Tag Archives: Security

Skype backdoor confirmation – By Tech Updates

Skype backdoor confirmation - Tech Updates

Anyone who uses Skype has consented to the company reading everything they write. The H‘s associates in Germany at heise Security have now discovered that the Microsoft subsidiary does in fact make use of this privilege in practice. Shortly after sending HTTPS URLs over the instant messaging service, those URLs receive an unannounced visit from Microsoft HQ in Redmond.

A reader informed heise Security that he had observed some unusual network traffic following a Skype instant messaging conversation. The server indicated a potential replay attack. It turned out that an IP address which traced back to Microsoft had accessed the HTTPS URLs previously transmitted over Skype. Heise Security then reproduced the events by sending two test HTTPS URLs, one containing login information and one pointing to a private cloud-based file-sharing service. A few hours after their Skype messages, they observed the following in the server log:

65.52.100.214 - - [30/Apr/2013:19:28:32 +0200]
"HEAD /.../login.html?user=tbtest&password=geheim HTTP/1.1"

 

Skype backdoor confirmation – Tech Updates.

Post to Twitter

Nearly 35% of Android Apps Are Secretly Stealing Private Data, Says China’s Latest DCCI Report

DroidSecurityNone

DroidSecurityNone

China’s awkwardly-named Data Center of China Internet (DCCI) released a new report on Wednesday about Android apps in the country, and things do not look good. The report details DCCI’s findings in an investigation of the top 1400 apps across China’s various Android markets and found that 66.9 percent of the apps were tracking users’ private data, and 34.5 percent of them were doing what DCCI calls “cross-border data tracking”; tracking private data that has no discernable connection to the app’s function and generally not making users aware that it’s happening.

OverviewDroidApps

via Nearly 35% of Android Apps Are Secretly Stealing Private Data, Says China’s Latest DCCI Report.

Post to Twitter

Iphone5 Jailbreak done 24Hrs after first Sale.

The hacker Grant Paul posted a picture on Twitter of an iPhone 5 where a ‘jailbreak’ on seems to be applied. The photo is credible, because many times the same hacker cracked software from Apple.

It is not yet clear what it used to leak the jailbreak to apply. Until now, all iPhones and iPads always been cracked, but it is exceptional that the new operating system iOS 6 all within 24 hours prey to hackers.

With a jailbreak software can be installed from a source other than the official App Store. It will probably be some time before the hack is released for consumer use.

Post to Twitter

Almost every Android Phone has Malware installed.

Happy with your Droid???

A security expert from the British carrier expects to test apps on other operating systems similar results will be found, writes Eeetimes.

“We have more than 1000 Android apps analyzed and a third was compromised with a form of active or dormant malware,” said Jill Knesek head of security. “Nearly every smartphone or tablet with Android is infected with some form of malware, though not clear to what extent active.”

Knesek NetEvents warned during the Americas conference that malware is not the only problem. GPS devices are in accordance with its easy to hack. “Only when a young woman being chased, raped and murdered people will realize they need GPS security,” said Knesek.

It is not the first time that Google’s OS apps can be found that contain malware. Security companies are often reported from infected apps and Google removes the application.

source:  http://www.nu.nl/gadgets/2869739/bijna-alle-android-toestellen-besmet-met-vorm-van-malware.html

 

Post to Twitter

Google Chrome hacked in 5 Minutes using 2 Bugs.. Read More!

google-chrome-powned

Google Chrome is via 2 bugs completely cracked, within 5 minutes. And then again cracked by another. Both hackers knew from the sandbox to escape and run code to execute.

The hack has happened in the Pwn2Own cracking contest at CanSecWest security meeting. The first cracking is done by the French security company VUPEN. In addition, Chrome also caught by another cracker, which thus assured of $ 60,000 prize money from Google. The Chrome-maker awards a total of $ 1 million for detected and reported vulnerabilities in its web browser.

The Internet giant will reward security researchers who exploits, complete with bugs used for this purpose, disclose to software makers. In late February, Google has decided to afford his own premiums, and no longer through Pwn2Own. The reason is that cracking game no longer requires that exploits and bugs will be shared with the creator of the cracked software.

Chrome-cracker when equal VUPEN has already shown no interest in Google’s terms. The French security company sells information about discovered security holes at large corporations and governments. And software vendors who have a contract with VUPEN.

Post to Twitter

Post Navigation

 
WordPress Appliance - Powered by TurnKey Linux