We’ll take a look at StepShot Guides to see if it’s a worthy replacement for Clarify after all. Then we have an interview with Monoprice from NAB where we’ll have a surprisingly interesting and funny interview about SlimRun Ethernet and HDMI cables. Bart and I haven’t talked Security Bits in ages, so we have a […]
Continue readingMore TagCategory: Security Bits
Security Bits – Facebook/Cambridge Analytica, GDPR, Security Updates, Greyshift Backdoor, UPnProxy
DNS Correction On Chit Chat #533, Bart did a deep dive into how the Domain Name System works and in that session, he suggested a hybrid approach where your mobile devices had the improved DNS along with your home router. It turns out it’s not possible to set system-wide DNS settings on iOS or Android. […]
Continue readingMore TagNC #673 Dumb Mistakes, Monosnap Screencast, Worst Book Creation Apps, Security Bits
We start with how wrong I was last week, with two huge mistakes. I posted a teaser video about a Monosnap screencast I did for ScreenCasts Online, and how I was on Daily Tech News Show #3248 where we talked about whether the announcements from Apple will help them get back in the game with […]
Continue readingMore TagSecurity Bits – SESTA/FOSTA, CLOUD Act, Apple’s HSTS Clever Fix
Followups Cambridge Analytica & Facebook Kerfuffle Followup Additional developments: It’s been revealed that Facebook scraped call and text data from Android phones for years. Technically users did opt in to the collection, but it doesn’t seem to have been informed consent based on the public reaction to the reporting: Facebook scraped call, text message data […]
Continue readingMore TagSecurity Bits Special — The Cambridge Analytica & Facebook Kerfuffle
The Cliff Notes Version of the Story This story was broken by two major news paper organisations cooperating with each other — the Guardian (through it’s publication the Observer) in the UK, and the New York Times in the US:
Continue readingMore TagSecurity Bits – AMD Bugs (AMD Gets Its Turn in the Spotlight (RyzenFall, MasterKey, Fallout & Chimera) & GrayKey
Spectre/Meltdown Update Microsoft have removed the special registry flag which prevented the Spectre/Meltdown patches being applied on machines without AV that explicitly declares itself compatible with the patch. This approach made sense early in the response to these bugs, but it did have an undesirable side-effect, a machine with no AV would never get patched. […]
Continue readingMore TagSecurity Bits – US Customs Epic Security Fail, Can Cellebrite Unlock Any iPhone
Spectre/Meltdown Update Intel ships (hopefully stable) microcode for Skylake, Kaby Lake, Coffee Lake — arstechnica.com/… Intel’s latest set of Spectre microcode fixes is coming to a Windows update — arstechnica.com/… In an SEC filing in the US, Intel have revealed there are now 32 lawsuits against it over Spectre & Meltdown — arstechnica.com/…
Continue readingMore TagSecurity Bits – Google’s Ad Filter, iBoot Leak, iOS Teluga Text Bug
Security Medium 1 — Google’s Ad Filter On February 15 Google’s Chrome browser gained a nice new feature for controlling ads. It’s been reported on as an ad blocker, but that coverage misses a very important subtlety. Google itself calls the feature ad filtering, and an ad filter describes this feature very well indeed. Google […]
Continue readingMore TagSecurity Bits – Spectre/Meltdown Update, Strava Heat Maps
Followup — Spectre & Meltdown News Intel asks customers to halt patching for chip bug, citing flaw — www.reuters.com/… New Windows patch disables Intel’s bad Spectre microcode fix — arstechnica.com/… macOS Sierra, OS X El Capitan Updates Patch Meltdown Flaw — www.intego.com/… Apple offers another Meltdown fix for Mac users… — nakedsecurity.sophos.com/… Security Medium — […]
Continue readingMore TagSecurity Bits – Spectre & Meltdown Update (Again), Dark Caracal, chaiOS
Meltdown & Spectre Update Steve Gibson of GRC (author of ShieldsUp & SpinRite) has released InSpectre, a free Windows app which clearly communicates your PC’s current level of protection against Meltdown & Spectre, and what kind of a performance hit you should expect — www.grc.com/… RedHat have withdrawn their microcode patch for Spectre after it […]
Continue readingMore Tag