New Hacking Tool Lets Users Access a Bunch of DVRs and Their Video Feeds Slashdotby BeauHD on security at January 1, 1970, 1:00 am (cached at May 6, 2018, 10:34 pm)

An anonymous reader writes: "An Argentinian security researcher named Ezequiel Fernandez has published a powerful new tool yesterday that can easily extract plaintext credentials for various DVR brands and grant attackers access to those systems, and inherently the video feeds they're supposed to record," reports Bleeping Computer. "The tool, named getDVR_Credentials, is a proof-of-concept for CVE-2018-9995, a vulnerability discovered by Fernandez at the start of last month, [affecting TBK DVR systems]. Fernandez discovered that by accessing the control panel of specific DVRs with a cookie header of 'Cookie: uid=admin,' the DVR would respond with the device's admin credentials in cleartext." Tens of thousands of vulnerable devices available online can be hijacked with their video feeds assembled in voyeur sites, like it's been done in the past.

Read more of this story at Slashdot.

Fight between bandits and militia in northern Nigeria kills 45 AL JAZEERA ENGLISH (AJE)(cached at May 6, 2018, 10:30 pm)

Militia responds to attack by armed bandits on Gwaska village in Kaduna state as fighting leaves dozens dead.
Chart-Plotly-0.019 search.cpan.orgby Pablo Rodríguez at January 1, 1970, 1:00 am (cached at May 6, 2018, 10:03 pm)

Generate html/javascript charts from perl data using javascript library plotly.js
Dancer-Plugin-SimpleCRUD-1.15 search.cpan.orgby David Precious at January 1, 1970, 1:00 am (cached at May 6, 2018, 10:03 pm)

very simple CRUD (create/read/update/delete)
DateTime-Locale-1.20 search.cpan.orgby Dave Rolsky at January 1, 1970, 1:00 am (cached at May 6, 2018, 10:03 pm)

Localization support for DateTime.pm
Plack-Middleware-Camelcadedb-0.02 search.cpan.orgby Mattia Barbon at January 1, 1970, 1:00 am (cached at May 6, 2018, 10:03 pm)

interactive debugging for Plack applications
YAML-1.24_001 search.cpan.orgby Tina Müller at January 1, 1970, 1:00 am (cached at May 6, 2018, 10:03 pm)

YAML Ain't Markup Language™
If Fortnite Were a Website, It Would Rival Reddit and Amazon Slashdotby BeauHD on internet at January 1, 1970, 1:00 am (cached at May 6, 2018, 9:34 pm)

Tom's Guide gives us some perspective on just how big of a cultural phenomenon the game Fortnite is: "if Fortnite were a website, it would be one of the top five in the United States." From the report: Take a quick look at Alexa's list of top U.S. websites, and you'll see Google, YouTube, Facebook, Reddit and Amazon in the top five. No surprises there. But as a quick Google Trends search reveals, Fortnite has become a hotter search term than Reddit. What some might see as a flash-in-the-pan gaming fad is actually outpacing one of the web's hottest destinations. "More people in the U.S. are searching for 'Fortnite' on Google than they are for 'Reddit' and these searches have risen sharply over the last two months," said John DeFeo, VP of Internet Marketing at Purch, Tom's Guide's parent company. "When you consider that Fortnite had more than 3 million concurrent players in February, I believe that if Fortnite were a website, it would be among the top five in the U.S., duking it out with Reddit and Amazon."

Read more of this story at Slashdot.

The Angry Founders of the Internet Scripting News(cached at May 6, 2018, 9:03 pm)

We should start an "Angry Founders of the Internet" social club to discuss what the fuck happened and how can we tell people about the magic that underlies the crapware that the bigco's are shoveling at us. It really is beautiful and amazing in there.

Think of it this way. It's easier to take the Interstate highway everywhere, but if you do that, you miss the charming B&Bs, the dramatic beaches, restaurants, jazz clubs. The thrill of riding a bike, hiking the Appalachian Trail, skiing. All that intellectually unperpins this.

[no title] Scripting News(cached at May 6, 2018, 9:03 pm)

Braintrust query: I'm looking to connect to the people at Lexis/Nexis who are running weblogs.com. There's a new configuration problem.
OIC to assume 'stronger role' over Rohingya crisis AL JAZEERA ENGLISH (AJE)(cached at May 6, 2018, 9:00 pm)

The Organisation of Islamic Cooperation says it will create a committee on accountability for crimes against Rohingya.
Placing Election Ads On Google Will Require a Government ID Slashdotby BeauHD on advertising at January 1, 1970, 1:00 am (cached at May 6, 2018, 8:34 pm)

Google announced new policies Friday that will require advertisers to prove they are a U.S. citizen or permanent resident when buying election ads. "Under the new guidelines, Google will ask advertisers -- be they individuals, organizations, or political action committees -- to prove they are who they claim to be," reports Gizmodo. "It will also require the ads to include a clear disclosure of who is paying for it." From the report: The change comes after Google and other social media companies revealed their advertising platforms were abused by foreign actors, including the Russian government-backed troll farm Internet Research Agency, during the 2016 U.S. presidential election. It also places Google's policies in line with U.S. laws for traditional media that restrict foreign entities from running election ads. Where Google's effort falls short, at least in its current iteration, is the new policies only cover ads featuring candidates running for office. So-called "issue ads" that advocate a certain point of view on hot-button topics are not covered in Google's policies.

Read more of this story at Slashdot.

BSD-Getfsent-0.17_01 search.cpan.orgby Steven Schubiger (stsc) at January 1, 1970, 1:00 am (cached at May 6, 2018, 8:03 pm)

Get file system descriptor file entry
Syrian refugees: Tension and solidarity in exile in Lebanon AL JAZEERA ENGLISH (AJE)(cached at May 6, 2018, 8:00 pm)

While Lebanese have shown solidarity with Syrians fleeing war, tensions have arisen over limited resources and jobs.
UK Car Industry On Alert Over Reports Some Hybrids Face a Ban Slashdotby BeauHD on uk at January 1, 1970, 1:00 am (cached at May 6, 2018, 7:34 pm)

An anonymous reader quotes a report from the BBC: The UK's car industry has hit out at the government over unconfirmed reports ministers will target hybrid vehicles as part of a new emissions crackdown. New cars unable to do at least 50 miles on electric power may be banned by 2040, a ruling that would hit the UK's best-selling hybrid, Toyota's Prius. The SMMT car trade body said "misleading" government messages were damaging the industry and hitting jobs. In a short statement, the Department for Transport denied plans for a ban. The Financial Times and Autocar said that the government's Road to Zero car emissions strategy was due to be unveiled imminently. It follows last year's announcement by the government that it would ban the sale of all new diesel and petrol cars in the UK by 2040. But the position on electrified models was unclear, and Road to Zero is due to clarify the situation. The FT and Autocar reported that vehicles which could not travel at least 50 miles using only electric power would be outlawed. "Unrealistic targets and misleading messaging on bans will only undermine our efforts to realize this future, confusing consumers and wreaking havoc on the new car market and the thousands of jobs it supports," said Mike Hawes, chief executive of the Society of Motor Manufacturers and Traders. "We cannot support ambition levels which do not appreciate how industry, the consumer or the market operate and which are based neither on fact nor substance. Consumers need clear information about the right vehicles for their driving needs and it is again disappointing for both industry and consumers that vitally important information about government policy is being communicated by leaks."

Read more of this story at Slashdot.