China Denies Hack Attack
China has denied involvement in hacking US environment monitoring satellites.
Last week the US-China Economic and Security Review Commission released a draft report about several incidents where US satellites were interfered with in 2007 and 2008.
The Commission did not say that the attacks were traced back to China, but it did cite China’s military as a prime suspect, due to the similarity of the techniques used with “authoritative Chinese military writings” on disabling satellite control.
The hackers gained access to the satellites on at least four occasions through a ground station in Norway. The unauthorised access lasted for between two and 12 minutes. While the attacks did no real damage, they did demonstrate that it is possible to hijack satellites, which is a worrying realisation when military satellites are taken into consideration.
China has a bad reputation throughout the world for alleged cyber attacks, often being the first to blame when a major attack has been discovered. The US has not been the only target either, with alleged attacks against Canada and France having been reported earlier this year.
“[The US] has always been viewing China with colored lenses. This report is untrue and has ulterior motives. It’s not worth a comment,” said Hong Lei, a spokesperson for the Chinese Foreign Ministry, according to Reuters.
Sony Buys Out Ericsson In Joint Venture
November 1, 2011 by admin
Filed under Smartphones
Comments Off on Sony Buys Out Ericsson In Joint Venture
Sony has bought Ericsson’s stake in its mobile phone venture for $1.47 billion.
Sony Ericsson was the merger of two ailing phone makers back in 2001 and while some would question how strong the firm is now against its rivals, Sony has decided to buy out Ericsson’s stake by paying the firm around 41.47 billion. The move will result in Sony Ericsson, presumably renamed without the Ericcson suffix, becoming part of Sony’s operations and most importantly bringing its patent portfolio.
Both Sony and Ericsson have agreed to the deal, but said that the last 10 years worth of work was time well spent. Back in 2001 when the Sony Ericsson joint venture was announced both firms’ handset divisions were losing money, and while Sony Ericsson’s financials have never been superb, it has reported profits. The firm also claimed that its Android smartphones account for 11 per cent of the smartphone market.
Sony Ericsson has cited Google’s Android operating system as the reason for its success in the smartphone market. While the company doesn’t have any killer smartphones, its Xperia range certainly hasn’t embarrassed itself against competing smartphones built by HTC and Samsung.
30% Of BlackBerry Users Want Out
October 30, 2011 by admin
Filed under Smartphones
Comments Off on 30% Of BlackBerry Users Want Out
The BlackBerry smartphone and its maker, Research in Motion, were in serious trouble even before last week’s global service disruption.
More than 30% of BlackBerry users in large companies said in September, a month before the outage, that they were looking to use a different smartphone device in 2012, according to a survey of 243 smartphone users in companies with more than 10,000 workers by Enterprise Management Associates (EMA).
“With last week’s outage, I suspect the 30% number is even higher,” said Steven Brasen, the EMA analyst who conducted the survey. “User satisfaction with BlackBerry is by far the lowest of smartphones. A huge number are dissatisfied.”
Brasen said the survey found that 11% of BlackBerry users in large companies are “completely dissastisfied” with the device, while only 2% of iPhone users and 0% of Android users are completely dissatisfied with their smartphones.
Brasen said the opinions of end users are becoming very important to IT executives.
Google Search To Add Default Encryption
October 25, 2011 by admin
Filed under Around The Net
Comments Off on Google Search To Add Default Encryption
Google is implementing over the next few weeks default encryption using SSL on searches for users signing in with their accounts, the company said Tuesday.
The move comes over a year after Google made SSL the default setting for Gmail, and also unveiled an encrypted search service.
“As search becomes an increasingly customized experience, we recognize the growing importance of protecting the personalized search results we deliver,” Google’s product manager, Evelyn Kao said in a blog post on Tuesday.
The encryption is expected to be particularly useful for people using an unsecured Internet connection, such as a Wi-Fi hotspot in an Internet cafe, Kao added.
With Google search over SSL, users get an end-to-end encrypted search channel between their computer and Google. The secured channel helps protect search terms and search results pages from being intercepted by a third party, Google said in a description of SSL search.
Over the next few weeks, users will be redirected to a secure search site when they are signed in with their Google Account. The change encrypts search queries and Google’s
results page.
Users can also navigate directly to the secure search site if they are signed out or don’t have a Google Account.
Mobile Security Threats Continue To Grow
October 15, 2011 by admin
Filed under Smartphones
Comments Off on Mobile Security Threats Continue To Grow
According to industry analysts, mobile device shipments will exceed a billion devices in 2015 and will rapidly outrun PC shipments. That’s great news for end user convenience, mobility, and work-anywhere productivity. But it also means that enterprises must prepare for the fact that the criminals will target these devices with attack exploits, spyware,
and rogue applications.
And while IBM’s IT security research team, X-Force, predicts a modest 33 software exploits targeting mobile devices in the year ahead, that’s roughly twice the number of such attack code released in the past year.
The group also sees a number of other troubling mobile security trends. First, when software flaws do surface, many mobile phone makers do not rapidly deploy software patches to devices; malicious apps are often distributed through third-party app markets. Another troubling trend is that some mobile malware can collect end user’s personal information for use in phishing attacks.
An example of vulnerabilities that would make such attacks possible are the two recent Android security flaws that were reported to affect popular handsets including the AT&T Samsung Galaxy SII and various HTC devices.
The security find announced by security researcher Trevor Eckhart, called HTClogger (logging tools introduced by handset maker HTC) that could leak email account information, user location, phone numbers, and messaging logs.
Handset maker HTC said, in a statement, that it is working to quickly issue an update to its customers. “HTC is working very diligently to quickly release a security update that will resolve the issue on affected devices. Following a short testing period by our carrier partners, the patch will be sent over-the-air to customers, who will be notified to download and install it. We urge all users to install the update promptly,” the company said.
WebOS Lives
October 13, 2011 by admin
Filed under Around The Net
Comments Off on WebOS Lives
HP is aiming to keep WebOS alive by putting it on printers.
The firm has discontinued its WebOS devices such as the Touchpad tablet and Pre 3 smartphone but WebOS will appear on new products, according to Pocketlint. The operating system (OS) will come on the Designjet line of HP printers.
An HP spokesperson said, “HP is currently investigating using WebOS on its Designjet range of professional printers.”
It’s likely that the OS will come on consumer printers at some point in the future, too. The following statement also hints that it could appear on products other than printers.
“HP is 100 [per cent] committed to producing print solutions that meet our customer needs and we will continue to drive innovation to ensure our products and solutions meet market demand. We built our printing franchise based on being OS agnostic – we have been and will continue to be agnostic to meet our various customer needs. As webOS plans develop we will continue to evaluate how and if we incorporate it into our future products.”
HP’s PC Division Decision This Month
Comments Off on HP’s PC Division Decision This Month
HP will decide on the future of its PC business this month, according to a statement from its newly installed CEO.
While it was under the Apotheker captaincy the firm announced rather shocking plans to dump the PC business. Okay, it didn’t explicitly say that, rather it said that it would consider selling it or spinning it off, which apparently meant something else to HP than it did to normal people.
According to Bloomberg, new HP CEO Meg Whitman sprinkled a little more colour into the HP PC business tapestry, and in a conference call said that the firm is almost ready to say what its plans are.
It’s likely that shareholders and the board are still reeling from the suggestion, but the extra time will give HP room to decide on what it wants to do with the still profitable, but boring hardware arm.
While it was under Leo Apotheker’s rule the firm had given itself the deadline of the end of the year for a decision, but presumably sick of people asking her, “what are we going to do with the PC business?”, Whitman has bought the decision forward.
Tool Created To Hack BlackBerry Passwords
October 7, 2011 by admin
Filed under Smartphones
Comments Off on Tool Created To Hack BlackBerry Passwords
A Russian security firm has upgraded a phone-password cracking software with the ability to figure out the master device password for Research in Motion’s BlackBerry devices.
Elcomsoft said on Thursday that before it developed the product, it was believed that there was no way to uncover a device password on a BlackBerry smartphone or PlayBook tablet. BlackBerry smartphones are configured to wipe all data on the phone if a password is typed incorrectly 10 times in a row, the company said.
Elcomsoft said it figured a way around the problem using a BlackBerry’s removable media card, but only if a user has configured their smartphone in a specific way. In order for Elcomsoft’s software to be successful, a user must have enabled the feature to encrypt data on the media card.
The feature is disabled by default, but Elcomsoft said around 30% of BlackBerry users have it enabled for extra security.
The company’s software can then analyze the encrypted media card and use a brute-force method to figure out a password, which involves trying millions of possible password combinations per second until one works.
Elcomsoft said it can recover a seven-character password in less than an hour if the password is all lower-case or all capital letters. The software does not need access to the actual BlackBerry device but just the encrypted media card.
Most Tegra 2 Tablets Will Get ICS
Sources have confirmed that most Tegra 2 tablets you know will get Ice Cream Sandwich. We are still sniffing around to find out if the ICS is going to end up as Android 4.0 but it will bring phones and tablets much closer and should ship in October or November.
Many Asus, Samsung, Toshiba, Lenovo, Sony and any other Android 3.x compatible tablets on market will have a chance to get the new one. The upgrade will come as manufacturers get it ready and customized for its tablets but most tablets will ship with Android 4.0, Ice Cream Sandwich, probably early next year at the latest.
This is good news for many who were brave to buy the first generation of tablets not based on Apple’s architecture and it will help Google to gather even more momentum for 2012. 2012 looks like a year when Google will be ready for real war against Apple, but at the same time, Android supporters fear that Windows 8 will get a lot of attention when it ships in late 2012.
Patches Released For Firefox and Thunderbird
Comments Off on Patches Released For Firefox and Thunderbird
The release of Firefox 7 is important because the new version features better memory management and is the first step in Mozilla’s long term plan to make the browser more resource friendly.
Nevertheless, users who upgrade to it will also benefit from improved security as this release fixes six critical and two moderate severity security vulnerabilities.
Four of the critical patches are shared with Thunderbird 7 and address a use-after-free condition with OGG headers, an exploitable crash in the YARR regular expression library, a code installation quirk involving the Enter key and multiple memory hazards.
A moderate severity patch that provides defence against multiple Location headers caused by CRLF injection attacks is also common to both products.
In addition to these patches Firefox 7 also contains fixes for two critical and one moderate severity vulnerabilities, with one of them resulting in a potentially exploitable WebGL crash.
It’s worth pointing out that Microsoft previously motivated its decision to not include support for WebGL in Internet Explorer by saying that the 3D graphics library opens a large attack surface.
So far several serious vulnerabilities have been identified and patched in WebGL, which partially supports Microsoft’s assessment, but the library’s supporters claim this is no different than with other technologies.
Firefox 7 also updates Websocket, a protocol disabled in the past because of security issues, to version 8, which is no longer vulnerable to known attacks.