Malwarebytes Privacy World

Taken from https://blog.malwarebytes.com/category/security-world/privacy-security-world/feed/

11th February 2015

Bots Versus Cops, the Twitter Edition

Roll your own Twitter bots are becoming increasingly popular, especially ones which look at the Tweets of their creator’s main feed, jumble the words up and spew forth stream of consciousness style missives. You may want to reconsider, however, because things seem to have gone a bit wrong in the land of Bots today: wow so one of my bots sent out a death threat? I’m very sorry this happened. — ωϗϹΔ∫Σ (@Wxcafe) February 11, 2015 The person above apparently coded a Bot and gave it to another Twitter user to fire out pearls of wisdom, and everything was fine until his Bot said something…peculiar (to another Bot! Did I mention Bots talk to Bots yet?) Police saw the offending Tweet, and then this happened: The randomly-generated words made one. And so they come to me. — call of jeffthulhu (@jvdgoot) February 11, 2015 I’m going to delete my bot for now, because that’s what they want. — call of jeffthulhu (@jvdgoot) February 11, 2015 Which I think is an interesting legal angle. — call..
12th January 2015

Popular Game Rental Site Issues Statement on Alleged “Fraudulent Payment Attempts”

It’s come to light that Boomerangrentals(dot)co(dot)uk [traffic stats], is investigating claims from customers that they’ve had fraudulent payment attempts on cards registered to them. Up to now, Boomerang had made the following comments on the unfolding situation on Reddit: [1], [2]. The Boomerang website has since been taken offline (“Our website is currently down for maintenance work, please accept our apologies for any inconvenience caused”), and they just issued a statement in relation to events of the last day or two. It reads as follows: Following an initial enquiry at the end of last week, we have had a number of customers raise concerns regarding fraudulent payment attempts on their card details that are also registered with us. We are fully investigating this issue and have temporarily removed access to our website while this continues. We have contacted our Payment Provider Sagepay and our Merchant Bank World Pay and neither have any reported concerns relating to us. How..
2nd December 2014

SSLPersonas, making the padlock obvious.

This blog post will showcase a Firefox Add-on that illustrates the SSL status of a web page in a more visually striking manner than the traditional method. A web server that uses an SSL (Secure Socket Layer) certificate will show a little padlock in the URL field on the browser visiting web pages. This padlock is the visual cue that the browser provides its users, to indicate that the website visited has an SSL certificate. This SSL certificate is used to confirm that you are visiting the actual website, and not an impostor. SSL certificates also help you avoid becoming a victim of a “Man-in-the-middle” attack. Clicking on the padlock also provides the user with additional information about the site. This information comes from a trusted 3rd party called a CA (Certificate Authority) Cindy Cohn and Trevor Timm of the EFF explain how vitally important this kind of encryption is: “Every casual Internet user, whether they know it or not, uses encryption daily. It’s the “s” in https and..
10th November 2014

BrowserStack: “We did get hacked.”

BrowserStack, the cross-browser testing tool website, has not had a very good weekend. There was a compromise and a rather odd email was sent to customers. The email made a number of worrying claims regarding security, and – just to add that little extra dash of panic – was titled “BrowserStack is shutting down”: Just got this email. Someone at @browserstack is having a very bad day (and prob looking for a new job) pic.twitter.com/uL7o3WS6jy — Tom Johns (@johnsee) November 10, 2014 Things you don’t want to be Tweeting on a Monday morning: The hacker’s access was restricted solely to a list of email addresses. We’ll be back up in a few hours. Sincere apologies. — BrowserStack (@browserstack) November 10, 2014 Ouch. BrowserStack are currently investigating what happened, and we’ll have to play a waiting game to see if anything else was impacted outside of email addresses. Christopher Boyd The post BrowserStack: “We did get hacked.” appeared first on Malwarebytes Labs.