Phrack 61 has appeared. Continuing the reading discipline.
This issue's most useful articles for me:
A piece on Slammer-style single-packet worms. The author analyses what made Slammer work and proposes architectural variants. The defensive implication: bandwidth-saturating UDP worms are a category, not a one-off.
An article on advanced kernel rootkit techniques. Continuing the trajectory. The techniques get harder to detect; the off-host observation argument I have been making continues to strengthen.
More as the year develops.