Chrome Extension with 100,000 Users Caught Pushing Cryptocurrency Miner

Catalin Cimpanu, reporting for BleepingComputer: A Chrome extension with over 105, 000 users has been deploying an in-browser cryptocurrency miner to unsuspecting users for the past few weeks. The extension does not ask for user permission before hijacking their CPUs to mine Monero all the time the Chrome browser is open. Named “Archive Poster, ” the extension is advertised as a mod for Tumblr that allows users an easier way to “reblog, queue, draft, and like posts right from another blog’s archive.” According to users reviews, around the start of December the extension has incorporated the infamous Coinhive in-browser miner in its source code. Read more of this story at Slashdot.

Taken from:
Chrome Extension with 100,000 Users Caught Pushing Cryptocurrency Miner

65% of Washington DC’s Outdoor Surveillance Cameras Infiltrated by Romanian Hackers

An anonymous reader quotes The Hill: Two Romanian hackers stand accused of hacking more than 100 outdoor police security cameras in the D.C. area during the days leading up to President Trump’s inauguration, according to a court document obtained by CNN. According to an affidavit from Secret Service agent James Graham, Mihai Alexandru Isvanca and Eveline Cismaru are accused of hacking and disabling 123 out of 187 of the city’s cameras between Jan. 12 and Jan. 15… Isvanca and Cismaru are also accused in the affidavit of spreading ransomware. In a possibly-related story, the Washington Post reports: Five Romanian hackers were arrested over the past week as part of an international investigation into computer ransomware, officials in the United States and Europe said Wednesday. In six houses across Romania, law enforcement operatives from Romania, Britain, the United States and the Netherlands seized hard drives, laptops, external storage devices and documents related to malicious software called CTB-Locker or Critroini. Read more of this story at Slashdot.

Read More:
65% of Washington DC’s Outdoor Surveillance Cameras Infiltrated by Romanian Hackers

AnyDVD Supports UHD Blu-Ray Ripping, While Devices Patch Security Holes

The controversial ripping tool AnyDVD has released a new beta version that allows users to decrypt and copy UHD Blu-Ray discs. The software makes use of the leaked keys that came out recently and appears to work well. Meanwhile, disc drive manufacturers are patching security holes. TorrentFreak reports: This year there have been some major developments on this front. First, full copies of UHD discs started to leak online, later followed by dozens of AACS 2.0 keys. Technically speaking AACS 2.0 is not confirmed to be defeated yet, but many discs can now be ripped. This week a popular name jumped onto the UHD Blu-Ray bandwagon. In its latest beta release, AnyDVD now supports the format, relying on the leaked keys. “New (UHD Blu-ray): Fetch AACS keys from external file for use with ‘UHD-friendly’ drives, ” the release notes read. The involvement of AnyDVD is significant because it previously came under legal pressure from decryption licensing outfit AACS LA. This caused former parent company Slysoft to shut down last year, but the software later reappeared under new management. Based on reports from several AnyDVD users, the UHD ripping works well for most people. Some even claim that it’s faster than the free alternative, MakeMKV. Read more of this story at Slashdot.

Continue reading here:
AnyDVD Supports UHD Blu-Ray Ripping, While Devices Patch Security Holes

Ubuntu 17.10 Temporarily Pulled Due To A BIOS Corrupting Problem

An anonymous reader writes: Canonical has temporarily pulled the download links for Ubuntu 17.10 “Artful Aardvark” from the Ubuntu website due to ongoing reports of some laptops finding their BIOS corrupted after installing this latest Ubuntu release. The issue is appearing most frequently with Lenovo laptops but there are also reports of issues with other laptop vendors as well. This issue appears to stem from the Intel SPI driver in the 17.10’s Linux 4.13 kernel corrupting the BIOS for a select number of laptop motherboards. Canonical is aware of this issue and is planning to disable the Intel SPI drivers in their kernel builds. Canonical’s hardware enablement team has already verified this works around the problem, but doesn’t provide any benefit if your BIOS is already corrupted. Read more of this story at Slashdot.

Read more here:
Ubuntu 17.10 Temporarily Pulled Due To A BIOS Corrupting Problem

Plexamp, Plex’s Spin on the Classic Winamp Player, Is the First Project From New Incubator Plex Labs

Media software maker Plex today announced a new incubator and community resource called Plex Labs. “The idea here is to help the company’s internal passion projects gain exposure, along with those from Plex community members, ” reports TechCrunch. “Plex Labs is also unveiling its first product: a music player called Plexamp, ” which is designed to replace the long-lost Winamp. From the report: The player was built by several Plex employees in their free time, and is meant for those who use Plex for music. As the company explains in its announcement, the goal was to build a small player that sits unobtrusively on the desktop and can handle any music format. The team limited itself to a single window, making Plexamp the smaller Plex player to date, in terms of pixel size. Under the hood, Plexamp uses the open source audio player Music Player Daemon (MPD), along with a combination of ES7, Electron, React, and MobX technologies. The end result is a player that runs on either macOS or Windows and works like a native app. That is, you can use media keys for skipping tracks or playing and pausing music, and receive notifications. The player can also handle any music format, and can play music offline when the Plex server runs on your laptop. The player also supports gapless playback, soft transitions and visualizations to accompany your music. Plus, the visualizations’ palette of colors is pulled from the album art, Plex notes. Additionally, Plexamp makes use of a few up-and-coming features that will be included in Plex’s subscription, Plex Pass, in the future. These new features are powering functionality like loudness leveling (to normalize playback volume), smart transitions (to compute the optimal overlap times between tracks), soundprints (to represent tracks visually), waveform seeking (to present a graphical view of tracks), Library stations, and artist radio. Read more of this story at Slashdot.

See the original post:
Plexamp, Plex’s Spin on the Classic Winamp Player, Is the First Project From New Incubator Plex Labs

CDC Director Says No Words Are Actually Banned At the CDC

An anonymous reader quotes a report from PBS: U.S. Centers for Disease Control and Prevention director Dr. Brenda Fitzgerald on Sunday addressed a report that President Donald Trump’s administration had banned the CDC from using seven words or phrases in next year’s budget documents. The terms are “fetus, ” “transgender, ” “vulnerable, ” “entitlement, ” “diversity, ” “evidence-based” and “science-based, ” according to a story first reported on Friday in The Washington Post. But Fitzgerald said in a series of tweets on Sunday said there are “no banned words, ” while emphasizing the agency’s commitment to data-driven science. “CDC has a long-standing history of making public health and budget decisions that are based on the best available science and data and for the benefit of all people — and we will continue to do so, ” she said. A group of the agency’s policy analysts said senior officials at the CDC informed them about the banned words on Thursday, according to the Post’s report. In some cases, the analysts were reportedly given replacement phrases to use instead. But in follow-up reporting, The New York Times cited “a few” CDC officials who suggested the move was not meant as an outright ban, but rather, a technique to help secure Republican approval of the 2019 budget by eliminating certain words and phrases. A spokesperson for the Department of Health and Human Services, which oversees the CDC, said the reported decree on banned words was a misrepresentation. Read more of this story at Slashdot.

View post:
CDC Director Says No Words Are Actually Banned At the CDC

Two Major ISPs Are Suffering Outages, Making the Internet Really Slow Right Now

Freshly Exhumed writes: Two major backbone internet service providers — Level 3 and Cogent — appear to be suffering from massive outages and downgraded service, according to ISP monitoring service Downdetector. Users in San Francisco, Los Angeles, Chicago, Boston, Dallas, Atlanta, New York, Philadelphia, Baltimore, and Washington, D.C. are apparently being hit the hardest. Comcast is also said to be affected to a lesser degree. “Backbone internet service providers work directly with large internet platforms like Netflix to deliver large amounts of data across networks, and also work behind the scenes of consumer-facing ISPs, ” reports Slate. “Since the internet is an interconnected mess of wires, disruptions with Level 3 and Cogent could impact service for Comcast and Verizon users in turn.” Read more of this story at Slashdot.

Follow this link:
Two Major ISPs Are Suffering Outages, Making the Internet Really Slow Right Now

Chrome 64 Beta Adds Sitewide Audio Muting, Pop-Up Blocker, Windows 10 HDR Video

Chrome 64 is now in beta and it has several new features over version 63. In addition to a stronger pop-up blocker and support for HDR video playback when Windows 10 is in HDR mode, Chrome 64 features sitewide audio muting to block sound when navigating to other pages within a site. 9to5Google reports: An improved pop-up blocker in Chrome 64 prevents sites with abusive experiences — like disguising links as play buttons and site controls, or transparent overlays — from opening new tabs or windows. Meanwhile, as announced in November, other security measures in Chrome will prevent malicious auto-redirects. Beginning in version 64, the browser will counter surprise redirects from third-party content embedded into pages. The browser now blocks third-party iframes unless a user has directly interacted with it. When a redirect attempt occurs, users will remain on their current page with an infobar popping up to detail the block. This version also adds a new sitewide audio muting setting. It will be accessible from the permissions dropdown by tapping the info icon or green lock in the URL bar. This version also brings support for HDR video playback when Windows 10 is in HDR mode. It requires the Windows 10 Fall Creator Update, HDR-compatible graphics card, and display. Meanwhile, on Windows, Google is currently prototyping support for an operating system’s native notification center. Other features include a new “Split view” feature available on Chrome OS. Developers will also be able to take advantage of the Resize Observer API to build responsive sites with “finger control to observe changes to sizes of elements on a page.” Read more of this story at Slashdot.

See the original post:
Chrome 64 Beta Adds Sitewide Audio Muting, Pop-Up Blocker, Windows 10 HDR Video

One of Australia’s Richest Men Lost $1 Million To Email Scam

Kaye Wiggins, reporting for Bloomberg: The multi-millionaire founder of Twynam Agricultural Group lost $1 million in an email fraud, a London court heard Thursday. The British man who facilitated the theft says he’s a victim too. John Kahlbetzer, who is on the Forbes list of the 50 richest Australians, lost the money when fraudsters tricked the administrator of his personal finances into transferring it to them, his court papers say. Fraudsters emailed Christine Campbell, pretending to be the 87-year-old and asking her to pay $1 million to an account held by a British man, David Aldridge, which she did. Kahlbetzer is suing Aldridge to recover the funds, but Aldridge says he was being “unwittingly used” and was himself the victim of a fraud involving a woman he met online and believed he was in a loving relationship with. Email frauds where companies’ staff are tricked into transferring money are a growing problem. U.S. Federal Bureau of Investigation statistics show “business email compromise” cases, where criminals ask company officials to transfer funds, have cost more than $3 billion since 2015. Read more of this story at Slashdot.

See more here:
One of Australia’s Richest Men Lost $1 Million To Email Scam

T-Mobile Is Becoming a Cable Company

T-Mobile has revealed that it’s launching a TV service in 2018, and that is has acquired Layer3 TV (a company that integrates TV, streaming and social networking) to make this happen. The company thinks people are ditching cable due to the providers, not TV itself. Engadget reports: It claims that it can “uncarrier” TV the way it did with wireless service, and has already targeted a few areas it thinks it can fix: it doesn’t like the years-long contracts, bloated bundles, outdated tech and poor customer service that are staples of TV service in the U.S. T-Mobile hasn’t gone into detail about the functionality of the service yet. How will it be delivered? How much will it cost? Where will it be available? And will this affect the company’s free Netflix offer? This is more a declaration of intent than a concrete roadmap, so it’s far from certain that the company will live up to its promises. Ultimately, the move represents a big bet on T-Mobile’s part: that people like TV and are cutting the cord based on a disdain for the companies, not the service. There’s a degree of truth to that when many Americans are all too familiar with paying ever-increasing rates to get hundreds of channels they don’t watch. However, there’s no guarantee that it’ll work in an era when many people (particularly younger people) are more likely to use Netflix, YouTube or a streaming TV service like Sling TV. Read more of this story at Slashdot.

Read More:
T-Mobile Is Becoming a Cable Company