Archive for the ‘Fires’ Category

Following the appearance of Firesheep on Firefox browsers, there has been an increase in hijacking of profiles while the account holder is online. Late last fall, a Firefox plugin called Firesheep was released. In 2010, Eric Butler released a Firefox add-on called Firesheep. Undoubtedly spurred on by tools like Firesheep, this is slowly but surely making the web more secure. Firesheep's authors can be the satisfied with the gradual migration towards ssl that most of the biggest social networks, search engines, online shops and others have embarked upon since its advent. After the report, MySpace promised to stop. Https is largely effective at blocking snooping tools like Firesheep, which hackers can use to glean sensitive information from unprotected Hotmail users. Naughty pc users sitting near you in a café or airport can easily “sidejack” your unencrypted social-networking sessions, as a prankish researcher proved last fall when he released the sidejacking Firefox add-on Firesheep to an unprepared world. Facebook is sure taking its sweet time rolling this out. Firesheep has been out for more than three months, and the eff released a plugin for secure Facebook connections back in June. Even the https option is half measure. Twitter users are being urged to turn on the service’s new https encryption setting to close a security loophole. After what seems like an eternity (punctuated by the ‘hacking’ of Ashton Kutcher’s account) Twitter has finally enabled HTTPs on their web site. Twitter has finally provided a way to stop sidejacking attacks on user’s accounts with the addition of constant https encryption on the site. Orome1 writes “firesheep’s authors can be the satisfied with the gradual migration towards ssl that most of the biggest social networks, search engines, online shops and others have embarked upon since its advent. So did Ashton Kutcher complain after he got Twitter hacked at TED? As of today, Firesheep weary Twitter users can check the “always Use HTTPS” setting at the bottom of Settings on their profiles. Over the past year or so, we’ve seen a major push by a few of the large Internet companies to move towards ssl encryption — that is, https instead of the standard old HTTP. Twitter allows users to lock in use of HTTPS–meaning not just any amateur sitting next to you in a cafe can hack your account.

Twitter finally unveils HTTPS 'sidejacking' security
TechEye
Following the appearance of Firesheep on Firefox browsers, there has been an increase in hijacking of profiles while the account holder is online. Sidejacking is when an imposter hijacks your Twitter session while sitting somewhere alongside you,
Twitter adds opt-in always-on HTTPS option THINQ.co.uk
Twitter goes secure – say goodbye to Firesheep with "Always use HTTPS" option Naked Security
Twitter Offers HTTPS Option to Thwart Hackers Wired News
ZDNet UK -Huffington Post -Metro
all 97 news articles »
Apr 07, 2011 12:30pm

U-Fi insecurity – Concordiensis

U-Fi insecurity
Concordiensis
Late last fall, a Firefox plugin called Firesheep was released. Firesheep allowed users easily to identify and manipulate data from other users. In fact, it took only a few clicks of the mouse for a Firesheep user to access the Facebook and Twitter

Giving the cybercriminals a helping hand
SC Magazine US
In 2010, Eric Butler released a Firefox add-on called Firesheep. Firesheep demonstrated how dangerous unencrypted session cookies can be and how easy it is to hijack accounts that use unencrypted session cookies, which at that time was virtually

Continuing The Good Trend, Foursquare Now Defaults To HTTPS Across The Board
TechCrunch
Undoubtedly spurred on by tools like Firesheep, this is slowly but surely making the web more secure. And today Foursquare is the latest to make the move. As they tweeted out this morning, all of Foursquare now defaults to HTTPS.

Mooching Wi-Fi? You are breaking the law!
7Online.com
Programs like Firesheep, which is a plug in for the browser Firefox, makes it possible for other people on the same Wi-Fi network to log into your Twitter, Amazon and Google accounts to name a few. In the end the best advice is, "Don't connect to other

and more »
Google extends SSL to developer facing APIs
Help Net Security
Firesheep's authors can be the satisfied with the gradual migration towards SSL that most of the biggest social networks, search engines, online shops and others have embarked upon since its advent. Google, which has already taken care of its users and

Our Tweets From 03.16.2011
paidContent.org
Do you think the #paywall may not even launch? http://on.fb.me/euGV0O — @paidContent Lots of post-Firesheep hacker fears—Twitter adds HTTPS to beef up site security for WiFi users. http://goo.gl/4f70b — @joemullin 'When you create an ecosystem,

Undoubtedly spurred on by tools like Firesheep, this is slowly but surely making the web more secure. And today Foursquare is the latest to make the move. As they tweeted out this morning, all of Foursquare now defaults to HTTPS. The company tells us that …
After the report, MySpace promised to stop. ‘Twidiots’ and ‘Firesheep’ roam free on public Wi-Fi networks In late October, a software developer named Jonty Wareing created a Web tool called “Idiocy,” which was used to monitor Twitter accounts being …
In 2010, Eric Butler released a Firefox add-on called Firesheep . Firesheep demonstrated how dangerous unencrypted session cookies can be and how easy it is to hijack accounts that use unencrypted session cookies, which at that time was virtually everyone …
HTTPS is largely effective at blocking snooping tools like Firesheep, which hackers can use to glean sensitive information from unprotected Hotmail users. In a statement, the EFF (Electronic Frontier Foundation) offered further explanation, and called for …
Naughty PC users sitting near you in a café or airport can easily “sidejack” your unencrypted social-networking sessions, as a prankish researcher proved last fall when he released the sidejacking Firefox add-on Firesheep to an unprepared world.
Facebook is sure taking its sweet time rolling this out. Firesheep has been out for more than three months, and the EFF released a plugin for secure Facebook connections back in June . Even the HTTPS option is half measure. It applies only on the website …
Most likely he either picked a dumb password which attackers could easily guess, or he was targeted while using an unencrypted Wi-Fi network by somebody using Firesheep – a tool that allows people also using the same unencrypted network to access other …
Twitter users are being urged to turn on the service’s new https encryption setting to close a security loophole.
Mar 16, 2011 3:43am

Firesheep spit-roasted by Twitter

After what seems like an eternity (punctuated by the ‘hacking’ of Ashton Kutcher’s account) Twitter has finally enabled HTTPs on their web site. In late October 2010, the Internet was awash with tales of the Firefox plug-in “Firesheep” which was able to steal authentication secrets from anyone’s open WiFi connection to any website that used session cookies; this included Twitter and Facebook …
Twitter has finally provided a way to stop sidejacking attacks on user’s accounts with the addition of constant HTTPS encryption on the site.
Orome1 writes “Firesheep’s authors can be the satisfied with the gradual migration towards SSL that most of the biggest social networks, search engines, online shops and others have embarked upon since its advent. Google, which has already taken care of its users and encrypted its Web Search, Gmail and Google Docs, has now turned its attention to the APIs used by developers.” Read more of this …
So did Ashton Kutcher complain after he got Twitter hacked at TED? As of today, Firesheep weary Twitter users can check the “Always Use HTTPS” setting at the bottom of Settings on their profiles. HTTPS, or Hypertext Transfer Protocol Secure uses the SSL/TSL protocol in addition to HTTP to ensure encrypted communication over a secure channel. This protects users on insecure networks like coffee …
Over the past year or so, we’ve seen a major push by a few of the large Internet companies to move towards SSL encryption — that is, HTTPS instead of the standard old HTTP. Undoubtedly spurred on by tools like Firesheep, this is slowly but surely making the web more secure. And today Foursquare is the latest to make the move. As they tweeted out this morning, all of Foursquare now defaults to …
Twitter allows users to lock in use of HTTPS–meaning not just any amateur sitting next to you in a cafe can hack your account. Twitter recently became the latest major site to bow to pressure to make itself more secure. It added the option for users to permanently run the site via HTTPS, a more secure protocol that foils simple hacking strategies that have gained major press of late. Twitterers …
  • Share/Bookmark
Yahoo! News — Gawker Media’s Deadspin site says it will publish nude photos of Brett Favre today, along with some… read more
Gawker Media’s Deadspin site says it will publish nude photos of Brett Favre today, along with some voicemails it says the quarterback left for a woman who is not his wife. Which means that corner of Deadspin is going to be very, very popular today.
Sometime today, Gawker Media’s sports site, Deadspin , will publish alleged nude photos of Brett Favre. The photos exist, allegedly, because Farve sent them to a female New York Jets employee while with the team in 2008. They are allegedly photos of Favre masturbating.
Oct 08, 2010 9:28am

Morning Link Dump – 10/08/10

Yesterday’s big sports gossip revolved, of course, around Brett Favre’s dong. Specifically, Deadspin’s acquistion of the messages and pictures that made waves back in February, when… um… sports personality Jenn Sterger claimed Favre had sent her pictures of lil’ Brett.
“It was really exciting in practice to have Brett Favre throwing me the ball, you know, he’s legendary” – Randy Moss on Brett Favre (10/7/10) Brett Favre is seemingly always in the news. Whether it’s his waffling over retirement or his demolishing of yet another NFL record, the media always has something to say about Brett Favre—and rightfully so. Brett Favre is the most exciting football player …
  • Share/Bookmark