Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Sunday, February 15, 2015

Google Gives Apple, Microsoft 90 Days To Fix Security Flaws


Aside from being the master of diversification, Google apparently either cares a lot about global security across the board, or is merely looking for ways to get back at its competitors.
Apple Inc. and Microsoft Corporation , the consortium had been a pain in Google’s neck for a while, blocking key smartphone patents for the company. While those issues have quieted down, Google found another avenue to go by. Having formed the Project Zero in July, the newly formed team seems to target “zero day” security flaws in software that hackers can take advantage of before developers learn of them.

A Bloomberg report now reveals that Google Inc. has given Apple and Microsoft 90 days to fix the latest flaws that Google has discovered in their code. While some may argue that it is a scare tactic, it has to be noted that Google’s Project Zero has so far singled out 39 loopholes in Apple products, 37 in Adobe Systems Incorporated software, and 20 issues in Microsoft products. Similarly, it released the information to the public at large about the flaws before the companies could find a fix in time. Apple is a 16-time victim, Microsoft suffered on three occasions, and Adobe was subjected to this issue once.

Jake Kouns, chief information officer at Risk Based Security Systems Inc., revealed the above information to Bloomberg(report containing this stuff) in an interview. Mr. Kouns believes that if the companies cannot work together, it will have a negative impact on the industry as a whole. Tom Gorup, manager at Rock Securities Inc., told Bloomberg that he believes otherwise, voicing his view that the strict policy is good for the industry. Because these companies have considerably greater resources than your average computer hacker, better results can be achieved when these companies take a pot shot at rivals’ security measures.

John Dickson of Denim Group Ltd., a software security company, summed it up best when he stated: “I’m not sure who made Google the official referee of the marketplace for vulnerability notification.” He assumes that the “nobility” of this cause is compromised when the company testing for vulnerabilities actually reveals their findings to the public at large instead of to the companies that harbor such security loopholes.

references:

Sunday, January 18, 2015

Malwares my computer affected with!

Recently my computer became slower considerably.I supposed that It was because of some malwares and I checked my running processes immediately.Then I saw some unknown processes running.This story is about malwares I faced with.







HpUI.exe
HpUI.exe is a potentially unwanted application that may hijack your web browser and display ads on your computer. It's belongs SupTab and Search Protect programs (probably some other adware programs too) that are classified as adware PUP. Search Protect redirects users to search.conduit.com. Multiple anti-virus engines have detected this file as malicious: Zhangling.BCD 20140807, Adware.Win32.SupTab.8120140807,HEUR/Malware.QVM06.Gen 20140807, SearchProtect 20140807. The first detection name is quite interesting because AVG anti-virus uses Zhangling as an identifier. But indeed, HpUI.exe has a valid certificated and its signer name is Zhang Ling. Other anti-virus programs use more obvious names such as adware SupTab and SearchProtect. Just like most adware and PUPs, it's distributed via pay per install networks and fake Flash or Java update web pages. It also comes bundled with freeware, toolbars and other applications like screensavers or even driver downloads. HpUI.exe is usually located in the 'C:\Program Files\SupTab\' folder and in Windows %Temp% folder. It remains unclear what's the main purpose if this file but it runs in the background all the time and uses system resource. I also noticed network activities related to this program. Needles to say, it's not essential for Windows and may cause lots of problems including annoying ads and system crashes

YoutubeAdBlocker


YoutubeAdBlocker is an adware program that displays pop-up ads, advertisement banners and sponsored links within Internet Explorer, Firefox and Google Chrome. Unfortunately, some free downloads do not adequately disclose that other software will also be installed and you may find that you have installed YoutubeAdBlocker without your knowledge.
YoutubeAdBlocker is advertised as a program that blocks ads while watching a video on Youtube. Though this may sound like a useful service, the YoutubeAdBlocker program can be intrusive and will display ads whether you want them to or not.The YoutubeAdBlocker adware infection is designed specifically to make money. It generates web traffic, collects sales leads for other dubious sites, and will display advertisements and sponsored links within your web browser.
YoutubeAdBlocker it’s technically not a virus, but it does exhibit plenty of malicious traits, such as rootkit capabilities to hook deep into the operating system, browser hijacking, and in general just interfering with the user experience. The industry generally refers to it as a “PUP,” or potentially unwanted program.
YoutubeAdBlocker is an ad-supported (users may see additional banner, search, pop-up, pop-under, interstitial and in-text link advertisements) cross web browser plugin for Internet Explorer, Firefox and Chrome, and distributed through various monetization platforms during installation. YoutubeAdBlocker is typically added when you install another free software (video recording/streaming, download-managers or PDF creators) that had bundled into their installation this adware program. When you install these free programs, they will also install YoutubeAdBlocker as well. Some of the programs that are known to bundle YoutubeAdBlocker include “Youtube Downloader HD”, “Fast Free Converter”, “Video Media Player 1.1″ and “DVDX Player 3.2″.
When installed, YoutubeAdBlocker will display advertising banners on the webpages that you are visiting, stating that they are brought to you by “Ads by YoutubeAdBlocker“.YoutubeAdBlocker may also display pop-up advertisements, in-text ads and and as you browse Internet, it will show coupons and other deals available on different websites.
The justification for YoutubeAdBlocker Ads according to its author, is that it helps recover programming development cost and helps to hold down the cost for the user.


IePluginService.exe


IePluginService.exe is a potentially unwanted program that is designed to protect its bundled programs and make sure they remain installed or unchanged by other third party programs.
The IePluginService.exe program is a part of the “IePlugin control” program, and is developed by Cherished Technology Limited, a company known for their malicious programs.
There are 6 versions of IePluginService.exe in the wild, the latest version being 3.26.5.0. It is started as a Windows Service with the name ‘WPM Service’. During the process’s lifecycle, the typical CPU resource utilization is about 0.0001% including both foreground and background operations, the average private memory consumption is about 3.55 MB with the maximum memory reaching around 6.96 MB. Additionally, typically read and write I/O disk operations is about 0 Bytes per minute for reads and 0 Bytes per minute for writes.
If you have IePluginService.exe program on your system, you will typically see a “IePluginService.exe” processes running in the Windows Task Manager.
IePluginService.exe is typically added when you install another free software (video recording/streaming, download-managers or PDF creators) that had bundled into their installation this program. Very often users have no idea where did it come from, so it’s not surprising at all that most of them assume that IePluginService.exe is a virus.
This program is also bundled within the custom installer on many reputable download sites, so if you have downloaded a software from these websites, chances are that IePluginService.exe was installed during the software setup process.
IePluginService.exe it’s technically not a virus, but it does exhibit plenty of malicious traits, such as rootkit capabilities to hook deep into the operating system, browser hijacking, and in general just interfering with the user experience. The industry generally refers to it as a “PUP,” or potentially unwanted program.
Once installed, IePluginService.exe will change the default search engine and home page in all major web browsers, and if you try to revert to their default settings, this program will not allow you to perform these changes.
IePluginService.exe is bundled within the installer of many toolbars, adware and other potentially unwanted programs, with the sole purpose of making the removal process of this programs more difficult.
Some examples of infections that will install the IePluginService.exe program are: AwesomeHP Toolbar, Sweet-Page Toolbar Platform, Sweet-Page Toolbar, Do-Searches Toolbar and many more programs


CONCLUSION

You should always pay attention when installing software because often, a software installer includes optional installs, such as this these malwares. Be very careful what you agree to install.
Always opt for the custom installation and deselect anything that is not familiar, especially optional software that you never wanted to download and install in the first place. It goes without saying that you should not install software that you don’t trust.


references:
http://deletemalware.blogspot.com/


Wednesday, December 17, 2014

Finally,Sony cancels release of 'The Interview'

Major U.S. theater chains said they would not screen the film following terrorists threats, Sony has canceled the release of 'The Interview,' a comedy in which Seth Rogen and James Franco are sent to North Korea to assassinate Kim Jong Un.
The movie had been scheduled for release on December 25th.

Famous movie theaters including Regal Entertainment, AMC Entertainment, Cinemark, Carmike Cinemas, and Cineplex Entertainment all blocked showings of the new film, which would have accounted for 23,000 screens in North America.

Reads Sony's statement: "In light of the decision by the majority of our exhibitors not to show the film The Interview, we have decided not to move forward with the planned December 25 theatrical release. We respect and understand our partners' decision and, of course, completely share their paramount interest in the safety of employees and theater-goers.

Sony Pictures has been the victim of an unprecedented criminal assault against our employees, our customers, and our business. Those who attacked us stole our intellectual property, private emails, and sensitive and proprietary material, and sought to destroy our spirit and our morale – all apparently to thwart the release of a movie they did not like. We are deeply saddened at this brazen effort to suppress the distribution of a movie, and in the process do damage to our company, our employees, and the American public. We stand by our filmmakers and their right to free expression and are extremely disappointed by this outcome."

The hackers behind the cyberattack that has paralyzed Sony Pictures posted a threat telling any viewer of the film to "remember the 11th of September 2001" and that movie theaters would be the targets.

'The Interview' is not the first victim of the North Korean-led attack on Sony Pictures. Over 100 terabytes of data was stolen including social security numbers, contracts, pre-release films, and hundreds of thousands of emails.

sources-http://www.afterdawn.com/news/article.cfm/2014/12/18/the-hackers-win-sony-cancels-release-of-the-interview-as-movie-theaters-bail

Sunday, June 29, 2014

Location-based tracking to cut down bank card frauds.

Banks and card networks like Visa Inc. and MasterCard Inc. are working with wireless carriers to cut down on counterfeit transactions by tying purchases to the location of a customer’s smartphone.In the next few months, AT&T Inc. will test a service that verifies transactions by using a phone’s whereabouts. as long as it has customers’ permission.since people who are out shopping normally carry their phones with them,AT&T suppose that this will be more effective.
Global card fraud cost $12.4 billion last year, according to David Robertson, publisher of the Nilson Report, a payments-industry newsletter.
 AT&T would use its network data to find a participating customer’s phone, detecting a change in location. For example, the company would be able to confirm that a customer has flown from New York to Paris as soon as she turns on her phone upon landing. AT&T would convey this information to her credit-card lender so that if a transaction is attempted at a store in New York, it would be declined.
In addition to preventing fraud, a phone-location system could also help get rid of false positives -- transactions that are denied because the customer wasn’t in her customary location and forgot to report her travel plans to the bank. 
sources:
http://www.businessweek.com/news/2014-06-26/how-at-and-t-could-keep-crooks-from-using-your-credit-card