Submission + - AVTECH Shuns Security Firm and Leaves All Products Vulnerable Without a Patch (softpedia.com)
Search-Lab says their researchers is not the only one that spotted these issues. Currently, the term "AVTECH" is the second most popular search term on Shodan, where anyone can find more than 130,000 of these devices available online. Taking into account the recent attacks from IoT botnets, AVTECH is now on the same level of incompetence and indifference as other CCTV hardware makers such as AVer, Dahua, and TVT, all Chinese and Taiwanese companies.
A list of confirmed affected firmware versions is available here, proof of concept exploitation code is available on GitHub, and an exploitation video is available here.
Submission + - "The Internet is Oreos", ISP Claims To FCC (consumerist.com)
Ars Technica first spotted the crumbly filing, from small (and much-loathed) provider Mediacom.
Mediacom’s comment is in response to the same proceeding that Netflix commented on earlier this month. However, while Netflix actually addressed data and the ways in which their customers use it, Mediacom went for the more metaphor-driven approach.
The letter literally starts out under the header, “You Have to Pay Extra For Double-Stuffed,” and posits that you, the consumer, are out for a walk with $2 in your pocket when you suddenly develop a ferocious craving for Oreo (®) cookies.
Submitter Rick Schumann adds:
Of course their analogy is highly questionable, since transmitting data over a network doesn't actually consume anything, now does it? You eat the cookie, the cookie is gone, but you transmit data over a network, the network is still there and can transmit data endlessly. Mediacom's assertion that the Internet is like a cookie you eat, is like saying copying a file on your computer somehow diminishes or degrades the original file, which of course is rediculous.
Submission + - Double KO! Capcom's Street Fighter V installs hidden rootkit on PCs (theregister.co.uk)
This means any malicious software on the system can poke a dodgy driver installed by SFV to completely take over the Windows machine. Capcom claims it uses the driver to stop players from hacking the high-def beat 'em up to cheat. Unfortunately, the code is so badly designed, it opens up a full-blown local backdoor. Gamers realized something was a little off when the upgrade brought in a new driver and demanded operating-system-grade access to the computer before the game starts. A number of players say they couldn't even get the new version to work at all. A full-blown online meltdown ensued.
Comment Re:Other poll ideas (Score 1) 599
Submission + - Fake Hacker Found Guilty Following Gutsy Mitt Romney Extortion Scheme (softpedia.com)
Back in 2012, Brown had the bright idea to write a letter alleging to have hacked PricewaterhouseCoopers (PwC) servers and stolen tax documents prior to 2010 for Mitt Romney and his wife, Ann. The "hacker" asked for $1 million in Bitcoin, and after publishing details about his fake hack online, he almost received it from a "third-party", but not before the FBI arrested him and then uncovered his lie.
Submission + - ISS Completes 100,000th Orbit Of Earth (phys.org)
Submission + - Highly-Conductive Shark Jelly Could Inspire New Tech (gizmag.com)
Submission + - Raspberry Pi Zero Gains Camera Support, Keeps $5 Price (engadget.com)
Submission + - Senate Report On CIA Torture Is One Step Closer To Disappearing (yahoo.com)
Submission + - Iran Arrests Eight For 'Un-Islamic' Instagram Modeling (bbc.com)
Submission + - The 2015 Nebula Awards
Best Novel: Uprooted , Naomi Novik
Best Novella: Binti , Nnedi Okorafor
Best Novelette: “Our Lady of the Open Road,” Sarah Pinsker
Best Short Story: “Hungry Daughters of Starving Mothers,” Alyssa Wong
Ray Bradbury Award for Outstanding Dramatic Presentation: Mad Max: Fury Road , Written by George Miller, Brendan McCarthy, Nick Lathouris
Andre Norton Award for Young Adult Science Fiction and Fantasy: Updraft , Fran Wilde
Kate Wilhelm Solstice Award: Sir Terry Pratchett
Kevin O'Donnell Jr. Service Award: Lawrence M. Schoen
2016 Damon Knight Grand Master Award: C.J. Cherryh