Apple iOS 11 security 'downgrade' decried as 'horror show'
Oleg Afonin, a security researcher for password-cracking forensic IT biz Elcomsoft, in a blog post on Wednesday called iOS 11 "a horror story" due to changes the fruit-themed firm made to its mobile operating system that stripped away a stack of layered defenses.
"Once an intruder gains access to the user’s iPhone and knows (or recovers) the passcode, there is no single extra layer of protection left," Alfonin explains in his post. "Everything (and I mean, everything) is now completely exposed. Local backups, the keychain, iCloud lock, Apple account password, cloud backups and photos, passwords from the iCloud Keychain, call logs, location data, browsing history, browser tabs and even the user’s original Apple ID password are quickly exposed."
Wondering why your internal .dev web app has stopped working?
Rather than connecting to private stuff on an internal .dev domain to pick up where they left off, a number of engineers and sysadmins are facing an error message in their web browser complaining it is "unable to provide a secure connection."
Chrome forces connections to all domains ending in .dev (as well as .foo) to use HTTPS via a HTTP Strict Transport Security (HSTS) header. This is part of Google's larger and welcome push for HTTPS to be used everywhere for greater security.
Facebook’s New Captcha Test: 'Upload A Clear Photo of Your Face'
According to a screenshot of the identity test shared on Twitter on Tuesday and verified by Facebook, the prompt says: “Please upload a photo of yourself that clearly shows your face. We’ll check it and then permanently delete it from our servers.”
“You Can’t Log In Right Now. We’ll get in touch with you after we’ve reviewed your photo. You’ll now be logged out of Facebook as a security precaution.”
HP stealthily installs new spyware called HP Touchpoint Analytics Client
Dubbed “HP Touchpoint Analytics Service,” HP says it “harvests telemetry information that is used by HP Touchpoint’s analytical services.” Apparently, it’s HP Touchpoint Analytics Client version 4.0.2.1435.
Martin Brinkmann on ghacks has a detailed accounting of the spyware and how to remove it. He gives step-by-step instructions for disabling the HP Touchpoint Analytics Client in your Services listing, as well as deleting the HP Touchpoint Manager.
EU settles dispute over major weedkiller glyphosate
EU countries have voted to renew the licence of glyphosate, a widely used weedkiller at the centre of environmental concerns.
The UK was among the states in favour of glyphosate renewal. Germany and Poland were also among them - though they had previously abstained.
Critics say widespread use of glyphosate reduces biodiversity, by killing plants that are essential for many insects and other animals.
Imgur just learned 1.7M accounts got exposed in 2014 hack
Imgur said Friday it first learned of the years-old hack on Thursday from a security researcher.
Imgur said the hack is still under investigation but believes an older password encryption system in use at the time of the hack allowed hackers to breach the system using a brute force attack. The company said it updated its algorithm last year.
Degree Inflation Hurting Bottom Line of U.S. Firms, Closing Off Economic Opportunity for Millions of Americans
According to new research released today, more than six million middle-skills jobs in the U.S. are now at risk of “degree inflation”—the practice of preferring or requiring a college degree for jobs that were traditionally held by middle-skills workers.
The trend impacts positions such as supervisors, support specialists, sales representatives, inspectors and testers, clerks, as well as secretaries and administrative assistants. Those jobs were traditionally held by many middle-class Americans without a college degree. When the same job is posted today with the minimum education requirement of a college degree, it is placed beyond the reach of Americans who may not have a college degree, but do have relevant experience.
End of an open source era: Linux pioneer Munich confirms switch to Windows 10
Now Munich will begin rolling out a Windows 10 client from 2020, at a cost of about €50m, with a view to Windows replacing LiMux across the council by early 2023.
Nevertheless, despite Munich running both systems side-by-side for more than a decade, today the council says this dual-system setup is unsustainable, hence the need to return to Windows.
While staff have reported intermittent problems with IT at the council, past surveys have found only a minority of staff wanted to return to Windows and Microsoft Office.
Vulnerability Found In Amazon Key, Again Showing How Dumber Tech Is Often The Smarter Option
When Amazon introduced its new $250 Smart Key system a few weeks back, most people were understandably skeptical. The product promises to securely let Amazon delivery folk unlock your front door and place packages inside, with an accompanying camera that tracks every move the deliveryman makes to ensure personal security.
Researchers at Rhino Security Labs demonstrated that by using a simple program within WiFi range, the camera can be not only disabled, but frozen -- presenting the image of a closed door while burglars happily pilfer your possessions.
Turkeys Are Twice as Big as They Were in 1960
Since 1960, the weight of turkeys has gone up about a quarter of a pound each year. The average weight of a turkey has gone from 15.1 pounds in 1960 to 31.1 pounds in 2017.
While turkeys’ overall mortality rates do not seem to be higher than earlier generations, they—like our ever larger chickens—do suffer some new kinds of health problems. Their bodies can struggle to hold up their weight, leading to leg problems.