Nintendo’s Fire Emblem Heroes will launch on Android before iOS

iOS users will have to wait longer for Nintendo’s next major smartphone game release. Nintendo’s push towards smartphone gaming will continue on February 2 with the launch of Fire Emblem Heroes , a touch-only take on the company’s longtime tactical RPG series—and possibly the company’s most micro-transaction driven game yet. Like Super Mario Run before it, Fire Emblem Heroes will have a period of platform exclusivity—but in a surprise twist, that exclusivity is reversed. Android users will get first crack at Heroes on that release date, while iOS users have been told their version is coming “soon.” (For an estimate of how long the left-behind platform might have to wait, remember:  Super Mario Run has yet to launch on Android over a month after its iOS release.) During this announcement, Nintendo did not mention  Animal Crossing , the other series set to receive a smartphone port in the near future. Read 5 remaining paragraphs | Comments

More:
Nintendo’s Fire Emblem Heroes will launch on Android before iOS

Malwarebytes Discovers ‘First Mac Malware of 2017’

wiredmikey writes: Security researchers have a uncovered a Mac OS based espionage malware they have named “Quimitchin.” The malware is what they consider to be “the first Mac malware of 2017, ” which appears to be a classic espionage tool. While it has some old code and appears to have existed undetected for some time, it works. It was discovered when an IT admin noticed unusual traffic coming from a particular Mac, and has been seen infecting Macs at biomedical facilities. From SecurityWeek.com: “Quimitchin comprises just two files: a .plist file that simply keeps the .client running at all times, and the .client file containing the payload. The latter is a ‘minified and obfuscated’ perl script that is more novel in design. It combines three components, Thomas Reed, director of Mac offerings at Malwarebytes and author of the blog post told SecurityWeek: ‘a Mac binary, another perl script and a Java class tacked on at the end in the __DATA__ section of the main perl script. The script extracts these, writes them to /tmp/ and executes them.’ Its primary purpose seems to be screen captures and webcam access, making it a classic espionage tool. Somewhat surprisingly the code uses antique system calls. ‘These are some truly ancient functions, as far as the tech world is concerned, dating back to pre-OS X days, ‘ he wrote in the blog post. ‘In addition, the binary also includes the open source libjpeg code, which was last updated in 1998.’ The script also contains Linux shell commands. Running the malware on a Linux machine, Malwarebytes ‘found that — with the exception of the Mach-O binary — everything ran just fine.’ It is possible that there is a specific Linux variant of the malware in existence — but the researchers have not been able to find one. It did find two Windows executable files, courtesy of VirusTotal, that communicated with the same CC server. One of them even used the same libjpeg library, which hasn’t been updated since 1998, as that used by Quimitchin.” Read more of this story at Slashdot.

Original post:
Malwarebytes Discovers ‘First Mac Malware of 2017’

Take a Free Digital Photography Class From Harvard

Photography isn’t as easy as many people assume, but you can learn the basics on your own . And if you need some structured lessons, this 12-module course from Harvard will teach you everything from exposure settings to reading histograms. Read more…

More here:
Take a Free Digital Photography Class From Harvard

Map shows Middle East based on who actually holds territory

From Geopolitical Futures via Joshua Landis . Seems rough on details. If Islamic State gets wee satellites down in Yemen, you’d think the Sinai Insurgents would at least get some diagonal shading! (more…)

Continue reading here:
Map shows Middle East based on who actually holds territory

It’s shockingly easy to hijack a Samsung SmartCam camera

Enlarge Smart cameras marketed under the Samsung brand name are vulnerable to attacks that allow hackers to gain full control, a status that allows the viewing of what are supposed to be private video feeds, researchers said. The remote code-execution vulnerability has been confirmed in the Samsung SmartCam SNH-1011, but the researchers said they suspect other models in the same product line are also susceptible. The flaw allows attackers to inject commands into a Web interface built into the devices. The bug resides in PHP code responsible for updating a video monitoring system known as iWatch. It stems from the failure to properly filter malicious input included in the name of uploaded files. As a result, attackers who know the IP address of a vulnerable camera can exploit the vulnerability to inject commands that are executed with unfettered root privileges. “The iWatch Install.php vulnerability can be exploited by crafting a special filename which is then stored within a tar command passed to a php system() call,” the researchers wrote in a blog post published to the Exploitee.rs website. “Because the webserver runs as root, the filename is user supplied, and the input is used without sanitization, we are able to inject our own commands within the achieve root remote command execution.” Read 5 remaining paragraphs | Comments

Read more here:
It’s shockingly easy to hijack a Samsung SmartCam camera

Windows is getting its own built-in book store in the Creators Update

Enlarge (credit: MSPoweruser ) The Windows Store—which already includes apps, games, movies, and TV shows—is going to include books in the Creators Update. This is according to pictures obtained by MSPoweruser . Based on images from an internal Windows 10 Mobile build, books will have their own dedicated section within the Store. The whole process will work much the same way as it does for any other purchase. It appears that Microsoft is not building a dedicated reading application for these purchases. Instead, the Edge browser in the Creators Update has been updated to include support for EPUB books, affording some customization of their appearance in the browser’s reading mode. This isn’t Microsoft’s first foray into the electronic book world. Long, long ago it had an app called Reader, which supported a proprietary HTML-based format. Reader was developed for Pocket PC and Windows Mobile, and notably, it was in Reader that Microsoft first used ClearType sub-pixel anti-aliasing. A Reader app was also available for desktop Windows, though not Windows Phone. The company even had its own online catalog of e-books using its proprietary format, which linked to third-party sites actually selling the books. Read 2 remaining paragraphs | Comments

View article:
Windows is getting its own built-in book store in the Creators Update

Obama pardons Stuxnet leak source James Cartwright

Chelsea Manning isn’t the only source of online leaks to get a new lease on life. President Obama has pardoned General James Cartwright, who pleaded guilty to lying to the FBI when it investigated leaks that revealed details of Stuxnet , the US-backed malware that sabotaged Iran’s nuclear program . He had denied slipping out classified details to two New York Times reporters (including book author David Sanger) in a 2012 interview with the Bureau, only to be caught out later on. He had been facing up to 5 years in prison and was due to be sentenced the same day as the pardon. At the moment, it’s not certain why Cartwright is receiving the pardon. He was the Vice Chairman of the Joint Chiefs of Staff from his nomination in 2007 through to his retirement from Marine Corps service in 2011, but he wasn’t Obama’s golden boy. Cartwright was denied the top Chairman spot in 2011 in part because of questions surrounding his staff management practices, including an alleged (though never punished) “unduly familiar relationship” with a female Captain. One theory is that the outgoing White House administration wants to put a lid on discussion of Stuxnet. The Washington Post claimed that the investigation into Cartwright ran aground when officials realized they might have to confirm details of the malware in order to secure a conviction. That would have been particularly problematic at the time, when the US was negotiating the eventual Iranian nuclear shutdown agreement — did it really want to admit to a cyberattack at such a critical moment? We wouldn’t rule out any motivations at this point, but the guilty plea and pardon might spare the government from disclosing secrets. Via: Charlie Savage (Twitter) Source: White House

More:
Obama pardons Stuxnet leak source James Cartwright

Check Out the Evolution of the US Dollar Bill

The US one dollar bill is still old school. In fact, it has the oldest design of all US currency being produced today. So that means it doesn’t have the flashy tech, or the colorful hues, or the wild looks that have leaked into the redesigns of the more valuable banknotes. But that doesn’t mean it hasn’t changed. Just… Read more…

Read the original:
Check Out the Evolution of the US Dollar Bill

For-Profit College Says Former Admin Demanded $200,000 to Reset School Password

According to a lawsuit by the online American College of Education (ACE), a former employee effectively held the company’s email system hostage after he was fired last spring, locking the for-profit college out and asking for $200, 000 before he would help it get back in. Read more…

Read more here:
For-Profit College Says Former Admin Demanded $200,000 to Reset School Password

The US Army successfully flies its hoverbike prototype

The Army has proven that the hoverbike its contractors are developing actually works during a flight demo with the Department of Defense. Dr. William Roper, director of the Strategic Capabilities Office for the Secretary of Defense, watched the large rectangular prototype quadcopter take off at the Aberdeen Proving Ground in Maryland on January 10th. The hoverbike began as a Kickstarter project by creator Malloy Aeronautics. Once Malloy secured a contract with the military, it teamed up with defense company Survice Engineering Co. to continue the bike’s development. It has since become a joint project between the Army and the US Marine Corps. Officially known as Joint Tactical Aerial Resupply Vehicle, or JTARV, the hoverbike could someday be used to carry supplies to soldiers on the field. Tim Vong, associate chief of the Army Research Lab’s Protection Division, said it’s like having “Amazon on the battlefield, ” since it’ll allow the military to deliver resupplies in less than 30 minutes. It’ll take some time before the military deploys JTARV, though. To start with, its developers are looking to make a hybrid propulsion system to give it a longer range (up to 125 miles) than it has today as an electric-powered prototype. Further, they want to increase the payload it can carry to 800 pounds, as well as to load it with an advanced navigation system and mission planning. Vong says they’re looking to “end up with a modular, stable platform that can be used for even more dynamic and challenging missions.” Source: US Army

Continue reading here:
The US Army successfully flies its hoverbike prototype