Monday, October 7, 2013

Buy of the Week: Lenovo ThinkPad Tablet 2 3679 – 10.1″ for $515 plus shipping!


lenovo-thinkpad-tablet
http://www.hyphenet.com/blog/buy-week-lenovo-thinkpad-tablet-2-3679-10.1-515-plus-shipping/

The Lenovo ThinkPad Tablet 2 3679 10.1” is a high-performance tablet with Windows 8 Pro operating system installed.  The 10.1″ touchscreen allows you to utilize the multi-touch screen with or without the stylus pen.

- Full-sized USB port, Mini-HDMI port and MicroSD card slot for expansion and data transfer
- Cloud-connected with Windows Live, Facebook, Twitter, LinkedIn and more
- Superior videoconferencing with HD display, stereo speakers, HD front and rear webcams and noise-canceling microphones
- Multi-user logins for private and secure device sharing with family and friends, or shared tablets in the workplace
- Enterprise-level security

Specifications
Product Description Lenovo ThinkPad Tablet 2 3679 – 10.1″ – Atom Z2760 – Windows 8 32-bit – 64 GB Flash – 2 GB RAM
System Type Slate Tablet PC
Mechanical Design No keyboard
Operating System Windows 8 32-bit
Processor Intel Atom Z2760 / 1.8 GHz / 1 MB Cache
Memory Flash: 64 GB / RAM: 2 GB LPDDR2
Display 10.1″ LED backlight Multi-Touch 1366 x 768 / HD
Graphics PowerVR SGX545
Networking 802.11n, Bluetooth 4.0
Battery Up to 10 hours
Color Black
Dimensions (WxDxH) 10.3 in x 6.5 in x 0.4 in
Weight 20.1 oz
Localization English
Manufacturer Selling Program TopSeller
Manufacturer Warranty 1 year warranty

Call (619) 325-0990 to order your Lenovo ThinkPad Tablet 2 3679  today!

Buy of the Week offer valid through October 11, 2013.
Note: Shipping and taxes apply.
Looking for something else? Check out our monthly deals or contact us to get a quote on the product you’re searching for.

How to Spot Banking Cyber-Criminals in the Act

Banks are trustworthy financial institutions that we don’t think twice about handing our money over to.   This is why we have to be aware of the banking thieves waiting for us to give up our personal information, because many of these attacks seem very convincing.

Cybercriminals are good at swindling you into thinking they are trustworthy companies just trying to help you out.  Don’t be fooled, there are ways to tell weather or not the emails and phone calls are fake.

Hesperbot a new Trojan that has been detected by ESET, uses high-tech mechanisms to bypass the banking security systems.  This is canny social engineering trick for victims to fall for the scam.

Here are some tips to use when distinguishing between the behavior of a banking thief and the real institution:

number-one
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/
Never confirm anything through a text message
Banks will send you a text, informing you that your account has changed.  Do not believe this!  Banks will not ask you to confirm anything through a text message.  Do not ever click on links or put in passwords from a text message you may receive from a bank.



number-two
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/
Don’t believe any deadline threats
Banks will let you know if something is “urgent” with suspicion of fraud pertaining to matters regarding your funds.  Banks will not ever send you a message threatening a deadline about your account shutting down. Cybercriminals are always in a rush to get you to fall for their scam.  Their websites are often flagged or blocked pretty quickly so the faster you respond to their “urgent” message, the better for them.



number-three
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/
Don’t trust links about a “new version” of your banking app
There are noted attempts of fraudulent instillation on your phone with a new app for your banking system.  The malicious apps are trying to bypass security systems to get into your bank accounts.  You can call your bank to double check on the upgrade, or go to their website.  These apps are now being analyzed.



number-four
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/ 
Watch out for shortened URLs in an email
Cybercriminals can use shortened URLs to trick people into clicking onto a fraudulent website.  URL-shortening deceives users into clicking a link without ever knowing where it will take you.  You may have seen shortened URLs from twitter and YouTube, but your bank will not use them.



number-five
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/
Don’t trust couriers to pick up your “faulty” bank card
Courier scams are starting to become a problem with bank fraud.  The “bank” will call you telling you a courier will arrive to collect a faulty bank card.  A courier then arrives at your home asking for your bank card because it is “faulty” then proceed to give you a new bank card that is safe to use.  Do not fall for this.  And don’t let them in your house.  If your card is indeed faulty, the bank will instruct you to destroy it.  Never hand your bank card over to anyone.



number-six
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/ 
Watch out for phone calls for you to “prove” your identity
A new scam is a phone call from either “the police” or “your bank”, telling you they have found fraudulent transactions on your card.  The criminals will ask you to prove your identity by calling a real bank number.  The trick is, when you hang up the criminals are still on the phone with a fake dial tone, then they ask you to enter your passwords and you just gave your account into away.



number-seven
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/ 
Don’t believe new email addresses
Be wise to receiving an email to your work email or any other address letting you know they are contacting you this way because it is a work day and they are more likely to get a hold of you.  Banks will not add another email address on their own.  The email address you give them should be the only one in their system.



number-eight
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/
Check to make sure the web page is secure
If you are on a real banking website, there should be a symbol in your browser’s address bar.  This shows you it is secure with a lock padlock or unbroken key symbol.  If there is no symbol in the browser, be wary, the page may not be real.



number-nine
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/ 
Banks should always use your name
If you receive an email addressing you as “Dear Customer” or “youremail@yahoo.com”, go no further.  Banks will always use your name and even include the last four of your social or account number.  Any emails addressed to anything friendly sounding but your name is often spam.



number-ten
http://www.hyphenet.com/blog/spot-banking-cyber-criminals/
Don’t give up your personal information
When a bank gets a hold of you in suspicion of fraud, they will ask you to verify personal information.  Usually your phone pin number is asked for you to use, not your debit card pin.  Never give up any personal information like your mother’s maiden name or the name of your first pet.  Scammers use this to hack into other accounts of yours.


You can find a list of detailed phishing scams from ESET here.
Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet,  “Like” us on Facebook or add us to your circle on Google+
References:
A scam-spotters guide: Ten things your bank will NEVER do – but cybercriminals will – We Live Security
http://www.welivesecurity.com/2013/09/12/a-scam-spotters-guide-ten-things-your-bank-will-never-do-but-cybercriminals-will/

Friday, October 4, 2013

Hackers Steal Source Code from Adobe


adobe_acrobat_reader_logo_1
http://www.hyphenet.com/blog/hackers-steal-source-code-adobe/


Adobe has reveled that one of their servers has been hacked.  The hackers gained access to 2.9 million customer accounts and stole source code for at least two major products.

The hackers stole private consumer credit card information.  Adobe expresses that the data is encrypted and they believe the hackers have not broken into decrypted credit or debit card numbers.

They have not revealed how the data was encrypted, and are unclear how secure it is.

It looks like Adobe Acrobat and Adobe ColdFusion were the programs in which the source code was taken from.

This is the most devastating attack against Adobe, affecting PDF files and ColdFusion, which is used to created apps.

The Motive

Adobe believes the hackers stole source code to create ways to control computing devices and figure out secrets of the corporate networks.

adobe_coldfusion
http://www.hyphenet.com/blog/hackers-steal-source-code-adobe/

Luckily Adobe has every customers’ information encrypted, unlike Sony, which lost unencrypted payment credit card data in 2011 of 77 million PlayStation Networks and 25 million Sony Online Entertainment subscribers.

Hackers have obtained over 40 gigabytes of Adobe source code.  Now Adobe security is on high-alert and increase in Acrobat-related attacks are predicted.

Adobe has become the main target for hackers in the past two years.  Research has been uncovering a string of zero-day security holes, as hackers analyze the code for possible zero-day exploits.

References:
Adobe loses 2.9 mil customer records, source code – USA Today
http://www.usatoday.com/story/cybertruth/2013/10/03/adobe-loses-29-mil-customer-records-source-code/2919229/
Oct. 4, 2013
Adobe Gets Hacked, Product Source Code And Data For 2.9M Customers Likely Accessed – Tech Crunch
http://techcrunch.com/2013/10/03/adobe-gets-hacked-product-source-code-and-data-for-2-9m-customers-likely-accessed/
Oct. 3, 2013
zero-day exploit – Search Security
http://searchsecurity.techtarget.com/definition/zero-day-exploit

Thursday, October 3, 2013

ZTE Nubia 5 and Grand S are coming to America!

ZTE is coming to America just in time for the holidays.  ZTE Numbia 5 and Grand S are unlocked mid-ranged Android smartphones for the prepaid service enthusiast.

The ZTE is in third place among the prepaid handsets with a market share of 17 percent.  Both phones are available for pre-orders on October 5th.

 Nubia 5

ZTE-Nubia-5
http://www.hyphenet.com/blog/zte-nubia-5-and-grand-s/

The Nubia 5 is priced at $450 unlocked and the Grand S is at $400.  Both smartphones are available to be used on AT&T‘s or T-Mobile‘s network.

The Nubia 5 is geared toward imaging and entertainment with a 13-megapixel camera and a Konica-Minolta lens.

When in the “Auto” mode,  there are features such as HDR and smile recognition.  The “Pro” mode allows the user to have control over lighting, focus and gradient.

The five-inch display with a 1,980 by 1,080 pixel touch screen, Digital Dolby Plus audio technology, is created to enhance the multimedia experience.

The Nubia 5 ships running Android Jelly Bean 4.1.2 and a quad-core Snapdragon S4 Pro processor.

Grand S

ZTE-Grand-S
http://www.hyphenet.com/blog/zte-nubia-5-and-grand-s/

The Grand S asserts to be the slimmest smartphone in the U.S. at 0.27in thick.  The Grand S also has a five-inch, 1,920 by 1,080 pixel touchscreen, 13-megapixel camera, and a quad-core Snapdragon Pro processor. This phone has 2GB of RAM and a total of 16GB of internal storage space.

The Grand S is an unlocked 3G GSM smartphone, but has the speed of a 4G on the T-Mobile and AT&T networks.

ZTE is committed to bringing more of its higher-end devices to the U.S.

“The launch of the ZTE Nubia 5 builds on our ongoing commitment to the U.S.,” said Lixin Cheng, chairman and CEO of ZTE USA, in a statement. “ZTE will be working closely with our customers to makes devices like this available in the U.S.”

ZTE has been wanting to build its presence in America for some time now.  ZTE is among the Top 5 phone makers in the world and according to a report by Strategy Analytics, it was the fastest-growing smartphone vendor in the U.S. over the last year.

Do you think the ZTE smartphones will beat the iPhone or Galaxy phones within the next year?  A lot of people are switching to unlocked phones free from big company contracts.  Would you switch?  Share your thoughts below!

Be sure to follow us on Twitter at @hyphenet or “Like” us on Facebook to stay up-to-date on the latest computer security threats.

References:
ZTE Nubia 5 and Grand S coming to US as unlocked devices October 16th – Engadget
http://www.engadget.com/2013/10/03/zte-nubia-5-grand-s-usa/
Oct 3rd, 2013
ZTE Expands U.S. Offerings with Nubia 5, Grand S – AllThingsSD
http://allthingsd.com/20131003/zte-expands-u-s-offerings-with-nubia-5-grand-s/#
Oct 3rd, 2013
The Engadget Interview: Lixin Cheng on ZTE’s US future at CTIA 2013 – Engadget
http://www.engadget.com/2013/05/27/the-engadget-interview-lixin-cheng-on-ztes-us-future-at-ctia-2/

Wednesday, October 2, 2013

My Cloud Storage


WD MyCloud


We are using more and more storage on our computers daily.  We have become photographers and movie makers of our own lives.  Quickly filling up storage and not knowing what to do next.
The average household is estimated to require 3.3 terabytes of storage by 2016.
1 TB = 1000000000000bytes = 1012bytes = 1000 gigabytes. So over 3000 gigabytes!
1-terabyte is equivalent to:
  • 472 hours of quality video
  • 150 hours of hi-definition recording
  • more than 200 DVD movies
  • 17,000 hours of music
  • 1 million 1MB images
My Cloud is a rapid hard drive with an Ethernet connection so it can be hooked up to a home network.   My Cloud is accessible from any internet connection in the world.
My Cloud works like other cloud services like Dropbox, orSkyDrive, and there are no fees involved for having the storage.
This is a local network drive hardrive so there’s no need for formatting with Mac’s or Windows.
Managing storage space, and users are accessed via a desktop application.
There are apps for iOS and Android that allows users to upload photos, videos, and other documents as well as integrate the service with Google Drive.











Be sure to follow us on Twitter at @hyphenet or “Like” us on Facebook to stay up-to-date on the latest computer security threats.
References:
WD Asks: Why Are You Paying Dropbox for Cloud Storage? – Mashable
http://mashable.com/2013/10/02/wd-my-cloud/
October 2, 2013
WD My Cloud – Engadget
http://www.engadget.com/gallery/wd-my-cloud/1252696/#!slide=1252696

October Savings Deals!


Tuesday, October 1, 2013

U.S. Bank Attack from Shylock Trojan!

The crafty banking Trojan known as Shylock has returned.  The Shylock Trojan is attacking thousands of customers and 24 American banks.

The Shylock or Caphaw Trojan is a financial malware that functions using stealth tactics both on and off the wire.

Shylock  has incredible defense mechanisms that enable it to restore itself after and during a shutdown.
The malware is outlined as “one of the few that can steal money while a user is accessing his bank account,” by ESET Security Intelligence Team Lead, Aleksandr Matroosov.  Aleksandr Matrosov published a detailed analysis about malware earlier this year.

The Shylock has an autoload functionality to repeatedly steal money when a user is actively accessing their bank account.  The user can not recognize the money is being stolen.

The threat uses techniques for bypassing security software and evading automated malware processing.

Zscaler stated in a blog post, “Over the last month, the ThreatLabZ researchers have been actively monitoring a recent uptick in the numbers of Win32/Caphaw (henceforward known as Caphaw) infections that have been actively targeting users’ bank accounts since 2011.  You may recognize this threat from research done by WeLiveSecurity earlier this year in regards to this threat targeting EU Banking sites.  This time would appear to be no different.  So far, we have tied this threat to monitoring it’s victims for login credentials to 24 financial institutions.”

Zscaler reported an increase in malware detections this week, targeting 24 U.S. banks including Chase Manhattan, Bank of America, Citi, and Wells Fargo.  The first detected malware in 2011 targeted European customers in the United Kingdon, Italy, Denmark and Turkey.


The ESET Virus Radar is showing an increase of infections in the North America Region.  This malware is difficult to detect and is hard to stop when it’s ability to restore itself and an antvirus cleaning procedure is carried out.

The infection vector is unknown, but researchers are pretty sure the malware is served by an exploit kit that uses Java’s vulnerabilities and targets the computer.

The DGA

A Domain Generation Algorithm represents an algorithm seen in  numerous families of malware.  This generates a large number of quasi-random domain names.

The nasty Trojan avoids detection by injecting itself into legitimate processes like explorer.exe while concealing its phone home traffic through the a Generated Domain Algorithm creating address using Self Signed SSL certificates.

The Self Signed SSL certificate is an identity certificate that certifies to an organization that they are the actual signers.  So basically forging its way through the system.

ThreatLabZ is monitoring the Internet for this threat and its multiplication.  The lab is also dissecting the threat in order to obtain more information about its attack,approach, scope and impact.
What do you think about the banks being compromised? Share you comments below!

Don’t miss out on the latest tech news and computer security alerts! Follow us on Twitter at @hyphenet, “Like” us on Facebook or add us to your circle on Google+.

References:
Can’t keep a bad man down: “Shylock” Trojan returns to attack U.S. banks – WeLiveSecurity
http://www.welivesecurity.com/2013/09/20/cant-keep-a-bad-man-down-shylock-trojan-returns-to-attack-u-s-banks/
September 20, 2013
New wave of Shylock Trojan targets bank customers – Net Security
http://www.net-security.org/malware_news.php?id=2592
September 19, 2013
A New Wave of WIN32/CAPHAW Attacks – A ThreatLabZ Analysis -ZScaler
http://research.zscaler.com/2013/09/a-new-wave-of-win32caphaw-attacks.html