Domain: networkworld.com
Stories and comments across the archive that link to networkworld.com.
Stories · 2,229
-
NASA Universe-Watching Satellite Losing Its Cool
coondoggie writes "NASA this week said its Wide-field Infrared Survey Explorer, or WISE satellite is heating up — not a good thing when your primary mission instrument needs to be kept cold to work. According to NASA, WISE has two coolant tanks that keep the spacecraft's normal operating temperature at 12 Kelvin (minus 438 degrees Fahrenheit). The outer, secondary tank is now depleted, causing the temperature to increase. One of WISE's infrared detectors, the longest-wavelength band most sensitive to heat, stopped producing useful data once the telescope warmed to 31 Kelvin (minus 404 degrees Fahrenheit)." -
FTC Busts Domain Name Scammers
coondoggie writes "The Federal Trade Commission said today it had permanently killed the operations of a group that it said posed as domain name registrars and convinced thousands of US consumers, small businesses and non-profit organizations to pay bogus bills by leading them to believe they would lose their Web site addresses if they didn't. As with so many of these cases however, the defendants get off paying back very little compared to what they took. With today's settlement order, entered against defendants Isaac Benlolo, Kirk Mulveney, Pearl Keslassy, and 1646153 Ontario Inc., includes a suspended judgment of $4,261,876, the total amount of consumer injury caused by the illegal activities. Based on what the FTC called the inability of the settling defendants to pay, they will turn over $10,000 to satisfy the judgment." -
Happy System Administrator Appreciation Day
ArbiterOne writes "The 11th Annual System Administrator Appreciation Day is today. Celebrated worldwide on the last Friday of July, this day honors those who fight in the digital trenches to keep the Net alive. OpenDNS offers a way to remind your boss about the holiday, while another blogger shares war stories. The startup Ksplice has created an homage to these heroes in the style of Choose Your Own Adventure." Reader Netbuzz submits a sobering look at the profession from Network World, which notes, "In the past year, [sysadmins'] pay has dropped, and more of their positions are being farmed out to temporary workers." -
NASA's Top 10 Space Junk Missions
Ant writes "NASA has identified the top ten space junk missions and said over 19,000 pieces of space junk are known to exist..." That's nothing: You should see my living room. -
Pizza Lovers Suffer Data Breach From Hell
netbuzz writes "Some 230,000 New Zealanders have been informed that their personal information has apparently fallen into the hands of hackers who compromised the network of a locally famous food chain, Hell Pizza. The company says it suspects 'a rogue employee,' but one security expert says Hell's ordering portal is 'about 50 steps of fail.' Several New Zealand celebrities are among the victims and at least one is taking the matter in stride, musing: 'My Twitter has been hacked, my Facebook has been hacked and I'm pretty sure half of New Zealand has my phone number already. I have nothing bad to say about Hell.'" -
EU Launches Antitrust Investigation Against IBM
FlorianMueller writes "The European Commission announced today that it has launched two parallel antitrust investigations into IBM's mainframe practices, following complaints lodged by T3 Technologies last year and French open source startup TurboHercules in March. EU regulators suspect an abuse of a dominant position and illegal tying of IBM's mainframe hardware to its proprietary mainframe operating system z/OS. There's even the possibility of a third case based on a complaint filed very recently by NEON, and the DoJ is also looking into this matter. IBM now finds itself in a situation previously experienced by Microsoft and Intel. This may also affect IBM's credibility when lobbying in the EU for open standards." Reader coondoggie points out a response from IBM saying that the accusations are being driven by Microsoft and other competitors. -
An Unprecedented Look At Apple's "Black Labs"
An anonymous reader writes "Apple recently granted ABC Nightline unprecedented access to its secretive 'black labs' where it puts upcoming products through exhaustive testing." -
Wi-Fi WPA2 Vulnerability Found
BobB-nw sends along news based on yet another press release in advance of the Black Hat conference: a claimed vulnerability in WPA2 Enterprise that leaves traffic open to a malicious insider. "...wireless security researchers say they have uncovered a vulnerability in the WPA2 security protocol, which is the strongest form of Wi-Fi encryption and authentication currently standardized and available. Malicious insiders can exploit the vulnerability, named 'Hole 196' by the researcher who discovered it at wireless security company AirTight Networks. The moniker refers to the page of the IEEE 802.11 Standard (Revision, 2007) on which the vulnerability is buried. Hole 196 lends itself to man-in-the-middle-style exploits, whereby an internal, authorized Wi-Fi user can decrypt, over the air, the private data of others, inject malicious traffic into the network, and compromise other authorized devices using open source software, according to AirTight. 'There's nothing in the standard to upgrade to in order to patch or fix the hole,' says Kaustubh Phanse, AirTight's wireless architect who describes Hole 196 as a 'zero-day vulnerability that creates a window of opportunity' for exploitation." Wi-Fi Net News has some more detail and speculation. -
Feds Bust Chinese Firm's Hybrid Car Data Heist
coondoggie writes "An FBI investigation has led a Michigan couple to be charged with stealing hybrid car information from GM to use in a Chinese auto outfit. A federal indictment charged Yu Qin, aka Yu Chin, 49, and his wife, Shanshan Du, aka Shannon Du, 51, of Troy, Michigan with conspiracy to possess trade secrets without authorization, unauthorized possession of trade secrets, and wire fraud. One of the individuals was also charged with obstruction of justice, said Barbara McQuade, United States Attorney for the Eastern District of Michigan in a statement. GM estimates that the value of the stolen documents is over $40 million." -
Boeing Shows Off First Commercial Spacecraft
coondoggie writes "Boeing today released the first public glimpse of the commercial spacecraft it is working on under an $18 million contract with NASA. Boeing's Crew Space Transportation (CST)-100 can hold seven crew and will be bigger than Apollo but smaller than NASA's Orion, and be able to launch on a variety of different rockets, including Atlas, Delta and Falcon.The company envisions the spacecraft supporting the International Space Station and future Bigelow Aerospace Orbital Space Complex systems. Bigelow is building what it calls 'expandable habitats,' that which are inflatable spacecraft would act as large, less costly space stations." -
Is Open Source SNORT Dead?
alphadogg writes "Is Snort, the 12-year-old open-source intrusion detection and prevention system, dead? The Open Information Security Foundation, a nonprofit group funded by the US Dept. of Homeland Security to come up with next-generation open source IDS/IPS, thinks so. But Snort's creator, Martin Roesch, begs to differ, and in fact, calls the OISF's first open source IDS/IPS code, Suricata 1.0 released this week, a cheap knock-off of Snort paid for with taxpayer dollars. The OISF was founded about a year and a half ago with $1 million in funding from a DHS cybersecurity research program, according to Matt Jonkman, president of OISF. He says OISF was founded to form an open source alternative and replacement to Snort, which he says is now considered dead since the research on what is supposed to be the next-generation version of Snort, Snort 3.0, has stalled." -
Google Goes On Offensive vs. JavaScript Attacks
alphadogg writes "Google's e-mail security team has updated its Postini engine to stop a new type of JavaScript attack that helped fuel a rise in spam volume in recent months. Google says it has seen a surge in obfuscated JavaScript attacks, describing them as a hybrid between virus and spam messages. The e-mails are designed to look like legitimate messages, specifically Non Delivery Report messages, but contain hidden JavaScript. 'In some cases, the message may have forwarded the user's browser to a pharma site or tried to download something unexpected,' Google said in its official blog." -
NASA Revamps Historic 4-Million-kg Mars Antenna
coondoggie writes NASA is working on some difficult renovations to reinvigorate its 70-meter-wide 'Mars antenna.' The antenna, a key cog in NASA's Deep Space Network, needs about $1.25M worth of what NASA calls major, delicate surgery. The revamp calls for lifting the antenna — about 4 million kilograms of finely tuned scientific instruments — to a height of about 5 millimeters so workers can replace the steel runner, walls and supporting grout." -
Can Drones Really Get National Airspace Access?
coondoggie writes "There is a push by a variety of proponents to give unmanned aircraft more free rein in US airspace, but safety is a major hitch in that effort. The Federal Aviation Administration said this week that data from the Customs and Border Protection (CBP) agency, which flies unmanned systems on border patrols, shows a total of 5,688 flight hours from Fiscal Year 2006 to July 13, 2010. The CBP accident rate is 52.7 accidents per 100,000 flight hours. This accident rate is more than seven times the general aviation accident rate (7.11 accidents/100,000 flight hours) and 353 times the commercial aviation accident rate (0.149 accidents/100,000 flight hours)." An FAA executive noted that an "accident" refers to a situation in which "the aircraft has done something unplanned or unexpected and violates an airspace regulation." -
Leaving a Comment? That'll Be 99 Cents, and Your Name
netbuzz writes "Anxious to lift a ban on comments brought about by incessant trolling and anonymous slander, a Massachusetts newspaper has begun requiring two things of online readers who want to leave their thoughts on stories: a one-time fee of 99 cents and a willingness to use their real names. Says the publisher: 'This is a necessary step, in my opinion, if The Attleboro (MA) Sun Chronicle is going to continue to provide a forum for comments on our websites.'" -
DARPA Issues Call For Computer Science Devotees
coondoggie writes "The Defense Advanced Research Projects Agency is looking for a few good university-based computer science researchers who might be interested in developing systems for the US military. The move is seen, in part anyway, as a way for the agency to win more hearts and minds of the advanced science community." -
NASA's Juno, Armored Tank Heading For Jupiter
coondoggie writes "When it comes to ensuring that its upcoming Juno spacecraft can survive its mission, NASA is surrounding the spacecraft's electronic innards with titanium to ward off mission-threatening radiation. Juno's so-called radiation vault weighs about 200 kilograms (500 pounds), has walls that measure about a square meter (nearly 9 square feet) in area, about 1 centimeter (a third of an inch) in thickness, and 18 kilograms (40 pounds) in mass. About the size of an SUV's trunk — encloses Juno's command and data handling box, power and data distribution unit and about 20 other electronic assemblies, according to NASA." -
More Gas Station Credit-Card Skimmers
coondoggie notes a Network World piece on credit-card skimmers found installed in gas pumps, this time in Florida. Like the similar wave of attacks in Utah earlier this year, the latest crop uses Bluetooth to transmit the illicitly collected data. Does this mean an accomplice has to hang around within 3m of the pump? "The Secret Service has indicated there's a crime wave throughout the Southeast involving the gas-station pump card skimmers, and it may be traced back to a single gang that may be working out of Miami... St. Johns County in Florida has also been hit by the gas-pump card skimmers. [A local sheriff's department spokesman] says criminals wanting to hide the credit-card skimmers in gas pumps have to have a key to the pump, but in some cases a single key will serve to get into many gas pumps." Here's an insight from the banking industry on the skimming fraud. -
NASA Adds $5M Prizes For Robots, Solar Spacecraft
coondoggie writes "NASA today significantly expanded its Centennial Challenges program to include $5 million worth of new competitions to develop robots, small satellites, and solar powered spacecraft. One of the new competitions is the Sample Return Robot Challenge. Its purpose is to demonstrate a robot that can locate and retrieve geologic samples from wide and varied terrain without human control. This challenge has a prize purse of $1.5 million. The objectives are to encourage innovations in automatic navigation and robotic manipulator technologies." -
Internet Censorship Arms Race Gets New Weapon From Georgia Tech
coondoggie writes "Trying to get out in front of what they call a censorship arms race, a team of researchers has come up with technology that lets users exchange messages through heavily censored networks in countries such as China and North Korea in hidden channels via user-generated content sites such as Twitter or Flickr. Researchers with the Georgia Tech School of Computer Science will demo the technology known as Collage for the first time at next month's Usenix security conference and ideally have a working package the public can download by the end of August." -
Cisco Says Vegas Conference Attendees' Information Was Leaked
Julie188 writes "Thousands of people got a nasty e-mail this morning from Cisco. The company was warning people that its attendee registration database for its Cisco Live 2010 event was hacked. Cisco Live 2010 is the company's annual user conference, held last week in Las Vegas with an estimated 18,000 in attendance. If it's not embarrassing enough for a company that sells security gear to get hacked, the e-mail also went out to people who didn't register and didn't attend the event. That raises questions about exactly what database was pried open and how bad the damage is. Cisco's e-mail said the hole was quickly closed and only business-card type information was exposed." -
NASA Sets Dates For Space Shuttle Finale
coondoggie writes "After some debate, NASA today said it has set the final two launch dates for its venerable space shuttles: Nov. 1 for space shuttle Discovery's STS-133 mission, and Feb. 26, 2011, for the liftoff of shuttle Endeavour's STS-134 mission. NASA said the dates needed to be adjusted because critical payload hardware for STS-133 will not be ready in time to support the planned Sept. 16 launch." -
Russian Spy Ring Needed Some Serious IT Help
coondoggie writes "The Russian ring charged this week with spying on the United States faced some of the common security problems that plague many companies — misconfigured wireless networks, users writing passwords on slips of paper, and laptop help desk issues that take months to resolve." -
Petaflops? DARPA Seeks Quintillion-Flop Computers
coondoggie writes "Not known for taking the demure route, researchers at DARPA this week announced a program aimed at building computers that exceed current peta-scale computers to achieve the mind-altering speed of one quintillion (1,000,000,000,000,000,000) calculations per second. Dubbed extreme scale computing, such machines are needed, DARPA says, to 'meet the relentlessly increasing demands for greater performance, higher energy efficiency, ease of programmability, system dependability, and security.'" -
US Dept. of Energy Wants Bigger Wind Energy Ideas
coondoggie writes "The Department of Energy wants to kick up the research and development of offshore wind projects as it looks to achieve its goal of producing 20% of the country's electricity from wind farms by 2030. The DOE Wind Program is looking to focus on what it calls specific advanced technology, gigawatt-scale demonstration projects that can be carried out by partnerships with a wide range of eligible organizations and stimulate cost-effective offshore wind energy deployment in coastal and Great Lakes regions of the country. The agency is also looking for more research that can help address market barriers in order to facilitate deployment and reduce technical challenges facing the entire industry, as well as technology that will reduce cost of offshore wind energy through innovation and testing." -
Wikipedia To Unlock Frequently Vandalized Pages
netbuzz writes "In an effort to encourage greater participation, Wikipedia, the self-described 'online encyclopedia that anyone can edit,' is turning to tighter editorial control as a substitute for simply 'locking' those entries that frequently attract mischief makers and ideologues. The new system, which will apply to a maximum of 2,000 most-vulnerable pages, is sure to create controversies of its own." -
Mars May Have Been 1/3 Ocean
coondoggie sends in a snippet from Network World, as is his wont: "It's possible that a huge ocean covered one-third of the surface of Mars some 3.5 billion years ago, a finding likely to reignite an old argument about that amount of water on the red planet, according to a new report. The study by the University of Colorado at Boulder is the first to integrate multiple data sets of river deltas, valley networks and topography from a cadre of NASA and European Space Agency orbiting missions of Mars dating back to 2001, the researchers claim." The National Geographic coverage of the news gives some air time to those doubtful that this study will prove definitive. -
Microsoft's Sleep Proxy Lowers PC Energy Use
alphadogg writes "Microsoft researchers have slashed desktop energy use with a sleep proxy system that maintains a PC's network presence even when it is turned off or put into standby mode. Microsoft has deployed the sleep proxy system to more than 50 active users in the Building 99 research facility in Redmond, Wash., according to the Microsoft Research Web site and a paper that will be presented at the Usenix technical conference in Boston later this month. ... Sleep proxies allow machines to be turned off while keeping them connected to the network, waking the machines when a user or IT administrator attempts to access them remotely." -
DoE Posts Raw Data From Oil Spill, Coast Guard Asks For Tech Help
coondoggie writes "The US Department of Energy this week opened an online portal where the public can get all the technical details it can stomach about the BP oil disaster in the Gulf. The DoE site offers online access to schematics, pressure tests, diagnostic results and other data about the malfunctioning blowout preventer and other problems in the ongoing mess. This comes alongside news that the US Coast Guard has issued a call for better specialized technology to help it respond to the ever-widening spill. The Coast Guard is looking for all manner of technology, such as advanced wireless sensors to help it track the movement and amount of oil in the Gulf, or devices that could help to contain and control the underwater leak." Reader freddled points out a story at the Guardian that illustrates how the location of an oil leak is frequently the primary factor in its perceived importance. -
FTC Bombs Massive Robocall Operation
coondoggie writes "The Federal Trade Commission today had a federal court in Chicago halt a major telemarketing operation that made at least 370 million illegal phone calls pitching worthless extended auto warranties and credit card interest rate-reduction programs. According to the FTC, one telephone service provider told the FTC that during a single day in April 2009 the defendants — SBN Peripherals — sent 2.4 million calls to consumers — more than 27 calls per second." -
FAA Adds a Study On Adding Drones To Commercial Aviation
coondoggie writes "Facing a number of technical challenges, the Federal Aviation Administration said today it added another research project designed to better understand how unmanned aircraft can be brought safely into the national airspace. The FAA set a two-year research and development agreement with Insitu (an independent subsidiary of Boeing) and the New Jersey Air National Guard that will help FAA scientists to study and better understand unmanned aircraft design, construction, and features. Researchers will also look at the differences in how an air traffic controller would manage an unmanned aircraft vs. a manned aircraft." -
Activists Worry About a New "Green Dam" In Vietnam
alphadogg writes "Human rights activists are worried that new software mandated by Vietnamese authorities may lead to an Internet clampdown in the country's largest city. In April, local officials issued new regulations covering Internet cafes and service providers in Hanoi, ostensibly designed to crack down on hacking and other service abuses. Buried in the regulations is a mandate that service providers must add special software to their domain servers, used to authenticate systems on the network. Nobody quite knows what the software is, but activists in the US worry that it may be used to clamp down on Internet usage in a country that has seen more and more grassroots information-sharing on social networks over the past year. Last year China tried to force PC makers to ship Green Dam censorware with all computers sold in the country, saying the software would help crack down on online pornography. But Chinese authorities — already known for their notorious Great Firewall — eventually backed off from their plans after critics raised a host of privacy, security and system stability concerns, and Chinese Internet users showed no interest in installing the program." -
Android Rootkit Is Just a Phone Call Away
alphadogg writes "Hoping to understand what a new generation of mobile malware could resemble, security researchers will demonstrate a malicious 'rootkit' program they've written for Google's Android phone next month at the Defcon hacking conference in Las Vegas. Once it's installed on the Android phone, the rootkit can be activated via a phone call or SMS message, giving attackers a stealthy and hard-to-detect tool for siphoning data from the phone or misdirecting the user. 'You call the phone, the phone doesn't ring, and when the phone realizes that it's being called by an attacker's phone number, it sends him back a shell [program],' said Christian Papathanasiou, a security consultant with Chicago's Trustwave, the company that did the research." -
Three Indicted In Scareware Scam That Netted $100M
alphadogg writes "Three men are facing federal fraud charges for allegedly raking in more than $100 million while running an illegal 'scareware' business called Innovative Marketing that tricked victims into installing bogus software. The company's products generated so many consumer complaints that in 2008 the FTC brought a civil action against Innovative Marketing and call center partner Byte Hosting, effectively putting them out of business. On Wednesday, a grand jury in Chicago handed down criminal charges, meaning the three men now face jail time if convicted." One of the men indicted is in Ohio and the others are believed to be in Ukraine and Sweden. Microsoft's Digital Crimes Unit helped out with the case. -
Work Underway To Return Xen Support To Fedora 13
Julie188 writes "Details on this are admittedly sketchy, but both Red Hat and Xen.org have gone on record promising that some kind of support for the Xen hypervisor is forthcoming for Fedora users. As we know, on Monday, Fedora 13 was released, chock full of features to appeal to business users. One of the ballyhooed improvements to 13 is virtualization — meaning KVM and only KVM — for Red Hat. Xen was dropped from Fedora a few releases ago and it hasn't come back in 13, except that 13 still supports Xen guests. Meanwhile, 'work is underway in Xen.org to add platform support to Fedora 13 post-release,' promises Xen.org's Ian Pratt." -
Work Underway To Return Xen Support To Fedora 13
Julie188 writes "Details on this are admittedly sketchy, but both Red Hat and Xen.org have gone on record promising that some kind of support for the Xen hypervisor is forthcoming for Fedora users. As we know, on Monday, Fedora 13 was released, chock full of features to appeal to business users. One of the ballyhooed improvements to 13 is virtualization — meaning KVM and only KVM — for Red Hat. Xen was dropped from Fedora a few releases ago and it hasn't come back in 13, except that 13 still supports Xen guests. Meanwhile, 'work is underway in Xen.org to add platform support to Fedora 13 post-release,' promises Xen.org's Ian Pratt." -
NASA's Phoenix Mars Lander Killed By Ice
coondoggie writes "NASA officially ended its Phoenix Mars Lander operation today after a new image of the machine showed severe ice damage to its solar panels, and repeated attempts to contact the spacecraft had failed. 'Apparent changes in the shadows cast by the lander are consistent with predictions of how Phoenix could be damaged by harsh winter conditions. It was anticipated that the weight of a carbon-dioxide ice buildup could bend or break the lander's solar panels. [Michael Mellon of the University of Colorado] calculated hundreds of pounds of ice probably coated the lander in mid-winter.'" -
Air Force Sets Date To Fly Mach-6 Scramjet
coondoggie writes "The US Air Force said it was looking to launch its 14-foot long X-51A Waverider on its first hypersonic flight test attempt May 25. The unmanned X-51A is expected to fly autonomously for five minutes, after being released from a B-52 Stratofortress off the southern coast of California. The Waverider is powered by a supersonic combustion scramjet engine, and will accelerate to about Mach 6 as it climbs to nearly 70,000 feet. Once flying, the X-51 will transmit vast amounts of data to ground stations about the flight, then splash down into the Pacific. There are no plans to recover the flight test vehicle, one of four built, the Air Force stated." -
FTC Greenlights Google-AdMob Deal
coondoggie writes "The Federal Trade Commission today said it closed the investigation of the proposed $750 million Google acquisition of mobile advertising network company AdMob. The FTC said that while the combination of the two leading mobile advertising networks raised serious antitrust issues, the agency's concerns ultimately were overshadowed by recent developments in the market, most notably a move by Apple to launch its own, competing mobile ad network." -
Would You Die To Respect a Software License?
Julie188 writes "Some 2,000 licenses cover the 230,000+ projects in Black Duck's open source knowledge base. While 10 licenses comprise 93% of the software, that leaves 1,980-odd licenses for the other 3% — and some of them have really crazy conditions. The Death and Repudiation License, for instance, requires the user to be dead." -
FTC Takes Out Porn- and Botnet-Spewing ISP
coondoggie writes "The Federal Trade Commission today got a judge to effectively kill off the Internet service provider 3FN, which the agency said specialized in spam, porn, botnets, phishing, and all manner of malicious web content. The ISP's computer servers and other assets have been seized and will be sold by a court and the operation has been ordered give back $1.08 million to the FTC." -
Black Duck Eggs and Other Secrets of Chinese Hacks
Roberto123 writes "Network World offers some insights into the way China infiltrates US organizations, physically and via computer, to steal information. Security expert Ira Winkler says there are far more serious threats out there than the 'laughable' uproar over China's hack of Google." -
EFF Says Forget Cookies, Your Browser Has Fingerprints
alphadogg writes "Even without cookies, popular browsers such as Internet Explorer and Firefox give websites enough information to get a unique picture of their visitors about 94 percent of the time, according to research compiled over the past few months by the Electronic Frontier Foundation. [The Research] puts quantitative assessment on something that security gurus have known about for years, said Peter Eckersley, the EFF senior staff technologist who did the research. He found that configuration information — data on the type of browser, operating system, plugins, and even fonts installed — can be compiled by websites to create a unique portrait of most visitors. This means that most Internet users are a lot less anonymous than they believe, Eckersley said. 'Even if you turn off cookies and you use a proxy to hide your IP address, you could still be tracked,' he said." -
Hacking Automotive Systems
alphadogg writes "University researchers have taken a close look at the computer systems used to run today's cars and discovered new ways to hack into them, sometimes with frightening results. In a paper set to be presented at a security conference in Oakland, California, next week, the researchers say that by connecting to a standard diagnostic computer port included in late-model cars, they were able to do some nasty things, such as turning off the brakes, changing the speedometer reading, blasting hot air or music on the radio, and locking passengers in the car. The point of the research isn't to scare a nation of drivers, already made nervous by stories of software glitches, faulty brakes, and massive automotive recalls. It's to warn the car industry that it needs to keep security in mind as it develops more sophisticated automotive computer systems. Other experts describe the real-world risk of any of the described attacks as low." Here is the researchers' site, and an image that could stand as a summary of the work. -
Call In the Military To Blast Rogue Satellite?
coondoggie submitted a follow-up to the tale of the wandering satellite that might collide with other stuff in orbit. He asks "Will the military need to be called in to blow up the rogue Intelsat satellite meandering through Earth's orbit? Or maybe a NASA Space Shuttle could swing by and grab it? You may recall that in 2008, rather than risk that a large piece of a failing spy satellite would fall on populated areas, the government blasted it out of the sky. The physics of such a shot were complicated and the Navy had a less than 10-second window to hit the satellite as it passed over its ships in the Pacific Ocean. But it worked. Now word comes that a five-year-old Intelsat TV satellite is meandering in orbit and attempts to control it have proven futile. At issue now is that the satellite could smash into other satellites or ramble into other satellite orbits and abscond with their signals." -
BSA Says Software Theft Exceeded $51B In 2009
alphadogg sends a NetworkWorld.com piece going over the Business Software Alliance's latest stats on software theft around the world. "Expanding PC sales in emerging markets is increasing the rate of software piracy, according to the Business Software Alliance and IDC. The rate of global software piracy in 2009 was 43%, meaning that for every $100 worth of legitimate software sold in 2009, an additional $75 worth of unlicensed software also made its way into the market. This is a 2-percentage-point increase from 2008. Software theft exceeded $51 billion in commercial value in 2009, according to the BSA. IDC says lowering software piracy by just 10 percentage points during the next four years would create nearly 500,000 new jobs and pump $140 billion into 'ailing economies.' ... In the United States, software piracy remained at 20%, the lowest level of software theft of any nation in the world. ... The PC markets in Brazil, India, and China accounted for 86% of the growth in PC shipments worldwide." The BSA president said, "Few if any industries could withstand the theft of $51 billion worth of their products." It's unclear whether that was a brag about the industry's robustness, or a result of the industry's low cost of goods sold. -
Law Professors Developing Patent License For FOSS
Julie188 writes with this quote from a Networkworld article: "Two law professors from UC Berkeley have come up with a novel idea to protect open source developers from patent bullies. They call it the Defensive Patent License. They hope the DPL can address the objections FOSS developers have with patents the way the GPL addressed them for copyright. The DPL is similar to the concept of a defensive patent pool, but is not the same. The DPL is a bit more radical. It requires a bigger commitment from its members than the typical toe-in-the-water kind of pool, says Jason Schultz, former staff attorney at the Electronic Frontier Foundation. 'The perception is that bigger companies only commit their least-effective, least-important patents to a patent pool,' he says. Schultz isn't pointing fingers at any particular pool. However critics of IBM's open source patent pledge often said it didn't cover the patents most relevant to the FOSS community." -
Hacker Develops ATM Rootkit
alphadogg writes "One year after his Black Hat talk on automated teller machine security vulnerabilities was yanked by his employer, security researcher Barnaby Jack plans to deliver the talk and disclose a new ATM rootkit at the computer security conference. He plans to give the talk, entitled "Jackpotting Automated Teller Machines," at the Black Hat Las Vegas conference, held July 28 and 29. Jack will demonstrate several ways of attacking ATMs, including remote, network-based attacks." -
Hot Sales In China For Wi-Fi Key-Cracking Kits
alphadogg writes "Dodgy salesmen in China are making money from long-known weaknesses in a Wi-Fi encryption standard, by selling network key-cracking kits for the average user. Wi-Fi USB adapters bundled with a Linux operating system, key-breaking software, and a detailed instruction book are being sold online and at China's bustling electronics bazaars. The kits, pitched as a way for users to surf the Web for free, have drawn enough buyers and attention that one Chinese auction site, Taobao.com, had to ban their sale last year. With one of the 'network-scrounging cards,' or 'ceng wang ka' in Chinese, a user with little technical knowledge can easily steal passwords to get online via Wi-Fi networks owned by other people. The kits are also cheap. A merchant in a Beijing bazaar sold one for 165 yuan ($24), a price that included setup help from a man at the other end of the sprawling, multistory building." -
Metasploit As Case Study In Selling a FOSS Project
coondoggie sends in a Network World interview with HD Moore on the occasion of the commercial release of Metasploit by Rapid7, the company that bought it half a year ago. The pseudonomous author uses the occasion to explore the question of what happens to a vital open source project once it is sold commercially. "Metasploit might become one of the first examples of how a completely FOSS project grows up to be successful. It is the venture capital model without the startup money (though VCs are funding plenty of OS startups these days, too). Build it. They will come. Someone will buy it. And if you want them to stay, the FOSS project better remain as well supported as the eventual commercial version. This isn't the first open source project to have been bought by a big guy. And the jury is still out on on most of them. I could argue that Metasploit is a bit unique in that it didn't have a commercial arm when Rapid7 acquired it. That could not be said about SUSE or MySQL or even Gluecode (bought by IBM), etc."