Diberdayakan oleh Blogger.

Popular Posts Today

Report: EU to hit Microsoft with 'large fine' Wednesday

Written By Unknown on Rabu, 06 Maret 2013 | 16.01

Skip the navigation

Computerworld
  • White Papers
  • Webcasts
  • Newsletters
  • Solution Centers

    • BlackBerry: Build up your BlackBerry® 10 knowledge
    • BMC Control-M Workload Automation
    • View all Solution Centers
  • Events
  • Magazine

    • Latest Issue
    • Magazine Index
    • Subscribe
    • Subscriber Services
  • Twitter
  • Facebook
  • Google+
  • LinkedIn
  • RSS
  • Topics
    • Applications
    • Cloud Computing
    • Consumerization of IT
    • Data Center
    • Data Storage
    • Government/Industries
    • Hardware
    • Internet
    • Management
    • Mobile/Wireless
    • Networking
    • Operating Systems
    • Security
    • All Topics
  • News
  • In Depth
  • Reviews
  • Blogs
    • Featured Blogs
    • IT Blogwatch
    • Jonny Evans
    • JR Raphael
    • Michael Horowitz
    • Preston Gralla
    • Richi Jennings
    • Robert L. Mitchell
    • Shark Tank
    • All Bloggers
  • Opinion
  • Shark Tank
  • IT Jobs
  • More

    • Enterprise IT
    • Hot Topics
    • IDGE CEO Interviews
    • Insider Articles
    • QuickPoll Center
    • Slideshows
    • Video
  • IT Verticals

    • Financial IT
    • Government IT
    • Healthcare IT
Operating Systems
  • Linux and Unix|
  • Mac OS X|
  • Windows

16.01 | 0 komentar | Read More

Evernote hack shows that passwords aren't good enough

Evernote revealed over the weekend that it was the victim of a data breach, emailing users and posting a notice on its Web site that attackers had gained access to usernames, email addresses, and encrypted passwords associated with Evernote accounts. As a precaution, Evernote forced all 50 million users to reset their passwords. That's a good step, but it's not really not good enoughso Evernote is accelerating its plan to roll out two-factor authentication.

Evernote users were locked out of their accounts until they changed their passwords.

Evernote wasn't originally designed as a business service, at least until the December release of Evernote for Business. Evernote is primarily a note-taking and organizational tool similar to Microsoft's OneNote. Evernote provides a range of services—including Evernote Food, Evernote Peek, Skitch, Penultimate and more—as Web-based tools or apps across a range of operating systems and mobile platforms. Its capability to access and sync data across a broad range of devices makes it appealing as a business tool.

By its nature, Evernote is a prime example of a service where you stash both personal and professional data. Like any cloud-based service, it comes with some inherent risk. Any time you place business data in the cloud—particularly sensitive information such as customer names or addresses, banking or financial details, or proprietary company research—you are trusting the vendor to protect it. The big caveat, though, is that you are still ultimately responsible for what happens to your data.

One password to rule them all?

Following the attack, Evernote pushed a software update.

Evernote claims that the password data captured by the attackers was encrypted, but it still made all users select new passwords, just in case. As respected security authority Brian Krebs notes in his blog post on the Evernote breach, the standard hashing and salting algorithms used by vendors to encrypt password data offers trivial protection that can be cracked with relative ease.

One solution would be to use stronger passwords or passphrases, and to ensure that you don't use the same password for more than one service. When you do, a data breach at one vendor can expose your password, which could then allow the attacker to access all of your accounts instead of limiting the damage to the one that was breached.

Of course, remembering tens or hundreds of passwords is a bit of a Herculean task—especially if you're using strong, complex passwords. My PCWorld peer John Mello suggests a few options for simplifying password management, such as OneID, KeePass, and RoboForm.

The real lesson of the Evernote hack, though, is that passwords don't offer very good protection for your data. Unique passwords that are complex offer better protection than using your dog's name or no password at all, but ultimately all passwords can be cracked or guessed, given enough time and effort.

Moving to multi-factor authentication

With that in mind, Evernote is joining Facebook, Dropbox, Microsoft SkyDrive, PayPal, Gmail, and a growing list of online service providers by adopting two-factor authentication.

An example of two-factor authentication at work

Multi-factor authentication provides an extra layer of protection to safeguard your data. Phone-based authentication, for instance, can dramatically boost security. You've probably encountered a prompt for phone-based authentication when you try to log on to a bank's website from a device you don't normally use.

With phone-based authentication, a random or one-time code is sent to a mobile phone, and must be entered in addition to the standard username and password. Some solutions use a mobile app to generate a one-time PIN. Either way, in order for an attacker to access the account they'd have to both crack your password and be in possession of your mobile phone.

There are many other options aside from phone-based authentication, such as access tokens, smartcards and email verification. The exact method varies widely. No matter the implementation, two-factor authentication provides an extra layer of protection, and Evernote should be commended for offering it.


16.01 | 0 komentar | Read More

How to build an online community for your small business

CIO.com
White Papers
Webcasts
Solution Centers
  • BlackBerry: Build up your BlackBerry® 10 knowledge
  • Dell: Welcome to Dell AppAssure
  • HP + Microsoft Data Management Appliances & Architectures
  • Oracle-Endeca Executive Toolkit: Bringing Agility to Your BI Environment
  • Riverbed Accelerate Your Network with WAN Optimization
  • Symantec Archiving Solutions for Microsoft Exchange Server
  • View all Solution Centers
IT Jobs
CIO Executive Council
Events
Magazine
  • Archive
  • Subscribe
  • Subscriber Services
Newsletters
RSS
Google PlusFacebookLinkedinTwitter
NEWS
ANALYSIS
BLOGS
SLIDESHOWS
VIDEOS
HOW TO

DRILLDOWNS

Applications
Big Data
BYOD
Careers
Cloud
Consumer Tech
Mobile
Operating Systems
Outsourcing
Security
Social Media

All topics

DRILLDOWNS

All topics

Technology

  • Applications
  • Architecture
  • Cloud Computing
  • Data Center
  • Developer
  • Hardware
  • Internet
  • Mobile
  • Network
  • Open Source
  • Operating Systems
  • Security
  • Social Media
  • Storage
  • Virtualization

Business / Management

  • Careers
  • Consumerization of IT
  • Financial Results
  • Industry Verticals
  • IT Organization
  • Investments
  • Leadership/Management
  • Legal
  • Mergers/Acquisitions
  • Outsourcing
  • Project Management
  • Risk Management
  • Supply Chain Management
  • Var/Reseller
  • Venture Capital

16.01 | 0 komentar | Read More

Microsoft equips Visual Studio for Office app-building

Written By Unknown on Selasa, 05 Maret 2013 | 16.01

Microsoft has released a collection of tools that will help Visual Studio 2012 users more easily write add-on applications for Microsoft Office 2013, SharePoint 2013 and Microsoft's Office 365 hosted service.

The packages could be handy for longtime Visual Studio users, given the number of new technologies Microsoft is supporting in these office products. The new releases of Office and SharePoint will allow developers to use emerging Web technologies, in addition to the ones they are already familiar with, said Sean Laberee, a Microsoft senior program manager lead in developer engineering, in an email interview.

"Prior to Office 2013, development for Office was done through … add-ins and templates for Office using .NET. This technology is also fully supported on Office 2013 with the introduction of .NET Framework 4.5 support," Laberee wrote. "The difference is that the new model allows for developers to use their Web skills, including HTML [and] JavaScript to write apps that extend their Office applications."

With Office Developer Tools for Visual Studio 2012, developers can build apps using Web technologies such as HTML5, CSS (Cascading Style Sheets), JavaScript, REST (Representational State Transfer), OAuth and Microsoft's own OData.

Once the free package is installed, developers can specify to Visual Studio that they are starting a new Office or SharePoint app, rather than a generic new project. The Office Developer Tools for Visual Studio 2012 package includes a number of templates and other add-ins to more easily create, test and package apps that run in all current releases of Office and SharePoint. Users are given templates and tools for three types of apps: task pane apps (apps appear in the task pane of an Office application), content apps (apps that appear inside of the document's content), and mail apps for Outlook 2013 and Outlook Web Access.

With these tools, developers can also extend SharePoint 2013 functionality to end users who do not have SharePoint clients on their local machines. The add-ins also work well with Microsoft's Napa development environment, which allows developers to build Office 365 and SharePoint apps in a browser, then transfer them to Visual Studio to build out with additional capabilities.

"The new Office Developer Tools for Visual Studio 2012 create a tremendous opportunity for developers to reach a wide audience of potential users," wrote Laberee. "With the addition of third-party apps, Office 365 enables developers to deploy to the cloud and enriches the Office experience for all Office users."


16.01 | 0 komentar | Read More

Oracle releases emergency fix for Java zero-day exploit

Oracle released emergency patches for Java on Monday to address two critical vulnerabilities, one of which is actively being exploited by hackers in targeted attacks.

The vulnerabilities, identified as CVE-2013-1493 and CVE-2013-0809, are located in the 2D component of Java and received the highest possible impact score from Oracle.

"These vulnerabilities may be remotely exploitable without authentication, i.e., they may be exploited over a network without the need for a username and password," the company said in a security alert. "For an exploit to be successful, an unsuspecting user running an affected release in a browser must visit a malicious web page that leverages these vulnerabilities. Successful exploits can impact the availability, integrity, and confidentiality of the user's system."

The newly released updates bump Java to versions 7 Update 17 (7u17) and 6 Update 43 (6u43), skipping over 7u16 and 6u42 for reasons that weren't immediately clear.

Oracle notes that Java 6u43 will be the last publicly available update for Java 6 and advises users to upgrade to Java 7. The public availability of Java 6 updates was supposed to end with Java 6 Update 41, released on Feb. 19, but it seems the company made an exception for this emergency patch.

The CVE-2013-1493 vulnerability has been actively exploited by attackers since at least last Thursday, when researchers from security firm FireEye discovered attacks using it to install a piece of remote access malware called McRAT. However, it seems that Oracle was aware of this flaw's existence since the beginning of February.

"Though reports of active exploitation of vulnerability CVE-2013-1493 were recently received, this bug was originally reported to Oracle on February 1st 2013, unfortunately too late to be included in the February 19th release of the Critical Patch Update for Java SE," said Eric Maurice, Oracle's director of software assurance, in a blog post Monday.

The company had planned to fix CVE-2013-1493 in the next scheduled Java Critical Patch Update on April 16, Maurice said. However, because the vulnerability started to be exploited by attackers, Oracle decided to release a patch sooner.

The two vulnerabilities addressed with the latest updates don't affect Java running on servers, stand-alone Java desktop applications or embedded Java applications, Maurice said. Users are advised to install the patches as soon as possible, he said.

Users can disable support for Web-based Java content from the security tab in the Java control panel if they don't need Java on the Web. The security settings for such content are set to high by default, meaning users are prompted to authorize the execution of Java applets that are unsigned or self-signed inside browsers.

This is designed to prevent the automated exploitation of Java vulnerabilities over the Web, but only works if users are capable of making informed decisions about which applets to authorize and which not to. "In order to protect themselves, desktop users should only allow the execution of applets when they expect such applets and trust their origin," Maurice said.


16.01 | 0 komentar | Read More

Fujitsu's new Lifebook E Line laptops come in three sizes, but share accessories

Fujitsu promises that although the new business laptops in its Lifebook E Line come in screen sizes from 13.3 inches to 15.6 inches, all will use the same standard components, including the main board, drives for the modular expansion bay, and AC adapters.

By providing choices yet standardizing the components, BIOS software and accessories such as the drives and port replicator for the Lifebook E Line, Fujitsu hopes to combat the rising management costs and security risks it says enterprises face as employees bring their own devices to work.

The laptops will go on sale across Europe, the Middle East and Africa from Tuesday, the company said, and will be shown on its stand at the Cebit trade show in Hanover, Germany, through Saturday.

The smallest of the three new models, the Lifebook E733, has a 13.3-inch (33.8-centimeter), 1366 x 768 pixel screen and weighs 1.7 kilograms. There's a 14-inch (35.6-cm), 1600 x 900 pixel display on the midrange Lifebook E743, which weighs 1.9 kg. The largest of the three, the Lifebook E753, weighs over 2.1kg and has a 15.6-inch (39.6-cm) screen available in either 1366 x 768 pixel or 1920 x 1080 pixel resolutions.

The motherboard, common to all three models, includes Gigabit Ethernet, an SD Card slot and three USB 3.0 ports. It can be equipped with Intel Core i3, i5 or i7 processors running at speeds from 2.3GHz to 3.6GHz and with 2GB, 4GB or 8GB of RAM, expandable to 16GB.

Storage options available at launch include SSDs (solid-state disks) up to 512GB in capacity or hard disks up to 500GB, while at a later date Fujitsu plans to offer a hybrid drive combining a 500GB hard disk and an 8GB SSD.

The modular drive bay can hold a number of optional accessories, including a DVD or Blu-ray drive, a second battery, a second hard-disk drive or even a picoprojector for impromptu presentations. Other options include a fingerprint sensor, a smartcard reader and backlighting for the keyboard.

Connectivity options include Bluetooth, Wi-Fi a/b/g/n and an embedded LTE wireless modem.

The laptops are sold with 64-bit versions of either Windows 8, Windows 8 Pro or Windows 7 Professional, but are also compatible with the 32-bit versions. Fujitsu even offers limited support and basic drivers for Windows XP.

Pricing for the range starts at ¬1299 (US$1,690), Fujitsu said.

The new E Line laptops are a big advance on the similarly named E Series E752, a 15.6-inch laptop that Fujitsu launched in the U.S. last June for around $899, said Fujitsu director of product marketing Barbara D'Introno.

Fujitsu positioned the old E Series laptops as desktop replacements for the enterprise (hence the E). The new E Line models will fulfill the same role, albeit in lighter and thinner cases — up to 1 centimeter thinner than their predecessors, although not quite thin enough to qualify as Ultrabooks, D'Introno said.

At Cebit this year Fujitsu is also showing a new high-availability server, the Primergy CX420 S1, which it says can help companies keep services online without the IT expertise that usually requires.

The CX420 S1 is a dual-node server cluster containing two of its CX272 S1 servers side by side. Should one fail, then the system can use Microsoft Windows Server 2012's failover feature to start the other one, minimizing downtime — although not eliminating it, as service will be interrupted while the second server starts up.

The new server goes on sale in Central Europe, the Middle East, Africa and India this month, either direct from Fujitsu or through distributors. Pricing depends on configuration, the company said, but it did not provide an example.


16.00 | 0 komentar | Read More

Samsung Galaxy S4 to launch in 6 models

Written By Unknown on Minggu, 03 Maret 2013 | 16.01

 

56,842 News Articles

By | PC Advisor | 01 March 13

Samsung Galaxy S4 launch event

Galaxy S4 to arrive in iPhone-style black and white in 16GB, 32GB and 64GB

Samsung's imminent Galaxy S4 smartphone will launch in six different models.

Samsung has announced that it will unveil the Galaxy S4 smartphone in less than two weeks on 14 March in New York. Now we've heard that the flagship handset will be arriving in six different models like the iPhone.See also: Galaxy S4 launch date confirmed: Samsung phone to launch on 14 March.

It what would be a very Apple-style launch, SamMobile has reported that the Samsung Galaxy S4 will launch in black and white colour options and three different storage capacities – 16GB, 32GB and 64GB.

Although large storage options will be available, the Galaxy S4 will supposedly have a microSD card slot for adding more.

The site is also reporting that the Samsung wants to put out one Galaxy S4 model which supports 4G LTE and 3G mobile networks, which makes sense.

There's also news on the possible processor for the Android smartphone. Qaulcomm's Snapdragon 600 chip may be used instead of the Exynos 5 Octa 8-core processor. This is because the Qualcomm is LTE enabled but the Samsung Exynos is not.

The Exynos could easily be coupled with a separate 4G LTE chip but SamMobile said "our insider told us that Samsung is mostly sure to use Snapdragon instead of Exynos."

Other possible Galaxy S4 specifications include 2GB of RAM, 4.99in Full HD screen, a 13Mp camera, 2Mp front facing camera, wireless charging and Android 4.2 Jelly Bean.

It will have to go up against the iPhone 5, Sony Xperia Z, HTC One and a wave of incoming phablets announced at this year's MWC.

Follow Chris Martin and @PCAdvisor on Twitter.

BUY NOW: The Complete Guide to the iPhone 5 available through iTunes



Please enable JavaScript to view comments

16.01 | 0 komentar | Read More

MIT panel ponders whether future networks can keep up

Network World - A panel discussion held at MIT this week hailed major advances in networking technology, but warned that the challenges facing the world's information infrastructure are severe.

Most of the challenges stem from the rapid multiplication of demand, both in terms of user devices and data, according to IDC analyst Rohit Mehra, who moderated the MIT Forum discussion, which was held at the Tang Center for Management Education and entitled "Can the networks deliver?" Mehra was joined on the panel by Boston University professor Mark Crovella, Akamai chief strategist Kristofer Alexander and Veniam Works principal Roy Russell.

"We're now starting to talk about not millions any more, when we talk about user devices that are in play, but billions," said Mehra. "Of late, in the industry, we've started talking about how many devices versus how many human beings on the planet."

[THE CHANGING NETWORK: F5 tries to stay ahead of the curve with moves into security and beyond]

And it's not just the proliferation of smartphones and tablets contributing to skyrocketing growth in the total number of network-connected devices, according to Mehta. The oft-cited phenomenon of the "Internet of things" - which refers to the growth of network connectivity in objects that weren't previously online - means that there could be as many as 30 billion network devices installed worldwide by 2020.

Even though a huge number of those devices are likely to be connected cars or refrigerators or traffic lights, Akamai's Alexander said that a substantial amount of the total increase in demand in the future is a product of the growing ratio of devices to people.

In 2005, he said, there were a little more than a billion Internet users and 1.5 billion connected devices online. In 2010, those numbers changed to 1.8 billion and 5 billion, respectively, and projections for 2015 indicate that they could increase to 2.9 billion and a whopping 15 billion.

"There's an explosion of endpoints going on," Alexander said.

And while a rise in peak connection speeds might give the appearance of supply keeping up with demand, he said, it's important to look closer.

"That would be all well and nice if applications and devices had a concept that they aren't the only application or device at work," Alexander said. "Any time any application fires up, whether it's Netflix, email or a software update, it assumes it's pretty much the only thing that needs resourcing. It asks for as much as it can take, and you end up with network contention."

There are undoubted upsides to this hyper-connected world, and panelist Russell of Veniam Works, is part of the phenomenon. Veniam is a vehicular networking startup, which plans to bring a type of mesh network to the road that can connect and disconnect almost instantaneously, turning traffic into a nest of Wi-Fi hotspots for in-car connectivity and a host of other potential applications.

"We had a research project ... where they monitored bus drivers' vital signs and connected that data back to the network," Russell said. "They had GPS on the bus ... and they could tell where and when the bus drivers were stressed as they were driving."


16.00 | 0 komentar | Read More

Google posts compression code Zopfli to speed downloads

Google is open-sourcing a new general purpose data compression library called Zopfli that can be used to speed up Web downloads.

The Zopfli Compression Algorithm, which got its name from a Swiss bread recipe, is an implementation of the Deflate compression algorithm that creates a smaller output size compared to previous techniques, wrote Lode Vandevenne, a software engineer with Google's Compression Team, on the Google Open Source Blog last week.

zopfli

"The smaller compressed size allows for better space utilization, faster data transmission, and lower Web page load latencies. Furthermore, the smaller compressed size has additional benefits in mobile use, such as lower data transfer fees and reduced battery use," Vandevenne wrote.

The more exhaustive compression techniques used achieve higher data density but also make the compression a lot slower. This does not affect the decompression speed, though, Vandenne wrote.

Zopfli is a compression-only library and existing software can be used to decompress the data, he said. Zopfli is compatible with Zip, PNG, gzip and HTTP requests among others, Vandevenne added.

With the proliferation of video downloads in particular, Google and other services are researching ways to boost compression. Google acquired On2, a data compression technology firm, in 2009. Browser maker Opera has been refining compression functions as well.

Zopfli's output is generally 3 percent to 8 percent smaller compared to zlib, another compression library based on the Deflate compression algorithm, according to Vandevenne. "We believe that Zopfli represents the state of the art in Deflate-compatible compression," he said.

"This compressor takes more time (~100x slower), but compresses around 5 percent better than zlib and better than any other zlib-compatible compressor we have found," Google said on Zopfli's Google Code page. The code is available under Apache License 2.0.

The new compression library, however, requires two to three times more CPU time than zlib at maximum quality. Therefore, it is best suited for applications where data is compressed once and sent over the network many times, such as static content for the Web, Vandevenne said.

Vandevenne and his colleague Jyrki Alakuijala, a Google software engineer who also worked on the project, recommend in their research paper to use Zopfli "for compression of static content and other content where data transfer or storage costs are more significant than the increase in CPU time."

"By open sourcing Zopfli, thus allowing webmasters to better optimize the size of frequently accessed static content, we hope to make the Internet a bit faster for all of us," Vandevenne said.


16.00 | 0 komentar | Read More

New Heart of the Swarm trailer preludes release

Written By Unknown on Kamis, 28 Februari 2013 | 16.01

Whether you're killing time playing the beta or sitting there twiddling your thumbs waiting for the Heart of the Swarm expansion to release on March 12, now you can distract yourself with the pretty new CGI trailer titled "Vengence."

They revealed it live on their Twitch channel yesterday at 12pm PST then promplty uploaded it to their Youtube channel.The trailer got me really pumped to dive straight into the campaign, and maybe even go back through the Wings of Liberty campaign as a refresher. Just when you thought there may be a happy ending for Raynor and Kerrigan, it seems the Queen of Blades is a little restless adjusting to Terran life.

The few things I took away from the trailer:


16.01 | 0 komentar | Read More
techieblogger.com Techie Blogger Techie Blogger