR ADRIA SO SHE CAN SPREAD THE JOY OF WORDPRESS AT SXSW

Stephanie Frost, Zero-G Creative, Adria Richards invited on panel
WordPress has been steadily growing in popularity as a CMS over the last two years because it’s free and relatively easy to learn–especially when compared with other packages like Joomla and Drupal. But WordPress is more than just a convenient choice — in many cases it’s the only web tool a small business owner is ever likely to need. WordPress isn’t just for blogs anymore, seamlessly handling media content, ecommerce, membership sites, search engine optimization, mobile sites, lead generation and much much more. Our panel of experts will describe the many uses and strengths of WordPress and demonstrate how WordPress is adaptable into just about any small business use.
READ MORE
Content Management Content Management System, small business, WordPress

What Comic Books Can Teach Mobile Application Designers

Anjuan Simmons, Adverlyze
Mobile application design is a conversation that allows the developer to speak to the user. While manuals are able to guide this conversation, nothing is more immediate and enduring than the user interface of the application itself. Comic books have evolved through the years to maximize their ability to tell a story while confined to two dimensional static images. This presentation will explore the design principles Eisner shared in his landmark book and specifically apply them to mobile application design. Scott McCloud’s book “Understanding Comics”, which built on top of the foundation laid by Eisner, will also be covered as well as McCloud’s later work “Reinventing Comics”. The comic book medium can provide a blueprint for blockbuster mobile applications as well. When attendees leave this session, they will know how to throw some Eisner onto their mobile application designs!
READ MORE
Mobile Applications applications, design, mobile

How to Ensure a Diverse Tech Event

Erica Mauter, swirlspice.com
Social networking is supposed to be the ultimate facilitator of grassroots interaction between producers and consumers. In the tech space, these online interactions go offline at conferences and unconferences around the world.  Are you hoping to attract more diverse audiences to your existing programming or are you tailoring your programming to diverse audiences? How can your product appeal to a diverse audience if you don’t have a diverse group developing it?  Individuals, organizations, conference organizers, sponsors and bloggers will walk away with actionable steps they can take to diversify events. We’ll explore what event organizers like O’Reilly are doing to encourage new people to attend. We’ll explore the barriers individuals face when joining new online communities and when transitioning into offline participation, as well as opportunities for contribution within the community.
READ MORE
Social Issues Conferences, diversity, Events

Social Media: The Pink Collar Ghetto of Tech?

Keidra Chaney, The Learned Fangirl – Adria Richards invited to panel
With women accounting for the majority of users on social media sites, there are exciting opportunities for women to take leadership roles in social media – as consultants, developers, entrepreneurs and thought leaders. Still, women make up less than 20% of panelists at major tech conferences, while women focused social media conferences like BlogHer, She’s Geeky, and Blogalicious continue to grow. Is social media is seen as a “soft” profession and drawing lower comparative salaries and less room for executive level leadership than other technology – oriented fields? Is this already happening? This panel of women professionals that work in social media will take a hard look at the unique issues women tech professionals face in the age of the social web, and discuss whether social media is helping to crack the “digital ceiling” of the tech world or creating a separate but equal space for women to lead?
READ MORE
Career / Work Concerns digital ceiling, women in tech, women in social media

Under 25 and Rebuilding Communities Using Social Media

Karl Rivera, Teen On Da Rise and Corvida Raven, SheGeeks.net
“Children are the living messages we send to a time we will not see.” -Neil Postman, The Di…  “Children are the living messages we send to a time we will not see.” -Neil Postman, The Disappearance of Childhood (introduction), 1982 As we move into an era of digitalization, today’s youth are poised to reap the rewards they sow (and tweet), and have been given the opportunity make history along the way. The youth are taking the reins on this technological era to generate more options for our lives than ever before. Youth from all over the globe are using digital platforms and tools to transform communities and building our very own empire. Free from financial limitations, cultural pressures, and stigmas, the Internet is serving as one of the biggest platforms to help the youth make impacts in everyday life. We’re creating new jobs, rebuilding communities, expanding networks, developing critical business skills, and learning how to preserve our history. We’re using the internet to “connect the dots” and this panel will take a deeper look at how the youth are making changes.
READ MORE
New Technology / Next Generation community, Impact, Youth

Ten Sexy Skills for Project Success

Denise Jacobs, PapillonEffect Consulting
What if you knew your project would be a success from the very beginning? What if we could do away with dreading the inevitable scope creep, budget blow-out and overrun schedule, what if every team member could take control of the project outcome and make it a win? Join us for a fun, interactive session to learn solid communication skills, great project management tools, and how to cultivate an effective and enjoyable team culture. Leave the session with a fresh approach to looking at tech and new media projects and ways to apply new management skills to your personal workflow.
READ MORE
Career / Work Concerns communication skills, project management, team culture

Die Laughing So Your Brand Can Live

Luvvie Ajayi, Awesomely Luvvie
With people facing chaos in their everyday world and the constant threat of layoffs, debt and war, a little humor can go a long way. When people want an escape from daily life, they turn to the Internet for entertainment and laughs.  In this session, learn how to set yourself and your brand apart from the rest by using humor to engage your audience, build value and get your message out.
READ MORE
Branding / Marketing / Publicity brand, humor

Hater Blocking 101: Your Blog, Your Rules

Panama Jackson, Liz Burr, Very Smart Brothas
Do you author a blog that has engaged in its fair share of controversy resulting in a lot of negative attention and hateration? If so, you’re not alone. “Hate” is a good problem to have. How you deal with the hate can determine if you sink or swim.  Join us for a panel discussion on hateration, how to make the most of it and make it work for you with guests who are no stranger to controversy.
READ MORE

Community / Online Community Audience, blogging, community

You’re Not Obama: Effectively Using Tech for Campaigns

Maurice Cherry, 3eighteen media
Since the 2008 Presidential election, politicians nationwide are realizing that social media can be an effective tool for reaching out to constituents, media, and potential voters. Unfortunately, most of them are completely unaware as to where to begin with integrating social media into their campaigns along with other technologies. E-mail, Twitter, Facebook…how does it all work to get votes? Using best practices and case studies of proven tactics from municipal and federal campaigns, I will show you how to unlock the power of social media and technology to help take your campaign to the next level of engagement.
READ MORE
Government and Technology Political engagement, Social Media ROI, Technology

The Progressive Web: Let’s Change the World (Seriously)

Andy Stratton, Sizeable Interactive with panelist Denise Jacobs, PapillonEffect Consulting

Web 2.0, social media, digital communities and relationships – what next? Can we be doing more? We’re at a climactic turn for technology and how it’s become an immovable piece of business operations and our personal lives – but: *can we be doing more?* Are we balancing our ability to produce, sell and acquire more with improving the overall quality of life for ourselves and our planet? Or are we making it easier to fit more work into the same amount of time.  Analysis, thoughts, musings, hopes and inspirations from my brain, and the brains of my friends and industry peers who believe in the same things and share the same hopes.
READ MORE
humanity, progress, social

Cultivating a User-Centered Culture

Nancy Lyons, Megan Wilker, Geek Girls Guide
We’ve all heard about the importance of user-centered design (hopefully). But, how can a person, a team or an organization hope embrace it as a core value if the entire organization isn’t focused on who those users are? How can we bridge the gap between a typical web developer who is male and between the ages of 18-29 (according to A List Apart’s “Survey for the People Who Make Websites”, 2008), and the 45% of the senior population in the US who are now on the Internet (According to Pew Internet and the American Life Project, 2009)? From design to production to project management to customer service and support, this session aims to help web development teams view work product as a direct outcome of a work culture that includes and respects users at every level.  We’ll prove the hard business value of soft, squishy terms like emotional intelligence, intellectual curiosity, collaboration, and vulnerability. But no hugging, we promise.
READ MORE
Career / Work Concerns social media, users, work culture


Have You Made A Donation To #haiti Besides Your Opinion?

On the 12th of January, Haiti suffered a massive earthquake.
Recent earthquakes near Haiti

For the last 7 days, the entire world has been pulling together to help.  The United States and many other countries have not only asked their citizens to donate but have also allocated funding, medical staff, firefighters, equipment and transportation to help.

An interesting thing happened that I have not observed in previous disasters like 9/11 or Katrina.  It seems that many people found it more interesting to bicker about who was the “best helper” for the people of Hati.  I even saw @ev, CEO of Twitter, wonder this aloud:

@ev wonders how many are contributing to Haiti earthquake vs retweeting Read More…

Adorable Puppy Explains Health Care Bill [VIDEO]

Well Wisher on Twitter Asks Mr. President Barack Obama To Get Crunk

Today, August 4th, 2009, we celebrate the birthday of our 44th president, Barack Obama.
CNN.com Barack Obama acceptance speech in Grant Park Chicago, IL

Of course, everyone celebrates in a different way and the same goes for birthday congrats.

Alisha on Twitter (@alishajuarez) probably is the first person to ask a president to get crunk

Twitter Alisha wishes the president a happy birthday and that he gets crunk

#happybirthdayjohno Ooooooooooooh! @johnmaine :) #HappyBirthdayAmyJo !!! & #HAPPYBIRTHDAYBARACKOBAMA !!! WOOO!!! get crunkk!

Where Do We Go From Here Norm?

st pauls &amp; millenium bridgeI’ve decided to write a summary to give you my perspective two months after putting up the Norm Coleman database blog post.

I created the Norm Coleman blog post to answer the questions I began to receive the night this all happened. I started ButYoureAGirl.com to help people understand technology.

I like to document things (my Inner Nerd at work). You can see a similar example regarding Avira antivirus.

What happened next regarding Wikileaks and going on national television never crossed my mind as a possible outcome of following my geeky curiosity and documenting screenshots.

Photo Credit: Daveybot

Summary

Political Views
What I didn’t know at the time was how this issue was snowballing between the Democrats and Republicans. I don’t own a television and don’t follow politics. I sold my TV on Craigslist in 2006 as a part of “the great experiment” I was reading about on Steve Palina’s blog. I never really was a big fan of commercials anyway. I use David Allen’s Getting Things done (GTD) method of productivity to turn my dreams into reality. Every reporter asked me if I was “partisan”. I actually had to ask the what that was but figured it had to do with being strongly associated to a political party. Now don’t get me wrong, I have beliefs on things like education, the environment, the death penalty, the legal system, oil dependency, health care and taxes. It’s just that none of that had to do with this.

The Media
I started to see traffic spikes on my humble blog March 10th, 2009. By March 11th, more than 1,000 people had stopped by! My average number of daily visitors before then was about 40. Then the calls started. Reporters were calling and asking me to tell them what happened. Being a techie, I thought I was helping them; I now realize many were looking to sensationalize the story and twist my words to make things sound more exciting. I’m now wiser about the media and their “angles”. For those of you who work in technology, you know it can be a challenge to keep someone’s attention as you explain the benefits of data backups that utilize incremental, off-site and image based options. We find it fascinating but non technical people start to “glaze over”.

Where Do We Go From Here?
I want to share that I’m working on something exciting! I’ve been meeting and talking with security consultants around the US. I’ve also talked with people in the data privacy field. I’m working to put together a resource that will bring security and business people together in a way that makes sense. I myself am not a security consultant; rather an IT consultant who values security. I would like to utilize this event to help people connect on this issue and access accurate information on what they need to do to secure their data, networks and websites.

Thank You For Your Support
I appreciate all the words of encouragement, support, suggestions, personal stories from people on the list, research efforts and most importantly, technical folks speaking up to this. The first question I received from a reporter was, “Do you want to go the record about this?”. That reminded me that many people working in the IT field would have not feel comfortable talking about something like this for fear of the backlash. As an independent consultant, I understand I have more flexibility that those working full-time for someone. I also understand that what I do outside of my work does reflect on my work. My clients have been supportive about this issue and I thank them as well; Democrat and Republicans alike. After appearing on The Rachel Maddow Show, I really saw an increase in mentions about me across the Internet (I use Google Alerts to track this). My Technorati rank for this blog doubled. Some blogs were even referring to me as “Dr. Adria Richards”! Doh! I stopped by many sites and left comments to help answer people’s questions and to indicate I did not hold a doctorate degree.

The Haters
There have been people who voiced their opinions on what I did, how I did it, why I did it and so on. I can’t change what I did (looking into the Coleman fake website crash, taking screenshots, writing a blog post about it). I am a person who takes action. Some people are just angry people looking for targets. Some people feel they know what other people should do with their lives. I decided that I wasn’t going to feed the trolls.

How You Can Help
That said, if you are interested in helping with this upcoming project to bridge the gap between unsafe data storage in the business world and best practice data security audits, training and education, contact me.

Stay tuned…

Interview on Rachel Maddow Show for Norm Coleman Database

3/13/2009 MSNBC Interview with Rachel Maddow Friday evening!
[youtube width="550" height="420"]http://www.youtube.com/watch?v=DC-xqVeFMwY[/youtube]

This is tied to my original post about Norm Coleman’s website being insecure.

Read More…

Who is Searching Google for Norm Coleman's Database?

I had a few hundred visitors by 10am so I decided to create a list of the vistors to my blog post on the Norm Coleman Database Leak. For my own safety and to show how EASY it is to track visitors so if my little blog can handle 1,000 visitors in 24 hours, Norm’s office should cough up the numbers that crushed their website server.

Norm Coleman Website Crash Exposes Database and Email Lists

So far, we’ve got the Mayo Foundation, Hennepin County, First Bank, Wells Fargo, Best Buy…

Are these companies where people who donated to Norm Coleman and checking the site from work?

Are they needing to cut up their credit cards?

I will be adding it throughout the day

University of Alabama
College of St. Catherine
Minnesota Public Radio (You never know)
National Institute of Health
American Medical Response
US Department of State
City of New York
Ecolab
West Publishing Corporation
American Medical Response
National Institute of Health
University of Alabama
Massachusetts Institute of Art (very awesome MIT would stop by)
University of California
University of Illinois
University of Minnesota
St. Olaf College
Datacard Corporation
U.S. Senate Sergent At
Medical College of Wisconsin
University of Wisconsin
Fingerhut Direct Marketing (Why are you stopping by my blog?)
Western Illinois University
Faegre & Benson LLP (Lawyers? uh oh)
Dorsey & Whitney (Why is it so popular with lawyers to name law firms like this?)
Cargill
Valley Office Partners
Marvin Windows and Doors
TCF Financial Corporation
Research Triangle Institute (Interesting)
Target Corporation
U.S. House of Representatives
Knight Ridder <- Media company (Thanks redwing!)
IBM
Star Tribune Newspaper
Harland Financial
Academy of Art University
Renolds and Renolds
Mc Miller Company
American Civil Liberties Union (sweet! Hello there!)
General Mills
Amazon.com
Trw Space and Defense
De Castro, West, Chodorow (lawyers again?)
Edina Reality

Who is searching for Norm Coleman's Database?

These website visitor traffic stats are being collected with Clicky.
It's like Google Analytics but you don't have to wait 24 hours.

Norm Coleman Website Crash Exposes Database and Email Lists

Post Updated: 3/29/2009

First off, I would like to thank to everyone.

I’ve decided to write a summary to give you my perspective two months after putting up this blog post. I have continued to add to it in hopes of making the big picture more clear for people who want to understand what happened.

I talk about why I put up the post, the political power struggle I didn’t want to be a part of, how the media took what I said and turned it into what they wanted and what I’m working on to bring about actual change so personal and financial data will be safer in the future.

Continue reading the summary


How ironic is this?  I was on Lifehacker today looking for the article about Eraser (program that securely wipes out files) and saw that January 28th is Data Privacy Day!  What are the chances of a security breach regarding data privacy being discovered on the very day that has been selected to raise awareness of data privacy?  Geeze!

Did interview with PJTV, conservative focused online media site (PajamasTV)

Article at ChannelWeb, Serious Security Flaw Discovered In Less Than 2 Minutes On U.S. Senator’s Web Site

Excerpt from resume of website developer who created Colemanforsenate.com website:

ColemanForSenate.com
* Developed a custom content management system from the ground up in PHP

New Video is up! Live: Coleman Question and Answer after The Rachel Maddow Show 3/14/2009 12:45am CST

Interview with Rachel Maddow Friday evening 3/13/2009 MSNBC
[youtube width="550" height="420"]http://www.youtube.com/watch?v=DC-xqVeFMwY[/youtube]

Interview with MPR Coleman warns donors after data breach (audio of me from the radio)

Blog Post MN Independent Coleman donors express ‘extreme anger,’ fear, worry after breach

YouTube video: How I Found Norm Coleman’s Website Database in 2 Minutes

Best quote to me on the phone: “I just hung on the secret service to talk to you” — unnamed reporter

Lifestream video : I explain what went wrong and answer questions about the Norm Coleman’s website

Interview with MN Independent Coleman’s site wasn’t ‘hacked,’ says IT pro who discovered donor breach

Blog Post at MN Independent Breaking: Coleman’s unsecured donor database revealed on Wikileaks

Blog Post Here Who is Searching Google for Norm Coleman’s Database?

So, it sounds like Wikileaks.org is putting Norm Coleman’s business out on the Internet.


What’s worse than losing a Minnesota Senate race?

Losing your website’s entire database, that’s what.  As if claiming your website was brought down by too much traffic wasn’t bad enough, Norm Coleman’s website received a second round of criticism when I found a database file sitting in a directory that anyone could download…

I first picked up this story from @Chuckumentary on Twitter about Norm Coleman’s office saying their website had been “inundated by tens of thousands of hits today – temporarily crashing the website.” Of course that got me curious as an IT consultant and I went to check it out.  Aaron Landry broke this story because previous website traffic reports and the location of the domain name didn’t match up.  Paul Schmelzer at the Minnesota Independent picked up the story which is where I first saw it.

Norm Coleman’s website crash revealing a database full of supporters is now known as Crashgate.

Curious, I wanted to see where the domain was currently pointing.  I used OpenDNS.com’s cache check to identify the current ip address of 208.42.168.251 and then loaded that address into my web browser.

Screenshot of opendns.com information for colemanforsenate.com

I had to see what all the fuss was about.  Was there really an attempt to bring down the website due to political unrest with these ballots in my state?  Were the allegations of a poorly coded website true?

What I got instead was a plain text listing of directories…

The Database of Norm Coleman

Wowza.  As I was tooling around in the directories, I saw a database file.  I thought, “That’s not right.”  I began taking screenshots and uploading them to Flickr.  I didn’t know what the database contained but hoped there wasn’t financial information in that database.  I figured it was a list of email addresses for Norm Coleman supporters and staff but I did not download it find out.  Did you download the database?

[youtube width="550" height="410"]http://www.youtube.com/watch?v=9qknKAz9LUU[/youtube]

There is a term known as “Google Hacking” where you can actually search for files that people have on sites and ftp areas that have names like “passwords.txt”, “backup.tar.gz”.  Eeek!  Backups should be stored above the “root” folder that is shared out to the internet.  This is showing up because the server located at http://208.42.168.251 was not told to restrict directories from the web.

All photos are licensed under Creative Commons.
Norm Coleman database photos on Flickr

I wonder how much user information is in this database at colemanforsenate.com?

I began posting links to the photos on the blogs of the Minnesota Independent and Minpublius to bring awareness to what I had found.  Would I have done the same if this were a democrat?  Probably.  For me, it’s about computer security and data privacy, not about political affliation.

You can become Norm Coleman’s Website Admin

I will give them the benefit of the doubt and assume I was only able to get here because the website is not functioning.  Below you can see that I could enter an email address, name and password and if this site was working, it would create an administrator in the database.  I found similar files to edit and delete records as well.  Being able to write to the database like this from a form should require an authenticated and active session but I can’t see the code so I don’t know.

wow, is it this easy to create an admin account at colemanforsenate.com?

Indexing of directories is turned on

This is a security risk.  I would hope they have .htaccess files in place to restrict access to the admin directory and that index listings are turned off for the current site.

directory of colemanforsenate.com at ip address 208.42.168.251

Website errors show you configuration file locations

You see errors like this a lot on Joomla websites when there is a problem connecting to the database, there is a permissions issue on a file or when files are missing.

Incorrectly configured Linux server to blame? colemanforsenate.com

Missing log files

This directory is empty.  It doesn’t mean there are no log files (deleted?)

why is this directory for log files empty on the colemanforsenate.com website?

Site is down again

So, the site is being reported by OpenDNS.com as down again and I am getting the same info at DNSStuff.com too.

colemanforsenate.com is back down again accordin to OpenDNS.com

The moral of the story is that you should hire computer and website professionals who understand technology.  You should plan and develop a strategy for downtime and problems.  Don’t put all your eggs into one basket with one website programmer.  If he or she is hit by a truck (or something goes wrong on the website and they have no recourse to help you.

Resources to protect your data

Minnesota Law on Data Security Breach Notification, Statute 325E.61 – This describes what needs to be lost for a company to notify you and how they must go about doing it. Unfortunately, it seems a company can lose your full name, address, income, number of children and previous purchases BUT not be required to tell you. (Disclaimer: I am not a lawyer)

Data Security Breaches in the US 2005, 2006, 2007, 2008, 2009 – Check to see if a school you attended, a doctor you saw, an employer, your local Veterans office, your bank, your utility company, your library or even a hotel you stayed at is listed here.

Resources for website security

The Importance of Web Application Scanning – Acunetix makes an application that can scan websites for vulnerabilities.  There is a free version that will check for XSS (Think back to when Barack Obama’s website redirected to Hillary Clinton’s).

3 Common Website Security Problems – This article from Georgetown University  summarizes how issues on Norm Coleman’s site could have been addressed before “Crashgate”, especially this one on unsecured files and databases:

Unsecured files and databases

When setting up your web site or application, make sure that any files that contain data that is not intended to be public (such as information about people) are not located in public web folders. Do not place such files in folders with the belief that because you are not linking to them, a user cannot find them.

  • Files (such as Access databases) that are datasources for your application must be located in a non-web-accessible folder (the web_datasources folder in your hosting account).
  • Other files that contain data used by the application should also be located in a non-web-accessible folder.
  • Other files that contain non-public information should be placed in a folder that is access restricted using a .htaccess file or other web server access restriction.

Update 12:12am 1/29/2009

Folks, the directory listing for colemanforsenator.com has been replaced with a login box.  But…we know what’s behind the curtain now.

Login box replaces 205mb database on colemanforsenate.com

Update 5:40pm 1/29/2009

Stay tuned for video posting from the 1/29/2009 lifestream:

“Norm Coleman’s Database”

  • why the database was available
  • what it contained
  • how website developers and companies can work to prevent this from happening
  • and take questions from viewers

Update 11:11pm 1/29/2009

Number of hits to the post 54

Photo stats for the post
I wonder how much user information is in this database at colemanforsenate.com? 1,458 views
You can become Norm Coleman’s Website Administrator at colemanforsenate.com 290 views

Current rumors
The database contains social security numbers
The database contains credit card information (POST data)

Update 6:54pm 1/30/2009

Number of hits to the post 610
In-Progress Video of “Norm Coleman’s Database: What Happened and Why”

Post picked up on:
Politics in Minnesota – Epic recount website fail: One Dot One Dot One Dot One

Thanks to Ben for picking out the incorrect use of “then” when I should have used “than” in the header “What’s worse than losing a Minnesota Sentate race?”

FYI: If you enter a fake looking email address with your comment, I will probably not approve it. If you want to share something with me offline, use the contact page. Thanks!

Question from Dennis
What does “Awaiting Moderation Mean? Where’s my comment?

Answer
I did not publish your comment because there was NOTHING technical in it. I have published comments that:

    * indicate how they feel about the info being released
    * indicate how they feel about what I did as an IT person doing this
    * ask questions related to the technology aspect of the Norm Coleman database
    * share personal stories on how this affected them
    * thank me for my efforts
    * support me for taking initiative
    * judge, criticize and blame me for making the wrong choice

If you just want to harp on Democrats vs Republicans and Norm Coleman vs Al Franken, you should go to a political blog and do that.

A Perfect Union in America with Barack Obama and Dr. Martin Luther King Jr.

Today is Dr. Martin Luther King Jr’s birthday.  Had he lived, he would be celebrating his 80th birthday.  While, Dr. King won’t be able to see what will happen tomorrow in Washington, DC when the first Black president is confirmed, many people who he inspired will.

I am grateful to be alive for this historic event.  I missed the civil rights movement, The March on Washington and Woodstock since I wasn’t born until 1978.

The great thing about Barack Obama is he has vision, hope and faith.  Besides being in Washington for the Inauguration tomorrow, you can still participate by volunteering.  The President-elect has setup a website called Renew America Together.

Please enjoy these videos and I wish you a happy Martin Luther King day!

Martin Luther King “I have a dream”

[youtube]http://www.youtube.com/watch?v=PbUtL_0vAJk[/youtube]

Barack Obama: ‘A More Perfect Union’ March 18th, 2008

[youtube]http://www.youtube.com/watch?v=zrp-v2tHaDo[/youtube]

Did you know?

Although it was signed into law in 1983 by President Ronald Reagan, it wasn’t observed by all 50 states until 2000.

How I Helped Elect Barack Obama Using the Internet

This post will serve as a place for me to share how I helped get Senator Barack Obama into the White House.

Although I’ve voted in every past election, this time was completely different because Barack was different. I could identify with him on many levels. Once I heard him speak, I knew I had to step up and do my part to spread the message.

CNN.com Barack Obama acceptance speech in Grant Park Chicago, IL

How I got Involved

  • I registered at http://my.barackobama.com earlier this year to help
  • I made several donations online starting sometime in February when they had the “Match a donation”
  • I attended my local caucus and saw my neighbors who were equally interested in this presidential outcome
  • I began documenting and researching information I found on the internet
  • I had candid discussions with my friends about Barack being/not being a Muslim
  • I listened when people told me why they wouldn’t vote for Barack Obama
  • I prayed, A LOT!

[kml_flashembed movie="http://www.youtube.com/v/BHEO_fG3mm4" height="344" width="425" /]

Twitter on Election Day

  • my neighbor is voting for McCain because he is against socialism #
  • Dang, Barack Obama is blowing up my cell phone with text messages! #
  • Yes. We. Can #
  • Women who reached for the ballot (1920) #
  • Question: If you’re in jail but haven’t been convicted of a felony yet can you submit an absentee ballot? #
  • How to cast your absentee ballot in Minnesota http://tinyurl.com/6bsdtc #
  • Obama and McCain – Dance Off! http://tinyurl.com/59rvzj #
  • RT @xenijardin – Everything you wanted to ask about who will win! Peter Norvig (Google)’s 08 ELECTION FAQ http://tinyurl.com/46tth4 #
  • Today was a good day #
  • This little light of mine, I’m gonna let it shine #
  • @MyronMcDaniel Because it’s election day! My neighbor just called me and they wouldn’t let him vote. I’m going down to vouch for him!!! in reply to MyronMcDaniel #
  • Waiting in line to vote on Election Day is much better than Tickle Me Elmo lines during the holidays #
  • Folks waiting in line to vote November 4th, 2008

  • I voted for Barack Obama November 4th, 2008 – http://snaptweet.com/3db91 #
  • I voted for Barack Obama November 4th, 2008

  • My dog voted today http://tinyurl.com/6fq4pn #
  • I voted for Barack Obama November 4th, 2008

  • I used this guide to help me pick the judges and vote on the school referendum http://theballot.org/2008/twincities #
  • I’m heading out for a 4 hours shift for GOTV (Get Out The Vote) for supporters of Barack Obama http://mn.barackobama.com #
  • Just got back from canvessing in South Minneapolis. I am going to put my feet up and reward myself! #
  • One voter said she couldn’t tell the difference between the two candidates (roll eyes). I gave her my 3 reasons for choosing Obama #
  • 1) My reproductive rights 2) My civil rights 3) My rights as a woman and person of color –> Why I voted for Barack Obama #
  • Does your state allow for paid time off on election days? Check here http://tinyurl.com/5lea56 #
  • CNN.com streaming video has improved since 2 years ago #
  • 4 minutes left in CST time to get in line at your local polling place. #
  • “political media ecology” — cnn.com interview in reference to blogs, youtube.com #
  • oh my god! I just woke up from a nap and Barack is president! Hooray! #
  • He’s biracial just like me :) #
  • Way to go America!!!! #
  • Yes. We. Did! #
  • Cnn.com Obama and Biden hugging their wives to celebrate victory, Grant Park Chicago, IL

  • “Yes we can heal this nation” #
  • “millions of voices calling for change” #
  • “but in the unlikely story that is America, there has never been anything false about hope” #
  • @IanGun nice “The nightmare is finally over” in reply to IanGun #
  • CNN.com Barack Obama supporters in Grant Park Chicago, IL

  • RT @Ohdoctah Cartoon depiction of our 44 US Presidents http://tinyurl.com/5rt8jb #
  • I am so grateful to have come of age for this historic event. I made a promise to contribute and I did. Technology + Hope = 2008 Election #
  • US Minnesota Senate Race – Al Franken trailing by 16,000 votes – http://snaptweet.com/640e1 #
  • US Minnesota Senate Race - Al Franken trailing by 16,000 votes

  • Minnesota Presidential and Senate Election Results http://tinyurl.com/5bvnuv #
  • Al Franken still trailing by 6,000 votes for MN US Senator http://tinyurl.com/5bvnuv #
  • MN US Senate numbers with 98.57% precints reporting – Norm Coleman 1,192,409 vs Al Franken 1,186,530 http://tinyurl.com/5bvnuv #
  • Minnesota US Senate race: Al Franken loses by 1186 votes http://tinyurl.com/5bvnuv #
  • @anjuan amen to that. Please allow him to not get pulled into petty drama. As a lawyer, I would think he can spot “baiting” a mile away in reply to anjuan #
  • Will Barack Obama be the first President to have a blog? Will we get nation updates by text message? #
  • Election day weather was so beautiful! Today is cold and rainy, blech! #

Interesting Facts

Minnesota’s current estimated Voting Eligible Population is 3,741,514.

McCain Be Old Song Lyrics, He Farts Dust on VH1 [Youtube]

[youtube]http://www.youtube.com/watch?v=y6MAYnGZFE0[/youtube]

“McCain Be Old” – Jelly Doughnut

Jelly first caught my eye with his freestyle in a doughnut suit on Youtube. I saw it around the same time as SNL’s Lazy Sunday and thought he was more entertaining so I share his new video on John McCain.

Update 3: Entire lyrics for “McCain Be Old” song

Yo, this milk is really old,
The Dead Sea Scrolls are pretty old man,
Well, you guys want to know what’s really old?

McCain be old

He witnessed the Big Bang, Oh, he’s old,
He still uses an abacus, how’d he get so old,
He breastfed Strom Thurman, McCain’s old,
He’s a hunter gatherer,

Yo, O-L-D, that’s what McCain be,
Older than the dude with the Grail at the end of Indiana Jones 3, (what)
Everything he touches turns into an antique,
He looks like Skeletor with hella more cheeks, (heh)
He’s older than bacon, (what)
He’s older than Satan, (what)
He’s older than the dude who wrote “The Road Not Taken”, Robert Frost?
Yeah, he’s also older than actual frost,
McCain fought in the coliseum and he lost,

He’s old, he helped build Stonehenge,
Oh My God, He’s old,
He uses the barter system,
He’s so old, he dreams in sepia,
That man is old, he was at Moses’ Briss, (snip, snip)
(old)
He farts dust, that’s really gross and he’s old,
Fire confuses him, because he’s old,
He remembers the Alamo,
He smells, he’s old,
He was around when all the continents were part of one huge land mass commonly referred to as Pangaea,

Obama be a blog, McCain be hieroglyphics,
Obama be a Segway™, McCain be rickets,
Obama be Dippin’ Dots™, McCain be yak milk,
Obama be Jet Blue, McCain be pterodactyl,
Obama be a gold grill, McCain be dentures,
Obama be Facebook, McCain be Friendster,
Obama be (Mac startup sound), McCain be (dial up modem sound),

…Obama be…actually an intelligent, viable, presidential candidate

McCain be old, He makes makes offerings to Zeus,
Yo, he’s old, glow-in-the-dark stuff scares him,
Knock Knock, Who’s there?
(old)
He gave me a Werther’s Original™!
Ring, Who is it?
(old)
He’s two years older than himself, he’s old,
He doesn’t remember you,
He can’t hear you, He’s old,
That bible story is actually McCain and Abel,
He’s Satanic,
He’s friends with dirt,
(old)
He started wearing Depends™ when Obama started wearing Huggies™ (Cheering, Laughing)

Jelly Doughnut –> Hey, whether you’re voting for Obama or Skeletor,
you’ve got to be registered to do it,
it’s easy (http://voteforchange.com)
Do it online by October 6th and then vote November 4th

If there’s something you can correct  help fill in (indicated with ??), contact me by leaving a comment!

Thanks to Laughing Squid

Lawyers in handcuffs, St. Paul Police Surround House with Journalists

I follow Chuck Olson on Twitter. He’s an active video journalist with a great sense of humor. It seems that the St. Paul Police have been raiding homes in the Twin Cities today in attempts to disrupt protests for the RNC convention.

Video – 9 squad cars pull over a school bus with Earth Justice members
Video – A quiet St. Paul neighborhood experiences a full blown raid and standoff

Check out TheUptake for the full story

Police raid 5 twin cities homes and pull over a school bus with Earth Justice members.  RNC republican national convention

Barack Obama announces his vice president by text message + Making Technology History

Here a picture of what I received on my phone: Barack has chosen Senator Joe Biden to be our VP nominee. Watch the first Obama-Biden rally life at 3pm ET on www.BarackObama.com. Spread the word!

I received my text message at 2:34am CST 8/23/2008

Barack Obama announces his Vice President by text message!  First time in US History