Showing posts with label P&P. Show all posts
Showing posts with label P&P. Show all posts

Sunday 2 October 2016

Yahoo Hack: information on some 500 million people were stolen

Yahoo hack analysis shows little evidence of foreign involvement

Last week, Yahoo owned up to the largest hack known to have occurred in computing history. Passwords, logins, and other account information on some 500 million people were stolen in the heist. At the time, Yahoo claimed that the hack was the work of state-sponsored actors — but independent analysts working on analyzing the hack have begun pushing back that assessment, while current and former Yahoo employees say security was a distant priority at Yahoo.

InfoArmor has published a timeline and history of the attack against Yahoo. The first offers to sell Yahoo-derived data appeared on April 3, 2016. According to InfoArmor’s analysis, the individuals attempting to sell the Yahoo data (and other major data sets for websites like Instagram, LinkedIn, Dropbox, MySpace, and Tumblr) are fronting the data sets for criminal groups, as opposed to acting directly on behalf of government agencies in foreign countries. It’s not always easy to tease these relationships apart, since criminal hackers sometimes sell data to nation-states, or could be hired to work directly on their behalf.

The graphic below shows the proposed relationships between a set of professional, Eastern European black hats in green, English-speaking threat actors (in red), and a potential group of state-sponsored actors who purchase data from the digital fences but weren’t directly involved in the hack itself (purple).


YahooPIC8

It’s generally considered difficult to prove that any single government was responsible for a hack. But these attacks tend to be extremely sophisticated, with carefully crafted malware that goes after specific targets. If conventional malware attacks are WW2-era carpet bombing, targeted, state-sponsored malware are modern, self-guided ‘smart’ weapons with precision strike capabilities and advanced munitions. The InfoArmor analysis also revealed the scope of what was taken from Yahoo: login ids, country codes, recovery emails, date-of-birth records, MD5 password hashes, cell phone numbers, and zip codes were all stolen.

Yahoo: Too terrified of losing users to protect them
An investigation by the New York Times doesn’t paint a flattering picture of Yahoo’s security infrastructure. While Yahoo created a dedicated security team after high-profile attacks took down other services, it rarely listened to its own experts, dubbed the “Paranoids” internally. Yahoo didn’t implement a bug bounty program until 2013, three years after Google debuted its own. In 2013, the Snowden leaks demonstrated Yahoo was a frequent target of hack attempts, but it took the company a full year to even hire a chief information security officer.

Yahoo’s security team pushed for end-to-end encryption for all Yahoo products. They were shut down by protests from the senior VP overseeing email and messaging services, Jeff Bonforte, who claimed end-to-end encryption would limit Yahoo’s ability to search and index email or offer new services to customers. When Yahoo’s new chief security officer went to bat for user privacy and security, he found little support from CEO Marissa Mayer. The Paranoids were starved for resources, and their suggestions for improving security through superior intrusion detection were denied as well, according to the report. Even a request to automatically reset passwords for all users in the wake of a major breach was denied.

Why? Money and reach. Mayer and other executives were concerned that any disruption to service — even something as simple as a password reset — could trigger more users to leave the company and seek service elsewhere. Yahoo notified its customers that a hack had occurred, but took no other action to protect its customers. Between the lack of evidence for state-sponsored activity, and growing awareness that the company’s lack of concern for security played a significant role in its own downfall, Yahoo is looking like a worse acquisition for Verizon all the time.

Yahoo management could have used the Snowden leaks to justify a new round of spending and consumer-centric, privacy-friendly changes. After all, it was thanks to Snowden that we found out Yahoo had challenged the government’s right to spy on its customers in multiple secret court battles. Yahoo could have built on that record and appealed to more customers in the process. Instead, it refused to implement best practices because it was afraid of losing market share at an even faster rate.

Reffred: extremetech.com

Friday 30 September 2016

National Voluntary Blood Donation Day: 1st October


“The Blood You Donate Gives Someone Another Chance At Life. One Day That Someone May Be A Close Relative, A Friend, A Loved One—Or Even You.”


About National Voluntary Blood Donation Day

National Voluntary Blood Donation Day is getting celebrated in India at 1st of October every year to share the need and importance of the blood in the life of an individual. It was first started celebrating on 1st of October in the year 1975 through the Indian Society of Blood Transfusion and Immunohaematology. Indian Society of Blood Transfusion and Immunohaematology was first established at 22nd of October in the year 1971 under the leadership of Mrs. K. Swaroop Krishen and Dr. J.G. Jolly.


National Voluntary Blood Donation Day 2016

National Voluntary Blood Donation Day 2016 would be celebrated at Saturday, on 1st of October.
Objectives



  • To make aware the people all over the country about the importance of the voluntary blood donation.
  • To successfully achieve the target of Voluntary Blood Donation to fulfill the urgent need of the needy patients.
  • To store the blood in stock in blood banks for any urgent and serious requirement.
  • To promote and emphasize the self esteem of blood donors through a lot of thanks.
  • To motivate and encourage people who are not interested in donating blood even being a healthy person.
  • To stimulate people to donate blood voluntarily who are interested in donating blood only to their relatives or friends.




Transfusing or donating blood or its components to the needy person has become very important part of the humanity in the modern health care system. It does not matter who is the blood donor or blood receiver, a donor can be a receiver in the future as well as a receiver can be a healthy donor in the nearest future. So donating blood without any expectation is the great humanity and vital part in the life saving process. Do not donate blood only to your relatives or friends, donate blood to voluntarily for any human being is the real humankind as it can save many lives.
In order to prevent the blood transmitting diseases through the blood transfusion, it becomes very mandatory to carefully investigate (through the advanced testing techniques like nucleic acid testing) the every unit of collected blood to prevent the life threatening diseases such as the AIDS, syphilis, Hepatitis-B, Hepatitis-C, malaria and many more. Blood donation should be encouraged by the voluntary blood donors only as their blood is safe instead of professional or paid blood donors. Voluntary blood donors never tells a lie and become agree for advance testing of their blood as they really want to save the precious life of someone.
To make aware the people towards the blood donation, a variety of events, awareness programmes, camps and supplementary promotional activities are organized in all states at the National Voluntary Blood Donation Day. There are various criteria for the blood donors according to the Drugs and Cosmetics Act 1940. The age of blood donors should be between 18 – 60 years, weight 45 kg or above, pulse rate range 60 to 100/ minute, BP normal, Hb 12.5gm/100ml and body temperature should not exceeds 37.5 degree centigrade.


Importance of National Voluntary Blood Donation Day

Blood is vital component of the human life as it provides the crucial nourishment to the body tissues and organs. National Voluntary Blood Donation Day is celebrated to bring the great changes in the society in order to follow the life-saving measures and prevent the serious illness caused by the violence and injury, child birth related complications, road traffic accidents and many more conditions.
Safe blood donation saves many lives of all ages and from all walks of life every year. The states like Tripura, Tamil Nadu, West Bengal and Maharashtra are considered as the national level voluntary blood donors. Tripura, a North Eastern State of the country, is considered as the highest level of voluntary blood donor (93%) in India whereas Manipur is considered as lowest in the country.
It is necessary to celebrate this day at a great level to remove the ignorance, fear and misconceptions of the general public towards the voluntary blood donation campaign. Voluntary organizations of the country are paying their valuable time and using their resources in order to encourage the students/youths, colleges, institutions, clubs/NGOs and etc.

What Are Some Tips For Making Marketing Ads?

  Did you know that people who are interested in ads are 50% more likely to buy a product than organic visitors? If you are willing to creat...