Press "Enter" to skip to content

Posts tagged as “Internet”

Google Fires Back, Alan Turing Pardoned & More…

FOSS Week in Review

Just because Christmas week is supposed to be a slow news week doesn’t mean it’s a no news week…

Good news, bad news on the phishing front

First the good news. According to security company Websense, the amount of phishing attempts we’re finding in our email dropped remarkably this year, from 1.12% of all email volume down to 0.5%. Now, the bad news. The folks doing the phishing are getting better at targeting their attempts, so they don’t need to send as many emails to hook their prey.

Target Breach Illustrates Internet Weakness

In October, 2000, when Microsoft was presumably working on what would become XP, they were hacked. Somebody broke into their systems and managed to at least look at source code for Windows and Office. The folks in Redmond dutifully called in the FBI, examined their code and found it hadn’t been compromised. Or so they said.

“It is clear that hackers did see some of our source code,” Ballmer announced to a group of reporters and programmers at a seminar he was attending in Stockholm. “I can assure you that we know that there has been no compromise of the integrity of the source code, that it has not been modified or tampered with in any way.”

Target POS
The point of sale locations at Target stores — ground zero for the latest data breach.
At the time, this was disturbing, more so than if it were it to happen today. It was also an eye opener.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

WordPress – Too Fast For Comfort

Something’s got to give with the WordPress cycle.

Just three months ago, back in September, WordPress issued version 3.6.1 of their content management and blogging platform. Last week they issued 3.8. In between there was 3.7 and 3.7.1, the later release raising eyebrows when it included an automatic “minor point” upgrade feature that can’t be easily disabled.

That’s an average of one release per month, a burden for someone trying to keep sites safe from exploitation by the black hats. By quickening the pace of releases, WordPress may be inadvertently forcing webmasters into remaining with older versions, a potential security risk. Just as the enterprise balked at too much “release often” pressure from their vendors, folks who administer WordPress sites would be justified in complaining and pushing for a solution to this aspect of the WordPress development process.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Oracle’s Oregon Website Failure

So far the state of Oregon has paid Oracle at least $43 million dollars for a website primarily intended for residents to use to enroll for healthcare insurance under the Affordable Care Act. The site was initially due for delivery on October 1, which now has been pushed back on numerous occasions because the site doesn’t work. In fact, by all accounts, it’s an outright disaster.

The most recent missed deadline was announced on December 5, according to a report from KOIN TV.

“Cover Oregon’s former director, Rocky King — who took a long-term medical leave of absence last week — had said the online system would be ready Monday for insurance agents and community groups that have contracts with Cover Oregon, and then Dec. 16 for all individuals. King was replaced by Goldberg, who is the director of the Oregon Health Authority…

“Both those deadlines will be missed. In an email to KOIN Monday, Cover Oregon spokesman Michael Cox alleged that the Dec. 9 and Dec. 16 dates were ‘targets set by Oracle, not deadlines set by Cover Oregon.'”

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Linux 2K, Troll University & More…

FOSS Week in Review

New FCC Chairman a bad omen for net neutrality?

There might be some changes upcoming to the FCC’s position on net neutrality according to an article by Jon Brodkin posted Wednesday on Ars Technica. It seems as if the new Chairman, Tom Wheeler, wouldn’t necessarily cry “foul” if ISPs decided to take money from the likes of Hulu or Netflix for fast lane access.

“Wheeler (a former lobbyist for the cable and wireless industries) spoke positively about the [Open Internet] order but said he wouldn’t mind if Netflix has to pay for a faster lane to consumers while answering questions Monday after a policy speech at Ohio State University.

“‘I am a firm believer in the market,’ he said. ‘I think we’re also going to see a two-sided market where Netflix might say, “well, I’ll pay in order to make sure that you might receive, my subscriber receives, the best possible transmission of this movie.” I think we want to let those kinds of things evolve. We want to observe what happens from that, and we want to make decisions accordingly, but I go back to the fact that the marketplace is where these decisions ought to be made, and the functionality of a competitive marketplace dictates the degree of regulation.’

“Wheeler’s comment implies that he believes the Open Internet Order already allows such arrangements or that he wants to change it.”

Linux Worm, Bad Patent Good & More…

FOSS Week in Review

Good news & bad on the patent front

This week we received some good news and bad on the continuing patent wars.

First the bad news.

Down in the northeast Texas town of Marshall, an eight person jury has found that online retailer Newegg infringed on a patent held by TQP Development because they mixed the use of SSL and RC4 on their websites. The jury awarded $2.3 million, less than half of the $5.1 million that TQP’s damage expert had thought due.

Even though Newegg had a strong case, it’s not that much of a surprise that they lost, not in Marshall, where juries are infamous for siding with the plaintiffs on patent cases. Often these judgments are overturned on appeal. Make no mistake about it, Newegg’s attorney Lee Cheng plans to appeal. He made that very plain to Joe Mullin who covered the trial for Ars Technica:

Hacked by the NSA

The Internet has become a neighborhood infested with cockroaches.

On Saturday, the Dutch newspaper NRC reported that the NSA has infected over 50,000 computer networks with malware designed to steal sensitive data. The allegation arises from examination of documents supplied by Edward Snowden and “seen by” NRC reporters.

“The malware can be controlled remotely and be turned on and off at will. The ‘implants’ act as digital ‘sleeper cells’ that can be activated with a single push of a button. According to the Washington Post, the NSA has been carrying out this type of cyber operation since 1998.”

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Google Pays States, Newegg Tackles Troll & More…

FOSS Week in Review

FBI claims U.S. computers breached by Anonymous

In an exclusive story published Saturday by Reuters, the FBI has claimed Anonymous has managed to hack into U.S. government computers and steal sensitive data. What’s more, they believe these intrusions have been going on for at least a year.

“The hackers exploited a flaw in Adobe Systems Inc’s software to launch a rash of electronic break-ins that began last December, then left “back doors” to return to many of the machines as recently as last month, the Federal Bureau of Investigation said in a memo seen by Reuters.

“The memo, distributed on Thursday, described the attacks as ‘a widespread problem that should be addressed.’ It said the breach affected the U.S. Army, Department of Energy, Department of Health and Human Services, and perhaps many more agencies.

“Investigators are still gathering information on the scope of the cyber campaign, which the authorities believe is continuing. The FBI document tells system administrators what to look for to determine if their systems are compromised.”

The Reddit – SourceForge Lynch Mob

It was like Cooks Source all over again, just without the catchphrase “But honestly Monica.”

It’s been all over the web for the last week or two that the photo imaging program GIMP, a FOSS crown jewel, has dropped SourceForge as a download site. Although the GIMP folks had been a little concerned over some advertisements on SourceForge, the real reason appears to be DevShare, which bundles third party offers with open source downloads for install on Windows machines.

Last Thursday, in an attempt at damage control, the folks at SourceForge explained the DevShare program in some detail:

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

GIMP Leaves SourceForge, EFF Tackles NSA & More…

FOSS Week in Review

Bookstores say “no” to Kindle

Amazon Kindle ereaderWhat a surprise! Bookstores don’t want to sell Kindles.

It seems that Amazon has come up with a scheme, called Amazon Source, to let independent bookstores sell Kindle e-book readers and get a small commission on e-book sales to those readers for two years. This innitiave is being pushed in the U.S. first and might be offered in other countries at a later date. When announcing the initiative last week, Amazon said, “With Amazon Source, customers don’t have to choose between e-books and their favourite neighbourhood bookstore – they can have both.”

This led Dustin Kurtz, marketing manager with the New York publishing firm Melville House, to proclaim on the company’s website, “Amazon did a good thing on Wednesday: they made me and indie booksellers around the country laugh.”

Chrome Clamps Down, Bitcoin Vulnerability & More…

FOSS Week in Review

Swiss cloud with, presumably, no holes

Back when the Edward Snowden brouhaha first began, we said that this was going to have serious repercussions on the tech sector here in the United States, especially after it became evident that Microsoft was actively working with the spooks by allegedly designing back doors into their operating system and keeping federal intelligence agents informed about unpatched security holes that could be used against foreign governments and “terrorist,” which now days seems to be everyone who doesn’t work for the NSA, FBI or CIA.

Swisscom logoBrazil is already spending big bucks in an effort to make sure that no Internet cable entering their country goes anywhere near the US of A and is working to pass laws to make sure all Brazilian businesses use only servers located in-country. Similar efforts are underway in Europe, most notably in France and Germany.

Now the frugal Swiss are jumping on board, and they rightfully intend to profit from our stupidity by taking advantage of their strong privacy laws.

Breaking News: