Wednesday, September 30, 2015

El Capitan, Root is no longer Root

*Nix users are used to being all powerful on the OS, but that is no longer true with the latest OS X by default.

Monday, September 28, 2015

Wednesday, September 23, 2015

Forbes serves up malvertising

Last week an ad network used by Forbes' site was sending the Angler exploit pack to certain visitors. Another reason people like ad blockers:Security.

Gmail can now block senders

While you could setup a rule to delete specific senders' email, Gmail now has a drop down choice for blocking senders. The Gmail Apps will get the same functionality soon.

Android AntiVirus, You Need It.

More malware found in the Google Play Store, some of it there for more than a year.

Tuesday, September 22, 2015

Symantec fires employees for issuing certs in Google's name.

Trusted SSL certs from Google's domain but not authorized by Google. Bad stuff. Lawsuits?  Certs have been revoked.

Monday, September 21, 2015

Sunday, September 20, 2015

Friday, September 18, 2015

Google fixes Lollipop lock screen bypass

If you have Lollipop, use a password  (not a PIN) on your lock screen, and your phone allows locked-screen access to your camera, a long password would crash the camera app and dump back to the home screen.  This has been fixed in the latest patch.

TSA don't care if you have the MasterKeys

Made for convenience, the master keys fit TSA approved luggage to allow for quick open/close. You can now download the plans to print your own Master Keys and the TSA isn't worried.

Android StageFright Exploit Code Available

Turn off auto download of MMS messages on your Android device unless you're patched. There is a StageFright detector in the Play Store.

Tuesday, September 8, 2015

It's Sept Patch Tuesday

Microsoft has released 5 critical patches for their browsers, Windows, and Office. There are also important patches. Adobe has released a patch for Shockwave Player. Shockwave isn't Flash but if you have Shockwave you've also got Flash (Adobe bundles them like that.)

Friday, September 4, 2015

Mozilla Bugtracker Bugzilla compromised

Bad guy was able to use info to create an exploit for a vulnerability in Firefox that has been patched. Now admin users have to use two factor authentication.

Companion app improving personal safety..

Walk home with your friends talking to you and monitoring your position vis GPS.

FCC may ban router mods like DDWRT

In trying to lock down parameters like signal strength output, the FCC may require locked down routers.

Wednesday, September 2, 2015

Google to "downrank" sites that prompt for App installs

Have you visited a site on your mobile device and been offered an App to improve your experience.  Google will being lowering search ranking for such sites.