PayPal Freezes MailPile’s Account, Access to Funds

September 5th, 2013

Update: PayPal Releases Funds

That move was just too ridiculous, even for PayPal.

Via: MailPile:

[Update: PayPal have unfrozen the account, for now at least. Thank you for your support!]

Via: Mailpile:

The bad news is, PayPal have frozen our PayPal account. This means roughly $45,000 of the $135,000 we have raised so far are in a state of limbo and we don’t know when we will get access to the money. Rest assured, we are not taking this lying down and intend to put pressure on the company both through the media and legal channels and we have asked our counsel, the Software Freedom Law Center in New York, to help us work this out with Paypal. We have also disabled PayPal as a payment option on our campaign until it has been resolved.

More: Paypal Freezes Campaign Funds


Amazon Hiring 100 IT Personnel for Positions Requiring Top Secret Security Clearances

September 5th, 2013

Via: ComputerWorld:

Amazon has more than 100 job openings for people who can get a top secret clearance, which includes a U.S. government administered polygraph examination. It needs software developers, operations managers and cloud support engineers, among others.

Amazon’s hiring effort includes an invitation-only recruiting event for systems support engineers at its Herndon, Va., facility on Sept. 24 and 25.

Amazon is challenging established IT vendors for U.S. government intelligence work, illustrated by an escalating fight to build a private cloud for the CIA.


Custom Video Game Helped Improve Cognitive Function in Elderly

September 5th, 2013

Via: New York Times:

There may be a new market for video games: octogenarians.

Brain scientists have discovered that swerving around cars while simultaneously picking out road signs in a video game can improve the short-term memory and long-term focus of older adults. Some people as old as 80, the researchers say, begin to show neurological patterns of people in their 20s.

Cognitive scientists say the findings, to be published Thursday in the scientific journal Nature, are a significant development in understanding how to strengthen older brains. That is because the improvements in brain performance did not come just within the game but were shown outside the game in other cognitive tasks.

Further supporting the findings, the researchers were able to measure and show changes in brain wave activity, suggesting that this research could help understand what neurological mechanisms should and could be tinkered with to improve memory and attention.

The research “shows you can take older people who aren’t functioning well and make them cognitively younger through this training,” said Earl K. Miller, a neuroscientist at the Massachusetts Institute of Technology, who was not affiliated with the research. “It’s a very big deal.”


Oregon State University: Research Create Diodes That Use Quantum Mechanical Tunneling

September 5th, 2013

Via: OSU:

Researchers in the College of Engineering at Oregon State University have made a significant advance in the function of metal-insulator-metal, or MIM diodes, a technology premised on the assumption that the speed of electrons moving through silicon is simply too slow.

For the extraordinary speed envisioned in some future electronics applications, these innovative diodes solve problems that would not be possible with silicon-based materials as a limiting factor.

The new diodes consist of a “sandwich” of two metals, with two insulators in between, to form “MIIM” devices. This allows an electron not so much to move through materials as to tunnel through insulators and appear almost instantaneously on the other side. It’s a fundamentally different approach to electronics.

The newest findings, published in Applied Physics Letters, have shown that the addition of a second insulator can enable “step tunneling,” a situation in which an electron may tunnel through only one of the insulators instead of both. This in turn allows precise control of diode asymmetry, non-linearity, and rectification at lower voltages.

“This approach enables us to enhance device operation by creating an additional asymmetry in the tunnel barrier,” said John F. Conley, Jr., a professor in the OSU School of Electrical Engineering and Computer Science. “It gives us another way to engineer quantum mechanical tunneling and moves us closer to the real applications that should be possible with this technology.”

OSU scientists and engineers, who only three years ago announced the creation of the first successful, high-performance MIM diode, are international leaders in this developing field. Conventional electronics based on silicon materials are fast and inexpensive, but are reaching the top speeds possible using those materials. Alternatives are being sought.

More sophisticated microelectronic products could be possible with the MIIM diodes – not only improved liquid crystal displays, cell phones and TVs, but such things as extremely high-speed computers that don’t depend on transistors, or “energy harvesting” of infrared solar energy, a way to produce energy from the Earth as it cools during the night.


U.S. Stops Jailed Activist Barrett Brown from Discussing Leaks Prosecution

September 5th, 2013

Via: Guardian:

A federal court in Dallas, Texas has imposed a gag order on the jailed activist-journalist Barrett Brown and his legal team that prevents them from talking to the media about his prosecution in which he faces up to 100 years in prison for alleged offences relating to his work exposing online surveillance.

The court order, imposed by the district court for the northern district of Texas at the request of the US government, prohibits the defendant and his defence team, as well as prosecutors, from making “any statement to members of any television, radio, newspaper, magazine, internet (including, but not limited to, bloggers), or other media organization about this case, other than matters of public interest.”

It goes on to warn Brown and his lawyers that “no person covered by this order shall circumvent its effect by actions that indirectly, but deliberately, bring about a violation of this order”.

According to Dell Cameron of Vice magazine, who attended the hearing, the government argued that the gag order was needed in order to protect Brown from prejudicing his right to a fair trial by making comments to reporters.

But media observers seen the hearing in the opposite light: as the latest in a succession of prosecutorial moves under the Obama administration to crack-down on investigative journalism, official leaking, hacking and online activism.

Brown’s lead defence attorney, Ahmed Ghappour, has countered in court filings, the most recent of which was lodged with the court Wednesday, that the government’s request for a gag order is unfounded as it is based on false accusations and misrepresentations.

The lawyer says the gagging order is a breach of Brown’s first amendment rights as an author who continues to write from his prison cell on issues unconnected to his own case for the Guardian and other media outlets.


U.S. Senate Committee Backs Use of Force in Syria

September 4th, 2013

I’m baffled by this situation. There is a very long and sickening history of the Executive doing whatever it wants when it comes to the use of military force (see: Presidential War Power by Louis Fisher). I don’t know why Mr. Nobel Peace Prize winner Obomb-ya is bothering with Congress to get America’s next war started.

Is there some sort of legislative Trojan horse here?

Via: BBC:

A US Senate panel has approved the use of military force in Syria, in response to an alleged chemical weapons attack.

By 10-7, the Committee on Foreign Relations moved the measure to a full Senate vote, expected next week.

The proposal allows the use of force in Syria for 60 days with the possibility to extend it for 30 days. It prevents the use of US troops on the ground.

President Barack Obama is battling to build support at home and abroad for military action.

Despite Wednesday’s vote, the bill’s ultimate fate in the wider Senate is unclear. And the US House of Representatives must also approve the measure.


‘School Is a Prison’

September 4th, 2013

I hope that everyone who sees this post clicks through and reads the whole piece.

Also, here’s the book: Free to Learn: Why Unleashing the Instinct to Play Will Make Our Children Happier, More Self-Reliant, and Better Students for Life by Peter Gray

Via: Salon:

Parents send their children to school with the best of intentions, believing that’s what they need to become productive and happy adults. Many have qualms about how well schools are performing, but the conventional wisdom is that these issues can be resolved with more money, better teachers, more challenging curricula and/or more rigorous tests.

But what if the real problem is school itself? The unfortunate fact is that one of our most cherished institutions is, by its very nature, failing our children and our society.

School is a place where children are compelled to be, and where their freedom is greatly restricted — far more restricted than most adults would tolerate in their workplaces. In recent decades, we have been compelling our children to spend ever more time in this kind of setting, and there is strong evidence (summarized in my recent book) that this is causing serious psychological damage to many of them. Moreover, the more scientists have learned about how children naturally learn, the more we have come to realize that children learn most deeply and fully, and with greatest enthusiasm, in conditions that are almost opposite to those of school.

Compulsory schooling has been a fixture of our culture now for several generations. It’s hard today for most people to even imagine how children would learn what they must for success in our culture without it. President Obama and Secretary of Education Arne Duncan are so enamored with schooling that they want even longer school days and school years. Most people assume that the basic design of schools, as we know them today, emerged from scientific evidence about how children learn best. But, in fact, nothing could be further from the truth.

Schools as we know them today are a product of history, not of research into how children learn. The blueprint still used for today’s schools was developed during the Protestant Reformation, when schools were created to teach children to read the Bible, to believe scripture without questioning it, and to obey authority figures without questioning them. The early founders of schools were quite clear about this in their writings. The idea that schools might be places for nurturing critical thought, creativity, self-initiative or ability to learn on one’s own — the kinds of skills most needed for success in today’s economy — was the furthest thing from their minds. To them, willfulness was sinfulness, to be drilled or beaten out of children, not encouraged.

When schools were taken over by the state and made compulsory, and directed toward secular ends, the basic structure and methods of schooling remained unchanged. Subsequent attempts at reform have failed because, though they have tinkered some with the structure, they haven’t altered the basic blueprint. The top-down, teach-and-test method, in which learning is motivated by a system of rewards and punishments rather than by curiosity or by any real, felt desire to know, is well designed for indoctrination and obedience training but not much else.


Think Of Tor As A Honeypot

September 4th, 2013

This is .mil laughing out loud at Tor heads.

“Tor is known to be insecure against an adversary that can observe a user’s traffic entering and exiting the anonymity network.”

Gee, I wonder who might be capable of doing something like that: NSA Laughs at PCs, Prefers Hacking Routers and Switches

Via: ohmygodel .PDF:

Tor is a volunteer-operated anonymity network that is estimated to protect the privacy of hundreds of thousands of daily users [13, 22]. However, Tor is known to be insecure against an adversary that can observe a user’s traffic entering and exiting the anonymity network. Quite simple and efficient techniques can correlate traffic at these separate locations by taking advantage of identifying traffic patterns [29]. As a result, the user and his destination may be identified, completely subverting the protocol’s security goals.

The traffic correlation problem in Tor has seen much attention in the literature. Prior Tor security analyses often consider entropy or similar statistical measures as metrics of the security provided by the system at a static point in time. In addition, while prior metrics of security may provide useful information about overall usage, they typically do not tell users how secure a type of behavior is. Further, similar previous work has thus far only considered adversaries that control either a subset of the members of the Tor network, a single autonomous system (AS), or a single Internet exchange point (IXP). These analyses have missed important characteristics of the network, such as that a single organization often controls several geographically diverse ASes or IXPs. That organization may have malicious intent or undergo coercion, threatening users of all network components under its control.

Given the severity of the traffic correlation problem and its security implications, we develop an analysis framework for evaluating the security of various user behaviors on the live Tor network and show how to concretely apply this framework by performing a comprehensive evaluation of the security of the Tor network [41] against the threat of complete deanonymization. To enable such an analysis, we develop a detailed model of a network adversary that includes (i) the largest and most accurate system for AS path inference yet applied to Tor and (ii) a thorough analysis of the threat of Internet exchange points and IXP coalitions. We also develop realistic metrics that inform this analysis, considering the network topology as it evolves over time, for example, as new relays are
introduced and others go offline.

Our analysis shows that 80% of all types of users may be deanonymized by a relatively moderate Tor-relay adversary within six months. Our results also show that against a single AS adversary roughly 100% of users in some common locations are deanonymized within three months (95% in three months for a single IXP). Further, we find that an adversary controlling two ASes instead of one reduces the median time to the first client de-anonymization by an order of magnitude: from over three months to only 1 day for a typical web user; and from over three months to roughly one month for a BitTorrent user. This clearly shows the dramatic effect an adversary that controls multiple ASes can have on security.

Related:

Tor Is Less Anonymous Than You Think

High-Traffic Colluding Tor Routers in Washington, D.C., and the Ugly Truth About Online Anonymity

Feds Pay for 60 Percent of Tor’s Development


NSA Laughs at PCs, Prefers Hacking Routers and Switches

September 4th, 2013

“No one updates their routers” ???

I always updated the routers, switches and firewalls that I was responsible for.

Ah well, these kids today…

Via: Wired:

The NSA’s focus on routers highlights an often-overlooked attack vector with huge advantages for the intruder, says Marc Maiffret, chief technology officer at security firm Beyond Trust. Hacking routers is an ideal way for an intelligence or military agency to maintain a persistent hold on network traffic because the systems aren’t updated with new software very often or patched in the way that Windows and Linux systems are.

“No one updates their routers,” he says. “If you think people are bad about patching Windows and Linux (which they are) then they are … horrible about updating their networking gear because it is too critical, and usually they don’t have redundancy to be able to do it properly.”

He also notes that routers don’t have security software that can help detect a breach.

“The challenge [with desktop systems] is that while antivirus don’t work well on your desktop, they at least do something [to detect attacks],” he says. “But you don’t even have an integrity check for the most part on routers and other such devices like IP cameras.”

Hijacking routers and switches could allow the NSA to do more than just eavesdrop on all the communications crossing that equipment. It would also let them bring down networks or prevent certain communication, such as military orders, from getting through, though the Post story doesn’t report any such activities. With control of routers, the NSA could re-route traffic to a different location, or even alter it for disinformation campaigns, such as planting information that would have a detrimental political effect or altering orders to re-route troops or supplies in a military operation.

According to the budget document, the CIA’s Tailored Access Programs and NSA’s software engineers possess “templates” for breaking into common brands and models of routers, switches and firewalls.

The article doesn’t say it, but this would likely involve pre-written scripts or backdoor tools and root kits for attacking known but unpatched vulnerabilities in these systems, as well as for attacking zero-day vulnerabilities that are yet unknown to the vendor and customers.

In 2005, security researcher Mike Lynn found a serious vulnerability in Cisco IOS, the operating system running on millions of Cisco routers around the world.

Lynn discovered the vulnerability after his employer, Internet Security Systems, asked him to reverse-engineer the Cisco operating system to see if he could find security problems with it. Cisco makes the majority of the routers that operate the backbone of the internet as well as many company networks and critical infrastructure systems. The Cisco IOS is as ubiquitous in the backbone as the Windows operating system is on desktops.

The vulnerability Lynn found, in a new version of the operation system that Cisco planned to release at the time, would have allowed someone to create a router worm that would shut down every Cisco router through which it passed, bringing down a nation’s critical infrastructure. It also would have allowed an attacker to gain complete control of the router to sniff all traffic passing through a network in order to read, record or alter it, or simply prevent traffic from reaching its recipient.

Once Lynn found the vulnerability, it took him six months to develop a working exploit to attack it.

Lynn had planned to discuss the vulnerability at the Black Hat security conference in Las Vegas, until Cisco intervened and forced him to pull the talk under threat of a lawsuit.

But if Lynn knew about the vulnerability, there were likely others who did as well — including intelligence agencies and criminal hackers.

Source code for Cisco’s IOS has been stolen at least twice, either by entities who were interested in studying the software to gain a competitive advantage or to uncover vulnerabilities that would allow someone to hack or control them.


Can’t Get Enough of China’s Ghost Cities

September 4th, 2013

Macro scale madness.

Via: io9:

China’s building boom has created a ton of abandoned cities and massive ruins — most of which are brand new, and have never had people living in them. Here are the deserted Chinese cities, mostly built in the last 10 years, which could be sets for your next dystopian movie.


« Previous PageNext Page »