Hotel Travel Tip: More humidity, less luggage, and clean clothes

Here's my tip for alleviating a problem frequently encountered by folks on the road: notoriously dry hotel air. At the same time, this tip offers a way to travel lighter, packing fewer clothes:
Wash your shirts and such in the hotel sink and use the hotel towels to dry the clothes, adding moisture to the air as both towels and clothes dry out.
I used to think it was just me, but lately I have learned that many of my fellow travelers also suffer from the incredibly dry air you find in many in hotel rooms, particularly during the winter. This air often seems intent on totally desiccating hotel occupants.

One way to add moisture to the air is hang damp fabric around the room. So I figured, why not hang damp towels, my washed shirts and, yes, my washed boxers?

[WARNING: Never hang anything from a sprinkler or other fire response/alarm device!]

The damp towels are a by-product of a clothes-drying technique I learned from my wife. So here is my strategy for adding moisture to your room while traveling lighter:
  • Pack a smaller number of shirts than there are days in my trip; 
  • at the end of each day, rinse the shirt your wore that day in the bathroom sink; 
  • wring out the excess water from the shirt;
  • lay a bath towel on the bed;
  • lay the shirt on the bath towel; 
  • roll the shirt up in the towel;
  • then roll it tighter by holding one end of the towel/shirt bundle on the floor with your foot as you continue to twist; 
  • hold that for about 20 seconds and then unroll;
  • straighten out the shirt on a hanger and hang it to dry;
  • Hang the towel, unfolded, on the shower rail. 
Both towel and shirt put moisture into the air during the night as they dry. I rarely get up the next day to find either towels or shirts still damp. (On the other hand, I still feel dry in some hotels, so this is not a cure-all.)

Sometimes there are no convenient places to hang clothes to dry. One spot that can work is the swing out door on the TV cabinet. I found this works better if you put a dry washcloth between the shirt and the wood finish on the door.

Also, I normally travel with an S-shaped piece of coat hanger wire in my bag that works will to adapt hotel hangers when they have the small hooks on them.

But please, do not hang stuff on sprinklers, it is not worth the risk. Last year I stayed at a hotel where some kids had hung wet clothes on a sprinkler head and caused it to, well, sprinkle. Thousands of dollars of damage resulted in their room and on each of the floors below their room, all the way to the lobby where contractors were still peeling back wall paper and inspecting walls to find damage several days after the event.

2,500 Blog Posts and Counting

Stephen CobbThat's 2,500+ blog posts if you count all my posts across all my blogs and those of my employer (ESET). My blogging is now very infosec-oriented, but I'm still spreading the word about the silent genetic killer, hereditary hemochromatosis, on the Celtic Curse blog and the largely-self-sustaining Facebook hemochromatosis page, which now has over 1,750 followers. Of course, all views expressed on cobbsblog.com are mine and not those of my employer.

Happy New Tech Year


Just a quick post to say that most of my technology-oriented blogging in 2012 will be happening over on the ESET Threat Blog.

I am enjoying being part of the ESET research team which extends from Singapore to Slovakia, through the Netherlands to the UK, on to Montreal and Buenos Aires, then San Diego, which is where I am located these days.

This international distribution of research resources provides exceptional ability to gain insight into emerging threats to data and systems, notably but not only in the computer virus arena. And the depth of talent in the group is outstanding, producing in-depth technical analysis of malware (malicious software) and the things that purveyors of this stuff get up to, always with an eye to defeating the bad guys and protecting as many honest Internet users as possible. Here is a page of recent and relevant resources.

iTunes - Podcasts - DEFCON 3 - Feat. Me

If you are into hardware and software experimentation you might have noticed, with some amazement, that 2012 is the year of DEFCON 20. That's two decades of hacker convention fun and games. I missed the first two but was invited to speak at DEFCON 3 which was held August 4-6th 1995 at the Tropicana in Las Vegas. So I was delighted to encounter this link recently: Past speeches and talks from DEF CON hacking conferences in an iTunes friendly m4b format. I took a listen to my session (on Why Hacking Sucks) and was pleased to find it still sounded pretty sane. A helpful interaction is how I would characterize it, at least for me.

Will Christmas Kindles Torch the Internet and Evaporate the Amazon Cloud?

I got an Amazon Kindle Fire from my wife for Christmas and I'm a bit worried about the effect on the Internet. I should explain that I got my Fire a few weeks ago because my wife and I like to give each other digital gifts before Christmas Day so that by the time Christmas Day arrives we have said devices fully configured and can actually play with them (I got her an iPhone 4S).

The problem I see is that Amazon has been selling about one million of these Fire things a week and many of them may not be fired up, so to speak, until Christmas Day. Here's what happened after I fired up my Kindle Fire: It gave me instructions on how to put my music in the cloud, and store it there for free, and those instructions were very easy to follow, so my laptop was soon engaged in uploading 6,471 files. Engaged as in "I need to spend several days trying to do this."

When it was done, those files added up to over 30 gigabytes of data, sitting in the cloud somewhere, ready for me to listen to them at the tap of a screen. Now imagine 2 million people getting a Fire for Christmas and accepting that invitation to put their music in the cloud. Suppose they each have, on average, 20 gigabytes of music. That's 40 million gigabytes or 40 petabytes added to the cloud and Internet traffic on Christmas Day. I hope Capacity Planning at Amazon.com has been doing some planning. And those folks who manage the tubes, they better be ready to put out some fires.

Mac OS X Help: Specifying criteria in Spotlight

I just updated this post with a Mavericks screenshot, but the basic point holds true for the past few versions of OS X: the Spotlight search tool on Macs can be very powerful, but a surprising number of people don't seem to know how to tap that power (and for a long time that included me).


Apple has a good basic article on Spotlight. Remember that you can always press Command+Spacebar to pop up Spotlight. And you can use the Spotlight pane in System Preferences to change these categories around, their order, and even which categories appear.

You can type calculations into Spotlight and find that 256*2-680 is 168.

You can get the definition of a word by typing it into Spotlight and then checking the Look Up section of the results.

Enjoy!

The Google-SOPA-PIPA-DNS-Copyright-Oil-and-Gas Link

What does copyright infringement have to do with scraping oil from the bottom of a barrel and an acronym soup like SOPA, PIPA, DNS and DNSSEC? The answer lies with Google, not the search engine but the company.

More specifically, the answer lies with Google's Executive Chairman, Eric Schmidt, who said the following at the University of Minnesota last week when asked about legislation (SOPA/PIPA) which would--in the name of protection against copyright infirngement--give the U.S. government the power to mess with the Domain Name System (DNS) that forms the backbone of the Internet:
“There are a whole bunch of issues involved with [SOPA] breaking the Internet and the way it works. The correct solution, which we’ve repeatedly said, is to follow the money...Making it more explicitly illegal to make money from that type of content [pirated movies, software, or other counterfeit goods] is what we recommend.”

Mr. Schmidt is entirely correct, and I love the expression "making it more explicitly illegal to make money from..." because it covers a range of actions that governments and law enforcement agencies can take without interfering with the way the Internet works.

For example, the act of distributing pirated movies would be more explicitly illegal if the pirates were identified, arrested, extradited or extracted, imprisoned, tried, convicted, and given 20-year sentences in maximum security facilities without the possibility of parole. The same goes for the makers of malicious software. Let's put a bunch of them in jail with long sentences and see if that reduces the malware problem.

I just don't see a downside to this hardline approach to making something like software piracy or handbag counterfeiting "more explicitly illegal" except that some people will say it costs too much money. Au contraire, if you do this right it will actually make a lot more money than it costs. Consider the numbers put out by supporters* of the Stop Online Piracy Act: "IP theft costs the U.S. economy more than $100 billion annually and results in the loss of thousands of American jobs" (The Austin Statesman).

If you gave me a budget of one percent of that amount ($1 billion), I would most assuredly, and within a period of 12 months, reduce the cost of that theft by at least 15 percent ($15 billion). In other words, backing the effort to crack down on piracy to the tune of $1 billion in fresh money would pay huge dividends, save thousands of U.S. jobs, and actually create jobs (without messing with DNS).

Why am I so sure of this? My answer is not a lot of hot air, but it is a bit oily, as in petroleum production taxes. Thirty years ago I was criss-crossing America auditing the state oil and gas taxes paid by petroleum companies, firms with names like Koch, Hess, Ashland, Texaco, and Hunt. During that time I learned a lot about the ways in which we humans try to cheat each other.

Consider the sludge that forms at the bottom of a crude oil holding tank such as you see next to wells in oil fields where the wells are not connected to a pipeline. Some of that sludge is recoverable oil and, from time to time, someone goes into the tank to suck it out. How much of the sludge is oil? How much gets pumped out? Where is it taken? How much of it gets there? These are all points in the oil production process where numbers and readings and measurements can be fudged, to the advantage of one party and the disadvantage of another.

Not that every case of missing petroleum tax dollars was a case of cheating. Oil companies were sometimes being cheated by employees and contractors. And every time the production output of a well is understated that also cheats the royalty owner, the person who owns the mineral rights to the land from under which the oil and gas is being extracted.

Operating on a shoe string budget my auditing team raked in millions of previously unpaid taxes within the first 12 months of operation. We used no new laws or fancy gimmicks. We just followed the money, which is what Eric Schmidt is saying when it comes to cracking down on copyright infringement. In oil production areas you don't close down the roads in and out of every county where production is apparently going missing. You go to the top of the organization, the people getting the money, and you figure out how they came by it. You examine the paperwork. You audit the heck out of the operation. If the organization is shady, you shed light. If it is in another country then you remind that country of our mutual interests.

We have already seen positive results when private dollars are used to help enforce public laws, as in the Microsoft and Pfizer funded action against the Rustock botnet. (If you're wondering why a drug company got involved, read the story, it really is a big deal.) So why not an anti-infringement posse formed and funded by the likes of Google, eBay Facebook, and Yahoo! The backers of Protect Innovation could really make a lot of friends in high places, and on the High Street, if they were seen to spearhead a new effort to put cyber-criminals behind bars.

* Note: Here are some of the fine companies and trade groups that back SOPA (I respect and admire many of them, I just think they are wrong about SOPA): National Cable and Telecommunications Association, National Association of Manufacturers, Pharmaceutical Research and Manufacturers of America (PhRMA), Business Software Alliance, Screen Actors Guild (SAG), the U.S Chamber of Commerce, Independent Film & Television Alliance (IFTA), National Association of Theatre Owners (NATO), Motion Picture Association of America, Inc. (MPAA), American Federation of Musicians (AFM), American Federation of Television and Radio Artists (AFTRA), Directors Guild of America (DGA), International Alliance of Theatrical Stage Employees, (IATSE), International Brotherhood of Teamsters (IBT), Comcast/NBCUniversal, National Songwriters Association, the United States Conference of Mayors, National Sheriffs' Association, International Brotherhood of Electrical Workers, International Trademark Association.