Thursday, July 30, 2009

Leaks Happen – bumper sticker

http://www.pogowasright.org/?p=2327

Major national security leak via P2P

July 29, 2009 by Dissent Filed under Breaches, Featured Headlines, Govt, Internet, Legislation, U.S.

Details about a U.S. Secret Service safe house for the First Family — to be used in a national emergency — were found to have leaked on a LimeWire file-sharing network recently, members of the House Oversight and Government Reform Committee were told this morning.

Also unearthed on LimeWire networks in recent days were presidential motorcade routes and a sensitive but unclassified document listing details on every nuclear facility in the country, Robert Boback, CEO of Tiversa Inc. told committee members.

The disclosures prompted the chairman of the committee Rep. Edolphus Towns, (D-N.Y.), to call for a ban on the use of peer-to-peer (P2P) software on all government and contractor computers and networks. “For our sensitive government information, the risk is simply too great to ignore,” said Towns who plans to introduce a bill to enforce just such a P2P ban.

Read more on Computerworld.



The map is not the territory and the website is not the organization.

http://it.slashdot.org/story/09/07/30/1230259/MI5-Website-Breached-By-Hacker?from=rss

MI5 Website Breached By Hacker

Posted by CmdrTaco on Thursday July 30, @08:49AM from the because-they-can dept. security

Jack Spine writes

"UK intelligence agency MI5 has admitted that its website security was breached by hacker group Team Elite. A member of the hacker forum posted details of the hack last week, which took advantage of a cross-site scripting vulnerability in the site's Google embedded search. MI5 admitted the breach on Wednesday, but said that the flaw had not been exploited maliciously."



Hactivism, SPAM, how should we classify this waste of HP employee's time? If you ran HP, what response could you make?

http://news.digitaltrends.com/news-article/20524/greenpeace-sets-captain-kirk-on-hp

Greenpeace Sets Captain Kirk On HP

July 30, 2009 by Christopher Nickson

As part of its campaign to remind HP of its environmental promises, Greenpeace had William Shatner leave them all a voicemail.

Earlier this week, Hewlett-Packard employees received a surprise – every one of them received a voicemail from actor William Shatner, best known for his role as Captain Kirk on Star Trek.

"This is William Shatner speaking," it said in part. "You, HP, promised me a toxic-free computer by 2009. Now my friends at Greenpeace tell me that I'll have to wait till 2011. What's up with that?"

It’s all part of a Greenpeace campaign to remind HP of its promise to make computers that are free of brominated flame retardants and PVC plastic by this year. HP has put back that target to 2011.

Brominated flame retardants are chemicals added to products that stop them bursting into flame. However, they do enter the waste stream, where they could potentially prove toxic to humans and animals; some European countries have banned them, according to the Guardian. Other computer manufacturers, such as Apple, do use alternatives.

This wasn’t the only action against HP taken by Greenpeace. Volunteers climbed to the top of the HP building and painted the words “Hazardous Products” in large letters.


(Related?) Is this indistinguishable from investigative journalism or a simple cop groupie? Does she have a lesser First Amendment right because she is a bigot?

http://www.readthehook.com/blog/index.php/2009/07/30/hobby-or-harassment-blogger-strom-jailed-for-cop-site/

Hobby or harassment? Blogger Strom jailed for cop site

by Lisa Provence

Elisha Strom has been sitting in Albemarle-Charlottesville Regional Jail for two weeks. Her alleged crime? Publishing the address of an officer on the Jefferson Area Drug Enforcement– JADE– task force.

“It’s a stupid reason to be in jail,” says the 34-year-old blogger, who maintains she was merely chronicling the activities of JADE as a hobby on her blog, I HeArTE JADE.

Since October 2008, Strom— already unpopular for her connections to the white separatist movement— has earned the opprobrium of law enforcement by following around JADE members, photographing them, and giving them nicknames like “Dasani,” “Longhead,” “Pringle,” and “Porn Star.”

… “It’s not illegal to publish the address,” argues Strom in an exclusive jailhouse interview nearly two weeks after her July 16 arrest. “It’s not illegal to publish the photograph. It’s illegal to do so with the intention of harassment.” [Is “making fun of” harassment? Bob]



“The best-laid schemes o' mice an 'men gang aft agley”

http://www.pogowasright.org/?p=2330

Google safe browsing feature could compromise privacy

July 30, 2009 by Dissent Filed under Internet

Turns out a browser security extension from Google for Chrome and Firefox browsers can actually put user privacy at risk, according to a researcher here at the Black Hat USA conference.

Robert “RSnake” Hansen, CEO of SecTheory LLC, says he discovered that Google’s Safe Browsing anti-phishing and anti-malware feature for Chrome and Firefox actually gathers and stores data about the user’s machine and browsing habits that could potentially be abused by an attacker or even incriminate the user in a legal case.

“It’s a time capsule on anyone who ever did anything in Chrome or Firefox … they can be de-anonymized way after the fact, months or years after using those browsers and the settings are turned off,” Hansen says.

Read more on Dark Reading.



Is it wise to refuse to sell to your most knowledgeable customers? Is this the best response to newer technologies they can come up with?

http://slashdot.org/story/09/07/30/0117222/EMI-Only-Selling-CDs-To-Mega-Chains-From-Now-On?from=rss

EMI Only Selling CDs To Mega-Chains From Now On

Posted by samzenpus on Thursday July 30, @02:01AM from the another-brick-in-the-wall dept. music business

farrellj writes

"According to Zero Paid, record company EMI has been notifying small music stores that they will no longer be able to buy EMI CDs from EMI, and will have to buy product from Mega-Chains like Walmart. Independent Record store customers are some of the most loyal music buyers around. You are not going to find the back catalog, what used to be the staple of the music business, at your local Walmart. One wonders when the Music Business is going to run out of feet to shoot?"



For my hackers...

http://voices.washingtonpost.com/securityfix/2009/07/weaponizing_web_20.html#more

Weaponizing Web 2.0

Imagine simply visiting a Web forum and finding that doing so forced your browser to post an embarrassing Twitter message to all of your contacts, or caused you to admit a stranger to your online social network. Now consider the same dynamic being used to move money out of your online auction account or delete the contents of your e-mail inbox.

… A copy of Moyer and Hamiel's white paper on this talk is available.here.



Another free app for your iPhone!

http://www.wired.com/gadgetlab/2009/07/sms-hijack-iphone

Text-Message Exploit Can Hijack Every iPhone, Researchers Say

By Brian X. Chen Email Author * July 29, 2009 * 12:59 pm

Security researchers plan to reveal a security hole that would enable hackers to take complete control of an iPhone with a text-messaging attack.

Security researchers Charlie Miller and Collin Mulliner will publicize the exploit Thursday at the Black Hat cybersecurity conference, according to Forbes. The researchers said the hack involves sending a series of mostly invisible SMS bursts that effectively hijack an iPhone. From thereon, a hacker could control all the functions on the iPhone, such as e-mailing, dialing contacts — and, most alarmingly, sending more text messages to hijack even more iPhones.



Well, it beats typing on your laptop while driving, but how urgent can these text messages be?

http://blogs.dallasobserver.com/unfairpark/2009/07/irving_company_creates_technol.php

Irving Company Creates Technology That Allows Car to Do Your Texting For You

By Robert Wilonsky in News You Can Actually Use, Actually Wednesday, Jul. 29 2009 @ 8:17AM

So, driving while texting is 23 times more dangerous than just, ya know, driving; 88 percent of Texas teens do it anyhow; with the growed-ups, the number's probably closer to 104 percent; and some states are proposing legislation outlawing the practice altogether. To which an Irving-based company says: Have we got a deal for you. Last week, ATX Group -- which, from the look of its product line, is slowly turning cars into Autobots -- debuted technology that allows for "in-vehicle, hands-free text messaging via voice," meaning you talk instead of type.



Tomorrow I'll look for articles on hacking Blackberries...

http://www.bespacific.com/mt/archives/021927.html

July 29, 2009

New on LLRX.com - Blackberry Apps for Lawyers

Blackberry Apps for Lawyers: Nicole Black highlights an assortment of Blackberry applications for research, document management, mobile communications, music, dictation and more - all of which would benefit just about any law practice.



Research tools

http://www.bespacific.com/mt/archives/021924.html

July 29, 2009

New on LLRX.com: Congressional Documents on FDsys: the Basics

The Government Domain - Congressional Documents on FDsys: the Basics - E-Gov guru and research expert Peggy Garvin provides an overview of the organization, content and search features of GPO's new Federal Digital System (FDsys).



Give the Times an “E” for effort, but I still prefer their RSS feed

http://www.makeuseof.com/dir/ny-times-article-skimmer/

NY Times Article Skimmer

The New York Times Article Skimmer is a pretty cool tool which could save loads of time for those who use the website everyday to browse through various news articles under different categories. Its aim is to give you quick access to the headlines thereby saving you the hassle of clicking one link after another. Just pick a category from the sidebar and see the news aggregated on one single page.

No comments: