|
Microsoft’s Blue Hat IL presentation from MSRC shows that, in 2017-18, the threat from zero days far exceeds the threat of delaying patches by 30 days. Moreover, the vast majority of zero days are used in targeted attacks, not in public attacks. Windows Update deemed of limited use
Again.
|
|
|
|
|
Not surprising. From the other end their quarterly malware bulletins (generated with what Windows Defender sees in the wild) show an overwhelming preference for old exploits (several month to several years).
Did you ever see history portrayed as an old man with a wise brow and pulseless heart, weighing all things in the balance of reason?
Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful?
--Zachris Topelius
Training a telescope on one’s own belly button will only reveal lint. You like that? You go right on staring at it. I prefer looking at galaxies.
-- Sarah Hoyt
|
|
|
|
|
A malicious spreadsheet has been discovered that builds a PowerShell command from individual pixels in a downloaded image of Mario from Super Mario Bros. When executed, this command will download and install malware such as the GandCrab Ransomware and other malware. They may be horrid and evil, but they're artists
|
|
|
|
|
So, in order to become infected, you have to:
0. Open an e-mail from someone you don't know
1. Open an MS Excel spreadsheet attached to the e-mail
2. Allow the MS Excel spreadsheet attached to the e-mail to run scripts
3. Allow the script that's run by the MS Excel spreadsheet attached to the e-mail to connect to the Internet to download content
4. Be Italian
I strongly advise against all five of those activities.
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
A new developer survey about Python reveals the programming language is now used primarily for data analysis, supplanting the previous No. 1 use case, Web development. "And now for something completely different"
Lame blurb yes, but I already have one foot out the door for the week.
|
|
|
|
|
Kent Sharkey wrote: Lame blurb yes, but I already have one foot out the door for the week. You must be using doors wrong, if putting one foot through makes you lame.
Shall I order a user guide for you?
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
It's the chain Chris has on my ankle. It's only long enough to let me get one foot out the door, and then I can't walk any further.
TTFN - Kent
|
|
|
|
|
It was Chris who upvoted that, as a thanks for reminding him to shorten the chain.
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
A team of researchers at Telecom ParisTech has developed a new method to protect encrypted data against key exposure. "All for one, and one for all"
|
|
|
|
|
Perfect!
Now all we need to do is disperse AIs to control it all, and Bob's your uncle!
Or the Singularity's your daddy; one or the other.
I wanna be a eunuchs developer! Pass me a bread knife!
modified 8-Feb-19 3:58am.
|
|
|
|
|
Whiney beg banner "You're using an ad blocker, what are the consequences"
Me: Faster page load times, improved site performance, protection from third party malware distributers, oh and I never need to dismiss annoying banners more than once *clickety*block*.
Did you ever see history portrayed as an old man with a wise brow and pulseless heart, weighing all things in the balance of reason?
Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful?
--Zachris Topelius
Training a telescope on one’s own belly button will only reveal lint. You like that? You go right on staring at it. I prefer looking at galaxies.
-- Sarah Hoyt
|
|
|
|
|
Wouldn't that also increase the chances of failure?
|
|
|
|
|
That was one of the things that popped into my head -- what if a single packet fails, and has to be re-sent?
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
Many major companies, like Air Canada, Hollister and Expedia, are recording every tap and swipe you make on their iPhone apps. In most cases you won’t even realize it. And they don’t need to ask for permission. iSpy
|
|
|
|
|
What!?!
How dare they?!?
I'm throwing out all my android phones, if they let iphone apps take secret screenshots!
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
Quote: “Glassbox has a unique capability to reconstruct the mobile application view in a visual format, which is another view of analytics, Glassbox SDK can interact with our customers native app only and technically cannot break the boundary of the app,” the spokesperson said, such as when the system keyboard covers part of the native app, “Glassbox does not have access to it,” the spokesperson said. Until someone finds the way to do it...
This is really getting out of limits. Ethics, moral and common sense are completely out of the equation
M.D.V.
If something has a solution... Why do we have to worry about?. If it has no solution... For what reason do we have to worry about?
Help me to understand what I'm saying, and I'll explain it better to you
Rating helpful answers is nice, but saying thanks can be even nicer.
|
|
|
|
|
Nelek wrote: Ethics, moral and common sense are completely out of the equation Oh, I think the EU will have something to say about (and a few billions in fines to add to) this story.
Everyone, on both sides of the pond, should be glad that at least one governmental body isn't so corrupted by corporations that it's willing to do something about them.
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
Mark_Wallace wrote: Everyone, on both sides of the pond, should be glad that at least one governmental body isn't so corrupted by corporations that it's willing to do something about them. In the soapbox you would probably get some funny answers to your comment (to which I actually agree with)
M.D.V.
If something has a solution... Why do we have to worry about?. If it has no solution... For what reason do we have to worry about?
Help me to understand what I'm saying, and I'll explain it better to you
Rating helpful answers is nice, but saying thanks can be even nicer.
|
|
|
|
|
The only thing I ever want to say in the soapbox is "WTF am I doing here? Where's the exit?"
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
|
Nelek wrote: Ethics, moral and common sense What is unethical about the recording which button you push and where you swipe in their app? I want to get worked up about this but am having a hard time doing so. I don't understand the concern.
Everyone is born right handed. Only the strongest overcome it.
Fight for left-handed rights and hand equality.
|
|
|
|
|
Doing it without giving any kind of warning / information about it, not even being sure about the security and trying to cover up when caught? Yes, I find it unethic.
M.D.V.
If something has a solution... Why do we have to worry about?. If it has no solution... For what reason do we have to worry about?
Help me to understand what I'm saying, and I'll explain it better to you
Rating helpful answers is nice, but saying thanks can be even nicer.
|
|
|
|
|
That's a good possibility to get to know how your users actually use your apps. That's far cheaper than doing tests in labs, and far more realistic.
C'mon, that little spying... that's nothing when compared to the improved user experience which thus becomes possible.
Oh sanctissimi Wilhelmus, Theodorus, et Fredericus!
|
|
|
|
|
The fact that so many people are willing to give so many logical explanations for why so many people do so much evil is one of the too-many reasons why so many people get away with doing so much evil.
What they are doing is wrong.
The fact that it contravenes European laws is a tribute to good laws.
I wanna be a eunuchs developer! Pass me a bread knife!
|
|
|
|
|
Mark_Wallace wrote: The fact that so many people are willing to give so many logical explanations for why so many people do so much evil is one of the too-many reasons why so many people get away with doing so much evil.
You sir, have a way with words. That sentence is a master stroke of a recursion in plain English.
"When you are dead, you won't even know that you are dead. It's a pain only felt by others; same thing when you are stupid."
Ignorant - An individual without knowledge, but is willing to learn.
Stupid - An individual without knowledge and is incapable of learning.
Idiot - An individual without knowledge and allows social media to do the thinking for them.
modified 19-Nov-21 21:01pm.
|
|
|
|