Domain: itworld.com
Stories and comments across the archive that link to itworld.com.
Stories · 2,036
-
TrueCrypt Audit Back On Track After Silence and Uncertainty
itwbennett writes: In October 2013 Cryptography professor Matthew Green and security researcher Kenneth White launched a project to perform a professional security audit of TrueCrypt, partly prompted by the leaks from Edward Snowden that suggested the NSA was engaged in efforts to undermine encryption. Their report, published in April 2014, covered the first phase of the audit. Phase two was supposed to involve a formal review of the program's encryption functions, with the goal of uncovering any potential errors in the cryptographic implementations—but then the unexpected happened. In May 2014, the developers of TrueCrypt, who had remained anonymous over the years for privacy reasons, abruptly announced that they were discontinuing the project and advised users to switch to alternatives. Now, almost a year later, the project is back on track. -
Does Open Data Have a Dark Side?
itwbennett writes A Forbes article last month explored some of the potentially darker sides of open data — from creating a new kind of digital divide to making an argument in favor of privatizing certain government services. But how real are these downsides of open data? The World Wide Web Foundation's Open Data Program Manager Jose Alonso is unconcerned, telling ITworld's Phil Johnson via email that the WWWF "believes there is no substantial evidence yet that the availability of Open Data leads to the marketization of public services or public spending cuts." But Ben Wellington, a professor in the City & Regional Planning program at the Pratt Institute in Brooklyn, New York and author of the popular blog I Quant NY, takes a more cautious stance, acknowledging that there are some real concerns that may call for regulation. But, at least for now, "there's a lot more innovation and positive things coming out than these corner cases," says Wellington. -
Does Open Data Have a Dark Side?
itwbennett writes A Forbes article last month explored some of the potentially darker sides of open data — from creating a new kind of digital divide to making an argument in favor of privatizing certain government services. But how real are these downsides of open data? The World Wide Web Foundation's Open Data Program Manager Jose Alonso is unconcerned, telling ITworld's Phil Johnson via email that the WWWF "believes there is no substantial evidence yet that the availability of Open Data leads to the marketization of public services or public spending cuts." But Ben Wellington, a professor in the City & Regional Planning program at the Pratt Institute in Brooklyn, New York and author of the popular blog I Quant NY, takes a more cautious stance, acknowledging that there are some real concerns that may call for regulation. But, at least for now, "there's a lot more innovation and positive things coming out than these corner cases," says Wellington. -
Samsung Smart TVs Don't Encrypt the Voice Data They Collect
itwbennett writes A week ago, the revelation that Samsung collects words spoken by consumers when they use the voice recognition feature in their smart TVs enraged privacy advocates, since according to Samsung's own privacy policy those words can in some cases include personal or sensitive information. Following the incident, David Lodge, a researcher with a U.K.-based security firm called Pen Test Partners, intercepted and analyzed the Internet traffic generated by a Samsung smart TV and found that Samsung does send captured voice data to a remote server using a connection on port 443, a port typically associated with encrypted HTTPS, but that the data was not encrypted. "It's not even HTTP data, it's a mix of XML and some custom binary data packet," said Lodge in a blog post. -
Will Every Xbox Be a Dev Kit?
jfruh writes There were a lot of rumored features of the Xbox One that vanished after public outcry — that it would need an always-on Internet connection, for instance. But another rumor from that era was that every Xbox One sold would include a dev kit that would allow anyone to create games — and it looks like this is one dream that might be coming true soon. -
Sony To Release Google Glass Competitor
jfruh writes: With Google retooling its Glass offering, Sony appears to have jumped into the breach to offer an Android-compatible wearable face-computer. The developer edition of SmartEyeglass will be available in March for $840, with a commercial release planned for 2016. The device must be manipulated with a separate, wired controller unit that houses a microphone, speakers and an NFC module. -
Russian Man Extradited To US For Heartland, Dow Jones Cyberattacks
itwbennett writes: A Russian man accused of high-profile cyberattacks on Nasdaq, Dow Jones, Heartland Payment Systems and 7-Eleven has been extradited to the U.S. and appeared in court in Newark, New Jersey on Tuesday. Vladimir Drinkman, 34, of Syktyykar and Moscow, Russia was charged for his alleged role in a data theft conspiracy that targeted major corporate networks and stole more than 160 million credit card numbers, the U.S. Department of Justice said in a press release. Drinkman appeared Tuesday in U.S. District Court for the District of New Jersey and entered a plea of not guilty to the 11 counts he faces. His trial is scheduled to begin in April. -
Company Promises Positive Yelp Reviews For a Price; Yelp Sues
jfruh writes Many restaurants and other small businesses live and die by Yelp reviews. Revleap operates a paid service that it says can "create a large constant flow of positive reviews that stay on top of your [Yelp] profile, and remove fake reviews." But Yelp is suing Revleap for what it says are practices that are fraudulent and in violation of Yelp's terms of service; among other things, Revleap promises users gift cards in exchange for good reviews. -
LG Exec Indicted Over Broken Samsung Washing Machine
itwbennett writes Jo Seong-jin, the head of LG's home appliance division, was indicted Sunday by prosecutors in Seoul for allegedly damaging Samsung Electronics' washing machines before the IFA electronics show in Berlin last September. The company says it was his regular practice to test the rival company's machines, something he has done while working for LG for the past 38 years, and has released closed-circuit television footage in his defense showing him testing Samsung products including washing machines, dish washers and refrigerators. Jo and two other employees are charged with vandalism, defamation and obstruction of business. -
EU Preparing Vast Air Passenger Database
jfruh writes: Despite privacy concerns and doubts over its usefulness, a plan to track passengers entering or leaving the European Union in a series of national databases is likely to become reality by the end of the year. Legislation working its way through the European Parliament will authorize European nations to set up databases of the sort already in use in the UK, and to share information with each other. All the EU parties except the Greens are in favor. -
What Intel's $300 Million Diversity Pledge Really Means
itwbennett writes Intel's Rosalind Hudnell is responsible for implementing the company's much-publicized $300 million initiative to bring more women and under-represented minorities into its workforce by 2020. But even with Intel's renewed commitment to diversity, the company's workforce will still be just about 32 percent women in five years, Hudnell estimated. Here's a rough breakdown of how the money will be spent: The funds will be applied over five years to change hiring practices, retool human resources, fund companies run by minorities and women, and promote STEM education in high schools. -
Five Years After the Sun Merger, Oracle Says It's Fully Committed To SPARC
jfruh (300774) writes "Sun Microsystems vanished into Oracle's maw five years ago this month, and you could be forgiven for thinking that some iconic Sun products, like SPARC chips, had been cast aside in the merger. But Oracle claims that the SPARC roadmap is moving forward more quickly than it did under Sun, and while the number of SPARC systems sold has dropped dramatically (from 66,000 in Q1 '03 to 7,000 in Q1 '14), the systems that are being sold are fully customized and much more profitable for the company." -
Study: Smartphones Just As Good As Fitness Trackers For Counting Steps
jfruh writes While dedicated fitness trackers that you wear around your wrist have any number of functions, many people are focused on a single metric: counting steps, which serves as a proxy for determining how active you are. But a recent study from the University of Pennsylvania showed that if that's mainly what you want out of a fitness tracker, then you almost certainly have a device in your pocket that can do the same thing as well if not better: your smartphone. -
Your Java Code Is Mostly Fluff, New Research Finds
itwbennett writes In a new paper (PDF), researchers from the University of California, Davis, Southeast University in China, and University College London theorized that, just as with natural languages, some — and probably, most — written code isn't necessary to convey the point of what it does. The code and data used in the study are available for download from Bitbucket. But here's the bottom line: Only about 5% of written Java code captures the core functionality. -
EU Parliament Blocks Outlook Apps For Members Over Privacy Concerns
jfruh writes Microsoft last week released Outlook apps for iOS and Android, but one group that won't be getting to use them is members of the European Parliament. They've been advised by their tech staff that the apps are insecure and that they shouldn't download them — and if they have, they should change their Outlook passwords. -
The Technologies That Betrayed Silk Road's Anonymity
itwbennett writes Silk Road was based on an expectation of anonymity: Servers operated within an anonymous Tor network. Transactions between buyers and sellers were conducted in bitcoin. Everything was supposedly untraceable. Yet prosecutors presented a wealth of digital evidence to convince the jury that Ross Ulbricht was Dread Pirate Roberts, the handle used by the chief operator of the site. From Bitcoin to server logins and, yes, Facebook, here's a look at 5 technologies that tripped Ulbricht up. -
Verizon Sells Off Wireline Operations, Blames Net Neutrality Plans
itwbennett (1594911) writes "Verizon Communications will sell its local wireline operations in California, Florida and Texas for $10.5 billion, citing uncertainty around federal Internet regulation as one reason for the move, although Verizon executives said the sale has been in the works for several years. It's no secret that local wireline phone service has been a shrinking industry, and Verizon and other carriers see mobile as their greatest growth opportunity. Verizon Chairman and CEO Lowell McAdam cited the Federal Communications Commission's upcoming net neutrality proposal as another potential threat to the growth of wired services. 'Washington should be very thoughtful how they go forward here,' he said. 'This uncertainty is not good for investment, and it's not good for jobs here in America.'" -
Bipartisan Bill Would Mandate Warrant To Search Emails
jfruh writes: Bills were introduced into both the House and Senate yesterday that would amend the Electronic Communications Privacy Act, requiring a warrant to search Americans' email messages stored on third-party servers even if they're more than 180 days old. The current version of the law was passed in 1986, and was written in an environment where most email users downloaded emails to their computer and erased them after reading them. -
With Insider Help, ID Theft Ring Stole $700,000 In Apple Gift Cards
itwbennett writes The Manhattan District Attorney's office has indicted five people for using personal information stolen from around 200 people to fund the purchase of hundreds of thousands of dollars in Apple gift cards, which in turn were used to buy Apple products. "Using stolen information to purchase Apple products is one of the most common schemes employed by cybercrime and identity theft rings today," District Attorney Cyrus Vance said in a statement. "We see in case after case how all it takes is single insider at a company—in this instance, allegedly, a receptionist in a dentists' office—to set an identity theft ring in motion, which then tries to monetize the stolen information by purchasing Apple goods for resale or personal use," he said. -
Some Hackers Unknowingly Gathering Intel For the NSA
itwbennett writes As reported Wednesday by the news website The Intercept, the U.S. National Security Agency and its intelligence partners are sifting through data stolen by state-sponsored and freelance hackers on a regular basis in search of valuable information. A page from an internal wiki used by the intelligence agencies of the U.S., Canada and the U.K, which was last modified in 2012 and was among the files leaked by Edward Snowden reads: "Hackers are stealing the emails of some of our targets... by collecting the hackers' 'take' we 1) get access to the emails ourselves and 2) get insights into who's being hacked." -
Hundreds Apply For FAA Drone Licenses
itwbennett writes: The Federal Aviation Administration has issued eight more commercial drone licenses, the latest approvals for several hundred applications it has received. The newest licenses went to companies planning to use drones for video and TV production, aerial photography and surveying and inspecting flare stacks in the oil, natural gas and petro-chemical industry. Other readers sent in followups to last week's stories about an enthusiast's drone that crashed onto the White House grounds, and the subsequent firmware update from the drone's manufacturer to enforce a no-fly zone in that area. The EFF argues that this is a shortsighted solution and only serves to highlight how the concept of ownership is increasingly being pulled out of users' hands. Meanwhile, such "no-fly zone" updates give rise to a host of liability issues for manufacturers and enthusiasts alike. -
MIT Randomizes Tasks To Speed Massive Multicore Processors
itwbennett writes Researchers at the Massachusetts Institute of Technology have created a data structure that they claim can help large multicore processors churn through their workloads more effectively. Their trick? Do away with the traditional first-come, first-served work queue and assign tasks more randomly. The SprayList algorithm allows processors with many cores to spread out their work so they don't stumble over one another, creating bottlenecks that hamper performance. -
DARPA-Funded Robots Learning To Cook By Watching YouTube Videos
jfruh writes Once you've built humanoid-shaped robots, how do you get them to move and act like humans? Well, one way to teach them how to do it is to have them watch one of the greatest repository of recorded human experience ever: YouTube. Robots in a Maryland lab have learned how to prepare meals by watching and processing a slew of cooking videos, one of YouTube's most popular genres. -
Wi-Fi Issues Continue For OS X Users Despite Updates
itwbennett writes: Although Apple has never officially acknowledged issues surrounding Yosemite and Wi-Fi connectivity, the company is clearly aware of the problem: Leading off the improvements offered in the update 10.10.2 update released Tuesday was 'resolves an issue that might cause Wi-Fi to disconnect,' according to the release notes. Despite this, Apple's support forum was filled with tales of frustrated users. And Mac owners aren't the only Apple users experiencing wireless connection failures after updating their OS. Wi-Fi connectivity issues have also dogged iOS 8 since Apple released the mobile OS on Sept. 17. -
Anonymous No More: Your Coding Style Can Give You Away
itwbennett writes Researchers from Drexel University, the University of Maryland, the University of Goettingen, and Princeton have developed a "code stylometry" that uses natural language processing and machine learning to determine the authors of source code based on coding style. To test how well their code stylometry works, the researchers gathered publicly available data from Google's Code Jam, an annual programming competition that attracts a wide range of programmers, from students to professionals to hobbyists. Looking at data from 250 coders over multiple years, averaging 630 lines of code per author their code stylometry achieved 95% accuracy in identifying the author of anonymous code (PDF). Using a dataset with fewer programmers (30) but more lines of code per person (1,900), the identification accuracy rate reached 97%. -
DEA Cameras Tracking Hundreds of Millions of Car Journeys Across the US
itwbennett writes: A U.S. Drug Enforcement Administration program set up in 2008 to keep tabs on cars close to the U.S.-Mexican border has been gradually expanded nationwide and is regularly used by other law enforcement agencies in their hunt for suspects. The extent of the system, which is said to contain hundreds of millions of records on motorists and their journeys, was disclosed in documents obtained by the American Civil Liberties Union as part of a Freedom of Information Act request. -
Modular Smartphones Could Be Reused As Computer Clusters
itwbennett writes The promise of modular smartphones like Google's Project Ara is that buyers will be able to upgrade components at will — and now Finnish company Circular Devices has come up with a use for discarded computing modules, which they're calling Puzzlecluster. Drawings of the Puzzlecluster architecture show a chassis with slots for the reused modules, which can then be interconnected with others to create the cluster. Just one unit could also be used as a desktop computer." -
Winklevoss Twins Plan Regulated Bitcoin Exchange
itwbennett writes They of the square jaws and famous dispute with Mark Zuckerberg over the origins of Facebook, are also believed to be among the largest holders of Bitcoin in the world. Now they want to launch a regulated Bitcoin exchange—named Gemini, of course. To bolster confidence, they said they have formed a relationship with a chartered bank in the state of New York. "This means that your money will never leave the country," the twins wrote in a blog post. "It also means that U.S. dollars on Gemini will be eligible for FDIC insurance and held by a U.S.-regulated bank. -
Made-In-Nigeria Smart Cards To Extend Financial Services To the Poor
jfruh (300774) writes "A new factory producing smart cards opened in Lagos this week, promising to open up access to financial services to many poor Africans and other inhabitants of the Global South. The cards can be used by people without traditional bank accounts to access the worldwide credit card and smart phone infrastructure." From the article: Preliminary estimates indicate that there are currently about 150 million active SIM cards, 110 million biometric ID cards and 15 million credit and debit cards in Nigeria, [Nigerian president Goodluck] Jonathan said. As more financial-inclusion schemes, requiring more bank cards, are rolled out and different Nigerian states implement ID projects, the numbers of smart cards in use are expected to experience double-digit growth, he said. -
U.S. Gas Stations Vulnerable To Internet Attacks
itwbennett writes: Automated tank gauges (ATGs), which are used by gas stations in the U.S. to monitor their fuel tank levels can be manipulated over the Internet by malicious attackers, according to security firm Rapid7. "An attacker with access to the serial port interface of an ATG may be able to shut down the station by spoofing the reported fuel level, generating false alarms, and locking the monitoring service out of the system," said HD Moore, the chief research officer at Rapid7. -
Apple Agrees To Chinese Security Audits of Its Products
itwbennett writes According to a story in the Beijing News, Apple CEO Tim Cook has agreed to let China's State Internet Information Office to run security audits on products the company sells in China in an effort to counter concerns that other governments are using its devices for surveillance. "Apple CEO Tim Cook agreed to the security inspections during a December meeting in the U.S. with information office director Lu Wei, according to a story in the Beijing News. China has become one of Apple’s biggest markets, but the country needs assurances that Apple devices like the iPhone and iPad protect the security and privacy of their users as well as maintain Chinese national security, Lu told Cook, according to an anonymous source cited by the Beijing News." -
Fujitsu Psychology Tool Profiles Users At Risk of Cyberattacks
itwbennett writes Fujitsu Laboratories is developing an enterprise tool that can identify and advise people who are more vulnerable to cyberattacks, based on certain traits. For example, the researchers found that users who are more comfortable taking risks are also more susceptible to virus infections, while those who are confident of their computer knowledge were at greater risk for data leaks. Rather than being like an antivirus program, the software is more like "an action log analysis than looks into the potential risks of a user," said a spokesman for the lab. "It judges risk based on human behavior and then assigns a security countermeasure for a given user." -
Calls For European ISPs To Filter Content Could Be Illegal
jfruh writes Last week, justice ministers from EU countries called for ISPs to censor or block certain content in the "public interest." But a legal analysis shows that such moves could actually violate EU privacy laws, since it would inevitably involve snooping on the content of Internet traffic to see what should be blocked. -
Facebook Will Let You Flag Content As 'False'
jfruh writes: If you're tired of seeing fake or misleading news articles posted by your friends to Facebook and then spreading like wildfire, you might be in luck. In a system that's something like Slashdot comment moderation on a grand scale, you'll now be able to flag a story as false. Links that have been flagged this way by many users will appear less frequently in people's newsfeeds, or with a disclaimer attached. -
Why Run Linux On Macs?
jones_supa writes Apple has always had attractive and stylish hardware, but there are always some customers opting to run Linux instead of OS X on their Macs. But why? One might think that a polished commercial desktop offering designed for that specific lineup of computers might have less rough edges than a free open source one. Actually there's plenty of motivations to choose otherwise. A redditor asked about this trend and got some very interesting answers. What are your reasons? -
Google Finally Quashes Month-Old Malvertising Campaign
jfruh writes Since the middle of December, visitors to sites that run Google AdSense ads have intermittently found themselves redirected to other sites featuring spammy offerings for anti-aging and brain-enhancing products. While webmasters who have managed to figure out which advertisers are responsible could quash the attacks on their AdSense consoles, only now has Google itself managed to track down the villains and ban them from the service. -
Ad Company Using Verizon Tracking Header To Recreate Deleted Cookies
itwbennett writes The story began a few months ago when it was reported that both Verizon and AT&T were injecting unique identifiers in the Web requests of their mobile customers. AT&T has since stopped using the system, but Verizon continues. Now, Stanford computer scientist Jonathan Mayer has found that one advertising company called Turn, which tracks users across the Web when they visit major sites including Facebook, Twitter, Yahoo, BlueKai, AppNexus, Walmart and WebMD, uses the Verizon UIDH to respawn its own tracking cookies. -
China Lays More Fiber, Improving Physical Connection To the Worldwide Internet
jfruh writes China's state-owned Internet service providers are improving the nation's connection to the worldwide Internet, adding seven new access points to the world's Internet backbone to improve speed and reliability for Chinese customers. This reveals the nation's essential Internet contradiction, improving its physical connection even as the government continues to block a number of important Intenet sites. -
FBI Access To NSA Surveillance Data Expands In Recent Years
itwbennett writes The FBI's access to email and other data collected from overseas targets in the NSA's Prism program has been growing since 2008, according to a 2012 U.S. Department of Justice inspector general's report declassified last Friday by the DOJ in response to a Freedom of Information Act request by the New York Times. Here are some of the milestones mentioned in the report: In 2008, the FBI began reviewing email accounts targeted by the NSA through the Prism program. In October 2009, the FBI requested that information collected under the Prism program be 'dual routed' to both the NSA and the FBI so that the FBI 'could retain this data for analysis and dissemination in intelligence reports.' And in April 2012, the FBI began nominating email addresses and phone numbers that the NSA should target in it surveillance program, according to the document. -
US Lawmakers Push For a Permanent Ban On Internet Access Taxes
jfruh (300774) writes Since 1998, U.S. law has forbidden states from taxing Internet access — but the law has an expiration date that's been extended five times now. The new Congress is attempting to make the ban permanent, but some members are objecting to the fact that the proposed bill leaves in place grandfather clauses for states like Texas and Ohio that already had taxes in place in 1998. -
OpenSSL Patches Eight New Vulnerabilities
itwbennett writes: Server administrators are advised to upgrade OpenSSL again to fix eight new vulnerabilities, two of which can lead to denial-of-service (DoS) attacks. Although the flaws are only of moderate and low severity, "system administrators should plan to upgrade their running OpenSSL server instances in the coming days," said Tod Beardsley, engineering manager at vulnerability intelligence firm Rapid7. -
Glitch In OS X Search Can Expose Private Details of Apple Mail Users
itwbennett (1594911) writes "The potential privacy risk in Apple's OS X Yosemite, first reported by German tech news site Heise and confirmed by IDG News Service, appears when people use the Spotlight Search feature, which also indexes emails received with the Apple Mail email client. Performing a Spotlight search opens email previews that load external images, including tracking pixels that are used to gather data, even when the Mail client is asked not to do this." From the article: A preview of the unopened emails was shown by Spotlight, which revealed to the operator of the server hosting the pixels the receiver’s IP address, current OS version and some details about the browser used as well as the version of Quick Look, a program that let’s users preview a document. -
BlackBerry's Survival Plan: the Internet of Things
jfruh writes BlackBerry's smartphone business is famously floundering, but the company isn't betting everything on its new retro physical-keyboard phones. It's also making moves into distributed, embedded, and asset-tracking computing for homes, cars, and businesses, which can all be lumped under the currently trendy "Internet of Things" buzzword umbrella. The company got a head start when it acquired the QNX OS in 2010, which was intended as the basis of a new smartphone OS but which already had credibility in the embedded market. -
Bill Would Ban Paid Prioritization By ISPs
jfruh writes In the opening days of the new U.S. Congress, a bill has been introduced in both the House and Senate enforcing Net neutrality, making it illegal for ISPs to accept payment to prioritize some traffic packets over others. But the sponsors are all Democrats, and with Republicans now in charge of both house of Congress, the chances of it passing seem slim. -
Wireless Charging Standards Groups Agree To Merge
jfruh writes: The world where our gadgets all charge wirelessly has been delayed by several factors, one of which is that there are three industry groups promoting rival technological standards. That problem is now a little closer to a solution, as the Alliance for Wireless Power and the Power Matters Alliance announced a plan to merge. -
Hackers Steal $5M In Bitcoin During Bitstamp Exchange Attack
itwbennett writes: After a weekend hack forced the Bitcoin exchange Bitstamp to shut down, Bitstamp has revealed that $5 million worth of bitcoin was stolen during the attack. And that's not all the bad news for Bitcoin this week: Canadian Bitcoin exchange Vault of Satoshi announced it is is no longer accepting new deposits and will close Feb. 5. But in this case the operators are pursuing new business opportunities, saying in a post that the shutdown "has absolutely nothing to do with insolvency, stolen funds, or any other unfortunate scenario." -
Hackers Steal $5M In Bitcoin During Bitstamp Exchange Attack
itwbennett writes: After a weekend hack forced the Bitcoin exchange Bitstamp to shut down, Bitstamp has revealed that $5 million worth of bitcoin was stolen during the attack. And that's not all the bad news for Bitcoin this week: Canadian Bitcoin exchange Vault of Satoshi announced it is is no longer accepting new deposits and will close Feb. 5. But in this case the operators are pursuing new business opportunities, saying in a post that the shutdown "has absolutely nothing to do with insolvency, stolen funds, or any other unfortunate scenario." -
AMD, Nvidia Reportedly Tripped Up On Process Shrinks
itwbennett writes: In the fierce battle between CPU and GPU vendors, it's not just about speeds and feeds but also about process shrinks. Both Nvidia and AMD have had their move to 16nm and 20nm designs, respectively, hampered by the limited capacity of both nodes at manufacturer TSMC, according to the enthusiast site WCCFTech.com. While AMD's CPUs are produced by GlobalFoundaries, its GPUs are made at TSMC, as are Nvidia's chips. The problem is that TSMC only has so much capacity and Apple and Samsung have sucked up all that capacity. The only other manufacturer with 14nm capacity is Intel and there's no way Intel will sell them some capacity. -
European Researchers Develop More Accurate Full-Body Polygraph
jfruh writes: Despite their widespread use in industry and law enforcement, traditional lie-detector polygraphs give accurate results only about 60% of the time, barely better than the 55% accuracy people can get just by following their gut instincts. Now researchers in the UK and the Netherlands are trying to improve that. They claim a full-body polygraph based on motion-capture suits used for movie special effects can detect lies with 75% accuracy. -
2014: The Year We Learned How Vulnerable Third-Party Code Libraries Are
jfruh writes Heartbleed, Shellshock, Poodle — all high-profile vulnerabilities in widely used libraries that rocked the software industry in 2014. Sadly, experts are now beginning to believe that these aren't the only bugs lurking out there in widely used open source code, just the ones that grabbed the most attention. It's beginning to look like one of the foundation concepts of open source — that with enough eyes, all bugs are shallow — is a myth. Of course, probably no one believes that all bugs are instantly shallow, no matter how open is the source, or that open source software is immune from bugs -- particularly ESR, coiner of the phrase.