Curating the Internet: Science and technology micro-summaries for October 7, 2019

in #rsslog5 years ago

Zero-day android exploits in the wild, now.; Cybersecurity advice from an expert; Security researcher claims a way to bog down the EOS network; Mixed results with this year's North American flu vaccine selections; and massive gaseous threads connect intergalactic space


Fresh and Informative Content Daily: Welcome to my little corner of the blockchain

Straight from my RSS feed
Whatever gets my attention

Links and micro-summaries from my 1000+ daily headlines. I filter them so you don't have to.


image.png

pixabay license: source.

  1. Attackers exploit 0-day vulnerability that gives full control of Android phones - There is evidence that a zero-day vulnerability is being exploited in the wild by hackers. Vulnerable phones include Google Pixels, Samsung, Huawei, Xiaomi, LG Oreo, and most likely others. According to the article, the exploit is a local privilege elevation that allows for the device to be fully compromised, and the "vulnerability can be exploited two ways: (1) when a target installs an untrusted app or (2) for online attacks, by combining the exploit with a second exploit targeting a vulnerability in code the Chrome browser uses to render content." The exploit is classed as high severity, and in Pixel devices, the vulnerability will be patched in the October security update, which should become available in a few days. For devices from other manufacturers, consumers should update when security updates become available.

  2. A cybersecurity expert says you can take these steps to make sure your accounts aren't 'low-hanging fruit' for hackers - (i) Change your password frequently; (ii) Don't reuse security questions across sites; (iii) Use bogus information for security questions; (iv) Use a password manager; (v) Don't leave a trail of public information on social media; and (vi) Use multifactor authentication when possible. Everything I've seen in recent years says that the advice to change your password frequently is obsolete, but the rest of the suggestions are good (if difficult to manage).

  3. Research Claims EOS Network Can Freeze, Block.one Denies Any Errors - In a recent article, security researcher Dexaran claimed that the EOS network can be overwhelmed and slowed to a crawl for several minutes each hour with just a few dollars worth of EOS per month, in an exploit that may have recently enabled hackers to steal $110,000 from an EOS gambling application. With stereotypical corporate hand-waving, BlockOne did not deny the claim, but responded that the network is operating as designed, did not freeze, and the report of congestion is no different from high fee transaction spam on bitcoin or eth.

  4. Flu Vaccine Selections Suggest This Year’s Shot May Be Off the Mark - The "strain selection committee" for the southern hemisphere decided that the flu vaccinations for H3N2 and B/Victoria viruses need to be updated, because the northern hemisphere's vaccine - selected last winter - didn't match the strains that came to dominate this year. On the other hand, these same officials concluded that the vaccine for H1N1 and the flu B/Yamagata do not need to be updated, which indicates that this year's northern hemisphere vaccine may be partially on target. (Original article in STAT.)

  5. STEEM Massive Strings Of The Cosmic Web Fuel Galaxies - In this post, @kralizec tells about a recent study that observed immense cosmic filaments of intergalactic gas that grow up to millions of light years in length. According to post, these massive strings form a mesh in the cosmos by interconnecting galaxies, and it turns out that they are mathematically consistent with predictions from a galaxy creation model that is based upon cold dark matter. These observations were also able to confirm that these massive intergalactic threads serve to feed growth and creation of galaxies and black holes, especially in the places where they intersect. (A 10% beneficiary setting has been applied to this post for @kralizec.)


In order to help make Steem the go to place for timely information on diverse topics, I invite you to discuss any of these links in the comments and/or your own response post.

Beneficiaries


My other open posts

(as of Sunday afternoon)
@remlaps

@remlaps-lite

Fundraising for the Rustin Golden Knights Marching Band by @rgkmb-unofficial


About this series


Sharing a link does not imply endorsement or agreement, and I receive no incentives for sharing from any of the content creators.

Follow on steem: @remlaps-lite, @remlaps
If you are not on Steem yet, you can follow through RSS: remlaps-lite, remlaps.


Thanks to SteemRSS from philipkoon, doriitamar, and torrey.blog for the Steem RSS feeds!

Sort:  


This post has been voted on by the SteemSTEM curation team and voting trail. It is elligible for support from @curie and @minnowbooster.

If you appreciate the work we are doing, then consider supporting our witness @stem.witness. Additional witness support to the curie witness would be appreciated as well.

For additional information please join us on the SteemSTEM discord and to get to know the rest of the community!

Thanks for having included @steemstem in the list of beneficiaries of this post. This granted you a stronger support from SteemSTEM. Note that using the steemstem.io app could have yielded an even more important support.

Coin Marketplace

STEEM 0.30
TRX 0.12
JST 0.032
BTC 62985.30
ETH 3106.93
USDT 1.00
SBD 3.87