Mac keychain flaw can send your passwords to hackers via text

Antoine Vincent Jebara and Raja Rahbani have discovered a Mac Keychain vulnerability that hackers can easily exploit to steal passwords, certificates, etc. with very little user interaction needed. The duo stumbled upon the flaw while working on the Keychain for their identity management software Myki . They found out that attackers can craft commands that can make Mac’s password management system prompt users to click an “Allow button” instead of asking them to type in their passwords. Once a user clicks that button, the malicious code can forward Keychain’s contents via text, though the info could also be saved somewhere for download later on. The malware required to trigger that process can be introduced into the victim’s computer via innocuous files such as images, documents and spreadsheets. In fact, the proof of concept Rahbani and Jebara developed to test out what they discovered launches the malware-wrapped image in Preview after you click Allow. They designed it that way to show how that method can be used to allay any suspicion brewing in the back of the victim’s mind. In Jebara’s email to Engadget , he said they already notified Apple of the vulnerability and are waiting to hear back. He explained that they decided to come out with this information, because it could be extremely harmful to users if exploited. By knowing the flaw’s nature, you can at least protect yourself by not click strange buttons that pop up in Keychain. We disclosed because we feel that it is the right thing to do knowing that a vulnerability of this magnitude would have disastrous consequences (you wouldn’t be able to open any third-party file on your computer without the risk of losing all of your sensitive information until Apple issues a patch)… The vulnerability is extremely critical as it allows anyone to steal all of your passwords remotely by simply downloading a file that doesn’t look malicious at all and that can’t be detected by malware detectors because it doesn’t behave the way malware usually does. [Image credit: mangpages/Flickr ] Filed under: Misc , Apple Comments Tags: apple, keychain, security

See more here:
Mac keychain flaw can send your passwords to hackers via text

Sony’s Xperia Z5 family includes the world’s first 4K smartphone

To say that Sony’s mobile division has had a tough time lately would be an understatement. As the company puts out half-hearted efforts like the Z3 and Z3+, sales have been dropping steadily. We’re now at the point where Sony is losing more than $1 million per day just keeping the division going. Something has to change. Sony has to take smartphones seriously, and this is its attempt to do just that. Meet the Xperia Z5 family, which includes the world’s first 4K phone display, “next-generation” cameras and some tiny, tiny fingerprint scanners. Slideshow-316694 For what seems like the first time in ages, Sony is announcing a trio of flagship phones at the same time. From big to small, we’ve got the Z5 Premium, the Z5 and the Z5 Compact. The trio share many attributes, but thanks to one spec, the Premium is by far the most interesting. The world’s first 4K phone display I’m totally besotted with the Premium’s display. It’s got a truly ridiculous, world-beating 5.5-inch 4K (3, 840 x 2, 160) panel, with rich colors and deep blacks. We’ll need to spend more time than the few hours we’ve had with the new lineup to give a proper verdict, but right now we can say for sure that it looks great. I’m not sure I want a 4K display in my phone, but I am sure that the allure of an 806-ppi display will be enough to win some over. Sony’s thrown down the gauntlet, and at least in pixel density, the Z5 Premium is the phone to beat. Unfortunately, Sony’s saved all of its new screen tech for the Premium, with the regular Z5 retaining the same 5.2-inch 1080p unit as the Z3 and Z3+, and the Z5 Compact getting a slightly larger — 4.7 inches vs. the Z3 Compact’s 4.6 inches — but still 720p display. Apart from their displays, the devices are almost identical. As far as specs go, though, the displays are pretty much the only things distinguishing the Z5 Premium from the Z5 and Z5 Compact. All three have Qualcomm’s Snapdragon 810 processor inside, up to 32GB of internal storage (expandable by microSD), high-res audio chips and “up to two-day battery life.” That’s a cute way Sony found to say “you only need to charge this one once a day.” How they eke out that battery life differs of course, with the Premium having a 3, 430mAh battery, the Z5 a 2, 900mAh and the Z5 Compact a 2, 700mAh. The only other differentiator is RAM: The Z5 Premium and Z5 have 3GB; the Z5 Compact only has 2GB. The same, but different The Z5s’ power buttons house fingerprint sensors. If you’ve seen any Sony phone made in the last couple of years, I’m sure you’ve already noticed the Z5 family is a very familiar one. Sony’s “OmniBalance” design theme has been knocking around since the Xperia Z1, and it’s really difficult to get excited about: They’re rectangular slabs with clean line; they’re waterproof; and they’re uncomplicated. That said, this is probably the tightest iteration on that theme. The Z5 Premium and Z5 both feel very polished, with carefully considered color schemes and materials. The Z5 Compact feels sturdier and a little chunkier, but not necessarily in a bad way. The Z5 Premium is available in black, gold or chrome, all with a mirrored glass back, while the Z5 has white, black, gold and a subdued green, with a frosted glass back. Sony’s clearly targeting the younglings with the Compact, especially with some of the bright and “fun” colors. It comes in the usual white and black, but also vibrant yellow and coral (pink) — again with frosted glass at the back. Of course they’re all different sizes too; The Z5 Premium has a 5.5-inch display and is 7.8mm thick; the Z5 has a 5.2-inch display and is 7.3mm thick; while the Compact has a 4.7-inch display and is 8.3mm thick. The Z5 Premium in chrome makes for a very effective mirror. I think the yellow Z5 Compact is probably my favorite of the bunch; the bright color wrapping around the edge of the black display frames the device really well. The green Z5 is also kinda classy looking, and it’s a nice step away from the staid colors we’re used to from flagships. Also, big shout out to the chrome Z5 Premium, which is essentially a mirror with a phone attached to the back. It’s ostentatious; it’s ridiculous; and it’s impossible to keep clean, but I kinda love it. So all these new Xperias are familiar, but changed. The same, but different. Those coming from a previous-generation Z will notice how nicely this latest bunch feels to hold, as well as some neat design additions. There’s now a little “Xperia” wordmark etched into the phones’ metallic sides, and the series’ small circular power button is no more, replaced by an oval-shaped button that somehow squeezes in a tiny fingerprint reader. Taking care of number one All three phones share the same camera setup. Sony’s new sensor is exclusive to Xperias, for now. Sony’s image sensors are everywhere. Of course you’ll find them in the company’s own smartphones, mirrorless and SLT cameras, but they’re also in high-end Nikon and Fujifilm models. Not to mention flagship smartphones like the Samsung Galaxy S6 and LG G4. Put simply, they’re considered some of the finest in the business, and one of the increasingly few areas that Sony is a market leader in. Not all sensors are created equal, though, and this time, Sony’s keeping the best smartphone sensor for itself. All of the Z5s have a 1/2.3-inch Exmor RS 23-megapixel image sensor. It’s brand-new, and Sony says it’ll be exclusive to Xperias, at least for a while. Click image for original 7MB file. Shot by Sony at f/2.0, 1/2500s, ISO 40. This fancy new sensor is backside illuminated and has embedded phase-detection pixels. It’s housed in Sony’s first mobile camera module with a closed-loop actuator, and in front of the sensor is a new six-element 24mm lens with a wide f/2.0 aperture. If you’re unsure what all of this means, I’ll break it down for you: Sony says that, thanks to the phase-detection pixels, the Z5 family can autofocus in as little as 0.03 second, claiming it’s the “world’s fastest autofocus in a smartphone.” All we can say is it’s very quick. The actuator helps with this by swiftly moving the lens to focus, and because it’s closed-loop, it’ll also offer better image stabilization, especially for video. As you’d expect, all three will shoot movies in 4K, although evidently the Z5 Premium is the only one capable of playing footage back natively on the phone itself. Sony says the new sensor is capable of oversampling images (PureView style) for digital zoom “without loss of image quality.” Take that claim with an ocean’s worth of salt, of course, but the zoomed images definitely seemed good enough for a Facebook or Twitter share. Click image for original 3MB file. Shot by Sony at f/2.0, 1/30s, ISO 250. All of this adds up to… well, no one knows yet. What I can say is that Sony’s sensors are the envy of the business; Sony’s “unedited” sample images look fantastic; and, in my brief time with the Z5s, I took some quite pretty images that I’m sadly unable to share with you. But it’s too early to say whether this new camera represents a huge leap forward, or even if it’s at the front of the pack. A fresh start Although it’s not quite stock, Sony has all but removed its Android skin. On the software side, the Z5 family runs Android 5.1.1, and Sony says “stay tuned” about an Android M update. The good news for virtually everyone but the most die-hard of Sony fans, though? The company’s Android skin is no more. Instead, the devices all run a virtually stock Android experience. Sure, there are some differences in iconography, but the general look-and-feel isn’t too far from a Nexus device. That’s a huge step forward from current Xperias, which feel like they’re stuck in the past despite many of them actually being on the latest version of Android. Google won’t officially bake in fingerprint support to its OS until Android M is released this fall. Like other manufacturers, though, Sony already has things up and running. I wasn’t able to test out the functionality myself, but the placement seems very natural, and I watched Sony staff unlocking their devices with various fingers and thumbs at a 100 percent success rate. The big questions A close-up of the Xperia Premium’s etched metal wordmark. I’m pretty impressed with Sony’s new lineup. But there are still three lingering questions that Sony needs to answer. First, there’s the small matter of price. So far, we’ve got this from Sony: “Pricing will reflect the premium quality of the smartphone.” Make of that what you will, but Sony isn’t exactly known for producing budget devices. In the age of the OnePlus 2 and the Moto X Pure, you can get a lot of smartphone for a few hundred dollars. Second is battery life and performance. The chip inside all three, the Snapdragon 810, has had some well-reported issues with overheating, and is not known to be very frugal when it comes to battery life. Couple that chip with a 4K display, and it’s easy to question Sony’s claim of “up to two-day” endurance when it comes to the Premium. The company points to its on-display memory (which effectively switches off the processor when the screen isn’t moving), and other battery-saving tech as proof it can hit that target. Many will remain unconvinced until the phone’s been properly tested. Third, and perhaps most importantly for Sony’s shot at a global success, is availability. The Z5 and Z5 Compact will be “globally” available in October, with the Z5 Premium following in November. But Sony has really struggled to persuade carriers to push its devices. That’s especially true in the US, where sometimes it feels like Sony doesn’t exist. If a 4K display doesn’t pique the US carriers’ attention, nothing will. You could argue that this is Sony’s fault. Several generations of Xperias have come and gone, all of which looked pretty much the same, and none of which blew the competition out of the water. They’ve been solid phones, but plenty of companies make solid phones. Why should carriers put their weight behind Sony when Samsung et al. offer the same basic package? With iPhone season fast approaching, there’s a real chance Sony could be left by the wayside again. At least with the Z5 Premium, Sony has clearly put everything it can into a single device, short of a new design. If the world’s first 4K smartphone doesn’t get the attention of AT&T, Verizon, Sprint and T-Mobile, nothing will. Check out all the news from Berlin at our IFA 2015 hub . Filed under: Cellphones , Mobile , Sony Comments Tags: 4k, exmor, hands-on, ifa, ifa2015, mobilepostcross, sony, xperia, xperiaz5, z5

Read more here:
Sony’s Xperia Z5 family includes the world’s first 4K smartphone

Polaroid’s latest instamatic doesn’t use ink to print photos

Cubes , unwieldy squares , bulky cameras of yore. Regardless of form factor, when the Polaroid name is on a camera it means you’re getting instant photos. With the company’s latest shooter, the Snap, you’re getting what looks like a pocketable device that uses proprietary tech to print photos using zero ink. Instead, the ZINK (get it?) paper you load in the 10MP pictograph box uses heat to activate color crystals and reproduce your 2-inch by 3-inch masterpiece. And of course, since this is camera made in 2015 there’s a selfie timer and filter presets (color, black and white, vintage) in addition to a Micro SD card slot. Interested? All it takes is $99 to sate your curiosity sometime later this year. Slideshow-316542 Filed under: Cameras Comments Tags: cameras, ifa2015, polaroid, snap

Visit site:
Polaroid’s latest instamatic doesn’t use ink to print photos

ASUS unveils the Intel-powered, Windows 10 VivoStick

Intel generated a storm of interest when it launched the HDMI-based Compute Stick , but is anybody willing to buy a tiny, under-powered PC? Who knows, but ASUS has just launched its own model that trumps Intel’s in nearly every way. It’s a lot less clunky-looking and one-ups Intel’s Atom CPU with a Cherry Trail model, while adding an extra USB 3.0 port and headphone jack for good measure. Otherwise, it has the same 2GB of RAM and 32GB storage, and works in the same way: you plug it into any HDMI TV, add a keyboard and mouse, then compute away on Windows 10. At least, we hope so. As we noted in our review , Intel’s stick is far from a powerhouse and not quite up to its primary task of serving music and video streaming to your TV and sound system. However, at $129, the ASUS VivoStick runs a bit less than Intel’s $150 Compute Stick, which might make it worth the gamble. Availability has yet to be determined. Filed under: Wireless , Storage , ASUS Comments Tags: asus, ComputeStick, HDMI, IFA2015, PC-on-a-stick, PC-on-a-TV, USB3.0, VivoStick

See the original post:
ASUS unveils the Intel-powered, Windows 10 VivoStick

Skylake for desktops: New socketed processors from Core i7 to Pentium

It’s been over two years since Intel’s entire lineup of socketed desktop processors got a true refresh. We got a smattering of high-end Broadwell chips this year and a small speed bump to the Haswell lineup last year , but it’s been a while since system builders and desktop buyers had much to be excited about. We’ve already looked at a couple of these CPUs, particularly the high-end unlocked i7-6700K. But today Intel is announcing (alongside many mobile CPUs) a more comprehensive desktop refresh that also encompasses mainstream dual- and quad-core CPUs, a few low-power options for smaller systems, and wallet-friendly chips from the Pentium line if you’re trying to build a modern system on a budget. Intel tells us that allĀ of these should be available for purchase before the end of the year. Before we get into it, you should familiarize yourself with the features of the new 100-series chipsets , since we won’t be covering that ground again in this article. You should also know thatĀ ultra-low-end Skylake Celeron chips are coming, but won’t be released until early 2016. Read 10 remaining paragraphs | Comments

Follow this link:
Skylake for desktops: New socketed processors from Core i7 to Pentium

Google is working to make 4K video less of a data hog

Ultra HD 4K video is still in its infancy, but there’s no doubt the format will become increasingly popular in the next year or two. Huge players like YouTube and Netflix already support it, but delivering such high bandwidth video content remains a challenge. Google’s trying to do its part to solve that problem by developing a more efficient video compression codec called VP10. The new codec has been in the works for nearly a year, but the company gave some details about how effective it can be over the VP9 format it’ll eventually replace. In an interview with CNET , Google product manager James Bankoski said that VP9 uses half the bandwidth needed to deliver the same quality video as the popular H.264 format — and with VP10, the company is trying to cut it in half again. Reduced bandwidth usage isn’t the only thing VP10 has going for it — it should also provide shaper images, better color, and a better dynamic range between lights and dark. But despite some strong technical credentials and the backing of Google, widespread adoption of VP10 is hardly a foregone conclusion. H.264 is still the dominant video compression standard, and its successor (HEVC / H.265) will likely see widespread support. Still, this is a battle that isn’t yet won, and the dominance of YouTube means that VP10 will have a fighting chance against HEVC. The fact that VP10 is open source is another point in its favor; the licensing for HEVC could add red tape and costs for developers and devices makers. It’ll be a while before this conflict comes to a head, however: Google said it hopes to hit its performance targets for VP10 by the end of next year. Filed under: HD , Google Comments Source: CNET Tags: 4k, google, h264, h265, hdpostcross, hevc, vp10, vp9, youtube

See more here:
Google is working to make 4K video less of a data hog

Algorithm turns any picture into the work of a famous artist

A group of German researchers have created an algorithm that basically amounts to the most amazing Instagram filter ever conceived: a convolutional neural network that can convert any photograph into a work of fine art. The process takes an hour (sorry, it’s not actually coming to a smartphone near you), and the math behind it is horrendously complicated, but the results speak for themselves. The algorithm leverages how complex neural networks process object recognition to help it rebuild photographs in the style of specific artists. On a very basic level, the network treats the art style of a source image as a “texture, ” and filters the target image through several layers of computational units to create a representation of it that agrees with the features of the original art. It’s a pretty neat trick, but not the actual point of the group’s research — the art project is simply an example that shows that convolutional neural networks are now capable of separating the content and style of an image. That said, researchers admit that content and style have to be careful balanced if the output image is to make any sense — too much focus on style, and the output image won’t look anything like the original photograph. The group plans to publish an additional paper on the algorithm in Nature later this year — but you can read the original report at the source link below. Filed under: Science Comments Via: Washington Post Source: Corell University Tags: art, imagerecognition, NeuralNetwork, picasso, vangogh

View post:
Algorithm turns any picture into the work of a famous artist

Smoother movements help robots save a lot of energy

Eliminating the herky-jerky movements of robots isn’t just good for comforting nervous humans… it helps the robots, too. Researchers have developed smooth movement algorithms that slow the acceleration and deceleration of robots, saving as much as 40 percent of the energy they’d normally use. The trick is to order tasks in a way that lets robots move at their own pace without colliding into each other. Factory robots typically rush through tasks in a rigid order, only to wait for their fellow automatons to catch up. Here, they’re more flexible as to when and how quickly they get things done. You may see these more graceful robotics sooner than you think. General Motors is one of the partners in the project, and it has a vested interest in saving as much energy as it can. Robots use roughly half of the electricity at a vehicle assembly plant — if GM can save a lot of money using nothing more than code, you know it’s going to leap on that opportunity. While it’ll likely take a long time before robots ship with smoother movements from the get-go, it won’t be surprising if the underlying algorithms eventually become ubiquitous. [Image credit: Oscar Mattson, Chalmers University] Filed under: Robots , Science Comments Via: Geek Source: Chalmers Tags: algorithm, chalmers, ChalmersUniversity, factory, generalmotors, gm, robot, robotics, science, video

Continued here:
Smoother movements help robots save a lot of energy

Ferrofluid ‘font’ produces trippy, one-of-a-kind art

You may have seen ferrofluid (aka magnetic ink) used for clever science demonstrations in school, but it might just get a much cooler application before long. Linden Gledhill and Craig Ward have developed Fe2O3 Glyphs , wild-looking characters created by putting a ferrofluid between glass plates and subjecting it to spinning magnetic fields. The result is a sort of anti-font — while the “letters” look like they could be part of an alien language, they’re so unique that you’d likely never produce the same effect twice. The creators are producing a digital typeface that you can use for your own projects, and they also hope to create a limited run of letterpress art prints to show your friends. You’ll need to pitch in to make both of these a reality, though. The duo has launched a crowdfunding campaign that gives you both the digital font and at least one print (either unique or copied). You’ll need to pledge at least $30 to get something in return, but it might be worth the cash if you’ve ever wanted science-influenced artwork in your home. Filed under: Science Comments Via: The Creators Project Source: Kickstarter , Words Are Pictures Tags: art, crowdfunding, ferrofluid, font, glyph, ink, kickstarter, magentic, magnet, magnetism, science, video

More here:
Ferrofluid ‘font’ produces trippy, one-of-a-kind art

Slack ties in with Windows 10’s notification center

Communication / productivity tool Slack is starting to blend in with Windows 10 after its latest update. In version 1.2.0 , notifications show up in the desktop OS’ Action Center, and clicking them links directly to the appropriate conversation in the app. Many Windows applications never updated to take advantage of new features in Windows 8, or even to become fully compatible with how it worked with hardware like touchscreens, so it’s encouraging to see some support. It’s not a Windows 10 Universal app yet, but the company has a Windows Phone version in beta , just months after it came out of beta on the desktop. There’s also a fresh new icon for Windows 10, and color-coded notification icon in the tray. If you use Slack in the workplace (like we do), it should probably auto-update with the latest features, or you can download it here . Filed under: Internet , Software Comments Source: Slack Changelog , Slack Apps Tags: 1.2.0, actioncenter, notifications, Slack, update, Windows10

See original article:
Slack ties in with Windows 10’s notification center