Wednesday, December 9, 2009
Monday, December 7, 2009
Cocktails From Behind The Iron Curtain - Food
Posted using ShareThis
Leo Laporte & Net Neutrality
Saturday, December 5, 2009
Several Restaurants Sue Vendor for Unsecured Card Processor
The restaurants, located in Louisiana and Mississippi, filed a class-action suitagainst Georgia-based Radiant Systems for producing a point-of-sale (POS) system that they say was not compliant with payment card industry security standards and resulted in an undetermined number of customers having their debit and credit card numbers stolen.
The suit alleges that the system stored all the data embedded on the bank card magnetic stripe after the transaction was completed — a violation of industry security standards that made it a high-risk target for hackers.
Also named in the suit is Computer World, a Louisiana-based retailer, which sold and maintained Radiant’s Aloha POS system.
According to plaintiffs, Computer World’s technicians allegedly installed the remote-access program PCAnywhere on the systems to allow its technicians to fix technical problems from off-site. The only problem is, the company failed to secure the program. The suit alleges that the system was not up to date with software patches, and the PCAnywhere remote log-in and password that technicians used to access the POS systems was the same at every one of the 200 Louisiana locations where the system was installed. According to one of the plaintiffs who spoke with Threat Level, the default login was “administrator” and the password was “computer.”
As a result, a hacker, believed to be based in Romania, accessed the systems of at least 19 businesses through the PCAnywhere software, and possibly others plaintiffs say. "
Image courtesy California State Controller’s Office & Wired
Friday, December 4, 2009
Home owners and HOA's butt heads over solar
When the Spanish Hills Homeowners Assn. said no, Weinberg sued the group. Under the state's Solar Rights Act, he argued, a homeowners association can't unreasonably block solar installations.
Weinberg won, and the Spanish Hills Homeowners Assn. was ordered to not only permit the solar panels but to cover the tens of thousands of dollars that Weinberg had spent on legal fees. Since last fall, when he installed a double row of matte black panels, three other homes in the hilltop neighborhood of luxury estates have added panels. "
Thursday, December 3, 2009
Eco Motors creates radically new type of engine
Wednesday, December 2, 2009
SSL/TLS Zero-day flaw found in web encryption
The flaw in the TLS authentication process allows an outsider to hijack a legitimate user's browser session and successfully impersonate the user, the researchers said in a technical paper.
The fault lies in an "authentication gap" in TLS, Ray and Dispensa said. During the cryptographic authentication process, in which a series of electronic handshakes take place between the client and server, there is a loss of continuity in the authentication of the server to the client. This gives an attacker an opening to hijack the data stream, they said.
In addition, the flaw allows practical man-in-the-middle attacks against hypertext transfer protocol secure (Https) servers, the researchers said. Https is the secure combination of http and TLS used in most online financial transactions."