Posts

Friday Morning: Nasty Habits

I got nasty habits; I take tea at three.
— Mick Jagger

Hah. Just be careful what water you use to make that tea, Mick. Could be an entirely different realm of nasty.

Late start here, too much to read this morning. I’ll keep updating this as I write. Start your day off, though, by reading Marcy’s post from last night. The claws are coming out, the life boats are getting punctured.

Many WordPress-powered sites infected with ransomware
Your next assignment this morning: check and update applications as out-of-date versions of Adobe Flash Player, Adobe Reader, Microsoft Silverlight, or Internet Explorer are most prone to this new wave of ransomware affecting WordPress sites. Back up all your data files to offline media in case you are hit with ransomware, and make it a habit to back up data files more frequently.

Planes inbound to the UK from regions with Zika virus may be sprayed
Take one tightly-closed oversized can, spray interior with insecticide, then insert humans before sealing for several hours. This sounds like a spectacularly bad idea to me. What about you? Yet this is what the UK is poised to do with planes flying in from areas with frequent Zika infections.

Comcast a possible smartphone service provider
NO. I don’t even have Comcast, yet I think this company is one of the worst suited to offering smartphones and service to their users. The company has expressed interest in bidding on spectrum for wireless, however. Comcast has struggled for years with one of — if not THE — worst reps for customer service. How do they think they will manage to expand their service offering without pissing off more customers?

AT&T obstructing muni broadband
No surprise here that AT&T is lobbying hard against more broadband, especially that offered by communities. The public knows there’s a problem with marketplace competition when they don’t have multiple choices for broadband, and they want solutions even if they have to build it themselves. When AT&T annoys a Republican lawmaker while squelching competition, they’ve gone too far. Keep an eye on this one as it may shape muni broadband everywhere.

Volkswagen roundup
VW delayed both its earnings report scheduled March 10th and its annual meeting scheduled April 21. The car maker says it needs more time to assess impact of the emissions control scandal on its books. New dates for the report and meeting have not been announced.

Volkswagen Financial Services, the banking arm of VW’s holding company structure which finances auto sales and leases, suffers from the ongoing scandal. Ratings firms have downgraded both the bank and parent firm. Not mentioned in the article: potential negative impact of emissions control scandal on VW’s captive reinsurer, Volkswagen Insurance Company Ltd (VICO).

Both the Justice Department and the Environmental Protection Agency filed a civil suit against VW in Detroit this week. Separate criminal charges are still possible.

That’s a wrap, I’m all caught up on my usual read-feed. Get nasty as you want come 5:00 p.m. because it’s Friday!

Wednesday Morning: Full of Whoa

CapagnoloFrontBrakes_BillGracey-FlickrWhoa. Halt. Stop. The brakes need firm application, even mid-week.

Zika virus infects media with crappy reporting
I can’t tell you how many times in the last 24 hours I yelled at my computer, “Are you f****** kidding me with this crap?” With so many news outlets focused on hot takes rather than getting the story right, stupidity reached pandemic levels faster than mosquito-borne viruses. And all because Dallas County health officials and the Center for Disease Control used the words “sexually transmitted” in reference to a new Zika case in the U.S.

The following sampling of heds, tweets, and reports? WRONG.

  • US reports first case of sexually transmitted Zika in Texas (Gizmodo, io9)
    [Not the first sexually transmitted case in the U.S., just the first in Texas]
  • First US case of the Zika virus infection was sexually transmitted, officials say (Verge)
    [Not the first U.S. case of Zika virus]
  • The first known case of the #ZikaVirus contracted within the US confirmed in Dallas (Newsweek)
    [Not the first known case of Zika contracted within the U.S.]
  • The first case of the #ZikaVirus contacted within the US was through sexual transmission (Newsweek)
    [Neither the first sexually transmitted case in the U.S. or the first contracted within the U.S.]
  • The First Sexually Transmitted Case of the Zika Virus Is Confirmed in Texas (Slate)
    [Not the first sexually transmitted case in the U.S.]

The first case in which Zika virus was contracted inside the continental U.S. occurred in 2008. This was the first sexual transmission of the virus in the continental U.S. as well. Scientist Brian Foy had been studying Zika in Senegal during an outbreak; he had been infected by the virus, became ill, and was still carrying the virus when he came home to Colorado. His wife became infected though she had not traveled abroad, had not been bitten by a mosquito, and children residing in their home did not contract the virus. More details on the case can be found here.

The first cases of Zika virus in the U.S. in this outbreak were not locally transmitted inside the U.S., but contracted outside the continental 48 states and diagnosed on return here. States in which cases have been reported include Hawaii, New York, Virginia, Arkansas, Florida, and now Texas — in the case of the traveler who brought the disease home and infected their partner through sex.

It’s incredible how very little effort many news outlets put into researching the virus’ history or the case in Texas. Bonus points to Newsweek for trying to get it wrong in multiple tweets for the same story.

Best reporting I’ve read so far has been WaPo’s piece on the new Dallas cases, and WIRED’s collection of Zika reports. The CDC’s site on the Zika virus can be found here.

Gonna’ be a massive Patch Day for F-35 sometime soon
Whether or not Monday’s earthshaking sonic booms over New Jersey were generated by F-35 test flights, there’s still a long and scary list of bugs to be fixed on the fighter jet before it is ready for primetime. Just read this; any pilot testing these now is either a stone-cold hero, or a crazed numbnuts, and they’d better weigh between 136 and 165 pounds to improve their odds of survival.

Oral Roberts University mandates students wear FitBits for tracking
Guess the old “Mark of the Beast” is interpreted loosely at ORU in Oklahoma. Fitness is measured on campus by more than theological benchmarks. Begs the question: who would Jesus monitor?

The last straw: Fisher Price Wi-Fi-enabled toys leave kids’ info out in the open
Fisher Price is the fourth known manufacturer of products aimed at children and their families in which the privacy and safety of children were compromised by poor information security. In this case, Smart Toy Bears are leaking information about their young owners. Maybe it’s about time that either the FCC or FTC or Congress looks into this trend and the possibility toy makers are not at all concerned with keeping their youngest customers safe.

EDIT: #FlintWaterCrisis
Forgot to note the House Oversight and Government Reform Committee will hold a hearing on lead contaminated drinking water in Flint, Michigan at 9:00 a.m. EST. C-SPAN3 will carry the hearing live.

Tap the brakes a few more times before you take off, eh? It’s all downhill from here.

Friday Morning: Know When to Fight

Sun Tzu said,

“There are five occasions when victory can be foretold: When the general knows the time to fight and when not to fight…”

Fridays are lousy times for fights, eh? Unless it’s just for fun.

Speaking of fun…

Oil crash wreaking havoc with MIC
Huh. Who could have guessed when buyers of defense goods suffer deep cuts in income, their suppliers feel the same pinch?

Kolkata-based call center workers arrested for telecom fraud
Some cyberthreats aren’t malware or hackers, but human beings with ready access to customers’ personal information and banking. In this case, three call center employees at Wipro-India working on UK accounts committed fraud of undisclosed nature, costing thousands of pounds. Seems to me these folks couldn’t have been too bright, traceability should have been easy. And being located in India offered no protection for either the criminals or the victims.

Zika virus may be transmitted sexually?
At least two cases so far suggest the virus may be transferred between partners during sex. One case involved a Colorado State University researcher who came down with Zika in 2008 after infection in Senegal. His wife came down with it after he came home from abroad; both tested positive for Zika antibodies. His children in the same household did not get sick, however.

Ukrainian power plant attackers now using BlackEnergy-infected Word documents
Though earlier attempts to launch BlackEnergy relied on Powerpoint and Excel documents, the attackers now use Word documents — but all document types contained macros that were enabled. Kaspersky’s SecureList says the entities most at risk for BlackEnergy infection are:

  • ICS, Energy, government and media in Ukraine
  • ICS/SCADA companies worldwide
  • Energy companies worldwide

At some point, this will move beyond energy and government targets. Keep your software patched and updated, run antivirus frequently, don’t open emails or documents you weren’t expecting, and only enable macros after validating the document’s source. This is pretty much standard operating practice for the last decade if you’ve been smart.

If you’re looking for something to read this weekend, you might try comparing two different translations of Sun Tzu’s The Art of War. The quote I used above is from the E. F. Calthrop version; the same bit in the Lionel Giles version renders,

“Thus we may know that there are five essentials for victory: … He will win who knows when to fight and when not to fight. …”

The Giles version is both more simplistic — at some points too much so — but filled with supplemental commentators’ content fleshing out interpretation. Relevant to political and business warfare, as much as traditional and asymmetric warfare today.

Save me a seat at the bar at the end of the day!

Wednesday Morning: Adulting is Hard

While looking for Wednesday, I discovered there’s a video short series based on a grownup version of Wednesday Addams character. Cute, though from Wednesday’s POV becoming an adult isn’t all the fun one might expect.

So much for those carefree days when one could leave all the bad news and difficult choices to parental figures. It was all an illusion there were ever any grownups in charge.

Playstation moves to U.S. as Sony melds and migrates interactive entertainment divisions
What’s this really all about? Does this consolidation of Sony Computer Entertainment with Sony Network Entertainment and their move to California as Sony Interactive Entertainment allow better collaboration with Sony Pictures? Or does this allow for easy access by U.S. government entities suspicious of Playstation Network as a potential terrorist communications platform? Or is this a means to secure a leaky business by pulling more of Sony Group inside a single network? Sony explained SIE will “retain and expand PlayStation user engagement, increase Average Revenue Per Paying Users and drive ancillary revenue” — but that sounds like fuzzy vapor to me.

Bent spear? Oh, THAT bent spear…” Air Force review omits report of damage to nuke
I hope like hell President Obama has already called someone on the carpet and asked for heads to roll. Not reporting a “bent spear” event in a review of U.S. nuclear force isn’t exactly a little boo-boo. A “bent spear” in 2007 spawned a rigorous investigation resulting in a large number of disciplinary actions including resignations and removals from duty.

Zika virus: risk to U.S. mounting
There have been more non-locally transmitted cases of Zika virus here in the U.S. as another Latin American country warns women against pregnancy. Not to worry, it’s not like Ebola, relax, we’ve been told…except that we’ve seen this playbook before, where there were casualties as a pandemic began before either federal or state agencies took effective action. In the case of Zika, we may not see mortalities; casualties may be serious birth defects following a rapid spread with mosquito season. Fortunately President Obama has now asked for more accelerated research into Zika, though we may not see results before Aedes mosquito season hits its stride this year. For more information about this virus, see the CDC’s Zika website.

EU seeks hefty fines in draft law to overhaul auto industry regulations
At fines of €30,000 (£22,600) per vehicle found in violation, the EU might get some results out of proposed regulations governing automotive emissions standards. But the problem hasn’t been the lack of EU standards — it’s the inability to validate and extract compliance when so many member states are willing to turn a blind eye to their constituent manufacturers’ failings in order to preserve employment. Can the EU make these fines stick once new regulations are passed?

By the way, Consumer Reports published a really snappy overview of the VW emissions scandal. Worth a read.

Con Edison’s creaky website leaves online customers exposed
You’d think by now after all of the successful hacks on business and government websites that companies would catch a clue. But no, not in the case of Con Edison. Read the article here so you know what to watch for at other websites; all of ConEd’s site’s links do not open fully encrypted connections. This is a really easy thing to fix, should be the very first thing every single business allowing customers to log in or pay online should check.

Heading out to act like an adult for the next eight hours. Maybe less.

Wednesday Morning: Otherwise Known as Mike-Mike-Mike Day

My condolences to the poor Mikes among us who have suffered every Hump Day since Geico’s TV commercial became so popular.

North Korean nuclear test detected by ‘earthquake’
About 10:00 a.m. North Korean local time Wednesday, an event measured at 5.1 on Richter scale occurred near the site of recent underground nuclear testing. South Korea described the “earthquake” as “man-made” shortly after. Interestingly, China called it a “suspected explosion” — blunt language for China so early after the event.

NK’s Kim Jong Un later confirmed a “miniaturized hydrogen nuclear device” had been successfully tested. Governments and NGOs are now studying the event to validate this announcement. The explosion’s size calls the type of bomb into question — was this a hydrogen or an atomic weapon?

I’m amused at the way the news dispersed. While validating the story, I searched for “North Korea earthquake”; the earliest site in the search was BNO News (a.k.a. @BreakingNews) approximately 45 minutes after the event, followed 17 minutes later by Thompson Reuters Foundation. Not Reuters News, but the Foundation, and only the briefest regurgitation of an early South Korean statement. Interesting.

Spies’ ugly deaths
Examining the deaths of spies from 250 AD to present, Lapham’s Quarterly shows us how very cruel humans remain toward each other over the last millennia. Clearly, vicious deaths have not foiled the use of spies.

Zika virus outbreak moves Brazil to caution women against pregnancy now
An outbreak of the mosquito-borne Zika virus in Brazil may be linked to a sizeable uptick in microcephalic births — 2782 this past year, compared to 150 the previous year. The Brazilian government is now cautioning women to defer pregnancy until the end of the rainy season when the virus’ spread has been slowed.

Compared to number of Ebola virus cases in 2014-2015, Zika poses a much greater risk in terms of spread and future affected population. The virus has not received much attention, in spite of more than a million cases in Brazil, as symptoms among children and adults are relatively mild.

BCP now available in Oregon over the counter
Thanks to recent state legislation, women in Oregon now have greater access to birth control pills over the counter. California will soon implement the same legislation.

That’s one way of reducing the future number of white male libertarian terrorists demanding unfettered use of public space and offerings of snacks.

Microsoft’s tracking users’ minutes in Windows 10
No longer content with tracking the number of devices using Windows operating system, Microsoft now measures how long each user spends in Windows 10. Why such granular measures? The company won’t say.

Worth remembering two things: 1) Users don’t *own* operating system software — they’re licensees; 2) Software and system holes open to licensors may be holes open to others.

New cross-platform ransomware relies on JavaScript*
Won’t matter whether users run Windows, Linux, Apple’s Mac OS: if a device runs JavaScript, it’s at risk for a new ransomware infection. Do read the article; this malware is particularly insidious because it hides in legitimate code, making it difficult to detect for elimination. And do make sure you keep backup copies of critical files off your devices in case you’re hit by this ransomware.

Buckle up tight in your bobsled. It’s all downhill after lunch, kids.

[* this word edited to JavaScript from Java./Rayne]