New Air-Gap Jumper Covertly Transmits Data in Hard-Drive Sounds (arstechnica.com) 83

Security researchers have found a new way to siphon data out of an infected computer even when it has been physically disconnected from the Internet -- otherwise known as "air-gap" computers -- to prevent the leakage of sensitive information it stores, reports ArsTechnica. From the article: The method has been dubbed "DiskFiltration" by its creators because it uses acoustic signals emitted from the hard drive of the air-gapped computer being targeted. It works by manipulating the movements of the hard drive's actuator, which is the mechanical arm that accesses specific parts of a disk platter so heads attached to the actuator can read or write data. By using so-called seek operations that move the actuator in very specific ways, it can generate sounds that transfer passwords, cryptographic keys, and other sensitive data stored on the computer to a nearby microphone. The technique has a range of six feet and a speed of 180 bits per minute, fast enough to steal a 4,096-bit key in about 25 minutes.

Facebook Rolls Out Code To Nullify Adblock Plus' Workaround (techcrunch.com) 426

An anonymous reader writes: The Wall Street Journal issued a report Tuesday that said Facebook will begin forcing ads to appear for all users of its desktop site, even if they use ad-blocking software. Adblock Plus, the most popular ad-blocking software, opposed Facebook's plan and found a workaround to Facebook's revision two days later. Now, TechCrunch is reporting that Facebook is well aware of Adblock Plus' workaround and their "plan to address the issue" is coming quick. "A source close to Facebook tells [TechCrunch] that today possibly within hours, the company will push an update to its site's code that will nullify Adblock Plus' workaround," reports TechCrunch. "Apparently it took two days for Adblock Plus to come up with the workaround, and only a fraction of that time for Facebook to disable it." An update on their site says, "A source says Facebook is now rolling out the code update that will disable Adblock Plus' workaround. It should reach all users soon."

Comment Re:Does it bundle.. (Score 1) 159

Of the four mentioned, the first one adds SURT functionality to the dism command line, and the other three are just CEIP and UAC telemetry. I would avoid the telemetry patches, personally, but the SURT patch is actually pretty useful; instead of having to re-download a 500k update every time I want to fix a broken Update database, or go find the .msu file on my drive and re-install it, I can just type "dism /online /cleanup-image /scanhealth", and it runs SURT using the saved .cabs from the first download/run of the update.

