Press "Enter" to skip to content

Posts published in “Security”

The People Vs the NSA

There is a tablet in my house that blinks whenever my roommate has a message. I know this because for some reason it’s my job to keep it charged for her. It has front and back cameras. The built-in microphone and speakers are capable of holding a conversation in English–probably other languages as well. With what we know now, I must assume that the NSA has the ability to activate the cameras and microphone to run silently in the background, bypassing the light that indicates when the camera is in use.

The same is true of the other computers in my home, but to a lesser degree.

The Day We Fight Back banner
The Day We Fight Back banner.

The desktop I’m using to write this article doesn’t have a camera or a microphone. Nor does the old Dell laptop that gets used occasionally around the house. My other laptop, a newer Gateway, is equipped with a built-in camera and microphone, but I’ve never managed to get the microphone to work under Bodhi Linux. Not that I’ve tried very hard. I don’t Skype or anything, so a microphone is of very little use to me.

This is probably a good thing as it means the NSA can’t watch or listen to me as I use my desktop or Dell and they can’t eavesdrop when I’m on the Gateway. They can only steal my bank passwords, learn where I store data online and what social networking accounts are connected with me.

Torvald’s Thumbs Up, Gates’ Computer Skills & More…

FOSS Week in Review

Canadians spy at airports

The more we see of the Snowden revelations the more we wonder, when did the English speaking world become a police state?

The latest news was reported January 30th by the Canadian Broadcasting Corporation (CBC), from which we learned that all the electronics eavesdropping hasn’t been being conducted solely by the U.S. and the Brits. The Canadians have had their hand in it too.

It seems that Communications Security Establishment Canada (CSEC), a Canadian spy agency, has been using the free Wi-Fi at “a major Canadian airport” to track wireless devices, which presumably would include laptops as well as phones and tablets. The surveillance would continue for days after visitors passed through the airport.

Results for Our ‘Red Hat & the NSA’ Poll

It looks as if Red Hat has some work cut out for them if they care what impression folks in the FOSS community have about them. If the results of our Red Hat &the NSA poll are any indication, some people aren’t convinced that the most commercially successful Linux distro on the planet has clean hands when it comes to the whole NSA mess.

A few weeks back, in response to what I thought (and still think) were unfounded allegations that Red Hat has been working with the NSA spying efforts by doing things like building back doors into RHEL, we ran a poll that asked the simple question, “Do you think Red Hat is cooperating with the NSA by building back doors into RHEL?” The poll went up on January 23rd and was ended this afternoon.

Red Hat logo

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Chrome Eavesdropping, Balkanized Internet & More…

FOSS Week in Review

Sixteen-year-old wrote the code for Target breach

TargetMiamiThe press calls him a “nearly seventeen-year-old” and he’s reported to be one of the people behind the malware used to compromise credit card data at Target and other locations. By our way of counting, “nearly seventeen” means he is sixteen or, like the show tune says, “sixteen going on seventeen.” He lives in Russia and is said to be the author of the BlackPOS malware that was used against Target and might have been used against Neiman Marcus.

This info comes from Los Angeles based cyber-intelligence firm IntelCrawler, which says it’s also traced six additional breaches to BlackPOS. As noted on MarketWatch, despite authoring the malware, the kid is just a small fry in this affair.

Troll Sues FTC, Net Neutrality Dead & More…

FOSS Week in Review

NSA spying not as effective as claimed

Claims from the Obama White House and the NSA about the effectiveness of the NSA’s dirty tricks evidently aren’t true, according to a report from the New America Foundation. Since the Snowden revelations began, we’ve heard that something like 50 terrorist attacks have been averted as a result of the NSA monitoring Americans’ phone records and such.

However, Mashable tells us that according to this report, the effects of the NSA’s cyber spying has been minimal.

“‘Our review of the government’s claims about the role that NSA “bulk” surveillance of phone and email communications records has had in keeping the United States safe from terrorism shows that these claims are overblown and even misleading,’ said the research team, led by Peter Bergen, a reporter specialized in national security who also interviewed Osama Bin Laden in 1997.

“‘Traditional investigative methods, such as the use of informants, tips from local communities, and targeted intelligence operations, provided the initial impetus for investigations in the majority of cases, while the contribution of NSA’s bulk surveillance programs to these cases was minimal,’ they added.

The report goes on to claim that the spy agencies wholesale collection of phone data only had an impact in 1.8% of cases. The figures for PRISM’s impact is 4.4%.

Blackberry Trolls, Coke in Patent Suit & More…

FOSS Week in Review

India drops deal with Google over spying fears

Since the Snowden leaks revealed that Microsoft has allegedly built back doors into Windows for the NSA, we’ve been saying that the spy agency’s actions are going to hurt the U.S. tech industry’s business abroad. Well, it’s started to happen. On Thursday, Reuters reported that India has decided to drop out of a planned partnership with Google designed to help voters access information.

“…the plan was opposed by the Indian Infosec Consortium, a government and private sector-backed alliance of cyber security experts, who feared Google would collaborate with “American agencies” for espionage purposes.”

cokeadThere’s even been more digital security news from the EU, where there’s been a scramble to address privacy and security issues since the NSA scandal began. On January 3, phoneArena.com reported that European phone makers have been coming out with pricey phones designed for the security conscious.

Mark our words. This is only the beginning.

Cloud Based LibreOffice, Facebook Reads PMs & More…

FOSS Week in Review

In 2013, Linux hits grand slam

Now that companies are closing-out their books on the old year, it’s becoming evident that Linux devices were a big hit in 2013.

On Friday, CNET’s Brooke Crothers reported that Chromebooks, those nifty laptops running Google’s Chrome OS that let the cloud do the heavy lifting, accounted for 21% of all laptop sales last year. As impressive as that may be, the numbers get even better when Android tablets are added to the mix. According to market research company NPD Group, January to November saw 1.76 million Chromebooks and Android tablets sold, up from only 400,000 during all of 2012.

The OEMs, of course, are paying attention and are readying new Linux devices for the market.

2013 — That Was the Year That Was

Now that the celebrating is out of the way, I thought it might be time to take a look at some of the stories we covered on FOSS Force this year.

1. The NSA. The biggest story to come down the wire this year undoubtedly had to do with Edward Snowden’s revelations about the National Security Agency’s bag of dirty tricks. Even those of us who have long understood that the Internet isn’t necessarily a place to expect privacy were surprised at how deeply the NSA has managed to reach into the Internet. Odds are, if you’ve been using social networks, everything you’ve posted is now on file with the NSA. What’s worse, every email you’ve sent probably has a copy resting on a NSA server somewhere.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Google Fires Back, Alan Turing Pardoned & More…

FOSS Week in Review

Just because Christmas week is supposed to be a slow news week doesn’t mean it’s a no news week…

Good news, bad news on the phishing front

First the good news. According to security company Websense, the amount of phishing attempts we’re finding in our email dropped remarkably this year, from 1.12% of all email volume down to 0.5%. Now, the bad news. The folks doing the phishing are getting better at targeting their attempts, so they don’t need to send as many emails to hook their prey.

Target Breach Illustrates Internet Weakness

In October, 2000, when Microsoft was presumably working on what would become XP, they were hacked. Somebody broke into their systems and managed to at least look at source code for Windows and Office. The folks in Redmond dutifully called in the FBI, examined their code and found it hadn’t been compromised. Or so they said.

“It is clear that hackers did see some of our source code,” Ballmer announced to a group of reporters and programmers at a seminar he was attending in Stockholm. “I can assure you that we know that there has been no compromise of the integrity of the source code, that it has not been modified or tampered with in any way.”

Target POS
The point of sale locations at Target stores — ground zero for the latest data breach.
At the time, this was disturbing, more so than if it were it to happen today. It was also an eye opener.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Latest Articles