Independent

ComputerWorldIndependent

Why Apple’s Siri is already an enterprise product

Credit to Author: Jonny Evans| Date: Thu, 01 Nov 2018 08:36:00 -0700

The usual suspects love to spend time claiming Siri lags other voice assistants in some ways, but they don’t seem to understand that Apple’s voice assistant is an enterprise product.

Why is Siri an enterprise product?

This is what happens when you use a voice search tool: You activate the assistant, it listens to what you say, identifies that a request is being made and sends that request to the cloud to be resolved and responded to.

This all happens pretty quickly and after a short delay your response arrives, or an action takes place.

To read this article in full, please click here

Read More
ComputerWorldIndependent

Google Smart Lock on Chrome OS: 2 fast fixes and a power-user tip

Credit to Author: JR Raphael| Date: Tue, 30 Oct 2018 03:30:00 -0700

Google’s Smart Lock system for Chrome OS is one of those things that sounds spectacular on paper but then frequently falls flat in the real world.

You know about Smart Lock by now, right? It’s something Google created to turn your Android phone into a contact-free key for your Chromebook: Anytime the phone is close to the computer, Chrome OS will automatically detect its presence — and as long as the phone is unlocked, the laptop will let you skip the usual password prompt and hop right in with just a quick click on the sign-on screen.

To read this article in full, please click here

Read More
IndependentSecuriteam

SSD Advisory – Chrome AppCache Subsystem SBX by utilizing a Use After Free

Credit to Author: SSD / Ori Nimron| Date: Mon, 29 Oct 2018 09:23:16 +0000

Vulnerabilities Summary The vulnerability exists in the AppCache subsystem in Chrome Versions 69.0 and before. This code is located in the privileged browser process outside of the sandbox. The renderer interacts with this subsystem by sending IPC messages from the renderer to the browser process. These messages can cause the browser to make network requests, … Continue reading SSD Advisory – Chrome AppCache Subsystem SBX by utilizing a Use After Free

Read More
IndependentSecuriteam

SSD Advisory – Chrome Type Confusion in JSCreateObject Operation to RCE

Credit to Author: SSD / Ori Nimron| Date: Mon, 29 Oct 2018 09:21:47 +0000

Vulnerabilities Summary The following advisory discusses a vulnerability found in turbofan, the JIT compiler. We can trigger the JavaScript code in a way that leads to type confusion that can be exploited in order to execute code remotely on Google Chrome Versions 69.0 and before. Vendor Response Vendor has fixed the issue in Google Chrome … Continue reading SSD Advisory – Chrome Type Confusion in JSCreateObject Operation to RCE

Read More
IndependentKrebs

Mirai Co-Author Gets 6 Months Confinement, $8.6M in Fines for Rutgers Attacks

Credit to Author: BrianKrebs| Date: Fri, 26 Oct 2018 20:36:21 +0000

The convicted co-author of the highly disruptive Mirai botnet malware strain has been sentenced to 2,500 hours of community service, six months home confinement, and ordered to pay $8.6 million in restitution for repeatedly using Mirai to take down Internet services at Rutgers University, his former alma mater.

Read More
IndependentKrebs

How Do You Fight a $12B Fraud Problem? One Scammer at a Time

Credit to Author: BrianKrebs| Date: Thu, 25 Oct 2018 16:11:57 +0000

The fraudsters behind the often laughable Nigerian prince email scams have long since branched out into far more serious and lucrative forms of fraud, including account takeovers, phishing, dating scams, and malware deployment. Combating such a multifarious menace can seem daunting, but in truth it calls for concerted efforts to tackle the problem from many different angles. This post examines the work of a large, private group of volunteers dedicated to doing just that.

Read More
ComputerWorldIndependent

Well, do you trust 'em or don't you?

Credit to Author: Sharky| Date: Fri, 26 Oct 2018 03:00:00 -0700

Flashback a few decades to the days when this pilot fish is a supervisor in the call center for a big mail-order PC company.

“Our agents were privy to a customer’s credit card information right in the call tracking system,” says fish. “We trusted 600 agents with nearly unlimited access to this customer information without ever a single theft from our people.”

But the call center manager decides the operation needs a way to approve replacement parts to be shipped to customers.

That leads to a new process: When a call-center agent is sending a simple part — say, a new mouse or inexpensive sound card — the agent types in his badge number, then must turn his head to get his supervisor’s attention.

To read this article in full, please click here

Read More