<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/">

<channel>
	<title>BGR: The Three Biggest Letters In Tech &#187; hacker</title>
	<atom:link href="http://www.bgr.com/tag/hacker/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.bgr.com</link>
	<description></description>
	<lastBuildDate>Fri, 01 Jun 2012 00:40:15 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Hurt Locker producers file suit against 2,514 BitTorrent users</title>
		<link>http://www.bgr.com/2012/04/23/hurt-locker-producers-file-suit-against-2514-bittorrent-users/</link>
		<comments>http://www.bgr.com/2012/04/23/hurt-locker-producers-file-suit-against-2514-bittorrent-users/#comments</comments>
		<pubDate>Mon, 23 Apr 2012 18:35:20 +0000</pubDate>
		<dc:creator>Dan Graziano</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Legal]]></category>
		<category><![CDATA[BitTorrent]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[illegal]]></category>
		<category><![CDATA[lawsuit]]></category>
		<category><![CDATA[movie]]></category>
		<category><![CDATA[sue]]></category>
		<category><![CDATA[The Hurt Locker]]></category>
		<category><![CDATA[Users]]></category>
		<category><![CDATA[Voltage Pictures]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=136592</guid>
		<description><![CDATA[Voltage Pictures, the production studio behind the Oscar-winning film The Hurt Locker, has filed a new lawsuit in a federal court in Florida, according to TorrentFreak. The studio&#8217;s latest complaint targets at least 2,514 alleged BitTorrent users, whom Voltage Pictures claims pirated the film and cost the studio millions. The company last year filed a joint lawsuit against more than 30,000 alleged BitTorrent users who illegally downloaded the film. The case closed this past December, with Voltage Pictures collecting an undisclosed number of settlements. The studio&#8217;s latest suit looks to obtain a subpoena that will order ISPs to reveal the identities of the defendants. The alleged pirates will then be offered a settlement of about $3,000, the report claims. All]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2012/04/23/hurt-locker-producers-file-suit-against-2514-bittorrent-users"><img class="size-full wp-image-90493 aligncenter" title="the-hurt-locker-pic1" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/05/the-hurt-locker-pic1110524123105.jpg" alt="" width="652" height="435" /></a></center>
<p>Voltage Pictures, the production studio behind the Oscar-winning film The Hurt Locker, has filed a new lawsuit in a federal court in Florida, according to <em>TorrentFreak</em>. The studio&#8217;s latest complaint targets at least 2,514 alleged BitTorrent users, whom Voltage Pictures claims pirated the film and cost the studio millions. The company last year <a href="http://www.bgr.com/2011/05/24/hurt-locker-studio-to-file-lawsuits-against-record-breaking-24583-bittorrent-users/">filed a joint lawsuit against more than 30,000 alleged BitTorrent users</a> who illegally downloaded the film. The case closed this past December, with Voltage Pictures collecting an undisclosed number of settlements. The studio&#8217;s latest suit looks to obtain a subpoena that will order ISPs to reveal the identities of the defendants. The alleged pirates will then be offered a settlement of about $3,000, the report claims. All of the defendants allegedly downloaded the film in 2010 and are Charter Communications subscribers. <span id="more-136592"></span></p>
<p><a href="http://torrentfreak.com/hurt-locker-makers-return-to-sue-2514-bittorrent-users-120423/">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2012/04/23/hurt-locker-producers-file-suit-against-2514-bittorrent-users/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/05/the-hurt-locker-pic1110524123105-80x80.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/05/the-hurt-locker-pic1110524123105-80x80.jpg</media:thumbnail>	</item>
		<item>
		<title>&#8216;Anonymous&#8217; plans bigger and more serious attacks on Chinese government</title>
		<link>http://www.bgr.com/2012/04/09/anonymous-plans-bigger-and-more-serious-attacks-on-chinese-government/</link>
		<comments>http://www.bgr.com/2012/04/09/anonymous-plans-bigger-and-more-serious-attacks-on-chinese-government/#comments</comments>
		<pubDate>Mon, 09 Apr 2012 19:15:00 +0000</pubDate>
		<dc:creator>Dan Graziano</dc:creator>
				<category><![CDATA[Internet]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[China]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[protest]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=134949</guid>
		<description><![CDATA[The hacker group &#8220;Anonymous operations&#8221; plans to launch further attacks on Chinese government-run websites to protest what it believes to be strict and unfair laws. The loosely knit group launched various cyberattacks on China&#8217;s goverment last week and warned that further attacks were on the horizon. &#8220;First we want to alert the Chinese government that we aren&#8217;t afraid, and we are going to show the truth and fight for justice,&#8221; Anonymous hacker &#8220;f0ws3r&#8221; said to Reuters, adding that more serious attacks are coming against Chinese websites. &#8220;Yes, we are planning more attacks, a few at a time,&#8221; the hacker said. The group is looking to &#8220;take down the Great Firewall of China,&#8221; which blocks access to Twitter, Facebook, YouTube and many]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2012/04/09/anonymous-plans-bigger-and-more-serious-attacks-against-chinese-government"><img class="size-full wp-image-133619 aligncenter" title="anonymous-masks-45" src="http://www-bgr-com.vimg.net/wp-content/uploads/2012/03/anonymous-masks-45.jpeg" alt="" width="652" height="477" /></a></center>
<p>The hacker group &#8220;Anonymous operations&#8221; plans to launch further attacks on Chinese government-run websites to protest what it believes to be strict and unfair laws. The loosely knit group <a href="http://www.bgr.com/2012/04/05/anonymous-hacks-chinese-government-protest-freedom-and-civil-rights/">launched various cyberattacks on China&#8217;s goverment last week</a> and warned that further attacks were on the horizon. &#8220;First we want to alert the Chinese government that we aren&#8217;t afraid, and we are going to show the truth and fight for justice,&#8221; Anonymous hacker &#8220;f0ws3r&#8221; said to <em>Reuters</em>, adding that more serious attacks are coming against Chinese websites. &#8220;Yes, we are planning more attacks, a few at a time,&#8221; the hacker said. The group is looking to &#8220;take down the Great Firewall of China,&#8221; which blocks access to Twitter, Facebook, YouTube and many other websites. The Anonymous China team consist of 10 to 12 hackers, most of whom are not based in China, and has &#8220;hundreds&#8221; of translators who have helped the group hack various Chinese websites, f0ws3r said. The hacker declined to give further details on the next round of attacks, although he did say the group may hit bigger targets this time around.<span id="more-134949"></span></p>
<p><a href="http://www.reuters.com/article/2012/04/09/net-us-china-hackers-idUSBRE83808H20120409">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2012/04/09/anonymous-plans-bigger-and-more-serious-attacks-on-chinese-government/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2012/03/anonymous-masks-45-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2012/03/anonymous-masks-45-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Selling used Android phones poses huge identity theft risk, expert says</title>
		<link>http://www.bgr.com/2012/03/30/selling-used-android-phones-poses-huge-identity-theft-risk-expert-says/</link>
		<comments>http://www.bgr.com/2012/03/30/selling-used-android-phones-poses-huge-identity-theft-risk-expert-says/#comments</comments>
		<pubDate>Fri, 30 Mar 2012 17:25:04 +0000</pubDate>
		<dc:creator>Dan Graziano</dc:creator>
				<category><![CDATA[Mobile]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[BlackBerry]]></category>
		<category><![CDATA[computers]]></category>
		<category><![CDATA[data]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[pcs]]></category>
		<category><![CDATA[Research in Motion]]></category>
		<category><![CDATA[RIM]]></category>
		<category><![CDATA[Smartphones]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Windows XP]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=133939</guid>
		<description><![CDATA[Android users who are looking to sell their old devices should be wary of the possible consequences. McAfee identity theft researcher Robert Siciliano warned that personal data from Android devices is not completely removed after a user activates the built-in wipe option, The Los Angeles Times reported on Friday. &#8220;What&#8217;s really scary is even if you follow protocol, the data is still there,&#8221; Siciliano said. If you have a BlackBerry or Apple device, Siciliano said your data can be fully deleted by following the manufacturer&#8217;s directions. As for smartphones running the Android operating system and computers running Windows XP, Siciliano recommends that people don&#8217;t bother with selling them at all. &#8220;Put it in the back of a closet, or put]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2012/03/30/selling-used-android-phones-poses-huge-identity-theft-risk-expert-says"><img class="size-full wp-image-132924 aligncenter" title="android-robot-peek" src="http://www-bgr-com.vimg.net/wp-content/uploads/2012/03/android-robot-peek.jpeg" alt="" width="652" height="379" /></a></center>
<p>Android users who are looking to sell their old devices should be wary of the possible consequences. McAfee identity theft researcher Robert Siciliano warned that personal data from Android devices is not completely removed after a user activates the built-in wipe option, <em>The Los Angeles Times</em> reported on Friday. &#8220;What&#8217;s really scary is even if you follow protocol, the data is still there,&#8221; Siciliano said. If you have a <a href="http://www.bgr.com/tag/blackberry">BlackBerry</a> or <a href="http://www.bgr.com/tag/apple/">Apple</a> device, Siciliano said your data can be fully deleted by following the manufacturer&#8217;s directions. As for smartphones running the Android operating system and computers running Windows XP, Siciliano recommends that people don&#8217;t bother with selling them at all. &#8220;Put it in the back of a closet, or put it in a vise and drill holes in the hard drive, or if you live in Texas take it out into a field and shoot it,&#8221; he said. &#8220;You don&#8217;t want to sell your identity for 50 bucks.&#8221; To test the security of various platforms, Siciliano purchased 30 smartphones and computers from Craigslist. The researcher was able to access personal data from 15 of the 30 devices through his own hacking efforts and the help of a forensic expert. The data obtained included bank account information, Social Security numbers, child support documents and credit card account log-ins.<span id="more-133939"></span></p>
<p><a href="http://www.latimes.com/business/la-fi-tech-savvy-protecting-identity-20120329,0,457782.story">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2012/03/30/selling-used-android-phones-poses-huge-identity-theft-risk-expert-says/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2012/03/android-robot-green-black-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2012/03/android-robot-green-black-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Google Wallet hacked again; new exploit doesn&#8217;t need root access [video]</title>
		<link>http://www.bgr.com/2012/02/10/google-wallet-hacked-again-new-exploit-doesnt-need-root-access-video/</link>
		<comments>http://www.bgr.com/2012/02/10/google-wallet-hacked-again-new-exploit-doesnt-need-root-access-video/#comments</comments>
		<pubDate>Fri, 10 Feb 2012 13:10:33 +0000</pubDate>
		<dc:creator>Zach Epstein</dc:creator>
				<category><![CDATA[Mobile]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Android 4.0]]></category>
		<category><![CDATA[Galaxy Nexus]]></category>
		<category><![CDATA[Google Wallet]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Ice Cream Sandwich]]></category>
		<category><![CDATA[root]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=126546</guid>
		<description><![CDATA[A new exploit has been discovered that allows unauthorized access to a user&#8217;s Google Wallet account with a simple hack that can be performed by anyone in a matter of minutes. A security firm recently exposed a Google Wallet vulnerability that allowed hackers to bypass PIN protection, but the vulnerability is only present on rooted Galaxy Nexus handsets. This new exploit, however, does not require a handset to be rooted, which leaves all Google Wallet users exposed. Read on for more. As mobile blog The Smartphone Champ explains, the newly exposed security hole allows someone to simply reset a user&#8217;s Google Wallet password by clearing the Google Wallet application data from within the phone&#8217;s settings menu. A user&#8217;s Google Wallet]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2012/02/10/google-wallet-hacked-again-new-exploit-doesnt-need-root-access-video"><img class="size-full wp-image-114271 aligncenter" title="Google-Wallet-Samsung-Nexus" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/Google-Wallet-Samsung-Nexus.jpg" alt="" width="652" height="489" /></a></center>
<p>A new exploit has been discovered that allows unauthorized access to a user&#8217;s Google Wallet account with a simple hack that can be performed by anyone in a matter of minutes. A security firm recently exposed a Google Wallet vulnerability that <a href="http://www.bgr.com/2012/02/09/hackers-crack-google-wallet-security-on-rooted-galaxy-nexus-video/">allowed hackers to bypass PIN protection</a>, but the vulnerability is only present on rooted Galaxy Nexus handsets. This new exploit, however, does not require a handset to be rooted, which leaves all Google Wallet users exposed. Read on for more.<span id="more-126546"></span></p>
<p>As mobile blog <em>The Smartphone Champ</em> explains, the newly exposed security hole allows someone to simply reset a user&#8217;s Google Wallet password by clearing the Google Wallet application data from within the phone&#8217;s settings menu. A user&#8217;s Google Wallet PIN is not required to wipe this data and once the information has been cleared, the handset will prompt the user for a new PIN without first requiring that the old PIN be entered. Anyone who performs this simple procedure will be able to access funds on the original user&#8217;s Google prepaid card.</p>
<p>A Google spokesperson acknowledged the vulnerability and gave the following statement to <em>Android and Me</em>: &#8220;We strongly encourage anyone who loses or wants to sell their phone to call Google Wallet support toll-free at 855-492-5538 to disable the prepaid card. We are currently working on an automated fix as well that will be available soon. We also advise all Wallet users to set up a screen lock as an additional layer of protection for their phone.&#8221;</p>
<p>A video demonstration of the simple hack follows below.</p>
<center><object width="652" height="442" classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://www.youtube.com/v/Rh1ytHrhj2E?version=3&amp;hl=en_US&amp;rel=0" /><param name="allowfullscreen" value="true" /><embed width="652" height="442" type="application/x-shockwave-flash" src="http://www.youtube.com/v/Rh1ytHrhj2E?version=3&amp;hl=en_US&amp;rel=0" allowFullScreen="true" allowscriptaccess="always" allowfullscreen="true" /></object></center>
<p>[Via <a href="http://androidandme.com/2012/02/applications/google-wallet-hacked-again-no-root-access-required-this-time/">Android and Me</a>]</p>
<p><a href="http://thesmartphonechamp.com/second-major-security-flaw-found-in-google-wallet-rooted-or-not-no-one-is-safe-video/">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2012/02/10/google-wallet-hacked-again-new-exploit-doesnt-need-root-access-video/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2012/02/Google-wallet-bgr-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2012/02/Google-wallet-bgr-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Kindle Fire&#8217;s Silk browser hacked to run on other Android devices</title>
		<link>http://www.bgr.com/2012/01/04/kindle-fires-silk-browser-hacked-to-run-on-other-android-devices/</link>
		<comments>http://www.bgr.com/2012/01/04/kindle-fires-silk-browser-hacked-to-run-on-other-android-devices/#comments</comments>
		<pubDate>Wed, 04 Jan 2012 19:00:18 +0000</pubDate>
		<dc:creator>Zach Epstein</dc:creator>
				<category><![CDATA[Software]]></category>
		<category><![CDATA[Tablets]]></category>
		<category><![CDATA[amazon]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Kindle Fire]]></category>
		<category><![CDATA[port]]></category>
		<category><![CDATA[root]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=119593</guid>
		<description><![CDATA[Amazon&#8217;s Silk Web browser has received mixed reviews from the media and from consumers. In our review of the Amazon Kindle Fire, we noted that loading Web pages in the cloud-assisted browser on the tablet seemed to stall at first but once content finally began downloading, it indeed seemed to move very quickly. Other reviews found Silk to be much slower than other comparable browsers, however. Curious Android device owners who aren&#8217;t among the millions who purchased the Kindle Fire ahead of the holidays can now install Amazon&#8217;s Silk browser on a variety of rooted handsets and tablets thanks to the work of an xda-developers forum member. Results are mixed so far, and the port will not work on the Galaxy]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2012/01/04/kindle-fires-silk-browser-hacked-to-run-on-other-android-devices"><img class="size-full wp-image-113737 aligncenter" title="BGR-amazon-kindle-fire-10" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/BGR-amazon-kindle-fire-10.jpg" alt="" width="652" height="435" /></a></center>
<p>Amazon&#8217;s Silk Web browser has received mixed reviews from the media and from consumers. In <a href="http://www.bgr.com/2011/11/22/amazon-kindle-fire-review-its-no-ipad-killer-and-that-is-why-it-will-succeed/">our review of the Amazon Kindle Fire</a>, we noted that loading Web pages in the cloud-assisted browser on the tablet seemed to stall at first but once content finally began downloading, it indeed seemed to move very quickly. Other reviews found Silk to be much slower than other comparable browsers, however. Curious Android device owners who aren&#8217;t among the <a href="http://www.bgr.com/2011/12/29/amazon-more-than-4-million-kindles-sold-this-holiday-season/">millions who purchased the Kindle Fire ahead of the holidays</a> can now install Amazon&#8217;s Silk browser on a variety of rooted handsets and tablets thanks to the work of an xda-developers forum member. Results are mixed so far, and the port will not work on the Galaxy Nexus, among other handsets. Many users have successfully installed the browser on a variety of devices including the Motorola ATRIX and the Samsung Galaxy Tab, however.<span id="more-119593"></span></p>
<p><a href="http://forum.xda-developers.com/showthread.php?t=1418480">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2012/01/04/kindle-fires-silk-browser-hacked-to-run-on-other-android-devices/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2012/01/BGR-amazon-kindle-fire-10-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2012/01/BGR-amazon-kindle-fire-10-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>All GSM phones vulnerable to major security flaw, hacker says</title>
		<link>http://www.bgr.com/2011/12/27/all-gsm-phones-vulnerable-to-major-security-flaw-hacker-says/</link>
		<comments>http://www.bgr.com/2011/12/27/all-gsm-phones-vulnerable-to-major-security-flaw-hacker-says/#comments</comments>
		<pubDate>Wed, 28 Dec 2011 00:00:06 +0000</pubDate>
		<dc:creator>Todd Haselton</dc:creator>
				<category><![CDATA[Mobile]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[flaw]]></category>
		<category><![CDATA[GSM]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[privacy]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=118077</guid>
		<description><![CDATA[All GSM phones, such as those that run on T-Mobile and AT&#38;T in the United States, are vulnerable to a major security flaw that could allow hackers to send text messages or place phone calls remotely using a new security flaw, one hacker said recently. Speaking to Reuters ahead of a hacking convention in Berlin, Karsten Nohl, the head of Germany&#8217;s Security Research Labs, said the attack could be initiated on a large scale, too. &#8221;We can do it to hundreds of thousands of phones in a short timeframe,&#8221; Nohl explained. &#8220;None of the networks protects users very well.&#8221; Nohl didn&#8217;t provide details on how hackers could take advantage of the flaw, although Reuters said it&#8217;s likely that those attending the]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/12/27/all-gsm-phones-vulnerable-to-major-security-flaw-hacker-says"><img class="size-full wp-image-102036 aligncenter" title="hackers" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/hackers110830150530.jpeg" alt="" width="652" height="370" /></a></center>
<p>All GSM phones, such as those that run on T-Mobile and AT&amp;T in the United States, are vulnerable to a major security flaw that could allow hackers to send text messages or place phone calls remotely using a new security flaw, one hacker said recently. Speaking to <em>Reuters</em> ahead of a hacking convention in Berlin, Karsten Nohl, the head of Germany&#8217;s Security Research Labs, said the attack could be initiated on a large scale, too. &#8221;We can do it to hundreds of thousands of phones in a short timeframe,&#8221; Nohl explained. &#8220;None of the networks protects users very well.&#8221; Nohl didn&#8217;t provide details on how hackers could take advantage of the flaw, although<em> Reuters</em> said it&#8217;s likely that those attending the conference will try to recreate it themselves. Nohl also explained that carriers can easily patch the security hole and that some simply need to update their software. &#8220;Mobile network is by far the weakest part of the mobile ecosystem, even when compared to a lot attacked Android or iOS devices,&#8221; Nohl said, noting that Germany&#8217;s T-Mobile and France&#8217;s SFR wireless carriers are the most secure against hackers.<span id="more-118077"></span></p>
<p><a href="http://www.reuters.com/article/2011/12/27/uk-mobile-security-idUSLNE7BQ00220111227">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/12/27/all-gsm-phones-vulnerable-to-major-security-flaw-hacker-says/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/hackers110830150530-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/hackers110830150530-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Skype security flaw leaves user locations vulnerable</title>
		<link>http://www.bgr.com/2011/12/08/skype-security-flaw-leaves-user-locations-vulnerable/</link>
		<comments>http://www.bgr.com/2011/12/08/skype-security-flaw-leaves-user-locations-vulnerable/#comments</comments>
		<pubDate>Fri, 09 Dec 2011 02:30:49 +0000</pubDate>
		<dc:creator>Todd Haselton</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Location]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[Skype]]></category>
		<category><![CDATA[tracking]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=115798</guid>
		<description><![CDATA[New York University&#8217;s Polytechnic Institute has discovered a Skype security flaw that leaves Skype users&#8217; locations and P2P sharing activity accessible to hackers. The security hole was discovered while NYU scientists monitored 10,000 Skype users and 20 volunteers during a two-week period. “A hacker anywhere in the world could easily track the whereabouts and file-sharing habits of a Skype user – from private citizens to celebrities and politicians – and use the information for purposes of stalking, blackmail or fraud,” professor Keith Ross from computer science NYU-Poly&#8217;s computer science program said. Hackers can also keep track of a Skype user&#8217;s movements as he or she places calls from various locations. The scientists were able to follow a Skype user during a]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/12/08/skype-security-flaw-leaves-user-locations-vulnerable"><img class="size-full wp-image-68716 aligncenter" title="skype_logo_online" src="http://www-bgr-com.vimg.net/wp-content/uploads/2010/12/skype_logo_online.jpg" alt="" width="456" height="202" /></a></center>
<p>New York University&#8217;s Polytechnic Institute has discovered a Skype security flaw that leaves Skype users&#8217; locations and P2P sharing activity accessible to hackers. The security hole was discovered while NYU scientists monitored 10,000 Skype users and 20 volunteers during a two-week period. “A hacker anywhere in the world could easily track the whereabouts and file-sharing habits of a Skype user – from private citizens to celebrities and politicians – and use the information for purposes of stalking, blackmail or fraud,” professor Keith Ross from computer science NYU-Poly&#8217;s computer science program said. Hackers can also keep track of a Skype user&#8217;s movements as he or she places calls from various locations. The scientists were able to follow a Skype user during a vacation from New York to Chicago and then all the way home to France, <em>Financial Post</em> explained. &#8220;A fairly straightforward and inexpensive fix would prevent hackers from taking the critical first step in this security breach – that of obtaining users’ IP addresses through inconspicuous calling,&#8221; the scientists said. Skype chief information officer Adrian Asher said his company will work to improve the security of Skype&#8217;s software. <span id="more-115798"></span></p>
<p><a href="http://business.financialpost.com/2011/12/08/skype-security-flaw-exposes-user-locations/">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/12/08/skype-security-flaw-leaves-user-locations-vulnerable/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2010/12/skype_logo_online-80x80.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2010/12/skype_logo_online-80x80.jpg</media:thumbnail>	</item>
		<item>
		<title>Apple plugs huge security hole with iOS 5.0.1</title>
		<link>http://www.bgr.com/2011/11/11/apple-plugs-huge-security-hole-with-ios-5-0-1/</link>
		<comments>http://www.bgr.com/2011/11/11/apple-plugs-huge-security-hole-with-ios-5-0-1/#comments</comments>
		<pubDate>Fri, 11 Nov 2011 18:35:49 +0000</pubDate>
		<dc:creator>Zach Epstein</dc:creator>
				<category><![CDATA[Mobile]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[iOS 5.0.1]]></category>
		<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[ipod touch]]></category>
		<category><![CDATA[security flaw]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=112257</guid>
		<description><![CDATA[Apple has addressed a major security vulnerability with the latest version of its iOS software. Just released on Thursday afternoon, iOS 5.0.1 was welcomed with open arms by iPhone users plagued by poor battery life. Apple promised that this new build addresses issues causing the lackluster battery performance — though its effectiveness remains in question — and it also addresses a much more serious problem. Security expert Charlie Miller revealed a major security flaw in iOS last week that allowed developers to sneak malicious apps past Apple&#8217;s App Store review process. Once installed by an end user, a hacker was able to use the vulnerability to steal data or perform any number of other unauthorized functions. IOS 5.0.1 addresses the]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/11/11/apple-plugs-huge-security-hole-with-ios-5-0-1"><img class="size-full wp-image-111252 aligncenter" title="iphone-4-back-close" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/iphone-4-back-close.jpeg" alt="" width="652" height="434" /></a></center>
<p>Apple has addressed a major security vulnerability with the latest version of its iOS software. <a href="http://www.bgr.com/2011/11/10/apple-releases-ios-5-0-1-for-iphone-ipad-and-ipod-touch/">Just released on Thursday afternoon</a>, iOS 5.0.1 was welcomed with open arms by iPhone users plagued by <a href="http://www.bgr.com/2011/10/31/iphone-4s-battery-drain-could-be-result-of-time-zone-bug/">poor battery life</a>. Apple promised that this new build addresses issues causing the lackluster battery performance — <a href="http://www.bgr.com/2011/11/11/iphone-owners-report-even-worse-battery-life-with-ios-5-0-1/">though its effectiveness remains in question</a> — and it also addresses a much more serious problem. Security expert Charlie Miller <a href="http://www.bgr.com/2011/11/08/hacker-uncovers-major-ios-security-flaw-video/">revealed a major security flaw in iOS last week</a> that allowed developers to sneak malicious apps past Apple&#8217;s App Store review process. Once installed by an end user, a hacker was able to use the vulnerability to steal data or perform any number of other unauthorized functions. IOS 5.0.1 addresses the vulnerability, <em>Forbes</em> reports, preventing apps from receiving malicious payloads. Apple credits Miller with having discovered the bug — he reported it to Apple nearly a month before going public — though the company has yet to restore his developer account, having banned him from its developer program after he planted an app in the App Store in order to demonstrate the vulnerability.<span id="more-112257"></span></p>
<p>[Via <a href="http://www.forbes.com/sites/andygreenberg/2011/11/11/apple-patches-bug-that-allowed-malicious-apps-on-iphones-and-ipads/">Forbes</a>]</p>
<p><a href="http://support.apple.com/kb/HT5052">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/11/11/apple-plugs-huge-security-hole-with-ios-5-0-1/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/apple-iphone-4-facedown-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/apple-iphone-4-facedown-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Hacker uncovers major iOS security flaw [video]</title>
		<link>http://www.bgr.com/2011/11/08/hacker-uncovers-major-ios-security-flaw-video/</link>
		<comments>http://www.bgr.com/2011/11/08/hacker-uncovers-major-ios-security-flaw-video/#comments</comments>
		<pubDate>Tue, 08 Nov 2011 15:00:04 +0000</pubDate>
		<dc:creator>Zach Epstein</dc:creator>
				<category><![CDATA[Mobile]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[iOS]]></category>
		<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[ipod touch]]></category>
		<category><![CDATA[security flaw]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=111670</guid>
		<description><![CDATA[A major security flaw in Apple&#8217;s iOS operating system that could allow hackers to remotely gain unauthorized access to an iPhone, iPod touch or iPad has been uncovered by a security expert. Described by Forbes as a &#8220;serial Mac hacker,&#8221; Accuvant LABS computer security researcher Charlie Miller has uncovered a security flaw that allows hackers to build apps that look legitimate and pass through Apple&#8217;s App Store approval process. Using a code-signing vulnerability, however, the malicious apps will automatically connect to a remote server following installation and download new unapproved code that might grant hackers access to system files, personal data and a host of unauthorized functionality. Read on for more. Apple&#8217;s closed App Store approval process has been touted by security]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/11/08/hacker-uncovers-major-ios-security-flaw-video"><img class="size-full wp-image-111206 aligncenter" title="iPhone-4S-withbox" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/iPhone-4S-withbox.jpeg" alt="" width="652" height="377" /></a></center>
<p>A major security flaw in Apple&#8217;s iOS operating system that could allow hackers to remotely gain unauthorized access to an iPhone, iPod touch or iPad has been uncovered by a security expert. Described by <em>Forbes</em> as a &#8220;serial Mac hacker,&#8221; Accuvant LABS computer security researcher Charlie Miller has uncovered a security flaw that allows hackers to build apps that look legitimate and pass through Apple&#8217;s App Store approval process. Using a code-signing vulnerability, however, the malicious apps will automatically connect to a remote server following installation and download new unapproved code that might grant hackers access to system files, personal data and a host of unauthorized functionality. Read on for more.<span id="more-111670"></span></p>
<p>Apple&#8217;s closed App Store approval process has been touted by security experts and pundits alike as a much more secure option than an open system like Google&#8217;s Android Market. While Apple has been largely successful in keeping malicious software out of its iOS App Store, this newly revealed vulnerability illustrates that no system is ever fully secure. &#8220;Now you could have a program in the App Store like Angry Birds that can run new code on your phone that Apple never had a chance to check,&#8221; Miller <a href="http://www.forbes.com/sites/andygreenberg/2011/11/07/iphone-security-bug-lets-innocent-looking-apps-go-bad/">told <em>Forbes</em> in an interview</a>. &#8220;With this bug, you can’t be assured of anything you download from the App Store behaving nicely.&#8221;</p>
<p>Miller isn&#8217;t just talking the talk, either. The security expert actually planted an app in Apple&#8217;s App Store that utilizes the exploit he detailed. Miller submitted the app to Apple for approval using his developer account and, following Apple&#8217;s standard testing and approval process, the app became available in the App Store. Miller then recorded a video illustrating some of the many functions a hacker would be able to perform using this exploit, which include executing a payload that will give the hacker complete control of an iOS device from a remote terminal.</p>
<p>The security expert&#8217;s app has since been removed from the App Store and his developer account has been suspended. Miller&#8217;s video follows below.</p>
<center><object width="651" height="331" classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://www.youtube.com/v/ynTtuwQYNmk?version=3&amp;hl=en_US&amp;rel=0" /><param name="allowfullscreen" value="true" /><embed width="651" height="331" type="application/x-shockwave-flash" src="http://www.youtube.com/v/ynTtuwQYNmk?version=3&amp;hl=en_US&amp;rel=0" allowFullScreen="true" allowscriptaccess="always" allowfullscreen="true" /></object></center>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/11/08/hacker-uncovers-major-ios-security-flaw-video/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/iPhone-4S-withbox1-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/11/iPhone-4S-withbox1-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Hacker group Anonymous now targeting child porn sites</title>
		<link>http://www.bgr.com/2011/10/24/hacker-group-anonymous-now-targeting-child-porn-sites/</link>
		<comments>http://www.bgr.com/2011/10/24/hacker-group-anonymous-now-targeting-child-porn-sites/#comments</comments>
		<pubDate>Mon, 24 Oct 2011 16:00:45 +0000</pubDate>
		<dc:creator>Todd Haselton</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[hacktivist]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=109488</guid>
		<description><![CDATA[Anonymous, the &#8220;hacktivist&#8221; group that waged war on the U.S. government and large companies such as Apple, has shifted its focus from cracking corporations to fighting online pedophilia. The group is now targeting web host Freedom Hosting and is accusing it of knowingly hosting child pornography. &#8220;The owners and operators at Freedom Hosting are openly supporting child pornography and enabling pedophiles to view innocent children, fueling their issues and putting children at risk of abduction, molestation, rape, and death,&#8221; Anonymous said in a statement. &#8220;Our demands are simple. Remove all child pornography content from your servers. Refuse to provide hosting services to any website dealing with child pornography. This statement is not just aimed at Freedom Hosting, but everyone on the internet.]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/10/24/hacker-group-anonymous-now-targeting-child-porn-sites"><img class="aligncenter size-full wp-image-101560" title="anonymous_mask" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/anonymous_mask110825163504.jpg" alt="" width="652" height="381" /></a></center>
<p>Anonymous, the &#8220;hacktivist&#8221; <a href="http://www.bgr.com/2011/06/20/lulzsec-and-anonymous-unite-to-wage-war-on-u-s-government/">group that waged war on the U.S. government</a> and large companies <a href="http://www.bgr.com/2011/07/04/apple-becomes-latest-anonymous-hacker-target/">such as Apple</a>, has shifted its focus from cracking corporations to fighting online pedophilia. The group is now targeting web host Freedom Hosting and is accusing it of knowingly hosting child pornography. &#8220;The owners and operators at Freedom Hosting are openly supporting child pornography and enabling pedophiles to view innocent children, fueling their issues and putting children at risk of abduction, molestation, rape, and death,&#8221; Anonymous said in a statement. &#8220;Our demands are simple. Remove all child pornography content from your servers. Refuse to provide hosting services to any website dealing with child pornography. This statement is not just aimed at Freedom Hosting, but everyone on the internet. It does not matter who you are, if we find you to be hosting, promoting, or supporting child pornography, you will become a target.&#8221; Read on for the full statement against online child pornography from Anonymous. <span id="more-109488"></span></p>
<blockquote>
<ol>
<li>
<div>#OpDarknet Press Release &#8211; 10/15/2011</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>   Timeline of Events</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>At apprx 8:30 CST while browsing the Hidden Wiki we noticed a section called Hard Candy which was dedicated to links to child pornography. We then removed all links on the website, within 5 minutes the links were edited back in by an admin. For this reason, we will continue to make the Hidden Wiki unavailable.</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>At apprx 8:45 CST we noticed 95% of the child pornography listed on the Hidden Wiki shared a digital fingerprint with the shared hosting server at Freedom Hosting.</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>At apprx 9:00pm CST on October 14, 2011 We identified Freedom Hosting as the host of the largest collection of child pornography on the internet. We then issued a warning to remove the illegal content from their server, which they refused to do.</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>At apprx 11:30pm CST on October 14, 2011 We infiltrated the shared hosting server of Freedom Hosting and shutdown services to all clients due to their lack of action to remove child pornography from their server.</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>At apprx 5:00pm CST on October 15, 2011 Freedom Hosting installed their backups and restored services to their child pornography clients. We then issued multiple warnings to remove all child pornography from their servers, which Freedom Hosting refused to do.</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>At apprx 8:00pm CST on October 15, 2011 despite new security features, we once again infiltrated the shared hosting server at Freedom Hosting and stopped service to all clients.</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>     Our Statement</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>The owners and operators at Freedom Hosting are openly supporting child pornography and enabling pedophiles to view innocent children, fueling their issues and putting children at risk of abduction, molestation, rape, and death.</div>
</li>
<li>
<div>For this, Freedom Hosting has been declared #OpDarknet Enemy Number One.</div>
</li>
<li>
<div>By taking down Freedom Hosting, we are eliminating 40+ child pornography websites, among these is Lolita City, one of the largest child pornography websites to date containing more than 100GB of child pornography.</div>
</li>
<li>
<div>We will continue to not only crash Freedom Hosting&#8217;s server, but any other server we find to contain, promote, or support child pornography.</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>      Our Demands</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>Our demands are simple. Remove all child pornography content from your servers. Refuse to provide hosting services to any website dealing with child pornography. This statement is not just aimed at Freedom Hosting, but everyone on the internet. It does not matter who you are, if we find you to be hosting, promoting, or supporting child pornography, you will become a target.</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>     Images &amp; Misc</div>
</li>
<li>
<div>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</div>
</li>
<li>
<div>Dead Server Screenshot: http://i55.tinypic.com/vy9w7k.jpg</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>Freedom Host PR Screenshot: http://i53.tinypic.com/o5qlip.jpg</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>Our Manifesto: http://www.youtube.com/watch?v=aFuJp_zPIlU</div>
</li>
<li>
<div>&#8211;</div>
</li>
<li>
<div>  #Antisec | #Anonymous | #FreeTopiary | #AnonOps | #FreeAnons | #OccupyWallSteet | #OWS</div>
</li>
<li>
<div>We are Anonymous.</div>
</li>
<li>
<div>We are Legion.</div>
</li>
<li>
<div>We do not forgive.</div>
</li>
<li>
<div>We do not forget.</div>
</li>
<li>
<div>Expect us.</div>
</li>
</ol>
</blockquote>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/10/24/hacker-group-anonymous-now-targeting-child-porn-sites/feed/</wfw:commentRss>
		<slash:comments>102</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/anonymous_mask110825163504-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/anonymous_mask110825163504-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Massachusetts Attorney General to demand answers from Apple after iTunes breach</title>
		<link>http://www.bgr.com/2011/09/21/massachusetts-attorney-general-to-demand-answers-from-apple-after-itunes-breach/</link>
		<comments>http://www.bgr.com/2011/09/21/massachusetts-attorney-general-to-demand-answers-from-apple-after-itunes-breach/#comments</comments>
		<pubDate>Wed, 21 Sep 2011 23:10:20 +0000</pubDate>
		<dc:creator>Todd Haselton</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[itunes]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=104580</guid>
		<description><![CDATA[Massachusetts Attorney General Martha Coakley recently said her iTunes account was compromised by identity thieves and that she will press Apple for answers. It is unclear how the thieves gained access to Coakley&#8217;s account, perhaps through an application, but the hackers stole credit card information and made fraudulent purchases, ThreatPost said. Coakley brought up the attack during a speech for the launch of the Massachusetts Advanced Cyber Security Center. She noted that Dell blocked her credit card when the hackers tried to purchase a computer, believing the purchase to be fraudulent. Apple, however, did not. Coakley said she would reach out to the iPhone maker and demand information. ThreatPost argued that Coakley might have been speaking so strongly in an]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/09/21/massachusetts-attorney-general-to-demand-answers-from-apple-after-itunes-breach"><img class="size-full wp-image-104581 aligncenter" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/09/martha_coakley110921172923.jpg" alt="" width="652" height="402" /></a></center>
<p>Massachusetts Attorney General Martha Coakley recently said her iTunes account was compromised by identity thieves and that she will press Apple for answers. It is unclear how the thieves gained access to Coakley&#8217;s account, perhaps through an application, but the hackers stole credit card information and made fraudulent purchases, <em>ThreatPost </em>said. Coakley brought up the attack during a speech for the launch of the Massachusetts Advanced Cyber Security Center. She noted that Dell blocked her credit card when the hackers tried to purchase a computer, believing the purchase to be fraudulent. Apple, however, did not. Coakley said she would reach out to the iPhone maker and demand information. <em>ThreatPost</em> argued that Coakley might have been speaking so strongly in an effort to build support for Massachusetts&#8217; state data privacy, data protection and data breach notification laws. Coakley believes companies such as Apple should be held liable when in violation of the aforementioned laws. The Massachusetts Attorney General&#8217;s office said any company that has had a breach which &#8220;creates a substantial risk of identity theft or fraud against a resident of the commonwealth,&#8221; should publicly disclose the attack.<span id="more-104580"></span></p>
<p><a href="http://threatpost.com/en_us/blogs/massachusetts-attorney-general-victim-itunes-scam-says-shell-demand-answers-092111">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/09/21/massachusetts-attorney-general-to-demand-answers-from-apple-after-itunes-breach/feed/</wfw:commentRss>
		<slash:comments>40</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/09/martha_coakley110921172923-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/09/martha_coakley110921172923-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>OS X Lion security flaw allows anyone to change your password</title>
		<link>http://www.bgr.com/2011/09/19/os-x-lion-security-flaw-allows-anyone-to-change-your-password/</link>
		<comments>http://www.bgr.com/2011/09/19/os-x-lion-security-flaw-allows-anyone-to-change-your-password/#comments</comments>
		<pubDate>Mon, 19 Sep 2011 19:25:11 +0000</pubDate>
		<dc:creator>Todd Haselton</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[flaw]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[lion]]></category>
		<category><![CDATA[local]]></category>
		<category><![CDATA[os x]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[user]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=104186</guid>
		<description><![CDATA[Security blog Defense in Depth has found a glaring security flaw in OS X Lion that enables hackers to change the password of any user on a machine running Lion. &#8220;[While] non-root users are unable to access the shadow files directly, Lion actually provides non-root users the ability to still view password hash data,&#8221; Patrick Dunstan from Defense in Depth explained in a recent blog post. The result is that anyone could use a simple Python script, created by Dunstan himself, to discover a user&#8217;s password. It gets worse. Reportedly, OS X Lion does not require its users to enter a password to change the login credentials of the current user. That means typing the command: &#8220;dscl localhost -passwd /Search/Users/Roger&#8221;]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/09/19/os-x-lion-security-flaw-allows-anyone-to-change-your-password"><img class="size-full wp-image-77989 aligncenter" title="lion1" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/02/lion1110224140813.jpeg" alt="" width="600" height="350" /></a></center>
<p>Security blog <em>Defense in Depth</em> has found a glaring security flaw in OS X Lion that enables hackers to change the password of any user on a machine running Lion. &#8220;[While] non-root users are unable to access the shadow files directly, Lion actually provides non-root users the ability to still view password hash data,&#8221; Patrick Dunstan from <em>Defense in Depth</em> explained in a recent blog post. The result is that anyone could use a simple Python script, created by Dunstan himself, to discover a user&#8217;s password. It gets worse. Reportedly, OS X Lion does not require its users to enter a password to change the login credentials of the current user. That means typing the command: &#8220;dscl localhost -passwd /Search/Users/Roger&#8221; will actually prompt you to set a new password for Roger. As <em>CNET</em> points out, a hacker could only take advantage of the known bug if he or she has local access to the computer <em>and</em> Directory Service access<em>. </em><em>CNET </em>suggests disabling automatic log-in, enabling sleep and screensaver passwords and disabling guest accounts as some preventative measures to keep your Mac secure. <span id="more-104186"></span></p>
<p>[Via <a href="http://reviews.cnet.com/8301-13727_7-20108261-263/os-x-lion-passwords-can-be-changed-by-any-local-user/">CNET</a>]</p>
<p><a href="http://www.defenceindepth.net/2011/09/cracking-os-x-lion-passwords.html">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/09/19/os-x-lion-security-flaw-allows-anyone-to-change-your-password/feed/</wfw:commentRss>
		<slash:comments>68</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/02/lion1110224140813-80x80.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/02/lion1110224140813-80x80.jpg</media:thumbnail>	</item>
		<item>
		<title>Sony hires former U.S Department of Homeland Security official to boost defenses</title>
		<link>http://www.bgr.com/2011/09/06/sony-hires-former-u-s-department-of-homeland-security-official-to-boost-defenses/</link>
		<comments>http://www.bgr.com/2011/09/06/sony-hires-former-u-s-department-of-homeland-security-official-to-boost-defenses/#comments</comments>
		<pubDate>Wed, 07 Sep 2011 01:20:10 +0000</pubDate>
		<dc:creator>Todd Haselton</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hire]]></category>
		<category><![CDATA[sony]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=102758</guid>
		<description><![CDATA[Following a major security breach earlier this year, Sony made good on its promise to bolster its security by hiring a former official from the U.S. Department of Homeland Security to serve as its chief information security officer and senior vice president, Reuters reported on Tuesday. Philip Reitinger formerly served as the director of the U.S. National Security Center. &#8220;Certainly the network issue was a catalyst for the appointment,&#8221; a Sony spokesman told Reuters. &#8220;We are looking to bolster our network security even further.&#8221; Sony&#8217;s online PlayStation and Qriocity networks were attacked in May when a hacker group known as LulzSec gained access to personal data belonging to more than 100 million users. A string of subsequent hacks on Sony&#8217;s]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/09/06/sony-hires-former-u-s-department-of-homeland-security-official-to-boost-defenses"><img class="size-full wp-image-102774 aligncenter" title="philip-reitinger-headshot" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/09/philip-reitinger-headshot110906133848.jpg" alt="" width="640" height="360" /></a></center>
<p style="text-align: left;">Following a <a href="http://www.bgr.com/tag/hackathon/">major security breach earlier this year</a>, Sony made good on its <a href="http://www.bgr.com/2011/05/06/sonys-ceo-apologizes-for-security-breach-will-offer-free-month-of-psn-service/">promise to bolster its security</a> by hiring a former official from the U.S. Department of Homeland Security to serve as its chief information security officer and senior vice president, <em>Reuters </em>reported on Tuesday. Philip Reitinger formerly served as the director of the U.S. National Security Center. &#8220;Certainly the network issue was a catalyst for  the appointment,&#8221; a Sony spokesman told <em>Reuters</em>. &#8220;We are looking to bolster our  network security even further.&#8221; Sony&#8217;s online PlayStation and Qriocity networks were attacked in May when a hacker group known as LulzSec gained access to personal data belonging to more than 100 million users. <a href="http://www.bgr.com/tag/sonyhackathon/">A string of subsequent hacks on Sony&#8217;s digital properties</a> made headlines for the better part of two months, and Sony&#8217;s PlayStation Network was not <a href="http://www.bgr.com/2011/07/05/sony-to-finally-complete-full-psn-service-restoration-this-week/">fully restored until July</a>. <span id="more-102758"></span></p>
<p><a href="http://www.reuters.com/article/2011/09/06/us-sony-idUSTRE7851PH20110906">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/09/06/sony-hires-former-u-s-department-of-homeland-security-official-to-boost-defenses/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/09/philip-reitinger-headshot110906133848-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/09/philip-reitinger-headshot110906133848-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>Google+ flaw allows hackers to execute DDoS attacks using Google servers</title>
		<link>http://www.bgr.com/2011/08/31/google-flaw-allows-hackers-to-execute-ddos-attacks-using-google-servers/</link>
		<comments>http://www.bgr.com/2011/08/31/google-flaw-allows-hackers-to-execute-ddos-attacks-using-google-servers/#comments</comments>
		<pubDate>Wed, 31 Aug 2011 20:15:21 +0000</pubDate>
		<dc:creator>Zach Epstein</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[cyberattack]]></category>
		<category><![CDATA[DDOS]]></category>
		<category><![CDATA[Exploit]]></category>
		<category><![CDATA[flaw]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[Google Plus]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacker]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=102199</guid>
		<description><![CDATA[A security expert at Italian security firm AIR Sicurezza Informatica claims to have found a security flaw in Google&#8217;s new social network that allows hackers to potentially use Google+ servers to execute DDoS attacks. Simone Quatrini explained the flaw on the IHTeam Security Blog, and he wrote a script that can perform the attack, repeatedly prompting Google&#8217;s server to send requests to the target site. DDoS attacks, or distributed denial-of-service attacks, flood a web server with requests in an effort to prevent it from functioning. Such attacks require appropriate resources and bandwidth to execute, and Google servers would obviously have more than enough of these resources to launch a significant attack. [Via The Hacker News] Read]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/08/31/google-flaw-allows-hackers-to-execute-ddos-attacks-using-google-servers"><img class="size-full wp-image-102200 aligncenter" title="ddos" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/ddos110831130659.jpeg" alt="" width="384" height="500" /></a></center>
<p>A security expert at Italian security firm AIR Sicurezza Informatica claims to have found a security flaw in Google&#8217;s new social network that allows hackers to potentially use Google+ servers to execute DDoS attacks. Simone Quatrini explained the flaw on the <em>IHTeam Security Blog</em>, and he wrote a script that can perform the attack, repeatedly prompting Google&#8217;s server to send requests to the target site. DDoS attacks, or distributed denial-of-service attacks, flood a web server with requests in an effort to prevent it from functioning. Such attacks require appropriate resources and bandwidth to execute, and Google servers would obviously have more than enough of these resources to launch a significant attack.<span id="more-102199"></span></p>
<p>[Via <a href="http://www.thehackernews.com/2011/08/ddos-attack-using-google-plus-servers.html">The Hacker News</a>]</p>
<p><a href="http://www.ihteam.net/advisory/make-requests-through-google-servers-ddos/">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/08/31/google-flaw-allows-hackers-to-execute-ddos-attacks-using-google-servers/feed/</wfw:commentRss>
		<slash:comments>15</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/ddos110831130659-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/ddos110831130659-128x128.jpg</media:thumbnail>	</item>
		<item>
		<title>22-year-old &#8216;Anonymous&#8217; hacker arrested in United Kingdom</title>
		<link>http://www.bgr.com/2011/08/25/22-year-old-anonymous-hacker-arrested-in-united-kingdom/</link>
		<comments>http://www.bgr.com/2011/08/25/22-year-old-anonymous-hacker-arrested-in-united-kingdom/#comments</comments>
		<pubDate>Thu, 25 Aug 2011 19:50:42 +0000</pubDate>
		<dc:creator>Todd Haselton</dc:creator>
				<category><![CDATA[Legal]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[Anonymous Operations]]></category>
		<category><![CDATA[arrest]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[UK]]></category>
		<category><![CDATA[united kingdom]]></category>

		<guid isPermaLink="false">http://www.bgr.com/?p=101558</guid>
		<description><![CDATA[A 22-year old student allegedly associated with the hacking group &#8220;Anonymous&#8221; has been arrested and charged in the United Kingdom. Peter David Gibson is charged with &#8220;conspiracy to do an unauthorized act in relation to a computer, with intent to impair the operation of any computer or prevent or hinder access to any program or data held in a computer or to impair the operation of any such program or the reliability of such data,&#8221; the Metropolitan Police said in a statement Thursday. Gibson is out on bail and is scheduled to appear in court on September 7th to stand trial. It is believed that Gibson was involved on a number of Anonymous&#8217;s DDOS attacks against large corporations; the &#8220;Anonymous]]></description>
			<content:encoded><![CDATA[<center><a href="http://www.bgr.com/2011/08/25/22-year-old-anonymous-hacker-arrested-in-united-kingdom"><img class="size-full wp-image-101560 aligncenter" title="anonymous_mask" src="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/anonymous_mask110825163504.jpg" alt="" width="652" height="381" /></a></center>
<p>A 22-year old student allegedly associated with the hacking group &#8220;Anonymous&#8221; has been arrested and charged in the United Kingdom. Peter David Gibson is charged with &#8220;conspiracy to do an unauthorized act in relation to a computer, with intent to impair the operation of any computer or prevent or hinder access to any program or data held in a computer or to impair the operation of any such program or the reliability of such data,&#8221; the Metropolitan Police said in a statement Thursday. Gibson is out on bail and is scheduled to appear in court on September 7th to stand trial. It is believed that Gibson was involved on a number of Anonymous&#8217;s DDOS attacks against large corporations; the &#8220;Anonymous Operations&#8221; branch of the hacking group most recently <a href="http://www.bgr.com/2011/07/04/apple-becomes-latest-anonymous-hacker-target/">attacked Apple</a>. Authorities in the United States and the United Kingdom have <a href="http://www.bgr.com/2011/07/19/fbi-raids-anonymous-hackers-in-new-york/">arrested a number of hackers</a> believed to be associated with Anonymous and a sub-group called LulzSec. LulzSec spokesperson and hacker Jack Davis, aka Topiary, was <a href="http://www.bgr.com/2011/07/27/police-arrest-19-year-old-lulzsec-hacker-topiary/">arrested earlier this month</a> and <a href="http://www.bgr.com/2011/08/01/lulzsec-hacker-jack-davis-aka-topiary-released-on-bail/">released on bail</a>.<span id="more-101558"></span></p>
<p>[Via <a href="http://www.bloomberg.com/news/2011-08-25/u-k-police-charge-22-year-old-in-anonymous-hacking-probe-1-.html">Bloomberg</a>]</p>
<p><a href="http://content.met.police.uk/News/Man-charged-with-computer-offences/1260269533683/1257246745756">Read</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.bgr.com/2011/08/25/22-year-old-anonymous-hacker-arrested-in-united-kingdom/feed/</wfw:commentRss>
		<slash:comments>23</slash:comments>
	<media:thumbnail url="http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/anonymous_mask110825163504-128x128.jpg">http://www-bgr-com.vimg.net/wp-content/uploads/2011/08/anonymous_mask110825163504-128x128.jpg</media:thumbnail>	</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached
Content Delivery Network via Amazon Web Services: CloudFront: www-bgr-com.vimg.net

Served from: www.bgr.com @ 2012-05-31 22:06:27 -->
