Archive

Posts Tagged ‘System security’

United States new bills found unlocked phone an offence buffer period for 90 days

February 27th, 2013 No comments

After January 26, 2013, United States consumers may not on the purchase of a new contract mobile phone unlocking (with different telecommunications operators providing services), it will be regarded as illegal. According to legal sources said the telecommunications industry, telecommunications operators will not unlock and the future questions to individual consumers to initiate proceedings. October 2012 the Digital Millennium Copyright Act (DMCA) is adjusted, United States Copyright Office no longer exempt users unlock the contract behavior. Official gave a 90-day grace period, which means that adjusted the Bill to come into effect on January 26, 2013.

The Act provides that “bypassed” Telecom network technology (that is, controlling network access built-in software) behavior is illegal, because it is the telecom network technology determines the phone can use operators to provide telecommunications services.

However, all for consumers as usual. In 2006, unlocking access to legal immunity for the first time; and then again in 2010 to be exempted. In fact, the Telecom consumer is never unlocked contract them to court, who has no intention of suing consumers in the future. But, unlocked enjoy immunity when recovery and unlocked mobile phone transfer to overseas companies would be punished–telecom operators and handset manufacturers can put on the Court such “broker” company gaodao.

However, the Electronic Frontier Foundation (Electronic Frontier Foundation) copyright law miqi·shituoerci (Mitch Stoltz) to express its concern. Because, as long as the operator is willing to, they can prosecute individual consumers at any time, you can also stop providing consumers with contract mobile phone unlock service–legally there is no obstacle.

Eric Stoltz said in a telephone interview: “consumers shield has been in the hands of copyright administration to recover. If the defendant to court, they will be difficult to win. ”

However, telecom operators have to Copyright Office last year said that they are not opposed to consumer unlocked contract phone. But there are still many telecom operators to provide unlocking services for consumers, and can adhere to. In addition, telecom operators be reassessed every three years of the DMCA unlocks the exemption provisions.

Zhanmusi·baodingge (James Baldinger) is a telecommunications company TracFone copyright lawyers and other telecom carriers, he said in a telephone interview: “telecommunication operators have been able to give legal gun of weapons of individual consumers, any litigation, investigations, and enforcement of judgments will not be directed against them. Telecom operators more worried phone cheaper reselling them subsidies (contract cell phones enjoy a telecom operator price subsidies), and ultimately the United States wireless service costs. ”

Copyright Office to adjust the Digital Millennium Copyright Act, another reason is that many carriers and handset manufacturers to sell unlocked cell phones at the same time, also provide unlock services contract for their users.

Copyright Office last October, said: “not every wireless device at the time of sale have been unlocked and carrier unlock policy is not completely portable, but facts show that consumers can get through numerous channels has to unlock the phone.

New law effective as of local time Saturday, that is, contracts purchased after January 26, 2013, mobile phones will be subject to the new Act limits.

Even in unlocked enjoy legal immunity when many companies providing unlocking services will also be telecom operators and handset manufacturers to court. This is because unlocking the exemption only applies to individual consumers and their legally acquired equipment.

This exemption also applies to “escape”. Although the Copyright Office allows mobile escapes in order to protect individual consumers, but theoretically, company or group for technology development and dissemination of escape can be sued-although like Apple and Google (micro-blog) mobile phone developers to avoid prosecution of such companies or bodies.

Zhanmusi·baodingge, TracFone companies throughout the United States 12 88 launched Federal Court action against the mobile phone dealers, because these defendants sold unlocked TracFones phones to consumers. Ultimately, the Court issued a sales ban, a total of 205 enterprises involved, as well as some personal fines exceed $ 305 million.

So far, telecommunications giant t-mobile has launched 38 103 accused proceedings involving mobile phone buying and eventually won 34 of them. Court orders permanent injunction, while t-mobile access to 131 million dollars compensation. Sprint 8 lawsuits filed against 36 mobile phone dealers, and access to more than $ 27 million in reparations.

Local time Thursday, someone had launched a petition on whitehouse.gov to find phone unlock legal immunities.

Categories: news Tags:

MRI scans of the knee high accuracy is expected to replace fingerprinting

February 24th, 2013 No comments

According to foreign media reports, digital fingerprints, iris recognition, and voice authentication and identification are not new, but the researchers said that, the human knee can also be used for authentication, and the accuracy rate of up to 93%. According to United States research team said uniqueness of human knee, you can rummage and additional security checkpoint at the airport provides a simple means of identification. Magnetic resonance imaging (hereinafter referred to as “MRI”) system after the initial test, the accuracy rate of up to 93%.

People’s knee is the only that can be used as identification.

The knee MRI scan image.

Experts said the knee is the only that can be used as identification.

From United States Lawrence Technological University in the South field, Michigan (Lawrence Technological University) computer scientist Lior-Shamir (Lior Shamir), passport into crowds at the airport or through the Office entrance, in a moving queue, the system should be the perfect quick registration and identification tools.

Research team believes that, unless there is a lot of surgeries, their system should be accurate.

Shamir: “deceptive actions need to be aggressive or complicated medical procedures, compared with facial, fingerprint and IRIS, which has a strong anti-spoofing. ”

In addition, the team even believe, even ordinary punitive measures in the crime makes knee broken, the image is still “may only be a victim”.

At present, the Shamir was busy knee MRI scanners at the airport logistics. Researcher admits: “in the context of security, MRI scans to be implemented there is an obvious problem, because the machines so large, even if the request as such a small image of a body part of the knee, had to spend a long time. ”

Categories: news Tags:

[PIC] Symantec and Microsoft join forces to block the Bamital botnet

February 24th, 2013 No comments

Microsoft and security software vendor Symantec revealed that they had jointly destroyed a botnet that infected thousands of computers. In order to stop the botnets, infected computers will not be able to search on the Internet. According to Reuters first reported that this is the first time the two companies directly blocked and warned their computers infected with botnets, and provide them with a removal tool. The botnet called Bamital, is Microsoft’s 6th Court stop order received since 2010.

Microsoft’s warning page (from Bamital botnet-infected computers will see this prompt)

According to Reuters, Symantec and Microsoft work together to attack the botnet has been more than a year’s time, and asks the Court to approve the closing of last week. Bamital infected around 300,000 to 600,000 of the computer, and thus a profit of at least $ 1 million.

In the case of victims ‘ bank accounts without, their use on the infected computer “fraud click” (fraud-click) profit relating to redirect Google, Bing and Yahoo search engines and forcing the infected computer users to click on ads.

Microsoft’s digital crimes investigator told Reuters reporters said although the botnet 18 “culprit” scattered all over the world, but thanks to cookies in a Russian phrase that (we) most likely originated in Russia.

[Compiled from: CNET]

Categories: news Tags:

[Video] today is “Internet safety day” anniversary

February 23rd, 2013 No comments

Even broader Internet age allows us to understand the virtual community is convenient to also make us aware of the pitfalls, such as phishing, account disclosure. In order to create a more secure network environment today finalized a decade ago as a safety network Japan (SID), in these years through the rain to witness a process of continuous improvement in the awareness of Internet safety, also witnessed the rapid security network development. In ten years, online communities have been held around the world to celebrate interactive, this year’s theme is “” Online rights and responsibilities “(online rights and responsibilities), and encourages users to” Connect with respect “

Site map at the bottom of the article you can locate “SID near you” (SID beside you), and see the local security information and feedback. And you can publish your comments on this Web site, and then shared and global friends.

Connection: Safer Internet Day (SID).

Categories: news Tags:

Red October instruction control server is down

February 23rd, 2013 No comments

Thanks West post digital
Red October is the latest exposure of spies the most complex network platform, it has more than 1000 independent modules, can be customized according to the infected computer and target user modules configuration. It first collection is infection machine of General information, including browse history and storage of password,, then attack who assessment its value decided installed next which module, it has specifically of module can steal certificate gets Windows account hash password; extraction Outlook and Thunderbird, message client storage of information and data; steal connection of USB equipment data; records press; scan local network hosts, infection other computer ; From a connected Smartphone to download valuable information, such as your contact information.

After the Red October action was made public, researchers at Kaspersky reports, command and control of a malicious program is shutting down the server. They speculate that, in addition to domain name supporters and managed service providers to take action, attackers may also be the termination of the entire action. As the Red October, using multiple layers of agents disguised its core functionality, security researchers believe that as long as the Thunder after the Red October is back with a new show up.

Categories: news Tags:

3 Anonymous members jailed for attacks on Paypal site

February 21st, 2013 No comments

Three recent participation on several large corporate server DDoS attack suspects including the Paypal in the United Kingdom were sentenced. The DDoS attack is an attack on the Wikileaks site the retaliatory action of the blockade, according to the metropolitan police, who before the attacks on Mastercard, Paypal main objective is similar to the Ministry of Sound, as well as United Kingdom organizations such as the recording industry association.

Foreign media interview that a few people, in addition to being sentenced to 3 people, 1 person will stand trial next month, they were members of Anonymous is a famous hacker. With respect to modern electronic crime Detective Inspector Terry Wilson said: “those criminals who carry out DDos attacks claiming that they are for citizens to voice of protest, but in fact they did damage the online trading system, damage to business assets and reputation, it is incredible. At the same time, they also affect Internet users use online services. They’re treated like civilian infrastructure. Their trials have shown how bad their crime is, meet these people on the Court and that it was a headache. ”

Christopher Weatherhead, now 22 years old, including incitement to others through social media such as Facebook and Twitter, was sentenced to 18 months in prison. Ashley Rhodes,27 years old, from United Kingdom, London, was sentenced to 7 months in prison. Peter David Gibson, aged 24, from Cleveland, was sentenced to 6 months ‘ imprisonment, suspended for 2 years and in 100 hours of community service.

The three 2011 has been released on bail, and removed from the Internet, the network name may not use the past. There is also a fourth man, 18 year old Jake Alexander Berchall, judgment will be carried out on February 1. During the trial, Paypal claims this Web server attacks caused it to lose 3.5 million dollars, the Prosecutor said: “they conducted an orchestrated attack on the line of action, resulting in many Enterprise Server systems, regardless of the reason, such attacks have caused a major disaster. ”

Categories: news Tags:

[Full text] Full text of the MIT Web site was hacked leaving long reflection on what is moral

February 21st, 2013 No comments

Thank you for hanging wire post
MIT Web site was hacked, hackers at Home thinking what is the moral in an article published. User invasion causes the discussion on hacker news, suspected to be caused by DNS hijacking.
Screenshot from the original text translation is as follows:

I think I’m a very good man, for instance, I did not kill. But Peter Singer pointed out that animals are conscious, and people ate meat slaughtered animals, and murder is no different. So I became a vegetarian, then I think I’m a good person. But Arianna Huffington told me that driving a car will emit toxic gases into the atmosphere. So I bought a bike. But I also realized that my bike seat a child of foreign sweatshop sewing, metal body is dug from underground mine workers difficult to dig out. Actually cost me money are oppressive or destruction on the Earth in a certain way. If I was to make money, money will flow to the Government, was used to bomb Afghanistan or Iraq’s people.

I have thought about collecting garbage to feed. So I do not have to bear the top responsibility. But I would like to pick up the garbage people will be going to do some things they can’t find in the trash. If I’m first to pick up trash, those people may buy yourself, then. Conclusions seem obvious: I have to leave, go into the cave, picking up nuts and fruits to eat. I am still exhale carbon dioxide and using things already on the Earth, but may be in a loop level.

Perhaps you don’t agree with killing animals and the bombing of Afghanistan people are immoral. But you have to imagine some people may think so. And I think eating a hamburger and taxes are contributed to a very small extent those things.

Even if you don’t do this, you’re doing more direct than those of daily life. I personally think that sitting at the table happy profligacy, while another person send me food, there’s another person in the fireplace to serve, this is wrong. Every time I ordered food, I will allow them to send some more. (As feedback they got more money, but this more often than I give them money directly for him to accept) you might not think this is wrong, but I hope you agree with this view, I was indeed wrong.

In the cave, I think I’m safe. And then I read Peter Singer the latest books. He pointed out that the $ one-fourth for you can save a child’s life. (Such as 27 cents can buy saline children save severe diarrhoea) maybe I will eventually do a murderer. Because some of the reasons mentioned above, I cannot ethically reasonable to earn money. But it’s not in a cave, I can contribute my time to Africa. Of course, if I did, I have 1000 didn’t do a similar thing. How do I decide which things to do to rescue more people? Even if I took the time to consider, the time will be spent in my own body, rather than spend to save lives.

It seems there can be no morality. Not only was I doing anything great harm, and I’m not doing things against. Moral standards are hard to define, but you can do: don’t lie, do not cheat, do not steal. But lead a moral life or even impossible. If morality is not to do, I simply do everything in their power to do good. Peter Singer is a pragmatist, maybe I will try to enlarge I do good things for the world. But this seems to be an incredibly hard standard. I just want to stop eating meat, also includes all animal products. I not only stopped buying the factory farm foods, I will no longer buy everything. Should I put things away from the trash, so that others are not likely to find. I should live in a place not to bother other people. Of course all these fears and pressures would prevent me to do good in the world.

Every step I may consider doing so will hurt someone else. So I decided not to worry about what not to do, but rather focus on how to do good. But it does not follow the rules of Peter Singer. Queuing delay in front of the cash register I to save jobs, (and it will take to pay off my to save money)

May seem contradictory: I was looking good, but when you do something wrong. When I went out to buy a steak, no one is going to have questions about my actions, but if I go to the store to grab a bottle of soft drink, everyone would have a reaction. Is there sense in following their rules or are they just another example of the world’s pervasive immorality? Philosophers have considered this problem?

Categories: news Tags:

Mega launches vulnerability reward program offers a maximum of $ 13,500 bonus amount

February 19th, 2013 No comments

Kim last week officially launched the Mega Dotcom company vulnerability reward program, Mega is Kim’s latest Dotcom company file storage services, with many users worldwide, users in the course of adoption of the report of any security-related design errors or defects, and receive up to 10,000 euros (13,500 dollars) reward, but Kim Dotcom companies said, Not all errors are found or design defect of the user can obtain the highest amount of reward, reward amounts will be decided according to the complexity and impact of the vulnerabilities.

Kim Dotcom companies launched the awards scheme, designed to further improve the security of the service. Mega application open use, Mega security models have suffered several attacks. But Kim Dotcom firms does not concern, contrary to the hopes of more attacks, from which you can learn to better protect their system security and against unauthorized system operation.

Kim Dotcom companies can receive up to 10,000 euros to those vulnerabilities made simple description:

1, remote code execution on the server (including SQL injection)
2 any client browser, remote code execution (for example, XSS)
3, undermining our password security mode, bypassing access control, allowing unauthorized system operation.

Only those who have been identified as “the first found error” to be eligible for incentives.

Finally Kim Dotcom companies were made available to the public to submit email address: bugs@mega.co.nz.

Categories: news Tags:

Study finds often make spelling mistakes it can create strong passwords

February 17th, 2013 No comments

Except date of birth, pet’s name and ascending series, another taboo will be good for the password spelling. A study at Carnegie Mellon University found that people often make spelling mistakes can create a strong password that is difficult to break. Researchers develop a password-cracking algorithm to determine long, grammatically correct password, even though the long password a combination of characters and numbers, for example Ihave3cats.

In tests in a long password, one-tenth are algorithms the correct interpretation. Spelling incorrect syntax so you do not cross the border, but can make your password is not being compromised by hackers.

Categories: news Tags:

Commented United States “hacker spirit” or will be coming to an end

February 17th, 2013 No comments

On January 26, the New York Federal Court ruled 3 hacker guilty, age not over 30 years old 3 hacker faces imprisonment for 95 years, 67, and 70, respectively, creating a “hacker” term on record. Previously, these 3 persons of Eastern European origin hacker conspiracy “research and development” the Gozi Trojan virus, resulting in ultra million computers worldwide are infected, of which 160 belong to United States Space Agency, and other important State institutions.

Coincidentally, known as “Robin Hood in the digital age” by the United States computer genius yalun·siwozi, were accused of stealing 400 documents, has been sentenced to 35 years in prison and more than million-dollar fine. Only a pity that he had hanged himself on January 11, 2013. 2013 year two cases above, are involved to “hacker” significant litigation.

There is no denying that hacker attacks rampant in recent years. United States increased hacker punishment, its move is understandable. Severe penalties will produce two results: first, the hackers a strong rebound, launched more fierce attacks. For example, after siwozi hanged himself, Massachusetts Institute of technology, United States Department of Justice, among others, websites have been black. Second, most hackers disappeared, and the slow development of the computer industry, that might lead to more serious United States Science and technology creativity compromised. From the current United States breach on the Internet fine and given a, heavy trend is inevitable, certain restrictions on the formation of the computer industry’s development will become a necessity.

As a culture and way of thinking, “the hacker spirit”-good at thinking independently, like the freedom to explore; keen to solve problems, overcome various constraints, as in recent decades United States spirit source of high-tech development, has been in the United States popular in Silicon Valley. Famous social website “Facebook”, actually is “hacker spirit” of cradle, its founder Zuckerberg is to “hacker” started out as, finally completed has created company of “feat”; its is located in California company of new Park, not only has “hacker of road”, also has ground wrote with big “Hack” words of hacker square, this is large degree Shang is on “hacker” of identity.

Earlier, in the United States in many areas, for talent to take care’s focus on responsibility for accountability. By 2011, United States rarely true hacker “serious” illegal invasion which eventually sentenced to a few months, a few ten months. And in 2011, from Swartz indictment, he hanged himself at last, which seems to indicate the “era of love” ending.

The Washington Post quoting from Graham, the father of Silicon Valley entrepreneurship, said: “the United States against hacker’s affection has been complex. Yalun·siwoci be sued is marked United States that loss of feeling. ”

Hacker trial “down the hand” reality shows that, on the one hand means that Internet “love complex” faded, also meant the end of rapid development of the Internet era. From then on, launch into a cold, stark legal confrontation in the Internet age, to promote United States computer industry for decades “hacker spirit” may be coming to an end.

Categories: news Tags: