Former US cybersecurity official gets 25 years for child porn charges

On Monday, a federal judge in Nebraska sentenced the former acting director of cybersecurity for the US Department of Health and Human Services to 25 years in prison on child porn charges. Timothy DeFoggi, who was convicted back in August 2014, is the sixth person to be convicted in relations to a Nebraska-based child porn Tor-enable website known as PedoBook. That site’s administrator, Aaron McGrath, was sentenced to 20 years last year by the same judge. McGrath famously did not have an administrator password, a mistake that federal investigators were easily able to make use of. DeFoggi’s attorneys did not immediately respond to Ars’ request for comment, but he was almost certainly unmasked via an FBI-created malware exploit designed to expose him and other PedoBook users. Read 3 remaining paragraphs | Comments

View original post here:
Former US cybersecurity official gets 25 years for child porn charges

Comcast just upped its cable modem rental fee from $8 to $10 per month

Comcast users in various parts of the country have already gotten (or may soon get) a lovely holiday present from their ISP—a seemingly inexplicable increase in the cable modem rental fee, from $8 to $10 per month. Eric Studley, of Boston, who posts on reddit as Slayer0606, first pointed out the increase on Tuesday. After reading Studley’s post, Ars encouraged readers who rent Comcast modems to check their bills and found that the increases seem to have taken place as far back as October 2014, while others took effect as of December 20, 2014 and January 1, 2015. The company did not immediately respond to Ars’ request for comment. Read 18 remaining paragraphs | Comments

View article:
Comcast just upped its cable modem rental fee from $8 to $10 per month

HP sells Palm trademarks; brand could be resurrected with new smartphones

Palm, the legendary smartphone and PDA company, might seem dead and gone, but it’s now looking like the name “Palm” will rise again as a zombie brand. For a quick refresher:  HP bought Palm for $1.2 billion in 2010. HP killed the Palm brand after about a year of ownership and stopped making WebOS devices entirely about a year-and-a-half after the acquisition. Since then, Palm has been pretty dead. Lately, though, the brand has started to stir. The diehards over at WebOS Nation have been keeping a close eye on  Palm.com , which recently stopped redirecting nostalgic visitors to hpwebos.com  and started sending people to mynewpalm.com . The page shows a looping video of a Palm logo along with the text “Coming Soon” and “Smart Move.” No one was sure who was behind the site resuscitation until this document was found, which shows the transfer of the Palm trademark from Palm, Inc (still a subsidiary of HP) to a company called Wide Progress Global Limited. Wide Progress Global Limited doesn’t seem to be a company with any kind of real purpose—it’s just a shell meant to hide the true buyer. The person signing the paperwork for Wide Progress Global Limited is Nicolas Zibell, who also  just happens to hold the title “President Americas and Pacific” at Alcatel One Touch. Couple that with the fact that the “Smart Move”—the text that appears on the new Palm site—is Alcatel One Touch’s slogan, and it’s pretty clear that Alcatel One Touch bought the Palm brand. Read 3 remaining paragraphs | Comments

Visit site:
HP sells Palm trademarks; brand could be resurrected with new smartphones

Pope to push for action on climate change

Over the weekend, The Guardian reported that Pope Francis will issue an encyclical urging Catholics to push for action on climate change. The push will coincide with the efforts to follow up on the Lima agreement in the hope that they will lead to binding agreements for the reduction of greenhouse gas emissions. Although the Vatican has not confirmed that the document is in the works, the article quotes several authorities by name, and they speak as if it is a done deal. The document would be in keeping with the Pope’s messages on environmental stewardship; the article quotes Francis as telling an audience in Latin America, “Climate change, the loss of biodiversity and deforestation are already showing their devastating effects in the great cataclysms we witness.” It’s also consistent with his general high regard for scientific findings. The Pope will join a variety of voices pushing for action next year and will undoubtedly add to the political pressure for an agreement. A more relevant question may be whether Francis can sway anyone who wasn’t already interested in seeing progress made on the climate. Read 6 remaining paragraphs | Comments

More:
Pope to push for action on climate change

North Korea suffers another Internet outage, hurls racial slur at Pres. Obama

With its latest response in the country’s on-going flap with the US, Agence France-Presse reports North Korea called President Barack Obama a “monkey” today. The racial slur comes after a recent double blow to North Korea: the country suffered yet another Internet outage Saturday and  Sony officially released The Interview , its fictional Kim Jong-Un assassination film, on Thursday. North Korea has fingered Washington for the outages and insists President Obama encouraged US theaters to re-embrace  The Interview.  “Obama always goes reckless in words and deeds like a monkey in a tropical forest,” a spokesman for North Korea’s National Defence Commission said in a statement published by the country’s official KCNA news agency. “If the US persists in American-style arrogant, high-handed, and gangster-like arbitrary practices despite repeated warnings, the US should bear in mind that its failed political affairs will face inescapable deadly blows.” An apparent DDoS attack knocked North Korea off the ‘net earlier this week, and it experienced another mass outage Saturday evening. This one even affected North Korea’s telecommunication networks, according to Chinese state-run Xinhua news agency (via AFP ). Read 2 remaining paragraphs | Comments

Visit site:
North Korea suffers another Internet outage, hurls racial slur at Pres. Obama

Apple automatically patches Macs to fix severe NTP security flaw

Most OS X security updates are issued alongside other fixes via the Software Update mechanism, and these require some kind of user interaction to install—you’ve either got to approve them manually or tell your Mac to install them automatically. Apple does have the ability to quietly and automatically patch systems if it needs to, however, and it has exercised that ability for the first time to patch a critical flaw in the Network Time Protocol (NTP) used to keep the system clock in sync. This security hole became public knowledge late last week . When exploited, the NTP flaw can cause buffer overflows that allow remote attackers to execute code on your system. If you allow your system to “install system data files and security updates” automatically (checked by default), you’ve probably already gotten the update and seen the notification above. If not, Mountain Lion, Mavericks, and Yosemite users should use Software Update to download and install the update as soon as possible. The flaw may exist in Lion, Snow Leopard, and older OS X versions, but they’re old enough that Apple isn’t providing security updates for them anymore. While this was the first time this particular auto-update function has been used, Apple also automatically updates a small database of malware definitions on all Macs that keeps users from installing known-bad software. That feature, dubbed “XProtect,” was introduced in Snow Leopard in response to the Mac Defender malware and has since expanded to include several dozen items . Read on Ars Technica | Comments

Read More:
Apple automatically patches Macs to fix severe NTP security flaw

EFF: Feds can’t get around Fourth Amendment via automated data capture

OAKLAND, Calif.—A federal judge spent over four hours on Friday questioning lawyers from the Electronic Frontier Foundation (EFF) and from the Department of Justice in an ongoing digital surveillance-related lawsuit that has dragged on for more than six years. During the hearing, US District Judge Jeffrey White heard arguments from both sides in his attempt to wrestle with the plaintiffs’ July 2014 motion for partial summary judgment . He went back and forth between the two sides, hearing answers to his list of 12 questions that were published earlier this week in a court filing. That July 2014 motion asks the court to find that the government is “violating the Fourth Amendment by their ongoing seizures and searches of plaintiffs’ Internet communications.” The motion specifically doesn’t deal with allegations of past government wrongdoing, nor other issues in the broader case. Read 17 remaining paragraphs | Comments

See original article:
EFF: Feds can’t get around Fourth Amendment via automated data capture

Computer intrusion inflicts massive damage on German steel factory

A German steel factory suffered significant damage after attackers gained unauthorized access to computerized systems that help control its blast furnace, according to a report published Friday by IDG News. The attackers took control of the factory’s production network through a spear phishing campaign, IDG said, citing a report published Wednesday by the German government’s Federal Office for Information Security. Once the attackers compromised the network, individual components or possibly entire systems failed. IDG reporter Loek Essers wrote: Due to these failures, one of the plant’s blast furnaces could not be shut down in a controlled manner, which resulted in “massive damage to plant,” the BSI said, describing the technical skills of the attacker as “very advanced.” The attack involved the compromise of a variety of different internal systems and industrial components, BSI said, noting that not only was there evidence of a strong knowledge of IT security but also extended know-how of the industrial control and production process. The incident is notable because it’s one of the few computer intrusions to cause physical damage. The Stuxnet worm that targeted Iran’s uranium enrichment program has been dubbed the world’s first digital weapon, destroying an estimated 1,000 centrifuges. Last week, Bloomberg News reported that a fiery blast in 2008 that hit a Turkish oil pipeline was the result of hacking , although it’s not clear if the attackers relied on physical access to computerized controllers to pull it off. The suspected sabotage of a Siberian pipeline in 1982 is believed to have used a logic bomb. Critics have long argued that much of the world’s factories and critical infrastructure aren’t properly protected against hackers. Read on Ars Technica | Comments

Visit link:
Computer intrusion inflicts massive damage on German steel factory

T-Mobile gives up fight over cramming fees, will pay $90M back to customers

T-Mobile US has given up its fight against a lawsuit filed by the US government, agreeing  today to refund $90 million or more to customers who were charged premium text message fees without their consent. The Federal Trade Commission alleged that T-Mobile made hundreds of millions of dollars off the practice of passing along third-party charges to customers without their authorization and taking a commission on each charge. T-Mobile could end up paying much more than $90 million. “The settlement requires that they provide full refunds to consumers, with a total of ‘at least’ $90 million,” an FTC spokesperson explained. “The $90 million is a floor. If they receive refund requests of more than that, they have to provide them.” In addition to everything it pays back customers, T-Mobile will pay $18 million in fines and penalties to state attorneys general and $4.5 million to the Federal Communications Commission. If T-Mobile receives less than $90 million worth of refund requests, the extra fines can be counted toward the minimum payment of $90 million. If the payment is still under $90 million, “the balance must be remitted to the FTC for additional consumer redress, consumer education, or other uses,” the FTC said. Read 5 remaining paragraphs | Comments

Original post:
T-Mobile gives up fight over cramming fees, will pay $90M back to customers

FBI claims North Korean involvement in Sony Pictures attack

The Federal Bureau of Investigation’s Washington press office has issued an update on the investigation into the cyber attack on Sony Pictures Entertainment, including the conclusion that North Korea was behind it. “As a result of our investigation, and in close collaboration with other US government departments and agencies, the FBI now has enough information to conclude that the North Korean government is responsible for these actions,” the office said in a statement. However, the information cited by the FBI’s update may not be as conclusive as many would like. Other hints at the attribution were provided to news organizations off-the-record, but the FBI’s public statements are far from definitive. Read 9 remaining paragraphs | Comments

View original post here:
FBI claims North Korean involvement in Sony Pictures attack