Twitter SpamIf you looks around the LIKE button and Twitter birds are now symbols that can be seen everywhere. From a restaurant menu to a bookshop poster to a music concert to airlines.

However not everything is sweet and rosy on the Social Networks.

A survey by Harris Interactive for February-March 2012 reveals some very interesting stats about Social Networks and personal data…

  • 27% of users reported that they had received suspicious links and attachments which were sent in messages on social networks or via email.
  • 55% of respondents confirming they were familiar with threats which social networks may present
  • 56% of users do not post important personal data such as their phone number or home address on their social network pages.
  • 63% of respondents will not add people they don’t know personally to their friend list
  • 68% try not to follow links received from people they have never heard of
  • 47% of users regularly communicate in social networks using their smartphone
  • 46% use their tablet to access Social Networks

An article posted on BGR confirms that According to Mark Risher, chief executive officer of anti-spam software company Impermium, spammers are responsible for creating as much as 40% of the accounts on popular social media sites like Facebook and Twitter

So in summary:

The issue is that even though people are indeed aware of malicious links we all make mistakes (see my post about the trick I pulled at the Security Summit).

Clicking on bogus links is a serious security issue compounded by the fact that unlike desktops that have some protection such as Kaspersky Internet Security mobile, mobile phones and tablets are not secure and we usually don’t have any anti-virus or anti-spam protection on these devices. We also don’t tend to “patch” these devices (ie update them to the latest software like we do with our Windows machines) and so these mobile devices remain open to abuse from both Spammers and Hackers rely on these to be able to steal information.

Other info: Could SPAM bring down Pinterest ?

The full report on the survey by Harris Interactive for February-March 2012 is available at: http://www.kaspersky.com/downloads/pdf/kaspersky_lab_consumer_survey_report_eng_final.pdf

Arthur Goldstuck - MD of WWWInternet Matters - South Africa 2012

We all hear stats all the time. Stats about growth, about decline. Stats about how this market is changing and how that market is doing this or that. The problem is that the whilst these stats are interesting on a global level, they are not really reflective on South Africa’s situation. So Google has commissioned World Wide Worx to put together a study to understand the South African Internet economy.

The results are fascinating and all very relevant to every single business who is currently in South Africa or looking at investing in South Africa are a growth market.

Some of the highlights that stood out for me are as follows:

5 segment focused on

The Critical SME:

There are a total of 650 000 SMEs in South Africa. Out of these 63% have a website which translates into 410 000 SMEs and a shocking 37% or 240 000 SMEs do not yet have a website. Programs like Wozaonline are specifically aimed at addressing this issue.

When you put it into perspective, 1 in 5 SME could not survive without a website accounting for 1,56 million jobs. Put another way, the fact that these companies have a website & internet it means that they are able to survive and keep 1,56 million people employed.

Tipping Point:

In 2013 there is a tipping point of internet users who have been online for 5 years or longer and these are the ones who are most likely to be an “online shopper”. From 2013 to 2020 there is a sharp rise of these savvy users who will put great strain and demands on the Internet service providers and will no accept a substandard shopping experience just because it is online.

This is in fact a warning: Any business should be actively planning now on how to tap into the masses who are ready to shop by 2013 or run the risk of being left behind whilst your customers finds your competition who can cater for their online needs.

WWW - Participation curve

The humming engine:

Total value of internet economy in 2011: R58,98bn
Contribution of Internet economy to GPD is 2% in 2011
By 2015, the Internet contributing economy will rise reaching 2,4% of the GDP and by and 2,5% by 2016 – a quiet engine humming along stimulating spending & creating jobs in SA.
Despite many obstacles in its way such as regulatory “jams”, the Internet economy is growing faster than GDP.

 

So in summary:

The report should be seen by South African government not as threat or a challenge undermining all the current ICT efforts. But more as a recommendation on what the real issues are with the top two recommendations being:

  • Treat licencing with urgency it deserves as it is stifling broadband growth
  • Create REAL incentives to SME with much much much less “red tape” so that true entrepreneurship can be fostered.

Recomendation to government

It is clear that the Internet is the building block that is quietly humming in the background of the South African economy. It is fed by a mix of internet-enabled business and consumers who are ready to shop online.  Further investment into infrastructure is enabling more internet access at all levels which in turns leads to better education and skill creation. Add to this mix more SME and Entrepreneur incentives and we have the recipe for a very successful E-conomy.

The full study can be downloaded from: http://www.internetmatters.co.za/

 

DSC_7252Arthur Goldstuck - MD of WWWMEC Qedani Mahlangu - MEC for Economic Development, Gauteng Provincial GovernmentAndreas Lundmark - BCGdeputy minister of communications, Stella Tembisa NdabeniDSC_7290

The “most sophisticated cyber-weapon yet unleashed” is how Kaspersky described “Flame” a malware it discovered that has been aimed at Middle Eastern Countries.

Flame is a ‘cyber-espionage worm’ designed to collect and delete sensitive information and had infected computers in Iran, Israel, the West Bank, Sudan, Syria, Lebanon, Saudi Arabia and Egypt:

 a map of the top 7 affected countries:

On its blog, Kaspersky called Flame a “sophisticated attack toolkit,” adding that it was much more complex than Duqu, the vehicle used to deliver Stuxnet which was first discovered in June 2010 & targeted primarily Iranian computers.

According to the BBC, Kaspersky’s chief malware expert Vitaly Kamluk confirmed that that more than 600 specific targets had been hit by Flame, including computers owned by individuals, businesses, academic institutions and government systems.

The code is very complex, large in size and would have taken an average developer about a month to create and debug.

Flame - programming codeFlame - programming code

There are internally used local databases with nested SQL queries, multiple methods of encryption, various compression algorithms, usage of Windows Management Instrumentation scripting, batch scripting and more

Interestingly Flame was developed specifically to steal data. This includes the ability to record voice via the microphone. It also has the ability to target any Bluetooth connected devices too.

The malware has the ability to regularly take screenshots but only when certain “interesting” applications are run, for instance, IM’s.

Audio & Screenshots are stored in compressed format and are regularly sent to the Command and Control server  on a scheduled basis.

It seems that there is no doubt that this malware is not the work of script kiddies or hacktivists but rather “state sponsored” :

Currently there are three known classes of players who develop malware and spyware: hacktivists, cybercriminals and nation states. Flame is not designed to steal money from bank accounts. It is also different from rather simple hack tools and malware used by the hacktivists. So by excluding cybercriminals and hacktivists, we come to conclusion that it most likely belongs to the third group. In addition, the geography of the targets (certain states are in the Middle East) and also the complexity of the threat leaves no doubt about it being a nation state that sponsored the research that went into it.

The virus seems to infect via two modules designed for infecting USB sticks, called “Autorun Infector” and “Euphoria”.

In addition to these, Flame has the ability to replicate through local networks. It does so using the following:

  1. The printer vulnerability MS10-061 exploited by Stuxnet – using a special MOF file, executed on the attacked system using WMI.
  2. Remote jobs tasks.
  3. When Flame is executed by a user who has administrative rights to the domain controller, it is also able to attack other machines in the network: it creates backdoor user accounts with a pre-defined password that is then used to copy itself to these machines.

Flame - how it replicates

If you do think you have been infected, you asked to contact: stopduqu@kaspersky.com

Some more techie bits:

According to Peter Szor and Guilherme Venere from McAfee:

Skywiper is a modular, extendable and updateable threat. It is capable, but not limited to the following key espionage functions:

- Scanning network resources
- Stealing information as specified
- Communicate to C&C Servers over SSH and HTTPS protocols
- Detect the presence of over 100 security products (AV, Anti-Spyware, FW, etc)
- Both kernel and user mode logic is used
- Complex internal functionality utilizing Windows APC calls and and threads start manipulation, and code injections to key processes
- It loads as part of Winlogon.exe then injects to Explorer and Services
- Conceals its present as ~ named temp files, just like Stuxnet and Duqu
- Capable of attacking new systems over USB Flash Memory and local network (slowly spreads)
- Creates screen captures
- Records voice conversations
- Runs on Windows XP, Windows Vista and Windows 7 systems
- Contains known exploits, such as the Print Spooler and lnk exploit found in Stuxnet
- Uses SQLite Database to store collected information
- Uses custom DB for attack modules (This is very unusual, but shows the modularity and extendibility of the malware)
- Often located on nearby systems: a local network for both C&C and target infection cases
- Utilizes PE encrypted resources

To summarize, the threat shows great similarity to Stuxnet and Duqu in some of its ways of operation yet its code base and implementation are very different, and much more complex, and robust in its basic structure.

Skywiper’s main executable files

Windows\System32\mssecmgr.ocx – Main module
Windows\System32\msglu32.ocx
Windows\System32\nteps32.ocx
Windows\System32\advnetcfg.ocx
Windows\System32\soapr32.ocx

For the rest of the report and more info check out McAfee’s report: Skywiper – Fanning the “flames” of cyber warfare

*images from the Kaspersky website

Posted by: thetechieguy | May 28, 2012

Enterprise Mobility Forum hits Cape Town

Enterprise Mobility Forum

The Enterprise Mobility Forum In association with the Enterprise Mobility Network is hosting their inaugural South African event, in Cape Town with the theme: Driving operational efficiency through mobile technologies.

The format is the conference is slightly different. We have heard of speed dating and we have attended Networking events and now we have a marriage of the the two –

Day 1: consists of Fast-tracks knowledge updates on trends, technologies and methods through a series of keynote addresses.

Day 2: carefully matches Vendors & Customers in 20min one-on-one meetings with topics addressing expectations of both

This way, you not only get to hear about what and how technology is being used but also get a chance to have one on one sessions with the various vendors to discuss your specific requirements.

When it comes to key speakers, there are serious players  from South Africa, Italy and the USA :

  • Paul Martin ,Managing Director, Planet Retail
  • Girish Rishi,Corporate VP and GM, Mobile Computing Division at Motorola Solutions, USA
  • Francesco Montanari,VP & GM Mobile Computing at Datalogic ADC, Italy
  • Paulo Ferreira,Head of Enterprise Mobility, Samsung Mobile, South Africa
  • Larry Klimczyk, VP Global Solutions at Intermec Technologies, USA

So if you are in the Retail space, or involved in making decisions and planning mobile strategy and technology for your business , this is a perfect match.

The Enterprise Mobility Forum 2012 takes place 6–7 June at the Vineyard Hotel & Spa, Cape Town, the perfect environment in which to network, debate and relax.

for more info check out the Enterprise Mobility website

See you there !

Vineyard Hotel and Spa

Posted by: thetechieguy | May 27, 2012

Facebook to launch its own browser

A Facebook Browser ?

Hot on the heels of Yahoo! web browser announcement and stats that shows that Googe’s Chrome is the most-used browser, it looks like the rumour mill has started to churn rumours of a Facebook browser.

According to PocketLint: A Facebook browser that would allow you keep up to date with your social life from in-built plug-ins and features on the menu bar could be on the cards. Pocket-lint has heard from one of its trusted sources that the social networking giant is looking to buy Opera Software, the company behind the Opera web browser.

And why not ? It makes complete sense. Facebook is on a shopping spree with Glancee, Instagram, Own branded Facebook Mobile Phone and so a Desktop web browser would complete the “I control you & how you access information” eco-system.

Google has done the same thing with Android, Chrome and Google+. Single sign-on. Once you are in, you can access any part of the Google empire without having to constantly sign in and out. The systems recognises who you are and simply opens up your personalised space be it Google+ or Gmail or Drive

So why wouldn’t Facebook do the same ? Instead of making Facebook a destination that you go to with your browser, why not open the Facebook Browser where it instantly logs you into your profile. You can now do your traditional “Facebook stuff” and without leaving Facebook you can surf the web. See a photo you want to people to see, there will be a LIKE button – regardless of where the photo is. See a story you want your friends to read, click the SHARE button etc.

In fact, if Facebook does launch its own browser, then the line between Facebook and a “traditional” web browser could be very blurred that we will see Facebook as THE internet and gateway to information and no longer a bookmark that you click to.

The main reason this would triumph where other fail is because you don’t need to  “invite your friends” as you do with Google+ or Microsoft’s So.cl  – Its not a case of “build and they will come”.  The masses are already there.

Facebook has the user base to gain instant market share. There are over 900 million Facebook users around the globe who open a web browser just to get to Facebook.  Give those users a customised browser that IS Facebook & instantly you grab a huge market share. If I was Google or Microsoft I would be more than a little bit worried….

The boyz & gals at Google have been busy. Not only have they recently revamped the iOS App of Google+ it is now Android’s turn to receive a complete makeover.

Google Plus - HangoutThe most impressive feature in this update is that now with Version 2.6 of Google+ for Android you can starts a Hangout directly from the phone and not have to use the long way like you had to do in previous versions via the Messenger App.

What is really neat is that more and more people are starting to use the Hangout instead of making a phone call. When you receive a Hangout request it even appears on the phone as “incoming Hangout” – just like a phone call.

The main stream also received a major facelift with a fresh look. The Comment and +1 buttons are easily accessible on top of each stream item. Although I have to question the choice of making them white as it does mean that they get lost in the background if the item has a white background.

I like the new easily accessible nifty navigation bar for tapping around various sections. Previously you had to jump back to the home screen to go to another view, now this is no longer the case.

The other neat feature is that you can now download photos from any stream direct to your phone from within the app. This is great as we often see something we like with the intention of going back to it later and then never do.

So in summary:

Overall the application update really is significant. It now feels like a real app, visually attractive, simple to use and feature rich.  For those who use Google+ it really means that the mobile version is not just a simple dumb down version of the desktop-browser version.

The real crux is the ability to initiate a Hangout.

Having the ability to simply make and receive voice call using an application on the mobile phone is a trend I predict will only increase. The mobile phone is actually a mobile-internet-connected-devices and so you do have a choice to use traditional calls or use VOIP applications like Hangout, Skype, Tango, Viber. Historically we are wired to think that these type of applications are only good to call the family overseas however why not use these apps to call “locally” ? Its that same process of making a phone call – click the app, select the name from the address book and dial. If you are in a WiFi zone these calls cost you nothing and sometimes the quality is just as good if not better than using the cell network.

I give that a +1

 

Google plus   Google Plus - navigation

Google Plus - download photo   Google Plus - +1

Posted by: thetechieguy | May 24, 2012

Yahoo! launches its own web browser

image

Holy Molly…you will never guess who has just released a brand new kind of browser ? – Yahoo! no its not a shout for joy but Yahoo! as in the search company…

Ok so what is this all about ?

Mobile browsers really are out-dated. The typical approach is search, results, destination – its a three step process. This process becomes more tedious when the destination page lack proper information we were looking for so we have to go back and try another page or redo our search.

Here is where Axis has rethought the entire process by marrying up queries to the objects they represent and so you get more data in the results page quicker & simpler

How does it work?

You enter your search term, and Yahoo! does its thing in the background. Axis displays thumbnails and page previews as results instead of just a list of links. The results are still available as you navigate through the various pages so if you need to go back to the results you simply “pull down” on the screen and a horizontal slider of results from your last query appears.

Axis Yahoo - tutorial

Axis Yahoo - search

The real crux of Axis is that  there is no more the back and forth that we are so used to. The results are just a click away in a slider format at the bottom of the screen with a preview of that page.

Where Axis really shines is on the iPad. Interestingly enough, Axis is available on iPad and iPhone as if you recall when Mozilla tried they were blocked from iOS  but Axis has managed to get onto the platform.It is essentially a skin that runs over Safari with much better features than Safari has to offer. What is really great (and in my opinion a killer-app is that  you can open a page on your iPad, and if you have the Axis extension on the desktop you can carry on browsing right where you left off. Nice as I often begin to read something on one device and have to go back to the same page on another.

I could only get mine to work when using Safari and not chrome but that could have something to do with the security issue that was discovered just after launch…<gulp!>

Axis Yahoo -Chrome error

So in summary:

This has real promise for us low-bandwidth people. I like the fact that all my results are right there at the bottom of the screen and I don’t have to go back to research. The preview is awesome as you can see which website to skip instantly as the preview is not just one line of text but the site itself. Google does the same but you have to hover over each link to see it.

The Desktop version of this is a bit shaky as its clear most of the attention was on the iPad. But it really does have a future once more development time and thinking is extended to other mobile platforms and desktop app is fixed too.

We know by now not to write-off anyone in the Tech world. So as they say in the classics – “its not over till its over” and it looks like Yahoo! gamble of getting Bing to run their searches allowed them free time to focus on innovation. Nicely done !

check it out for yourself: http://axis.yahoo.com/

imageimage

We all know that Social networks have a direct influence on what, how, where and when people shop.  According to research from Barclays, “Sales from social commerce, driven by the influence of social media, are expected to more than double within the next five years”

According to the research:

41% of the consumer population is expected to be influenced by or use social media to make a purchase.

Among 25 to 34-year-olds the figure is 73% which is unsurprising as 45% of this group are already engaging in what Barclays have called ‘s-commerce’.

Richard Lowe, Head of Retail & Wholesale at Barclays, said: "Shopping has always been a social activity right back to the days when people bartered rather than paid for goods. It wasn’t until the arrival of e-commerce that the social aspect of shopping was removed.

"For most consumers the social element is fundamental – shopping it is a leisure activity in the British psyche – so being able to reintroduce this aspect into the online purchasing process is a powerful tool for retailers".

Around 70% of online shoppers are already active users of social platforms but the number of social shoppers is set to grow further as social networking sites such as Facebook, Twitter and Pinterest continue to blur the boundaries between retail channels.

Why does this work ?

Social networks are an “influencer”. People are receptive to recommendation and feedback from their network and their “sales-guard” is down. Social networking is about being social and so if a friend makes a recommendation about the latest gadget they have purchased it is not seems as a sales-pitch.

Richard Lowe continues: "When someone you know and trusts makes a recommendation it’s extremely powerful and we’ve seen that the social shopper isn’t afraid to express online how much they want, love or dislike a product or service.

"This in turn creates a feedback loop on a product or brand. As more people post reviews, more people read them and, in turn, they give their own feedback which is picked up by a new group of consumers. “

Translated into revenues, in the next five years influenced sales are expected to more than double from £1.4 billion to £3.3 billion. This contrasts with direct sales which are expected to rise from £210 million to £300 million.

What should retailers do ?

Whenever I speak to consult to retailers, I make this point repeatedly. It is no longer about big cash spend on advertising “shotgun” style. Its about clever tapping into the right influencers in a particular circle and through that person be able to create a better shopping experience. Other key people to identify are “bridges” these are people who spread the word joining circle of communities.

image

Hot on the heels of the ITWeb Security Summit where Anonymous was discussed at length, Anonymous strikes at the United States Bureau of Justice releasing 1.7GB of data for the world to see:

Greetings world,
We are Anonymous.
Today we are releaseing 1.7GB of data that used to belong to the United States Bureau of Justice, until now.
Within the booty you may find lots of shiny things such as internal emails, and the entire database dump.
We Lulzed as they took the website down after being owned, clearly showing they were scared of what 
inevitably happened. 
We do not stand for any government or parties, we stand for freedom of people, freedom of speech and freedom of information.
We are releasing data to spread information, to allow the people to be heard and to know the corruption in their government. We are releasing it to end the corruption that exists, and truly make those who are being oppressed free. 
The price we pay very often is our own freedom. The price governments pay is the exposure of their corruption and the truth being revealed, for the truth will set us free in the end. 
So once more we call on you. Hackers, activists, and freedom fighters; join us in our struggle against these corporate

Whilst there was no confirmation from the Department of Justice they are looking into whether or not the hackers violated computer use laws.

"The department is looking into the unauthorized access of a website server operated by the Bureau of Justice Statistics that contained data from their public website," said a Department of Justice spokesman "The Bureau of Justice Statistics website has remained operational throughout this time. The department’s main website,justice.gov, was not affected."

Who is Anonymous ? check this out: http://www.informationweek.com/news/galleries/security/attacks/232600322

Posted by: thetechieguy | May 21, 2012

Twitter Blanket Drive 2012

Twitter Blanket Drive

Its cold. So what do we do ? put a heater on, put on a jersey on, wrap up in a blanket and we are nice and toasty.

However, sadly this is not possible for a lot of people and an awesome initiative has been created to see how we can harness the power of Twitter.

Its called Twitter Blanket Drive #TBDZA

The Twitter Blanket Drive is a South African national charity drive managed and supported by the local Twitter community. Where the the idea is for “Tweeps” to meet up (“tweetup”) at venues around the country on the same day, at the same time to share a warm cup of coffee – and to donate a blanket or two.

Check out their official website for more information and how you can help and donate a blanket and really make a difference !

http://www.twitterblanketdrive.co.za

update: we are meeting at the Slow In the City Lounge at 8pm to drop our blankets off  (Corner of West and Rivonia road, Sandton  - http://www.slowinthecity.co.za/) and then heading off to The Baron for the after party  Shop 11, 24 Central, Gwen Lane, Sandwon (Fredman drive) - http://www.thebaron.co.za/contact.asp

Come and join us for this worthy cause !

Older Posts »

Categories

Follow

Get every new post delivered to your Inbox.

Join 55 other followers