<?xml version="1.0" encoding="utf-8"?>
<rss version="0.92">
<channel>
<title>SecuObs.com</title>
<link>http://www.secuobs.com</link>
<description>Observatoire de la securite Internet</description>
<language>fr</language>
<webMaster>webmaster@secuobs.com</webMaster>
 <item><title>Dogspectus ransomware targets Android devices in the quest for Apple iTunes gift cards</title><description>2016-04-26 00:50:02 - Security Bloggers Network : Leaked exploits which once belonging to Hacking Team have been discovered in exploit kits which deliver malware to Android users </description><link>http://www.secuobs.com/revue/news/604671.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604671.shtml</guid></item>
<item><title>Apple contre FBI sur le chiffrement des données   décryptage</title><description>2016-04-25 15:45:21 - Global Security Mag Online : La bataille fait rage aux USA entre Apple et le FBI sur le chiffrement des données et la possibilité pour l'administration d'avoir accès à celles-ci via des back-door Pourtant celle-ci ne se résume pas à une opposition entre la protection de la confidentialité des données privées et la lutte contre les activités illicites même si un débat sociétal sérieux sur le sujet est assurément nécessaire Nous assistons en fait à un jeu de poker où les acteurs cachent largement leur jeu et ont des stratégies toutes    - Points de Vue </description><link>http://www.secuobs.com/revue/news/604621.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604621.shtml</guid></item>
<item><title>SMS phishing attackers continue to pursue Apple users</title><description>2016-04-24 16:48:05 - Security Bloggers Network : You would be wrong to think that this is just an attempt by the criminals to steal your Apple ID password - bad as that would be It's much worse than that Read more in my article on the We Live Security blog </description><link>http://www.secuobs.com/revue/news/604509.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604509.shtml</guid></item>
<item><title>Apple Should Pay More Tax, Says Co-Founder Wozniak</title><description>2016-04-23 00:11:25 - Slashdot  Your Rights Online : mrspoonsi quotes a report from BCC  All companies, including Apple, should pay a 50pourcents tax rate, Apple co-founder Steve Wozniak has told the BBC He said he doesn't like the idea that Apple does not pay tax at the same rate he does personally  I don't like the idea that Apple might be unfair -- not paying taxes the way I do as a person I do a lot of work, I do a lot of travel and I pay over 50pourcents of anything I make in taxes and I believe that's part of life and you should do it  When asked if Apple should pay that amount, he replied   Every company in the world should  He said he was never interested in money, unlike his former partner Steve Jobs  Steve Jobs started Apple Computers for money, that was his big thing and that was extremely important and critical and good  Three years ago the company admitted two of its Irish subsidiaries pay a rate of 2pourcents It has built up offshore cash reserves of around  200 billion -- beyond the reach of US tax officials In a CBS '60 Minutes' episode, Apple CEO Steve Cook dismissed as  total political crap  the notion that the tech giant was avoiding taxes And on a semi-related note, presidential candidate Donald Trump said in January he'd like to make Apple  start building their damn computers and things in this country instead of other countries  He said he would impose a 35pourcents business tax on American business manufacturing outside of the US if elected president  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/604471.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604471.shtml</guid></item>
<item><title>How to protect your Apple ID account against hackers</title><description>2016-04-22 15:07:40 - Security Bloggers Network : Have you enabled two-step verification on your Apple ID account  You should  David Bisson explains how </description><link>http://www.secuobs.com/revue/news/604439.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604439.shtml</guid></item>
<item><title>Apple Will Not Patch Windows QuickTime Vulnerabilities</title><description>2016-04-20 17:23:39 - Darknet   The Darkside : </description><link>http://www.secuobs.com/revue/news/604249.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604249.shtml</guid></item>
<item><title>Apple refused China access to source code, says chief lawyer</title><description>2016-04-19 21:45:11 - Security Bloggers Network : The iPhone maker was asked in the last two years, but declined </description><link>http://www.secuobs.com/revue/news/604161.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604161.shtml</guid></item>
<item><title>US-CERT to Windows Users  Dump Apple Quicktime</title><description>2016-04-18 14:08:09 - Krebs on Security : Microsoft Windows users who still have Apple Quicktime installed should ditch the program now that Apple has stopped shipping security updates for the platform, warns the Department of Homeland Security's US Computer Emergency Readiness Team  US-CERT  The advice came just as researchers are reporting two new critical security holes in Quicktime that likely won't be patched </description><link>http://www.secuobs.com/revue/news/604017.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/604017.shtml</guid></item>
<item><title>Apple's iTunes Movies and iBooks Stores Mysteriously Go Down In China</title><description>2016-04-16 00:41:21 - Slashdot  Your Rights Online : tedlistens writes  China-based customers of the iTunes movies and books stores reported network errors beginning on Thursday Apple did not comment, but Apple Insider offers an unverified report that the storefronts have been closed  due to a pending government investigation into Apple's business practices  Apple first opened its doors to its movie and e-book online stores in China last September, which included the activation of Apple Music services While the music streaming services remain operational, the movie and e-book stores are not China's censorship laws and strict regulations in general have been tough for US companies like Apple to navigate Last year, Apple was actively disabling its iOS News app for its Chinese customers, a move many believe to be in adherence of China's censorship policies Eddy Cue, SVP of Internet Software and Services, denied those claims  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/603914.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603914.shtml</guid></item>
<item><title>Gemalto déploie un applet à élément sécurisé pour les objets connectés wearables</title><description>2016-04-15 16:46:35 - Global Security Mag Online : Gemalto a fourni un applet à élément sécurisé pour les objets connectés wearables   à porter   intelligents lancés par China UnionPay Co  CUP , l'une des principales associations de paiement dans le monde dont le montant total des opérations a atteint 1 900 milliards d'USD au premier trimestre de 2015 CUP a lancé des objets connectés wearables intelligents munis d'applications de paiement à éléments sécurisés intégrés l'année dernière L'applet de paiement fonctionne sur l'élément sécurisé pour assurer    - Marchés </description><link>http://www.secuobs.com/revue/news/603874.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603874.shtml</guid></item>
<item><title>Apple stops patching QuickTime for Windows despite 2 active vulnerabilities</title><description>2016-04-15 16:18:15 - Risk Assessment   Ars Technica : Security firm urges Windows users to uninstall media player </description><link>http://www.secuobs.com/revue/news/603817.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603817.shtml</guid></item>
<item><title>3 Best VPN s For Apple Mac Computers</title><description>2016-04-15 16:16:19 - Secure Thoughts :    Last Updated  April 12, 2016   Our method still the best way to secure your Mac  Summary  Although the humble Apple Mac is known to be more secure than their windows counterparts, you should still take steps to secure your presence and privacy The best way to do this is with a The post 3 Best VPN s For Apple Mac Computers appeared first on Secure Thoughts </description><link>http://www.secuobs.com/revue/news/603807.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603807.shtml</guid></item>
<item><title>FBI Couldn't Tell Apple What Hack It Used, Even If It Wanted To</title><description>2016-04-14 17:10:19 - Slashdot  Your Rights Online : An anonymous reader writes  The US Federal Bureau of Investigation doesn't own the technique used to unlock the San Bernardino iPhone, so it can't reveal the method to Apple even if it wanted to, Reuters reported, citing unnamed White House sources The Washington Post reported yesterday, citing unnamed sources, that the FBI had paid a hacker a one-time fee to use a piece of hardware that allowed it to access the iPhone 5c belonging to one of the San Bernardino, California assailants The vendor that supplied the hack is a non-US company, according to Reuters But according to the Post report, it is not the Israeli firm Cellebrite, which had previously been named The FBI would require the vendor's cooperation in order to submit the technique it used to Vulnerabilities Equities Process, a mechanism that allows the government to consider whether it should disclose security flaws to manufacturers It's a move that mirrors Apple's own efforts to create security systems on its phones that even it wouldn't be able to crack, meaning it can't comply with a government order to hand over user data even if it wanted to  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/603786.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603786.shtml</guid></item>
<item><title>New Threat Can Auto-Brick Apple Devices</title><description>2016-04-12 17:15:48 - Krebs on Security : If you use an Apple iPhone, iPad or other iDevice, now would be an excellent time to ensure that the machine is running the latest version of Apple's mobile operating system --- version 931 Failing to do so could expose your devices to automated threats capable of rendering them unresponsive and perhaps forever useless </description><link>http://www.secuobs.com/revue/news/603534.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603534.shtml</guid></item>
<item><title>Apple Patent Filing Points To a Keyboard With No Keys</title><description>2016-04-12 00:33:39 - Slashdot  Your Rights Online : An anonymous reader quotes a report from Digital Trends  Apple's patent, titled  Configurable Force-Sensitive Input Structure for Electronic Devices,  was filed in September 2015 and was recently made available to the public on April 7th It states that this all-in-one input interface consists of a metal contact layer, and a sense layer combined with a drive layer mounted underneath According to the patent, the sense and drive layers detect a force exerted on the metal contact layer This is accomplished by using an array of pixels on the sense and drive layers that determine an input location when active pixels are aligned on both layers The user then gets a response to his or her action thanks to a haptic feedback module and a light guide layer that lights up the  keys  through extremely tiny holes in the metal surface The components of the force-input sensitive  structure  are enclosed within the device's chassis  thus the only exposed portion is the contact surface itself In a provided drawing, the illustrated notebook shows four distinct input areas on the surface However, the patent states that the device can have any number of input areas defined on the contact portion  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/603476.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603476.shtml</guid></item>
<item><title>Watch out  There are Apple ID SMS phishers about </title><description>2016-04-11 18:42:07 - Security Bloggers Network : It's not just your bank accounts that online criminals are keen to break into They would quite like to hijack your Apple ID credentials too </description><link>http://www.secuobs.com/revue/news/603455.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603455.shtml</guid></item>
<item><title>Apple Aftermath  Senate Entertains A New Encryption Bill</title><description>2016-04-11 13:34:53 - Hackaday :    If you recall, there was a recent standoff between Apple and the U S Government regarding unlocking an iPhone Senators Richard Burr and Dianne Feinstein have a  discussion draft  of a bill that appears to require companies to allow the government to court order decryption Here at Hackaday, we aren t lawyers, so maybe we aren t the best source of legislative commentary However, on the face of it, this seems a bit overreaching The first part of the proposed bill is simple enough  any  covered entity  that receives a court order for information must provide it in intelligible form or provide  read more </description><link>http://www.secuobs.com/revue/news/603405.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603405.shtml</guid></item>
<item><title>Security Slice  The Apple Encryption Debate</title><description>2016-04-11 08:01:37 - Security Bloggers Network :    After weeks of controversy, the FBI announced it successfully cracked the iPhone of the San Bernardino shooter The FBI s method did not require Apple s assistance, but the discussion surrounding encryption and law enforcement is far from over This special security slice podcast was recorded several days before the FBI dropped its legal case against Apple   Read More The post Security Slice  The Apple Encryption Debate appeared first on The State of Security  IMAGE  </description><link>http://www.secuobs.com/revue/news/603375.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603375.shtml</guid></item>
<item><title>Apple Won't Sue FBI To Reveal Hack Used To Unlock Seized iPhone</title><description>2016-04-09 02:48:57 - Slashdot  Your Rights Online : An anonymous reader quotes a report from ZDNet  Apple will not pursue legal action against the US government to discover how federal agents broke into an iPhone used by one of the San Bernardino shooters Attorneys for Apple speaking on background during a media briefing call on Friday said that it believed the method used to unlock the iPhone 5c would be short lived It follows similar comments by FBI director James Comey who said in a speech on Thursday that the hack used to unlock the encrypted phone works on a  narrow slice  of devices Apple attorneys said that the company is  confident  that the security weakness that the government alleges to have found will have a  short shelf life  The FBI's hack in the San Bernardino case would not help agents access a newer iPhone 5s used by a drug dealer in New York, where Apple faces a similar case against the government  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/603314.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603314.shtml</guid></item>
<item><title>Apple's Fight With US Over Privacy Enters a New Round</title><description>2016-04-08 21:50:44 - Slashdot  Your Rights Online : An anonymous reader shares a report on Bloomberg  Apple Inc's fight over privacy with the US isn't over yet, even after the government dropped a demand for the company's help in accessing a California shooter's iPhone because someone else found a way to crack it The US said it'll keep fighting to get the company's help in getting data off a phone in Brooklyn, New York, that belonged to a drug dealer because Apple provided assistance in accessing such devices earlier In a court filing Friday, the government said it's going ahead with an appeal of a judge's order denying its request for Apple's help The battle between the world's most valuable tech company and the US over encryption and data privacy has sparked a national debate, with dozens of companies and organizations siding with Apple, while law enforcement has generally taken the government's side  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/603301.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603301.shtml</guid></item>
<item><title>US still wants Apple s help to unlock iPhone in Brooklyn case</title><description>2016-04-08 21:04:58 - Security Bloggers Network : The government's case comes in spite of successfully breaking into an iPhone used by one of the San Bernardino shooters </description><link>http://www.secuobs.com/revue/news/603294.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603294.shtml</guid></item>
<item><title>Apple won t sue FBI to reveal hack used to unlock seized iPhone</title><description>2016-04-08 21:04:58 - Security Bloggers Network : Apple attorneys said that they believe the hack used will be  short lived  </description><link>http://www.secuobs.com/revue/news/603290.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603290.shtml</guid></item>
<item><title>Apple Phone Case Exposes Stubborn Skills Gap</title><description>2016-04-08 17:27:45 - Security Bloggers Network : Like many of us in the cybersecurity industry, I paid close attention to the recent fight between the FBI and Apple over an encrypted phone When the case ended abruptly with the FBI s announcement that the phone had been accessed without the help of Apple   but instead with the assistance of a p </description><link>http://www.secuobs.com/revue/news/603274.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603274.shtml</guid></item>
<item><title>WhatsApp copies Apple's strong encryption defense</title><description>2016-04-08 16:33:30 - LinuxSecurity.com   Latest News : LinuxSecuritycom  The decision by WhatsApp founders Brian Acton and Jan Koum to encrypt direct messages, group messages and voice calls drew a lot of attention to the Facebook subsidiary-given the recent dispute between the FBI and Apple </description><link>http://www.secuobs.com/revue/news/603268.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603268.shtml</guid></item>
<item><title>Central Ohio Infosec Summit 2016 - Apple v DOJ  Privacy in Today's Enterprise</title><description>2016-04-08 14:11:43 - SecurityTube.Net : Bio  More than 20 years of information security experience and technical knowledge has established Justin Harvey as a trusted cyber threat security advisor to executives and government leaders at some of the world s largest commercial and government organizations His work with major global entities has taken him across Asia to lead large-scale incident response efforts in the wake of targeted attacks, to the Middle East to advise enterprises and ministries of defense on threat intelligence and persistent threats, and to Australia to direct security operations For More Information Please Visit - http wwwcentralohioissaorg http wwwirongeekcom iphp page videos centralohioinfosec2016 mainlist </description><link>http://www.secuobs.com/revue/news/603227.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603227.shtml</guid></item>
<item><title>Vulnerability Deep Dive  Exploiting the Apple Graphics Driver and Bypassing KASLR</title><description>2016-04-07 22:59:06 - Security Bloggers Network :    Cisco Talos vulnerability researcher Piotr Bania recently discovered a vulnerability in the Apple Intel HD 3000 Graphics driver, which we blogged about here In this post we are going to take a deeper dive into this research and look into the details of the vulnerability as well as the KASLR bypass and kernel exploitation that could lead to arbitrary local code execution These techniques could be leveraged by malware authors to bypass software sandbox technologies, which can simply be within the software program  browser or application sandbox  or at the kernel level In the course of conducting our research, Talos found that Apple OSX computers with Intel HD Graphics 3000 GPU units possess a null pointer dereference vulnerability  in version 1000  as presented below   IMAGE  Typically sending a very basic payload to the graphics driver through IOConnectCallMethod function causes a kernel panic due to null pointer reference at address 0x1aa2f In this case the RDX register points to NULL The instruction itself tries to read data from unavailable memory which causes the kernel to panic At this point this vulnerability seems to be local a denial-of-service attack, however the call instruction at 0x1aa68 looks very promising If we can reach this instruction, that would allow us the ability to escalate this from a local denial-of-service to local code execution So, how can we get there  In order to escalate from denial-of-service to local code execution, we first need to check and see whether we can map our data at a NULL page, basically a memory region starting from NULL address NULL page mapping is unavailable on newest Microsoft Windows systems but it is still available on OS X systems however a few conditions needs to be met To map a null page on OSX    The binary needs to be 32-bit   Then compile with -m32 -Wl,-pagezero_size,0 -O3 With those conditions met we can now map our data at the NULL page  basically a memory region starting from null address  If the comparison at address 0x1aa54 can be forced to skip the JA jump located at 0x1aa57 we would finally arrive at the 0x1aa68 CALL instruction Since we control the RDI value  see 0x1aa2f  we also control the EAX value at 0x1aa36 This control over EAX, part of RAX, allows us to fool the comparison condition at 0x11a54 So now we are at address 0x1aa60 which basically allows us to call any pointer written at 0x980, a memory which we control With those controls in place, what s our next step  On Intel CPUs released after 2013, these conditions still would not be exploitable because of a feature called SMEP  Supervisor Mode Execution Prevention  SMEP prevents the execution of code located on a user- mode page at a CPL   0, meaning that a direct call to our shellcode written to the NULL page would result in kernel panic and failed code execution However this feature was not present in the Apple units we researched Stage 1 - Get the Kernel Address -------------------------------- SMEP  Supervisor Mode Execution Protection  and KASLR  Kernel Address Space Layout Randomization  have been widely adopted in newer OS and CPU implementations, specifically Windows 8 going forward and Yosemite in OSX With a SMEP KASLR implementations in place this step would require an additional vulnerability to leak the kernel memory address Since SMEP isn t a problem in our tested version of OSX, we will go  old school  Long ago, way back in the dark ages of 2005 there was a technique used to obtain the kernel address on Windows   it was called the SYSENTER_EIP_MSR Scandown technique  2  With a few modifications, keeping in mind that we are on 64-bit OS X system, the same idea can be applied In this example we are reading data from the LSTAR  Long System Target-Address Register  MSR register which contains the kernel's RIP SYSCALL entry for 64 bit software, as well as scanning backwards to find the kernel OSX signature  IMAGE  So after we turn this into stage0 payload and send it to the graphics driver we should get a kernel address written to the first 8-bytes of our NULL page  IMAGE  Success  Getting the kernel base address was essential for calculating the API addresses that will be used later in STAGE 2 shellcode Those APIs are essential for escalating the privileges of attacker Now that we have the leaked kernel address calculating the essential API addresses  current_proc, _proc_ucred, _posix_cred_get  is an easy task There are variety of free MACH-O parsers available out there  3  so we will skip ahead to stage 2 Stage 2 - Execute the Shellcode ------------------------------- Assuming all the needed API addresses are resolved at this point it is now time to force the kernel to execute the final stage of the shellcode This final stage will give our process root privileges and execute a shell This shellcode executes the necessary OSX kernel APIs in order to escalate the privileges  IMAGE  And the final output - now with root access   IMAGE  Conclusion Here we ve seen the escalation of a denial-of-service vulnerability into local code execution Mapping the kernel address we were able to walk backwards to the base address and calculate the offset to the needed functions, bypass the KASLR and get root Understanding the techniques to bypass the KASLR and elevate our exploitation is integral in learning how to best mitigate these types of attacks Cisco Talos  research, discovery, and responsible disclosure of software vulnerabilities help secure the platforms and software that our customers depend on as well as the entire online community by identifying security issues that otherwise could be exploited by threat actors Uncovering new 0-day vulnerabilities not only helps improve the overall security of the software that our customers use, but it also enables us to directly improve the procedures in our own security development lifecycle, which improves the security of all of the products that Cisco produces Proof-of-Concept The complete proof-of-concept exploit illustrated here is available at the Cisco Talos Vulnerability Development team s code repository  https githubcom talos-vulndev advisories tree master TALOS-2016-0088  References    1  - https wwwblackhatcom docs eu-15 materials eu-15-Todesco-Attacking-The-XNU-Kernal-In-El-Capitainpdf  2  - http wwwuninformedorg v 3 a 4 t txt  3  - https githubcom kpwn tpwn blob master lsymm IMAGE   IMAGE   IMAGE  </description><link>http://www.secuobs.com/revue/news/603158.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603158.shtml</guid></item>
<item><title>Panic over  Apple fixes iPhone 6S lockscreen bug</title><description>2016-04-07 12:17:51 - Security Bloggers Network : Apple just fixed yet another lockscreen bug caused by Siri and you didn't even need to download an update </description><link>http://www.secuobs.com/revue/news/603085.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603085.shtml</guid></item>
<item><title>Apple fixes iPhone passcode bypass flaw server-side, without having to push out an update</title><description>2016-04-07 12:17:51 - Security Bloggers Network : Apple was able to fix a privacy flaw without having to push any new software out to the millions of iPhones potentially at risk The post Apple fixes iPhone passcode bypass flaw server-side, without having to push out an update appeared first on The St </description><link>http://www.secuobs.com/revue/news/603077.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/603077.shtml</guid></item>
<item><title>Apple goes server-side to fix Siri lock screen bypass security flaw</title><description>2016-04-06 13:58:13 - Security Bloggers Network : The bug allowed attackers to bypass the lock screen to access a user's media, contacts and settings </description><link>http://www.secuobs.com/revue/news/602997.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602997.shtml</guid></item>
<item><title>What Apple May be Able to Learn From a Guitar Amplifier Manufacturer</title><description>2016-04-06 07:26:30 - Security Bloggers Network :    By now, unless you have been living in a cave with no electricity, you are aware that the FBI successfully unlocked the infamous San Bernadino iPhone While there is plenty of speculation about the company that assisted in the unlocking of the device, the FBI made it clear very early in the process that encryption   Read More The post What Apple May be Able to Learn From a Guitar Amplifier Manufacturer appeared first on The State of Security  IMAGE  </description><link>http://www.secuobs.com/revue/news/602964.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602964.shtml</guid></item>
<item><title>Apple Introduces Their Answer To The Raspberry Pi</title><description>2016-04-01 13:08:47 - Hackaday :    Today, Apple has announced their latest bit of hardware Following in the tradition of the Raspberry Pi, BeagleBone, and the Intel Edison, Apple have released a single board computer meant for embedded and Internet of Things applications It s called the Apple Device, and is sure to be a game changer in the field of low-power, Internet-enabled computing First off, some specs The Apple Device uses Apple s own A8 chip, the same dual-core 64-bit CPU found in the iPhone 6 This CPU is clocked at 11 GHz, and comes equipped with 1GB of LPDDR3 RAM and 4GB of eMMC Flash I O  read more </description><link>http://www.secuobs.com/revue/news/602634.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602634.shtml</guid></item>
<item><title>Apple Two-Factor Authentication vs Two-Step Verification</title><description>2016-04-01 11:57:49 - Advanced Password Cracking   Insight : Two-step verification and two-factor authentication both aim to help users secure their Apple ID, adding a secondary authentication factor to strengthen security While Apple ID and password are  something you know , two-step verification  and two-factor authentication  are both based on  something you have  However, Apple doesn t make it easy Instead of using a single two-factor   </description><link>http://www.secuobs.com/revue/news/602632.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602632.shtml</guid></item>
<item><title>Crypto  pourquoi l ex-chef de la NSA défend Apple</title><description>2016-03-31 19:52:22 - BUG BROTHER : Le fait que le FBI ait pu débloquer l'iPhone du tueur de San Bernardino ne signe pas, loin de là, la fin de la saga opposant le FBI à Apple  et autres acteurs de la Silicon Valley en particulier, et   Continuer la lecture   </description><link>http://www.secuobs.com/revue/news/602583.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602583.shtml</guid></item>
<item><title>Feds Used 1789 Law To Force Apple, Google To Unlock Phones 63 Times</title><description>2016-03-31 02:33:35 - Slashdot  Your Rights Online : An anonymous reader writes  The FBI has been citing a 1789 law, the All Writs Act, to compel Apple to assist the authorities in unlocking the iPhone 5c belonging to San Bernardino killer, Syed Farook The law allows for judges to issue orders for people or companies to do something despite Congress not passing laws to cover specific instances According to the Civil Liberties Union, the US government has cited the All Writs Act in 63 cases since 2008 to compel Apple or Google to assist in accessing data stored on an iPhone or Android device Most of the orders involved Apple  To the extent we know about the underlying facts, these cases predominantly arise out of investigations into drug crimes,  said Eliza Sweren-Becker, an ACLU attorney  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/602488.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602488.shtml</guid></item>
<item><title>Slashdot Asks  Should FBI Reveal to Apple How to Unlock Terrorist's iPhone </title><description>2016-03-31 01:19:56 - Slashdot  Your Rights Online : After reports that the FBI managed to unlock an iPhone 5c belonging to one of the San Bernardino shooters without the help of Apple, Apple is now the one that needs the FBI's assistance  The responsible thing for the government to do is privately disclose the vulnerability to Apple so they can continue hardening security on their devices,  said Justin Olsson, product counsel at security software maker AVG Technologies However, many experts in the field believe that the government isn't legally obligated to provide the information to Apple As mentioned in Los Angeles Times, this creates a new ethical dilemma  Should tech companies be made aware of flaws in their products, or should law enforcement be able to deploy those bugs as crime-fighting tools   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/602484.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602484.shtml</guid></item>
<item><title>ACLU Shows How the Apple-FBI Fight Was About Much More Than One Phone</title><description>2016-03-30 21:42:58 - Slashdot  Your Rights Online : Russell Brandom reports for The Verge  Apple's San Bernardino fight may be over, but the government is still seeking both Apple and Google's help in unlocking phones New research from the American Civil Liberties Union shows 63 different cases in which the government compelled help from Apple or Google in unlocking a handset It's unclear how many of the orders were filled, although companies often complied with such orders where possible before last year The bulk of the cases target Apple, but nine of the orders also look to compel Google's help, typically to reset the password on a given device The devices include phones from Alcatel, Kyocera, and Samsung, many of which shipped without the default device encryption that blocked the use of traditional forensic tools in the San Bernardino case  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/602468.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602468.shtml</guid></item>
<item><title>FBI vs Apple  A Postmortem</title><description>2016-03-30 16:29:07 - Hackaday :    By now you ve doubtless heard that the FBI has broken the encryption on Syed Farook   the suicide terrorist who killed fourteen and then himself in San Bernardino Consequently, they won t be requiring Apple s  compelled  services any more A number of people have written in and asked what we knew about the hack, and the frank answer is  not a heck of a lot  And it s not just us, because the FBI has classified the technique What we do know is that they paid Cellebrite, an Israeli security firm, at least  218,00485 to get the job done for them Why  read more </description><link>http://www.secuobs.com/revue/news/602435.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602435.shtml</guid></item>
<item><title>Why the FBI Apple hack is a good thing for security</title><description>2016-03-29 23:17:58 - Security Bloggers Network :    The FBI's hack of Syed Farook s iPhone appears to be a lot of work This makes the security implications much less disturbing The post Why the FBI Apple hack is a good thing for security appeared first on The Privacy Blog </description><link>http://www.secuobs.com/revue/news/602360.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602360.shtml</guid></item>
<item><title>FBI unlocks seized iPhone without Apple's help, ends legal case</title><description>2016-03-29 14:51:08 - LinuxSecurity.com   Latest News : LinuxSecuritycom  Case closed -- at least for now The Justice Dept confirmed Monday that it has dropped a legal case against Apple, demanding that the company help federal agents unlock an iPhone used by one of the San Bernardino shooters </description><link>http://www.secuobs.com/revue/news/602305.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602305.shtml</guid></item>
<item><title>FBI Unlocks iPhone Without Apple's Help In San Bernadino Case</title><description>2016-03-29 01:11:01 - Slashdot  Your Rights Online : New submitter A_Mang writes  After asking for a delay last week, today the FBI revealed that a third party has succeeded in unlocking the iPhone used by a shooter in the San Bernadino attack They've asked the court to vacate their request for an injunction forcing Apple to provide tools for unlocking the phone  The government has now successfully accessed the data stored on Farook's iPhone and therefore no longer requires the assistance from Apple Inc mandated by Court's Order,  the filing reads The report doesn't elaborate on how they've gained access, nor does it reveal any of the information stored on the phone What we do know is that last week the FBI contracted Israeli software provider, Cellebrite, to help break into the phone  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/602230.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602230.shtml</guid></item>
<item><title>And now Apple is going to stop the FBI getting into iCloud data too</title><description>2016-03-25 06:04:06 - Security Bloggers Network : Apple announces plans to hand over iCloud encryption key management to users David Bisson reports </description><link>http://www.secuobs.com/revue/news/602031.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602031.shtml</guid></item>
<item><title>FBI vs Apple  Who Is Helping the FBI </title><description>2016-03-24 21:09:44 - Security Bloggers Network : On Monday, the FBI asked the court for a two-week delay in a scheduled hearing on the San Bernardino iPhone case, because some  third party  approached it with a way into the phone It wanted time to test this access method Who approached the FBI  We </description><link>http://www.secuobs.com/revue/news/602004.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/602004.shtml</guid></item>
<item><title>Apple zero-day vulnerability fully compromises your devices</title><description>2016-03-24 11:19:17 - Security Bloggers Network : The severe and previously unknown flaw circumvents Apple's stringent security features to compromise devices </description><link>http://www.secuobs.com/revue/news/601932.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601932.shtml</guid></item>
<item><title>Apple Worries Spy Technology Has Been Secretly Added To Computer Servers It Buys</title><description>2016-03-24 01:16:12 - Slashdot  Your Rights Online : An anonymous reader writes  According to Business Insider,  Apple  worries that some of the equipment and cloud services it buys has been compromised by vendors who have agreed to put  back door  technology for government spying, according to a report from The Information's Amir Efrati and Steve Nellis  With many of its cloud-based services like iTunes, the App Store, and iCloud requiring enormous data center to operate, Apple hasn't been able to build all the data centers it needs, and has instead been using services from its rivals, namely Amazon Web Services and Microsoft Google recently landed Apple as a customer for the Google Cloud Platform  Meanwhile,  Apple  has embarked on yet another attempt to build more of its own data centers to handle all of that, called Project McQueen, reports Jordan Novet at VentureBeat, and the project is having a rough go of it, reports The Information  Apple suspects that backdoors have been added to many of the servers it has been ordering from others  At one point, the company even had people taking photographs of the motherboards in the computer servers it was using, then mark down exactly what each chip was, to make sure everything was fully understood   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601895.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601895.shtml</guid></item>
<item><title>FBI Backed Off Apple In iPhone Cracking Case</title><description>2016-03-23 17:34:59 - Darknet   The Darkside : </description><link>http://www.secuobs.com/revue/news/601872.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601872.shtml</guid></item>
<item><title>Vulnerability Spotlight  Apple OS X Graphics Kernel Driver Local Privilege Escalation Vulnerability</title><description>2016-03-23 14:11:17 - Security Bloggers Network : Vulnerability discovered by Piotr Bania of Cisco Talos Cisco Talos, in conjunction with Apple s security advisory issued on Mar 22, is disclosing the discovery of a local vulnerability in the communication functionality of the Apple Intel HD3000 Graphics kernel driver This vulnerability was initially discovered by the Talos Vulnerability Research   Development Team and reported in accordance with responsible disclosure policies to Apple There is a local privilege escalation vulnerability in the Apple Intel HD3000 Graphics kernel driver  TALOS-2016-0088 CVE-2016-1743  which Talos has identified on OS X 1011 Exploitation of this vulnerability requires user interaction, such as executing a malicious executable received via email or downloaded and run on the user's Mac With OS X becoming more common in the workplace this can be especially impactful as the common user accounts often do not have root-level permissions Advisory Summary ---------------- This vulnerability can be triggered by sending specially crafted IOConnectCallMethod request to the Apple Intel HD3000 Graphics driver, the faulting code is in the IOGen575Shared new_texture function  IMAGE  Successful exploitation can result in an escalated privilege for the attacker, who can then use root-level access for further malicious activity For full details please read the advisory here Cisco Talos  research and discovery of programmatic ways to find 0-days helps secure the platforms and software that our customers depend on The disclosure of this and other vulnerabilities helps the entire online community by identifying security issues that otherwise could be exploited by threat actors Uncovering new 0-days not only helps improve the overall security of the software that our customers use, but it also enables us to directly improve the procedures in our own security development lifecycle, which improves the security of all of the products that Cisco produces Related Snort rules  37517, 37518 For the most up to date list, please refer to Defense Center or FireSIGHT Management Center For further zero day or vulnerability reports and information visit  http talosintelcom vulnerability-reports  Timeline   2016-02-02 - Vendor Disclosure 2016-03-21 - Vulnerability Patched 2016-03-22 - Public Release IMAGE   IMAGE   IMAGE  </description><link>http://www.secuobs.com/revue/news/601840.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601840.shtml</guid></item>
<item><title>A Look Inside Apple's User Data Utilization Wars</title><description>2016-03-22 20:55:58 - Slashdot  Your Rights Online : tlhIngan writes  It's no secret Apple  is  on a privacy bent as of late But that extends inside of Apple as well with various internal groups fighting for access to user data and often being denied by Apple's  privacy czars  who ensure Apple doesn't collect information they don't  need , that information is used only  in  ways the user allows, and to design the systems to keep user data separate This has lead to many conflicts, especially for the Siri and iAd team who often cannot access  the  user data they need Of course, Apple can do this because unlike Google, Facebook or  Amazon , Apple makes money on hardware and not on the sale of customer data  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601759.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601759.shtml</guid></item>
<item><title>FBI might have a way to unlock shooter s iPhone without Apple s help</title><description>2016-03-22 17:27:22 - Security Bloggers Network : The government asked a judge to delay deciding whether Apple must build an iPhone backdoor while the FBI tests its own backdoor </description><link>http://www.secuobs.com/revue/news/601738.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601738.shtml</guid></item>
<item><title>If the FBI found its own iPhone backdoor, should it show Apple </title><description>2016-03-22 17:27:22 - Security Bloggers Network : Analysis  Using a zero-day flaw to bypass an iPhone's security is still a backdoor With the potential to affect hundreds of millions of iPhone owners, will the FBI keep the flaw to itself  </description><link>http://www.secuobs.com/revue/news/601731.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601731.shtml</guid></item>
<item><title>Apple vs FBI   suite et fin  </title><description>2016-03-22 17:05:53 - Global Security Mag Online : Suites du jugement rendu mardi 16 février par la Cour fédérale du Riverside en Californie, dans lequel cette dernière exigeait de la multinationale   une assistance technique raisonnable   au FBI afin de lui permettre d'accéder au contenu crypté de l'iPhone d'un des auteurs présumés de la fusillade de San Bernadino Il semblerait que le gouvernement qui parallèlement à ce jugement poursuivait ses efforts pour accéder au contenu de l'iPhone soit arrivé à ses fins Le FBI contacté par un tiers serait    - Risk Management </description><link>http://www.secuobs.com/revue/news/601728.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601728.shtml</guid></item>
<item><title>Apple updates its products, fixes iMessages zero-day</title><description>2016-03-22 12:41:32 - Help Net Security : On Monday Apple has pushed out updates for its many products  iOS, OS X, OS X Server, Safari, watchOS, tvOS, and Xcode Of these, the most eagerly awaited was that for iOS, as it fixes a recently unveiled vulnerability  CVE-2016-1788  that could allow an attacker who is able to bypass Apple s certificate pinning, intercept TLS connections, inject messages, and record encrypted attachment-type messages to be able to read attachments The vulnerability was discovered by a   More   </description><link>http://www.secuobs.com/revue/news/601706.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601706.shtml</guid></item>
<item><title>There s no conspiracy behind the FBI-v-Apple postponement</title><description>2016-03-22 07:09:56 - Security Bloggers Network : The FBI says it may have found another way to get data off an iPhone, and thus asked to postpone a hearing about whether Apple can be forced to do it I thought I'd write a couple of comments Specifically, people are looking for reasons to believe that the FBI, or Apple, or both are acting in bad faith, and that everything that happens is some sort of conspiracy As far as I can tell, all evidence is that they are acting in good faith Orin Kerr writes  If that happens, neither side will look good in the short term The FBI won t look good because it went to court and claimed it had no alternatives when an alternative existed The whole case was for nothing, which will raise suspicions about why the government filed the case and the timing of this new discovery But Apple won t look good either Apple claimed that the sky would fall if it had to create the code in light of the risk outsiders might steal it and threaten the privacy of everyone If outsiders already have a way in without Apple s help, then the sky has already fallen Apple just didn t know it I don't agree It's perfectly reasonable that alternatives for the FBI didn't exist a few weeks ago, but exist now Once the case hit the news, jailbreakers and 0day hackers could have looked for a bug to exploit, then created just the solution the FBI wants They can do it in only a couple weeks, which would take Apple much longer, because they are vastly more motivated to do the work Conversely, Apple doesn't claim the  sky will fall  It only claims that developing a backdoor will make life easier for the hackers Imagine that the hackers are charging the FBI  1 million From Apple's perspective, the sky hasn't fallen, as the iPhone is safe from anybody who can't afford  1 million Conversely, if some tool leaked out on GitHub, so that anybody could download it, then relatively the sky will have fallen for Apple The point is that this isn't black-or-white, sky-falling issue, but one of a vast grey area somewhere in between Thus, the evidence is that both sides appear to be acting in good faith The FBI exhausted all alternatives at the time, but then hackers created a new alternative Apple doesn't want to do anything more that could help those hackers The FBI and Apple are, of course, aware of how this one case fits into their long term plans Thus, we know that what they say in public, and what they file in their briefs, have a larger agenda than just this case But at the same time, the FBI could not have started this process if an alternative had been available at the time, or Apple would have contested the order by simply pointing out the alternative That this didn't happen means that both the FBI and Apple were unaware of a a better alternative Thus, as far as I can tell, there's no conspiracy here </description><link>http://www.secuobs.com/revue/news/601672.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601672.shtml</guid></item>
<item><title>FBI suspends case against Apple after feds find way to break into seized iPhone</title><description>2016-03-22 05:54:06 - Security Bloggers Network : The court has accepted the Justice Dept's bid to suspend its case against the iPhone maker </description><link>http://www.secuobs.com/revue/news/601666.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601666.shtml</guid></item>
<item><title>DOJ delays Apple fight after outside party offers help cracking iPhone</title><description>2016-03-22 05:54:06 - Security Bloggers Network :  Last minute filing could delay encryption standoff In an iPhone encryption case that has pitted Apple against the FBI, the White House, and every major presidential candidate, there is at least one more last-minute twist  In a motion filed tonight, Department of Justice lawyers said that an  outside party  has approached the agency with what it claims is a method of unlocking the phone of one of the San Bernardino shooters   without Apple's help read more </description><link>http://www.secuobs.com/revue/news/601664.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601664.shtml</guid></item>
<item><title>FBI Delays Case Against Apple  May Have Way To Break Phone</title><description>2016-03-22 02:30:22 - Slashdot  Your Rights Online : msm1267 writes  The FBI has delayed its case against Apple less than a day before a scheduled court hearing and showdown over its demands that Apple help unlock a terrorist's iPhone The government late Monday afternoon filed a motion to vacate its case, putting a halt to a saga that began in mid-February when a federal magistrate ordered Apple to help the FBI access a phone belonging to one of the shooters involved in last December's attack that killed 14 in San Bernardino, Calif The motion also indicates that the FBI may have found a way onto the phone without Apple's help  On Sunday, March 20, 2016, an outside party demonstrated to the FBI a possible method for unlocking  shooter Syed  Farook's iPhone,  the motion says  Testing is required to determine whether it is a viable method that will not compromise data on Farook's iPhone If the method is viable, it should eliminate the need for the assistance from Apple Inc  Apple  set forth in the All Writs Act Order in this case  Update 3 22 16 at 01 05 00 GMT  The story was updated to reflect the correct information that the case was delayed, not dropped A federal judge agreed to postpone the oral arguments between Apple and the US government  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601661.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601661.shtml</guid></item>
<item><title>FBI Drops Case Against Apple  May Have Way To Break Phone</title><description>2016-03-22 01:52:30 - Slashdot  Your Rights Online : msm1267 writes  The FBI has dropped its case against Apple less than a day before a scheduled court hearing and showdown over its demands that Apple help unlock a terrorist's iPhone The government late Monday afternoon filed a motion to vacate its case, putting a halt to a saga that began in mid-February when a federal magistrate ordered Apple to help the FBI access a phone belonging to one of the shooters involved in last December's attack that killed 14 in San Bernardino, Calif The motion also indicates that the FBI may have found a way onto the phone without Apple's help  On Sunday, March 20, 2016, an outside party demonstrated to the FBI a possible method for unlocking  shooter Syed  Farook's iPhone,  the motion says  Testing is required to determine whether it is a viable method that will not compromise data on Farook's iPhone If the method is viable, it should eliminate the need for the assistance from Apple Inc  Apple  set forth in the All Writs Act Order in this case   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601660.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601660.shtml</guid></item>
<item><title>A Statement from The Tor Project on Software Integrity and Apple</title><description>2016-03-21 17:34:28 - The Tor Blog blogs :    The Tor Project exists to provide privacy and anonymity for millions of people, including human rights defenders across the globe whose lives depend on it The strong encryption built into our software is essential for their safety In an age when people have so little control over the information recorded about their lives, we believe that privacy is worth fighting for We therefore stand with Apple to defend strong encryption and to oppose government pressure to weaken it We will never backdoor our software Our users face very serious threats These users include bloggers reporting on drug violence in Latin America  dissidents in China, Russia, and the Middle East  police and military officers who use our software to keep themselves safe on the job  and LGBTI individuals who face persecution nearly everywhere Even in Western societies, studies demonstrate that intelligence agencies such as the NSA are chilling dissent and silencing political discourse merely through the threat of pervasive surveillance For all of our users, their privacy is their security And for all of them, that privacy depends upon the integrity of our software, and on strong cryptography Any weakness introduced to help a particular government would inevitably be discovered and could be used against all of our users The Tor Project employs several mechanisms to ensure the security and integrity of our software Our primary product, the Tor Browser, is fully open source Moreover, anyone can obtain our source code and produce bit-for-bit identical copies of the programs we distribute using Reproducible Builds, eliminating the possibility of single points of compromise or coercion in our software build process The Tor Browser downloads its software updates anonymously using the Tor network, and update requests contain no identifying information that could be used to deliver targeted malicious updates to specific users These requests also use HTTPS encryption and pinned HTTPS certificates  a security mechanism that allows HTTPS websites to resist being impersonated by an attacker by specifying exact cryptographic keys for sites  Finally, the updates themselves are also protected by strong cryptography, in the form of package-level cryptographic signatures  the Tor Project signs the update files themselves  This use of multiple independent cryptographic mechanisms and independent keys reduces the risk of single points of failure The Tor Project has never received a legal demand to place a backdoor in its programs or source code, nor have we received any requests to hand over cryptographic signing material This isn't surprising  we've been public about our  no backdoors, ever  stance, we've had clear public support from our friends at EFF and ACLU, and it's well-known that our open source engineering processes and distributed architecture make it hard to add a backdoor quietly From an engineering perspective, our code review and open source development processes make it likely that such a backdoor would be quickly discovered We are also currently accelerating the development of a vulnerability-reporting reward program to encourage external software developers to look for and report any vulnerabilities that affect our primary software products The threats that Apple faces to hand over its cryptographic signing keys to the US government  or to sign alternate versions of its software for the US government  are no different than threats of force or compromise that any of our developers or our volunteer network operators may face from any actor, governmental or not For this reason, regardless of the outcome of the Apple decision, we are exploring further ways to eliminate single points of failure, so that even if a government or a criminal obtains our cryptographic keys, our distributed network and its users would be able to detect this fact and report it to us as a security issue Like those at Apple, several of our developers have already stated that they would rather resign than honor any request to introduce a backdoor or vulnerability into our software that could be used to harm our users We look forward to making an official public statement on this commitment as the situation unfolds However, since requests for backdoors or cryptographic key material so closely resemble many other forms of security failure, we remain committed to researching and developing engineering solutions to further mitigate these risks, regardless of their origin We congratulate Apple on their commitment to the privacy and security of their users, and we admire their efforts to advance the debate over the right to privacy and security for all </description><link>http://www.secuobs.com/revue/news/601639.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601639.shtml</guid></item>
<item><title>Apple iPhone zero-day could let crooks steal photos, videos and more </title><description>2016-03-21 16:45:48 - Security Bloggers Network : Ah, the irony  As the US judiciary presses Apple to open one security hole, another one closes </description><link>http://www.secuobs.com/revue/news/601631.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601631.shtml</guid></item>
<item><title>Researchers exploit weakness in Apple iMessage encryption</title><description>2016-03-21 13:29:35 - Security Bloggers Network : John Hopkins researchers were able to exploit a vulnerability in iOS 93 and decrypt media sent across the iMessage platform </description><link>http://www.secuobs.com/revue/news/601602.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601602.shtml</guid></item>
<item><title>iOS zero-day breaks Apple s iMessage encryption</title><description>2016-03-21 10:59:59 - Help Net Security : A team of Johns Hopkins University researchers headed by computer science professor Matthew Green have discovered a zero-day flaw in Apple s iOS encryption, which could allow attackers to decrypt intercepted iMessages Not many details about the actual vulnerability have been shared, and won t be until Apple patches the flaw According to the Washington Post, the company said that the flaw has been partially fixed in iOS 9  pushed out last fall , but will be completely   More   </description><link>http://www.secuobs.com/revue/news/601584.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601584.shtml</guid></item>
<item><title>FBI vs Apple</title><description>2016-03-20 17:38:32 - IT Security Blog : Syed Rizwan Farook s iPhone 5C Since the San Bernardino shooting, there has been a lot of information and news stories about Apple  refusing  to help the FBI by building software to crack the encryption   what has been referred to as  </description><link>http://www.secuobs.com/revue/news/601552.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601552.shtml</guid></item>
<item><title>Apple Hires Corporate Security Chief Amid Legal Battle With FBI</title><description>2016-03-20 00:52:27 - Slashdot  Your Rights Online : An anonymous reader writes  Apple has hired a new security executive to oversee its corporate digital defenses as a result of the ongoing battle with the US government over law enforcement's desire to crack into the San Bernardino shooter's iPhone 5c George Stathakopoulos, former vice president of information security at Amazoncom and before that Microsoft's general manager of product security, is the new appointee designated to be the vice president of corporate information security Stathakopoulos will be responsible for protecting corporate assets, such as the computers used to design products and develop software, as well as data about customers The new hire is a sign of increased focus on security issues at Apple  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601536.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601536.shtml</guid></item>
<item><title>Apple Employees, If Ordered To Unlock iPhone, Might Quit</title><description>2016-03-18 16:40:10 - Slashdot  Your Rights Online : An anonymous reader quotes an NYTimes article  Apple employees are already discussing what they will do if ordered to help law enforcement authorities Some say they may balk at the work, while others may even quit their high-paying jobs rather than undermine the security of the software they have already created, according to more than a half-dozen current and former Apple employees    The employees' concerns also provide insight into a company culture that despite the trappings of Silicon Valley wealth still views the world through the decades-old, anti-establishment prism of its co-founders Steven P Jobs and Steve Wozniak    The fear of losing a paycheck may not have much of an impact on security engineers whose skills are in high demand Indeed, hiring them could be a badge of honor among other tech companies that share Apple's skepticism of the government's intentions  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601450.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601450.shtml</guid></item>
<item><title>Apple Stores iCloud Data With Google</title><description>2016-03-17 23:14:15 - Slashdot  Your Rights Online : An anonymous reader writes  Alphabet's Google has quietly scored a major coup in its campaign to become an enterprise cloud computing powerhouse, landing Apple as a customer for the Google Cloud Platform, multiple sources with knowledge of the matter told CRN this week Previously, Apple had acknowledge using Amazon Web Services  AWS  and Microsoft Azure's rival cloud computing platforms in addition to its own data centers None of the services would have access to iCloud users' records  The iCloud information is not at risk of being breached or otherwise observed by the ultimate owners of the platforms it resides on because of the very heavy encryption and partitioning technologies used,  commended Chris Green, a tech expert at the consultancy Lewis CRN has mentioned the agreement between the two companies was done late last year  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601360.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601360.shtml</guid></item>
<item><title>The Law Is Clear  the FBI Cannot Make Apple Rewrite Its OS</title><description>2016-03-17 16:58:34 - Slashdot  Your Rights Online : An anonymous reader cites a post by Susan Crawford, Harvard Law Professor and former Obama Special Assistant  From her column at Backchannel,  Barack Obama has a fine legal mind But he may not have been using it when he talked about encryption last week    The problem for the president is that when it comes to the specific battle going on right now between Apple and the FBI, the law is clear  twenty years ago, Congress passed a statute, the Communications Assistance for Law Enforcement Act  CALEA  that does not allow the government to tell manufacturers how to design or configure a phone or software used by that phone -- including security software used by that phone  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601339.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601339.shtml</guid></item>
<item><title>Apple App Piracy Technique Used For Malware</title><description>2016-03-17 10:53:12 - TorrentFreak :    A technique used for installing pirated iOS apps onto non-jailbroken Apple devices has now been deployed by criminals looking to compromise user accounts A piece of malware known as 'AceDeceiver' carries out the same attack on Apple's DRM system, enabling attackers to obtain login information and passwords Source  TF, for the latest info on copyright, file-sharing, torrent sites and ANONYMOUS VPN services </description><link>http://www.secuobs.com/revue/news/601288.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601288.shtml</guid></item>
<item><title>Apple s Brief Briefs the FBI</title><description>2016-03-17 02:31:41 - Security Bloggers Network : And a little more on the Apple FBI contretemps  Kim Zetter for Wired on Apple s Brief Hits the FBI With a Withering Fact Check He comments  Many viewed Apple s arguments as a withering commentary on the government s poor legal acumen David Harley </description><link>http://www.secuobs.com/revue/news/601268.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601268.shtml</guid></item>
<item><title>Apple Files Final Response In San Bernardino iPhone Case</title><description>2016-03-16 17:49:53 - Slashdot  Your Rights Online : An anonymous reader writes  In its final briefing before a court showdown next week, Apple said,  The court must consider the national debate surrounding the issue of mandating a backdoor or the dangers to the security and privacy of millions of citizens According to Apple, the government also believes the courts can order private parties  to do virtually anything the Justice Department and FBI can dream up The Founders would be appalled  In response to the government, Apple said,  the catastrophic security implications of that threat only highlight the government's fundamental misunderstanding or reckless disregard of the technology at issue and the security risks implicated by its suggestion  According to TechCrunch, Apple made an interesting change in its strategy in the court on Tuesday From its article,  The tone of today's filing and subsequent call was much more cold and precise Apple got some time to consider the best way to respond and went with dissecting the FBI's technical arguments in a series of precise testimonies by its experts Where the FBI filing last week relied on invective, Apple's this week relies on poking holes in critical sections of the FBI's technical narrative  Edward Snowden also made a remark about the hearing He tweeted,  Today I learned that  Apple has way better lawyers than the DOJ   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601225.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601225.shtml</guid></item>
<item><title>L'amendement   Apple     quand l'Assemblée sévit contre le chiffrement des données</title><description>2016-03-16 17:22:32 - Global Security Mag Online : Dans un climat de défiance envers les moyens de cryptologie résultant du bras de fer auquel se livrent Apple et les autorités fédérales aux Etats-Unis, l'Assemblée Nationale vient de voter un amendement au projet de loi relative à la lutte contre le crime organisé, le terrorisme et leur financement destiné à sanctionner les entreprises refusant de coopérer avec les autorités judiciaires qui souhaitent accéder à des données chiffrées L'amendement 90 rectifié, qui fait suite à un amendement similaire    - Points de Vue   affiche </description><link>http://www.secuobs.com/revue/news/601222.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601222.shtml</guid></item>
<item><title>AceDeceiver iOS malware exploits Apple design flaw to infect non-jailbroken devices</title><description>2016-03-16 17:01:14 - Help Net Security : Malware developers have found another hole in Apple s iOS defenses, and this one, according to Palo Alto researchers, will be difficult to plug The newly discovered malware family that has been successfully infecting non-jailbroken devices of Chinese users has been dubbed AceDeceiver And, unlike previous instances of successful iOS malware, it can be installed on target devices without being signed with a valid enterprise certificate FairPlay MITM  AceDeceiver is the first iOS malware we ve seen   More   </description><link>http://www.secuobs.com/revue/news/601219.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601219.shtml</guid></item>
<item><title>And still the FBI Apple discussion rolls on</title><description>2016-03-16 04:25:51 - Security Bloggers Network : John Gruber is continuing to track interesting commentary with some relevance to the Apple FBI discussion </description><link>http://www.secuobs.com/revue/news/601142.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601142.shtml</guid></item>
<item><title>What Apple Can Learn From BlackBerry Not To Do</title><description>2016-03-16 02:32:18 - Slashdot  Your Rights Online : dkatana writes  There is no shortage of news about the fight between Apple and the Justice Department to unlock the iPhone of a suspect in the San Bernardino, Calif, terrorist case Apple can take a page from the fight BlackBerry had back in 2010 with some governments in the Middle East and Asia At that time -- afraid to lose a lucrative business -- RIM  gave  in and allowed those governments to access its secure BBM  BlackBerry Messenger  service The rest is history If Apple complies with the Justice Department request, according to Craig Federighi, senior VP of software engineering at Apple,  This software -- which law enforcement has conceded it wants to apply to many iPhones --  would become a weakness that hackers and criminals could use to wreak havoc on the privacy and personal safety of us all   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/601136.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601136.shtml</guid></item>
<item><title>Why Apple went to war with the FBI</title><description>2016-03-15 15:00:52 - LinuxSecurity.com   Latest News : LinuxSecuritycom  It took just a few hours for the Justice Dept to gauge how its legal action against Apple would be perceived by the public </description><link>http://www.secuobs.com/revue/news/601082.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601082.shtml</guid></item>
<item><title>After Apple, is WhatsApp US government's next crypto target </title><description>2016-03-14 15:14:06 - LinuxSecurity.com   Latest News : LinuxSecuritycom  Facebook-owned WhatsApp could be the next tech company in line for a legal battle with the US government over encryption that's seen as frustrating a criminal investigation </description><link>http://www.secuobs.com/revue/news/601009.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/601009.shtml</guid></item>
<item><title>Apple Might Be Forced to Hand Over iOS Source Code to the FBI</title><description>2016-03-11 21:10:30 - Slashdot  Your Rights Online : Bruce66423 writes  In its latest filing, the FBI implies that, if the burden on Apple programmers of their alternative approach is too great, then Apple should release the whole source code to the FBI to allow them to do the work, quoting the precedent of the Lavabit confrontation Clearly it is time for Apple to move offshore  To recall, Lavabit abruptly shut down in 2013 when the FBI attempted to get the company to hand over the encryption keys for its secure email service While the current situation seems to put Apple in the same ballpark as Lavabit, what gives the Cupertino-giant company an advantage is the immense support it is receiving from other Silicon Valley companies and personnel Many believe that the FBI doesn't really need Apple's help in unlocking the iPhone Reports claim that the iPhone in question already has a  backdoor  which could allow the government-backed institution to access the data on the smartphone Other widely reported theories include cracking the iPhone and manipulating the innards to trick the system into spilling out all the information One proposed method, which requires the phone's NAND flash chip to be taken out, may not work, though Daniel Kahn Gillmor, a technology fellow with the ACLU's Speech, Privacy and Technology Project, pointed out the risks in playing with flash memory He said that an error in removing the memory could make the data unreadable forever  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/600858.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600858.shtml</guid></item>
<item><title>Apple Announces 'Let Us Loop You In' Event For March 21st</title><description>2016-03-11 06:18:36 - Slashdot  Your Rights Online : An anonymous reader writes  The official Apple Events page has been updated in advance of the newly announced media event Invitations were sent out earlier Thursday inviting members of the press to  let us loop you in  The event will be streamed using Apple's HTTP Live Streaming technology and will require an iPhone, iPad or iPod Touch running iOS 70 or later The company is expected to announce a new, smaller iPhone SE, that will be the same size as the iPhone 5 but with improved specs like a A9 processor and 8-megapixel rear camera In addition, Apple is expected to announce a new, smaller iPad Pro It is rumored to feature a 97  display and a Smart Connector to support Smart Keyboard -- it may even be compatible with the Apple Pencil We can expect some kind of update for the Apple Watch, most likely new Apple Watch bands A black version of the Milanese Loop may be in the works to match the Space Black Apple Watch Of course, Apple will talk encryption as the event is scheduled one day before the next hearing between Apple and the FBI on March 22 Apple may surprise us with new MacBooks or OS X updates but we will most likely have to wait until Apple's developer conference in June  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/600808.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600808.shtml</guid></item>
<item><title>Apple slams Justice Dept s latest filing as  cheap shot </title><description>2016-03-11 05:34:42 - Security Bloggers Network : The company's attorneys said some of the Justice Dept's arguments are like  throwing pasta on a wall and hoping something sticks  </description><link>http://www.secuobs.com/revue/news/600805.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600805.shtml</guid></item>
<item><title>Code is expressive Full Stop  FBIvApple </title><description>2016-03-11 03:48:32 - Security Bloggers Network : I write code More than a  billion of products have been sold where my code is the key component I've written more than a million lines of it I point this out because I want to address this FBIvApple fight from the perspective of a coder -- from the  </description><link>http://www.secuobs.com/revue/news/600788.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600788.shtml</guid></item>
<item><title>Cothority to Apple  Let s make secret backdoors impossible</title><description>2016-03-10 16:16:16 - Risk Assessment   Ars Technica : Decentralized cosigning could make it tough for government to gain access </description><link>http://www.secuobs.com/revue/news/600744.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600744.shtml</guid></item>
<item><title>Apple executive  FBI is  taking the side of hackers  in iPhone unlock case</title><description>2016-03-10 06:02:50 - Security Bloggers Network : Apple's internet and services chief warns that  security will end  if the FBI prevails in its legal action against the iPhone maker </description><link>http://www.secuobs.com/revue/news/600661.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600661.shtml</guid></item>
<item><title>There are ways the FBI can crack the iPhone PIN without Apple doing it for them</title><description>2016-03-09 20:38:52 - Risk Assessment   Ars Technica : Getting Apple to write new firmware is the easiest route but probably not the only one </description><link>http://www.secuobs.com/revue/news/600625.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600625.shtml</guid></item>
<item><title>Former NSA, CIA Director Michael Hayden Sides With Apple Over FBI</title><description>2016-03-09 16:14:05 - Slashdot  Your Rights Online : cold fjord writes  General Michael Hayden  Retired , who served as head of both the NSA and CIA, has taken a position supporting Apple in its conflict with the FBI Apple is fighting a court order to assist the FBI in breaking into the government owned phone used by one of the two dead terrorists responsible for the recent San Bernardino massacre General Hayden stated,  You can argue this on constitutional grounds Does the government have the right to do this  Frankly, I think the government does have a right to do it You can do balancing privacy and security dead men don't have a right to privacy I don't use those lenses My lens is the security lens, and frankly, it's a close but clear call that Apple's right on just raw security grounds  I get why the FBI wants to get into the phones but this may be a case where we've got to give up some things in law enforcement and even counter terrorism in order to preserve this aspect, our cybersecurity   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/600599.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600599.shtml</guid></item>
<item><title>Snowden  FBI Claim That Only Apple Can Unlock Phone Is  Bullshit </title><description>2016-03-09 14:27:50 - LinuxSecurity.com   Latest News : LinuxSecuritycom  NSA whistleblower Edward Snowden says the FBI's ostensibly last-ditch attempt to unlock San Bernardino shooter Syed Rizwan Farook's iPhone is a sham </description><link>http://www.secuobs.com/revue/news/600581.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600581.shtml</guid></item>
<item><title>As Apple vs FBI deepens, tech companies face these nuclear options</title><description>2016-03-08 19:01:22 - Security Bloggers Network : Experts argue that while some tech firms could be driven overseas, smaller companies face weakening their own product's security to comply with  backdoor  demands for data </description><link>http://www.secuobs.com/revue/news/600501.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600501.shtml</guid></item>
<item><title>DOJ appeals New York court order in favor of Apple </title><description>2016-03-08 14:37:21 - LinuxSecurity.com   Latest News : LinuxSecuritycom  The US Department of Justice has appealed an order by a court in New York that turned down its request that Apple should be compelled to extract data from the iPhone 5s of an alleged drug dealer </description><link>http://www.secuobs.com/revue/news/600466.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600466.shtml</guid></item>
<item><title>Supreme Court Rejects Apple eBooks Price-Fixing Appeal</title><description>2016-03-08 01:35:09 - Slashdot  Your Rights Online : chasm22 writes  The Supreme Court on Monday declined to hear Apple Inc's challenge to an appellate court decision that it conspired with five publishers to increase e-book prices, meaning it will have to pay  450 million as part of a settlement The court's decision not to hear the case leaves in place a June 2015 ruling by the New York-based 2nd US Circuit Court of Appeals that found Apple liable for engaging in a conspiracy that violated federal antitrust laws Apple, in asking the high court to hear the case, said the June appeals court decision that the company had conspired with the publishers contradicted Supreme Court precedent and would  chill innovation and risk-taking  The 2nd Circuit's ruling followed a 2013 decision by US District Judge Denise Cote that Apple played a  central role  in a conspiracy with publishers to raise e-book prices The Justice Department said the scheme caused some e-book prices to rise to  1299 or  1499 from the  999 price previously charged by market leader Amazoncom Inc  Apple liability for knowingly conspiring with book publishers to raise the prices of e-books is settled once and for all,  said Bill Baer, head of the US Justice Department's antitrust division Perhaps Congress should change the price fixing laws What about Amazon  Just trying to anticipate the response from Apple  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/600415.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600415.shtml</guid></item>
<item><title>Not even the US government knows who to support in Apple vs FBI</title><description>2016-03-08 00:43:41 - Security Bloggers Network : Commentary  The government wants its cake and eat it, but can't decide on the cake </description><link>http://www.secuobs.com/revue/news/600402.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600402.shtml</guid></item>
<item><title>Apple users targeted in first known Mac ransomware campaign</title><description>2016-03-06 22:12:12 - Office of Inadequate Security : Jim Finkle reports  Apple Inc customers were targeted by hackers over the weekend in the first campaign against Macintosh </description><link>http://www.secuobs.com/revue/news/600292.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600292.shtml</guid></item>
<item><title>Apple is Running BitTorrent Trackers in Cupertino</title><description>2016-03-06 18:46:09 - TorrentFreak :    Apple is not known for being friendly towards BitTorrent software in its App Store but it appears the technology giant isn't averse to using the technology itself In fact, according to data provided by  Internet of things  search engine Shodan, Apple is running BitTorrent trackers from dozens of IP addresses in Cupertino Source  TF, for the latest info on copyright, file-sharing, torrent sites and ANONYMOUS VPN services </description><link>http://www.secuobs.com/revue/news/600287.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600287.shtml</guid></item>
<item><title>New Legislation Would Ban US Government From Purchasing Apple Products</title><description>2016-03-05 00:42:08 - Slashdot  Your Rights Online : HughPickenscom writes  Cyrus Farivar reports at ArsTechnica that Congressman David Jolly has introduced the  No Taxpayer Support for Apple Act,  a bill that would forbid federal agencies from purchasing Apple products until the company cooperates with the federal court order to assist the unlocking of a seized iPhone 5C associated with the San Bernardino terrorist attack  Taxpayers should not be subsidizing a company that refuses to cooperate in a terror investigation that left 14 Americans dead on American soil,  said Jolly, who announced in 2015 that he's running for Senate, joining the crowded GOP primary field to replace Sen Marco Rubio  Following the horrific events of September 11, 2001, every citizen and every company was willing to do whatever it took to side with law enforcement and defeat terror It's time Apple shows that same conviction to further protect our nation today  Jolly's bill echoes a call from Donald Trump last month to boycott Apple until it agrees to assist the FBI Not to fear, GovTrack gives Jolly's bill a 1pourcents chance of being enacted  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/600227.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600227.shtml</guid></item>
<item><title>What Happens If the FBI Beats Apple </title><description>2016-03-04 23:58:34 - Security Bloggers Network :     IMAGE The battle for the San Bernardino iPhone is raging in the news and it s pointing a large light on just how important mobile data has become This case will cause precedence on how a government entity will be allowed to request, or have direct access to, an individual s private data Apple is taking the stance that their user s privacy is under attack if they give up the ability for others to access it freely On the flip side the government is under the viewpoint that our national security is at risk if they can t view it No matter where you stand on this issue personally, it s interesting to see that the largest case in country is being focused on mobile data and its corresponding security This shows just how important the issues of mobile security have become and this case, no matter where you stand on it, proves that our mobile phones need to be secured and we need to understand the long term effects of what this means for mobile vendors, app developers and mobile device users While this case will continually unfold throughout the next couple weeks, it has already shown us that the ability for security is needed and that the final decision could cause have major changes as to how mobile vendors develop their product from a security standpoint If the ability to have a third party access data, or bypass the encryption, of a mobile device could start a trend of mobile app developers to enable strong encryption or security within their applications This ability to access a mobile device could cause a stir among mobile app developers to start performing better security and encryption within their app and not rely on the security of the mobile phone as an umbrella Certain apps pride themselves on security and encryption, EG Signal, but I wonder if this will cause other apps to follow in their footsteps  Will this cause a windfall of encryption within mobile apps in attempts to have better privacy  And will the same question of encryption that Apples experiencing now occur on apps that have their data encrypted  It would be an interesting trend to watch for after a decision is made Also, dependent on the ruling of the iPhone case there might a shift of users who want more privacy move towards another mobile vendor Apple seems to have a very strong following regardless and we saw many security and privacy upgrades made to iOS6, but will this decision end up making a few of these mute and affect Apples bottom line  Will there be users who felt safer on an iPhone before this case leave for another vendor in search of looking for more privacy  Will we see similar requests of the government sent down to Google, Blackberry, Windows, etc to have the same or similar capabilities  Yet again, this is another interesting trend to look for when the dust settles Lastly, if this is the norm going forward will all new vendors that come into the mobile space have to adhere to allowing access, or bypass ability, to their mobile devices and applications  Will this become a standard applied to mobile vendors and application developers as part of their build process  There are many things to consider after the final decision is made on whether or not Apple needs to develop a way to have a third party bypass their encryption Yes, this helps with national security and yes this could bypass privacy, but the follow ups going forward for mobile vendors regarding security could be long lasting and changing </description><link>http://www.secuobs.com/revue/news/600226.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600226.shtml</guid></item>
<item><title>EFF On Why FBI Can't Force Apple To Sign Code</title><description>2016-03-04 19:52:39 - Slashdot  Your Rights Online : New submitter Kurast writes with this article at Boing Boing  Code is speech  critical court rulings from the early history of the Electronic Frontier Foundation held that code was a form of expressive speech, protected by the First Amendment The EFF has just submitted an amicus brief in support of Apple in its fight against the FBI, representing 46  technologists, researchers and cryptographers,  laying out the case that the First Amendment means that Apple can't be forced to utter speech to the government's command, and they especially can't be forced to sign and endorse that speech In a  deep dive  post, EFF's Andrew Crocker and Jamie Williams take you through the argument, step by step  You can follow along by reading the brief itself  PDF , too   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/600202.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600202.shtml</guid></item>
<item><title>Chiffrement des données   et si le conflit qui oppose Apple au FBI se passait en France   </title><description>2016-03-04 16:38:22 - Global Security Mag Online : L'affaire opposant actuellement la société Apple aux autorités fédérales américaines autour du chiffrement des données stockées dans les iPhones et l'accès de la justice aux données protégées n'est pas dénuée d'intérêt au regard du droit français Et si la question se posait en France, qu'en serait-il   Dans cette affaire, le FBI demande à la société Apple de mettre au point un système d'exploitation iOS ad hoc permettant de contourner les mesures de sécurité qui empêchent l'accès aux données chiffrées sur un    - Risk Management </description><link>http://www.secuobs.com/revue/news/600183.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600183.shtml</guid></item>
<item><title>How Apple could lock down the iPhone to thwart government unlock orders</title><description>2016-03-04 04:17:10 - Security Bloggers Network : The new iOS devices with the Secure Enclave were supposed to be unhackable, even by Apple, but they aren't What could Apple do to fix this  </description><link>http://www.secuobs.com/revue/news/600122.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600122.shtml</guid></item>
<item><title>Godfather Of Encryption Explains Why Apple Should Help The FBI</title><description>2016-03-04 02:55:20 - Slashdot  Your Rights Online : An anonymous reader writes  Famed cryptographer and Turing Award winner, Adi Shamir, has an interesting if not surprising take on Apple's current legal tussle with the FBI While speaking on a panel at RSA Conference 2016 earlier this week, the man who helped co-invent the vaunted RSA algorithm  he's the 'S' in RSA  explained why he sides with the FBI as it pertains to the San Bernardino shooter's locked iPhone It has nothing to do with placing trapdoors on millions of phones around the world,  Shamir explained  This is a case where it's clear those people are guilty They are dead  their constitutional rights are not involved This is a major crime where 14 people were killed The phone is intact All of this aligns in favor of the FBI  Shamir continued,  even though Apple has helped in countless cases, they decided not to comply this time My advice is that they comply this time and wait for a better test case to fight where the case is not so clearly in favor of the FBI   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/600114.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600114.shtml</guid></item>
<item><title> Apple vs FBI  Even Cryptographers Cannot Agree </title><description>2016-03-03 16:06:30 - LinuxSecurity.com   Latest News : LinuxSecuritycom  Seems like just about everyone - from network news anchors to your next door neighbor - has an opinion on Apple's fight with the FBI over unlocking a cell phone used by one of the two terrorists who killed more than a dozen people in a mass shooting in San Bernardino, Calif Even the world's most famous cryptographers cannot agree on whether Apple should be compelled to create anti-encryption software to help the government agency retrieve data from the phone </description><link>http://www.secuobs.com/revue/news/600043.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600043.shtml</guid></item>
<item><title>FBI vs Apple Establishes a New Phase of the Crypto Wars</title><description>2016-03-03 16:06:30 - LinuxSecurity.com   Latest News : LinuxSecuritycom  For over two decades, the battle between privacy-minded technologists and the US government has primarily been over encryption In the 1990s, in what became known as the Crypto Wars, the US tried to limit powerful encryption - calling it as dangerous to export as sophisticated munitions - and eventually lost </description><link>http://www.secuobs.com/revue/news/600042.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/600042.shtml</guid></item>
<item><title>Alliance des frères-ennemis derrière Apple</title><description>2016-03-03 08:19:38 - CNIS mag : Facebook, Google, Microsoft, Twitter et Apple s exprimant d une même voix, combattant côte à côte dans une formidable embrassade juridique   il n y a que dans la peine que l on reconnaît ses véritables amis Inquiétés par les conséquences incalculables d une victoire du clan   FBI DoJ   dans l affaire qui oppose Apple et la justice US, les   </description><link>http://www.secuobs.com/revue/news/599983.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599983.shtml</guid></item>
<item><title>ISIS Supporters Abandon US Encryption Tools As Apple-FBI Fight Rages</title><description>2016-03-02 18:11:18 - Slashdot  Your Rights Online : blottsie writes  Islamic State militants and supporters are promoting strong encryption tools from outside the United States that the American government cannot touch with legislation In the last month, Islamic State supporters have promoted security software from Finland, Romania, America, France, the Czech Republic, Canada, Panama, Germany, Switzerland, Saint Kitts and Nevis, and other nations, a Daily Dot review found The international availability of encryption technology, of which Islamic State militants are well aware, underscores FBI Director James Comey's long-held desire to build an international legal regime to deal with the problems posed by encryption, what he calls  going dark   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599928.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599928.shtml</guid></item>
<item><title>FBI Should Try To Unlock iPhone Without Apple's Help, Lawmaker Says</title><description>2016-03-02 16:42:29 - Slashdot  Your Rights Online : itwbennett writes  Representative Darrell Issa, a California Republican and former car-alarm entrepreneur, has suggested that the FBI try unlocking mass shooter Syed Rizwan Farook by copying the hard drive and running password attempts until they find the correct password Bruce Sewell, Apple's senior vice president and general counsel, said during a congressional hearing that, although the company doesn't know the condition of the shooter's iPhone, Issa's approach may work  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599918.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599918.shtml</guid></item>
<item><title>EFF's Cindy Cohn On Why 'Code Is Speech' Is Key To Apple vs FBI</title><description>2016-03-01 15:59:43 - Slashdot  Your Rights Online : blottsie writes  In a series of court battles in the late 1990s and early 2000s, Cindy Cohn represented plaintiffs challenging restrictions on DVD copying and the publication of cryptographic code In all three cases Bernstein v United States, Universal City Studios v Reimerdes, and Junger v Daley federal courts held that computer code merited protection under the First Amendment Cohn, now the executive director of the Electronic Frontier Foundation, endorsed Apple's repeated citations of her cases in its fight against a court order to unlock a terrorism suspect's iPhone for the FBI But she said that the controversial iPhone-unlocking order impinged even further on Apple's free-speech rights than the restrictions in her cases  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599784.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599784.shtml</guid></item>
<item><title>A Timeline of the Apple-FBI iPhone Controversy</title><description>2016-03-01 12:24:42 - Security Bloggers Network :    Apple has been making headlines recently for its refusal to comply with a court order requiring it to help federal authorities unlock a mass shooter s iPhone This story dates back to late fall of 2015 The timeline below summarizes how this controversy has played out thus far December 2, 2015 Syed Rizwan Farook, 28, and   Read More The post A Timeline of the Apple-FBI iPhone Controversy appeared first on The State of Security  IMAGE  </description><link>http://www.secuobs.com/revue/news/599761.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599761.shtml</guid></item>
<item><title>Judge Favors Apple In iPhone Unlocking Case  In New York</title><description>2016-03-01 01:57:46 - Slashdot  Your Rights Online : The Washington Post reports that Apple has prevailed for the moment in its fight with the FBI over the agency's demand that Apple help them break the security of an iPhone   but not in the California case about the phone belonging to San Bernadino shooter Syed Rizwan Farook -- that more famous case, as we mentioned the other day, is of course not the only phone the FBI would like to peek into New York federal judge James Orenstein scoffs in his 50-page decision at government arguments that Apple should be compelled to produce a software solution that would give them full access to content of the phone belonging to a drug dealer's phone  Orenstein  found that the All Writs Act does not apply in instances where Congress had the opportunity but failed to create an authority for the government to get the type of help it was seeking, such as having firms ensure they have a way to obtain data from encrypted phones He also found that ordering Apple to help the government by extracting data from the iPhone- which belonged to a drug dealer --would place an unreasonable burden on the company He also expressed concern about conferring too much authority in the government âoeNothing in the governmentâ TM s arguments suggests any principled limit on how far a court may go in requiring a person or company to violate the most deeply-rooted values to provide assistance to the government the court deems necessary,â he said Whether the same logic will prevail in California is yet unclear  the New York decision is not binding on any other court  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599710.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599710.shtml</guid></item>
<item><title>Apple Lawyer Ted Olson  Creating Unlock Tool Would Lead To 'Orwellian' Society</title><description>2016-02-28 17:05:37 - Slashdot  Your Rights Online : Apple's lawyer, Ted Olson, explained in an interview with CNN that what the government is asking Apple to do is  limitless  Olson explained that if the tool that the government wants is created, any judge anywhere could essentially order to list to any customer's conversation, track location, and much more The lawyer likened it to an Orwellian  big brother  type society When pressed about how Apple could potentially help fight terrorism by creating a tool to access locked devices, Olson explained that while Apple will help the government defeat terrorism in every way that it can, it can't be done by breaking the Constitution  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599584.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599584.shtml</guid></item>
<item><title>Apple Is Not Such a Freedom Fighter In China</title><description>2016-02-26 21:47:28 - Slashdot  Your Rights Online : mi writes  Though loudly resisting the American government's attempts to make it help break into the phone of a dead scumbag, Apple is very accommodating of the Chinese government's attempts to keep tabs on the citizenry's communications Apple has censored apps that wouldn't pass muster with the Chinese government, moved local user data onto servers operated by the state-owned China Telecom, and submitted to Chinese audits According to James Lewis, senior fellow at the Center for Strategic and International Studies in Washington,  I can't imagine the Chinese would tolerate end-to-end encryption or a refusal to cooperate with their police, particularly in a terrorism case  Why the accommodation there   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599520.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599520.shtml</guid></item>
<item><title>Apple says DoJ s request for iPhone unlocking is unconstitutional</title><description>2016-02-26 12:29:14 - Help Net Security : Apple has filed a motion to vacate the earlier court order that would force them to help the FBI access the contents of the iPhone of the San Bernardino gunman by creating a new OS that would bypass existing security measures The motion The motion is long and thorough, and in it the company has trotted out every argument against the court order it could think of This was likely done with the expectation of,   More   </description><link>http://www.secuobs.com/revue/news/599466.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599466.shtml</guid></item>
<item><title>Apple se renforce   les politiciens se durcissent</title><description>2016-02-26 07:40:02 - CNIS mag : Côté Apple tout d abord, avec cette information du NYT laissant entendre que ses ingénieurs seraient en train de renforcer les mécanismes de chiffrement de leurs téléphones afin qu il soit   impossible au gouvernement de débloquer un iPhone en utilisant des méthodes comparables à celles utilisées durant cet affrontement  opposant Apple  à la cour de Californie   </description><link>http://www.secuobs.com/revue/news/599441.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599441.shtml</guid></item>
<item><title>Google, Microsoft, Facebook, Twitter To Back Apple With Legal Filing In FBI Case</title><description>2016-02-26 01:55:33 - Slashdot  Your Rights Online : An anonymous reader writes  Google plans to follow Microsoft in throwing its legal support behind Apple in its increasingly contentious dispute with the federal government around the iPhone connected with the San Bernardino terror attacks, according to sources At a congressional hearing on Thursday, Microsoft's legal chief, Brad Smith, said that the company plans to file an amicus brief next week in support of Apple's resistance to helping the FBI hack the phone Google will deliver its own supporting brief 'soon,' according to sources familiar with the company  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599421.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599421.shtml</guid></item>
<item><title>Arizona County Attorney To Ditch IPhones Over Apple Dispute With FBI</title><description>2016-02-25 16:37:55 - Slashdot  Your Rights Online : alphadogg writes  Apple's refusal to help the FBI unlock an iPhone 5c used by one of the terrorists in the San Bernardino, California attack on Dec 2 has prompted the Maricopa County attorney's office in Arizona to ban providing new iPhones to its staff 'Apple's refusal to cooperate with a legitimate law enforcement investigation to unlock a phone used by terrorists puts Apple on the side of terrorists instead of on the side of public safety,' Maricopa County Attorney Bill Montgomery said in a statement Montgomery described as a corporate public relations stunt Apple's positioning of its refusal to cooperate on privacy grounds On the other hand, I suspect Apple's public refusal to decrypt, and Tim Cook's strong words in favor of user privacy, have probably triggered an opposite reaction among many would-be phone buyers  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599384.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599384.shtml</guid></item>
<item><title>Apple Is Said To Be Working On an iPhone Even It Can't Hack</title><description>2016-02-25 03:16:00 - Slashdot  Your Rights Online : An anonymous reader writes with this story at the New York Times  Apple engineers have already begun developing new security measures that would make it impossible for the government to break into a locked iPhone using methods similar to those now at the center of a court fight in California, according to people close to the company and security experts If Apple succeeds in upgrading its security   and experts say it almost surely will   the company would create a significant technical challenge for law enforcement agencies, even if the Obama administration wins its fight over access to data stored on an iPhone used by one of the killers in last year's San Bernardino, Calif, rampage The FBI would then have to find another way to defeat Apple security, setting up a new cycle of court fights and, yet again, more technical fixes by Apple  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599313.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599313.shtml</guid></item>
<item><title>Apple vs FBI  Top 5 distortions, delusions, and downright lies</title><description>2016-02-25 01:55:19 - Security Bloggers Network : Opinion  The FBI's attempt to order Apple to help them crack an iPhone has brought out the hysterical in many of us </description><link>http://www.secuobs.com/revue/news/599307.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599307.shtml</guid></item>
<item><title>Australia's Major Parties Vote Against Encryption In Wake of Apple FBI Case</title><description>2016-02-24 06:02:19 - Slashdot  Your Rights Online : daria42 writes  If you're counting on Apple to keep your digital information safe, you may want to think again  at least if you live in Australia Yesterday the country's two major political parties   Labor and the Coalition   voted down a motion in Federal Parliament calling for strong encryption to be supported in the wake of the FBI's demands that Apple unlock iOS It appears that implementing comprehensive telephone and email retention in Australia may not have been the end of demands by law enforcement in the country  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599209.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599209.shtml</guid></item>
<item><title>DoJ Wants Apple To Decrypt 12 More iPhones</title><description>2016-02-23 19:53:10 - Slashdot  Your Rights Online : tlhIngan writes  The Wall Street Journal  paywalled  is reporting that the Department of Justice is seeking Apple's help in decrypting 12 other iPhones that may contain crime-related evidence The cases are not identified, though a list of the 12 phones in question has come out, but it is not known what level of Apple assistance is required  ie, how many of those cases are waiting on the FBI request for special firmware to be developed and to be used on  one more phone  It appears Tim Cook's assertion that hundreds of requests are waiting on this software may not be a fabrication, and the goal is not about just one phone, but to set a precedent to unlock more phones As TechDirt  which also lists those 12 cases, a list which certainly does not encompass all the phones the Feds would like to peer into  puts it,  O nce again, Director Comey was flat out lying when he claimed the FBI has no interest in setting a precedent   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599175.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599175.shtml</guid></item>
<item><title>Bill Gates Sides With FBI In Apple Spat</title><description>2016-02-23 16:02:16 - Slashdot  Your Rights Online : Fudge Factor 3000 writes  Bill Gates has now publicly stated that Apple should cooperate with the FBI in the San Bernadino terrorist's phone unlocking case He states that it is for this specific case, but seems to miss the point that there are other law enforcement officials waiting on the wings with their requests should this precedent be set The war against privacy escalates Setting aside the actual practicality of unlocking the San Bernadino phone, the teams that are emerging on this issue include some pretty strange bedfellows  John McAfee and Bill Gates on the pro-unlocking side, and Woz, Edward Snowden and even some of the victim's families on the con  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599143.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599143.shtml</guid></item>
<item><title>Should Apple weaken iPhone security for the FBI </title><description>2016-02-23 14:31:16 - SecurityTube.Net : It's one of the biggest computer security stories of the year - but where do you stand  </description><link>http://www.secuobs.com/revue/news/599104.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599104.shtml</guid></item>
<item><title>Resetting terrorist s Apple ID password wasn t a screwup, says FBI</title><description>2016-02-23 13:54:30 - Security Bloggers Network : The FBI first blamed county employees for resetting the password and foreclosing the option of fresher backups Now, it says it was in on it </description><link>http://www.secuobs.com/revue/news/599089.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599089.shtml</guid></item>
<item><title>The Blessing and Curse of Apple Security</title><description>2016-02-23 03:07:58 - Security Bloggers Network : A lot has been written about whether Apple should comply with the recently publicized FBI demands surrounding the San Bernardino attack last year However, I m going to avoid the political side of the debate and focus on the technology instead One could argue Apple has fallen victim to the old </description><link>http://www.secuobs.com/revue/news/599051.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599051.shtml</guid></item>
<item><title>The Apple case isn t  privacy  versus  safety </title><description>2016-02-23 03:07:58 - Security Bloggers Network : The current fight is about whether we will impose a technological infrastructure which will be exceptionally vulnerable to attackers in order to provide nothing more useful than some very, very short-term advantages to people investigating crimes Perry Metzger, commentary on the Cryptography mailing list last Friday Let me say it differently  We put everyone in   Continue reading The Apple case isn t  privacy  versus  safety    </description><link>http://www.secuobs.com/revue/news/599049.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599049.shtml</guid></item>
<item><title>More Than Half of Americans Think Apple Should Comply With FBI, Finds Pew Survey</title><description>2016-02-23 00:26:49 - Slashdot  Your Rights Online : An anonymous reader writes  Apple may not have the public's support in its legal fight with the FBI, according to a recently published Pew report In a survey that reached 1,000 respondents by phone over the weekend, Pew researchers found 51 percent of respondents believed Apple should comply with FBI demands to weaken security measures on an iPhone used in the San Bernardino attacks, in order to further the ongoing investigation Only 38 percent of respondents agreed with the company's position Limiting the sample to respondents who own a smartphone only improved the numbers somewhat, changing them to a 50-41 split in the FBI's favor Among those who own an iPhone, the numbers are even closer, but still in the FBI's favor 47 to 43 percent  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599039.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599039.shtml</guid></item>
<item><title>Yet more on Apple and the FBI</title><description>2016-02-22 23:21:09 - Security Bloggers Network : I m not sure I have any more comments to make on this, but here are a few interesting links  Rob Price for Business Insider on Tim Cook s internal memo to all Apple employees on the company s fight against the FBI Also, John Paczkowski for Buzzfeed on Apple CEO Calls On Feds To Drop iPhone Unlock Order refers both to the   </description><link>http://www.secuobs.com/revue/news/599037.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599037.shtml</guid></item>
<item><title>The Lowdown on the Apple-FBI Showdown</title><description>2016-02-22 20:36:14 - Krebs on Security : Many readers have asked for a primer summarizing the privacy and security issues at stake in the the dispute between Apple and the US Justice Department, which last week convinced a judge in California to order Apple to unlock an iPhone used by one of assailants in the recent San Bernardino massacres I don't have much original reporting to contribute on this important debate, but I'm visiting it here because it's a complex topic that deserves the broadest possible public scrutiny </description><link>http://www.secuobs.com/revue/news/599015.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599015.shtml</guid></item>
<item><title>Apple's iPhone Already Has a Backdoor</title><description>2016-02-22 18:35:24 - Slashdot  Your Rights Online : Nicola Hahn writes  As the Department of Justice exerts legal pressure on Apple in an effort to recover data from the iPhone used by Syed Rizwan Farook, Apple's CEO has publicly stated that  the US government has asked us for something we simply do not have, and something we consider too dangerous to create They have asked us to build a backdoor to the iPhone  But, as one Windows rootkit developer has observed, the existing functionality that the FBI seeks to leverage is itself a backdoor Specifically, the ability to remotely update code on a device automatically, without user intervention, represents a fairly serious threat vector Update features marketed as a safety mechanism can just as easily be wielded to subvert technology if the update source isn't trustworthy Something to consider in light of the government's ability to steal digital certificates and manipulate network traffic, not to mention the private sector's lengthy history of secret cooperation Related  wiredmikey writes  Apple said Monday it would accept having a panel of experts consider access to encrypted devices if US authorities drop efforts to force it to help break into the iPhone of a California attacker Apple reaffirmed its opposition to the US government's effort to compel it to provide technical assistance to the FBI investigation of the San Bernardino attacks, but also suggested a compromise in the highly charged legal battle In his first public remarks since Apple CEO Tim Cook said he would fight the federal magistrate's order, FBI Director James Comey claimed the Justice Department's request is is about  the victims and justice   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/599008.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599008.shtml</guid></item>
<item><title>Apple s position on FBI demands </title><description>2016-02-22 17:09:09 - Security Bloggers Network : An Apple statement FAQ clarifies its position on the FBI's demands </description><link>http://www.secuobs.com/revue/news/599001.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/599001.shtml</guid></item>
<item><title>Apple to US govt  Withdraw demand for iPhone unlocking, we all need to talk first</title><description>2016-02-22 16:31:43 - Help Net Security : The battle between Apple and the US Justice Department continues, as the company still refuses to help the feds access the contents of a PIN-locked iPhone used by gunman Syed Farook in the way described in the court order To Apple s CEO Tim Cook, that would be tantamount of setting up a backdoor into the devices Apple still hasn t filed legal arguments against the order   by the magistrate s decision, it has until Friday to   More   </description><link>http://www.secuobs.com/revue/news/598992.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598992.shtml</guid></item>
<item><title>Apple et justice américaine   le cloud ne serait-il pas la faille  </title><description>2016-02-22 16:14:12 - Global Security Mag Online : Apple défraye à nouveau la chronique, suite au jugement rendu mardi 16 février par la Cour fédérale du Riverside en Californie Le juge américain exige que la multinationale offre   une assistance technique raisonnable   au FBI afin de lui permettre d'accéder au contenu crypté de l'iPhone d'un des auteurs présumés de la fusillade de San Bernadino Quelques jours après la tuerie, le FBI avait demandé aux autorités locales de réinitialiser le mot de passe de l'iCloud associé au téléphone Le compte    - Risk Management </description><link>http://www.secuobs.com/revue/news/598991.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598991.shtml</guid></item>
<item><title>Pirated App Store Client For iOS Found On Apple's App Store</title><description>2016-02-22 15:24:08 - Slashdot  Your Rights Online : An anonymous reader writes  An app called  Happy Daily English , which has been offered for download via Apple's official App Store, has been revealed to be a fully functional third party App Store client for iOS, offering users in mainland China a way to install modified versions of iOS apps on non-jailbroken devices Its discovery shows that there are new techniques that can be used to fool Apple reviewers into allowing potentially malicious apps into the App Store, that enterprise certificates can be easily abused, and that there are ways for bypassing Apple's prohibition of apps dynamically loading new code  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598979.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598979.shtml</guid></item>
<item><title>Apple vs the Government  Follow-up</title><description>2016-02-22 15:13:37 - Advanced Password Cracking   Insight : We are closely following the case of Apple battling the US government on unlocking the iPhone of San Bernardino mass murderer Farook who killed 14 in December 2015 In our previous post we looked at what the FBI was asking, and why Apple opposes the motion On February 19th, a new document shows up The   </description><link>http://www.secuobs.com/revue/news/598968.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598968.shtml</guid></item>
<item><title>Pirated App Store client for iOS found on Apple s App Store</title><description>2016-02-22 13:28:10 - Help Net Security : An app called 开心日常英语  Happy Daily English , which has been offered for download via Apple s official App Store, has been revealed to be a fully functional third party App Store client for iOS, offering users in mainland China a way to install modified versions of iOS apps on non-jailbroken devices Its discovery shows that there are new techniques that can be used to fool Apple reviewers into allowing potentially malicious apps into the App Store,   More   </description><link>http://www.secuobs.com/revue/news/598960.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598960.shtml</guid></item>
<item><title>The disingenuous question  FBIvApple </title><description>2016-02-22 11:34:01 - Security Bloggers Network : I need more than 140 characters to respond to this tweet  If you were a crime victim and key evidence was on suspect's phone, would you want govt to search phone w  warrant  Orin Kerr  OrinKerr  February 22, 2016 It's an invalid question to ask Firstly, it's asking for the emotional answer, not the logical answer Secondly, it's only about half the debate, when the FBI is on your side, and not against you The emotional question is like ISIS kidnappings Logically, we know that the ransom money will fund ISIS's murderous campaign, killing others Logically, we know that paying this ransom just encourages more kidnappings of other people -- that if we stuck to a policy of never paying ransoms, then ISIS would stop kidnapping people If it were my loved ones at stake, of course I'd do anything to get them back alive and healthy But at the same time, logically, I'd vote for laws to stop that sort of thing from happening In other words, I'd vote for laws that I would then happily break should the situation ever apply to me Thus, the following question has no meaning in a policy debate over paying ransoms  If it was your loved one at stake, would you pay the ransom  Even those who say  no  are being disingenuous It's easy to say it because it they aren't in danger of the situation ever happening to them Most would change their answer to  yes  if it became real The second reason the original question is invalid because it ignores why we have warrants in the first place Unlimited police power is a bad thing What you need is a counterbalancing question For example, in 2007  before iPhones became popular  the FBI showed up at my business and threatened me in order to keep something quiet Specifically, I was to give a talk at a conference on how, contrary to what the company  TippingPoint  claimed, it was easy to decrypt their  signature  files That company convinced the FBI that it was important to  national security  that I keep such information quiet So the FBI came to our offices, and first asked politely, then started threatening me, in order to keep the information quiet So, in such situations, should the FBI be able to get a warrant and search my phone  Note that a warrant would be easy to guess, as the company TippingPoint suggested that I was also trying to blackmail  demanding money to stay quiet  It was a lie, they kept offering to bribe us to keep quiet and we kept telling them  under no circumstances , but it's enough to get a warrant in order go fishing for something else to hang us by If FBI threatened you to keep quiet about something, should they be able to search your phone w  warrant OrinKerr  Rob Graham  ️  ErrataRob  February 22, 2016 This is less a meaningful question Most people are sheep, believing that as long as they don't stic their heads up above the herd, they are in no danger of getting their heads lopped off But even if it's not your head in danger, don't you want to protect those who do raise their heads  Rather than a  Going Dark  problem, ours is one of  Going Light  We all now carry a GPS tracking device in our pocket that contains a microphone and video camera We are quickly putting a microphone  and sometimes camera  in every room in our house, with devices like smart TVs and Amazon's Echo License plate readers line the roads, and face recognition  as well as video cameras  are located everywhere crowds gather All our credit card transactions are slurped up by the government, as are our phone metadata  even more so since the so-called USA FREEDOM ACT  The question is whether the  warrant upon probable cause  is sufficient protection for the Going Light problem  Or do we need more limits We activists think more limits are needed The first limits are the ones requiring no special laws Encryption is basic math -- the effort necessary to stop encryption would require a police state worse than that created by the War on Drugs The government should not be able to conscript programmers to write software on their behalf, as in the current Apple-v-FBI case The War on Drugs and the War on Terror have made a police state out of America We jail 10 times more people, per capita, than other free nations We can no longer travel without showing our papers at numerous checkpoints We can no longer communicate nor use credit cards without a record going to a government controlled database Yes, this police state works in our favor when it's us that have been a victim of crime But on the whole, we are now more in danger from the police state than we are from crime itself </description><link>http://www.secuobs.com/revue/news/598951.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598951.shtml</guid></item>
<item><title>Apple, FBI  backdoor  battle could ve been avoided with basic IT security practices</title><description>2016-02-22 00:46:50 - Security Bloggers Network : MobileIron confirmed that the IT department  could unlock  the particular phone if the software was installed </description><link>http://www.secuobs.com/revue/news/598930.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598930.shtml</guid></item>
<item><title>Carole Adams, Mom Who Lost Son In San Bernardino Shooting, Sides With Apple</title><description>2016-02-21 02:37:39 - Slashdot  Your Rights Online : HughPickenscom writes  The Washington Times reports that Carole Adams, the mother of Robert Adams -- a 40-year-old environmental health specialist who was shot dead in the San Bernardino, Calif, massacre by Syed Rizwan Farook and his wife in December -- is siding with Apple in its battle to protect consumer's privacy rights Adams says she stands by Apple's decision to fight a federal court order to create software that would allow federal authorities to access the shooter's password-blocked iPhone She understands the FBI's need to search Farook's phone, but says it has to be done without putting others at risk  This is what separates us from communism, isn't it  The fact we have the right to privacy,  she told the New York Post  I think Apple is definitely within their rights to protect the privacy of all Americans This is what makes America great to begin with, that we abide by a Constitution that gives us the right of privacy, the right to bear arms, and the right to vote   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598911.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598911.shtml</guid></item>
<item><title>Apple s Dilemma</title><description>2016-02-20 19:24:24 - Security Bloggers Network : By now, most people know that Apple is refusing to comply with a court order to decrypt the contents of a cell phone The Justice Department isn't too happy with that, and calls it a marketing StrategyThey are rightHowever, to call it just a marketin </description><link>http://www.secuobs.com/revue/news/598892.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598892.shtml</guid></item>
<item><title>Why Are Apple's Competitors Staying Silent On the iPhone Unlocking Fight </title><description>2016-02-20 15:00:17 - Slashdot  Your Rights Online : erier2003 writes  A court order forcing Apple to help the FBI access a terrorism suspect's iPhone has drawn responses from leading tech companies, newspaper editorial boards, and security experts But one major faction is staying largely silent  the computer and smartphone manufacturers who compete with Apple for business and could be subject to similar orders in the future if the company loses its high-profile case Silicon Valley software firms have universally backed Apple in its fight against the Justice Department, which won a ruling Tuesday from a California magistrate judge compelling Apple to design custom software to bypass security features on an iPhone used by one of the San Bernardino shooters But Apple's hardware competitors are staying on the sidelines  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598882.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598882.shtml</guid></item>
<item><title>Apple  Terrorist's Apple ID Password Changed In Government Custody</title><description>2016-02-20 02:10:28 - Slashdot  Your Rights Online : An anonymous reader writes  The Apple ID password linked to the iPhone belonging to one of the San Bernardino terrorists was changed less than 24 hours after the government took possession of the device, senior Apple executives said Friday If that hadn't happened, Apple said, a backup of the information the government was seeking may have been accessible Had that password not been changed, the executives said, the government would not need to demand the company create a 'backdoor' to access the iPhone used by Syed Rizwan Farook, who died in a shootout with law enforcement after a terror attack in California that killed 14 people The Department of Justice filed a motion to compel the company to do that earlier Friday  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598859.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598859.shtml</guid></item>
<item><title>DoJ Says Apple's Posture on iPhone Unlocking Is Just Marketing</title><description>2016-02-19 23:51:05 - Slashdot  Your Rights Online : New submitter kruug writes  The US Department of Justice filed a motion seeking to compel Apple Inc to comply with a judge's order for the company to unlock the iPhone belonging to one of the San Bernardino shooters, portraying the tech giant's refusal as a 'marketing strategy' The filing escalated a showdown between the Obama administration and Silicon Valley over security and privacy that ignited earlier this week The Federal Bureau of Investigation is seeking the tech giant's help to access the shooter's phone, which is encrypted The company so far has pushed back, and on Thursday won three extra days to respond to the order Reader Lauren Weinstein writes of this tack   The level of DOJ disingenuousness in play is simply staggering   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598855.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598855.shtml</guid></item>
<item><title>Internet Hijacked  If Hacked by Government Access Using Apple Code-signing Certificates</title><description>2016-02-19 23:41:57 - Security Bloggers Network :    FBI wants Apple to break our system of trust A California magistrate has ordered Apple to help the FBI gain access to an iPhone that was used by one of the terrorists in the 2015 San Bernardino shooting To achieve this, the FBI has asked Apple to create a backdoor Apple has refused, adamantly Of course Apple wants to support investigative efforts in this horrible crime But what the FBI is asking has ramifications that extend far beyond this one case Venafi supports Apple s decision to oppose the FBI s order Complying would break the system of trust used for over 20 years to secure the Internet By requesting the use of Apple certificates, the government is essentially hijacking the internet, hacking users, and undermining decades of security advancements MORESee how securing mobile device certificates prevents data loss and unauthorized access Not just access to one device FBI request hijacks internet security In a nutshell, the FBI has asked that Apple create a new version of its operating system that would bypass many security controls The FBI wants Apple to sign the software with Apple's certificate that will then run what the FBI refers to as a  signed iPhone Software file  which would be trusted on any iPhone This file would update the phone to the new operating system that is designed to bypass security that keeps the data on that phone confidential Although this has been requested to gain access to one particular device, this can t be viewed as a mechanism to decrypt one device used by one terrorist Once created, there is no way to ensure this software would not be used more broadly either by the government when it decides it has other needs for this access, or by cybercriminals who will undoubtedly seek to acquire this software This is really about threatening the very foundation of cybersecurity on the Internet keys and certificates It s about breaking of the system of trust that certificates provide for all software and to the Internet  If the government gets to use Apple software authenticated with Apple code-signing certificates, it would be able to bypass the security that protects people s personal data contacts, financial information, health information, and so much more Apple equates this to,  a master key, capable of opening hundreds of millions of locks  This would let governments, and eventually cybercriminals, get control and hijack systems and data Venefi defends trust It s not just breaking encryption, it s breaking trust In that light, the FBI's request may set a precedent that s not as much about breaking encryption as it is about breaking software It's why Tim Cook responded   The government is asking Apple to hack our own users and undermine decades of security advancements that protect our customers  This tactic is similar to those that made the computer worm, Stuxnet, so successful That attack used malware signed with valid certificates, which allowed the malicious software to run completely trusted We need to defend the foundation of cybersecurity -------------------------------------------------- One of the biggest advancements that Cook refers to is the system of trust established by keys and certificates one that is increasingly being used as an attack vector by cybercriminals Software runs the world And in this world, it s the role of certificates to know what is trusted or not, friend or foe whether using TLS or code-signing The breaking of the trust model of certificates is a growing threat something cybercriminals having actively been doing since the Stuxnet blueprint But it s much more important than just breaking encryption on one terrorist s smartphone It would represent an incredible escalation in the use of certificates as weapons Experts from Intel to industry CIOs are predicting the next big hacker marketplace to be a place where stolen certificates are sold I fully support the government using subpoenas and warrants to obtain access to messages, activity, and other types of data that is stored But running blanket and broad software on a device or getting access to a key for decryption will risk everyone s privacy and security If Apple is forced to create this backdoor, it would continue the current trajectory of online trust violations that are getting worse by the day In one hopeful turn of events, the chairman of the Senate Intelligence Committee, Richard Burr, decided against a proposal to criminalize firms that reject court orders to decrypt However, Senator Burr is still weighing whether to propose more stringent rules around access to encrypted data but at least this would not include criminal penalties Governments are hacking the internet in more ways than one This court order is just one example of how governments are hacking the internet Another is the Chinese CNNIC certificate authority, which was implicated in an incident in Egypt to impersonate Google an attempt that Google and Mozilla swiftly responded to and permanently untrusted CNNIC However, Apple and Microsoft, with tens of billions of dollars in revenue from the Chinese market per quarter on the line, failed to take any action for months Apple quietly decided to trust some of CNNIC certificates while Microsoft took no action The incident was not covered widely by the media at the FBI s request Unfortunately, in the case of CNNIC, unlike now, Apple was neither swift nor public in its response, leaving all the appearances of prioritizing Chinese profits over the security and privacy of all iPhone, iPad, and Mac users worldwide It s a welcome change to see Apple respond so quickly to the FBI s request and hopefully they will do the same with future threats to the security and privacy of their customers How this impacts enterprises So what does this mean for Global 5000 enterprises  I'd say knowing which keys and certificates you trust, and protecting those keys and certificate becomes even more important, especially in a time when they are increasingly of interest to both governments and bad guys If the government gets code signed with Apple certificates on court order, it is pretty much hijacking the Internet which is the lifeblood of your digital business What s next  Getting TLS keys and certificates on court order to decrypt  Internet hacked What do you think about the recent government actions that impact online trust  Do you agree with Apple s refusal to comply with the court order  </description><link>http://www.secuobs.com/revue/news/598850.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598850.shtml</guid></item>
<item><title>Apple vs FBI   Government Overreach or Apple Protections</title><description>2016-02-19 23:41:57 - Security Bloggers Network : There has been much being written and talked about in the news regarding the open letter Apple s CEO Tim Cook wrote about the FBI s request  Continue Reading   </description><link>http://www.secuobs.com/revue/news/598846.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598846.shtml</guid></item>
<item><title>Man admits he stole nude celebrity pics from Apple and Gmail accounts</title><description>2016-02-19 23:03:36 - Risk Assessment   Ars Technica : Phishing scheme gained illegal access to accounts storing 161 nude images </description><link>http://www.secuobs.com/revue/news/598842.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598842.shtml</guid></item>
<item><title>N Carolina Senator Drafting Bill To Criminalize Apple's Refusal To Aid Decryption</title><description>2016-02-19 16:58:13 - Slashdot  Your Rights Online : Ars Technica reports that North Carolina senator Richard Burr says he plans to introduce legislation  to criminalize a companyâ TM s refusal to aid decryption efforts as part of a governmental investigation  In a USA Today op-ed, Burr, griping that  t he newest Apple operating systems allow device access only to users â  even Apple itself canâ TM t get in,  drags out the usual bugaboos   Murderers, pedophiles, drug dealers and the others are already using this technology to cover their tracks   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598814.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598814.shtml</guid></item>
<item><title>Encryption isn't at stake, the FBI knows Apple already has the desired key</title><description>2016-02-19 15:59:39 - LinuxSecurity.com   Latest News : LinuxSecuritycom  Apple has been served with a court order at the FBI's request, demanding that it assist the government agency with unlocking an iPhone 5C that was used by Syed Rizwan Farook Farook and his wife, Tashfeen Malik, killed 14 and injured 24 in an attack in San Bernardino, California on December 2, 2015 </description><link>http://www.secuobs.com/revue/news/598809.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598809.shtml</guid></item>
<item><title>Pourquoi la demande du FBI auprès d'Apple constitue une violation du système de confiance   une question qui va bien au delà du chiffrement des données </title><description>2016-02-19 15:20:53 - Global Security Mag Online : En résumé, on demande à Apple de démonter le système de confiance utilisé depuis plus de 20 ans pour sécuriser Internet Cette action du gouvernement américain -qui exige de pouvoir utiliser des certificats Apple- constitue un détournement et un piratage d'Internet La question n'est pas de décrypter un téléphone utilisé par un terroriste Les certificats constituent le socle de la cybersécurité Si le gouvernement est autorisé à utiliser les certificats Apple, il contrôle le logiciel qui contrôle en    - Points de Vue </description><link>http://www.secuobs.com/revue/news/598803.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598803.shtml</guid></item>
<item><title>Apple vs FBI  What you need to know technically</title><description>2016-02-19 14:27:42 - Security Bloggers Network : The mainstream media was suddenly abuzz with the release of Apple CEO Tim Cook s open letter to the Apple s customers which calls FBI s actions as  unprecedented , Go on to the site to read the full article </description><link>http://www.secuobs.com/revue/news/598793.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598793.shtml</guid></item>
<item><title>Apple and  exceptional access  to crypto protection</title><description>2016-02-19 13:26:38 - Security Bloggers Network :    Apple is the latest in a host of technology players to be requested to allow exceptional access, that is, access in exceptional cases where it would be deemed to have high value relative to an active investigation The post Apple and  exceptional access  to crypto protection appeared first on We Live Security </description><link>http://www.secuobs.com/revue/news/598786.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598786.shtml</guid></item>
<item><title>Google, WhatsApp, Microsoft back Apple s defiance on encryption order</title><description>2016-02-19 13:26:38 - Security Bloggers Network : In the hours following Apple's letter about how it can't comply with a court order to decrypt a terrorist's phone, tech companies have lined up in support </description><link>http://www.secuobs.com/revue/news/598783.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598783.shtml</guid></item>
<item><title>Google CEO backs Apple in resisting court order to create iOS backdoor for San Bernardino investigation</title><description>2016-02-19 04:47:41 - Security Bloggers Network : Google's top executive is standing with Apple for refusing to comply with a court order that would require it to create an iOS backdoor in order to assist with an ongoing federal investigation into last year's San Bernardino shooting David Bisson repo </description><link>http://www.secuobs.com/revue/news/598747.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598747.shtml</guid></item>
<item><title>Poll  Do you think Apple should help the FBI crack open the San Bernardino iPhone </title><description>2016-02-19 04:47:41 - Security Bloggers Network : It's one of the biggest computer security stories of the year - but where do you stand  Check out my latest video and share your opinion </description><link>http://www.secuobs.com/revue/news/598746.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598746.shtml</guid></item>
<item><title>Encryption isn t at stake, the FBI knows Apple already has the desired key</title><description>2016-02-19 00:20:42 - Risk Assessment   Ars Technica : The FBI knows it can't bypass the encryption  it just wants to try more than 10 PINs </description><link>http://www.secuobs.com/revue/news/598729.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598729.shtml</guid></item>
<item><title>Réaction Balabit -Injection du Gouvernement américain ordonnant à Apple le décryptage d'un téléphone portable</title><description>2016-02-18 18:04:45 - Global Security Mag Online : Cette semaine a été marquée par l'injonction émise par la Justice américaine, ordonnant à Apple d'aider le FBI à décrypter le téléphone portable utilisé par l'un des auteurs de l'attentat terroriste de la commune de San Bernardino aux US Une injonction à laquelle le PDG d'Apple, Tim Cook a ainsi décidé de s'opposer au motif que cette   mesure sans précédent   menace la sécurité de nos clients   Le PDG d'Apple ajoutant que   même si nous pensons que les intentions du FBI sont bonnes, le gouvernement aurait tort    - Malwares </description><link>http://www.secuobs.com/revue/news/598704.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598704.shtml</guid></item>
<item><title>The Contrarian Response To Apple s Need For Encryption</title><description>2016-02-18 17:45:34 - Hackaday :    On December 2, 2015,  Syed Rizwan Farook  and  Tashfeen Malik  opened fire at a San Bernardino County Department of Public Health training event, killing 14 and injuring 22 This was the third deadliest mass shooting in the United States in recent memory, and began a large investigation by local, state, and federal agencies One piece of evidence recovered by the FBI was an iPhone 5C belonging to one of the shooters In the days and months after the shooting, the FBI turned to Apple to extract data from this phone A few days ago in an open letter to customers,  read more </description><link>http://www.secuobs.com/revue/news/598698.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598698.shtml</guid></item>
<item><title>A Message to Our Customers, Apple and FBI</title><description>2016-02-18 17:42:35 - Advanced Password Cracking   Insight : On Tuesday, a federal judge ordered Apple to assist the authorities in breaking into a locked iPhone 5C used by Syed Farook, who killed 14 in San Bernardino in December According to the FBI, the phone might contain critical information about connections with Islamic terrorist groups Apple opposed the motion and published an open letter   </description><link>http://www.secuobs.com/revue/news/598692.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598692.shtml</guid></item>
<item><title>BSides Columbus 2016 - The Pineapple is deadLong live the Pineapple</title><description>2016-02-18 08:06:34 - SecurityTube.Net : This talk will cover using the WiFI pineapple Now that many sites us HSTS, is there really any real functionality left with the Wifi Pineapple This talk will cover what you can still use the WiFi Pineapple in an assessment And also maybe discuss some fun things you can do with it also For More Information Please Visit - http wwwsecuritybsidescom w page 100611046 BSidesCMH2016 https wwwirongeekcom iphp page videos bsidescolumbus2016 mainlist </description><link>http://www.secuobs.com/revue/news/598624.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598624.shtml</guid></item>
<item><title>Risky Business  399 -- Apple vs the Government of the United States</title><description>2016-02-18 06:11:12 - Risky Business : Tagline  Oops This is going to get tricky Media URL  http mediariskybiz RB399mp3Content HeadersContent Length  36574046 Content Type  audio mpeg On this week's show we chat with Dan Guido from Trail of Bits about the stoush between Apple and the US department of justice In this week's sponsor interview we speak with Cris Thomas, aka Space Rogue Cris works for Tenable Network Security, this week's sponsor, and he joins us in this week's podcast to talk about NIST's cyber security framework Adam Boileau joins the show to discuss the week's security news Links to everything are in this week's show notes read more </description><link>http://www.secuobs.com/revue/news/598611.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598611.shtml</guid></item>
<item><title>Google CEO Finally Chimes In On FBI Encryption Case, Says He Agrees With Apple</title><description>2016-02-18 03:57:28 - Slashdot  Your Rights Online : An anonymous reader writes  After Tim Cook's eloquent letter explaining why Apple wouldn't help the FBI get encrypted data from the San Bernardino shooter's iPhone, the internet looked to Google to take a similar stand Now Google CEO Sundar Pichai has posted five tweets that seem to show he agrees with Cook Edward Snowden had previously suggested that Google's silence meant Google had  picked a side, but it's not the public's   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598604.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598604.shtml</guid></item>
<item><title>Judge Demands that Apple Backdoor an iPhone</title><description>2016-02-18 03:15:42 - Security Bloggers Network :    A judge has ordered that Apple bypass iPhone security in order for the FBI to attempt a brute-force password attack on an iPhone 5c used by one of the San Bernardino killers Apple is refusing The order is pretty specific technically This implies to me that what the FBI is asking for is technically possible, and even that Apple assisted in the wording so that the case could be about the legal issues and not the technical ones From Apple's statement about its refusal  Some would argue that building a backdoor for just one iPhone is a simple, clean-cut solution But it ignores both the basics of digital security and the significance of what the government is demanding in this case In today's digital world, the  key  to an encrypted system is a piece of information that unlocks the data, and it is only as secure as the protections around it Once the information is known, or a way to bypass the code is revealed, the encryption can be defeated by anyone with that knowledge The government suggests this tool could only be used once, on one phone But that's simply not true Once created, the technique could be used over and over again, on any number of devices In the physical world, it would be the equivalent of a master key, capable of opening hundreds of millions of locks from restaurants and banks to stores and homes No reasonable person would find that acceptable The government is asking Apple to hack our own users and undermine decades of security advancements that protect our customers including tens of millions of American citizens from sophisticated hackers and cybercriminals The same engineers who built strong encryption into the iPhone to protect our users would, ironically, be ordered to weaken those protections and make our users less safe We can find no precedent for an American company being forced to expose its customers to a greater risk of attack For years, cryptologists and national security experts have been warning against weakening encryption Doing so would hurt only the well-meaning and law-abiding citizens who rely on companies like Apple to protect their data Criminals and bad actors will still encrypt, using tools that are readily available to them Congressman Ted Lieu comments Here's an interesting essay about why Tim Cook and Apple are such champions for encryption and privacy Today I walked by a television showing CNN The sound was off, but I saw an aerial scene which I presume was from San Bernardino, and the words  Apple privacy vs national security  If that's the framing, we lose I would have preferred to see  National security vs FBI access  Slashdot thread </description><link>http://www.secuobs.com/revue/news/598601.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598601.shtml</guid></item>
<item><title>Edward Snowden Calls For Google To Side With Apple On Encryption Debate</title><description>2016-02-17 23:33:56 - Slashdot  Your Rights Online : An anonymous reader writes  Edward Snowden, the most famous whistle blower in the world, is calling for Google to side with Apple and against the FBI in the  most important tech case in a decade  On Tuesday, the FBI asked Apple to help it crack the password on an iPhone belonging to a shooter in the high profile San Bernardino case Apple CEO Tim Cook quickly responded with a public letter denying the request, calling it  an unprecedented step which threatens the security of our customers  Google creates Android, the most-used mobile operating system for smartphones in the world Google has been nowhere near as firm as Apple about its stance on un-compromised encryption - Android is famously an open sourced platform that anyone can modify Snowden issued his message in a tweet  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598583.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598583.shtml</guid></item>
<item><title>Apple says NO to iPhone backdoor in terror case</title><description>2016-02-17 20:10:00 - Security Bloggers Network : Apple is refusing to comply with a judge's order to unlock an encrypted iPhone used by one of the San Bernardino terrorists </description><link>http://www.secuobs.com/revue/news/598577.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598577.shtml</guid></item>
<item><title>Is Apple right to fight building a backdoor for iOS </title><description>2016-02-17 20:10:00 - Security Bloggers Network : Apple recently stated that it is going to fight building a backdoor for decrypting iOS devices after a court ordered it to do so Was this the right move  Yes No </description><link>http://www.secuobs.com/revue/news/598572.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598572.shtml</guid></item>
<item><title>iOS backdoor   Apple says no</title><description>2016-02-17 20:10:00 - Security Bloggers Network : Here s Tim Cook s letter to Apple users explaining why the use of the All Writs Act of 1789 to enable the FBI to compel Apple to provide software to gather evidence in the San Bernadino case is the start of a slippery slope  a position with which the Electronic Frontier Foundation agrees  Cook states  Specifically, the FBI wants us   </description><link>http://www.secuobs.com/revue/news/598571.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598571.shtml</guid></item>
<item><title>Apple fights order to build backdoor for San Bernardino shooter s phone</title><description>2016-02-17 18:04:42 - Security Bloggers Network : In a public statement, Apple has vowed to fight against building software to let government read its encrypted devices Over the last several years, Apple has taken an unus </description><link>http://www.secuobs.com/revue/news/598556.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598556.shtml</guid></item>
<item><title>Apple will fight court order to unlock gunman s iPhone</title><description>2016-02-17 18:04:12 - Help Net Security : A US magistrate judge has ordered Apple to help the FBI gain access to the contents of a PIN-locked iPhone 5C used by Syed Farook, one of the shooters in the San Bernardino shooting spree that unfolded last December The order The order is pretty specific  the judge requires the company to bypass or disable the auto-erase function, make it possible for the FBI to submit passcodes to the device electronically instead of physically, and   More   </description><link>http://www.secuobs.com/revue/news/598553.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598553.shtml</guid></item>
<item><title>Apple will oppose court order rather than hack customers</title><description>2016-02-17 15:23:22 - LinuxSecurity.com   Latest News : LinuxSecuritycom  Apple's CEO Tim Cook has reacted sharply to a federal court order in the US that would require the company to help the FBI search the contents of an iPhone 5c seized from Syed Rizwan Farook, one of the terrorists in the San Bernardino, California, attack on Dec 2 </description><link>http://www.secuobs.com/revue/news/598542.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598542.shtml</guid></item>
<item><title>Apple challenges 'chilling' demand to decrypt San Bernardino shooter's iPhone</title><description>2016-02-17 14:07:03 - Forensic Focus : Apple has hit back after a US federal magistrate ordered the company to help the FBI unlock the iPhone of one of the San Bernardino shooters, with chief executive Tim Cook describing the demand as  chilling  The court order focuses on Apple s security feature that slows down anyone trying to use  brute force  to gain access to an iPhone by guessing its passcode In a letter published on the company s website, Cook responded saying Apple would oppose the order and calling for public debate Read More  The Guardian  </description><link>http://www.secuobs.com/revue/news/598530.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598530.shtml</guid></item>
<item><title>Apple can comply with the FBI court order</title><description>2016-02-17 13:11:40 - Security Bloggers Network : Earlier today, a federal judge ordered Apple to comply with the FBI s request for technical assistance in the recovery of the San Bernadino gunmen s iPhone 5C Since then, many have argued whether these requests from the FBI are technically feasible given the support for strong encryption on iOS devices Based on my initial reading of   </description><link>http://www.secuobs.com/revue/news/598526.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598526.shtml</guid></item>
<item><title>Some notes on Apple decryption San Bernadino phone</title><description>2016-02-17 05:52:05 - Security Bloggers Network : Today, a judge ordered Apple to help the FBI decrypt the San Bernadino shooter's iPhone 5C Specifically disable the auto-erase that happens after 10 bad guessesenable submitting passcodes at a high speed electronically rather than forcing a human to t </description><link>http://www.secuobs.com/revue/news/598484.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598484.shtml</guid></item>
<item><title>Apple must to help FBI unlock San Bernardino gunman s phone  judge</title><description>2016-02-17 03:31:05 - Security Bloggers Network : The gunman killed 14 people in a terrorist shooting in California in December </description><link>http://www.secuobs.com/revue/news/598480.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598480.shtml</guid></item>
<item><title>Judge Tells Apple To Help FBI Access San Bernardino Shooters' iPhone</title><description>2016-02-17 02:30:01 - Slashdot  Your Rights Online : An anonymous reader writes  After a couple shot 14 people in San Bernardino, CA before being killed themselves on December 2nd, the authorities recovered a locked iPhone Since then, the FBI has complained it is unable to break the device's encryption, in a case that it has implied supports its desire for tech companies to make sure it can always have a way in Today the Associated Press reports that a US magistrate judge has directed Apple to help the FBI find a way in There's no word on exactly which model of iPhone was recovered, but Apple has said that at least as of iOS 8 it does not have a way to bypass the passcode on a locked phone  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598477.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598477.shtml</guid></item>
<item><title>Apple And ATT Sued For Infringement Over IPhone Haptic Patents</title><description>2016-02-14 02:18:49 - Slashdot  Your Rights Online : Haptic technology company Immersion has accused Apple and carrier AT T of infringement of three of its patents in the latest iPhone models and Apple watches Immersion, which claims over 2,100 issued or pending patents worldwide covering various aspects and commercial applications of haptic or touch feedback technology, has asked the US International Trade Commission to ban the import of the specified iPhone and Apple Watch models in the US, besides suing for damages in a Delaware federal court, company CEO Victor Viegas said in a conference call Thursday Immersion decided to include AT T and subsidiary AT T Mobility in the action because the carrier is the most significant distributor of the iPhone in the US  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/598241.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598241.shtml</guid></item>
<item><title>Miscellaneous Apple bites</title><description>2016-02-13 23:32:01 - grand stream dreams :    Looks like I am literally picking low-hanging fruit from my  to-blog  tree branches I previously reported this on my the struggles GSD post but am reposting here for topic inclusion The takeaway was to quit Process Explorer I ve seen a few other software installations where I have needed to close out Process Explorer entirely to make sure it doesn t get in the way of some installations Weird Of course, iTunes wanted to be updated, so I used the Apple Software Updater but it complained about the  iPod Service  not being able to start so the install kept failing I then tried to download and run the iTunes package rather than using the updater but that failed at the same point I found this post Service  iPod Service   iPod Service  could not be installed over in the Apple Support forums and followed  rickybpta  steps   close SysInternals's Process Explorer   if you have it and it's open     close all Task Manager s    close Windows Services console   servicesmsc     close all command prompts   cmdexe     open a cmdexe as Admin   run  sc create  iPod Service  binpath   C Program Files iPod bin iPodServiceexe    close all command prompts   cmdexe     open Windows Services console   servicesmsc     look for  iPod Service , see if it's not Disabled If so, start it   close Windows Services console   servicesmsc     Run iTunesmsi again   previously downloaded via the Apple Software Update's Only Download function   That did the trick and it went on without any other fuss I had purchased a Yeti Blue USB microphone a while back to up my audio recording game I had hoped to be able to eventually use it with my iPad iPhone but there were some challenges reported so I ve just stuck it out with my Windows 7 laptops where it has done a rocking-cool job of upping my audio game Couple that with Audacity and The Levelator from The Conversations Network and while I am no audio-engineer, I can do a fine good job for most recording needs So it was exciting to see this news    The iPhone can use the Lightning to USB adapter with iOS 92 - iMore   Lightning to USB Camera Adapter   Apple   How to import your DSLR or other camera's photos to your iPhone or iPad   iMore   Lightning to SD Card Camera Reader   Apple I need to update this post Claus s iPhone App List - Updated 01 2014 as I ve gone through some serious changes with the iOS apps I carry I have purchased more than a few as well so they must be that good   Hey Siri  Remind me to update that post  Apps of note to get  or are recommended  Music Memos   Apple   This one looks interesting but I m not sure it might really meet my audio-recording needs on my Apple gear GarageBand for iOS   Apple   This looked good too, but maybe there is a better audio mixing app for  studio  mixing Due   Apple App Store   This is the best reminder count-down timer recurring event reminder app ever Period Buy it Round   Apple App Store   Because Due doesn t currently handle recurring reminder events of less than a day  that I am aware of , you can t yet use it to set medication dosing reminders This looks to be designed specifically for that need Mighty Timer   Apple App Store   free app to help with brewing your tea Alvis and her husband gave Lavie and I some very nice porcelain cups along with some fancy Matcha style tea It has to be brewed very carefully but is super good  Cheers --Claus Valca </description><link>http://www.secuobs.com/revue/news/598235.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598235.shtml</guid></item>
<item><title>Deaccelerating The Apple IIc Plus</title><description>2016-02-13 13:37:10 - Hackaday :    The Apple IIc Plus is arguably   very arguably from my experience   the best Apple II computer ever made It s portable, faster than the IIe, had a much higher capacity built-in drive, and since the Plus could run at 4MHz, it was faster than the strange eight or sixteen bit Apple IIGS Recently,  Quinn  has been fascinated with the IIc Plus, and has gone so far as to build a custom gamepad and turn the IIc Plus into a laptop Now, she s turned her attention to the few things Apple got wrong with the Apple IIc Plus   the  read more </description><link>http://www.secuobs.com/revue/news/598197.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/598197.shtml</guid></item>
<item><title>91,000 Washington State Apple Health  Medicaid  clients notified of data breach</title><description>2016-02-10 01:35:59 - Office of Inadequate Security :  The Washington StateHealth Care Authority issued the following press release today  State notifies 91,000 Apple </description><link>http://www.secuobs.com/revue/news/597809.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/597809.shtml</guid></item>
<item><title>Giving WiFi To An Apple Newton</title><description>2016-02-09 22:03:11 - Hackaday :    The Apple Newton gets a bad rap, partly because of the bad handwriting recognition of the first version of the firmware, and mostly because Steve Jobs hated it Those who know of the Newton love the Newton  it has an exceptionally well-designed interface, the handwriting recognition is great with updated firmware  Jake  has the king of the Newtons   a MessagePad 2100 There s a hidden port in this machine for a modem card, but Apple never made one While other Newton aficionados trudge along with old PCMCIA WiFi cards that only support 80211a without WPA2,  Jake  thought it would be  read more </description><link>http://www.secuobs.com/revue/news/597793.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/597793.shtml</guid></item>
<item><title>Patent Troll VirnetX Awarded  626M In Damages From Apple</title><description>2016-02-04 10:37:43 - Slashdot  Your Rights Online : Tackhead writes  Having won a  200M judgement against Microsoft in 2010, lost a  258M appeal against Cisco in 2013, and having beaten Apple for  368M in 2012, only to see the verdict overturned in 2014, patent troll VirnetX is back in the news, having been awarded  626M in damages arising from the 2012 Facetime patent infringement case against Apple  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/597342.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/597342.shtml</guid></item>
<item><title>Apple s Siri finally stops sending abortion seekers to adoption centers</title><description>2016-02-02 15:11:47 - Security Bloggers Network : It s taken over 4 years, but Siri has finally stopped sending people to adoption centers when they ask their iPhones where they can get an abortion </description><link>http://www.secuobs.com/revue/news/597141.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/597141.shtml</guid></item>
<item><title>Green Hills Software permet des accès sécurisés à Apple CarPlay et Androïd Auto dans les véhicules connectés </title><description>2016-01-26 01:07:18 - Global Security Mag Online : Green Hills Software, spécialiste mondial des systèmes d'exploitation à haut niveau d'assurance, annonce l'intégration de la technologie RACE Smartphone Connectivity d'AllGo Systems à la plate-forme de virtualisation INTEGRITY  Multivisor  pour des accès gérés aux services Apple CarPlay et Androïd Auto Une connectique pour les téléphones iPhone et Android à l'intérieur des automobiles devient impérative pour que les véhicules connectés entrent véritablement dans l'ère de l'infodivertissement et que le    - Produits </description><link>http://www.secuobs.com/revue/news/596475.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/596475.shtml</guid></item>
<item><title>Apple Court Testimony Reveals Why It Refuses To Unlock iPhones For Police</title><description>2016-01-25 19:57:43 - Slashdot  Your Rights Online : blottsie writes  Newly unsealed court transcripts from the US District Court for the Eastern District of New York show that Apple now refuses to unlock iPhones for law enforcement, saying  In most cases now and in the future, the government s requested order would be substantially burdensome, as it would be impossible to perform   Right now Apple is aware that customer data is under siege from a variety of different directions Never has the privacy and security of customer data been as important as it is now,  Apple lawyer Marc Zwillinger said at the hearing  A hypothetical consumer could think if Apple is not in the business of accessing my data and if Apple has built a system to prevent itself from accessing my data, why is it continuing to comply with orders that don t have a clear lawful basis in doing so   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/596457.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/596457.shtml</guid></item>
<item><title>Lego Technic of the Past Eliminates Apple   with Arduino and Touchscreen</title><description>2016-01-25 10:15:44 - Hackaday :     JAC_101 , the Director of Legal Evil Emeritus for LVL1 Hackerspace  don t ask me, it s their title system , was challenged to a hacking duel It all started years ago The person who is now president of LVL1, visited the space for the first time and brought with her a discarded Apple II controller for Lego bricks which had previously belonged to her father Excited to test it, the space found that, unfortunately, LVL1 s Apple II wouldn t boot An argument ensued, probably some trash talking, and  JAC_101  left with the challenge  Could he build an Arduino interface for the Apple II Lego  read more </description><link>http://www.secuobs.com/revue/news/596394.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/596394.shtml</guid></item>
<item><title>Finally, an Acceptable Use of the Apple Watch</title><description>2016-01-24 01:04:07 - Hackaday :    For many of us, we remember the days of the Apple Classic Macintosh For  Erich Styger , his days of development in Pascal and Modula-2 are long over, but he still gets warm and tingly thinking back to the classic white box we knew and loved So he decided to 3D print a Classic Mac to use as his Apple Watch charging station He started with an existing model on Thingiverse and modified it to better suit his needs   sharing CAD makes the design process go ever so much faster It consists of two parts, an outer shell that looks  read more </description><link>http://www.secuobs.com/revue/news/596342.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/596342.shtml</guid></item>
<item><title>Reversing Apple s syslogd bug</title><description>2016-01-22 23:41:27 - Reverse Engineering : submitted by </description><link>http://www.secuobs.com/revue/news/596292.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/596292.shtml</guid></item>
<item><title> Apple kills 28 flaws in OS X, iOS and QuickTime</title><description>2016-01-20 15:05:21 - Help Net Security : If you use Apple's OS X El Capitan, iOS and QuickTime on any of your computers and devices, you might want to implement the latest updates pushed out on Tuesday OS X El Capitan 10113  the latest </description><link>http://www.secuobs.com/revue/news/596047.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/596047.shtml</guid></item>
<item><title>Trump Says He'd Make Apple Build Computers In the US</title><description>2016-01-19 15:45:35 - Slashdot  Your Rights Online : mrspoonsi writes with Business Insider's report that presidential candidate Donald Trump says he'd like to make Apple  start building their damn computers and things in this country instead of other countries  From the article  Trump's ultimatum to the most valuable company in the world was made towards the end of a 45-minute speech he gave at Liberty University in Virginia on Monday The most popular candidate in the Republican party said he would impose a 35pourcents business tax on American businesses manufacturing outside of the United States Apple has manufactured its Mac Pro at a factory in Texas since 2013, but the vast majority of its products  including the iPhone  are largely made and assembled in China How Trump would force Apple's supply chain, which relies heavily on a vast network of suppliers and large factories throughout Asia, to be brought stateside remains unknown Apple CEO Tim Cook recently called the US tax code  awful for America  If Trump  or anyone  thinks this is a good idea, why start or stop with Apple   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/595965.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/595965.shtml</guid></item>
<item><title>Apple asked widow for court order when she sought late husband s password</title><description>2016-01-18 20:58:51 - Risk Assessment   Ars Technica : Woman supplied Apple will and death certificate, but it wasn't enough </description><link>http://www.secuobs.com/revue/news/595893.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/595893.shtml</guid></item>
<item><title>Apple fails to properly fix Gatekeeper security hole, claims researcher</title><description>2016-01-17 15:50:38 - Security Bloggers Network : Despite two attempts, Apple appears to have failed to properly fix OS X against a serious security issue that could help hackers install malicious code Read more in my article on the Mac Security blog </description><link>http://www.secuobs.com/revue/news/595797.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/595797.shtml</guid></item>
<item><title>Nvidia Blames Apple For Bug That Exposes Browsing In Chrome's Incognito</title><description>2016-01-14 06:59:11 - Slashdot  Your Rights Online : An anonymous reader points out this story at VentureBeat about a bug in Chrome's incognito mode that might be a cause for concern for some Apple users From the story   If you use Google Chrome's incognito mode to hide what you browse  ahem, porn , this might pique your interest University of Toronto engineering student Evan Andersen discovered a bug that affects Nvidia graphics cards, exposing content that you thought would be for your eyes only And because this only happens on Macs, Nvidia is pointing the finger at Apple   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/595611.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/595611.shtml</guid></item>
<item><title>Apple Faces  5 Million Lawsuit Over Allegedly Slowing the iPhone 4S With iOS 9</title><description>2015-12-31 22:14:08 - Slashdot  Your Rights Online : An anonymous reader writes  A  5 million lawsuit filed in New York federal court alleges that Apple's iOS 9 mobile operating software significantly slows down the iPhone 4S According to the complaint   The update significantly slowed down their iPhones and interfered with the normal usage of the device, leaving Plaintiff with a difficult choice  use a slow and buggy device that disrupts everyday life or spend hundreds of dollars to buy a new phone Apple explicitly represented to the public that iOS 9 is compatible with and supports the iPhone 4S And Apple failed to warn iPhone 4S owners that the update may or will interfere with the device's performance   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/594618.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/594618.shtml</guid></item>
<item><title>Apple warns UK surveillance bill would  spark serious international conflicts </title><description>2015-12-22 17:44:18 - Security Bloggers Network : Facebook, Google, Microsoft, Twitter, and Yahoo have also formally opposed the bill, a report says </description><link>http://www.secuobs.com/revue/news/593968.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/593968.shtml</guid></item>
<item><title>Apple CEO Tim Cook sticks to his guns   No encryption backdoors </title><description>2015-12-22 02:10:04 - Security Bloggers Network : Tim Cook of Apple told the CBS show 60 Minutes that  if you put a backdoor in, that backdoor's for everybody  So, no, Apple won't do it </description><link>http://www.secuobs.com/revue/news/593887.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/593887.shtml</guid></item>
<item><title>Apple To Pay Ericsson Patent Royalties On iPhones and iPads</title><description>2015-12-21 22:50:30 - Slashdot  Your Rights Online : itwbennett writes  In settlement of a long-standing dispute over patents that Ericsson considers essential to the implementation of a number of mobile communications standards, including GSM, the 3G standard UMTS and LTE, Apple has agreed to pay Ericsson royalties on sales of iPhones and iPads While the companies would not disclose further details of their agreement, Ericsson gave a hint about its value For the full year 2015, Ericsson predicts its intellectual property rights revenue will amount to between 13 billion and 14 billion Swedish krona  164 billion  In comparison, it reported IPR revenue of 106 billion krona for the full year 2014, including a 42 billion krona lump sum in settlement of a similar global dispute with Samsung Electronics  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/593870.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/593870.shtml</guid></item>
<item><title>Apple continues to defend encryption</title><description>2015-12-21 16:06:39 - Security Bloggers Network :    Apple s Tim Cook has once again defended encryption, explaining that the introduction of a backdoor would create vulnerabilities and leave devices exposed to threats The post Apple continues to defend encryption appeared first on We Live Security </description><link>http://www.secuobs.com/revue/news/593833.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/593833.shtml</guid></item>
<item><title>Tim Cook Calls Apple's Tax Questions 'Political Crap'</title><description>2015-12-20 11:25:46 - Slashdot  Your Rights Online : nerdyalien writes  Apple CEO Tim Cook dismissed as  total political crap  the notion that the tech giant was avoiding taxes Cook's remarks, made on CBS' 60 Minutes show, come amid a debate in the United States over corporations avoiding taxes through techniques such as so-called inversion deals, where a company redomiciles its tax base to another country Apple holds  1811 billion in offshore profits, more than any other US company, and would owe an estimated  592 billion in taxes if it tried to bring the money back to the US, a recent study based on SEC filings showed The current tax code was made for the industrial age, and not the  digital age,  Cook said  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/593738.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/593738.shtml</guid></item>
<item><title>BlackBerry CEO rips into Apple s pro-privacy stance, ignores own hypocrisy</title><description>2015-12-17 23:05:54 - Security Bloggers Network : Analysis  Apple and Google have put device access into their user's hands, locking out the government in the process BlackBerry said that has put us in a  dark place  </description><link>http://www.secuobs.com/revue/news/593548.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/593548.shtml</guid></item>
<item><title>Danielle Applestone and the Story of Every Othermill</title><description>2015-12-14 22:38:05 - Hackaday :    Many of us may qualify as  makers,  but how about a  maker of machines   Danielle Applestone  tells us what kinks to look for whilst embarking on your hardware startup adventure Co-founder of Other Machine Co, the company that makes a PCB Mill that holds tolerances as tight as a thousandth of an inch,  Danielle  holds degrees in chemistry and materials science from MIT and UT Austin While she may tell you that the math for running a hardware company is easy, knowing what numbers to crunch and keeping track of them has been part of her key to success So  read more </description><link>http://www.secuobs.com/revue/news/593123.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/593123.shtml</guid></item>
<item><title>This is what a Tor Supporter looks like  Molly Crabapple</title><description>2015-12-09 23:39:59 - The Tor Blog blogs :    Molly Crabapple Tor Supporter Make a donation today  </description><link>http://www.secuobs.com/revue/news/592674.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592674.shtml</guid></item>
<item><title> Apple releases security updates for every major product</title><description>2015-12-09 10:32:48 - Help Net Security : Apple has released security updates for the operating systems running on the company's iPhones, computers, Apple TV and various versions of smartwatches, as well as Xcode and Safari The Xcode upda </description><link>http://www.secuobs.com/revue/news/592571.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592571.shtml</guid></item>
<item><title>Popularity of Apple devices prompts surge of new threats</title><description>2015-12-08 15:16:19 - Symantec Connect   Security Response   Billets : Apple users can no longer be complacent about security, as the number of infections and new threats rises  IMAGE  Read More </description><link>http://www.secuobs.com/revue/news/592459.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592459.shtml</guid></item>
<item><title>DEF CON 23 - Wireless Village - Kitchen and Kinne - Sniffin WiFi Sippin Pineapple Juice</title><description>2015-12-08 08:12:27 - SecurityTube.Net : Why crack the network when you can be the network  Join Sebastian Kinne and Darren Kitchen of Hak5 as they slice the WiFi Pineapple down to its core From tracking and reporting to recon and targeting From the next generation rogue access point to the future of the fruit Learn what's possible with the WiFi Pineapple Mark V Plus, adventures in not getting arrested on the Golden Gate Bridge Speaker Bios  Darren Kitchen is the founder of Hak5, an Internet television show inspiring hackers and IT pros since 2005 Breaking out of the 1990s phone phreak scene, Darren has continued to foster his passion for information security throughout his career as a systems administrator, presenter and now creator of nefarious penetration testing tools He also pwns you at Unreal Tournament Sebastian Kinne is the lead developer of the WiFi Pineapple Prior to hacking fruits, he reverse engineered MMORPG network protocols while completing his BSc in Computer Science As an avid speaker, trainer and wireless enthusiast, he has probably tracked your smartphone's WiFi in a demo or two For More Information Please Visit  - https wwwdefconorg html defcon-23 dc-23-indexhtml </description><link>http://www.secuobs.com/revue/news/592386.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592386.shtml</guid></item>
<item><title>DEF CON 23 - Wireless Village - Catatonic - Tospo Virus  Weaponizing WiFi Pineapple Vulnerabilities</title><description>2015-12-08 08:12:27 - SecurityTube.Net : Responsible disclosure of bugs in the Hak5 Wifi Pineapple, release of corresponding metasploit modules, and a walk through of weaponizing these bugs into a functioning worm originally designed for release at DEFCON23 Including novel methods for near proximity, low bandwidth, data ex-filtration in utilizing 80211x packets Speaker Bio  Catatonic has three great loves in his life, his wife, his computer, and his whiskey For More Information Please Visit  - https wwwdefconorg html defcon-23 dc-23-indexhtml </description><link>http://www.secuobs.com/revue/news/592384.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592384.shtml</guid></item>
<item><title>Apple's Legal Fight With Samsung Revealed a Gold Mine of Top-Secret Information</title><description>2015-12-07 20:28:53 - Slashdot  Your Rights Online : An anonymous reader writes with this story about how the Apple vs Samsung battle brought to light the inner workings of Apple product development BGR reports   Following a contentious patent battle that raged on for nearly five years, Samsung last week finally agreed to pay Apple  548 million in damages for infringing upon a number of iPhone and iPad patents While Samsung may still be holding out hope that it may someday recover those millions, it seems that we can finally start closing the book on the most widely publicized patent dispute in recent memory, one which saw Apple and Samsung battle it out in courtrooms across all corners of the globe One of the more interesting aspects of Apple's legal battle with Samsung is that it gave us an unprecedented look behind the veil of secrecy that typically shrouds all aspects of Apple's product development and day-to-day operations Over the course of discovery, innumerable court filings, and a fascinating trial, the inner workings of Apple were brought to the forefront for the fist time in history From photographs of iPhone prototypes to how Apple conducts market research, Apple's legal battles with Samsung provided tech enthusiasts with a treasure trove of previously top-secret information With Samsung now agreeing to pony up for damages, we thought it'd be a good time to take a step back, reminisce, and take a look at some of the more interesting nuggets of information the hard-fought patent dispute brought to light   IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/592342.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592342.shtml</guid></item>
<item><title>Samsung Agrees To Pay Apple  548 Million Over Smartphone Patents</title><description>2015-12-04 15:30:36 - Slashdot  Your Rights Online : An anonymous reader writes  After years of legal wrangling over smartphone patents, Apple and Samsung appear to have reached an agreement The two companies released a joint statement  PDF  saying Samsung will pay Apple  548 million before December 14th Apple must send them an invoice before they'll pay It's not a complete stand-down  even their agreement contains disagreement  The statement notes that Samsung 'continues to reserve all rights to obtain reimbursement from Apple,' although in the same document, Apple disputes these rights  Not only does the joint statement reserve Samsung's right to take some of this money back in any future cases, but this summer, the South Korean company announced it would be requesting a US Supreme Court review of its legal case  At the very least, it's a big step toward resolving the mountain of patent issues between the companies  IMAGE   IMAGE  Share on Google  Read more of this story at Slashdot </description><link>http://www.secuobs.com/revue/news/592123.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592123.shtml</guid></item>
<item><title> Apples Swift programming language is now open source</title><description>2015-12-04 10:00:25 - Help Net Security : Apple announced that its Swift programming language is now open source Swift is a powerful and intuitive programming language that gives developers the freedom and capabilities they need to create th </description><link>http://www.secuobs.com/revue/news/592089.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592089.shtml</guid></item>
<item><title>Tesla is copying Apple s business model</title><description>2015-12-04 08:04:58 - Security Bloggers Network : One of the interesting things about Tesla is that the company is trying to copy Apple's business model As a Silicon Valley entrepreneur myself, and an owner of a Tesla car, I thought I'd write up what that meansThere are two basic business models in  </description><link>http://www.secuobs.com/revue/news/592081.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/592081.shtml</guid></item>

 </channel>
</rss>
