Tuesday, February 24, 2015

Firefox 36 released

New design for android tablets and HTTP/2

New Critical Samba flaw

The most popular Microsoft compatible network server for Linux, Samba, has a new vulnerability that allows unencrypted access to "root."  Redhat 4/5 is not affected, but RH 6 and 8 is.

FBI offers $3m for hacker

Largest reward ever offered.  The FBI really wants this Russian hacker.

Monday, February 23, 2015

Saturday, February 21, 2015

Why Lenovo's Superfish blunder is so bad...

Not only did they squander good will, they also opened a serious security hole.

Friday, February 20, 2015

Steal All The SIMs

The Great SIM Heist is the story of how (supposedly) the US and UK govts stole the encryption keys protecting cellular traffic.

Thursday, February 19, 2015

Dissecting Superfish

Some Lenovo devices came with preinstalled SSL intercepting "adware" known as Superfish.

Wednesday, February 18, 2015

Lenovo users, beware of preinstalled Superfish

Some Lenovo devices came with "adware" preinstalled.  Superfish, which reportedly searches for cheaper prices, had its own SSL certs installed that would combine with software and allow it to intercept https connections (secure browsing.)  Lenovo has stopped shipping the software and issued patches to remove it.

UTC hosted GENI "rack" in the news

On the Chattanoogan.

Who owns Bluetooth? Samsung just got trolled for $15m

A group is claiming to own Bluetooth and now Samsung will have to pay (or go back to court).

HTTP/2, The next web protocol

Faster, stronger, more better....multiplexing, faster page loads, and the ability to have the server "push".

Tuesday, February 10, 2015

Jeb Bush posts senstitive info online

In an effort to increase transparency, the FLA governor released emails containing personal data.

Sunday, February 8, 2015

Soon you'll be able to ask your carrier to unlock your phone.

Starting mid February all the major carriers will unlock your fully-paid-for phone via your request to do so.

New Linux malware, "Xnote"

With a variety of functions but no clearly indicated infection vector.

Saturday, February 7, 2015

OS X 10.10.3 brings Google 2-factor authentication

You'll be able to use 2-factor auth to check your gmail via the Mail app.

Anthem Breach brings Phishing

The bad guys are sending out bogus emails (phishing) about "your Anthem account information".

Thursday, February 5, 2015

2nd Largest Health Insurer, Anthem, Hacked with 80 million affected

Possibly 80 million people have had their name, SSN, DOB, and email stolen as Anthem has suffered a breach. Anthem will be notifying victims and offers 1-877-263-7995 for those worried.

Tuesday, February 3, 2015

3rd Unscheduled Flash Patch for 2015

Adobe has released another patch for Flash.  Update when you can.

Monday, February 2, 2015

Another 0Day Adobe Flash Vulnerability

Third one so far this year, Adobe has yet to release a patch.