visitor maps

Translation-Traduction

Tuesday, April 8, 2014

Change Your Passwords: A Massive Bug Has Put Your Details at Risk

 

478186613

The little lock icon (HTTPS) signaling that we were on a secure website and that all our passwords, personal emails, and credit card information was safe, was making that private information accessible hackers.KTSDESIGN—Getty Images

Internet users are advised to be on the alert as security experts race to assess the damage done by Heartbleed — a newly discovered bug in technology that runs encryption for two-thirds of the Internet

A newly discovered bug in software supposed to provide extra protection for thousands of the world’s most popular websites has exposed highly sensitive information such as credit card numbers, usernames, and passwords, security researchers said.

The discovery of the bug, known as Heartbleed, has caused several websites to advise their users to change their passwords.

“This might be a good day to call in sick and take some time to change your passwords everywhere — especially your high-security services like email, file storage, and banking, which may have been compromised by this bug,” Tumblr wrote in a note to its many users.

“The little lock icon (HTTPS) we all trusted to keep our passwords, personal emails, and credit cards safe, was actually making all that private information accessible to anyone who knew about the exploit.”

Yahoo, the owner of Tumblr, confirms that its users’ passwords have been compromised.

The bug was discovered late last week in the OpenSSL technology that runs encryption for two-thirds of the Internet. The researchers who discovered it said that most Internet users “are likely to be affected either directly or indirectly.”

It was found simultaneously by a Google security researcher and a small security firm named Codenomicon and disclosed Monday night.

Experts are now scrambling to asses the extent of the security breach, because the bug remained undiscovered for two years. Hackers may have exploited it without leaving footprints.

“We have tested some of our own services from attacker’s perspective. We attacked ourselves from outside, without leaving a trace,” Codenomicon wrote on their newly created website about the bug.

According to several security experts, it is one of the most serious security flaws uncovered in many years.

“Heartbleed is like finding a faulty car part used in nearly every make and model, but you can’t recall the Internet and all the data you put out on it,” Jonathan Sander, vice president of research and technology for Stealthbits Technologies, a cybersecurity firm, told the Los Angeles Times.

The U.S. government’s Department of Homeland Security has advised all businesses using the vulnerable versions of the software to review their servers.

 

 

 

Friday, August 23, 2013

Exclusive: UK’s secret Mid-East internet surveillance base is revealed in Edward Snowden leaks

Data-gathering operation is part of a £1bn web project still being assembled by GCHQ

Duncan Campbell, Oliver Wright, James Cusick, Kim Sengupta

Friday 23 August 2013

 

The surveillance station in the Middle East intercepts and processes vast quantities of emails, telephone calls and web traffic

 

Britain runs a secret internet-monitoring station in the Middle East to intercept and process vast quantities of emails, telephone calls and web traffic on behalf of Western intelligence agencies, The Independent has learnt.

The station is able to tap into and extract data from the underwater fibre-optic cables passing through the region.

The information is then processed for intelligence and passed to GCHQ in Cheltenham and shared with the National Security Agency (NSA) in the United States. The Government claims the station is a key element in the West’s “war on terror” and provides a vital “early warning” system for potential attacks around the world.

The Independent is not revealing the precise location of the station but information on its activities was contained in the leaked documents obtained from the NSA by Edward Snowden. The Guardian newspaper’s reporting on these documents in recent months has sparked a dispute with the Government, with GCHQ security experts overseeing the destruction of hard drives containing the data.

The Middle East installation is regarded as particularly valuable by the British and Americans because it can access submarine cables passing through the region. All of the messages and data passed back and forth on the cables is copied into giant computer storage “buffers” and then sifted for data of special interest.

Information about the project was contained in 50,000 GCHQ documents that Mr Snowden downloaded during 2012. Many of them came from an internal Wikipedia-style information site called GC-Wiki. Unlike the public Wikipedia, GCHQ’s wiki was generally classified Top Secret or above.

The disclosure comes as the Metropolitan Police announced it was launching a terrorism investigation into material found on the computer of David Miranda, the Brazilian partner of The Guardian journalist Glenn Greenwald – who is at the centre of the Snowden controversy.

Edward Snowden (AFP/Getty)Edward Snowden (AFP/Getty)

Scotland Yard said material examined so far from the computer of Mr Miranda was “highly sensitive”, the disclosure of which “could put lives at risk”.

The Independent understands that The Guardian agreed to the Government’s request not to publish any material contained in the Snowden documents that could damage national security.

As well as destroying a computer containing one copy of the Snowden files, the paper’s editor, Alan Rusbridger, agreed to restrict the newspaper’s reporting of the documents.

The Government also demanded that the paper not publish details of how UK telecoms firms, including BT and Vodafone, were secretly collaborating with GCHQ to intercept the vast majority of all internet traffic entering the country. The paper had details of the highly controversial and secret programme for over a month. But it only published information on the scheme – which involved paying the companies to tap into fibre-optic cables entering Britain – after the allegations appeared in the German newspaper Süddeutsche Zeitung. A Guardian spokeswoman refused to comment on any deal with the Government.

A senior Whitehall source said: “We agreed with The Guardian that our discussions with them would remain confidential”.

But there are fears in Government that Mr Greenwald – who still has access to the files – could attempt to release damaging information.

He said after the arrest of Mr Miranda: “I will be far more aggressive in my reporting from now. I am going to publish many more documents. I have many more documents on England’s spy system. I think they will be sorry for what they did.”

David Miranda, left, with Glenn Greenwald (AP)David Miranda, left, with Glenn Greenwald (AP)

One of the areas of concern in Whitehall is that details of the Middle East spying base which could identify its location could enter the public domain.

The data-gathering operation is part of a £1bn internet project still being assembled by GCHQ. It is part of the surveillance and monitoring system, code-named “Tempora”, whose wider aim is the global interception of digital communications, such as emails and text messages.

Across three sites, communications – including telephone calls – are tracked both by satellite dishes and by tapping into underwater fibre-optic cables.

Access to Middle East traffic has become critical to both US and UK intelligence agencies post-9/11. The Maryland headquarters of the NSA and the Defence Department in Washington have pushed for greater co-operation and technology sharing between US and UK intelligence agencies.

The Middle East station was set up under a warrant signed by the then Foreign Secretary David Miliband, authorising GCHQ to monitor and store for analysis data passing through the network of fibre-optic cables that link up the internet around the world

The certificate authorised GCHQ to collect information about the “political intentions of foreign powers”, terrorism, proliferation, mercenaries and private military companies, and serious financial fraud.

However, the certificates are reissued every six months and can be changed by ministers at will. GCHQ officials are then free to target anyone who is overseas or communicating from overseas without further checks or controls if they think they fall within the terms of a current certificate.

The precise budget for this expensive covert technology is regarded as sensitive by the Ministry of Defence and the Foreign Office.

However, the scale of Middle East operation, and GCHQ’s increasing use of sub-sea technology to intercept communications along high-capacity cables, suggest a substantial investment.

Intelligence sources have denied the aim is a blanket gathering of all communications, insisting the operation is targeted at security, terror and organised crime.

Monday, December 17, 2012

Computers that will see, hear, smell: Next, world domination?

 

By Deborah Netburn

December 17, 2012, 3:15 p.m.

IBM's 5 in 5 -- a list of five innovations that could change the world in five years -- focuses on how computers are developing the ability to taste, touch, hear, see and listen just like humans do, except way better.

It is kind of exciting and kind of terrifying, but mostly just really cool.

For example, Hendrik Hamann, a research manager of physical systems for IBM, describes a smartphone that could use a computerized nose to "smell" if we are sick. Forget the thermometer and the doctor's visit -- we will simply breathe into our cellphones to find out if we have the flu.

Robyn Schwartz describes how smartphones of the future might use vibrations to allow us to virtually "touch" a piece of material and feel its texture. This technology is already available for some video games, but she imagines a world in which online shoppers don't just see and read about an item of clothing, they can stroke it as well.

Dimitri Kanevsky, a research scientists at IBM, explains that sound sensors may be able to "hear" an earthquake coming, long before a human would sense it. And John Smith explains that a computer that knows how to make sense of what it can "see" would be able to diagnose a cancerous growth on your skin. 

Finally, Lav Varshney describes a computer program that can learn what pleases your taste buds on a molecular level, and can then design healthy recipes that taste delicious to you, based on that information. 

So far, so cool, right? But what made me feel a little scared was this paragraph in an essay by IBM's chief innovation officer, Bernard Meyerson, about this year's 5 in 5.

He writes:

"In the coming years, computers will become even more adept at dealing with complexity. Rather than depending on humans to write software programs that tell them what to do, they will program themselves so they can adapt to changing realities and expectations. They’ll learn by interacting with data in all of its forms -- numbers, text, video, etc. And, increasingly, they’ll be designed so they think more like the humans."

Later in the essay he explains that IBM is not interested in replacing human thinking with machine thinking. He actually says it twice. Instead he imagines a future where humans and machines work together to make the world a better place. 

I hope that prediction, at least, is correct.

Friday, November 16, 2012

Anonymous attacks Israeli websites in response to Gaza attacks

 

Anonymous says it has launched attacks on Israeli websites in response to attacks and threats by the IDF to cut Gaza's telecom links. Reports say the attacks brought down some Israeli sites temporarily, and defaced others with pro-Palestinian messages.

According to The Huffington Post, early on Thursday morning, Anonymous said it had launched "OpIsrael" campaign. The group explained that by issuing threats to cut Gaza telecommunications links, Israel had "crossed a line in the sand." The hacktivist group, said: "We are ANONYMOUS and NO ONE shuts down the Internet on our watch."

A statement by the group, said: "To the people of Gaza and the 'Occupied Territories,' know that Anonymous stands with you in this fight. We will do everything in our power to hinder the evil forces of the IDF arrayed against you. We will use all our resources to make certain you stay connected to the Internet and remain able to transmit your experiences to the world."

Anonymous later posted a message saying it had taken down Israeli's "top security and surveillance website," a claim Forbes described as "hyperbolic."

According to Forbes, the statement included a photo of what the group claimed were burning buildings in Gaza with a message that said: "We Anonymous will not sit back and watch a cowardly Zionist State demolish innocent people’s lives.”

Forbes reports that another message attributed to Pakistani Anonymous hackers, said, “The people of Pakistan are always supporting the brave people of Gaza, we love you!”

The Huffington Post reports Anonymous made a call to its followers on Twitter to bring down websites that belong to the Israeli government and its military.

Wednesday, November 14, 2012

HP unveils PowerCARD payment management software

06 November 2012  |   Source: HP

image        http://ellipticalmedia.com/images/AllianceONE_partner_black_000.png

HP today announced that banks, retailers and telecom operators can now boost the cost-effectiveness of their card operations with PowerCARD payment management software.

With this agreement, HP now offers customers a card payment solution across Europe, Middle East and Africa. This solution complements HP's existing card services utilities which are already available to clients in the Americas and in the Asia-Pacific regions.

HPS, an HP AllianceONE partner, is a leading payment software company who currently provides state-of-the-art card, ATM and POS management systems for over 320 financial institutions in 70 countries. As part of the HP AllianceONE program, HP and HPS will jointly offer outsourced payments solutions based on PowerCARD software in the Europe, Middle East and African (EMEA) region. HP offers a broad solution set for both in-house processing and outsourced services and works with clients globally to define the appropriate strategic fit for their cards and payments business.

"Organisations now have the opportunity to improve their card solutions by replacing legacy hardware and software with something much more flexible and cost-effective," says Ed Adshead-Grant, EMEA card and payments practice head, HP. "HP is viewed by many as the OEM of the payment industry, and our tests confirm PowerCARD as a robust, scalable complement to HP's own Payments Solutions for the EMEA region. Organisations of all sizes can now boost the cost-effectiveness and competitive positioning of their card issuing, switching and acquiring solutions."

In a series of rigorous tests conducted over five weeks on the latest HP Superdome2 servers, the HP European Performance Centre scaled PowerCARD payment software up to 100 million accounts with processing cycles of 3,000 transactions per second for up to 5,000 concurrent users. Performing online data and batch processing with economical HP-UX server infrastructures ensures that resource is readily available, and enables changes to products and services to be delivered in a fraction of the time taken by a mainframe solution.

"The HP tests clearly demonstrate that the reliability, availability and scalability required for 24x7 card processing services can be achieved by running PowerCARD software on HP-UX servers," says Abdeslam Alaoui, Managing Director, HPS. "The collaboration between HPS and HP in this project has been excellent. As an AllianceOne Partner, HPS will continue working with HP to deliver modernisation programs in electronic payment for any financial institution that is looking to win market share or escape the technology legacy trap."

HP AllianceONE is a comprehensive partner program for technology companies focused on HP's Converged Infrastructure strategy of providing a shared services model to deliver secure, best-in-class applications. 

Monday, October 22, 2012

Qatar's Qtel eyeing stake in Maroc Telecom-paper

 

PARIS Oct 22 (Reuters) - Qatar Telecom, the telecoms group controlled by Qatar, has expressed interest in Vivendi's controlling stake in Maroc Telecom, Morocco's largest telecoms operator, as part of the French media group's strategic review, the Financial Times reported on Monday.

QTel is preparing itself to make a bid for a 53 percent stake in Maroc Telecom but it faces competition from Etisalat, the United Arab Emirates-based telecoms company, the paper said, citing two sources close to the matter.

Earlier this month, Vivendi asked Credit Agricole and Lazard to gauge appetite the 53 percent stake in Maroc Telecom without giving them a formal mandate for the sale, sources familiar with the matter had told Reuters.

Vivendi declined to comment.

Clubic.com - Articles / Tests / Dossiers