Report

Men in blue suits raid Gizmodo

Published: May 4, 2010 Reading time: 2 min

Many bloggers and commentators are making much of the fact that San Mateo police served a search warrant on the home of Gizmodo blogger Jason Chen and confiscated computers, servers and other equipment, probably as a result of his postings about the capabilities of the lost prototype Apple 4G iPhone. Gawker Media, which owns Gizmodo, made public the fact that it paid $5,000 for the prototype iPhone which was accidentally left in a bar by one of Apple’s software engineers last month. ...

Continue Reading

Whoops – Treasury still hacked.

Published: May 3, 2010 Reading time: 1 min

I was wrong in my earlier assessment that the three treasury websites had been cleaned… the attack site was simply tracking ip addresses, and would not serve the iframe on subsequent visits.I really should have noticed that earlier, and have no excuse except that it was very early. And pre-caffeine. Folks should stay away from the sites mentioned until they’re cleaned.

Continue Reading

A HijackThis Toolbar from Facebook?

Published: May 3, 2010 Reading time: 1 min

Spam emails such as the one below have been doing the rounds on the Internet hoping to lure recipients into downloading a Facebook toolbar. If you download the file by clicking on “Download Here”, you’ll see a file with the icon shown below: If you take a closer look at the icon, “darkSector” is shown inside of it. How strange. Is this actually a Facebook toolbar? Let’s take a look at the property of the file since the file looks a bit fishy. In the file properties, you’ll see the following in the Details tab. ...

Continue Reading

Second Life Users File Class Action Lawsuit Over Virtual Land

Published: May 3, 2010 Reading time: 2 min

A group of Second Life users is suing Second Life’s creator over a virtual land dispute. They say their contractual property ownership rights have been changed and that this alteration of the terms of service constitutes fraud and violates California consumer protection laws. Before you scoff too much at this seemingly ludicrous lawsuit, remember that virtual worlds aren’t just “funny money” and avatars. They’re serious business, both for the owners and investors who profit from them and for the users who pump hundreds and even thousands of dollars each into creating characters and interacting online. ...

Continue Reading

Report: DOJ, FTC scuffle over scrutinizing Apple on antitrust

Published: May 3, 2010 Reading time: 4 min

On a day when investors began celebrating Apple’s report of having already sold its one millionth iPad, news from this morning’s New York Post — which was the first with the story of the Sirius + XM merger — has thrown a cold towel on investors’ sentiments. The Post cites a single anonymous source as saying that essentially the only thing stopping a government inquiry into whether Section 3.3.1 of Apple’s Developers’ Agreement violates antitrust law, is a dispute over which government department gets first crack: the Federal Trade Commission, or the Dept. of Justice Antitrust Division. ...

Continue Reading

Facebook Users Like Sex [STATS]

Published: May 3, 2010 Reading time: 2 min

Self-proclaimed social media scientist Dan Zarrella has already applied linguistic methodologies to psychologically profile Twitter users. Now he’s using the same technology and approach to break down Facebook sharing behaviors. Zarrella uses the Regressive Imagery Dictionary (RID) and Linguistic Inquiry and Word Count (LIWC) methods to arrive at the conclusion that, “Articles … that include sexual references in their titles are shared on Facebook far more than the average story.” ...

Continue Reading

Another call to avoid “admin” privileges

Published: May 3, 2010 Reading time: 1 min

For the second time recently, a security researcher has pointed out that running machines without administrative privileges could significantly improve security. Mikko Hypponen, the head of research at Finnish AV company F-Secure in an interview with The Inquirer, said a great way to stop a lot of malware would be to take administrative rights away from online users. “Most wouldn’t notice (although those who did would be incandescent with annoyance) and most malware would be stopped from functioning. It should have been done already,” he said. ...

Continue Reading

Treasury website hacked

Published: May 3, 2010 Reading time: 1 min

For a short while today a couple of treas.gov websites were hacked, and were reaching out to an attack site in Ukraine. The websites involved were bep.gov (Bureau of Engraving and Printing), bep.treas.gov and moneyfactory.gov. They had been script injected with the line of code circled in red… Btw, you should _not_ mess with the attack site (grepad) … it was dead earlier today, but could easily come back to life. ...

Continue Reading

How much do musicians make from online music sales?

Published: April 17, 2010 Reading time: 2 min

Short answer: an infinitesimally small amount. If you have any sympathy for musicians you’ll buy their CDs from their web sites or at their performances. That’s pretty much the conclusion you’ll draw from a great attempt at quantifying musicians’ pay rates in the online music business(es) by David McCandless of InformationIsBeautiful.net. McCandless tried to determine how many songs or CDs a musician would need to sell in various ways to make the U.S. minimum wage ($1,600 per month). It was a tough project. He wrote: “As ever, this was incredibly difficult to research. Industry figures are hard to get hold of.” ...

Continue Reading

A Trojan Adding Malicious Routing Entries

Published: April 17, 2010 Reading time: 2 min

Backdoor.Rohimafo is a Trojan that has several back door functions. It not only opens a back door and performs the usual functions but it also can perform some decidedly unusual functions. It attempts to block users from connecting to remote servers; not only specific servers but also specific network segments by using PersistentRoutes in Windows. PersistentRoutes can be used to add a routing entry to a routing table persistently. The route.exe command can be used to add an entry like the following: ...

Continue Reading

Google: 11,000 domains carrying rogue security products

Published: April 17, 2010 Reading time: 2 min

Niels Provos of the Google Security Team has blogged about the rise of malicious web sites carrying rogue security products, which the Google team calls “Fake AV.” Google has been engaged in a constant battle against the sites because the operators who peddle them have been refining their techniques for poisoning Google search engine results in order to victimize Google users by drawing them to malicious download sites. He wrote: “we conducted an in-depth analysis of the prevalence of Fake AV over the course of the last 13 months, and the research paper containing our findings, ‘The Nocebo Effect on the Web: An Analysis of Fake AV distribution’ is going to be presented at the Workshop on Large-Scale Exploits and Emergent Threats (LEET) in San Jose, CA on April 27th.” ...

Continue Reading

UK firm offers clickjacking visualization tool

Published: April 17, 2010 Reading time: 1 min

UK security firm Context Information Security Ltd., is making available a browser-based tool that will demonstrate clickjacking techniques that were discussed at a Blackhat Europe 2010 presentation. On the Context site, they said “Clickjacking is a term first introduced by Jeremiah Grossman and Robert Hansen in 2008 to describe a technique whereby an attacker tricks a user into performing certain actions on a website by hiding clickable elements inside an invisible iframe. ...

Continue Reading

AP Stylebook Finally Changes “Web site” to “website”

Published: April 17, 2010 Reading time: 1 min

This might not mean much if you’re not writing or editing a tech blog, but news that the AP – whose stylebook is still the standard for all things grammar and punctuation in the news world — is officially changing “Web site” to “website” was met with a warm reception in our newsroom (and likely quite a few others) this afternoon. We’d actually gone rogue on the issue ourselves several months ago, thinking that “Web site” was a rather antiquated way for describing “a computer connected to the internet that maintains a series of web pages on the World Wide Web.” ...

Continue Reading

Facebook Twice as Popular as Google in the Workplace

Published: April 17, 2010 Reading time: 2 min

Business employees are visiting Facebook from the workplace more than any other internet site, including Google, Managed Security Services company Network Box discovered in a recent study. The company looked at 13 billion URLs used by businesses in the first quarter of 2010 and found that 6.8% of all business Internet traffic goes to Facebook, which is double the amount of business traffic that goes to Google and nearly triple the amount that Yahoo gets. ...

Continue Reading

Apple Remains America’s Most Innovative Company

Published: April 17, 2010 Reading time: 3 min

BusinessWeek and Fortune have both released their annual rankings — the 50 Most Innovative Companies and the Fortune 500, respectively — and Apple has strong showings in both publications. For the sixth consecutive year, Apple ranked number one in BusinessWeek’s 50 Most Innovative Companies report. When you consider that BusinessWeek only started this ranking system in 2005, that statistic becomes even more impressive. James Andrew, senior partner and head of global innovation at Boston Consulting Group (the company that provides the data to BusinessWeek) claims that every year Apple is the “hands down winner,” although Google remains a strong second. Furthermore, when those surveyed were asked what company would replace Apple as the most innovative over the next five years, the most common response was “no one.” ...

Continue Reading