Looks Like a Russian Cybergang Hacked Into One of the World’s Largest Payment Systems

According to a report by security blogger Brian Krebs, Oracle’s popular MICROS point-of-sale terminals support website was commandeered by a Russian cybergang. This is bad since MICROS is in the top three most popular payment systems in the world. Read more…

See more here:
Looks Like a Russian Cybergang Hacked Into One of the World’s Largest Payment Systems

FCC hopes to speed up 5G rollouts by cutting red tape

The FCC really, really wants to get the ball rolling on 5G mobile networks, and it’s willing to make an end run around some of the usual bureaucracy to make that happen. The Commission’s Wireless Telecommunications Bureau has struck a deal that will skip historic preservation reviews for small 5G cell sites across the US. So long as the sites aren’t going to “adversely impact” historic locations, they’ll get up and running that much faster. The FCC will also “welcome input” on how to improve things further. This doesn’t guarantee that you’ll be using a 5G smartphone any time soon. The telecom industry has yet to even settle on a 5G standard, let alone build the equipment you’ll need to get online. The FCC also isn’t giving carte blanche to carriers, as it still wants “responsible” deployments. However, this raises hopes that the next wave of high-speed cellular data won’t take quite so long to arrive as LTE did — you could see meaningful coverage relatively quickly. Source: FCC

Read more here:
FCC hopes to speed up 5G rollouts by cutting red tape

Researchers crack open unusually advanced malware that hid for 5 years

The name “Project Sauron” came from code contained in one of the malware’s configuration files. (credit: Kaspersky Lab) Security experts have discovered a malware platform that’s so advanced in its design and execution that it could probably have been developed only with the active support of a nation state. The malware—known alternatively as “ProjectSauron” by researchers from Kaspersky Lab and “Remsec” by their counterparts from Symantec—has been active since at least 2011 and has been discovered on 30 or so targets. Its ability to operate undetected for five years is a testament to its creators, who clearly studied other state-sponsored hacking groups in an attempt to replicate their advances and avoid their mistakes. State-sponsored groups have been responsible for malware like the Stuxnet- or National Security Agency-linked Flame , Duqu , and Regin . Much of ProjectSauron resides solely in computer memory and was written in the form of Binary Large Objects, making it hard to detect using antivirus. Because of the way the software was written, clues left behind by ProjectSauron in so-called software artifacts are unique to each of its targets. That means that clues collected from one infection don’t help researchers uncover new infections. Unlike many malware operations that reuse servers, domain names, or IP addresses for command and control channels, the people behind ProjectSauron chose a different one for almost every target. Read 8 remaining paragraphs | Comments

See the original post:
Researchers crack open unusually advanced malware that hid for 5 years

Hulu is ending the free version of its streaming service

Hulu is eliminating the ad-supported free streaming service it has offered over nearly a decade. The platform is opting instead to team up with Yahoo with a special distribution deal that’s spawning Yahoo View , a new TV streaming service with a small selection of what Hulu previously offered free viewers. Yahoo View will feature the five most recent episodes of shows selected from ABC, NBC and Fox eight days after their original air date. Additional series and a sampling of clips, anime and Korean drama will be made available as well. Yahoo View is available to pore over now if you’re interested in giving it a go over subscribing to Hulu. Going forward the streaming service will continue to offer the same two subscription plans: $7.99 a month with commercials and $11.99 a month without ad-supported viewing. Yahoo is currently being acquired by Verizon as part of a $4.8 billion deal, which isn’t expected to close until the end of 2016 or the first quarter of 2017. The partnership with Hulu should no doubt draw some support for Yahoo, especially since Hulu’s former free content enthusiasts will need to seek a new home for their streaming fix. Via: Variety

Read the original post:
Hulu is ending the free version of its streaming service

Hackers Make the First-Ever Ransomware For Smart Thermostats

Lorenzo Franceschi-Bicchierai, writing for Motherboard: One day, your thermostat will get hacked by some cybercriminal hundreds of miles away who will lock it with malware and demand a ransom to get it back to normal, leaving you literally in the cold until you pay up a few hundred dollars. This has been a scenario that security experts have touted as one of the theoretical dangers of the rise of the Internet of Things, internet-connected devices that are often insecure. On Saturday, what sounds like a Mr. Robot plot line came one step closer to being reality, when two white hat hackers showed off the first-ever ransomware that works against a “smart” device, in this case, a thermostat. Luckily, Andrew Tierney and Ken Munro, the two security researchers who created the ransomware, actually have no ill intention. They just wanted to make a point: some Internet of Things devices fail to take simple security precautions, leaving users in danger. “We don’t have any control over our devices, and don’t really know what they’re doing and how they’re doing it, ” Tierney told Motherboard. “And if they start doing something you don’t understand, you don’t really have a way of dealing with it.” Tierney and Munro, who both work UK-based security firm Pen Test Partners, demonstrated their thermostat ransomware proof-of-concept at the hacking conference Def Con on Saturday, fulfilling the pessimistic predictions of some people in security world. Read more of this story at Slashdot.

Original post:
Hackers Make the First-Ever Ransomware For Smart Thermostats

AT&T ordered to pay $7.75 million for bogus directory assistance tools

US telecom providers have a pretty bad rap, and today we’re finding out that some AT&T customers ended up paying money they shouldn’t have thanks to some scammers. The FCC just released a statement noting that it reached a settlement with AT&T in which the carrier will pay $7.75 million after it accidentally allowed scammers to charge $9 a month to unsuspecting wireline customers for a “sham” directory assistance service. Adding insult to injury, it seems this service was set up as a tool to help launder money; the scam was originally uncovered by the DEA. AT&T said in a statement that “two companies that engaged in a sophisticated fraud scheme were apparently able to circumvent those protections and submit unauthorized third-party charges that were billed by AT&T.” According to the FCC, AT&T received a fee each time this fraudulent service appeared on a customer’s bill, but the so-called service provider never actually provided anything to these customers, most of which were small businesses. Out of the $7.75 million AT&T is paying up, $6.8 million will go towards refunds and a paltry $950, 000 will go to the US treasury as a fine. Given that AT&T pulled in $40.5 billion in revenue in its most recent quarter, it’s a stretch to call that fine even a slap on the wrist. This is hardly the first time US telecom providers have gotten in trouble for such shady practices — in 2014, AT&T itself paid a much larger $105 million settlement for cramming false charges onto its customers’ bills. T-Mobile also paid $90 million in a 2014 settlement , while Verizon and Sprint paid $90 million and $68 million, respectively, last winter. We’re hoping the FCC continues to pay close attention to these shady practices. AT&T’s full statement is below: “Consistent with industry practices, AT&T wireline telephone customers have been able to purchase certain telecommunications services from third parties and have charges for those services billed on their telephone bill. We have implemented strict requirements on third parties submitting charges for AT&T bills to ensure that all charges are authorized by our customers; indeed, those requirements go beyond the requirements of FCC rules and impose safeguards that the FCC proposed but never adopted. Nonetheless, unbeknownst to us, two companies that engaged in a sophisticated fraud scheme were apparently able to circumvent those protections and submit unauthorized third-party charges that were billed by AT&T.” “Today, we reached a settlement with the FCC to resolve all claims associated with these companies and the related charges. Pursuant to the settlement, we will provide refunds for all charges on behalf of these two companies going back to January 1, 2012. Affected former and current AT&T wireline telephone customers will receive these refunds via check within 90 days. We stopped billing for these entities as of June 2015 and will also cease wireline third-party billing for other third parties, with limited exceptions.” Source: FCC

Visit site:
AT&T ordered to pay $7.75 million for bogus directory assistance tools

Electronic temporary tattoo measures how drunk you are

University of California San Diego nanoengineers developed a flexible, wearable sensor that measures the blood alcohol level of its wearer and transmits the info to a mobile device. From UCSD News : The device consists of a temporary tattoo—which sticks to the skin, induces sweat and electrochemically detects the alcohol level—and a portable flexible electronic circuit board, which is connected to the tattoo by a magnet and can communicate the information to a mobile device via Bluetooth. The device could be integrated with a car’s alcohol ignition interlocks, or friends could use it to check up on each other before handing over the car keys, he added. “When you’re out at a party or at a bar, this sensor could send alerts to your phone to let you know how much you’ve been drinking,” said Jayoung Kim, a materials science and engineering PhD student. ” Noninvasive Alcohol Monitoring Using a Wearable Tattoo-Based Iontophoretic-Biosensing System ” (ACS Sensors)

Link:
Electronic temporary tattoo measures how drunk you are

Proof-of-concept ransomware for smart thermostats demoed at Defcon

Last week, Andrew Tierney and Ken Munro from Pen Test Partners demoed their proof-of-concept ransomware for smart thermostats, which relies on users being tricked into downloading malware that then roots the device and locks the user out while displaying a demand for one bitcoin. (more…)

Read the article:
Proof-of-concept ransomware for smart thermostats demoed at Defcon

You Can Boot a Raspberry Pi 3 From a Hard Drive or Over Ethernet

The big news about the Raspberry Pi 3 was built-in Bluetooth and Wi-Fi , but it turns out there was another set of new tricks: new boot options. This feature’s still in beta, but over at the Raspberry Pi Foundation, they outline how to boot from a mass storage device or over ethernet. Read more…

More here:
You Can Boot a Raspberry Pi 3 From a Hard Drive or Over Ethernet

Vast collection of Amiga games, demos and software uploaded to Internet Archive

The world’s first psychedelic computer enters the universal library. And it all runs in the browser, meaning you’ll never have to hunt for Workbench disk images again.

Visit link:
Vast collection of Amiga games, demos and software uploaded to Internet Archive