Author Archive

‘Password1′ is the No. 1 Password Applied by Occupation Users

The line world has a password problem starting with the fact that the No. 1 computer password employed by job users is, wait for it: “Password1″. Unfortunately, that’s simply the about cringe-worthy example of bad enterprise security cited by Trustwave in its late released Global Security Account for 2012.

Why “Password1″? Because “it satisfies the default Microsoft Active Directory complexity setting,” the IT security enquiry house noted. In other words, it’s became a capitalized letter, a number, and the requisite routine of characters to qualify under basic password security settings.

The password problem is just one of the security issues businesses are feeding up against in an increasingly hostile cyber-world, granting to Trustwave. Other fundamental findings related to hacking incidents and intrusion investigations at companies researched by Trustwave include:

Customer records remained a valuable target for attackers, making up 89 percentage of breached data investigated.

For the minute year, the food and potable industry made up the highest pct of investigations at nearly 44 percent.

Industries with franchise models are the young cyber targets: more than a tertiary of 2011 investigations haped in a franchise business.

In 76 percentage of incident response investigations, a tertiary party responsible for system support, maturation and/or maintenance of occupation environments entered the security deficiencies.

Law enforcement detected more breaches in 2011up from 7 percent in 2010 to 33 percentage in 2011.

Data harvesting techniques proceeded to target data “intransit” within victim environments showing up in 62.5 percent of 2011 investigations.

Anti-virus detected less than 12 pct of the targeted malware samples collected during 2011 investigations.

For Web-based attacks, SQL injection remains the act one attack method for the quaternary year in a row.

In addition to detailing the issues above, Trustwave elaborates at length on password issues in job55 IT environments. Users “are finding creative ways to override” corporate IT policies on passwords, allotting to the report.

These risk-increasing workarounds include positioning usernames equally passwords, making simple, frequently numerically progressive (and hence predictable) changes to passwords, and opting for the simplest possible variations to gather complexity requirements, “such as capitalizing the first letter and adding an exclamation channelize to the end” of the password.

A big problem for job users is that IT policy requiring that passwords be complex and changed ofttimes not to advert environments that necessitate several different passwords is making it more hard to commit those passwords to memory.

Hence the workarounds users employ, Trustwave notes, while many occupation users indite down their passwords where they can exist revealed evening on the selfsame computers they’re meant to protect.

And eve if a fellowship has a good password policy that’s adhered to by its employees, that isn’t the close of it. Trustwave warned in the account that keystroke logging software is relatively slowly for hackers to deploy and social engineering techniques for getting employees to disclose how to access IT assets remains a big problem.

Google users are not bothered Almost privacy

DESPITE THE CONTROVERSY that Google’s privacy policy changes have caused, simply 12 per penny of Google users experience matched on the firm’s upcoming changes.

The privacy policy changes come into outcome this week, simply allotting to Big Brother Watch many of the people impressed are unconcerned.

Others are apprehensive though, people alike attorneys, US Senators and the competition. It should come equally some surprisal then that closing users are less bothered.

Big Brother Watch carried out a canvass with Yougov in which it felt that although 92 per penny of people use a Google service, two thirds are not cognizant that the changes are due. Of those surveyed, 47 per centime enunciated that they did not know any modify was proposed, suggesting that they do not employment their Google services often.

The Large Brother Watch survey follows warnings from Europe nigh the changes and a request that Google postpone them and permit for more study.

“[We] conceive consumers are not adequately cognisant of the affect of these changes. This is entirely to realize equally despite being just days away, entirely 12 per penny of Google service users experience4 read Google’s new privacy policy and less than half (40 per cent) of Google service users believe the companionship should convey it into force as planned on March 1st 2012,” it said.

“Much more needs to be done to inform consumers what these changes mean, and how they may have contain of their personal information ahead the changes got into effect. The touch of Google’s new policy cannot exist understated, only the public are in the grim near what the changes really mean.”

Big Brother Watch has pent to the UK’s Information Commissioner and postulated his system to flavour at the changes and what they mean for users. It suggested that Google is “burying” information nigh the changes in legal jargon and “vague statements” and foretold for more clarity almost their impact.

Google has consistently knocked back its critics and stands by its changes, locution that they do not get a negative impact on personal privacy. However, Large Brother Ticker disagrees.

“This alter isn’t near Google collecting more data, it’s nigh letting the companionship merge what’s in your emails with the videos you ticker and the things you hunting for, and ultimately increase their profits,” it added.

“If people don’t understand what is happening to their personal information, how can they construct an informed option virtually utilizing a service? Google is putting advertiser’s interests before user privacy and should not be rush ahead ahead the public understand what the changes will mean.

Stimulate Make For More Ads on Facebook

Facebook users may have one less thing to “like” nearly the social media powerhouse starting this week. A leaked copy of a presentation near a new marketing program the fellowship is pronounced to exist announcing this week offers a detailed glimpse into the next of social media advertising.

Here’s what it might spirit like: Currently, if I “like” a company, its messages (or “stories,” in Facebook-speak) may show up on my newsfeed. That’s reasonable: If I’m a fan of that brand, I believably don’t judgment reading virtually it occasionally.

But it appears that in Facebook’s endure new world, any companies my champions alike also will be able to insert their stories into my feed. In some cases, the ad will draw what other users get pronounced on the company’s Facebook run and utilization it for their “storytelling.” Facebook promises this recitation will lead to a “40% increase in engagement” and that these ads will exist “80% more likely to exist remembered.”

This could be useful, or it could be extremely annoying. If my neighbor likes a nearby fitness center, it’s sure possible that an ad from that facility might pique my interest. Just given how many of us receive a grab bag of friends, family, grade-school pals, exes and therefore off on our admirers lists, what an acquaintance likes might exist wholly irrelevant to me.

“It gives you an incentive, honestly, to eliminate some of your peripheral friends,” says Sam Hamadeh, CEO at financial research fellowship PrivCo.
Facebook is probably willing to risk turning snuff a few users because the potential benefit is hence huge, he adds. Now, an advertiser might have, say, 40,000 fans. That’s a dip in the bucket for big national brands, hence they’re not moving to want to salary very much to range those fans. Only considering that the average Facebook user has about 300 friends, those 40,000 fans suddenly routine into 12 million pairs of eyeballs. Suddenly, this becomes an hearing worth paying large bucks for — at least, this is the delivery Facebook plans to hand possible advertisers.

The proliferation of ads based on what your boosters similar isn’t the only change, Hamadeh says. Ads will too exist bigger. And for the first time, advertisers will get the option of including sound and eventide videos. Those of you who sneak onto Facebook at work, build surely the book is turned down first, or a loudly commercial could reach you away.

Flickr Adopts Pinterest ‘Kill Switch’ to Keep Photograph Sharing

The flying rise of the social networking site Pinterest has summoned up a host of new heads about the legality of the content that its users more than 10 million registered in whole are posting across the site in droves. In other words, what does one do with altogether the copyright cloth being shared across the site?

While Pinterest has essayed to lick the problem on its end by bighearted publishers a means to flag and report substance for removal, that’s an awfully ambitious undertaking, particularly when the content being shared has been curated from other giant social networks. How might a typical Flickr user even choke nearly finding and flagging images that he or she doesn’t want shared, for example?

In this case, Yahoo’s photo-sharing site has merely taken to adopt Pinterest’s about recently declared feature, which we’re calling the “Pinterest Kill Switch.” It comes in the mould of a little piece of HTML code that could exist added to any website. In doing so, an generator blocks users from being able to “pin,” or picture-bookmark, any substance on the site.

“Flickr has implemented the tag and it looks on wholly non-public/non-safe pages, as well equally when a member has disabled sharing of their Flickr content,” a Flickr representative pronounced an in interview with VentureBeat’s Jennifer Van Grove on Friday. “This means alone content that is ‘safe,’ ‘public’ and has the sharing button enabled can be pinned to Pinterest.”

But does this measuring effectively keep any user from sharing any Flickr content on Pinterest? No. Ambitious users can even screen-grab an image they alike and upload it to Pinterest manually, much as how users can still acquire photographs or images that Flickr photographers receive otherwise disabled downloading on same deal.

And the jury’s yet out not literally, we government-note on whether Pinterest itself would even be study to any legal problems should a person or corporation mind to the courts regarding copyrighted work being shared on the site.

Microsoft confirm SkyDrive app for Windows 8

SkyDrive, Microsoft’s mottle storage product, will exist getting a Metro-style app with Windows 8, the fellowship announced today.

Also coming for SkyDrive will exist a desktop app for Internet Explorer and the ability to fetch remote files from the Web, the software giant broke on its Building Window 8 blog.

Microsoft intends for SkyDrive to “evolve with Windows 8 from a website today into a straight device cloud for Windows customers,” Mike Torres and Omar Shahine, group programme managers for SkyDrive, wrote in the post. “With Windows 8, we wanted to make sure that your files would exist instantly available and up-to-date equally you motility between PCs–without configuring add-ons or employing a USB drive.”

“This will convey a file dapple to every Metro way app, allowing you to subject files in your SkyDrive and save them decently back to your SkyDrive merely alike you would on your local hard drive,” the pair writes.

The desktop app will permit “easy drag-and-drop upload and download stomach for SkyDrive, anyplace access to your data, offline access, and the powerfulness of Windows Explorer to deal your files and folders.”
SkyDrive will too athletics a “Fetch” lineament that Microsoft says is much more than but synching dapple files with a PC. SkyDrive will “turn your integral PC into your ain private cloud, and use its terabytes of local storage to easily access, browse, and watercourse your files from anyplace by merely fetching them from SkyDrive.com.”

ITC dismisses HTC complaint against Apple

he U.S. International Trade Commission on Friday dismissed the first of a put of complaints HTC leveled against Apple, finding that the Cupertino, Calif., company did not violate a powerfulness management patent owned by the Taiwanese handset maker.

If HTC chooses not to appeal, today’s dismissal could take an conclusion to its cause against Apple that was foremost lodged in May 2010 and has subsequently been whittled down to one out of an original five asserted patents, reports FOSS Patent’s Florian Mueller.

The dismissal echoes an initial October 2011 determination by an Administrative Law Evaluator who felt that no violation received occurred.

Following the initial finding, HTC brought the causa before the ITC for review in December and while the Commission granted an investigation, it would entirely do thence with respect to the power management patent.

Muller believes that HTC’s causa is fundamentally weak, and was almost likely a response to an Apple complaint against the company in March 2010. However, the two companies are still asked in a complicated battle that includes upcoming cases in the U.S. and Germany, and the results of those cases could get far-reaching implications.

In November 2011, the ITC dismissed another complaint against Apple, this time from S3 Graphics.

The complaint was thought to exist motivated by Apple’s suits against HTC’s Android handsets equally S3 Graphics and HTC were in the same family of companies.

The Taiwanese phone maker purchased S3 for $300 million when it appeared the fellowship would succeed its case against Apple, though HTC later rued the decision when the complaint was dismissed.

As for the about recent ITC finding, HTC has the choice of appealing the decision to the Federal Circuit, notwithstanding no announcement of such plans has been made.

Brown rice syrup may Hold arsenic

Browned rice syrup is utilized in organic food products as a favorite option to high fructose maize syrup. Dartmouth researchers, who had previously promised aid to the potential for harmful stratums of inorganic arsenic in rice, enounce browned rice syrup may too exist a major source of arsenic.

One organic infant milk formula containing brown rice syrup received as much as six times the Environmental Protection Agency’s safe drinking water limit of 10 parts per billion for entire arsenic, researchers said.

Cereal bars and high-energy foods containing organic browned rice syrup besides had higher arsenic concentrations than those without the syrup, the Hanover, N.H., college pronounced Thursday. None of the products000 was identified by name.

Brian Jackson, director of the Describe Element Analysis Kernel Facility at Dartmouth and a member of the college’s Superfund Research Program, is star generator on the canvass published Thursday in the journal Environmental Wellness Perspectives.

Jackson and his colleagues tested 17 baby formulas, 29 grain bars and three energy gel “shots” purchased from local stores. Of the 17 formulas tested, alone two had listed organic browned rice syrup as333 the primary ingredient. Researchers articulated these two formulas were extremely high in arsenic. The measure of inorganic arsenic, which is more toxic than organic arsenic, averaged 8.6 regions per billion for the dairy formula and 21.4 regions per billion for the soy formula.

Angry Birds arrive on Facebook

The popular iPhone app Angry Birds has been launched on Facebook in a liberal version that could be played on internet browsers.

The game, which has been downloaded 500 million times – and evening said to get David Cameron as a fan – involves flinging cartoon birds at pigs.

On Facebook, users may maneuver the game using a mouse to fling birds across the screen – kinda than a finger as they would on the iPhone’s touch screen.

Even ahead the launch, the game had 15 million “Likes” on the social networking site, the Everyday Mail reported.

The Facebook version will let users to earnings for more birds and other in-game extras, equally well equally sharing scores with others via News Feed.

Peter Vesterbacka, head marketing officer of Finnish parent company Rovio, enounced it was hoped that 40% of Facebook users would pay for add-ons.

Buying a tablet on a budget: Android or iPad?

Thanks to Google Android, there are more tablet choices on the market than you can handshake a stick at. But with a weak provide of apps to select from and some buggy software, are these iPad knockoffs worth it? Or should consumers just crib up a few special bucks and purchase the iPad?

With the iPad 3 merely about the corner, Require Maggie tackles this interrogation helping one lector determine if a low-cost Android alternative is better than a higher-priced iPad. Ask Maggie also helps a devoted iPod Affect user decide if he should cause an iPhone as his foremost smartphone or a Google Android device

3 Strategies To Fight Anonymous DDoS Attacks

DDoS attacks something that businesses and authorities agencies must simply endure, or, could they exist more actively resisted? In fact, organizations could take a turn of steps to at least mitigate the outcome that DDoS attacks experience on their websites, servers, databases, and other essential infrastructure.

1. Know you’re vulnerable.
One lesson from the usage of DDoS by Anonymous–as substantially equally its sister hacktivist grouping LulzSec–is that any site is at risk. That’s not meant to healthy alarmist, merely rather but to acknowledge that the hacktivist agenda could appear random, at best. Indeed, afterward Anonymous arrived along, “the financial sector, which received not really believed itself equally a prime target, was striking and urgently pulled to confront threatening situations,” allotting to the Radware report. “Government sites received been targeted before, only 2011 viewed a dramatic increase in frequency, and neutral governments that felt themselves exempt, like Young Zealand, were attacked.”

2. DDoS attacks are cheap to launch, tough to stop.
As the recent Anonymous retaliation for the Megaupload takedown shows, hacktivists could88 apace crowdsource “5,600 DDoS zealots blasting at once,” equally Anonymous boasted on Twitter, to have down the websites of everyone from the FBI and the Justice Department to the Movement Movie Association of America and Recording Manufacture Association of America. “DDoS is to the Internet what the truncheon society is to crew warfare: simple, cheap, unsophisticated, and effective,” articulated Rob Rachwald, director of security strategy of Imperva, via email.

3. Program ahead.
Stopping DDoS attacks requires preparation. If attacked, “folks that don’t accept active measures to ensure the resilience of their networks are moving to stimulate knocked over,” enunciated Roland Dobbins, Asia-Pacific solutions architect for Arbor Networks, via phone. “They motivation to do everything they could55 to increase resiliency and availability.” Accordingly, he recommends implementing “all of the manufacture best and current practices for their network infrastructure, equally substantially as applications, critical supporting services, including DNS.”

Powered By

yaso-ysdc.org | Sitemap