Press "Enter" to skip to content

Posts published in “Internet”

Target Breach Illustrates Internet Weakness

In October, 2000, when Microsoft was presumably working on what would become XP, they were hacked. Somebody broke into their systems and managed to at least look at source code for Windows and Office. The folks in Redmond dutifully called in the FBI, examined their code and found it hadn’t been compromised. Or so they said.

“It is clear that hackers did see some of our source code,” Ballmer announced to a group of reporters and programmers at a seminar he was attending in Stockholm. “I can assure you that we know that there has been no compromise of the integrity of the source code, that it has not been modified or tampered with in any way.”

Target POS
The point of sale locations at Target stores — ground zero for the latest data breach.
At the time, this was disturbing, more so than if it were it to happen today. It was also an eye opener.

New Temp Patent Head, Amnesty for Snowden & More…

FOSS Week in Review

Credit card breach at Target affects over 40 million

Merry Christmas. Your bank account has been drained.

This week’s holiday cheer was marred for millions as they learned that their banking information might be in the hands of hackers.

Target has announced that over 40 million customer credit card transactions have been hijacked since Black Friday. The data was stolen from transactions at the retailer’s brick and mortar stores. Online transactions are evidently not affected. All information contained in a credit card’s magnetic stripe has been compromised, enough information to make counterfeit cards.

The story was originally made public on Wednesday by security expert Brian Krebs on his site KrebsonSecurity. This afternoon, Krebs wrote in an update that information pilfered from Target was making its way to the black market.

WordPress – Too Fast For Comfort

Something’s got to give with the WordPress cycle.

Just three months ago, back in September, WordPress issued version 3.6.1 of their content management and blogging platform. Last week they issued 3.8. In between there was 3.7 and 3.7.1, the later release raising eyebrows when it included an automatic “minor point” upgrade feature that can’t be easily disabled.

That’s an average of one release per month, a burden for someone trying to keep sites safe from exploitation by the black hats. By quickening the pace of releases, WordPress may be inadvertently forcing webmasters into remaining with older versions, a potential security risk. Just as the enterprise balked at too much “release often” pressure from their vendors, folks who administer WordPress sites would be justified in complaining and pushing for a solution to this aspect of the WordPress development process.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Oracle’s Oregon Website Failure

So far the state of Oregon has paid Oracle at least $43 million dollars for a website primarily intended for residents to use to enroll for healthcare insurance under the Affordable Care Act. The site was initially due for delivery on October 1, which now has been pushed back on numerous occasions because the site doesn’t work. In fact, by all accounts, it’s an outright disaster.

The most recent missed deadline was announced on December 5, according to a report from KOIN TV.

“Cover Oregon’s former director, Rocky King — who took a long-term medical leave of absence last week — had said the online system would be ready Monday for insurance agents and community groups that have contracts with Cover Oregon, and then Dec. 16 for all individuals. King was replaced by Goldberg, who is the director of the Oregon Health Authority…

“Both those deadlines will be missed. In an email to KOIN Monday, Cover Oregon spokesman Michael Cox alleged that the Dec. 9 and Dec. 16 dates were ‘targets set by Oracle, not deadlines set by Cover Oregon.'”

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Linux 2K, Troll University & More…

FOSS Week in Review

New FCC Chairman a bad omen for net neutrality?

There might be some changes upcoming to the FCC’s position on net neutrality according to an article by Jon Brodkin posted Wednesday on Ars Technica. It seems as if the new Chairman, Tom Wheeler, wouldn’t necessarily cry “foul” if ISPs decided to take money from the likes of Hulu or Netflix for fast lane access.

“Wheeler (a former lobbyist for the cable and wireless industries) spoke positively about the [Open Internet] order but said he wouldn’t mind if Netflix has to pay for a faster lane to consumers while answering questions Monday after a policy speech at Ohio State University.

“‘I am a firm believer in the market,’ he said. ‘I think we’re also going to see a two-sided market where Netflix might say, “well, I’ll pay in order to make sure that you might receive, my subscriber receives, the best possible transmission of this movie.” I think we want to let those kinds of things evolve. We want to observe what happens from that, and we want to make decisions accordingly, but I go back to the fact that the marketplace is where these decisions ought to be made, and the functionality of a competitive marketplace dictates the degree of regulation.’

“Wheeler’s comment implies that he believes the Open Internet Order already allows such arrangements or that he wants to change it.”

Linux Worm, Bad Patent Good & More…

FOSS Week in Review

Good news & bad on the patent front

This week we received some good news and bad on the continuing patent wars.

First the bad news.

Down in the northeast Texas town of Marshall, an eight person jury has found that online retailer Newegg infringed on a patent held by TQP Development because they mixed the use of SSL and RC4 on their websites. The jury awarded $2.3 million, less than half of the $5.1 million that TQP’s damage expert had thought due.

Even though Newegg had a strong case, it’s not that much of a surprise that they lost, not in Marshall, where juries are infamous for siding with the plaintiffs on patent cases. Often these judgments are overturned on appeal. Make no mistake about it, Newegg’s attorney Lee Cheng plans to appeal. He made that very plain to Joe Mullin who covered the trial for Ars Technica:

Hacked by the NSA

The Internet has become a neighborhood infested with cockroaches.

On Saturday, the Dutch newspaper NRC reported that the NSA has infected over 50,000 computer networks with malware designed to steal sensitive data. The allegation arises from examination of documents supplied by Edward Snowden and “seen by” NRC reporters.

“The malware can be controlled remotely and be turned on and off at will. The ‘implants’ act as digital ‘sleeper cells’ that can be activated with a single push of a button. According to the Washington Post, the NSA has been carrying out this type of cyber operation since 1998.”

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Google Pays States, Newegg Tackles Troll & More…

FOSS Week in Review

FBI claims U.S. computers breached by Anonymous

In an exclusive story published Saturday by Reuters, the FBI has claimed Anonymous has managed to hack into U.S. government computers and steal sensitive data. What’s more, they believe these intrusions have been going on for at least a year.

“The hackers exploited a flaw in Adobe Systems Inc’s software to launch a rash of electronic break-ins that began last December, then left “back doors” to return to many of the machines as recently as last month, the Federal Bureau of Investigation said in a memo seen by Reuters.

“The memo, distributed on Thursday, described the attacks as ‘a widespread problem that should be addressed.’ It said the breach affected the U.S. Army, Department of Energy, Department of Health and Human Services, and perhaps many more agencies.

“Investigators are still gathering information on the scope of the cyber campaign, which the authorities believe is continuing. The FBI document tells system administrators what to look for to determine if their systems are compromised.”

The Reddit – SourceForge Lynch Mob

It was like Cooks Source all over again, just without the catchphrase “But honestly Monica.”

It’s been all over the web for the last week or two that the photo imaging program GIMP, a FOSS crown jewel, has dropped SourceForge as a download site. Although the GIMP folks had been a little concerned over some advertisements on SourceForge, the real reason appears to be DevShare, which bundles third party offers with open source downloads for install on Windows machines.

Last Thursday, in an attempt at damage control, the folks at SourceForge explained the DevShare program in some detail:

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

GIMP Leaves SourceForge, EFF Tackles NSA & More…

FOSS Week in Review

Bookstores say “no” to Kindle

Amazon Kindle ereaderWhat a surprise! Bookstores don’t want to sell Kindles.

It seems that Amazon has come up with a scheme, called Amazon Source, to let independent bookstores sell Kindle e-book readers and get a small commission on e-book sales to those readers for two years. This innitiave is being pushed in the U.S. first and might be offered in other countries at a later date. When announcing the initiative last week, Amazon said, “With Amazon Source, customers don’t have to choose between e-books and their favourite neighbourhood bookstore – they can have both.”

This led Dustin Kurtz, marketing manager with the New York publishing firm Melville House, to proclaim on the company’s website, “Amazon did a good thing on Wednesday: they made me and indie booksellers around the country laugh.”

The Importance of Free Websites

On October 26th, ten year old Charlie Thompson went to a Halloween party at a friends house in rural New York state. The weather was reasonably mild, so much of the party took place outside. At some point the children began playing a game of hide and seek. Charlie and another boy found a wooden board that Charlie thought would be a perfect place to hide. He lifted the board and knelt on another board that was underneath.

The board on which he knelt was old and rotten. Unbeknownst to Charlie and his friend, it was also covering an old abandoned well. Under his weight it immediately broke, hitting him on the forehead and knocking him unconscious. He fell straight down into the well, which was eighteen feet deep. His friend immediately ran to get help.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Latest Articles