Remote Linksys 0-Day Root Exploit Uncovered

Orome1 writes “DefenseCode researchers have uncovered a remote root access vulnerability in the default installation of Linksys routers. They contacted Cisco and shared a detailed vulnerability description along with the PoC exploit for the vulnerability. Cisco claimed that the vulnerability was already fixed in the latest firmware release, which turned out to be incorrect. The latest Linksys firmware (4.30.14) and all previous versions are still vulnerable.” Read more of this story at Slashdot.

Read More:
Remote Linksys 0-Day Root Exploit Uncovered

Skype 6.1 for Windows adds Outlook integration, (slightly) refreshed toolbar

Skype’s latest update has arrived on Windows (although not Windows 8) and, likely due to its status within Microsoft , it’s integrated Outlook features into version 6.1 alongside some cosmetic refreshes. You can now get access to your Skype contacts’ status, mood message and other contact details within Outlook contact cards, with the same profiles now appearing within the Skype program. You also call any phone number from within Outlook , with Skype already doing the legwork of connecting to any contact whose details are stored within your email client. Better still, if you’ve already got them added as a contact in Skype, you can send instant messages and make or video calls from the outset. These features will work on Outlook 2010, while it’s now easier to add new contacts to Skype when you don’t already have a someone in your contact list. You can pick up the new integrated app (with a gently tweaked toolbar) at the source. ( Update: We’ve also been informed that the Mac version has been bumped up to version 6.1, and you’ll now be able to call direct from Safari webpages.) Filed under: Software , Microsoft Comments Source: Skype

See the original post:
Skype 6.1 for Windows adds Outlook integration, (slightly) refreshed toolbar

Microsoft moves another 20 million Windows 8 licenses over holiday season, 100 million total app downloads

Ready for your quarterly dose of Windows 8 sales figures? After hearing that some 40 million licenses had been sold through last November , the company’s CFO and CMO for Windows Tammi Reller announced here at CES that Microsoft has sold 60 million Windows 8 licenses to date. According to her, that number includes “sell in to OEMs for new PCs,” but she didn’t clarify whether or not it includes blockbuster deals like the $617 million one it recently landed with the US Army, Air Force and DISA. Reller also noted that the numbers are “roughly in line with where we would have been with Windows 7.” Moving 20 million of anything over a single holiday season is pretty impressive, and we’ll be keeping an ear out for more details should they emerge. Update : Microsoft also announced that “since the opening of the Windows Store the number of apps has quadrupled and it passed the 100 million app download mark – just two months after general availability.” Filed under: Software , Microsoft Comments Source: ZDNet , Windows Blog

See the original post:
Microsoft moves another 20 million Windows 8 licenses over holiday season, 100 million total app downloads

Loss of a Single Laptop Leads to $50k Fine Against Idaho Hospice

netbuzz writes “Losing a single laptop containing sensitive personal information about 441 patients will cost a non-profit Idaho hospice center $50,000, marking the first such HIPAA-related penalty involving fewer than 500 data-breach victims. Yes, the data was not encrypted. ‘This action sends a strong message to the health care industry that, regardless of size, covered entities must take action and will be held accountable for safeguarding their patients’ health information,’ says the Department of Health and Human Services.” Read more of this story at Slashdot.

Read the original:
Loss of a Single Laptop Leads to $50k Fine Against Idaho Hospice

HP’s Tiny Pocket Playlist Records Hulu or Netflix Video Then Shares It via Wi-Fi

This sleek, simple HP pebble is more powerful than it looks. The Pocket Playlist is a portable storage device which can store and record media from a host of sources, then stream it to five devices over Wi-Fi, no internet connection required. More »

Taken from:
HP’s Tiny Pocket Playlist Records Hulu or Netflix Video Then Shares It via Wi-Fi

A Time Warner Tie-In Just Turned Your Roku Into a Full-On Cable Box

Verge is reporting that Roku and Time Warner have announced that the cable company’s app—which offers up more than 300 channels of live TV—is coming to the little purple puck. That essentially turns the $50 streaming device into a full-on cable box. More »

Excerpt from:
A Time Warner Tie-In Just Turned Your Roku Into a Full-On Cable Box

Windows RT ‘code integrity mechanism’ gets sidestepped, allows unsigned desktop apps to run

As Microsoft continues to promote and push its RT apps and programs, Windows tinkerer Clrokr at SurfSec has detailed how he managed to circumvent Redmond’s controls on what can run on Windows RT . It’s worth noting that this may not lead to a broad jailbreak solution, capable of running any desktop program, but it does demonstrate an existing vulnerability. Clrokr outlines how he tinkered with the part of the RAM that instructs the OS whether it should run unsigned, authenticode signed, Microsoft(8) or Windows(12) signed apps. The default setting is for the latter two options, whereas changing this entry allows those other app types to run. If you know your Windows kernel, you can check the full details and code over at the source. Filed under: Tablets , Software , Microsoft Comments Via: @stroughtonsmith (Twitter) Source: Surfsec

View article:
Windows RT ‘code integrity mechanism’ gets sidestepped, allows unsigned desktop apps to run