Monday, March 10, 2008

Gmail Scam Signal Of A Much Bigger Security Issue

Source: http://feeds.feedburner.com/~r/Techcrunch/~3/248723076/

This weekend news came that a Gmail archive service called G-Archiver, which backs up all of your Gmail emails to your hard drive, was actually the front for a scam - hard coded into the application was a “feature” that sent every user’s email address and password to the creator’s own email account, giving him access to all of their Gmail messages.

These users should have known better than to type their email credentials into a third party service, so sympathy levels are at a minimum. But there is a much bigger problem to consider. Gmail is the entry point into a vast array of Google office services - including Google Docs and Google Apps. Those services allow users to share documents with others. If one user’s email credential become compromised, all of those sensitive documents become available to the bad guys, too. So if a single user’s credentials become known, the business they work for is at risk.

That has led a number of experts to conclude that Google Apps can never be a real threat to Microsoft Exchange and Sharepoint. All of the sensitive business information of a company, if stored on Google’s servers, is just a password guess, or in this case what is effectively a phishing scam, away.

I’ve spoken with Google employees about this issue in the past, and they point out that Google Apps allows authentication mechanisms that require more than just a password. In the Google Apps Security Policy, they state: “Google Apps integrates with standard web SSO systems using the SAML 2.0 standard. This allows integration with custom sign-on and/or advanced authentication (SecureID). Solutions can be custom made or Google Partner supplied.”

Of course many companies won’t use SecureID for authentication, and they’ll still be at risk. Over time, hopefully, even smaller companies will require it.

In the meantime, something else about Google’s security policy caught my eye. They’ll turn over data to third parties when required to by law (including search warrants, court orders, or subpoenas.) Google says they will “attempt to notify users before turning over their data whenever possible and legally permissible.” That may not be good enough for many companies, who would choose to fight an information transfer in court before they turn it over. If it was on their own servers they would be able to do that. But Google, certainly, won’t be going to court to fight on your behalf. Users should consider themselves luck just to be notified that the information was released. Caveat Emptor.

Crunch Network: CrunchBoard because it’s time for you to find a new Job2.0

Read More...

Modder builds his own coffee table PC, your coffee table still sucks

Source: http://feeds.engadget.com/~r/weblogsinc/engadget/~3/248877344/

Filed under: ,


While we wait for those Microsoftees to pull it together and get real with a shippable version of Surface, we can enjoy the valiant efforts of modders like Xylomn. This guy built his very own touchable coffee table PC with a 24-inch display and a ceiling-mounted camera for tracking hand motions. Since it's part of his dissertation for his software engineering degree, Xylomn also worked up some custom software which allows users to beam media to the PC via Bluetooth, and then geotag it on a touchable map. The table allows for multiple users at once, and the interface part of the software rotates automatically towards whoever is grubbing up the display at that point.

[Via Geeky Gadgets]

 

Read | Permalink | Email this | Comments


Read More...

Drugs In Our Drinking Water

Source: http://rss.slashdot.org/~r/Slashdot/slashdot/~3/248539229/article.pl

MikeURL alerts to a AP story just published after a months-long investigation on the vast array of pharmaceuticals present in US drinking water. These include antibiotics, anti-convulsants, mood stabilizers, and sex hormones, as well as over-the-counter drugs. Quoting: "To be sure, the concentrations of these pharmaceuticals are tiny, measured in quantities of parts per billion or trillion, far below the levels of a medical dose. Also, utilities insist their water is safe. But the presence of so many prescription drugs — and over-the-counter medicines like acetaminophen and ibuprofen — in so much of our drinking water is heightening worries among scientists of long-term consequences to human health."

Read more of this story at Slashdot.

Read More...

Asus spills more details on the 9-inch Eee

Source: http://feeds.engadget.com/~r/weblogsinc/engadget/~3/248563940/

Filed under:


In a recent interview, Asus CEO Jerry Shen talked up the company's newest edition to the Eee family, and also dropped a few more details on the forthcoming laptop. Apparently, the new set of miniature PCs will carry SSDs as opposed to the flash memory we saw in previous iterations, with sizes ranging from 8GB in the XP-equipped model, up to 12GB or 20GB in the Linux versions -- though it's hard to say why the smaller-footprint Linux would need more drive space. Shen also revealed that there are tentative plans to release WiMAX and HSDPA-enabled models sometime in Q3 of 2008, and he confirmed that come May the company will trade up to Intel's Diamondville (er, Atom) chips. In addition, more colors are on the way, and the base price in the US will be $499 at launch -- though that figure is expected to drop in the following months.

[Via Eee Site]

 

Read | Permalink | Email this | Comments


Read More...

MSI intros the Eee-ish Wind PC

Source: http://feeds.engadget.com/~r/weblogsinc/engadget/~3/248606174/

Filed under:


Apparently MSI is gearing up to release its own Eee competitor, tentatively called the Wind PC. There's not a lot known about the system (which was shown at CeBIT), though it's slated to feature an 8- or 10-inch, 1024 x 768 display, utilize Intel's Atom CPU, will make 2.5-inch hard drive and SSD options available for storage, and will come with 1GB of RAM standard. The mini-laptops are set to range in price from £299 to £699 depending on configuration, feature 1GHz or 1.6GHz CPUs, and should first be available with a Linux build installed -- though the company claims a Windows version will be made as well. Based on photos we've seen, the laptops will come in a variety of colors, though it appears that these are still in prototype territory, so anything could change.

[Thanks, Jarrett]

Read - MSI Wind, details of the new low-cost laptop MSI
Read - MSI Wind PC

 

Permalink | Email this | Comments


Read More...