Showing posts with label Crime. Show all posts
Showing posts with label Crime. Show all posts

Thursday, May 31, 2012

Aussies face off on social networking

Facial

Facebook and other social networking sites are all about putting names to faces, but half of Australians do not want them to use facial recognition technology to get the job done.

A national Newspoll of more than 1200 people found 95 per cent of those surveyed believed it was acceptable for airport officials to use facial recognition software to identify passengers on police watchlists.

Some 92 per cent said police should be able to use the same technology to identify people from CCTV footage or videos shot by the public.

But only 38 per cent trusted Facebook with the technology, and 50 per cent said it would be unacceptable for that site to use facial recognition technology to make it easier to tag users in photos posted online.

Story source: www.bigpond.com

Saturday, March 3, 2012

The Safe Way to Save Data Online

cloud_computing_lgMaybe you’ve seen this error message on your computer: “Oops … the system encountered a problem (#700).” Or this one: “Arrggh! Our tubes are clogged!”. Or, sometimes most distressing of all, a notice that a site will be shut down.

These are no ordinary messages. They’re attached to online services that store your mail and contacts (Gmail); photo collection (Flickr); music (Lala) and more. When the computer servers on these sites -- and others like them -- go down, you lose access to your data, and you can’t do anything but wait.

More people are storing information on the Web than ever before -- 143 million in 2009 alone, according to ABI Research. That number is expected to grow to 160.6 million by 2015. Naturally, companies are coming out with new services that store files away from your computer and external drives, or “in the cloud.”

The rewards -- and risks -- of cloud computing
With this rush to offer cloud services comes unregulated risks that have caught the attention of the U.S. Federal Trade Commission (FTC). The FTC has set its sights on the question of who owns the data on the servers and what happens to that data if you decide to discontinue using that service. Earlier this year, the FTC asked another government agency, the Federal Communications Commission (FCC), to look into what cloud computing means for individuals -- and whether the government needs to step in to protect you from cloud computing service providers.

“The storage of data on remote computers may ... raise privacy and security concerns for consumers,”wrote David Vladeck, head of the FTC's Consumer Protection Bureau, in a letter to the FCC. The FTC is concerned that the collection of data stored on a server could mean that your personal information is aggregated with other consumers’ to draw conclusions and sell to advertisers.

Although these issues still have months -- if not years -- to be resolved, cloud services are still a viable option for data storage. You just need to know how to keep your data safe.
How to protect yourself

“There are most definitely ways to protect yourself as a consumer,” says Jeffrey Payne, CEO of Coveros, a security consulting firm that analyzes software for risks. “While some risks are difficult to address, others are easily dealt with by anyone savvy enough to use Gmail.”

The World Privacy Forum suggests taking these steps to understand a service provider’s plans for your data:

  • Read the Terms of Service before placing any information in the cloud. If you don’t understand the Terms of Service, consider using a different cloud provider.
  • Don’t put anything in the cloud you would not want the government or a private litigant to see.
  • Pay close attention if the cloud provider reserves rights to use, disclose or make your information public while you’re using the service.
  • Read the privacy policy before placing your information in the cloud. If you don’t understand the policy, consider using a different provider.
  • Find out if, when you remove your data from the service, the cloud provider still retains rights to your information. Consider whether that makes a difference to you.
  • Ask if the cloud provider gives advance notice of any change of terms in the terms of service or privacy policy.

According to a study by Harris Interactive, 80 percent of respondents had security concerns with cloud computing. Knowing what the risks are -- and how to avoid them -- will make cloud computing a breeze.

Copyright (c) 2010 Studio One Networks. All rights reserved. Story by Laura Rich

Tuesday, November 29, 2011

Internet a 'surveillance machine'

JulianWikiLeaks founder Julian Assange has blasted the mainstream media, Washington, banks and the internet itself as he addressed journalists in Hong Kong via videolink from house arrest in England.

Fresh from accepting a Walkley award for journalism on Sunday, Assange spoke to the News World Summit in Hong Kong on Monday before keeping a regular appointment with the police.

He defended his right to call himself a journalist and said WikiLeaks' next 'battle' would be to ensure that the internet does not turn into a vast surveillance tool for governments and corporations.

'Of course I'm a goddamn journalist,' he responded with affected frustration when a moderator of the conference asked if he was a member of the profession.

He said his written record spoke for itself and argued that the only reason people kept asking him if he was a journalist was because the United States government wanted to silence him.

'The United States government does not want legal protection for us,' he said, referring to a US Justice Department investigation into his whistleblower website for releasing secret diplomatic and military documents.

The former hacker criticised journalists and the mainstream media for becoming too cosy with the powerful and secretive organisations they were supposed to be holding to account.

In a 40-minute address, he also accused credit card companies such as Visa and MasterCard of illegally cutting WikiLeaks off from funding under a secret deal with the White House.

'Issues that should be decided in open court are being decided in back rooms in Washington,' he said.

The internet itself had become 'the most significant surveillance machine that we have ever seen', Assange said in reference to the amount of information people give about themselves online.

'It's not an age of transparency at all ... the amount of secret information is more than ever before,' he said, adding that information flows in but is not flowing out of governments and other powerful organisations.

'I see that really is our big battle. The technology gives and the technology takes away,' he added.

The anti-secrecy activist then held up a handwritten sign from an aide telling him to 'stop' talking or he would be late for a mandatory appointment with police.

Assange, 40, is under house arrest in England pending the outcome of a Swedish extradition request over claims of rape and sexual assault made by two women. He says he is the victim of a smear campaign.

Thursday, November 10, 2011

Top 5 Social Media Scams

social_media_scams_lgWe’re wired to be social creatures, and sites like Twitter and Facebook have capitalized on this to great success. According to its COO Sheryl Sandberg, Facebook draws 175 million logins every day.

But with this tremendous popularity comes a dark side as well. Virus writers and other cybercriminals go where the numbers are -- and that includes popular social media sites. To help you avoid a con or viral infection, we’ve put together this list of the top five social media scams.

5. Chain Letters
You’ve likely seen this one before -- the dreaded chain letter has returned. It may appear in the form of, "Retweet this and Bill Gates will donate $5 million to charity!" But hold on, let’s think about this. Bill Gates already does a lot for charity. Why would he wait for something like this to take action? Answer: He wouldn’t. Both the cause and claim are fake.

So why would someone post this? Good question. It could be some prankster looking for a laugh, or a spammer needing "friends" to hit up later. Many well-meaning people pass these fake claims onto others. Break the chain and inform them of the likely ruse.

4. Cash Grabs
By their very nature, social media sites make it easy for us to stay in touch with friends, while reaching out to meet new ones. But how well do you really know these new acquaintances? That person with the attractive profile picture who just friended you -- and suddenly needs money -- is probably some cybercriminal looking for easy cash. Think twice before acting. In fact, the same advice applies even if you know the person.

Picture this: You just received an urgent request from one of your real friends who "lost his wallet on vacation and needs some cash to get home." So, being the helpful person you are, you send some money right away, per his instructions. But there’s a problem: Your friend never sent this request. In fact, he isn’t even aware of it. His malware-infected computer grabbed all of his contacts and forwarded the bogus email to everyone, waiting to see who would bite.

Again, think before acting. Call your friend. Inform him of the request and see if it's true. Next, make sure your computer isn't infected as well.

3. Hidden Charges
"What type of STAR WARS character are you? Find out with our quiz! All of your friends have taken it!" Hmm, this sounds interesting, so you enter your info and cell number, as instructed. After a few minutes, a text turns up. It turns out you’re more Yoda than Darth Vader. Well, that’s interesting … but not as much as your next month’s cell bill will be. You’ve also just unwittingly subscribed to some dubious service that charges $9.95 every month.

As it turns out, that "free, fun service" is neither. Be wary of these bait-and-switch games. They tend to thrive on social sites.

2. Phishing Requests
"Somebody just put up these pictures of you drunk at this wild party! Check 'em out here!" Huh? Let me see that! Immediately, you click on the enclosed link, which takes you to your Twitter or Facebook login page. There, you enter your account info -- and a cybercriminal now has your password, along with total control of your account.

How did this happen? Both the email and landing page were fake. That link you clicked took you to a page that only looked like your intended social site. It's called phishing, and you've just been had. To prevent this, make sure your Internet security includes antiphishing defenses. Many freeware programs don't include this essential protection.

1. Hidden URLs
Beware of blindly clicking on shortened URLs. You'll see them everywhere on Twitter, but you never know where you're going to go since the URL ("Uniform Resource Locator," the Web address) hides the full location. Clicking on such a link could direct you to your intended site, or one that installs all sorts of malware on your computer.

URL shorteners can be quite useful. Just be aware of their potential pitfalls and make sure you have real-time protection against spyware and viruses.

Bottom line: Sites that attract a significant number of visitors are going to lure in a criminal element, too. If you take security precautions ahead of time, such as using antivirus and anti-spyware protection, you can defend yourself against these dangers and surf with confidence.

Copyright (c) 2010 Studio One Networks. All rights reserved.

Source: Norton Anti Virus

Saturday, September 10, 2011

Cybercrime to get even bigger - expert

CybercrimeAn expert says cybercrime is soaring, it already costs Australians more than burglary and will only increase as more people use smartphones.

Marian Merritt, internet safety advocate with computer security company Norton, said a new global study showed 69 per cent of adults around the world experienced cybercrime in their lifetime, much more than previously thought because this type of crime mostly isn't reported.

'Ten per cent of us have already experienced mobile device related cybercrime. That's cybercrime on our cellphones, tablets and other devices we carry with us as we go about our business,' she said.

'It's only going to get bigger because we are all doing more and more with our mobile devices,' she said.

Cybercrime on mobile devices has produced a new word: smishing, or SMS-based phishing which aims to gain private information.

In some countries, many people go straight to mobile devices for all their computing needs, bypassing the home PC route. More and more, mobile devices are being used for routine financial transactions.

'We are going to walk up to buy coffee and use our mobile device to make that financial transaction, we are going to check our bank balance and we are going to make purchases,' she said.

'This is what's coming in the future and we need it to be safe. This is truly a phenomenon we need to take note of.'

Ms Merritt said part of the problem was that users didn't treat smartphones in the same way they treated their home PC.

'We are all playing little bird-related games on them. We put funny stickers on the back of them. They don't seem like serious devices that need security but boy they really are,' she said.

In its fourth global review of cybercrime, Norton surveyed the experiences of 20,000 people in 24 countries including 802 in Australia.

Taking into account actual financial losses and other factors such as time lost, the study puts the global cost at $US388 billion over the last year. That makes cybercrime bigger than the combined global market for marijuana, cocaine and heroin combined.

For Australia, that's a direct cost of $1.8 billion and another $2.8 billion in time spent resolving cybercrime issues. On that basis, cybercrime costs Australia more than the traditional crimes of burglary ($2.2 billion) and assault ($1.4 billion).

The most common form of cybercrime relates to computer virus and malware infection (57 per cent of respondents), followed by online credit card fraud (13 per cent) and hacking of social network data (12 per cent). Worryingly, the survey said, most of this occurred in the last year.

Ms Merritt suggests some simple precautions:

- use security software and keep it up to date (Norton is of course a major vendor).

- use a password for a mobile device (something more sophisticated than 1234) so it can't be readily used if lost or stolen.

Wednesday, August 31, 2011

Facebook pays $40,000 to bug spotters

facebook-bug.topFacebook wants you to try to hack into its site -- and if you succeed, it will pay you for the details.

Facebook said this week that that it has paid out more than $40,000 under its new "bug bounty" security initiative. Launched three weeks ago, Facebook's program invites security researchers -- both the professional kind and hacker hobbyists -- to send it the details of any Facebook vulnerabilities that they uncover. If the report checks out, Facebook will pay a finder's fee of at least $500.

It's willing to go higher for extra-impressive bug spotting.

"We've already paid a $5,000 bounty for one really good report," Facebook Chief Security Officer Joe Sullivan wrote in a blog post. "One person has already received more than $7,000 for six different issues flagged."

Although the social networking has its own security team, Facebook launched its bug bounty program to tap into the collective wisdom of the site's 750 million users.

"We hire the best and brightest, and have implemented numerous protocols," Sullivan wrote. "We realize, though, that there are many talented and well-intentioned security experts around the world who don't work for Facebook."

Researchers from more than 16 countries have successfully submitted bounty bugs, Facebook said. Its public "thank you" list names dozens of contributors.

Facebook also took pains to assure bug-hunters that it won't take any legal action against those who submit bugs, even if they were uncovered through less-than-legal routes into Facebook's systems.

That's often how hackers find vulnerabilities, but even those without any ill intent -- so-called "white-hat hackers" -- can land in hot water with companies if they tell them about their intrusion.

"We worked with several third-party groups to ensure that the language in our policy protects researchers and makes clear our intent to work with, not punish, those who report information," Sullivan wrote.

The Electronic Frontier Foundation, an advocacy group that often weighs in on Internet-related legal issues, is a fan of that approach.

"We hope to see others follow Facebook's lead and go even further," the EFF wrote last year about Facebook's security policy. "The more transparent companies are about their approaches to vulnerability disclosure -- and the more they encourage users to come forward -- the more often they will learn about problems that need to be fixed." 

Story source: www.cnn.com

Saturday, July 23, 2011

Govt to consider new Facebook law

FacebookThe federal government says education, rather than legislation, is the best way to protect children using Facebook and other social media.

But the government has agreed to look at proposals being prepared by South Australia, including tighter age limits on use of the social media and giving parents more rights to access their children's Facebook accounts.

The SA government will prepare a discussion paper on the issue after raising its concerns at a meeting of state and federal attorneys-general in Adelaide on Friday.

Federal Justice Minister Brendan O'Connor said the government was loath to legislate where legislation was not going to work.

'I think education is the key,' he said.

'We need to make sure young people are informed about the potential risks.

'The cyber world is a magnificent place, it's a fantastic educational tool, it's a fantastic place for people to engage socially.

'But the internet is not a benign playground. There are potential threats to young people in particular.'

South Australian Attorney-General John Rau said Australia was going through a revolution in the way people consumed and generated information.

'That is a technologically driven change that is way ahead of the legal system and probably the thinking of most governments around the world and certainly in this country,' he said.

'We are grappling with changes that are moving more quickly than most people would have thought possible only a few years ago.'

SA's proposals are likely to include a provision to raise the age for Facebook users and to also require the site to seek proof of age.

They will also consider allowing greater parental access.

Facebook currently requires users to be aged at least 13, but there is no requirement to provide proof of age.

A SA mother found recently that her teenage daughter had uploaded inappropriate pictures of herself to her Facebook page but the mother was prevented by Facebook from removing them.

Mr Rau said that case highlighted the concerns of many parents, while Mr O'Connor said more needed to be done to educate and inform young people of the dangers associated with posting material online.

'People need to think carefully about what they upload, what they put onto their Facebook and social websites,' he said.

Friday, July 8, 2011

Security holes found in iPhones, iPad

Iphone4A new security hole has opened up in Apple's iPhone, iPad and iPod Touch devices, raising alarms about the susceptibility of some of the world's hottest tech gadgets to hacker attacks.

Flaws in the software running those devices came to light after a German security agency warned that criminals could use them to steal confidential data off the devices.

Apple, the world's largest technology company by market value, said on Thursday that it is working on a fix that will be distributed in an upcoming software upgrade.

With the security hole, an attacker can get malicious software onto a device by tricking its owner into clicking an infected PDF file.

Germany's Federal Office for Information Security called the flaws 'critical weaknesses' in Apple's iOS operating system.

Internet-connected mobile devices are still subject to fewer attacks than personal computer, but they could eventually prove a juicy target for hackers because they are warehouses of confidential banking, email, calendar, contact and other data.

Software vulnerabilities are discovered all the time. What makes the latest discovery alarming is that the weaknesses are already being actively exploited - albeit in a consensual way.

The latest concerns were prompted by the emergence of a new version of a program to allow Apple devices to run any software and circumvent the restrictions that Apple notoriously retains over software distributed through its online store.

There are security risks of doing so, but many people find it liberating to install their own software.

Although this program is something people would seek out, the weaknesses that its authors discovered could easily be used for malice, security experts say.

There is an irony in the controversy: The site distributing the program offers a fix for the problem, but to get the fix, a user has to first install the program in question. So a user must defy Apple's restrictions to get the protection until Apple comes up with a fix of its own.

Charlie Miller, a prominent hacker of Apple products, said it likely took months to develop the program to break Apple's restrictions, but a criminal might need only a day or two to modify it for nefarious purposes.

Apple spokeswoman Bethan Lloyd said Thursday the company is 'aware of this reported issue and developing a fix.' She would not say when the update will be available.

One reason for gadget owners to take heart: Attacks on smartphones and other internet gadgets are still relatively rare. One reason is PC-based attacks are still highly lucrative.

Still, vulnerabilities such as the ones Apple is confronting show that consumers should take care of securing their mobile devices as they would their home computer.

'These things are computers - they're just small, portable computers that happen to have a phone tacked onto them,' said Marc Fossi, manager of research and development for Symantec Security Response.

'You've got to treat them more like a computer than a phone. You have to be aware of what's going on with these devices.'

Friday, June 17, 2011

Top 5 Social Media Scams

scamsWe’re wired to be social creatures, and sites like Twitter and Facebook have capitalized on this to great success. According to its COO Sheryl Sandberg, Facebook draws 175 million logins every day.

But with this tremendous popularity comes a dark side as well. Virus writers and other cybercriminals go where the numbers are -- and that includes popular social media sites. To help you avoid a con or viral infection, we’ve put together this list of the top five social media scams.

5. Chain Letters
You’ve likely seen this one before -- the dreaded chain letter has returned. It may appear in the form of, "Retweet this and Bill Gates will donate $5 million to charity!" But hold on, let’s think about this. Bill Gates already does a lot for charity. Why would he wait for something like this to take action? Answer: He wouldn’t. Both the cause and claim are fake.

So why would someone post this? Good question. It could be some prankster looking for a laugh, or a spammer needing "friends" to hit up later. Many well-meaning people pass these fake claims onto others. Break the chain and inform them of the likely ruse.

4. Cash Grabs
By their very nature, social media sites make it easy for us to stay in touch with friends, while reaching out to meet new ones. But how well do you really know these new acquaintances? That person with the attractive profile picture who just friended you -- and suddenly needs money -- is probably some cybercriminal looking for easy cash. Think twice before acting. In fact, the same advice applies even if you know the person.

Picture this: You just received an urgent request from one of your real friends who "lost his wallet on vacation and needs some cash to get home." So, being the helpful person you are, you send some money right away, per his instructions. But there’s a problem: Your friend never sent this request. In fact, he isn’t even aware of it. His malware-infected computer grabbed all of his contacts and forwarded the bogus email to everyone, waiting to see who would bite.

Again, think before acting. Call your friend. Inform him of the request and see if it's true. Next, make sure your computer isn't infected as well.

3. Hidden Charges
"What type of STAR WARS character are you? Find out with our quiz! All of your friends have taken it!" Hmm, this sounds interesting, so you enter your info and cell number, as instructed. After a few minutes, a text turns up. It turns out you’re more Yoda than Darth Vader. Well, that’s interesting … but not as much as your next month’s cell bill will be. You’ve also just unwittingly subscribed to some dubious service that charges $9.95 every month.

As it turns out, that "free, fun service" is neither. Be wary of these bait-and-switch games. They tend to thrive on social sites.

2. Phishing Requests
"Somebody just put up these pictures of you drunk at this wild party! Check 'em out here!" Huh? Let me see that! Immediately, you click on the enclosed link, which takes you to your Twitter or Facebook login page. There, you enter your account info -- and a cybercriminal now has your password, along with total control of your account.

How did this happen? Both the email and landing page were fake. That link you clicked took you to a page that only looked like your intended social site. It's called phishing, and you've just been had. To prevent this, make sure your Internet security includes antiphishing defenses. Many freeware programs don't include this essential protection.

1. Hidden URLs
Beware of blindly clicking on shortened URLs. You'll see them everywhere on Twitter, but you never know where you're going to go since the URL ("Uniform Resource Locator," the Web address) hides the full location. Clicking on such a link could direct you to your intended site, or one that installs all sorts of malware on your computer.

URL shorteners can be quite useful. Just be aware of their potential pitfalls and make sure you have real-time protection against spyware and viruses.

Bottom line: Sites that attract a significant number of visitors are going to lure in a criminal element, too. If you take security precautions ahead of time, such as using antivirus and anti-spyware protection, you can defend yourself against these dangers and surf with confidence.

Copyright (c) 2010 Studio One Networks. All rights reserved.

Monday, May 9, 2011

Four injured in iPad fight in Beijing

IpadFour people were taken to hospital and a glass door smashed as a near-riot broke out at Beijing's top Apple store among crowds rushing to snap up the popular iPad 2 tablet computer, state press said Sunday.

Angry consumers began rushing the store on Saturday afternoon after a "foreign" Apple employee allegedly stepped into the crowd to push and beat people suspected of queue jumping, the Beijing News said.

After the employee retreated back into the store, a crowd of consumers smashed the glass front door and shoved security guards as they surged forward in anger over the alleged beatings, the report said.

Consumers have lined up for hours at Apple stores in Beijing and Shanghai since the iPad 2, the updated version of the tablet computer, went on sale in the world's biggest Internet market on Friday.

The store in Beijing's chic Sanlitun commercial district closed early Saturday because of the altercation, but according to a voice recording on the store's phone was open for business Sunday.

Apple officials were not immediately available for comment when telephoned by AFP.

Police were investigating the incident and have interviewed four people hospitalised with injuries, the Beijing News said.

Lines for the popular iPad 2 have grown so long that people have begun selling their places in the queue, while a secondary market has also developed with consumers reselling their tablet computers for profit after leaving the store, the report said.

Friday, February 25, 2011

'Hacked' boy's Facebook page: 4000 respond to open house party

FacebookQueensland Police have issued a warning about social network security after a teenager's Facebook site was hacked and thousands of people responded to an open house party.

Police were told about the situation by Twitter and contacted the South Brisbane family who said they were not holding a party this weekend and were unaware their teenage son's Facebook site had been tampered with.

The boy's father said it was a warning to them about internet security.

He said his son panicked and told him his Facebook site had been hacked when the number of people saying they were coming to the party started to climb, eventually reaching around 4,000.

"The first thing I thought of was, 'how am I going to be able to control this', because the numbers of people coming just kept climbing, it was crazy," the father said in a statement.

"I told my son that he better tell everyone that the party wasn't happening and no-one was coming in the front gate."

"This is a real eye-opener for us. We immediately posted online that the party has been cancelled and the account had been hacked," the father said.

Police said they would be on hand at the weekend to make sure would-be partygoers did not disturb the people living at the address.

Story source: www.smh.com.au

Mobile SocNet Use Grows

comscore-fastest-growing-mobile-categories-2010-feb-2011.JPGSocial networking is among the fastest-growing US mobile categories by total audience, according to a new report from comScore. Data from “The 2010 Mobile Year in Review” indicates social networking reached 57.9 million US mobile users in December 2010, up 56% from a little less than 40 million in December 2009.

SocNet Category Has 2nd Largest Mobile Audience

This year-over-year growth rate compares favorably with the growth rates of other leading mobile categories such as classifieds (55%), mobile retail (53%) and general reference (47%). It is also worth noting that social networking had the third-largest audience of leading mobile categories in December 2010, slightly trailing weather and approximately 10% less than personal email, which had an audience of more than 60 million and a 39% growth rate.

SocNet Smartphone Usage More Pronounced

comscore-smartphone-socnet-2010-feb-20111.JPGAmong smartphone users, social networking usage was even more pronounced. In December 2010, 57.3% of smartphone users in the U.S. (36.2 million users) accessed social networking sites or blogs at least once during the month, an increase of about 24% from 46.1% the previous year.

European usage of social networking via smartphone also showed impressive growth, with 37.8% of smartphone users accessing social networking sites or blogs in the month (27.5 million users), up 91% from 14.4% the previous year.

Facebook Drives Mobile Social Networking

comscore-mobile-socnet-brand-2010-feb-2011.JPGThe growth of social networking via mobile devices is mainly driven by Facebook, which reached 90% of US social media users and 85% of European users, and grew more than 120% during the past year in both regions.

YouTube and Twitter hold second and third position in the US as well as Europe, but the European market shows much stronger growth. In Europe, YouTube grew 95% between December 2009 and December 2010, and the number of mobile Twitter users grew 195%.

The most significant continental difference in 2010 is the trend for MySpace, which declined 20% in the US but gained 32% in Europe.

Close to Half of US Mobile Subscribers Use Mobile Media

In December 2010, nearly 47% of mobile subscribers in the US were mobile media users (browsed the mobile web, accessed applications, downloaded content or accessed the mobile Internet via SMS), up about 17% from the previous year, according to other report data. Data from “The 2010 Mobile Year in Review” indicates the growth in mobile media usage is largely attributable to the growth in smartphone adoption, 3G/4G device ownership and the increasing ubiquity of unlimited data plans, all of which facilitate the consumption of mobile media.

Thursday, January 27, 2011

Zuckerberg's Facebook fan site hacked

mark ZuckerbergA Facebook fan page dedicated to the site's creator, Mark Zuckerberg, was hacked Tuesday morning. The hack was relatively benign, only updating a single fake status update as the young billionaire, but was another embarrassing security lapse for a company often criticized for being too open with user data.

A status update from Zuckerberg on the fan page read: "Let the hacking begin: If facebook needs money, instead of going to the banks, why doesn’t Facebook let its users invest in Facebook in a social way? Why not transform Facebook into a ‘social business’ the way Nobel Price (six) winner Muhammad Yunus described it? http://bit.ly/fs6rT3 What do you think? #hackercup2011"

While the post was only up for a matter of minutes, over 1,800 people "Liked" the status update and a debate about its merits over 400 comments-long began beneath it. More than 2.8 million people are members of the fan page.

Facebook removed the entire fan page for a few hours after the fake update was posted, but the page was live again later in the day. The latest update currently posted to the page is from Dec. 15, 2010.

The "Hackercup2011" hash-tag in the post is a reference to Facebook's annual programming competition, but doesn't seem to bear much relevance to the update.

Meanwhile, Internet security experts are speculating about how the hack might have been perpetrated. Everything from Firesheep — a free Firefox Internet browser extension that allows users to take control of other people's password-protected pages like Facebook when on an unsecured network — to Zuckerberg's own weak password choices are being blamed.

"It is difficult to know exactly why or how Zuckerberg’s fan page was hacked. He could have also had some malware on his computer which grabbed his username and password when he logged on and then hackers used the information to attack the page," Internet security expert Graham Cluly told the Telegraph newspaper in London. "I think this hack is really embarrassing for Facebook, because if Mark Zuckerberg can be hacked, other users are just as vulnerable."

As of Wednesday, Facebook had declined to comment on the hack, though a post on the company's blog on Wednesday identified numerous new efforts to boost security on the site.

Story source: http://www.torontosun.com

Thursday, January 20, 2011

Protect Your Online Security When Using Wi-Fi Hotspots

wifizonelogoWhether you’re heading home for the holidays or simply escaping to a warmer clime for a little sunshine, you’ll probably want to stay connected while you’re traveling from point A to point B. Public wi-fi access is everywhere—in cafes and even in the friendly skies.

Here are some tips to protect your online security when you use public wi-fi.

A public hotspot is a wireless network set up for shared Internet access. The hotspot host buys a wireless access point, connects that device to the Internet, and broadcasts its signal within a public place. Anyone with a wireless card within range of the host’s access point can access its network and use the Internet.

Most proprietors make it quick and easy for customers to use their hotspots. But by minimizing login requirements and avoiding encryption compatibility issues, they disable much of the security built into the wireless device.

This is a notable tradeoff. Without encryption, your plain text data passes unprotected through the air as radio signals. Those signals can be intercepted by anyone with a receiver and some basic, widely available tools.

When the hotspot you’re on doesn’t use encryption, someone who intercepts your data can read whatever you’ve sent--whether it’s a private email or a user name and password combination.

Beware of Cybercriminals

Although it’s unlikely that nosy hotspot neighbors will put your privacy at risk, you should be on the alert for the most serious hotspot danger: a cybercriminal.

These technically savvy hackers have the tools, skills, and patience to work around the limited protection measures some hotspot hosts take.

For example, some cybercriminals have learned to use social engineering methods to con hotspot users into divulging sensitive information. By wi-phishing, a cybercriminal can pre-empt a hotspot’s wireless signal with one of his own, spoof the legitimate network name, and replace the sign-up page with a look-alike. You’ll end up supplying your information to this evil twin, not the hotspot provider.

Once you’re on the spoofed hotspot, you may be redirected to other fraudulent or virus-laden Web sites, or even be tricked into setting up a “new account” and providing credit card numbers or other identifying information.

Tips to Keep Yourself Safe at Public Hotspots

With these security dangers lurking, protecting yourself at public hotspots becomes your own responsibility. Here are some things you can do to keep yourself safe:

  • Be aware of your surroundings. Make sure no one is peering over your shoulder when you log into your operating system, email, IM, or other accounts.
  • Never leave your laptop or handheld device unattended—not even for a moment.
  • Don’t allow your wireless card to automatically join the nearest network. Instead, manually select the hotspot when you connect.
  • Make sure you’re on a legitimate hotspot by checking with the host to confirm the network name and connection process.
  • Turn off file sharing when you’re using a hotspot, and try to minimize the amount of sensitive, personal data you store on your laptops and mobile devices. You can usually turn off file sharing from your operating system’s network settings menu.
  • Don’t do your online banking or trading at a public hotspot. Save it for a more safe and controlled environment.
  • Limit email and IM to casual communications. If you use IM or email at hotspots, never send anything that should not be made public. Consider setting up an extra Web-based email account to use at hotspots.
  • Don’t surf Web sites you wouldn’t want a stranger to know you’re viewing.
  • Turn off your wireless card when you’re not using it.
  • When you’re on a public hotspot, you have no idea what infections other connected computers might have, or whether there may be a hacker prowling the network. Norton Antivirus or Norton Internet Security--both from Symantec--protect you from viruses, worms, Trojan horses, and dangerous intruders.
  • Make wise computing decisions. Always avoid using hotspots for important communications or transactions.

Conclusion

Public wi-fi hotspots can be both friend and foe during your travels, unless you take precautions. It’s up to you to protect your computer, your data, and your privacy with good tools and cautious computing habits. We hope the tips we offered in this article help you to do just that.

Story source: Norton article library

Sunday, January 9, 2011

Stay Safe Using Location-based Services

Location SoftwareWalk by The North Face store in several major cities in the near future, and your mobile phone may suddenly buzz with a new text message -- a coupon from the store.

That’s because the company is planning to push offers over your mobile phone whenever you're near one of their stores. The service is available to anyone who signs up for ShopAlerts.

It will be easy enough to sign up -- at the store, on The North Face Web site, or via text message, mobile Web sites and even Facebook. ShopAlerts also plans to carry coupons and offers from American Eagle Outfitters, REI and others.

It sounds like a very useful new service, but the technology holds dangerous pitfalls, say the experts.

Services that track your physical location through your mobile phone or other mobile device send information about where you are to various sources. Some sources are legitimate, such as retailers, restaurants, and other businesses. But some sources that get access to the information about where you are may intend to do you harm.

For example, if you use a service that publicises where you are, such as FourSquare, a tool you can use on your phone to “check in” at a restaurant, cinema or other location, you are also indicating that you are not at home. A Web site called PleaseRobMe has popped up to point out that this very public information can alert thieves and the like that your home might not be currently occupied. As the site states, “The danger is publicly telling people where you are. This is because it leaves one place you're definitely not ... home.”

Most of us -- 95.7 million, according to research group Gartner -- don’t think twice about allowing these services to know where we are. We get in our cars and turn on the GPS map to help us get to our destination; it couldn’t function without pinpointing our exact location. We are thankful when 999 is automatically clued in to where we are in times of trouble, like car accidents. And when a service on our phone lets us connect with others by broadcasting our location at that moment, it seems just as harmless. That’s just what thieves are counting on.

“Knowing where a target is is crucial,” says Richard Weinblatt, director of the Institute for Public Safety at Central Ohio Technical College, who runs the TheCopDoc.com. He advises that you give out information selectively and that you consider whether you trust the service with your information before you sign up.

In addition to the risk of having your home burgled, you are also putting some crucial data in jeopardy when you give the OK to services that ask for your location to help you find what you are seeking. There are two primary ways these services find you: Your cellular service approximates your location based on your distance to nearby cell towers, or the GPS software in your phone relays your spot to satellites. Your wireless provider then transmits your location to the service company, which in some cases stores that information on its servers.

The good news is, location-based services find out where you are only when you let them. Whether you’re actively posting your location or allowing a service to use GPS and cellular service technologies to find out where you are, it’s because you’ve made the choice of letting them know. What this means is that it’s already within your control to manage what information gets out there.

Here’s what you can do to protect yourself, your belongings and your personal information while still participating in these useful location-based services:

  • Don’t link your home address to your account. This is the easiest way for thieves to find out where you are not. Most services either won’t make this information public or will allow you to choose what information you share. Pay special attention to ensure control of this information.
  • Don’t use your full name. Robbers can easily look up your name if there is a record of your home address available anywhere online or even in the local phone book. To limit broadcast of where you are, hide your full name.
  • Be selective about which services you allow to pinpoint your location. Many applications will automatically ask you if they can find out where you are so they can offer you content and services most useful to you. Allow them access only where you feel most comfortable.
  • Be selective about who sees your location. In social networking applications involving your location, set limits on who is able to see that information -- everyone, all your contacts, select contacts or no one.
  • Read the privacy policy. Above all, arm yourself with information on how each service works. Each privacy policy should indicate how the service uses any of the data it requests from you.

So-called location-based services can be as innocuous as the GPS-enabled maps you use in your car or on your mobile device, and they can even help save lives. But be vigilant about your use of them, and you will enjoy only their benefits.

Story by Laura Rich, Laura is a freelance writer based in Boulder, Colorado.

Friday, December 17, 2010

1 in 10 US Households Reports Computer Crime

gallup-computer-crime-dec-2010.JPGSlightly more than one in 10 (11%) US households self-reported a computer or internet crime on their home computer in the past year, which represents a new high according to Gallup.

Computer Crime Rises 57% YOY

For the past several years, Gallup data shows self-reported US computer/internet crime rates holding a steady 6-8%, including 7% in 2009. However, this year’s 11% rate is a substantial 57% increase from the 2009 rate.

Computer Crime Third-most Reported

Of the nine types of crime Gallup asked Americans about in an October 7-10, 2010 survey, having money or property stolen received the highest mentions, at 16%, followed by having a home, car, or other property vandalized, at 14%. The trend for these has been fairly stable in recent years.

Computer/internet crime is the only other type of crime that registers in the double digits this year. However, the next-most common, identify theft, at 8%, is closely related by virtue of much of it occurring through hacking and fraudulent internet transactions. This is down slightly from the 10% who reported identity theft in 2009, the first year Gallup asked about this type of crime.

Fewer than 5% of Americans say that, over the past year, they or a household member was a victim in a home break-in, a car theft, a mugging or physical assault, a money or property theft by force, or a sexual assault.

Younger Americans Hit By Computer Crime More

gallup-computer-crime-demographics-dec-2010.JPG
The increase since 2009 in American households reporting computer- or Internet-based crimes comes mainly from Americans younger than age 55. Eighteen- to 34-year-olds are almost twice as likely to report these crimes as they were a year ago (11% compared to 6%), and 35- to 54-year-olds are also significantly more likely to do so (16% compared to 11%, a 45% increase). In contrast, the rate is virtually unchanged among those 55 and older.

In addition, while rates are similar by gender, the percentage of non-whites reporting computer/internet crimes (14%) is 40% higher than that of whites (10%), and has doubled in the past year. In contrast, the rate among whites has only risen 25%.

One-Third of Households Are Crime Victims

gallup-computer-crime-summaries-dec-2010.JPG
In the past year, a third of all U.S. households experienced at least one of the nine crimes Gallup measured, up slightly from previous years, and about 6% from 31% in 2009. When computer- or internet-based crimes (including identity theft) are excluded, the figure is similar to prior levels, at 26%.

Overall, 4% of Americans say they or a family member experienced some sort of violent crime, including a physical assault, mugging, or sexual assault.

Americans Tend to See Crime Increasing

In 2010, 66% of Americans view crime as increasing, and 17% say it is decreasing, according to other recent Gallup analysis which indicates Americans generally view crime as on the rise. Going back to 1989, 84% of Americans thought crime was increasing. This rate stayed above 80% until the mid-1990s, and then dipped to a recent low point of 43% in 2002, before shooting back up to 62% in 2003.

Sixty-six percent is still an improvement on recent figures. For example, 74% of Americans said crime was increasing in 2009, as did 67% in 2008 and 71% in 2007.