Salesforce Fires Red Team Staffers Who Gave Defcon Talk

Josh Schwartz, Salesforce’s director of offensive security, and John Cramb, a senior offensive security engineer, have been fired by the company after they gave talk at the Defcon security conference talk in Las Vegas last month, reports ZDNet. Schwartz and Cramb were presenting the details of their tool, called Meatpistol, a “modular malware implant framework (PDF)” similar in intent to the Metasploit toolkit used by many penetration testers. The tool, “pitched as taking ‘the boring work’ out of pen-testing to make red teams, including at Salesforce, more efficient and effective”, was anticipated to be released as open source at the time of the presentation, but Salesforce has held back the code. From the report: The two were fired “as soon as they got off stage” by a senior Salesforce executive, according to one of several people who witnessed the firing and offered their accounts. The unnamed Salesforce executive is said to have sent a text message to the duo half an hour before they were expected on stage to not to give the talk, but the message wasn’t seen until after the talk had ended. The talk had been months in the making. Salesforce executives were first made aware of the project in a February meeting, and they had signed off on the project, according to one person with knowledge of the meeting. The tool was expected to be released later as an open-source project, allowing other red teams to use the project in their own companies. But in another text message seen by Schwartz and Cramb an hour before their talk, the same Salesforce executive told the speakers that they should not announce the public release of the code, despite a publicized and widely anticipated release. Later, on stage, Schwartz told attendees that he would fight to get the tool published. Read more of this story at Slashdot.

Read the original post:
Salesforce Fires Red Team Staffers Who Gave Defcon Talk

Fingernail-sized chip can repair damaged tissue in seconds

A new device can begin repairing damaged organs in seconds, heralding a major breakthrough for life-saving medicine. Developed at Ohio State University , the technology known as tissue nanotransfection (TNT) uses a small coin-sized silicone chip that “injects” genetic code into skin cells, converting them from one type to another. During the initial testing phase, researchers were able to reprogram skin cells into vascular cells on a mouse that had a badly injured leg with no blood flow. Within one week active blood vessels appeared around the leg and within two weeks the leg had been completely restored. A mouse that had suffered a stroke was also saved, suggesting this technology can be applied to organs and nerve cells, as well as tissue. It’s the first time cells have been reprogrammed in a live body. The technology weighs less than 100 grams and has a long shelf life. It’s completely non-invasive — the genetic code is delivered by zapping the device with a small electrical charge that’s barely felt by the patient — and the procedure can be carried out without access to a lab or hospital . This means it will have a significant impact on the lives of those involved in medical emergencies where time is a crucial factor, such as car crash victims and soldiers injured in the field. It’s still waiting for FDA approval, but researchers expect testing on humans to start within the year. Via: USA Today Source: Ohio State University

Read more here:
Fingernail-sized chip can repair damaged tissue in seconds

Startup Unveils Revolutionary New Rechargeable Alkaline Batteries

Slashdot reader cdreimer quotes the New York Times: Alkaline batteries can be made far more cheaply and safely than today’s lithium-ion batteries, but they are not rechargeable… Ionic Materials could change that equation with an alkaline battery the company said could be recharged hundreds of times. One additional benefit of the company’s breakthrough: An alkaline battery would not be as prone to the combustion issues that have plagued lithium-ion batteries in a range of products, most notably some Samsung smartphones. Cheaper and more powerful batteries are also considered by many to be the driver needed to make the cost of renewable energy technologies like wind and solar competitive with the coal, gas and nuclear power that support the national energy grid. The company “has demonstrated up to 400 recharge cycles for its prototypes, ” and it’s now even investigating aluminum-based alkaline batteries which would also be lighter than lithium-ion batteries. The company is backed by Sun Microsystems co-founder Bill Joy, who also envisions the batteries being used in electric cars. Read more of this story at Slashdot.

Read the original post:
Startup Unveils Revolutionary New Rechargeable Alkaline Batteries

Font Maker Sues Universal Music Over ‘Pirated’ The Vamps Logo

An anonymous reader writes: Universal Music Group is being sued by HypeForType, which accuses the record label of using “pirated” copies of its fonts for the logo of The Vamps. The font is widely used for artwork, promotion material and merchandising of the popular British band, and the font creator is looking for a minimum of $1.25 million in damages. The font maker has filed a lawsuit accusing the major label of using its “Nanami Rounded” and “Ebisu Bold” fonts without permission. According to a complaint, filed in a New York federal court, Universal failed to obtain a proper license for its use, so they are essentially using pirated fonts. Read more of this story at Slashdot.

More:
Font Maker Sues Universal Music Over ‘Pirated’ The Vamps Logo

Amazon Suspends Sales of Blu Android Phones Due To Privacy Concerns

CNET reports: Amazon just put budget phone maker Blu in the penalty box. The online retailing giant told CNET that it was suspending sales of phones from Blu, known for making ultra-cheap Android handsets, due to a “potential security issue.” The move comes after security firm Kryptowire demonstrated last week how software in Blu’s phones collected data and sent it to servers in China without alerting people. Blu defended the software, created by a Chinese company called Shanghai Adups Technology, and denied any wrongdoing. A company spokeswoman said at the time it “has several policies in place which take customer privacy and security seriously.” She added there had been no breaches. Blu said it was in a process of review to reinstate the phones at Amazon. Read more of this story at Slashdot.

Originally posted here:
Amazon Suspends Sales of Blu Android Phones Due To Privacy Concerns

Hackers Vandalize Vegas Pool Party Club in ‘All Out War’

From a CNET report: Next to DJ Tiesto’s loud image on Wet Republic’s website sits a photo of a bikini model with a beard and an eye patch, with a simple message: “It’s all out war.” Not exactly the type of message you’d expect from a spot that advertises itself as a dance club that doubles as a pool party, but when hackers are in town for Defcon, everything seems to be fair game. The hacker convention, which is in its 25th year in Las Vegas, typically has hotels on alert for its three days of Sin City talk, demos and mischief. Guests are encouraged not to pick up any flash drives lying around, and employees are trained to be wary of social engineering — that is, bad guys pretending to be someone innocent and in need of just a little help. Small acts of vandalism pop up around town. At Caesars Palace, where Defcon is happening, the casino’s UPS store told guests it was not accepting any print requests from USB drives or links, and only printing from email attachments. Hackers who saw this laughed, considering that emails are hardly immune from malware. But the message is clear: During these next few days, hackers are going to have their fun, whether it’s through a compromised Wi-Fi network or an open-to-mischief website. Wet Republic’s site had two images vandalized, both for the “Hot 100” party with DJ Shift. The digital graffiti popped up early Friday morning, less than 24 hours after Defcon kicked off. Read more of this story at Slashdot.

View post:
Hackers Vandalize Vegas Pool Party Club in ‘All Out War’

US scientists have genetically modified human embryos

A team of scientists from Oregon have performed the first known instance of gene editing on human embryos in the US, according to MIT’s Tech Review . Shoukhrat Mitalipov from Oregon Health and Science University and his team have reportedly corrected defective genes that cause inherited diseases in “a large number of one-cell embryos” using CRISPR . Mitalipov refused to comment on the results of the project, but some of his collaborators already confirmed them to the publication. Up until now, reports about human-related gene editing usually come from outside the US. China, in particular, hasn’t been holding back when it comes to CRISPR experimentation. Scientists from the country were the first to use the technique on human embryos to repair a gene that causes fatal blood disorder. A team of oncologists from Sichuan University also conducted the first CRISPR human trial on a patient suffering from an aggressive form of lung cancer. In the US, Congress blocked clinical trials that involve genetically modifying human embryos. The practice raises a lot of ethical concerns, after all, with critics being especially worried that it could lead to designer babies. The National Academy of Sciences issued a report in early 2017 endorsing human germline modification, though, and that’s exactly what Mitalipov’s group did. Modifying an embryo to eradicate heritable diseases is called “germline engineering, ” because the child born from that embryo will pass on the changes with his or her germ (egg or sperm) cells. We won’t find out if that’s true with Mitalipov’s study, because it was never meant to be a clinical trial. The team didn’t allow the embryos to develop for more than a couple of days, and they were never meant to be implanted into a womb. What we’ve found out, however, is that it’s possible to use CRISPR to edit embryos without causing an error called “mosaicism.” In previous attempts by Chinese scientists, CRISPR caused an editing error wherein the DNA changes they made were only taken up by some, not all, of the cells the embryos developed. The Oregon group managed to avoid that problem by injecting CRISPR segments — DNA segments used to cut out unwanted genes — and sperm cells into the eggs at the same time. It’s unclear what illnesses were involved exactly, but they used sperm donated by subjects with various inheritable diseases. One of the scientists familiar with the study told Tech Review : “It is proof of principle that it can work. They significantly reduced mosaicism. I don’t think it’s the start of clinical trials yet, but it does take it further than anyone has before.” The team’s results are still pending publication, so we’ll likely hear more details about the study in the future. Source: MIT Technology Review

Read More:
US scientists have genetically modified human embryos

Fourth Ethereum Platform Hacked This Month: Hacker Steals $8.4 Million From Veritaseum Platform

An anonymous reader writes: “Veritaseum has confirmed today that a hacker stole $8.4 million from the platform’s ICO on Sunday, July 23, ” reports Bleeping Computer. “This is the second ICO hack in the last week and the fourth hack of an Ethereum platform this month. An ICO (Initial Coin Offering) is similar to a classic IPO (Initial Public Offering), but instead of stocks in a company, buyers get tokens in an online platform. Users can keep tokens until the issuing company decides to buy them back, or they can sell the tokens to other users for Ethereum. Veritaseum was holding its ICO over the weekend, allowing users to buy VERI tokens for a product the company was preparing to launch in the realm of financial services.” The hacker breached its systems, stole VERI tokens and immediately dumped them on the market due to the high-demand. The hacker made $8.4 million from the token sale, which he immediately started to launder. In a post-mortem announcement, Middleton posted online today, the Veritaseum CEO said “the amount stolen was miniscule (less than 00.07%) although the dollar amount was quite material.” The CEO also suspects that “at least one corporate partner that may have dropped the ball and [might] be liable.” Previous Ethereum services hacks include Parity, CoinDash, and Classic Ether Wallet. Read more of this story at Slashdot.

See the original post:
Fourth Ethereum Platform Hacked This Month: Hacker Steals $8.4 Million From Veritaseum Platform

Slackware, Oldest Linux Distro Still In Active Development, Turns 24

sombragris writes: July 17 marked the 24th anniversary of Slackware Linux, the oldest GNU/Linux still in active development, being created in 1993 by Patrick Volkerding, who still serves as its BDFL. Version 14.2 was launched last year, and the development version (Slackware-current) currently offers kernel 4.9.38, gcc 7.1, glibc 2.25, mesa 17.1.5, and KDE and Xfce as official desktops, with many others available as 3rd party packages. Slackware is also among the Linux distributions which have not adopted systemd as its init system; instead, it uses a modified BSD init which is quite simple and effective. Slackware is known to be a solid, stable and fast setup, with easy defaults which is appreciated by many Linux users worldwide. Phoronix has a small writeup noting the anniversary and there’s also a nice reddit thread. Read more of this story at Slashdot.

Visit site:
Slackware, Oldest Linux Distro Still In Active Development, Turns 24

Avast Now Owns CCleaner After Acquiring Piriform

An anonymous reader writes: Security firm Avast has acquired software firm Piriform. Not only does the acquired company make CCleaner, but many other solid programs too. In fact, the rest of Piriform’s library — Recuva, Speccy, and Defraggler — are staples of the Windows freeware community. “CCleaner is a leading brand in the market, used by 130 million people, including 15 million Android users. CCleaner has an extensive and extremely loyal community of tech-savvy users, who need to speed up and optimize their PC and Android experience. Avast will maintain the CCleaner brand of products along with Avast’s existing performance optimization products, Avast Cleanup and AVG Tune Up. With the addition of CCleaner, Avast has dramatically expanded its product offerings in the PC and smartphone optimization market reaching customers around the world who demand faster performance, ” says Avast. Vince Steckler, CEO of Avast explains, “We see many commonalities between CCleaner and Avast, allowing for great new products for our user bases. Avast and CCleaner are the top two downloaded products on popular download sites. They are both known by advanced users as focused on performance, so we believe there will be a great interest from our CCleaner customers in using Avast security products and vice versa. In today’s connected world, it’s all about speed and high performance, and with Piriform’s robust technology we can address this need perfectly. We look forward to working with the Piriform team to grow the business together.” Read more of this story at Slashdot.

More:
Avast Now Owns CCleaner After Acquiring Piriform