NIST’s Draft To Remove Periodic Password Change Requirements Gets Vendors’ Approval

An anonymous reader writes: A recently released draft of the National Institute of Standards and Technology’s digital identity guidelines has met with approval by vendors. The draft guidelines revise password security recommendations and altering many of the standards and best practices security professionals use when forming policies for their companies. The new framework recommends, among other things: “Remove periodic password change requirements.” There have been multiple studies that have shown requiring frequent password changes to actually be counterproductive to good password security, said Mike Wilson, founder of PasswordPing. NIST said this guideline was suggested because passwords should be changed when a user wants to change it or if there is indication of breach. Read more of this story at Slashdot.

Taken from:
NIST’s Draft To Remove Periodic Password Change Requirements Gets Vendors’ Approval

‘First Pirated Ultra HD Blu-Ray Disk’ Appears Online

Has AACS 2.0 encryption used to protect UHD Blu-ray discs been cracked? While the details are scarce, a cracked copy of a UHD Blu-ray disc surfaced on the HD-focused BitTorrent tracker UltraHDclub. TorrentFreak reports: The torrent in question is a copy of the Smurfs 2 film and is tagged “The Smurfs 2 (2013) 2160p UHD Blu-ray HEVC Atmos 7.1-THRONE.” This suggests that AACS 2.0 may have been “cracked” although there are no further technical details provided at this point. UltraHDclub is proud of the release, though, and boasts of having the “First Ultra HD Blu-ray Disc in the NET!” Those who want to get their hands on a copy of the file have to be patient though. Provided that they have access to the private tracker, it will take a while to download the entire 53.30 GB disk. TorrentFreak reached out to both the uploader of the torrent and an admin at the site hoping to find out more, but thus far we have yet to hear back. From the details provided, the copy appears to be the real deal although not everyone agrees. Read more of this story at Slashdot.

Read More:
‘First Pirated Ultra HD Blu-Ray Disk’ Appears Online

Apple Has a Record $250 Billion In Cash, 90% of It Is Banked Overseas

An anonymous reader quotes a report from Phone Arena: On Tuesday, Apple is expected to report its fiscal second quarter earnings. In that report, the tech titan will reportedly announce that it is holding $250 billion in cash. If you think that this is a lot of money, you’re absolutely right. According to Marketwatch.com, this is more than the foreign currency reserves held by the U.K. and Canada combined. Looking at it another way, at current valuations Apple could purchase all of the outstanding shares of Walmart and Procter & Gamble and still have money left over. It has taken Apple only 4 and half years to double its cash hoard. During the fiscal first quarter of 2017, Apple was adding $3.6 million to its cash position every hour. It finished the quarter ending in December with $246.09 billion in cash. 90% of the money is banked overseas, which means that Apple would be one of the companies to benefit the most from President Trump’s plan to offer a one time tax break on repatriated funds. Read more of this story at Slashdot.

See more here:
Apple Has a Record $250 Billion In Cash, 90% of It Is Banked Overseas

India Aims To Make Every Car Electric By 2030 In Bid To Tackle Pollution

India’s energy minister has unveiled plans for every car sold in the country to be powered by electricity by the year 2030. “The move is intended to lower the cost of importing fuel and lower costs for running vehicles, ” reports The Independent. From the report: Ć¢oeWe are going to introduce electric vehicles in a very big way, ” coal and mines minister Piyush Goyal said at the Confederation of Indian Industry Annual Session 2017 in New Delhi. “We are going to make electric vehicles self-sufficient… The idea is that by 2030, not a single petrol or diesel car should be sold in the country.” Mr Goyal said the electric car industry would need between two and three years of government assistance, but added that he expected the production of the vehicles to be “driven by demand and not subsidy” after that. “The cost of electric vehicles will start to pay for itself for consumers, ” he said according to the International Business Times. “We would love to see the electric vehicle industry run on its own, ” he added. An investigation by Greenpeace this year found that as many as 2.3 million deaths occur every year due to air pollution in the country. The report, entitled “Airpocalypse, ” claimed air pollution had become a “public health and economic crisis” for Indians. It said the number of deaths caused by air pollution was only “a fraction less” than the number of deaths from tobacco use, adding that 3 percent of the country’s Gross Domestic Product (GDP) was lost to the levels of toxic smog. Read more of this story at Slashdot.

See more here:
India Aims To Make Every Car Electric By 2030 In Bid To Tackle Pollution

As Print Surges, Ebook Sales Plunge Nearly 20%

An anonymous reader quotes CNN: Sales of consumer ebooks plunged 17% in the U.K. in 2016, according to the Publishers Association. Sales of physical books and journals went up by 7% over the same period, while children’s books surged 16%. The same trend is on display in the U.S., where ebook sales declined 18.7% over the first nine months of 2016, according to the Association of American Publishers. Paperback sales were up 7.5% over the same period, and hardback sales increased 4.1%… Sales of e-readers declined by more than 40% between 2011 and 2016, according to consumer research group Euromonitor International. “E-readers, which was once a promising category, saw its sales peak in 2011. Its success was short-lived, as it spiraled downwards within a year with the entry of tablets, ” Euromonitor said in a research note. The article includes an even more interesting statistic: that one-third of adults tried a “digital detox” in 2016, limiting their personal use of electronics. Are any Slashdot readers trying to limit their own screen time — or reading fewer ebooks? Read more of this story at Slashdot.

See the article here:
As Print Surges, Ebook Sales Plunge Nearly 20%

Facebook and Google Were Victims of $100M Payment Scam

Employees of Facebook and Google were the victims of an elaborate $100 million phishing attack, according to a new report on Fortune, which further adds that the employees were tricked into sending money to overseas bank accounts. From the report: In 2013, a 40-something Lithuanian named Evaldas Rimasauskas allegedly hatched an elaborate scheme to defraud U.S. tech companies. According to the Justice Department, he forged email addresses, invoices, and corporate stamps in order to impersonate a large Asian-based manufacturer with whom the tech firms regularly did business. The point was to trick companies into paying for computer supplies. The scheme worked. Over a two-year span, the corporate imposter convinced accounting departments at the two tech companies to make transfers worth tens of millions of dollars. By the time the firms figured out what was going on, Rimasauskas had coaxed out over $100 million in payments, which he promptly stashed in bank accounts across Eastern Europe. Fortune adds that the investigation raises questions about why the companies have so far kept silence and whether — as a former head of the Securities and Exchange Commission observes — it triggers an obligation to tell investors about what happened. Read more of this story at Slashdot.

View original post here:
Facebook and Google Were Victims of $100M Payment Scam

WikiLeaks Releases New CIA Secret: Tapping Microphones On Some Samsung TVs

FossBytes reports: The whistleblower website Wikileaks has published another set of hacking tools belonging to the American intelligence agency CIA. The latest revelation includes a user guide for CIA’s “Weeping Angel” tool… derived from another tool called “Extending” which belongs to UK’s intelligence agency MI5/BTSS, according to Wikileaks. Extending takes control of Samsung F Series Smart TV. The highly detailed user guide describes it as an implant “designed to record audio from the built-in microphone and egress or store the data.” According to the user guide, the malware can be deployed on a TV via a USB stick after configuring it on a Linux system. It is possible to transfer the recorded audio files through the USB stick or by setting up a WiFi hotspot near the TV. Also, a Live Liston Tool, running on a Windows OS, can be used to listen to audio exfiltration in real-time. Wikileaks mentioned that the two agencies, CIA and MI5/BTSS made collaborative efforts to create Weeping Angel during their Joint Development Workshops. Read more of this story at Slashdot.

Read the original post:
WikiLeaks Releases New CIA Secret: Tapping Microphones On Some Samsung TVs

Microsoft Will Support Python In SQL Server 2017

There was a surprise in the latest Community Technology Preview release of SQL Server 2017. An anonymous reader quotes InfoWorld: Python can now be used within SQL Server to perform analytics, run machine learning models, or handle most any kind of data-powered work. This integration isn’t limited to enterprise editions of SQL Server 2017, either — it’ll also be available in the free-to-use Express edition… Microsoft has also made it possible to embed Python code directly in SQL Server databases by including the code as a T-SQL stored procedure. This allows Python code to be deployed in production along with the data it’ll be processing. These behaviors, and the RevoScalePy package, are essentially Python versions of features Microsoft built for SQL Server back when it integrated the R language into the database… An existing Python installation isn’t required. During the setup process, SQL Server 2017 can pull down and install its own edition of CPython 3.5, the stock Python interpreter available from the Python.org website. Users can install their own Python packages as well or use Cython to generate C code from Python modules for additional speed. Except it’s not yet available for Linux users, according to the article. “Microsoft has previously announced SQL Server would be available for Linux, but right now, only the Windows version of SQL Server 2017 supports Python.” Read more of this story at Slashdot.

See more here:
Microsoft Will Support Python In SQL Server 2017

Anbox Can Run Android Apps Natively On Linux (In A Container)

Slashdot user #1083, downwa, writes: Canonical engineer Simon Fels has publicly released an Alpha version of Anbox. Similar to the method employed for Android apps on ChromeOS, Anbox runs an entire Android system (7.1.1 at present) in an LXC container. Developed over the last year and a half, the software promises to seamlessly bring performant Android apps to the Linux desktop. After installing Anbox (based on Android 7.1.1) and starting Anbox Application Manager, ten apps are available: Calculator, Calendar, Clock, Contacts, Email, Files, Gallery, Music, Settings, and WebView. Apps run in separate resizeable windows. Additional apps (ARM-native binaries are excluded) can be installed via adb. Installation currently is only supported on a few Linux distributions able to install snaps. Contributions are welcome on Github. In a blog post Simon describes it as “a side project” that he’s worked on for over a year and a half. “There were quite a few problems to solve on the way to a really working implementation but it is now in a state that it makes sense to share it with a wider audience.” Read more of this story at Slashdot.

Read the original post:
Anbox Can Run Android Apps Natively On Linux (In A Container)

Diet Sodas May Be Tied To Stroke, Dementia Risk

Gulping down an artificially sweetened beverage not only may be associated with health risks for your body, but also possibly your brain, a new study suggests. From a report: Artificially sweetened drinks, such as diet sodas, were tied to a higher risk of stroke and dementia in the study, which published in the American Heart Association’s journal Stroke on Thursday. The study sheds light only on an association, as the researchers were unable to determine an actual cause-and-effect relationship between sipping artificially sweetened drinks and an increased risk for stroke and dementia. Therefore, some experts caution that the findings should be interpreted carefully. No connection was found between those health risks and other sugary beverages, such as sugar-sweetened sodas, fruit juice and fruit drinks. Read more of this story at Slashdot.

View post:
Diet Sodas May Be Tied To Stroke, Dementia Risk