| 

Report: iOS vulnerability sold for $250,000

  • Post author: Omid Farhang
  • Post published: March 26, 2012
  • Reading Time: 2 min
  • Word Count: 312 words

The H-Security: Business appears to be booming for those who trade in unpatched (zero-day) security holes: according to a report by Forbes magazine, a US company that works for the US government recently paid $250,000 for a vulnerability in Appleā€™s iOS operating system. The report says that the deal was arranged by a hacker who goes by the name of ā€œthe Grugqā€ and who has brokered agreements between those who discover vulnerabilities and government agencies over the last year. If negotiations are successful, the hacker retains a 15 per cent commission; heā€™s reportedly on track to earn about a million US dollars this year with his brokerage business. ...

Continue Reading Report: iOS vulnerability sold for $250,000

Apple's new iPad is great, but it's not free, nor called iPad 3

  • Post author: Omid Farhang
  • Post published: March 19, 2012
  • Reading Time: 2 min
  • Word Count: 328 words

SophosLabs: Only hours after the launch of Appleā€™s newest iPad we are beginning to see spammers trying to use the excitement over its release to ensnare innocent people into their scams. The scammers are sending out emails with the subject ā€œWhere do we send your Free iPad 3, just Test & Keep! See detailsā€. The email contains an image with the text ā€œTEST & KEEP an iPad 3 FREE ā€“ Click hereā€. ...

Continue Reading Apple's new iPad is great, but it's not free, nor called iPad 3

Safari update closes security holes

  • Post author: Omid Farhang
  • Post published: March 13, 2012
  • Reading Time: 2 min
  • Word Count: 272 words

Apple has released version 5.1.4 of its Safari web browser for Windows and Mac OS X. According to the company, the maintenance and security update addresses more than 80 vulnerabilities. The update also includes includes various stability and performance improvements as well as fixes for other non-security related bugs. A majority of the security holes closed in 5.1.4 were found in the WebKit browser engine used by Safari. These include several cross-site scripting (XSS), cross-origin and HTTP authentication problems, as well as numerous memory corruption bugs that could be exploited by an attacker, for example, to cause unexpected application termination or arbitrary code execution. ...

Continue Reading Safari update closes security holes

Free iPad 3? It doesn't exist! Beware of scams

  • Post author: Omid Farhang
  • Post published: March 1, 2012
  • Reading Time: 2 min
  • Word Count: 288 words

It is widely anticipated that Apple will announce a new version of its iPad tablet computer in San Francisco on March 7th. An invitation sent to journalists, inviting them to an event organized by Apple, has fueled speculation even further as it appears to show a close-up of someone using an iPad. Could it be the new iPad with a much lusted for improved display and souped-up processor? Only time will tell.. ...

Continue Reading Free iPad 3? It doesn't exist! Beware of scams

Google found evading Safari's privacy controls

  • Post author: Omid Farhang
  • Post published: February 17, 2012
  • Reading Time: 3 min
  • Word Count: 433 words

The H-Online: Google and other advertising companies have been found to be deliberately evading the privacy controls of Appleā€™s Safari browser. The evasion was revealed in a report in the Wall Street Journal and was based on work by Stanford researcher Jonathan Mayer. He found that the ā€œ+1ā€ button code added to DoubleClick advertisements also allowed a Google DoubleClick tracking code to be installed on desktop Safari on 22 of the top 100 web sites. The same happened with 23 of those 100 sites when using Safari on the iPhone. ...

Continue Reading Google found evading Safari's privacy controls

Apple previews OS X 10.8 with Gatekeeper

  • Post author: Omid Farhang
  • Post published: February 17, 2012
  • Reading Time: 2 min
  • Word Count: 237 words

The H-Online: A developer preview of Mac OS X 10.8 is now available to registered Mac developers after Apple announced the new version, named Mountain Lion, and previewed a number of its features. Among those features is Gatekeeper which Apple says ā€œhelps prevent you from unknowingly downloading and installing malicious softwareā€. The Gatekeeper feature has three levels of security for running applications downloaded from the Internet; ā€œMac App Storeā€, ā€œMac App Store and identified developersā€ and ā€œAnywhereā€. The first setting only runs applications downloaded from the Mac App Store, in a style similar to the iPhone only running apps from the App Store. Unlike the iPhone though, Gatekeeper lets users allow applications from other sources. The ā€œMac App Store and Identified Developersā€ option only allows applications from the store and from developers who have signed their program with an Apple-issued Developer ID, while ā€œAnywhereā€ allows any program to be downloaded and run. It is unclear how Gatekeeper interacts with software loaded from other media, such as a USB memory stick or CD/DVD. ...

Continue Reading Apple previews OS X 10.8 with Gatekeeper

Apple releases Mac OS X 10.7.3

  • Post author: Omid Farhang
  • Post published: February 2, 2012
  • Reading Time: 2 min
  • Word Count: 315 words

The H-Security: Apple has released Mac OS X 10.7.3 and, for Mac OS X 10.6.8 Snow Leopard users who have yet to upgrade to Lion, Security Update 2012-001; these maintenance and security updates addresses a number of vulnerabilities in the companyā€™s desktop and server operating systems. According to Apple, the updates close more than 50 holes, many of which could be exploited by an attacker to, for example, remotely execute arbitrary code on a victimā€™s system, gain access to private information or cause a denial-of-service (DoS). ...

Continue Reading Apple releases Mac OS X 10.7.3

Mac OS X Trojan hides behind malicious PDF disguise

  • Post author: Omid Farhang
  • Post published: September 25, 2011
  • Reading Time: 2 min
  • Word Count: 292 words

SophosLabs: A fascinating new example of Mac malware has been discovered, that appears to be adopting an old Windows-style disguise to fool users into running it. Despite the numerous times that cybercriminals have created boobytrapped PDF files that exploit vulnerabilities to infect unsuspecting users, many people still think that PDF files are somehow magically safer to open than conventional programs. The OSX/Revir-B Trojan plays on this by posing as a PDF file. ...

Continue Reading Mac OS X Trojan hides behind malicious PDF disguise

Yes, Microsoft Did Change The World More Than Apple

  • Post author: Omid Farhang
  • Post published: September 8, 2011
  • Reading Time: 1 min
  • Word Count: 143 words

Business Insider: A new poll in France says 7 out of 10 people think Microsoft did more to change the world than Apple. We think we would have similar results in other countries, if only because a lot more people (still!) use Microsoft products than Apple products, at least for personal computing which is (still!) the most important part of computing. Itā€™s hard to see a mention of Steve Jobs without the worlds ā€œchange the worldā€ or ā€œchanging an industry.ā€ And letā€™s give him his due. Letā€™s give him his due as one of the greatest entrepreneurs in history, as an amazing entrepreneur and visionary who left many ā€œdentsā€ in the universe. And he did change many industries, like music, film, and yes, personal computing. ...

Continue Reading Yes, Microsoft Did Change The World More Than Apple

Jobs opportunities for Apple scammers?

  • Post author: Omid Farhang
  • Post published: August 25, 2011
  • Reading Time: 1 min
  • Word Count: 209 words

SophosLabs: Steve Jobs has now done what many of us thought would happen sooner or later ā€“ stepped off the very prestigious CEO plinth, taking a less taxing role as chairman of the Apple board. The new CEO will be Jobsā€™ right-hand man Tim Cook. Despite Jobs having been on medical leave since January this year, the markets were all a tumble once the news of his resignation hit the markets, with Apple share prices dipping at one point by 5%. ...

Continue Reading Jobs opportunities for Apple scammers?