Wednesday, September 21, 2005

Slashdot

Google WiFi+VPN Confirmed
An anonymous reader writes "Google is actually (confirmed!) rolling out their wifi network, first in the San Francisco bay area (see the FAQ for details.) They are also including a Secure Access program for use in conjunction with this. So far, as per usual, it's in beta, and only for the San Fran bay area. Soon the entire US, perhaps??

Space Elevator Gets FAA Clearance
lonesome phreak writes "Techzonez has a short piece about the recent FAA waiver received by the LiftPort Group allowing them to conduct preliminary tests or their high altitude robotic lifters. The lifters are early prototypes of the technology that the company is developing for use in its commercial space elevator to ferry cargo back and forth into space."

Saturday, September 10, 2005

Ultimate USB Drive

USB thumb drives have shown themselves to be a superior alternative to other portable media such as diskettes and writable optical discs. They're smaller and can hold tons of data, and most current operating systems recognize them without needing any special drivers. We've seen 1GB drives for under $100, and drives with smaller capacities start at under $20.

Most people don't realize that these drives can also carry enough applications to serve as a personal office on the road, and can even contain a complete bootable operating system to provide total security when you are computing away from home. There are plenty of reasons to carry applications or an operating system on your USB drive: You'll have your e-mail and instant messaging accounts, Internet bookmarks, log-on passwords, and even document templates instantly available on any computer you find in a hotel's computer center, a home, or an office that you might visit. You can also be certain that your settings will stay on your USB drive and won't be stored in the browser cache or anywhere else on a remote machine. Here's what we put on our ultimate USB drive; the programs are free for personal use, unless noted. Most of the apps we describe can run entirely from the USB drive without installation.

Your Internet Office on the Road

Enthralled by Firefox but frustrated that many PCs you use still don't have it installed? Or perhaps you just prefer to steer clear of the spyware potentially lurking inside Microsoft Internet Explorer, the more popular browser? Firefox leaves no clues to your browsing activities on the remote computer, something you can never be sure of when using IE. Developer John Haller has created portable versions of Firefox, Thunderbird, the Sunbird calendar application, and the NVU Web-page editor (all can be downloaded from http://johnhaller.com/jh/mozilla ). Portable Fire-fox has minor limitations when run from a USB drive, but the others work perfectly.


Portable Firefox 1.0.4 () renders most sites exactly as it does when installed on your hard drive, but Java applets will run only if Java (which will work only if it finds settings already specified in the registry) is installed on the host machine. You also won't be able to view PDF files if no PDF software is installed on the host, so download the fast and tiny (less than 1MB) Foxit PDF Reader 1.3 for standalone viewing of PDF files. You'll need to download PDFs instead of viewing them in the browser. ( www.foxitsoftware.com )

If you install the Firefox Bookmarks Synchronizer extension, you can upload new bookmarks to an FTP server and import them to your home machine when you return, or download your bookmarks on the road if you forgot to update them before you left. If you use Portable Firefox on a host computer that doesn't have Firefox already installed, it creates two directories on the host, but your settings, cookies, and other private files remain on the thumb drive. ( http://addons.mozilla.org )

Portable Thunderbird 1.0.2 (beta; ), based on the excellent Mozilla.org mail client, works without problems on a USB drive. You'll get the best results if you have an IMAP account that lets you leave messages on the server instead of transferring them to your drive, as you normally do with conventional POP mailboxes. Although not as high-powered as Microsoft Outlook for calendars and scheduling, Portable Sunbird 0.2 () gets the job done and may be enough for anyone whose work doesn't require carrying an Outlook-equipped laptop everywhere. Portable NVU 1.0 Preview Release ), a basic HTML editor still in early development, is also trouble-free on a USB key but doesn't compare to Dreamweaver or Microsoft FrontPage.

For FTP and Secure FTP, FileZilla 2.2.14b lets you choose between a secure mode that never stores passwords and a less-secure mode that stores passwords in an XML file on your thumb drive. FileZilla doesn't have the prettiest interface you've seen on an FTP client, but it's fast and secure, and worth considering for your desktop machine as well as for your thumb drive. ( http://filezilla.sourceforge.net )

The free Trillian Basic 3.1 instant messaging client works with AIM, ICQ, MSN, and Yahoo! Messenger, but it isn't designed to be run from a portable drive. The third-party Trillian Anywhere Web site provides simple instructions for setting up Trillian on your hard drive, creating all its settings, and then transferring it to a USB drive. The result is a trouble-free universal IM client that leaves no traces on the host computer. ( www.trilliananywhere.com )

John Haller has also created USB-friendly versions of the http://OpenOffice.org office suite; you can choose between a stable 1.1.4 version and a faster and slicker 2.0 Alpha version. The 2.0 version fills 127MB, so you'll need a generous-size USB drive, but it guarantees you a full-featured productivity suite compatible with Microsoft Office wherever you plug in the drive. You may need to click through the license agreement on each new host machine, but that's a minimal inconvenience. ( http://johnhaller.com/jh/useful_stuff/portable_openoffice )

All work and no play makes for a dull USB key. Fortunately you can store your favorite tunes on your thumb drive and listen to them with XMPlay, a miniature but high-powered media player. It has the tiny, overelaborate interface typical of freeware media players, but with downloadable skins that can slightly improve it. Alternatively, consider CoolPlayer, a compact open-source MP3 player that can be extended via plug-ins to handle almost any current media format. (XMPlay, www.un4seen.com/xmplay.html , ; CoolPlayer, http://coolplayer.sourceforge.net , )

Security

Every time you plug a USB key into someone else's computer, you risk catching a virus or other malware. For a scanner that checks the full range of viruses found in the wild, download AntiVir PersonalEdition Classic, which can be installed to your USB drive and run from any host computer. (It puts a few Registry entries on your hard drive, which you can remove or ignore.) One minor problem with AntiVir on a USB drive: If you haven't used the drive for a day or two, you should run the AntiVir updater as soon as you plug your drive into a new machine. But after you run the built-in updater, the updater component remains in memory, so the Safely Remove Hardware icon will tell you that you can't remove your USB drive safely. You can use the Windows Task Manager to close down the AntiVir process before removing the drive, or simply pull the drive out without further ado if you're certain that no other program on it is still running. ( www.free-av.com )

If space is at a premium, make sure your USB drive has at least a reduced antivirus program that focuses on a few high-risk attacks; McAfee's Avert Stinger is probably the best. ( http://vil.nai.com/vil/stinger )

Ad-Aware SE Personal Edition 1.06 isn't the most powerful spyware remover—and ideally needs to be used in combination with other programs—but you can carry it with you on a USB drive, and it's infinitely better than nothing. Install it in the normal way to your hard disk, then simply copy its folder to your USB drive. ( www.lavasoft.de )

You'll also want to save your passwords securely. The most efficient way to save Web passwords and forms is with Pass2Go ($39.95), also known as RoboForm Portable, a version of our Editor's Choice RoboForm form filler. If you browse the Web by running IE from the host computer while using a USB drive, then you can simply run Pass2Go from the USB key; the host's copy of IE will display the RoboForm toolbar and use your stored log-on information. If you use Portable Firefox, you'll also need to download the RoboForm Mozilla Adapter and follow the specific instructions on www.roboform.com/removeable.html for Portable Firefox. While running, Pass2Go writes files (but not your private settings) to a Temp folder on the host's hard drive. It cleans up after itself when you exit, leaving only a copy of the executable Pass2Go program on the host drive, and no other settings. ( www.roboform.com )

Among traditional standalone password storage programs, a good first choice is KeePass Password Safe, a high-powered open-source utility that uses AES and TwoFish encryption and is designed so that passwords won't be visible to keystroke loggers or any other snooping software. It has special storage for the use-once TAN (transaction number) passwords used for online banking. The keyboard interface is somewhat unreliable; accelerator keys such as Alt-F for the File menu or Ctrl-O for Open database sometimes don't have any effect. ( http://keepass.sourceforge.net )

To secure programs and data against prying eyes, you can use USB drives that come with encryption already on the drive or software-only solutions that can be installed on any thumb drive. Kingston Technology ( www.kingston.com ) uses a combination of hardware and software encryption on its DataTraveler Elite USB drives. Other vendors, such as Lexar ( www.lexar.com ) and Trek 2000 ( www.thumbdrive.com ), use software-only encryption that can be installed only on the same vendor's USB drives.

In either case, the drive comes with software that divides it into a normally visible region and an encrypted region. When you unlock the encrypted region with a password, the visible region disappears, and the same drive letter that the system assigned to the visible portion of the drive is assigned to the encrypted region. When you log out of the encrypted region, the visible portion regains its original drive letter, and the encrypted portion becomes invisible. Some new drives, such as Lexar's JumpDrive TouchGuard and SanDisk's upcoming Cruzer Profile line ( www.sandisk.com ), include fingerprint authentication.

The software in these combined solutions works only with specific drives sold by the same vendor. Software-only solutions that work with any USB drive include Folder Lock ($35), which offers multiple levels of encryption and a clear but graphics-heavy interface. The program creates a password-protected folder that isn't visible in Windows Explorer or any other directory listing until you run the program to unlock it. When you lock the folder and exit the program, it completely cleans up after itself. The encrypted folder is visible if you plug the drive into a Macintosh or Linux system, although the contents and filenames are still encrypted. ( www.newsoftwares.net )

Other drive-encryption programs tend to be less convenient. StorageCrypt 2.0.1 ($29.95) works only with drives that are formatted with multiple partitions, each with its own drive letter. You install the software on a partition that remains visible, and you run the software to encrypt or decrypt a second partition. It's easy to use despite the badly translated dialogs. StorageSafe ($29.95) doesn't require a partitioned drive to start with but works by completely reformatting your existing drive, wiping out any data that may be on it and creating a public area and a protected, encrypted area that you unlock by running the program and entering a password. Unfortunately, you need to install StorageSafe on any host computer from which you want to access the protected area, and the host computer may be set up so that you can't install anything. (StorageCrypt 2.0.1, www.magic2003.net , ; StorageSafe, www.modsol.com/StorageSafe , .)

Environments to Go

To protect your privacy on the Web, you may not need to have special security software. Instead, launch an emulated Windows CE or Linux system on your USB drive.

You don't need to carry a PDA to use the Windows CE operating system and its small-screen versions of IE and Windows Messenger. Just follow the instructions on Steve Makofsky's weblog to learn how to download Microsoft's free Windows CE emulator to your USB drive and use a batch file to launch the emulator and save its settings on the same drive. Make sure to read all the comments posted on the weblog to find essential modifications to the method described in the initial post.

After you run the emulator for the first time, it restarts instantly with the browser or IM client already open and ready for action if you left them open earlier. You don't get an e-mail client or Firefox's powerful browsing, but nothing else on a USB drive gives you the same instant-on convenience, and you'll need only 32MB for the whole package. No one seems to have figured out how to add other applications to the default setup. ( www.furrygoat.com/2004/12/portable_ce.html )

For even more security, you can run a miniature Linux system from your USB drive without rebooting. Metropipe's Portable Virtual Privacy Machine is a 125MB Linux environment that uses the open-source QEMU emulator software to allow the Linux system to run either in a window or full-screen on a Windows system. The Linux system is Damn Small Linux, based on the popular "live CD" Knoppix distribution, and includes Firefox, Thunderbird, and other open-source applications (see the sidebar below). All settings are stored inside the files used by the Linux system. On our 3-GHz test machines, the system was painfully slow to start, the Technology Preview release available during testing was buggy, and configuration programs that required the keyboard did not respond to the keystrokes needed for navigating them. ( www.metropipe.net/ProductsPVPM.shtml )

An Easier Future

Starting in fall 2005, you'll be able to buy many commercial software products—including the ZoneAlarm firewall—in portable versions based on the new U3 standard ( www.u3.com ), using a single launcher for all U3 programs on the drive and drivers that automatically clean up all traces of your programs when you detach your drive from the host machine. Though this will make things easier, the software will require U3-compatible USB drives and probably won't be compatible with your existing drives. But since there are already so many good apps that can run on current USB keys, there's no reason to wait until the new drives are out. Go ahead and load your thumb drive with apps for your next road trip.


You can set up your USB drive so that it automatically runs a program when you plug it into a Microsoft Windows XP SP2 computer, and so it will display a custom icon next to its name in Windows Explorer. You can also give the drive any name you like—not just the standard 11-character drive label normally permitted by Windows. To do all this, create a text file named Autorun.inf in the drive's root directory, with contents something like this:

[autorun]

open=PortableFirefox.exe action=Start PortableFirefox

icon=PortableFirefox.exe label=Portable Internet

The open= line and action= lines are used only by the AutoPlay feature of Windows XP SP2. They specify, respectively, the action that the AutoPlay dialog will offer to perform and the text that the dialog will display to describe that action. The files you specify can be anywhere on your drive, but if they're not in the root, you need to give the full path. Be sure to omit the drive letter, because you can't predict what letter your drive will receive on a host computer. The icon= and label= lines indicate the icon or name of the drive as displayed in Windows Explorer. The icon can be a program file's built-in icon or any other icon resource such as a DLL or ICO file. The first icon in the file is used by default, but you can use other icons by following the filename with a comma and a number specifying the icon; numbering starts with 0, so use Filename.exe,2 to specify the third icon in the file.

Make Your Thumb Drive Bootable

Your USB drive can be your emergency toolkit at home and away, and if the host machine supports booting from a USB drive, you can boot to a USB key that you've prepared in advance. USB drives can boot to MS-DOS (including the DOS that comes with Windows 95/98/Me), specially prepared versions of Linux, and the Windows preboot environment (which permits minimal file management and other troubleshooting but doesn't load the full Microsoft Windows GUI).

The job of making your USB drive bootable may be simple or frustrating, depending on the hardware in the host computer and the size of the USB drive. (Some BIOSs treat all USB drives smaller than 512MB as floppy disk drives, unless you tell the BIOS to treat the USB drive as a hard drive or CD-ROM.) Creating a bootable MS-DOS USB drive is easiest on a Windows 98 system, where you can often use third-party software like Symantec's PartitionMagic or Acronis Disk Director Suite to format a USB drive and mark its partition as active, and then use Windows 98's FORMAT /S command to make it bootable. Alternatively, you can find detailed manual instructions through Web searches, but be warned that methods that worked for some users won't work for others.

The most reliable and flexible software for making USB keys bootable is FlashBoot 1.2 (19.95 euros—about $24, www.prime-expert.com ), which can create anything from a minimal bootable DOS floppy to bootable Windows XP repair disks and even a fully customizable USB version of the popular BartPE boot CD-ROM, based on the Windows XP preboot environment ( www.nu2.nu ). If you build your BartPE disk carefully, you can load it with maintenance and repair tools. You may have to experiment with floppy and hard drive–style formatting of your drive before FlashBoot can make your drive bootable, but we had more success with this program than with most manual techniques. We were able to make all our test drives bootable, though some of our test computers could boot only some combinations of drives and software and not others. In general, the newer the motherboard, the more different combinations of software and USB hardware could be used for booting. An IBM ThinkPad T42 was able to boot from everything we plugged in.

Installing Linux on a USB key isn't a trivial task, but you can find plenty of helpful hints on the Web. For best results, download Damn Small Linux ( www.damnsmalllinux.org ), and proceed in one of two ways: Burn it to a CD, boot it from the CD, and use the right-click Tools menu to install it to a USB drive; or—working entirely within Windows—follow the instructions found at http://fuzzymunchkin.dyndns.org:8080/tdot/usbkeyfob/index.php . Using both methods, we created USB drives that booted on most, but not all, of our test systems.

Friday, September 09, 2005

Leaders Lacking Disaster Experience

'Brain Drain' At Agency Cited

By Spencer S. Hsu

Five of eight top Federal Emergency Management Agency officials came to their posts with virtually no experience in handling disasters and now lead an agency whose ranks of seasoned crisis managers have thinned dramatically since the Sept. 11, 2001, attacks.

FEMA's top three leaders -- Director Michael D. Brown, Chief of Staff Patrick J. Rhode and Deputy Chief of Staff Brooks D. Altshuler -- arrived with ties to President Bush's 2000 campaign or to the White House advance operation, according to the agency. Two other senior operational jobs are filled by a former Republican lieutenant governor of Nebraska and a U.S. Chamber of Commerce official who was once a political operative.

Meanwhile, veterans such as U.S. hurricane specialist Eric Tolbert and World Trade Center disaster managers Laurence W. Zensinger and Bruce P. Baughman -- who led FEMA's offices of response, recovery and preparedness, respectively -- have left since 2003, taking jobs as consultants or state emergency managers, according to current and former officials.

Because of the turnover, three of the five FEMA chiefs for natural-disaster-related operations and nine of 10 regional directors are working in an acting capacity, agency officials said.

Patronage appointments to the crisis-response agency are nothing new to Washington administrations. But inexperience in FEMA's top ranks is emerging as a key concern of local, state and federal leaders as investigators begin to sift through what the government has admitted was a bungled response to Hurricane Katrina.

"FEMA requires strong leadership and experience because state and local governments rely on them," said Trina Sheets, executive director of the National Emergency Management Association. "When you don't have trained, qualified people in those positions, the program suffers as a whole."

Last week's greatest foe was, of course, a storm of such magnitude that it "overwhelmed" all levels of government, according to Sen. Susan Collins (R-Maine). And several top FEMA officials are well-regarded by state and private counterparts in disaster preparedness and response.

They include Edward G. Buikema, acting director of response since February, and Kenneth O. Burris, acting chief of operations, a career firefighter and former Marietta, Ga., fire chief.

But scorching criticism has been aimed at FEMA, and it starts at the top with Brown, who has admitted to errors in responding to Hurricane Katrina and the flooding in New Orleans. The Oklahoma native, 50, was hired to the agency after a rocky tenure as commissioner of a horse sporting group by former FEMA director Joe M. Allbaugh, the 2000 Bush campaign manager and a college friend of Brown's.

Rhode, Brown's chief of staff, is a former television reporter who came to Washington as advance deputy director for Bush's Austin-based 2000 campaign and then the White House. He joined FEMA in April 2003 after stints at the Commerce Department and the U.S. Small Business Administration.

Altshuler is a former presidential advance man. His predecessor, Scott Morris, was a media strategist for Bush with the Austin firm Maverick Media.

David I. Maurstad, who stepped down as Nebraska lieutenant governor in 2001 to join FEMA, has served as acting director for risk reduction and federal insurance administrator since June 2004. Daniel A. Craig, a onetime political fundraiser and campaign adviser, came to FEMA in 2001 from the U.S. Chamber of Commerce, where he directed the eastern regional office, after working as a lobbyist for the National Rural Electric Cooperative Association.

Department of Homeland Security spokesman Russ Knocke said Brown has managed more than 160 natural disasters as FEMA general counsel and deputy director since 2001, "hands-on experience [that] cannot be understated. Other leadership at FEMA brings particular skill sets -- policy management leadership, for example."

The agency has a deep bench of career professionals, said FEMA spokeswoman Nicol Andrews, including two dozen senior field coordinators and Gil Jamieson, director of the National Incident Management System. "Simply because folks who have left the agency have a disagreement with how it's being run doesn't necessarily indicate that there is a lack of experience leading it," she said.

Andrews said the "acting" designation for regional officials is a designation that signifies that they are FEMA civil servants -- not political appointees.

Touring the wrecked Gulf Coast with Secretary of Homeland Security Michael Chertoff yesterday, Vice President Cheney also defended FEMA leaders, saying, "We're always trying to strike the right balance" between political appointees and "career professionals that fill the jobs underneath them."

But experts inside and out of government said a "brain drain" of experienced disaster hands throughout the agency, hastened in part by the appointment of leaders without backgrounds in emergency management, has weakened the agency's ability to respond to natural disasters. Some security experts and congressional critics say the exodus was fueled by a bureaucratic reshuffling in Washington in 2003, when FEMA was stripped of its independent Cabinet-level status and folded into the Department of Homeland Security.

Emergency preparedness has atrophied as a result, some analysts said, extending from Washington to localities.

FEMA "has gone downhill within the department, drained of resources and leadership," said I.M. "Mac" Destler, a professor at the University of Maryland School of Public Policy. "The crippling of FEMA was one important reason why it failed."

Richard A. Andrews, former emergency services director for the state of California and a member of the president's Homeland Security Advisory Council, said state and local failures were critical in the Katrina response, but competence, funding and political will in Washington were also lacking.

"I do not think fundamentally this is an organizational issue," Andrews said. "You need people in there who have both experience and the confidence of the president, who are able to fight and articulate what FEMA's mission and role is, and who understand how emergency management works."

The agency's troubles are no secret. The Partnership for Public Service, a nonprofit group that promotes careers in federal government, ranked FEMA last of 28 agencies studied in 2003.

In its list of best places to work in the government, a 2004 survey by the American Federation of Government Employees found that of 84 career FEMA professionals who responded, only 10 people ranked agency leaders excellent or good.

An additional 28 said the leadership was fair and 33 called it poor.

More than 50 said they would move to another agency if they could remain at the same pay grade, and 67 ranked the agency as poorer since its merger into the Department of Homeland Security.

Wednesday, September 07, 2005

Marvel Gets Cash To Do 10 Films

Marvel has raised $525 million to independently finance 10 movies based on its comics over seven years. The titles named are Captain America, The Avengers, Nick Fury, Black Panther, Ant-Man, Cloak & Dagger, Dr. Strange, Hawkeye, Power Pack and Shang-Chi. The company's also changing its name from Marvel Enterprises to Marvel Entertainment.

Monday, September 05, 2005

Cheat Sheets for Developers

frustratedWhether you're an experienced web developer, or are just starting out, chances are you'll find something useful in Pete Freitag's Cheat Sheet Roundup. Pete's put together links to over 30 cheat sheets for developers, including guides to CSS, PHP, perl and Unix commands. One that I've been using regularly is the HTML entities sheet; I've got a mental block about some of them (I keep typing emdash when I mean mdash), so it's nice to have all of this in one place.

Saturday, September 03, 2005

EFF Releases Music DRM Guide

The Electronic Frontier Foundation (EFF) recently created a plain English guide to several fair use restrictions that major online music services, such as Apple's iTunes, force on their customers via Digital Rights Management (DRM) laden music files and End User License Agreements (EULAs). An excerpt from the guide follows: 'Forget about breaking the DRM to make traditional uses like CD burning and so forth. Breaking the DRM or distributing the tools to break DRM may expose you to liability under the Digital Millennium Copyright Act (DMCA) even if you're not making any illegal uses.' The EFF also lists four alternative music services which sell unrestricted files.

Friday, September 02, 2005

Google Announces Plan To Destroy All Information It Can't Index



August 31, 2005 | Issue 41•35

MOUNTAIN VIEW, CA—Executives at Google, the rapidly growing online-search company that promises to "organize the world's information," announced Monday the latest step in their expansion effort: a far-reaching plan to destroy all the information it is unable to index.

google

CEO Eric Schmidt speaks at Google's California headquarters (below).

"Our users want the world to be as simple, clean, and accessible as the Google home page itself," said Google CEO Eric Schmidt at a press conference held in their corporate offices. "Soon, it will be."

The new project, dubbed Google Purge, will join such popular services as Google Images, Google News, and Google Maps, which catalogs the entire surface of the Earth using high-resolution satellites.

As a part of Purge's first phase, executives will destroy all copyrighted materials that cannot be searched by Google.

"A year ago, Google offered to scan every book on the planet for its Google Print project. Now, they are promising to burn the rest," John Battelle wrote in his widely read "Searchblog." "Thanks to Google Purge, you'll never have to worry that your search has missed some obscure book, because that book will no longer exist. And the same goes for movies, art, and music."

"Book burning is just the beginning," said Google co-founder Larry Page. "This fall, we'll unveil Google Sound, which will record and index all the noise on Earth. Is your baby sleeping soundly? Does your high-school sweetheart still talk about you? Google will have the answers."

Enlarge ImageGoogle 2

Page added: "And thanks to Google Purge, anything our global microphone network can't pick up will be silenced by noise-cancellation machines in low-Earth orbit."

As a part of Phase One operations, Google executives will permanently erase the hard drive of any computer that is not already indexed by the Google Desktop Search.

"We believe that Google Desktop Search is the best way to unlock the information hidden on your hard drive," Schmidt said. "If you haven't given it a try, now's the time. In one week, the deleting begins."

Although Google executives are keeping many details about Google Purge under wraps, some analysts speculate that the categories of information Google will eventually index or destroy include handwritten correspondence, buried fossils, and private thoughts and feelings.

The company's new directive may explain its recent acquisition of Celera Genomics, the company that mapped the human genome, and its buildup of a vast army of laser-equipped robots.

"Google finally has what it needs to catalog the DNA of every organism on Earth," said analyst Imran Kahn of J.P. Morgan Chase. "Of course, some people might not want their DNA indexed. Hence, the robot army. It's crazy, it's brilliant—typical Google."

Google 3

Google executives oversee the first stage of Google Purge.

Google's robot army is rumored to include some 4 million cybernetic search-and-destroy units, each capable of capturing and scanning up to 100 humans per day. Said co-founder Sergey Brin: "The scanning will be relatively painless. Hey, it's Google. It'll be fun to be scanned by a Googlebot. But in the event people resist, the robots are programmed to liquify the brain."

Markets responded favorably to the announcement of Google Purge, with traders bidding up Google's share price by $1.24, to $285.92, in late trading after the announcement. But some critics of the company have found cause for complaint.

"This announcement is a red flag," said Daniel Brandt, founder of Google-Watch.org. "I certainly don't want to accuse of them having bad intentions. But this campaign of destruction and genocide raises some potential privacy concerns."

Brandt also expressed reservations about the company's new motto. Until yesterday's news conference, the company's unofficial slogan had been "Don't be evil." The slogan has now been expanded to "Don't be evil, unless it's necessary for the greater good."

Co-founders Page and Brin dismiss their critics.

"A lot of companies are so worried about short-term reactions that they ignore the long view," Page said. "Not us. Our team is focused on something more than just making money. At Google, we're using technology to make dreams come true."

"Soon," Brin added, "we'll make dreams clickable, or destroy them forever."

Wednesday, August 31, 2005

SSH HTTP Proxy Setup

SSHirking work - part 1 tech

A little while ago I mentioned that I've been tunnelling my web traffic out of work and through my home connection. That post inspired a firestorm of public interest (one person emailed me about it). Here's the beginning of how to implement such a setup yourself. When it's working your boss won't be able to snoop on which websites you're visiting, or block them, or really tell anything about your internet traffic apart from how much of it there is (and that it's strangely hidden).

First, the big picture. I've explained the idea behind ports at least a couple of times. We're going to take our browser's web traffic — the stuff going out through port 80 — and send it through an encrypted tunnel to a PC at home that's running a proxy server. The proxy server will make an unencrypted request for the webpage we're trying to access (using our home connection) and send the data back through the encrypted tunnel.

We're going to need a few things. We'll need a PC that's at home and turned on at whatever times the link should be available. And we're going to need to make some assumptions. So this is going to be a Windows tutorial. All the software required is free and open source, though, and you could certainly accomplish this setup under OS X or Linux. In fact, in some regards it'd probably be quite a bit easier. But Linux users don't need my help setting up a proxy server, and Mac users are used to being ignored. If anybody with a Mac really wants this functionality, just let me know. I'll be happy to dig up the relevant links.

Finally, I'm going to assume you know how to open up ports on Windows firewall (or at least turn it off) if you're running a version of XP that has it installed. Same thing with ZoneAlarm, or whatever other software firewall you might be running. I can't account for everything, people!

So let's get started. In this post we'll take care of the software that supports the encrypted tunnel. This is the hard, but not that hard, part.

We're going to use SSH for this, a technology that on its face is a secure replacement for telnet, but also provides the ability to redirect ports on a client machine to arbitrary ports on any machine accessible to the server. This'll make sense later -- for now, just trust me as I tell you how to install OpenSSH for Windows. Start by downloading the binary installer from that site, then unzipping and running it.

Here's the first important decision. What port should we run this thing on? SSH usually runs on port 22 — but we're going to have to make it publicly accessible. Script kiddies scan IP blocks for SSH servers (among other things). SSH servers make for ripe targets because they generally indicate a system more interesting than a typical grandmother's email box, and because if it can be accessed a large new class of exploits can be run against the machine. Don't be scared — none of this is very likely to happen. But it's worth thinking about.

A bigger consideration is your firewall at work. Your workplace might block unknown ports for security reasons, or productivity reasons, or just to be mean. Unless you have a job-related reason for using port 22 it might not be available. To get around this, you could run your server on port 80 — that's pretty well guaranteed to work, so long as you can access the web. But it might also attract attention, in this case from your ISP. Broadband providers generally don't like folks hosting websites on their home computers. Cablemodem ISPs tend to be the biggest jerks about this. So while port 80 might be more foolproof for work, it also might bring up bureacratic hassles with your internet provider. Decide accordingly.

UPDATE: Thanks to a reader in comments who points out that port 443 is almost always open (for SSL-enabled websites), is commonly used for encrypted traffic, and less likely to attract script-kiddy attention.

So, run the OpenSSH installer. Accept all the defaults. If you need to use a port beside 22, edit c:\program files\openssh\etc\sshd_config in a text editor like Notepad, remove the hash (#) mark from in front of the line that reads "# port 22", change the port number appropriately, and save the file.

Now we've got to set up a user for this SSH server. We'll do this by adding one to your windows machine. Make sure you're logged in as an administrator, right click on "My Computer" and choose "Manage". Expand "Local Users And Groups", right-click on "Users" and choose "New User". Enter a username — I'll assume "sshuser", but you can use whatever you'd like — and enter a good password (I'm fond of this generator for producing them). You'll probably want to uncheck "User must change password at next logon", and if I were you I'd go ahead and check the boxes next to "User cannot change password" and "Password never expires".

One last thing. Click on "Start", go to "Run" and type "cmd". Now type this in:

cd \Program Files\OpenSSH\bin
mkgroup -l >> ..\etc\group
mkpasswd -l -u sshuser >> ..\etc\passwd

That sets up OpenSSH to use the user account we just created

Finally, go to the Control Panel, then select "Administrative Tools", then "Services". Find "OpenSSH Server" and go to its properties (you can doubleclick on its name to get to them). Make sure "Startup Type" is "Automatic", then click the "Start" button.

Congratulations. Your computer is now an SSH server. Why don't you try connecting to it? Download PuTTY and run it. Click the SSH radio button, enter "localhost" into the "Host Name" box (assuming you're running this on the same machine onto which you just installed OpenSSH). The port box should read "22" — if you installed the server on a different port, enter that number instead. Then click the "Open" button. You should get a one-time warning about the server's key, then be able to log in using the sshuser name and password.

And bang! You'll get a command line prompt. Very exciting. Alright, maybe not. But trust me, this is good. If for some reason you can't get to this point, leave a message in comments and I'll try to help you fiogure it out.

There's only one more step to getting this SSH server up and running: open it up to the world. So if you're behind a router, go to portforward.com and look up instructions on how to forward whatever port you're using (22, 80, or whatever) to the server machine. You'll need to look up the server's IP as well — portforward.com should have instructions, but the short version is start|run, "cmd.exe" then "ipconfig".

If everything's gone right, you've got a working SSH server that's accessible from the internet. When you're at the office you'll have to use your internet IP to access the machine. You can find that out here; alternately, it might be a good idea to register for a dynamic DNS service (be sure to install the updater software) so that you don't have to worry about the IP expiring.

This is a useful thing to have in its own right, but it's going to be really useful once we install Privoxy, configure the SSH tunnel and modify your browser's proxy settings to use it. But we'll get to all that in the next post. For now, take heart in the knowledge that the worst is over.


===========================

When last we left our hero — that'd be you — he had a functioning SSH server running on his Windows machine. You've poked a hole in your firewall and/or router, and maybe you've signed up for a dynamic DNS service. That, or you at least have an IP address. The bare minimum is the same: to proceed from here, you ought to be able to connect to your OpenSSH server with PuTTY when you're away from home.

The remaining tasks are pretty easy:

  1. Install Privoxy on the server
  2. Set up the SSH tunnel using PuTTY
  3. Configure your web browser to use the SSH tunnel

So: Privoxy. You can download it here — you'll want the most recent Win32 release. Run it and use the default configuration. It should start up the Privoxy console. Everything is pretty well ready to go with the default settings. You can hit the "X" on the console, but retain the shiny new blue P in your system tray. You've now got an HTTP proxy server running on your machine — one that, it's worth noting, will only accept requests from the local machine. But that's okay, because (counterintuitively) that's exactly where they'll be coming from.

Alright. Let's get this SSH tunnel going. From your non-home location (let's just call it work), start up PuTTY and enter the information necessary to connect to your SSH server. But don't connect yet. In the menu tree on the left, navigate to Connection | SSH | Tunnels. You should see this dialog:

PuTTY configuration screen

Enter the information as you see it here (if you can't see the image, see here), then click "Add". Let me explain what this all means.

SSH allows you to forward ports between the client machine (on which you're running PuTTY) and the server machine (on which you installed OpenSSH and Privoxy). In this case it's a Local port — that's what the radio button is set to, and it means that traffic that comes into the relevant port (specific in the "Source Port" textbox) on the client machine will be encrypted, sent to the OpenSSH server, and then sent from there to the address specified in the "Destination" textbox. If the "Remote" radio button was specified it would work in exactly the opposite direction, with traffic getting collected at the server and sent out through the client.

One more thing. You might already know this, but that "127.0.0.1:8118" has two parts: the IP address and the port number. 127.0.0.1 is a special IP address, called "loopback" or "localhost" that always refers to the current machine. The colon followed by "8118" specifies the port number. So: this tunnel will collect traffic coming into the client on port 8118; it'll then be sent through the SSH tunnel; and the server will decrypt it and send it to 127.0.0.1:8118 — port 8118 on itself. Which happens to be the default port on which Privoxy listens.

You might want to go back to the startup PuTTY screen, enter some text in the box under "Saved Sessions" and click "Save" — this'll let you reload the settings quickly in the future. Every time you want to use this tunnel, you'll have to open PuTTY, reload (or reenter) these settings, then connect and log into your SSH server as normal. It's important to note that the tunnel won't be set up until the login is complete — otherwise this would be a pretty huge security hole. And, as a result, you'll have to keep that PuTTY window open for as long as you're using the proxy setup each day. It's not that irritating, I promise.

Alright, last step. With the tunnel established, set up your browser to use an HTTP proxy. In Firefox this is under Tools | Options | General | Connection Settings. In Internet Explorer it's under Tools | Internet Options | Connections | LAN Settings | Advanced. Either way, set your HTTP proxy to point to 127.0.0.1, port 8118.

That's it! Start browsing. If you'd like to and feel up to it, download Ethereal to see what's going across the wire — all of your web traffic should be encrypted.

I should mention a few details. First, you'll probably notice that this system is a little slower than proxy-free web browsing. That's to be expected — your connection at home is assymetric, meaning that you have more available download capacity than upload capacity. Normally this works out fine, because receiving a webpage or a file or streamed audio takes more bandwidth than does asking for it. But our setup turns this on its head, because all traffic will have to be shoved back up through your home internet connection. It shouldn't be too irritatingly slow, but it will be a noticeable difference.

Second, you might occasionally see Privoxy assert itself. The most obvious way is in big, bold error pages that come up when Privoxy can't access a website. Usually refreshing the page will solve this problem. By default Privoxy also filters some ads. If you'd like to turn this capability off, consult its documentation. I've found it to be a pretty unobtrusive feature.

Finally, if you're using Firefox, I'd recommend installing SwitchProxy, an extension that lets you easily change which proxy you're using to browse (configuration is pretty intuitive; use the same settings as those outlined above). SwitchProxy comes in handy when you're about to start a high-bandwidth transaction -- a file download, for example, or streaming audio from an internet radio station. Just switch the proxy off, then start the transfer. It won't go through the tunnel, and consequently won't eat up the tunnel's limited bandwidth. As soon as the connection is initiated you can turn the proxy back on. The just-started transfer will remain outside the secure tunnel (and, of course, be visible to the public).

That pretty well wraps things up. Folks on your network at work won't be able to see what you're accessing. From a network perspective, it'll look like you're browsing from home. The SSH tunnel will be visible, but its contents will be encrypted. Odds are that no one will bother you about it. If they do, I'd suggest making up a line about your personal webmail not supporting SSL — that's plausible enough. Do keep in mind, though, that a record of your browsing activities will still exist on your hard drive. If you're really worried about it, be sure to clear out your browser's cache and history before heading home each night.

There are a few more useful things you can do now that you've got this SSH tunnel set up, the most notable being remote control of your computer at home with an application called VNC. I'll try to write something up on that later — it's very straightforward. In general, whatever other network services are available from home but not work, can be made available — with a couple of noteworthy exceptions. First, SSH only tunnels TCP, the slower-and-steadier of the internet's two packet types (UDP is its speedier, unreliable sibling). The tunnel's slow, so you wouldn't want to use it for playing Quake anyway. But the lack of UDP support rules out some streaming applications, like iTunes on the PC (Mac users can use iTunes without needing UDP by forwarding TCP port 3689). More notably, despite Windows filesharing working over TCP, it can't be redirected over SSH (at least not easily). If you need to get to windows shares on your home network, you'll want a real VPN solution, like OpenVPN. Unfortunately the OpenVPN tutorial I did a while ago is now outdated (it should still work for a single user, but it'll probably be a bit slow). If there's any interest, I'll write up a new one.

As before, let me know in comments if you have any trouble with the above instructions. Besides newfound guilt over dereliction of your official duties, I mean.

UPDATE: I forgot to mention that many apps besides web browsers can use HTTP proxies. Most obvious is your IM client — if you'd like secure IM traffic, check out its connection settings and configure it to use an HTTP proxy using the same settings as you did for your web browser.

Korea is Pissed at Goolge

South Korea is the latest country to raise its concerns over Google's satellite photo service, Google Earth. The country is worried about sensitive sites being visible from space by the service's users, including the presidential Blue House and military bases, as it remains officially at war with its neighbour, North Korea.

The presidential office in the country is reportedly planning to raise its fears with US officials. The roofs of some sensitive sites in the US - including the White House - have already been blacked out by Google, but that hasn't happened with its satellite imagery of South Korea. Images of the secretive North Korea are also available.

American Scientist Stamps






History of LSD

The latest issue of the Canadian Journal of Psychiatry includes a trip into the roots of psychedelic culture, titled "Flashback: Psychiatric Experimentation With LSD in Historical Perspective." The paper was written by Erika Dyck, a doctoral student in the Department of History at McMaster Univsersity in Ontario. From the abstract:
In the popular mind, d-lysergic acid diethylamide (LSD) research in psychiatry has long been associated with the CIA-funded experiments conducted by Ewen Cameron at the Allen Memorial Institute in Montreal, Quebec. Despite this reputation, a host of medical researchers in the post–World War II era explored LSD for its potential therapeutic value. Some of the most widespread trials in the Western world occurred in Saskatchewan, under the direction of psychiatrists Humphry Osmond (in Weyburn) and Abram Hoffer (in Saskatoon). These medical researchers were first drawn to LSD because of its ability to produce a “model psychosis.” Their experiments with the drug that Osmond was to famously describe as a “psychedelic” led them to hypothesize and promote the biochemical nature of schizophrenia. This brief paper examines the early trials in Saskatchewan, drawing on hospital records, interviews with former research subjects, and the private papers of Hoffer and Osmond. It demonstrates that, far from being fringe medical research, these LSD trials represented a fruitful, and indeed encouraging, branch of psychiatric research occurring alongside more famous and successful trials of the first generation of psychopharmacological agents, such as chlropromazine and imipramine. Ultimately, these LSD experiments failed for 2 reasons, one scientific and the other cultural. First, in the 1950s and early 1960s, the scientific parameters of clinical trials shifted to necessitate randomized controlled trials, which the Saskatchewan researchers had failed to construct. Second, as LSD became increasingly associated with student riots, antiwar demonstrations, and the counterculture, governments intervened to criminalize the drug, restricting and then terminating formal medical research into its potential therapeutic effects.
Link

Tuesday, August 30, 2005

New Material Harder Than Diamond

Diamond is no longer the hardest substance known to man. Scientists have created a new material, called "aggregated diamond nanorods" by compressing carbon-60 under high heat. From the article: 'The hardness of a material is measured by its isothermal bulk modulus. Aggregated diamond nanorods have a modulus of 491 gigapascals (GPa), compared with 442 GPa for conventional diamond.

Nanotech Coating Prevents Fogging

MIT scientists have applied for a patent on a coating process that reduces or eliminates fogging on glass surfaces (car windshields, eyeglasses, etc). The new coating was described today at the 230th national meeting of the American Chemical Society.

Linux is So Tuff

I love Linux. I use it on my servers, I use it on my desktops, and I use it on my entertainment center, where it powers my HDTV TiVo and my D-Link DSM-320 media player, which turns my network into a media library with terabytes of storage. Heck, I even run Linux on my Linksys WRT54G Wi-Fi access points, which hook the whole shebang together.

But, Linux isn't for everyone. Seriously. Here are my top five reasons why you shouldn't move to Linux . . .

Reason number one: Linux is too complicated

Even with the KDE and GNOME graphical windowing interfaces, it's possible -- not likely, but possible -- that you'll need to use a command line now and again, or edit a configuration file.

Compare that with Windows where, it's possible -- not likely, but possible -- that you'll need to use a command line now and again, or edit the Windows registry, where, as they like to tell you, one wrong move could destroy your system forever.

Reason number two: Linux is a pain to set up

It's true. After all, with modern Linuxes like Xandros Desktop or SimplyMEPIS, you need to put in a CD or DVD, press the enter button, give your computer a name, and enter a password for the administrator account.

Gosh, that's hard.

On the other hand, with Windows, all you have to do is put in a CD or DVD, do all the above, and then immediately download all the available patches. After all, Symantec has found that an unpatched Windows PC connected to the Internet will last only a few hours before being compromised.

Unpatched Linux systems? Oh, they last months, but what's the fun of that?

Reason number three: Linux doesn't have enough applications

Really now. I mean, most Linux systems only come with secure Web browsers, like Firefox; e-mail clients, like Evolution; IM clients, like GAIM; office suites, like OpenOffice.org 2.0; Web page editors, like Nvu; and on, and on, and...

Microsoft, on the other hand, gives you Internet Explorer and Outlook Express, the most popular Web browser and e-mail client around -- even though they do have a few little, teeny-weeny problems. Of course, Windows also has an IM-client, Windows Messenger, which, come to think of it, has also had some problems.

And, Microsoft also has Microsoft Office, which -- oh wait, you don't get that with the operating system, do you? You also don't get a Web page editor either, do you?

Well, still, with Windows you get so many more choices of software, don't you? Like Lotus 1-2... oh really? I didn't know that. Or, WordPerfect... oh, pretty much dead too.

Still, so long as you want to run Microsoft programs at Microsoft prices, Windows is the operating system for you!

Reason number 4: Linux isn't secure

If Microsoft says so, it has to be true! So what, if you can scarcely go a week without reading about yet another major Windows security problem in our sister publication, eWEEK.com's security section! Who would you rather believe -- Microsoft, or your own eyes?

Reason number 5: Linux is more expensive

Are you calling Microsoft a liar? Those nasty Linux companies, like Red Hat or Novell/SUSE charge you a fee for support. Others, like Linspire sell you the product. How dare they, when you can download free, fully-functional versions of almost all the Linux distributions.

Your computer, on the other hand, almost certainly came with Windows pre-installed! For free!

Oh wait, it's not free? Windows' actually makes up a large percentage of your PC's price?

Hmmm. Well, still, it's already on there, and it has everything you need.

Right? Of course, right!

Except, of course, you might still want to buy an anti-viral program (Norton Anti-Virus: $40), anti-spyware software (McAfee Anti-Spyware: $25); and a full-featured firewall (Zone Alarm Pro: $35). But, hey, who needs those when you have a secure operating system like Windows!

And so...

When you really think about it, you can see why there are lots of reasons not to use Linux.

There just aren't any good ones.

Monday, August 29, 2005

A9's Blockview Mapping

A9 (the search engine owned by Amazon) has a fully enabled Beta Website preview of their new Blockview mapping program. This website allows you to view high detailed pictures of street-level view of selected addresses. They drive around certain cities (see below) with a gps device and 2 digital cameras then plot the corresponding images with the street address...Thereby allowing you to see your destination before arriving. Great tool for researching locations, coffee shops, resturaunts, clubs, etc

Here is the LINK


The most powerful technology A9.com invented for Yellow Pages is "Block View," which brings the Yellow Pages to life by showing a street view of millions of businesses and their surroundings.

Using trucks equipped with digital cameras, global positioning system (GPS) receivers, and proprietary software and hardware, A9.com drove tens of thousands of miles capturing images and matching them with businesses and the way they look from the street.

The whole process (except for the driving!) is completely automatic, making it fast and efficient. Block View allows users to see storefronts and virtually walk up and down the streets of currently more than 10 U.S. cities using over 26 million photographs. We are driving and at some point hope to cover the whole country.

Current List of Cities Having Block View Images


The current list of cities and their surrounding areas include:

  • Washington DC
  • Phoenix
  • Miami
  • Houston
  • Fargo
  • Atlanta
  • Boston
  • Dallas
  • Chicago
  • New York City (Manhattan)
  • Denver
  • Los Angeles
  • Seattle
  • Portland, Oregon
  • San Francisco and the Bay Area



Coverage of Manhattan – partial map (driving over the bridges was not exactly intentional). Here's one of our trucks covering Manhattan.

Liberal Websites

Some Liberal Websites for your viewing pleasure:

Robertson's Quotes

Remember: People Actually Give Him Money




Jesus may love you, but I'm going to get some pipe-hittin' Liberians to go to work on you with a pair of pliers and a blowtorch!



Time to rearrange the Pat Robertson atrocity board. In a just world where a Sky Fairy actually exists, he would dressed in eight layers of filthy clothing in a public park and be muttering to squirrels about CIA broadcasts through his fillings and the invisible atheist gnomes that are stealing his day-old charity bread:

(1) "What we need is for somebody to place a small nuke at Foggy Bottom [headquarters of the State Department]"

(2) On gay days at Disneyworld: "I would warn Orlando that you're right in the way of some serious hurricanes, and I don't think I'd be waving those flags in God's face if I were you, This is not a message of hate -- this is a message of redemption. But a condition like this will bring about the destruction of your nation. It'll bring about terrorist bombs; it'll bring earthquakes, tornadoes, and possibly a meteor."

(3) "Just like what Nazi Germany did to the Jews, so liberal America is now doing to the evangelical Christians. It's no different. It is the same thing. It is happening all over again. It is the Democratic Congress, the liberal-based media and the homosexuals who want to destroy the Christians. Wholesale abuse and discrimination and the worst bigotry directed toward any group in America today. More terrible than anything suffered by any minority in history."

(4) "You know, I don't know about this doctrine of assassination, but if he thinks we're trying to assassinate him, I think that we really ought to go ahead and do it. It's a whole lot cheaper than starting a war." (bonus church sign here.)

(5) "[Planned Parenthood] is teaching kids to fornicate, teaching people to have adultery, every kind of bestiality, homosexuality, lesbianism -- everything that the Bible condemns."

(6) Feminism is a "socialist, anti-family political movement that encourages women to leave their husbands, kill their children, practice witchcraft, destroy capitalism and become lesbians."

(7) "Religious broadcaster Pat Robertson accused President Bush of 'undermining a Christian, Baptist president to bring in Muslim rebels' by asking Liberian President Charles Taylor, recently indicted for war crimes, to step down."

(8) "One justice is 83 years old, another has cancer and another has a heart condition. Would it not be possible for God to put it in the minds of these three judges that the time has come to retire?"

(8a) "Well they can interpret it any way they want to. I'm talking to God, and it's up to Him to make a decision and if some of these folks don't like what I'm praying for and want to pray the other way -- have at it! Let the Lord decide."

(9) Robertson purchased rights from Mobutu to dredge for diamonds in a remote portion of the Zaire river near Tshikapa. Diamond mining is an expensive proposition... In a cost-cutting move, Pat ferried his cargo aboard planes owned by Operation Blessing, a tax-exempt charity of Robertson's working to deliver medical supplies.

(10) "You say you're supposed to be nice to the Episcopalians and the Presbyterians and the Methodists and this, that, and the other thing. Nonsense. I don't have to be nice to the spirit of the Antichrist. I can love the people who hold false opinions but I don't have to be nice to them."

And, just narrowly being nudged out of the top 10, because it's rather implied by the other atrocities, is "[Separation of church and state] was never in the Constitution. However much the liberals laugh at me for saying it, they know good and well it was never in the Constitution! Such language only appeared in the constitution of the communist Soviet Union." Plus he farts a lot and blames it on Satan's dog.

Sucessful Web 2.0 Company

10 Steps to a Hugely Successful Web 2.0 Company

Do you want to make money in your own home?

Forget real estate scams, tupperware, or becoming a spammer.

Create your own Web 2.0 company NOW!!

Its easy. Just follow these 10 simple steps and you, too, can be seen in fine dining establishments like Jamba Juice and speaking on panels for conferences like Distribucate 2.0, Fred, Bloggerstock and Elfdex.

1. Solve the smallest possible problem (that is still big enough to matter) for the user and know exactly what problem you're trying to solve. Google's first and primary job was very simple: Help people find stuff. They didn't start layering on everything else until much later. Brad calls this the "narrow point of the wedge." Its the easiest, simplest version of what you're trying to do... the smallest bite your users will ever have to chew--small enough to get hooked on very easily.

2. Get a responsive and chatty audience using the product. The del.icio.us community eats new features like piranhas. They pour over the service, discuss it, promote it, and complain when they don't like stuff. You couldn't have hired a better, more thorough, or more passionate group of alpha testers. Don't rush to get the service so easy that my dad can use it, because he's not going to really be helpful to you in the early days when you need really hardcore Beta testing.

3. Launch. Now. Tomorrow. Every day. Don't wait until its perfect to put it out in the open. No more closed invite-only betas. Your idea of perfect may not jive with your users' ideas of perfect. Put whatever you can out there and get people using it as soon as possible. Feed them daily with new features to keep them interested and coming back. No one likes waiting six years for new releases.

4. Distribute. Distribute. Distribute. Don't force your users to play on your site in a walled garden. Let them take the service and use it wherever they want. (See Flickr badges, Google Ads, Amazon affiliates, Indeed jobrolls, del.icio.us linkrolls, moblogging, RSS, e-mail alerts, etc., etc....) Instead of building it so they will come, go out and get them by placing little bits of your service everywhere on the web. Be where they are.

5. Don't hold users against their will. If they want to leave, let them pick up with all of the content they created while they were on your site and leave... for free. Charging $0.29 to get back each of the hi rez photos you uploaded to the site (See my upcoming Snapfish post) is thievery. You have to let the barn door open and focus on keeping your customers fed, so they want to come back, instead of coming back because they're stuck.

6. Be mindnumbingly simple. Extra clicks are deadly. People just won't do it. Indeed: One search, all jobs. Two boxes: What job and where. You can't get any easier than that and all it takes is for someone to put one search in for people to go, "Wait...what's this... links to Monster AND Careerbuilder??"

7. Get people hooked on free. Craigslist wouldn't have become Craigslist if it wasn't free for so much for so long. Even now, they're very profitable and they're only charging for just a few small pieces of their service in just a handful of their 120 markets. The world is changing. Service is cheaper to provide now than ever and users are expecting to get more for free than ever before. Its hard for a lot of big companies to accept that. I just had lunch recently with a couple of friends from a music publisher. They were signing some bands to "incubator" deals for just a couple of songs to test the market with them. I said, "And you're giving those songs away for free, right?" They nearly choked on their food. :) Well, why the heck wouldn't they? Give a few songs away for free, generate buzz, get lots more people to buy future albums. Seth Godin did that with his books, releasing e-books that generated buzz around hardcover sales. Free sells. Do you think the Facebook would be the Facebook if you had to pay for your smooches like you do on Match?

8. Don't waste any money on marketing. Word of mouth has never ever been easier or less expensive in the history of human communication. Things go viral in a hurry... when they're good. Ever see a Skype superbowl commercial? No, but they've had 146 million people download it. If you don't have the service and the quality to back it up, no amount of fancy marketing is going to help... and people are so quick to share cool stuff, because they want to be the person "in the know". When they're satisfied, they'll blog about it and e-mail everyone they know. And they'll tag it furiously on del.icio.us, too.

9. Don't overfund. Do you know how many times a day I see companies get funded on Private Equity Week and I'm like, "What the heck are they going to do with all that money??" Underfunding a company can be a problem, too, but thinking that more money makes you better is a fallacy. It probably makes you a bit sloppy and fuzzies your focus. When you raise $2 million, you're much more likely to have a clear sense of exactly where that money is going to go than if you raised $20 million.

10. No one sucks. I hate it when someone says that a whole service sucks. Now, I say it myself, I'll admit, but what that does is it teaches you to discount and generalize, and probably miss a lot of small opportunities that add up. Now, I think Ofoto sucks versus Flickr, but people still use it. Why? There's got to be something there. AOL sucks... or does it? They still have 20 million users, so it can't entirely suck. You should look at every competitor and take the best of what they do right and do it yourself, even if that's only one thing and the rest of their service sucks.

Thursday, June 30, 2005

iPod integration with Laptop

This interesting piece of patent marginalia shows a potential iPod Mini stuck inside a potential PowerBook. This is actually probably just Apple’s way of covering its arse when someone comes out with a similar notion of an MP3 player built into a laptop, something about prior art or whatever, but the premise is compelling.IntegratediPodminiinAppleNo.gif The iPod acts as the laptop’s touch pad and, like some other laptops we’ve seen, the screen supplies handy info like battery life, grayscale pr0n, and track listings. Will it ever be made? Naw. But it’s nice to know someone is thinking out in Cupertino.

Wednesday, June 29, 2005

News in Brief

Dead iPod Remembered As Expensive

VENTURA, CA—A third-generation, 30-GB iPod, serial number AP356372, died early Monday morning at age 2. "I'll never forget all the great music it used to play during my workouts," said the late iPod's owner Sarah Zartman at a brief memorial held over the junk drawer. "It was convenient, portable, and really pricey—almost $500." Zartman said that, had she known the iPod's lithium-ion battery would have such a short lifespan, she might have spent more time listening to it. AP356372 is survived by a BlackBerry.