Can Malwarebytes Protect XP?
Malwarebytes has launched anti-exploit services to protect Windows users from hacking attacks on vulnerabilities in popular targets including Microsoft Office, Adobe software products and Java, a service which even offers protection for Windows XP users.
Consumer, Premium and Corporate versions of the service are available, and are designed to pre-emptively stop hackers from infecting Windows machines with malware.
“An exploit will typically first corrupt the memory of an application process, take control, then execute code,” said Malwarebytes director of special projects Pedro Bustamante.
“From the shell code it executes a payload that tells the exploit what to do and that in turn usually downloads malware from the internet and executes it. The final stage is usually where antivirus kicks in, when it’s being downloaded from the internet, and starts doing things like behavioural analysis to see if it’s malicious.
“We don’t care about that, what we do comes before then. We just look for exploit-like behaviour and block anything that looks like it at the shellcode or payload stages. We come into play before the malware even appears on the scene.”
The Consumer version of the anti-exploit service is free and offers basic browser and Java protection.
The Premium version costs $37.00 per user and adds Office and Adobe protection services as well as the ability to add custom shields to other internet-facing applications, like Messenger or Netflix.
The Corporate version costs$40.00 person user and offers complete anti-exploit protection and comes with Malwarebytes’ Anti-malware service and a toolkit for IT managers.
Bustamante explained that the technology is designed to help businesses and general web users defend against the new wave of exploit-based cyber attacks.
“Traditional security can’t deal with exploits. Every day we see people getting infected, even if they have the latest up-to-date antivirus readers, because of exploits,” he said. “This is why we care about the applications you run – Firefox, Chrome, Internet Explorer, Java, Acrobat [and Microsoft] Word, Excel [and] Powerpoint.”
Bustamante added that the service is doubly important for Windows XP users since Microsoft officially ceased support for the OS in April.
“We’re still seeing over 25 percent of our users running XP. For them this product is even more important,” he said.
“We see new zero-days if not every week, every month, and for XP users who are not getting any more patches from Microsoft this product will be essential.
“Every month Microsoft will be releasing security patches for newer versions of Windows. Every time Microsoft does this it’ll be a treasure map for hackers to find exploits on Windows XP.
“It’ll show them exactly where the vulnerabilities are, so every month will see an influx of new exploits targeting Windows XP.”
Intel And Oracle Team Up Again
Oracle has added systems to its enterprise-class x86 server line featuring elastic computing capabilities that dynamically adapt their configurations in response to workloads.
The Oracle Sun Server X4-4 and Sun Server X4-8 are four-socket and eight-socket systems designed for data centre workloads such as virtualisation, Oracle databases and scale-up enterprise applications.
However, the two servers are fitted with a unique variant of Intel’s Xeon E7 v2 processor family that combines the capabilities of three different Xeon processors into one.
Oracle said it worked with Intel to create this chip, the Xeon E7-8895 v2, which can dynamically switch its core count, clock frequency and power consumption without the need for a system level reboot.
This chip is the heart of the elastic computing capability of the Sun Server X4-4 and Sun Server X4-8, enabling them to adapt to the requirements of different workloads based on its runtime configuration.
It might be configured for transaction processing at a high clock speed for one hour, then switched to higher core counts for the next hour for higher throughput computing, according to Oracle.
“Through close collaboration with Intel, we are the first to announce servers based on the new Xeon E7-8895 v2 processors and the first with unique capabilities that allow customers to dynamically address different workloads in real time,” said Ali Alasti, senior vice president for hardware development at Oracle.
Enhancements have also been made to the system firmware and to Oracle’s Solaris, and Oracle Linux operating systems to support the elastic computing features.
Oracle also said the new systems have a modular design that allows the processors to be upgraded to future Xeon chips, while all the disks are hot-swappable, plus there is hot-pluggable I/O support for industry-standard low-profile PCI Express cards via a dual PCIe card carrier.
The servers also feature a “glueless” architecture that removes the need for a node controller. As node controllers typically change from one processor generation to the next because of modifications to inter-processor communication and coherency protocols, the elimination enables Oracle to offer a future-proof chassis that will support future processor releases from Intel, the firm said.
The Sun Server X4-8 is touted by Oracle as ideal for running its Oracle Database, which has just been updated with an in-memory processing option. It supports 120 processor cores with up to 6TB of memory in its 5U rack-mount chassis, plus up to 9.6TB of hard drive or 3.2TB of solid state drive (SSD) storage.
Meanwhile, the Sun Server X4-4 is said to be well suited for applications requiring large memory footprint virtual machines and running real-time analytics software.
It can be configured with two or four of the Xeon E7-8895 v2 processors, with up to 3TB of memory and 4.8TB of PCIe flash plus 2.4TB of SSDs or 7.2TB of hard drives.
Did Intel Miss The Tablet Boat?
Intel CEO Brian Krzanich has admitted the obvious – Intel missed the boat on tablets.
Speaking at the Code Conference, Krzanich said the company was slow to react to the emergence of tablets and smartphones.
“There was a belief that tablets would be a consumption device only (and) that people would come back to the laptop and the PC. There were heavy debates within Intel and it took a while for us to accept and acknowledge that data. Companies make mistakes,” Krzanich told Walt Mossberg in an interview.
In other words at least part of Intel’s failure to tap the emerging mobile market a few years ago was internal wrangling.
The course shifted under the Krzanich regime. Last Intel President Renee James and Krzanich made it clear that the company is now treating its Atom line-up just like its big cores. For years the company treated Atoms as a sideshow, making sure that they would not eat into Core sales.
ARM had different ideas and so did AMD, they went after the tablet and essential notebook markets. As a result ARM currently dominates the mobile space, while AMD managed to carve a nice niche in the entry-level x86 segment, with Brazos and Kabini parts.
Intel is fighting back, but it is paying a heavy price. The company is on track to quadruple its tablet SoC shipments to 40 million units this year, but it has to pay through the nose to get there. As for the smartphone market, Intel is all but absent.
Krzanich insists he is not giving up on the phone and tablet space. He wants Intel to take a 15 to 20 percent market share in these segments, which sounds very ambitious. Thanks to generous subsidies it has a good chance in the tablet space. This week Intel announced a deal with Rockchip, which should also boost its presence in the booming tablet market in China.
However, so far the company has not rolled out a compelling smartphone SoC and it’s lagging behind the competition in LTE integration.
Intel Links Up With Rockchip
Intel has joined forces with Chinese chip design firm Rockchip to develop next generation processors for the tablet market based on Intel Atom core technology and integrating 3G broadband communications.
Under the terms of the agreement, Intel and Fuzhou Rockchip Electronics (Rockchip) will work together on an Intel branded mobile system on chip (SoC) processor with the intention of enabling a range of entry-level Android tablets.
The chip is expected to ship in the first half of 2015, according to Intel, and will be based on a quad-core Atom processor design integrated with Intel’s 3G modem technology, which the firm gained through its acquisition of Infineon Technologies in 2010.
Rockchip, which is expected to contribute to the integrated graphics technology, will also help Intel bring the product to market faster than might otherwise be the case. The firm is a leading fabless semiconductor design company and already develops mobile SoCs, although its present designs are largely focused around the ARM architecture.
The agreement builds on announcements Intel made at an investor relations day last year, where chief executive Brian Krzanich disclosed the Intel Sofia family, of which the latest chip will form part, and conceded that the chipmaker needed to become more agile in order to gain traction in entry-level markets.
“The strategic agreement with Rockchip is an example of Intel’s commitment to take pragmatic and different approaches to grow our presence in the global mobile market by more quickly delivering a broader portfolio of Intel architecture and communications technology solutions,” Krzanich said.
With this announcement, the Intel Sofia family comprises three products, which are not shipping yet.
A dual-core 3G version is slated for the fourth quarter this year, the quad-core 3G version is due in the first half of 2015, and a version with 4G/LTE communication is also due in the first half of next year.
Is China Hurting U.S. Vendors?
Shipments of servers from Chinese vendors grew at a rapid pace while the top server vendors in the U.S. declined during the first quarter of this year.
Worldwide server shipments were 2.3 million units during the first quarter, growing by just 1.4 percent compared to the same quarter last year, according to Gartner.
Growth was driven by Chinese server vendors Huawei and Inspur Electronics, which were ranked fourth and fifth, respectively, behind the declining Hewlett-Packard, Dell and IBM.
Huawei has been in the top five for server shipments for more than a year, but Inspur Electronics is a new entrant. Inspur builds blade servers, rack servers and supercomputers, and is best known for being involved in the construction of China’s Tianhe-2, which is currently the world’s fastest supercomputer, according to Top500.org.
Chinese servers partly benefitted from the 18 percent shipment growth in the Asia-Pacific region, while shipments in other regions declined, Gartner said in a statement.
Server buying trends have changed in recent years. Companies like Facebook, Google and Amazon, which buy servers by the thousands, are bypassing established server makers and purchasing hardware directly from manufacturers like Quanta and Inventec. That trend in part led to the establishment of the Open Compute Project, a Facebook-led organization that provides server reference designs so companies can design data-center hardware in-house.
Similarly, Chinese cloud providers are building mega data centers and buying servers from local vendors instead of going to the big name brands, said Patrick Moorhead, analyst with Moor Insights and Strategy.
The trend of buying locally is partly due to the security tension between the U.S. and China, but servers from Chinese companies are also cheaper, Moorhead said.
The enterprise infrastructure is also being built out in China, resulting in a big demand for servers. There is also a growing demand for servers from little-known vendors based in Asia — also known as “white box” vendors — in other regions, Moorhead said.
Is The Internet Secure?
June 9, 2014 by admin
Filed under Around The Net
Comments Off on Is The Internet Secure?
Hacker blogger Quinn Norton is getting a lot of coverage with her blog claiming that the Internet is broken. She argues that every computer and every piece of software we use is vulnerable to hackers because of terrible security flaws. Norton blames these flaws on the fact that developers who face immense pressure to ship software quickly.
Norton says that those bugs may have been there for years unnoticed, leaving systems susceptible to attacks. One of her hacker mates accidentally took control of more than 50,000 computers in four hours after finding a security vulnerability. Another one of her colleagues accidentally shut down a factory for a day after sending a “malformed ping.”
She said that the NSA wasn’t, and isn’t, the great predator of the internet, it’s just the biggest scavenger around. It isn’t doing so well because they are all powerful math wizards of doom. The other problem is software is too complicated and the emphasis placed on security too light.
“The number of people whose job it is to make software secure can practically fit in a large bar, and I’ve watched them drink. It’s not comforting. It isn’t a matter of if you get owned, only a matter of when,” Norton said.
Cisco To Launch Smart City
June 6, 2014 by admin
Filed under Around The Net
Comments Off on Cisco To Launch Smart City
Officials from networking giant Cisco Systems and Kansas City, Mo., have signed a letter of intent to build out a new network for smart city services.
Elements of the project call for designing mobile apps for citizen access, digital interactive kiosks, smart street lights and video surveillance in an area called the city’s innovation district.
The project is designed to complement the city’s build out of a two-mile downtown streetcar path, Cisco said in a statement.
Kansas City, Mo. and its neighbor, Kansas City, Kans., are already getting plenty of outside attention from tech giant Google, which picked the area for its first deployment of Google Fiber, an initiative to install fiber optic cable there and in other cities.
Google won’t say how many households are connected to Google Fiber in the area, but it has already installed 6,000 miles of fiber optic cable. Meanwhile, cable provider Time Warner has provisioned 11,000 Wi-Fi hotspots for its Internet customers to use from mobile devices in various Kansas City area locales, including the popular eight-block restaurant and bar district on the edge of downtown called the Power & Light District.
While some citizen groups have been concerned that Google Fiber isn’t reaching enough low-income families in the area with gigabit fiber, there’s a general recognition by city officials that people of all income levels use smartphones and other wireless devices fairly widely. That can only help the Cisco initiative with Kansas City for wireless services.
Kansas City, Mo. Mayor Sly James said the initiative with Cisco promises to connect city services and information with visitors and residents “like never before.”
Third-party app developers will also have an opportunity to build unique and innovative apps for public use.
Cisco will use its Smart+Connected Communities reference architectures to evaluate the initiative and will work with the city and a business consultancy called Think Big Partners to manage a “living lab” incubator for the tech startup community.
Wim Elfrink, Cisco’s executive vice president of industry solutions, credited city leaders with leading the “charge on innovation in the Midwest.”
GPUs Down In Q1
June 5, 2014 by admin
Filed under Around The Net
Comments Off on GPUs Down In Q1
According to Jon Peddie Research (JPR), shipments of discrete graphics cards were down in the first quarter of the year. This is in line with seasonal trends, as the market cools down after the holiday season.
The sequential drop was 6.7 percent, which was still better than the overall desktop PC market, which slumped 9 percent. However, on a year-to-year basis add-in-board (AIB) shipments were down 0.8 percent. PC sales were down 1.1 percent.
Nvidia still controls two thirds of the market
Total AIB shipments in Q1 were just 14 million units. AMD and Nvidia both saw their shipments decrease 6.6 percent, so their market share did not change much.
Nvidia controls an estimated 65 percent of the market, up from 64.2 percent last year. AMD’s market share in Q1 was 35 percent, down from 35.6 percent a year ago.
The overall volume remains weak and in the long run things could get even worse, as on-die integrated graphics have already taken a big toll on sales of entry level discrete cards. As integrated GPUs become even faster, they are likely to cannibalize the low end market even further.
JPR points out that the AIB market peaked in 1999, with 114 million units shipped. Last year saw only 65 million units and the stagnant trend is likely to continue this year.
It’s not all bad news for AIBs
Although the slump in discrete GPU shipments is hurting AMD and NV hardware partners, JPR offers a rather encouraging outlook.
It points out that graphics cards are one of the most powerful, essential and exciting components in the PC market today. PC gaming is hardly dead, in fact it is going through what can only be described as a small renaissance. PCs will offer 4K/UHD gaming years ahead of consoles and the Steam Machine concept is looking good, too.
The compute market is another driver, as JPR points out:
“The technology is entering into major new markets like supercomputers, remote workstations, and simulators almost on a daily basis. It would be little exaggeration to say that the AIB resembles the 800-pound gorilla in the room.”
The AIB market is quite a bit less colourful and eventful than it was back in the day, but at least AIBs still have a lot on their hands and they are trying to tap new markets.
PoS Cyber Attacks Up In 2013
June 4, 2014 by admin
Filed under Around The Net
Comments Off on PoS Cyber Attacks Up In 2013
A third of data intrusion investigated by security firm Trustwave last year involved compromises of point-of-sale (POS) systems and over half of all intrusions targeted payment card data.
Even though POS systems remained a significant target for attackers, as suggested by several high-profile data breaches disclosed by large retailers over the past six months, the largest number of data theft incidents last year actually involved e-commerce sites, Trustwave said Wednesday in a report that compiled data from 691 data breach investigations conducted by the company around the world.
E-commerce intrusions accounted for 54 percent of investigated data breaches and POS system intrusions accounted for 33 percent, Trustwave said. A separate report published by Verizon in April also pointed to Web application and PoS attacks as leading causes of security incidents with confirmed data disclosure last year.
According to Trustwave, over half of intrusions targeted payment-card data, with such data being stolen from e-commerce transactions in 36 percent of incidents and from POS transactions in 19 percent of attacks.
In Western Europe in particular, where countries have rolled out EMV — chip-and-PIN payment card transactions — cybercriminals shifted their focus from POS devices to e-commerce platforms, said John Yeo, EMEA Director at Trustwave. “EMV has changed the pattern of compromises when it comes to payment-card-specific data.”
However, a significant increase in the theft of sensitive, non-payment-card data, was also observed last year. This data includes financial credentials, personally identifiable information, merchant ID numbers and internal company communications, and was stolen in 45 percent of incidents, Trustwave said in the report.
Customer records containing personally identifiable information can possibly be used to perpetrate identity fraud and are sought after on the black market, so that’s why there’s been an uptick in attacks focusing on such data, Yeo said.
Only about a third of victim companies were able to self-detect data breaches, Trustwave found. In 58 percent of cases, breaches were identified by regulatory bodies, the credit card companies or merchant banks.
Dell Goes Plastic
Dell is manufacturing a line of PCs using plastics obtained by expanding its recycling program.
The company has expanded the hardware take-back program to more places worldwide, aiming to collect and reuse more extracted plastic and metals in PCs, monitors, hardware panels and other products.
Dell’s OptiPlex 3030 all-in-one, which will ship next month, will be the first product of that effort. Starting next year, more laptops, desktops and monitor back-panels will be made using recycled plastic, said Scott O’Connell, director of environmental affairs at Dell. The products will be certified as sustainable by UL (Underwriters Laboratories).
Dell will save money by reusing plastic, but O’Connell did not say whether the savings will be passed on to customers through lower prices. But it will be easier for more people to recycle electronics and Dell will also provide a PC mail-back option, O’Connell said.
Dell’s plan to establish a recycling chain internally could reduce the need for “virgin” plastics, which can be environmentally damaging to make, said Gary Cook, senior IT analyst at Greenpeace International.
Incineration of plastic from disposed computers can be toxic and reusing plastics in new computers or other parts reduces “dirty energy,” Cook said.
“We need to see plastics last longer,” Cook said.
Companies like Apple have helped raise expectations of sustainability in computers and others are following suit, Cook said. PC makers are using more metals in computer chassis and handset makers are using more nonpetroleum plastics.
Dell was criticized last year by Greenpeace for veering away from its carbon-neutral goals and sustainability advocacy. The company ranked 14th among most green IT companies, behind Microsoft, IBM, Hewlett-Packard, Wipro, Fujitsu and Google, among others.
Dell curbed its sustainability strategy when it was trying to go private last year, but has now reinvigorated that effort.
“They are trying to show some initiative,” Cook said.