Tor Project Mulls How Feds Took Down Hidden Websites

HughPickens.com writes: Jeremy Kirk writes at PC World that in the aftermath of U.S. and European law enforcement shutting down more than 400 websites (including Silk Road 2.0) which used technology that hides their true IP addresses, Tor users are asking: How did they locate the hidden services? “The first and most obvious explanation is that the operators of these hidden services failed to use adequate operational security, ” writes Andrew Lewman, the Tor project’s executive director. For example, there are reports of one of the websites being infiltrated by undercover agents and one affidavit states various operational security errors.” Another explanation is exploitation of common web bugs like SQL injections or RFIs (remote file inclusions). Many of those websites were likely quickly-coded e-shops with a big attack surface. Exploitable bugs in web applications are a common problem says Lewman adding that there are also ways to link transactions and deanonymize Bitcoin clients even if they use Tor. “Maybe the seized hidden services were running Bitcoin clients themselves and were victims of similar attacks.” However the number of takedowns and the fact that Tor relays were seized could also mean that the Tor network was attacked to reveal the location of those hidden services. “Over the past few years, researchers have discovered various attacks on the Tor network. We’ve implemented some defenses against these attacks (PDF), but these defenses do not solve all known issues and there may even be attacks unknown to us.” Another possible Tor attack vector could be the Guard Discovery attack. The guard node is the only node in the whole network that knows the actual IP address of the hidden service so if the attacker manages to compromise the guard node or somehow obtain access to it, she can launch a traffic confirmation attack to learn the identity of the hidden service. “We’ve been discussing various solutions to the guard discovery attack for the past many months but it’s not an easy problem to fix properly. Help and feedback on the proposed designs is appreciated.” According to Lewman, the task of hiding the location of low-latency web services is a very hard problem and we still don’t know how to do it correctly. It seems that there are various issues that none of the current anonymous publishing designs have really solved. “In a way, it’s even surprising that hidden services have survived so far. The attention they have received is minimal compared to their social value and compared to the size and determination of their adversaries.” Read more of this story at Slashdot.

Read the original:
Tor Project Mulls How Feds Took Down Hidden Websites

Mozilla Updates Firefox With Forget Button, DuckDuckGo Search, and Ads

Krystalo writes: In addition to the debut of the Firefox Developer Edition, Mozilla today announced new features for its main Firefox browser. The company is launching a new Forget button in Firefox to help keep your browsing history private, adding DuckDuckGo as a search option, and rolling out its directory tiles advertising experiment. Read more of this story at Slashdot.

Read More:
Mozilla Updates Firefox With Forget Button, DuckDuckGo Search, and Ads

Google Voice Gets Native MMS Support, Brings Verizon Into the Fold

MMS support has always been a sore spot for Google Voice, but it looks like the long journey is finally over. Today, Google announced that not only has Verizon joined the club, but MMS can now be sent natively. Read more…

Read More:
Google Voice Gets Native MMS Support, Brings Verizon Into the Fold

Brazilian Vigilantes Used WhatsApp to Warn People of a Coming Massacre

Following a police shooting in northern Brazil, people started getting messages . On WhatsApp, they were warned to stay indoors that night. Some of the WhatsApp messages were texts, though the most popular was an audio file with a dire warning: “Don’t go to Guama, Canudos or Terra Firme tonight. It concerns your security, ” it said, according to the BBC . “One of our policemen was killed and we will be cleaning the area.” Read more…

Read the article:
Brazilian Vigilantes Used WhatsApp to Warn People of a Coming Massacre

Radar-Enabled Light Bulbs Automatically Detect When the Elderly Fall

Even when the elderly are being tended to by a caregiver, it’s almost impossible to keep an eye on them 100 percent of the time. So a Japanese company has developed a pair of LED light bulbs featuring built-in laser-based radar to track the movements of someone in its vicinity, and automatically send alerts when they have fallen or suddenly stopped moving. Read more…

View article:
Radar-Enabled Light Bulbs Automatically Detect When the Elderly Fall

Rosetta’s Comet Is Singing and You Can Listen To It Here

Listen to it! That’s Comet 67P/Churyumov-Gerasimenko singing. This cosmic song was just discovered by the European Space Agency, which released the soundtrack for our enjoyment. It’s totally new and unexpected, say the scientists who will remotely land a probe on the rocky surface of the comet tomorrow. Read more…

Excerpt from:
Rosetta’s Comet Is Singing and You Can Listen To It Here

Apple Releases iMessage Deregistration Utility

tlhIngan writes When moving from an iPhone to something else, if you were an avid user of iMessage, you may find your messages missing, especially from iOS-using friends. Indeed, it has been such a problem that there are even lawsuits about it. While Apple has maintained that users can always switch off iMessage, that only works if you still have your iOS device. Unless one also has other iOS devices or a Mac, they may not even realize their friends have been sending messages that are queued up on Apple’s services via iMessage. Well, that problem has been resolved with Apple creating a deregistration utility to remove your phone number from the iMessage servers so friends will no longer send you texts via iMessage that you can no longer receive. It’s a two-step process involving proof of number ownership (via regular SMS) before deregistration takes place. Read more of this story at Slashdot.

Originally posted here:
Apple Releases iMessage Deregistration Utility

The Math Behind the Hipster Effect

rossgneumann writes If everyone always wants to look different than everybody else, everybody starts looking the same. At least, if you use a recently published mathematical model describing the phenomenon. “The hipster effect is this non-concerted emergent collective phenomenon of looking alike trying to look different, ” in the words of Jonathan Touboul, mathematical neuroscientist at the College de France in Paris. Read more of this story at Slashdot.

Taken from:
The Math Behind the Hipster Effect

Codecademy’s ReSkillUSA: Gestation Period For New Developers Is 3 Months

theodp writes: TechCrunch reports that Codecademy has teamed up with online and offline coding schools to create ReskillUSA. “3 months, ” explains ReskillUSA’s website, is “how long it takes a dedicated beginner to learn the skills to qualify for computing and web development jobs.” TechCrunch’s Anthony Ha explains, “By teaming up with other organizations, Codecademy is also hoping to convince employers that completing one of those programs is a meaningful qualification for a job, and that you don’t necessarily need a bachelor’s degree in computer science.” In his Medium post, Codecademy CEO Zach Sims calls on “students learning for the jobs of the future or employers interested in hiring a diverse and skilled workforce – to join us. The future of our economy depends on it.” Read more of this story at Slashdot.

View article:
Codecademy’s ReSkillUSA: Gestation Period For New Developers Is 3 Months

Americans Rejoice At Lower Gas Prices

HughPickens.com writes Drivers across America are rejoicing at falling gasoline prices as pumps across the country dip below $3 a gallon. According to Sharon E. Burke while it’s nice to get the break at the gas pump and the economic benefits of an energy boom at home, the national security price of oil remains high and the United States should be doing everything it can to diversify global energy suppliers. Ultimately, the only way to solve our long term energy problem is to make a sustained, long-term investment in the alternatives to petroleum. But October saw a 52 percent jump in Jeep SUV sales and a 36 percent rise in Ram trucks while some hybrid and electric vehicle sales fell at the same time. “This is like putting a Big Mac in front of people who need to diet or watch their cholesterol, ” says Anthony Perl. “Some people might have the willpower to stick with their program, and some people will wait until their first heart attack before committing to a diet—but if we do that at a planetary scale it will be pretty traumatic.” Nicholas St. Fleur writes at The Atlantic that low oil prices may also undermine the message from the UN’s climate panel. The price drop comes after the UN declared earlier this week that fossil fuel emissions must drop to zero by the end of the century in order to keep global temperatures in check. “I don’t think people will see the urgency of dealing with fossil fuels today, ” says Perl. Falling oil prices may also deter businesses from switching to energy-saving technology, as a 2006 study in the Energy Journal suggested. Saving several pennies at the pump, Perl says, may tempt Americans away from actions that can lead to a sustainable, post-carbon future. Read more of this story at Slashdot.

Read More:
Americans Rejoice At Lower Gas Prices