A Hacker Just Pwned Over 150,000 Printers Exposed Online

Last year an attacker forced thousands of unsecured printers to spew racist and anti-semitic messages. But this year’s attack is even bigger. An anonymous reader writes: A grey-hat hacker going by the name of Stackoverflowin has pwned over 150, 000 printers that have been left accessible online. For the past 24 hours, Stackoverflowin has been running an automated script that searches for open printer ports and sends a rogue print job to the target’s device. The script targets IPP (Internet Printing Protocol) ports, LPD (Line Printer Daemon) ports, and port 9100 left open to external connections. From high-end multi-functional printers at corporate headquarters to lowly receipt printers in small town restaurants, all have been affected. The list includes brands such as Afico, Brother, Canon, Epson, HP, Lexmark, Konica Minolta, Oki, and Samsung. The printed out message included recommendations for printer owners to secure their device. The hacker said that people who reached out were very nice and thanked him. The printers apparently spew out an ASCII drawing of a robot, along with the words “stackoverflowin the hacker god has returned. your printer is part of a flaming botnet… For the love of God, please close this port.” The messages sometimes also include a link to a Twitter feed named LMAOstack. Read more of this story at Slashdot.

Taken from:
A Hacker Just Pwned Over 150,000 Printers Exposed Online

Cisco Patches ‘Prime Home’ Flaw That Allowed Hackers To Reach Into People’s Homes

Orome1 quotes a report from Help Net Security: Cisco has patched a critical authentication bypass vulnerability that could allow attackers to completely take over Cisco Prime Home installations, and through them mess with subscribers’ home network and devices. The vulnerability (CVE-2017-3791), found internally by Cisco security testers, affects the platform’s web-based GUI, and can be exploited by remote attackers to bypass authentication and execute any action in Cisco Prime Home with administrator privileges. No user interaction is needed for the exploit to work, and exploitation couldn’t be simpler: an attacker just needs to send API commands via HTTP to a particular URL. The bug exists in versions 6.4 and later of Cisco Prime Home, but does not affect versions 5.2 and earlier. “Administrators can verify whether they are running an affected version by opening the Prime Home URL in their browser and checking the Version: line in the login window. If currently logged in, the version information can be viewed in the bottom left of the Prime Home GUI footer, next to the Cisco Prime Home text, ” Cisco instructed in the security advisory. Read more of this story at Slashdot.

Originally posted here:
Cisco Patches ‘Prime Home’ Flaw That Allowed Hackers To Reach Into People’s Homes

Ransomware Completely Shuts Down Ohio Town Government

An anonymous reader quotes a report from TechCrunch: In another interesting example of what happens when you don’t manage your backups correctly, the Licking County government offices, including the police force, have been shut down by ransomware. Although details are sparse, it’s clear that someone in the office caught a bug in a phishing scam or by downloading it and now their servers are locked up. Wrote Kent Mallett of the Newark Advocate: “The virus, accompanied by a financial demand, is labeled ransomware, which has hit several local governments in Ohio and was the subject of a warning from the state auditor last summer. All county offices remain open, but online access and landline telephones are not available for those on the county system. The shutdown is expected to continue at least the rest of the week.” The county government offices, including 911 dispatch, currently must work without computers or office phones. “The public can still call 911 for emergency police, fire or medical response, ” wrote Mallett. Read more of this story at Slashdot.

Visit site:
Ransomware Completely Shuts Down Ohio Town Government

LibreOffice 5.3 Released, Touted As ‘One of the Most Feature-Rich Releases’ Ever

An anonymous reader shares a report: A new month, and a brand new version of open-source office suite LibreOffice is now available to download. And what a release it is. LibreOffice 5.3 introduces a number of key new features and continues work on improving the look and feel of the app across all major platforms. The Document Foundation describes LibreOffice 5.3 as “one of the most feature-rich releases in the history of the application.” One of the headline features is called MUFFIN interface, a new toolbar design similar to the Microsoft Office Ribbon UI. Read more of this story at Slashdot.

Read More:
LibreOffice 5.3 Released, Touted As ‘One of the Most Feature-Rich Releases’ Ever

The Future of iOS is 64-Bit Only — Apple To Stop Support For 32-Bit Apps

Your ability to run 32-bit apps on an iOS device is coming to an end. As several other Apple news sites have reported, Apple has updated the pop-up warning in the iOS 10.3 beta to say that the 32-bit app you’re running “will not work with future versions of iOS.” The warning goes on to say that the “developer of this app needs to update it to improve its compatibility.” From a ComputerWorld article (edited for clarity): In October 2014, Apple told developers that all new apps created after February 1, 2015 must have 64-bit support. Shortly after, Apple announced that all updates to apps must also be 64-bit compatible. Any 32-bit apps submitted to Apple after June 2015 would be rejected. Last September, Apple announced that it was going to remove apps from the App Store that did not “function as intended, don’t follow current review guidelines, or are outdated.” Presumably, this would include apps that did not meet the 64-bit requirement. Apple does not state which version of iOS will be 64-bit only, but since this is a major development, you can probably assume that this will happen in iOS 11. An announcement will likely be made during Apple’s Worldwide Developer Conference this summer. The switch to 64-bit only support means that older iOS devices built on 32-bit architecture will not be able to upgrade to the new iOS. This includes the iPhone 5, 5c, and older, the standard version of the iPad (so not the Air or the Pro), and the first iPad mini. Read more of this story at Slashdot.

See more here:
The Future of iOS is 64-Bit Only — Apple To Stop Support For 32-Bit Apps

Touch Bar MacBook Pros Are Being Banned From Bar Exams Over Predictive Text

An anonymous reader quotes a report from TechCrunch: When it launched late last year, the new MacBook Pro’s Touch Bar was largely reliant on first-party applications to show off what it could do. Since then, a number of other companies have jumped on board, helping the secondary screen grow into something more than novelty. Of course, as with any new technology, there’s going to be some unanticipated downside. Test taking software company Examsoft, for one, believes the input device could help facilitate cheating among students taking the bar exam. What’s perhaps most interesting here, is that the company’s calling out one of Touch Bar’s more mundane features: predictive text. “By default, ” the company writes, “the Touch Bar will show predictive text depending on what the student is typing, compromising exam integrity.” It’s hard to say precisely how the company expects a standard feature on mobile devices to help students pass one of the more notoriously exam out there, but The Next Web notes that some states have already taken action. North Carolina, for one, has required test takers with the new model MacBooks to disable the Touch Bar, while New York is banning the machines altogether. Read more of this story at Slashdot.

Taken from:
Touch Bar MacBook Pros Are Being Banned From Bar Exams Over Predictive Text

Woman Built House From the Ground Up Using Nothing But YouTube Tutorials

schwit1 quotes a report from Digital Trends: In this generation of self-starters and self-made women and men, do-it-yourself isn’t just an option, it’s a way of life. And if there’s not an app for that, chances are there’s a YouTube video for it. That was certainly the case for a woman named Cara Brookins, who is living proof that if you’re willing to learn, you absolutely can. In 2008, Brookins was in the midst of a family struggle, having left a husband she called “violent and abusive.” Looking to make a fresh start for herself, she took the idea of rebuilding quite literally, perhaps using the physical experience of constructing a house as an extension of her emotional and mental journey. Though she had no previous experience in construction or architecture, Brookins found a series of YouTube tutorials on building a home and got to work. Over the course of nine months, Brookins worked tirelessly with the help of her four children to build a new home for themselves. “I had rented this cabin for a Thanksgiving getaway, ” the mother of four told CBS News. “And driving there, we passed this house that had been ravaged by a tornado. It was this beautiful dream house and it was sort of wide open. You don’t often get the opportunity to see the interior workings of a house, but looking at these 2x4s and these nails, it just looked so simple. I thought, “I could put this wall back up if I really tried. Maybe I should just start from scratch.'” Read more of this story at Slashdot.

More here:
Woman Built House From the Ground Up Using Nothing But YouTube Tutorials

LG’s UltraFine 5K Display Becomes Useless When It’s Within Two Meters of a Router

The LG UltraFine 5K Display was designed in part by Apple to work with the New MacBook Pro and as a replacement for the Thunderbolt Display, which was discontinued late last year. According to 9to5Mac, the display apparently wasn’t designed to work next to routers as it will flicker, disconnect, or freeze computers when it’s within two meters of a router due to electromagnetic interference. The Verge reports: In emails to 9to5Mac, LG acknowledged the problem — which LG says isn’t an issue for any of its other monitors — noting that routers “may affect the performance of the monitor” and that users should “have the router placed at least two meters away from the monitor” to avoid issues. Once the monitor was moved into a different room away from the router, 9to5Mac says the issues subsided. Despite the fact that it’s insane to require a router to be far away from what is likely the main computer in your home, there’s been no indication that LG is working on a fix for the issue, which may be more troublesome. Read more of this story at Slashdot.

See the original post:
LG’s UltraFine 5K Display Becomes Useless When It’s Within Two Meters of a Router

Server Runs Continuously For 24 Years

In 1993 a Stratus server was booted up by an IT application architect — and it’s still running. An anonymous reader writes: “It never shut down on its own because of a fault it couldn’t handle, ” says Phil Hogan, who’s maintained the server for 24 years. That’s what happens when you include redundant components. “Over the years, disk drives, power supplies and some other components have been replaced but Hogan estimates that close to 80% of the system is original, ” according to Computerworld. There’s no service contract — he maintains the server with third-party vendors rather than going back to the manufacturer, who says they “probably” still have the parts in stock. And while he believes the server’s proprietary operating system hasn’t been updated in 15 years, Hogan says “It’s been extremely stable.” The server will finally be retired in April, and while the manufacturer says there’s some more Stratus servers that have been running for at least 20 years — this one seems to be the oldest. Read more of this story at Slashdot.

Follow this link:
Server Runs Continuously For 24 Years

Ransomware Infects a Hotel’s Key System

An anonymous reader writes: A luxury hotel “paid “thousands” in Bitcoin ransom to cybercriminals who hacked into their electronic key system. The “furious” hotel manager says it’s the third time their electronic system has been attacked, though one local news site reports that “on the fourth attempt the hackers had no chance because the computers had been replaced and the latest security standards integrated, and some networks had been decoupled.” The 111-year-old hotel is now planning to remove all their electronic locks, and return to old-fashioned door locks with real keys. But they’re going public to warn other hotels — some of which they say have also already been hit by ransomware. UPDATE: The hotel’s managing director has clarified today that despite press reports, “We were hacked, but nobody was locked in or out” of their rooms. Read more of this story at Slashdot.

Read More:
Ransomware Infects a Hotel’s Key System