Press "Enter" to skip to content

Posts tagged as “security”

Dotcom’s New Mega: Not Ready For Primetime

It’s funny how things work out. Entrepreneur Kim Schmitz changed his name to “Dotcom” in respect for the technology that made him filthy rich. However, his newest website doesn’t end in dotcom. He doesn’t dare use that top level domain because that would be an open invitation to the U.S. authorities to mess with him. I think Mr. Dotcom would like to be through dealing with the American government if he can. So he’s using .nz, the top level domain code for New Zealand where he resides.

Actually, his new site is a double dot–mega.co.nz, or Mega. Originally, he planned to use the too trippy url Me.ga, using the domain country code for Gabon, a plan that was derailed because the government of Gabon didn’t want to be party to “violating copyrights.” Mr. Dotcom might be excused for suspecting the United States for being an outside instigator in this matter.

Java Still Isn’t Safe – Possible New Vulnerability

I was just guessing on Monday when I said that the Java security patch pushed by Oracle on Sunday was “too little too late.” This appears to have been a lucky good guess on my part, as word is out now that the Java browser plugin still isn’t safe.

At least that’s what Brian Krebs is reporting on his blog Krebs On Security. Evidently there’s a black hat on a hacker forum who’s offering-up info to two buyers on a new vulnerability in the latest and greatest version of Java (that would be version 7, update 11) for the sum of $5,000 each.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Oracle’s Quick Java Patch–Too Little Too Late?

On Sunday, Oracle pushed an “unscheduled” patch to fix a security hole in Java that had prompted the U.S. Department of Homeland Security to take the unprecedented step of advising all Internet users to disable browser-side Java. The hole was already being exploited in the wild when white hats brought it to the public’s attention last week, mainly being used to install “ransomware.”

Despite Oracle’s assurances that it’s safe for surfers to go back in the water, security experts remain uncertain about the safety of Java. On Information Week, writer Mathew J. Schwartz quotes at least one security expert who gives the security patch a thumbs up:

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Spy vs. Spy, Spilt Blackberries & Redmond’s Lies

Friday FOSS Week in Review

It would seem to be another slow week in the FOSS news world. As always however, there were a few tidbits, and the passing of a computer pioneer who’s work has effected everyone who’s ever sat in front of a monitor and keyboard.

U.S. Predator and Reaper Drones Hit by Virus…or Not

We learned on Monday from ars technica that the U.S. Predator and Reaper drone fleet has been hit by a virus. According to the report, the malicious code logs the keystrokes of those in the “cockpit” flying missions over Afghanistan and “other war zones:”

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

The Death of Zune, the Resurrection of WebOS & Kernel.org Returns

Friday FOSS Week in Review

It was already a slow week when the news came on Wednesday of Steve Jobs’ demise. Since then, most tech sites have been reporting on not much else. As always, however, there were a few things to note…

Privacy Issues with Kindle Fire’s Silk Browser

Almost as soon as Amazon unveiled their new Kindle Fire tablet last Wednesday, Naked Security raised some privacy concerns about the device’s browser, called Silk. It seems the browser, in order to offer a quicker user experience, does most of it’s heavy lifting in the cloud:

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Phone 7 FUD, Windows 8 Lockout, Samsung Takes Off Gloves

Friday FOSS Week in Review

This week’s biggest story in FOSS was the quick changing of the guard over at HP. Although HP isn’t really a FOSS company, they do of course sell Linux servers and were recently considered to be on the verge of becoming a major FOSS player with their webOS. There’s no need to cover any of that here, however, as I posted my viewpoints on this fiasco last night.

DigiNotar Put out of Business by Hackers

You know, when you’re a security firm it pays to have your security in place. I mean, it doesn’t look even a little good when you’re hacked, especially when your business is telling other people how not to get hacked. This is a truth that became much more self evident early this week when Dutch security firm DigiNotar announced they were going into voluntary bankrupcy and putting themselves out of business as the end result of a hacking incident that began last July. It seems that attackers gained access to the firm’s internal systems and issued a slew of fake certificates that allowed the hacker/crackers to impersonate web firms like Google, Facebook, Twitter and Skype. Evidently, the certificates were used to gain access to over 30,000 Google email accounts.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

More Linux Site Hacks, ReactOS Ready to Go, Obama Signs ‘America Invents Act’

Friday FOSS Week in Review

In many ways, FOSS news this week is like a soap opera with lots of stories being continuations from last week’s items. However, there is some new stuff to report. If you’re like me, all FOSS news is interesting….

Bartz Resigns from Yahoo Board

After being fired by telephone last Tuesday, Yahoo’s former CEO Carol Bartz resigned from the Internet company’s board on Friday. According to a Reuters report posted on Yahoo, the resignation was made public on Sunday and first reported by The Wall Street Journal:

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Kernel Archives Hacked, SCO Dies Again, More HP Changes & More

Friday FOSS Week in Review

It’s been a busy week in the FOSS world. Evidently everyone’s been in a hurry to make some news happen before leaving town for the Labor Day weekend. Well, lots of FOSS news is good for me, makes my job easy, so here goes…

HP Makes PR Changes After WebOS/PC Fiasco

I’ve been working on a story all week on the mess at HP caused by the all-at-once and probably premature announcement they’re dropping WebOS, smartphones and consumer PCs. One trouble, I keep having to go back and rewrite stuff, because the story is still very, very fluid and new aspects keep popping up almost daily.

On Monday, Bloomberg Businessweek announced that HP’s chief communications officer, Bill Wohl, will be moving to a “special assignment.” Chief Marketing Officer Marty Homlish will be picking up the slack with the corporate communications team and Lynn Anderson will take care of PR’s day-to-day operations, at least for the time being. According to the Bloomberg, both Wohl and Homlish have a history with CEO Leo Apotheker that predates his tenure at HP:

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Happy Birthday Tux, Android Number One in Malware & Kubrick to the Rescue

Friday FOSS Week in Review

I’m back from vacation and raring to go. Of course, when I decided to take time off, all heck broke out in the tech world – isn’t that the way it always goes. Now that I’m back, things will probably slow down and I’ll find myself begging for things to write about. Of course, the biggest story this week has little direct connection with FOSS, but has to do with Apple…

Steve Jobs Resigns as Apple’s CEO

By now, I assume everyone’s heard the news about Steve Jobs’ resignation as CEO of Apple, presumably due to health reasons. For the time being he’ll be staying on as board chairman and will continue in some undefined role as an “employee.” He’ll be replaced as CEO by chief operating officer Tim Cook, who’s worked closely with Jobs for thirteen years. By all accounts Cook is capable and is credited with solving the company’s supply problems early in his tenure at Apple. To my thinking, it’s much too soon to tell how Jobs departure will affect Apple, though it’s certain his absence will be felt.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Congress Considers Stepping on Rights, Windows Mobile Share Nil & Whose DNA Is It Anyway?

Friday FOSS Week in Review

With the Black Hat Conference going on in Las Vegas, and with Congress messing around where they shouldn’t, this has been a busy week in the FOSS world. Some of the news is good; some of the news is not so good. I’ll start with a rant…

Proposed Data Retention Bill Would Chill Free Speech

The House will soon be considering a bill that will require ISP’s to maintain logs of their customers Internet use for a 12 month period. As I understand it, the law would include a customer’s browsing history, credit card numbers, etc. The stated purpose of the proposed law is to catch pedophiles visiting child porn sites, but everybody who knows anything about the Internet agrees it won’t be very effective at doing that. What it will do, if enacted, is bring Orwell’s “Big Brother” vision a little closer to home and make your network connected devices look even more like telescreens than they do now.

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

osCommerce Under Attack – So Far 3.79 Million Pages Affected

The popular osCommerce ecommerce application has been under attack at least since last week, according to web application security firm Amorize. At last count the attack has affected more than three million pages. The attack, in the form of an iFrame injection, utilizes several vulnerabilities in older versions of osCommerce. The latest version doesn’t seem to be affected. Any business using an older version of osCommerce is advised to upgrade immediately.

The Zen Cart ecommerce application, which was initially a value added fork of osCommerce, doesn’t seem to be affected. Kim Elliott, one of the founding members of Zen Cart, told me, “As far as I know there hasn’t been a problem. As long as you have our latest version and file permissions set correctly you shouldn’t have any issues.”

Christine Hall

Christine Hall has been a journalist since 1971. In 2001, she began writing a weekly consumer computer column and started covering Linux and FOSS in 2002 after making the switch to GNU/Linux. Follow her on Twitter: @BrideOfLinux

Latest Articles