Firefox For iOS Gets Tracking Protection, Firefox Focus For Android Gets Tabs Slashdotby BeauHD on firefox at January 1, 1970, 1:00 am (cached at September 21, 2017, 11:34 pm)

An anonymous reader quotes a report from VentureBeat: Mozilla today released Firefox 9.0 for iOS and updated Firefox Focus for Android. The iOS browser is getting tracking protection, improved sync, and iOS 11 compatibility. The Android privacy browser is getting tabs. You can download the former from Apple's App Store and the latter from Google Play. This is the first time Firefox has offered tracking protection on iOS, and Nick Nguyen, vice president of product at Mozilla, notes that it's finally possible "thanks to changes by Apple to enable the option for 3rd party browsers." This essentially means iPhone and iPad users with Firefox and iOS 11 will have automatic ad and content blocking in Private Browsing mode, and the option to turn it on in regular browsing. This is the same feature that's available in Firefox for Android, Windows, Mac, and Linux, as well as the same ad blocking technology used in Firefox Focus for Android and iOS.

Read more of this story at Slashdot.

Facebook to turn over Russian-linked ads to Congress (ZDNet) SANS ISC SecNewsFeed(cached at September 21, 2017, 11:30 pm)

Getting serious about IoT security (IT Toolbox Blogs) SANS ISC SecNewsFeed(cached at September 21, 2017, 11:30 pm)

Odinga: Kenya's presidential vote results 'manipulated' AL JAZEERA ENGLISH (AJE)(cached at September 21, 2017, 11:00 pm)

Presidential hopeful praises top court's decision to order Kenya's fresh election after claims of manipulation.
Canada's Tough New Breach Reporting Regulations (InfoRiskToday) SANS ISC SecNewsFeed(cached at September 21, 2017, 11:00 pm)

How to set up SSH keys in Seahorse (TechRepublic) SANS ISC SecNewsFeed(cached at September 21, 2017, 11:00 pm)

Security Researchers Warn that Third-Party GO Keyboard App is Spying on Millions of Slashdotby msmash on security at January 1, 1970, 1:00 am (cached at September 21, 2017, 10:34 pm)

An anonymous reader shares a report: Security researchers from Adguard have issued a warning that the popular GO Keyboard app is spying on users. Produced by Chinese developers GOMO Dev Team, GO Keyboard was found to be transmitting personal information about users back to remote servers, as well as "using a prohibited technique to download dangerous executable code." Adguard made the discovery while conducting research into the traffic consumption and unwanted behavior of various Android keyboards. The AdGuard for Android app makes it possible to see exactly what traffic an app is generating, and it showed that GO Keyboard was making worrying connections, making use of trackers, and sharing personal information. Adguard notes that there are two versions of the keyboard in Google Play which it claims have more than 200 million users in total.

Read more of this story at Slashdot.

Sir David Attenborough on his hunt for the Kimodo Dragon BBC News | Science/Nature | UK Edition(cached at September 21, 2017, 10:30 pm)

Sir David Attenborough spoke to the BBC about Zoo Quest, the environment and the planet's future.
Emails threatening DDoS allegedly from Phantom Squad, (Thu, Sep 21st) SANS Internet Storm Center, InfoCON: green(cached at September 21, 2017, 10:30 pm)

Introduction

As a follow-up to one of our June 2017 diaries asking people to forward us any DDoS threats, we received yet another example: 

Date: Tuesday 2017-09-19 at 18:04 UTC
Subject: DDoS Warning
From: <uid101080@web.websupport.sk.>
Message-Id: <1505844251.007448.31360.nullmailer@me>

Hello, [removed]

FORWARD THIS MAIL TO WHOEVER IS IMPORTANT IN YOUR COMPANY AND CAN MAKE DECISION!

We are Phantom Squad

Your network will be DDoS-ed starting Sept 30st 2017 if you don't pay protection fee - 0.2 Bitcoin @ [removed].

If you don't pay by Sept 30st 2017, attack will start, yours service going down permanently price to stop will increase to 20 BTC and will go up 10 BTC for every day of attack.

This is not a joke.

 

Details

Since 2017-09-19, at least 4 people have tweeted about the same type of emails, supposedly from Phantom Squad:

This feels like a scam using the notariety of Phantom Squad's name, because the group has gotten some fairly high-profile press coverage in recent years.  In December 2015, Phantom Squad claimed responsibility for a DDoS attack against Xbox Live.  A year later in December 2016, Phantom Squad was apparently involved in a DDoS attack against Steam.  However, I haven't found any evidence yet this group is involved in small business extortion.

Wheter or not this email is legitimate or fake, they all use notariety of the group's name to make the threat sound plausible.

In our June 2017 diary about fake DDoS extortion emails, Johannes Ullrich provides some guidance for people that receive these types of messages.  Tips include:

Final words

Thanks to everyone who already forwarded examples to us.  As Johannes previously asked in June 2017, please continue to forward us any similar emails.  We can always use the additional data.

A santized copy of our most current example can be found here.  It's in a password-protected zip archive.  If you don't know the password, look here.

---
Brad Duncan
brad [at] malware-traffic-analysis.net

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Facebook Will Share Copies of Political Ads Purchased by Russian Sources With the US Slashdotby msmash on social at January 1, 1970, 1:00 am (cached at September 21, 2017, 10:04 pm)

An anonymous reader shares a report: Facebook will turn over copies of political ads purchased by Russian sources to congressional lawmakers, who are investigating the country's potential interference in the 2016 U.S. presidential election. Initially, Facebook had only released those ads -- 3,000 of them, valued at about $100,000 -- to Robert Mueller, the former FBI director who is spearheading the government's probe into Russia's actions. Facebook had withheld those details from House and Senate leaders, citing privacy concerns. But the move drew sharp rebukes from the likes of Sen. Mark Warner, the top Democrat on the Senate Intelligence Committee, who has charged in recent days that Facebook may not have done enough to scan its systems for potential Russian influence and to ensure that such foreign purchases -- otherwise illegal under U.S. law -- don't happen again. "After an extensive legal and policy review, today we are announcing that we will also share these ads with congressional investigators," wrote Colin Stretch, the company's general counsel. "We believe it is vitally important that government authorities have the information they need to deliver to the public a full assessment of what happened in the 2016 election."

Read more of this story at Slashdot.

Config-Model-2.110 search.cpan.orgby Dominique Dumont at January 1, 1970, 1:00 am (cached at September 21, 2017, 10:03 pm)

Create tools to validate, migrate and edit configuration files
Minion-7.06 search.cpan.orgby Sebastian Riedel at January 1, 1970, 1:00 am (cached at September 21, 2017, 10:03 pm)

Job queue
Alien-GMP-1.05 search.cpan.orgby Graham Ollis at January 1, 1970, 1:00 am (cached at September 21, 2017, 10:03 pm)

Alien package for the GNU Multiple Precision library.
HIPAA Privacy Compliance After a Hurricane (InfoRiskToday) SANS ISC SecNewsFeed(cached at September 21, 2017, 10:00 pm)

[no title] Scripting News(cached at September 21, 2017, 9:33 pm)

Roger Stone predicts a Civil War if Trump is impeached. What happens when they find out how they lost their health insurance?