CERT-UK Launched

Last month saw the official launch of CERT-UK (Computer Emergency Response Team), the organisation tasked with coordinating the nation’s cyber defence efforts. The launch has been met by a widely positive response, and I’m personally glad to see the UK government being proactive in this space. Following the launch, I’m extremely excited and proud to … Continued

Piwik Web Analytics Version 2 Released

Here at Surevine we pride ourselves on being open source advocates. Part of the value we deliver to our clients is in surveying the open source ecosystem and critically reviewing the projects we find, in order to deliver best of breed software solutions. One feature our clients regularly require is application analytics, providing the ability … Continued

Open (insert word here)

Talk about community collaboration with most developers and the word inserted above would be source. Talk about collaboration environments such as GitHub and most people would say it’s a code management tool. In fact, their homepage mentions it explicitly: “… collaboration, code review, and code management for open source and private projects.” That’s probably about … Continued

“The future of XMPP on the web” at Realtime conf 2013

Lance Stout and Lloyd Watkin speaking at the 2013 Realtime Conf. Lloyd Watkin from Surevine recently co-presented a talk on “the future of XMPP on the web” at Realtime Conference 2013 in Portland, OR. Talking about the recent moves to make XMPP more browser/web developer friendly and introducing his project XMPP-FTW along with Lance Stout, … Continued

Fingerprint alone for authentication on smart phones

Biometrics have a long history in security systems, particularly where security is taken seriously. Fingerprint readers are usually used in addition to other factors, e.g. Access token, key, or password, or some combination of such. Leading to the phrase “something you know, something you have, something you are”. The parody: “something you forgot, something you lost, something … Continued

Research project: Pump.io

What is the project? Pump.io is an open-source Node.js-based social network platform. Its provenance is through the same architects as Status.net and Indenti.ca, and is intended to be a modern replacement for the Status.Net platform, and to allow others to create their own networks. It is, at its essence, a general-purpose network for definition following/follower … Continued

Surevine sponsors first UK-based regular XMPP/Realtime meetup

With the rise of XMPP and realtime technologies on the web, and the highly successful Realtime Conf, several of the staff at Surevine felt it was time for a regular meetup in the UK’s capital, London. From this the XMPPUK meetup was born, sponsored naturally by Surevine who supplied the pizza and beer at the … Continued

Web Security: Blacklists, Whitelists and WAFs Part II

I’ve received a teeny amount of “I agree, but…” feedback for last night’s posting; in this case from two fellow geeks whom I respect deeply. Their criticism – singular, shared –  is this: “There are times when having a WAF around can be handy! Sometimes there’s a 0-day announced and you can use the WAF to mitigate it … Continued

Web Security: Blacklists, Whitelists and WAFs

Consider a computer or network that is protected by a “firewall”, there will be two basic ways to configure the firewall: blacklist, ie: everything is permitted except for these items whitelist, ie: everything is forbidden except for these items …oh, and there’s the third form: total disconnection …but nobody likes that one. It took us … Continued

A little Alfresco / Tesseract OCR integration

I attended Alfresco DevCon in Berlin this year (a fantastic event) and two of the sessions that really caught my eye were given by Neil McErlean, Senior Software Developer, and Andy Hunt, Principal Support Engineer, about content transformations. I’d been playing around with an OCR tool called Tesseract for a bit on another project so thought I’d … Continued