Apple Admits To Security Issues
Apple has finally acknowledge and has promised an update for Mac OS X that will find and remove the MacDefender fake security software, and warn uninfected users when they download the infectious program.
The announcement — part of a new support document that the company posted late Tuesday — was the company’s first public recognition of the threat posed by what security experts call “scareware” or “rogueware.”
Apple has taken criticism for not publicly responding to the MacDefender threat.
“In the coming days, Apple will deliver a Mac OS X software update that will automatically find and remove Mac Defender malware and its known variants,” Apple said in the document. “The update will also help protect users by providing an explicit warning if they download this malware.”
Apple also outlined steps that users with infected Macs can take to remove the scareware.
Andrew Storms, director of security operations with nCircle Security, was surprised that Apple said it would embed a malware cleaning tool in Mac OS X.
Google Moves Quickly To Plug Data Leaks
May 24, 2011 by admin
Filed under Smartphones
Comments Off on Google Moves Quickly To Plug Data Leaks
Google confirmed that it’s starting to roll out a server-side patch for a security vulnerability in most Android phones that could allow hackers to access important credentials at public Wi-Fi hotspots.
“Today we’re starting to roll out a fix which addresses a potential security flaw that could, under certain circumstances, allow a third party access to data available in Calendar and Contacts,” said a Google spokesman in an emailed statement. “This fix requires no action from users and will roll out globally over the next few days.”
Google will apparently apply the fix to its servers since it does not need to push out an over-the-air update to Android phones.
Experts applauded Google’s fast reaction.
“It’s impressive how quickly Google fixed this,” said Kevin Mahaffey, chief technology officer and a co-founder of San Francisco-based mobile security firm Lookout. “Google’s security team, especially on Android, is very, very quick to deal with issues.”
Whatever Google is implementing will shut the security hole that three German researchers publicized last week.
According to the University of Ulm researchers, who tested another researcher’s contention last February that Android phones sent authentication data in the clear, hackers could easily spoof a Wi-Fi hotspot — in a public setting such as an airport or coffee shop — then snatch information that users’ phones transmitted during synchronization.
In Android 2.3.3 and earlier, the phone’s Calendar and Contacts apps transmit information via unencrypted HTTP, then retrieve an authentication token from Google. Hackers could eavesdrop on the HTTP traffic at a public hotspot, lift authentication tokens and use them for up to two weeks to access users’ Web-based calendars, their contacts and also the Picasa photo storage and sharing service.
Google SEARCH Goes SSL
Google is finally taking privacy seriously to a degree by offering its users a secure form of searching while using Google Search. Moving forward users will have the opportunity to enable SSL (Secure Socket Layer) for added security. Be advised, the service will only cover the Google search and clicks made through Google to other non-secured sites will be visible.
Can Intel Tablets Take Business Away From iPads?
Comments Off on Can Intel Tablets Take Business Away From iPads?
Tablets based on Intel’s first dedicated tablet processor may not be a smash hit among consumers like Apple’s iPad, but they could find much better acceptance within enterprises, analysts said this week.
Apple’s iPad is the ‘Golden Child’, but Intel’s Oak Trail processor could bring a fresh crop of tablets that are more closely aligned to security, software and hardware needs of businesses, analysts said. By supporting the Windows 7 OS, Oak Trail tablets will integrate better than the iPad into IT environments relying on Windows.
Tablets with Intel’s 1.5GHz Atom Z670 processor from Fujitsu and Motion Computing went on sale this month and will start shipping in June. Fujitsu is taking orders for the Stylistic Q550 Slate PC tablet, which is priced starting at US$729. Motion Computing is taking orders for the CL900 Tablet PC, which is priced starting at $899. The business tablets come with Microsoft’s Windows 7 OS and include solid-state drive storage. Intel has said 35 devices based on the Oak Trail chip will become available starting in May.
Apple may be spurring consumer tablet innovation, but computing needs are very different in the corporate world, said Stephen Baker, vice president of industry analysis at NPD. Outside the Apple ecosystem, there is a whole world of corporate applications and computing needs driven by Windows, Baker said.
Apple Outs Patch For Tracking Issue
May 6, 2011 by admin
Filed under Around The Net
Comments Off on Apple Outs Patch For Tracking Issue
As Apple promised last week in several discussions regarding its location tracking issues, iOS 4.3.3 addresses three bugs related to the database of location information on iOS devices. Firstly, it reduces the amount of the cached location information to a week’s worth, rather than relying on a size limit, as it previously did.
Secondly, it no longer backs up the cache to your Mac or PC via iTunes upon syncing, so the information isn’t available to anyone with access to your computer. And finally, the cache is now deleted from the device when Location Services are disabled in iOS’s Settings app.
Apple has also announced plans to encrypt the location information on iOS devices itself in the next major update to the operating system, which presumably means it will be incoporated into iOS 5.
The iOS 4.3.3 update applies to the iPhone 4, iPhone 3GS, iPad, iPad 2, third-generation iPod touch, and the fourth-generation iPod touch. Exceptions to this fix though, are the iPhone 3G and the second-generation iPod touch, both of which were supported by the original release of iOS 4 when the location database is believed to have been created but have since been dropped from compatibility. Also missing in action is the CDMA iPhone 4, although some reports have suggested that it didn’t log data in the same way as the GSM model.
Microsoft Delivers Massive Security Updates
Comments Off on Microsoft Delivers Massive Security Updates
Microsoft today patched a whopping 64 vulnerabilities in Windows, Office, Internet Explorer (IE), and other software, including 30 bugs in the Windows kernel device driver and one in IE that was exploited at the Pwn2Own hacking contest last month.
The company also delivered a long-discussed “backport” to Office 2003 and Office 2007 that brings one of the newer security features in Office 2010 to the older editions.
The 17 updates, which Microsoft dubs “bulletins,” tied a record set late last year, but easily beat the October 2010 mark for the total number of flaws they fixed. Altogether, today’s updates patched 64 vulnerabilities, 15 more than in October and 24 more than in the former second-place collection of December 2010.
Nine of the 17 bulletins were pegged “critical,” Microsoft’s highest threat ranking, while the remainder were marked “important,” the next-most-serious label.
Microsoft and virtually every security expert pegged several updates that users should download and install immediately.
“There are three we think are top priorities,” said Jerry Bryant, group manager with the Microsoft Security Response Center (MSRC), in an interview earlier today. Bryant tagged MS11-018, MS11-019 and MS11-020 as the ASAP updates.
AT&T’s iPhone 4 Beats Verizon’s
March 7, 2011 by Mike
Filed under Smartphones
Comments Off on AT&T’s iPhone 4 Beats Verizon’s
In the phone wars between the two big carriers, it looks like AT&T wins this round. The iPhone 4 on AT&T’s network downloaded data twice as fast, on average, as the iPhone on Verizon Wireless, according to thousands of recent field tests in five U.S. cities performed by Metrico Wireless, an independent mobile device performance evaluation firm.
Metrico’s tests looked at several other variables, however, and found the average Web page load time was nearly the same on iPhone 4 on both networks, a Metrico official said.
Also, when the iPhone 4 was in a moving vehicle, the AT&T model successfully finished about 10% more download session than Verizon’s. But when the iPhones were stationary, the Verizon iPhone had a 10% better success rate in uploading data than the AT&T iPhone, Metrico said.
Metrico did not reveal actual time measurements for any of its results, including the data downloads and uploads or Web page loading times, prior to publication of its full study.
Some of Metrico’s findings are at odds with several smaller spot reports conducted last month that found Verizon’s iPhone performed better on several criteria. But a Metrico official noted that those quick studies were based on only a handful of test samples, often in a single city, including San Francisco, where AT&T’s coverage for the iPhone has been consistently criticized.
AT&T admitted more than a year ago that it had network problems in downtown San Francisco and Manhattan and had begun infrastructure updates. Read More….
Microsoft Eyeing More Software For The iPad
February 2, 2011 by admin
Filed under Around The Net
Comments Off on Microsoft Eyeing More Software For The iPad
The current rumor on the street is that Microsoft might be looking beyond the recently released OneNote for iPad. Insiders are saying Microsoft is closely monitoring the number of downloads of OneNote for iPad/iPhone/iPod Touch to perhaps gauge the possible interest in adding more productivity software for Apple iOS suite of products. Read More…..