New guidelines outline what iPhone data Apple can give to police

If you store your stuff on iCloud, Apple can provide most of that information to law enforcement if it’s requested. Andrew Cunningham We’ve known (or suspected) for some time that Apple can provide data from iOS devices to US law enforcement, whether that data is stored on Apple’s iCloud servers or on a password protected phone or tablet . In an effort to be more transparent about this process, Apple yesterday posted an extensive document describing what data the company can provide to law enforcement and the processes for requesting that data. The document outlines two basic types of data: information stored on Apple’s servers and information stored locally on iOS devices. Information on Apple’s servers includes both data associated with your Apple ID—your basic contact information, customer service records, your transaction history both in Apple’s retail stores and in the online iTunes and App Stores, and iTunes gift card information—and data associated with your iCloud account. All account data stored on Apple’s servers is obtainable “with a subpoena or greater legal process.” The short version is that essentially anything you’ve backed up to or stored on iCloud is available for Apple to fork over to law enforcement, including connection logs and IP addresses you’ve used. Apple has access to 60 days of iCloud mail logs that “include records of incoming and outgoing communications such as time, date, sender e-mail addresses, and recipient e-mail addresses”; any e-mail messages that the user has not deleted; and any other information that can be backed up to iCloud. As of this writing, this list includes contacts, calendars, browser bookmarks, Photo Stream photos, anything that uses the “documents and data” feature (which can include not just word processors but also photo and video apps, games, and data from other applications), and full device backups. Subscriber information requires a “subpoena or greater legal process,” e-mail logs require a court order or search warrant, and e-mail or other iCloud content requires a search warrant. Any iCloud information that the user deletes cannot be accessed. Read 5 remaining paragraphs | Comments

See more here:
New guidelines outline what iPhone data Apple can give to police

Intel and Google boast 11-hour battery life with upcoming Chromebooks

Intel Intel Intel likes Chrome OS. Need proof? The company is apparently the number-two contributor to the operating system’s code after Google itself. Intel and Google also co-hosted a small event in San Francisco today, intended to highlight Intel’s commitment to Chrome OS and the number of PC OEMs that are shipping Intel-equipped Chromebooks. Many of Intel and Google’s announcements were about products we already knew about: there’s a multi-colored HP Chromebox coming in June for an as-yet-undisclosed price, and LG’s Chromebase all-in-one will be here later this month for $349. Both Acer and Dell are also tweaking their existing 11-inch Chromebooks, providing a faster Core i3 CPU option to complement the lower-end Celeron offerings. The Acer version will cost $349 when it launches later in the summer, while the Dell model will ship later in the year. Intel and Google started by telling us more about Chrome devices we’ve already met. Intel The truly new Chromebooks announced at the presentation used Intel’s Bay Trail platform rather than the more common Haswell chips. These gadgets share a number of characteristics: like the ARM Chromebooks we’ve seen so far, they’re fanless. Intel says they’ll run for “up to” 11 hours, compared to around 10 hours for Haswell designs, and they’ll include Intel’s 802.11ac Wi-Fi adapters instead of the single- and dual-band 802.11n adapters most current Chromebooks use. Bay Trail Chromebooks are going to give up a significant amount of CPU and GPU performance compared to even the slowest Haswell chips, but the other benefits may outweigh that hit. Bay Trail comes to Chromebooks. Intel Asus, Acer, Toshiba, and Lenovo will be the first PC OEMs to ship Bay Trail-based Chromebooks, not counting a basic education-focused reference design that Intel showed off during the presentation. Asus is offering both 11-inch (C200) and 13-inch (C300) Bay Trail Chromebooks with dual-core Bay Trail Celeron chips (the N2830 , to be exact), 2GB of RAM, 16GB of solid-state storage, 1366×768 displays, and 802.11ac. The 11-inch model weighs 2.5 pounds, while the 13-inch model is 3.1 pounds, and the lineup will reportedly start at $250 . The Toshiba and Acer models weren’t shown, and we don’t yet know anything about specific specifications, pricing, or availability for either of them. Lenovo’s Chromebooks are a little more intriguing . The company is offering two models, the N20 and the N20p. Both use 11.6-inch 1366×768 displays, quad-core Bay Trail Celeron chips, 2GB or 4GB of RAM, 16GB of solid-state storage, and about eight hours of battery life. The difference between the two is that the N20p integrates a Yoga-like flexible hinge and a touchscreen that can be flipped backward (though it won’t sit flush against the bottom of the laptop like the regular Yogas will). The standard N20 will start at $279 when it’s available in July, and the N20p will start at $329 in August. The event also played up Chrome OS’ momentum in the marketplace, though no one who spoke used specific sales numbers. They chose instead to focus on other metrics—that seven of the top 20 best-selling laptops on Amazon are Chromebooks, that the Asus Chromebox  has been the best-selling desktop on Amazon since it was introduced, and that Amazon customer reviews on these devices are generally favorable. Eight major PC OEMs are now selling Chrome OS devices, and they’re available in 20 countries (with nine more countries to follow). Chromebooks were initially available from just two PC OEMs, but six more have since joined them. Intel The Q&A session with representatives from Acer, Lenovo, Dell, and Google yielded few substantive answers to the most interesting questions. Can we expect a Chrome OS tablet, as has occasionally been rumored ? Are any of the OEMs planning to build a machine more like the Chromebook Pixel and less like a netbook? What about Chromebooks with larger screens since most of the current crop includes 11.6-inch panels? The reps would only give some version of “we’re always evaluating new form factors” before moving on. Even if the computers highlighted and announced today aren’t mind-blowing individually, the breadth and variety of the Chrome OS ecosystem as a whole has become quite impressive in the last two years. There’s still a conspicuous gap between the Acer C720 and HP Chromebook 11 at the bottom of the laptop pile and the Chromebook Pixel at the top of it, but as of this summer Chrome OS will come in pretty much any form factor you could want. In 2011 all we had were a couple of lackluster netbooks that retailed for $499 . Now you can even grab touch-enabled laptops, mini desktops, and all-in-ones for well below that price. All we need to do is wait another couple of years to see whether this is the birth of a vibrant new post-PC ecosystem or a netbook-style gold rush. Read on Ars Technica | Comments

Read this article:
Intel and Google boast 11-hour battery life with upcoming Chromebooks

ARM: The $20 smartphone will be possible “in the next few months”

Basic smartphones are cheap—and getting cheaper. ARM Smartphone prices have been creeping ever downward in the last few years, and ARM is betting that they’re going to go even lower. AnandTech is reporting from ARM’s Tech Day today , and one of the company’s slides predicts that the cost of a phone with a single-core Cortex A5 chip in it will go as low as $20 within the next few months. Of course, these ultra-low-cost phones won’t be devices tech enthusiasts lust after. ARM notes that even a $25 phone like the Firefox handsets announced at Mobile World Congress  have to cut down on RAM and other specs to hit that price point, and it’s unlikely that something with such low specs could run something like Android satisfactorily. More expensive phones like the $179 Moto G will still be necessary if you want that full smartphone experience on a budget. Still, for those ever-important emerging markets where the smartphone has yet to take off, any OEM that can provide a decent experience for this price is going to fill an important niche. In other news from ARM’s Tech Day, ARM shared some new performance estimates for its upcoming 64-bit Cortex A53 and A57 architectures. The company predicts that chips based on these architectures will be about 1.5 times as fast as the Cortex A7 and A15 architectures they replace when the SoCs are all built on the same 28nm manufacturing process. When moved to a newer 20nm or 16nm manufacturing process, though, the A57 in particular will supposedly be nearly twice as fast as the older A15. Read 1 remaining paragraphs | Comments

View article:
ARM: The $20 smartphone will be possible “in the next few months”

Infecting DVRs with Bitcoin-mining malware even easier than you suspected

The dialog that appears when users want to manually change the default password on their EPCOM Hikvision S04 DVR. Sans Institute It took just one day for a low-end, Internet-connected digital video recorder to become infected with malware that surreptitiously mined Bitcoins on behalf of the quick-moving attackers. The feat, documented in a blog post published Monday by researchers at the security-training outfit Sans Institute, was all the more impressive because the DVR contained no interface for downloading software from the Internet. The lack of a Wget , ftp, or kermit application posed little challenge for the attackers. To work around the limitation, the miscreants used a series of Unix commands that effectively uploaded and executed a Wget package and then used it to retrieve the Bitcoin miner from an Internet-connected server. Monday’s observations from Sans CTO Johannes Ullrich are part of an ongoing series showing the increasing vulnerability of Internet-connected appliances to malware attacks. In this case, he bought an EPCOM Hikvision S04 DVR off eBay, put it into what he believes was its factory new condition, and connected it to a laboratory “honeypot” where it was susceptible to online attackers. In the first day, it was probed by 13 different IP addresses, six of which were able to log into it using the default username and password combination of “root” and “12345.” Read 4 remaining paragraphs | Comments

View article:
Infecting DVRs with Bitcoin-mining malware even easier than you suspected

Fitbit designer calls Project Ara the “IKEA chair” of smartphones

Magnets, how do they work? Google’s eventual, modular Project Ara smartphone will answer that question and more once its first “millions of units” ship in 2015’s first half. Project Ara To some extent, Gadi Amit, the tech-design guru who owns New Deal Design and helms the team behind devices like Fitbit, is letting go. His latest project forced him to. It’s called Project Ara , a smartphone concept that began as a Motorola product before Google bought the company. Project Ara strays from Amit’s string of simple, elegant, self-contained products. This phone is not like a fitness band or a more efficient camera; it doesn’t solve a single, immediate goal and then step out of the way. Rather, Project Ara demands experimentation and customization, forcing everyone outside of the Project Ara team to become the phone’s designers. In Amit’s eyes, especially in the modern phone era, that has become the point. The mission, even. Read 11 remaining paragraphs | Comments

Taken from:
Fitbit designer calls Project Ara the “IKEA chair” of smartphones

Hulu to launch free mobile content, new iOS app this summer

Free Hulu users will enjoy more full, ad-supported TV episodes this summer, and those ads will quite possibly force Pizza Hut pizza down their throats. Future app updates will add “extra cheese” as an option (we hope). This morning, Hulu CEO Mike Hopkins announced at a New York event that the streaming media service would begin offering select free content to mobile users “this summer.” Currently, Hulu requires a “Plus” subscription to watch its full-length TV and film content on anything other than a desktop Web browser, while non-paying app users are limited to brief video clips until they cough up $7.99 a month. Like Hulu’s free and paid content up until this point, the free-for-mobile summer content will remain advertising-backed. Though the free shows in question haven’t been announced, Hulu used the event to promote its next wave of internally produced programming, including new seasons of The Awesomes and Deadbeat , and it’s tempting to assume that the free mobile access will lean toward some of the only-on-Hulu selection. The move may very well have come in response to individual networks releasing more apps, particularly Comedy Central’s recent self-titled app that serves free, ad-supported episodes for all users (along with a deeper video selection after a user logs in with cable subscription information). Read 1 remaining paragraphs | Comments

More:
Hulu to launch free mobile content, new iOS app this summer

Zero-day Flash bug under active attack in Windows threatens OS X, Linux too

A fragment of the shellcode exploiting a critical vulnerability in Adobe Flash. Kaspersky Lab A day after reports that attackers are exploiting a zero-day vulnerability in Microsoft’s Internet Explorer browser , researchers warned of a separate active campaign that was targeting a critical vulnerability in fully patched versions of Adobe’s ubiquitous Flash media player. The attacks were hosted on the Syrian Ministry of Justice website at hxxp://jpic.gov.sy and were detected on seven computers located in Syria, leading to theories that the campaign targeted dissidents complaining about the government of President Bashar al-Assad, according to a blog post published Monday by researchers from antivirus provider Kaspersky Lab. The attacks exploited a previously unknown vulnerability in Flash when people used the Firefox browser to access a booby-trapped page. The attackers appear to be unrelated to those reported on Sunday who exploited a critical security bug in Internet Explorer, a Kaspersky representative told Ars. While the exploit Kaspersky observed attacked only computers running Microsoft Windows, the underlying flaw, which is formally categorized as CVE-2014-1776  and resides in a Flash component known as the Pixel Bender, is present in the Adobe application built for OS X and Linux machines as well. Adobe has updated all three versions to plug the hole. Because security holes frequently become much more widely exploited in the hours or days after they are disclosed, people on all three platforms should update as soon as possible . People using IE 10 and 11 on Windowws 8 will receive the update automatically, as will users of Google’s Chrome browser. It can sometimes take hours for the automatic updates to arrive. Those who are truly cautious should consider manually installing them. Read 4 remaining paragraphs | Comments

More here:
Zero-day Flash bug under active attack in Windows threatens OS X, Linux too

Netflix is paying Verizon for network connection to speed up video

Netflix today confirmed that it reached an interconnection agreement with Verizon, similar to the one it recently struck with Comcast. “We have reached an interconnect arrangement with Verizon that we hope will improve performance for our joint customers over the coming months,” Netflix spokesperson Joris Evers told Ars. “It is a paid interconnect agreement.”Word of the deal first leaked on Twitter when analyst Walter Piecyk wrote , “Verizon CEO [Lowell McAdam] confirms they have signed direct connection deal with Netflix like Comcast’s.” When contacted by Ars, Piecyk said that “McAdam confirmed a deal with Netflix in answer to our question at a group investor meeting [today]. No further details were provided on the financial terms.” Read 7 remaining paragraphs | Comments

See more here:
Netflix is paying Verizon for network connection to speed up video

Review: Gigabyte’s AMD Brix gives Intel’s mini PC a run for its money

Gigabyte’s AMD Brix (top) is, if anything, even smaller than Intel’s latest NUC (bottom). Andrew Cunningham When AMD sent us the Brix Gaming for review, it wasn’t alone in its box. We were also sent another, smaller Brix with an AMD processor, and it’s the antithesis of its big loud cousin. It’s basically the AMD take on the NUC : a small, quiet, unobtrusive little box that still tries to deliver the features and performance of a full-size entry-level desktop. We originally planned to review both in one shot, but there was so much to say about the Brix Gaming that the GB-BXA8-5545 (say that three times fast) got edged out. Rather than bury it, we’ve decided to give it its own evaluation. It’s the only AMD-powered desktop in the same size category as the NUC that doesn’t use a wimpy netbook-class processor. And as much as Intel’s integrated GPUs have improved in recent years, the name “AMD” still means something when it comes to graphics performance. Surprise, it’s a tiny cube! Like most other mini PCs, the Brix is a tiny box with a small external power supply. Andrew Cunningham Specs at a glance: Gigabyte Brix GB-BXA8-5545 OS Windows 8.1 x64 CPU 1.7GHz AMD A8-5545M, Turbo Boost up to 2.7GHz available with proper BIOS settings RAM 8GB 1333MHz DDR3 (supports up to 16GB) GPU AMD Radeon 8510G (integrated) HDD 128GB Crucial M500 mSATA SSD Networking 2.4GHz 802.11n Wi-Fi, Bluetooth 4.0, Gigabit Ethernet Ports 4x USB 3.0, 1x mini DisplayPort 1.2, 1x HDMI 1.4a, audio Size 4.24” x 4.5” x 1.18” (107.6 x 114.4 29.9 mm) Other perks Kensington lock, VESA mounting bracket Warranty 1 year Price $249.99 (barebones), $494.97 with listed components and software The other Brix boxes we’ve reviewed have been larger and more powerful machines, but the smaller Intel and AMD-based Brixes are a lot more like the original Intel NUC. This one’s a short, square little device that’s actually a little shorter than the NUC. It’s an understated all-black system with matte metal sides and a glossy plastic top, and while it has an external power brick it doesn’t add much to the total size of the package. With the adapters, it’s roughly the size you’d get with standard PC laptops and Ultrabooks, since the Brix uses low-voltage mobile parts rather than full-fledged desktop chips. Read 17 remaining paragraphs | Comments

View article:
Review: Gigabyte’s AMD Brix gives Intel’s mini PC a run for its money

Covert Bitcoin miner found stashed in malicious Google Play apps

Lookout Researchers scouring the official Google Play market have unearthed more Android apps that surreptitiously abuse end-user devices to carry out the computationally intensive process of mining Bitcoins. The malware, dubbed “BadLepricon” by its creators, was stowed away inside six separate wallpaper apps that had from 100 to 500 downloads each, according to a blog post published Thursday by researchers from Lookout, an anti-malware provider for smartphones. Google employees promptly removed the offending apps once Lookout reported them. It’s at least the second time in a month that third-party researchers have discovered cryptocurrency-mining apps available for download on Google servers. Four weeks ago, researchers from Trend Micro reported they found two apps downloaded from one million to five million times that mined the Litecoin and Dogecoin cryptocurrencies without explicitly informing end users. “These apps did fulfill their advertised purpose in that they provided live wallpaper apps, which vary in theme from anime girls to ‘epic smoke’ to attractive men,” Meghan Kelly, a Lookout security communications manager, wrote in Thursday’s blog post. “However, without alerting you in the terms of service, BadLepricon enters into an infinite loop where—every five seconds—it checks the battery level, connectivity, and whether the phone’s display was on.” Read 3 remaining paragraphs | Comments

View article:
Covert Bitcoin miner found stashed in malicious Google Play apps