Forgot your password?
typodupeerror
Security

Submission + - $9 million ATM hacking ring busted (threatpost.com) 1

Trailrunner7 writes: U.S. and international prosecutors have taken down a criminal ring that they allege was responsible for an ATM scam last year that stole about $9 million from RBS WorldPay. The criminals were able to evade the company's encryption system used on payroll debit cards and withdraw money from ATMs in 280 cities around the world. A federal grand jury in Atlanta has indicted eight men in connection with the scheme, including five Estonians, one Russian, one Moldovan and one unidentified man. Prosecutors allege that the men "used sophisticated hacking techniques" to defeat the company's encryption system. The scam, which hit RBS WorldPay last November, involved an elaborate plan in which the attackers first bypassed the encryption on the debit cards, which RBS WorldPay issues to customers for employee payroll purposes. They then raised the limits on the accounts attached to the cards.

Comment Re:There is no answer, it depends on what you want (Score 4, Insightful) 665

"Non free software can have backdoors, spyware and other malicious features ..."

And you've gone through all of the millions, if not billions of lines of code that make up a typical Linux distribution and you know for a fact that there are no backdoors, spyware or other malicious features hidden away in the OPEN source?

Right.

Most people just pop in the CD or download the installer and let it do its thing. There could be ANYTHING in there, and no one would know it...

Wireless Networking

Submission + - Tracking people using bluetooth. (bluetoothtracking.org)

damdam writes: "A Dutch guy seems to have set up a small network of bluetooth scanners in his town of Apeldoorn scanning for bluetooth devices. He has all the information logged to a central database and you can search it over the web. On his website it says "Some of these matches were only minutes apart. Therefore I could even calculate the approximate speed of someone moving from one location to another.". There are also some interesting statistics on his site showing traffic volume in his hometown (based on bluetooth signals) and he even lists popularity of certain Nokia phones. It's interesting to see how much information an individual can gather using old equipment. I just noticed this guy is the same guy as the one running the wired house on Icepick.com. Seems like tracking people is his thing."
Debian

Submission + - Debian refuses to push timezone update for NZ DST (debian.org)

Jasper Bryant-Greene writes: Although a tzdata release which includes New Zealand's recent DST changes (2007f) has been out for some time, Debian are refusing to push the update from testing into the current stable distribution, codenamed Etch, on the basis that "it's not a security bug". This means that unless New Zealand sysadmins install the package manually, pull the package from testing, or alter the timezone to "GMT-13" manually, all systems running Debian Etch in New Zealand currently have the incorrect time, as DST went into effect this morning. As the last comment in the bug report says, "even Microsoft are not this silly".
Microsoft

Submission + - Trouble with Microsoft's Genuine Office Validation (networkworld.com)

Julie188 writes: Here's another little gotcha with Microsoft license validation, discovered by security and PowerShell expert Tyson Kopczynski. The Microsoft Office 2007 add-on site refuses to download legitimate add-ons for Office 2007 when a legitimate — but not yet activated — additional Microsoft product is installed on the computer. In Kopczynski's case, the product was Visio. He writes: "Let's back this license train up and look at why this picture is wrong: 1. I have a valid copy of Office 2007. 2. The Visio installation only failed the validation because I haven't activated it. 3. Microsoft has presented me with a page to buy Office, which I have a valid copy of. ... Dear Microsoft, When used incorrectly and in direct conflict of something that you are promoting, DRM sucks! By making the usage of your software a hassle, you risk further pushing more users of your applications to other solutions."
Media

Copyright Alliance Says Fair Use Not a Consumer Right 504

KingSkippus writes "In response to a complaint to the FCC filed by the Computer and Communications Industry Association (CCIA) to change copyright warnings before movies and sporting events, Executive Director Patrick Ross of the Copyright Alliance tells us in an editorial that 'fair use is not a consumer right.' The Copyright Alliance is backed by such heavy-hitters as the MPAA, RIAA, Disney, Business Software Alliance, and perhaps most interestingly, Microsoft, who is also backing the CCIA's complaint."
Space

New Way of Extending Satellite Life Saves Millions 173

coondoggie writes "A new technique to save aging satellites promises to save millions of dollars by extending the life of communications spacecraft. A process developed by researchers from Purdue University and Lockheed Martin has already saved $60 million for unnamed broadcasters by extending the service life of two communications satellites. In a nutshell the technique works by applying an advanced simulation and a method that equalizes the amount of propellant in satellite fuel tanks so that the satellite consumes all of the fuel before being retired from service. Some aging communications satellites are each equipped with four fuel tanks. If one of the tanks empties before the others, the satellite loses control and should be decommissioned, wasting the remaining fuel in the other tanks."
Windows

Mark Russinovich On Vista Network Slowdown 423

koro666 writes "In his latest blog post, Mark Russinovich analyzes the network slowdown experienced by some users when playing multimedia content. 'Tests of MMCSS during Vista development showed that... heavy network traffic can cause enough long-running DPCs to prevent playback threads from keeping up with their media streaming requirements, resulting in glitching. MMCSS' glitch-resistant mechanisms were therefore extended to include throttling of network activity. It does so by issuing a command to the NDIS device driver... [to] pass along, at most 10 packets per millisecond (10,000 packets per second)... [T]he networking team is actively working with the MMCSS team on a fix that allows for not so dramatically penalizing network traffic, while still delivering a glitch-resistant experience.'"
The Almighty Buck

Copyright Advocacy Group Violates Copyright 176

word munger writes "Commercial scholarly publishers are beginning to get afraid of the open access movement. They've hired a high-priced consultant to help them sway public opinion in favor of copyright restrictions on taxpayer-funded research. Funny thing is, their own website contains several copyright violations. It seems they pulled their images directly from the Getty Images website — watermarks and all — without paying for their use."
Education

How To Address A Visit from MPAA Senior VP Rich Taylor? 314

tedswiss writes "Fate has dropped a unique opportunity upon my lap: I teach at a moderately small independent school who has as one of its alums Richard Taylor. Mr. Taylor is both speaking at our start-of-year festivities and being honored with this year's "Distinguished Alum Award." Having followed and been disgusted by the MPAA's corporate practices regarding DRM and government lobbying in the past (Anyone remember DeCSS?), I would love to make his visit a chance to truly educate our student body, not just indoctrinate them. The school administration is sympathetic to my plight, but I want to present them with more than just my complaints. How would you best make use of this opportunity if you found yourself in my shoes?"
Book Reviews

PCI Compliance 115

Ben Rothke writes "It has long been rumored that manufacturers of items such as razors and batteries specifically produce their products to an inferior level in order to ensure repeat business. A similar paradox is occurring in the information security space where many are complaining that the PCI Data Security Standard (PCI DSS) is too complex and costly. What is most troubling is that such opinions are being written in periodicals and by people that should know better." Read on for the rest of Ben's review.
United States

Torrentspy Disables Searching For US IPs 277

dr_strang writes "Torrent indexing site Torrentspy.com appears to have disabled torrent searches for IPs that originate in the United States. Instead of a results page, users are directed to this page, which states: 'Torrentspy Acts to Protect Privacy. Sorry, but because you are located in the USA you cannot use the search features of the Torrentspy.com website. Torrentspy's decision to stop accepting US visitors was NOT compelled by any Court but rather an uncertain legal climate in the US regarding user privacy and an apparent tension between US and European Union privacy laws."

Slashdot Top Deals

The bogosity meter just pegged.

Working...