Tuesday, February 9, 2016

9 Out Of 10 Windows Security Flaws Could Be Avoided By Just Removing Admin Rights

9 Out Of 10 Windows Security Flaws Could Be Avoided By Just Removing Admin Rights
KofestoTech: The security firm Avecto has just released its security report on Windows operating system. The report outlines an important result stating that 9-out-of-10 Windows security flaws could be mitigated by simply removing a user’s admin rights.
Almost nine-out-of-ten Windows operating system vulnerabilities could have been mitigated by removing the admin rights, according to a report released by security firm Avecto.
Released on Thursday, the security report mentions that about 85 percent of critical Windows flaws could’ve been stopped before they entered your PC and affected the system files. The firm has compared the annual trends and reported 52% rise in the number of vulnerabilities reported.
The 2015 report explores the vulnerabilities affecting Windows, Office, Windows Server, Internet Explorer, and more. The trends observed are:
  1. 85% of all Critical vulnerabilities documented in the report can be mitigated by removing admin rights
  2. 99.5% of all vulnerabilities reported in Internet Explorer in 2015 could be mitigated by removing admin rights
  3. 82% of all vulnerabilities affecting Microsoft Office in 2015 could be mitigated by removing admin rights
As many people don’t know the meaning of administrator accounts, they are very common in household PCs. These accounts give the user an access to everything and the same privileges are invaded by a malware that strikes your system. So, a hacker can access your private data and modify Windows system files. Due to the same reason, many businesses tend to provide lower permissions to their users to mitigate the malware risks.
In its report, the company also scanned the entire vulnerability patch in Microsoft’s monthly security updates and saw the impact of these flaws on systems with fewer rights. The firm came to a conclusion that about 63 percent of the entire batch of vulnerabilities could be mitigated if user rights are toned down.

Read More »

AROUND(): A Google Search Operator You May Not Know About

AROUND(): A Google Search Operator You May Not Know About

KofestoTech: Here is this handy operator developed by Daniel Russell which comes in as a handy trick when you are googling stuff. It’s a handy trick, particularly when you’re looking for the combination of search terms (containing two or more search keywords) when one dominates the results, but you’re interested in the relationship between two query terms.
The AROUND(n) operator (used in uppercase, as shown with n = a number) is an undocumented Google search operator that will help you find documents where the distance between two search terms is around ‘n’. The higher the number ‘n’ the less is the proximity between the search words. Here’s an example:
A research query that says “hot springs” will mostly show search results about geographical hot springs (because these two words are maximized in use together than with separation between them).
However, if we modify the query to look like “hot AROUND(5) springs,” you get results where the two terms are written on the page in close proximity.

Also, note also that if Google is unable to find anything within the limit (of ‘n’), it will just do regular ranking of the terms without the AROUND coming into the application.
This operator is particularly helpful in long articles or long text, for example searching Google books. It is also helpful for when searching for quotes, speeches or a song that’s stuck in your head, but you can only think of a few words from it.
Google’s wildcard search operator, represented by Asterisk (hot * springs), may achieve similar results   but with AROUND, you even get to specify the distance between the two search terms.
Note: Do remember to write AROUND in all CAPS, else it won’t work.
Did you like this bonus tip about Google search? Tell us in comments!

Read More »

Control Any Android Phone With Single Click

Control Any Android Phone With Single Click
KofestoTech: A new discovery at the PacSec Conference at Tokyo unveiled a great threat prevailing in the Android OS that hands over all your valuable data and full control of your device to the hackers with just a click. Read more to know about this vulnerability in detail.
Security researchers have discovered a flaw that affects all version of Android OS. This weakness allows an attacker to take the complete control of your phone as soon as you click on a malicious link leading to the attacker’s website.
The flaw came into light at the PacSec Conference at Tokyo, kudos to Guang Gong who discovered it, from security software vendor Quihoo 360 at the MobilePwn2Own. Furthermore, this flaw becomes more critical as it also involves manipulation of the V8 JavaScript engine. Although the details were not exposed, but, it took Gong three months of hard work ahead of the competition and eventually, won him a trip to the ConSecWest security conference to be held next year.
This sort of flaw in an OS is not a new thing, however, in this case, just a single malicious link can hand over the full control of your device to a hacker, which is the dreadful part.
According to The Register, the conference was also attended by one of the members of the Google’s security team and hence, Gong is likely to receive a large sum after his discovery exposing one of the greatest threats in the Android OS till date and that too demonstrated in the latest release Nexus 6.
Dragos Ruiu, PacSec organizer said, “The impressive thing about Guang’s exploit is that it was one shot; most people these days have to exploit several vulnerabilities to get privileged access and load software without interaction.”
Want to add something? Tell us through your comments below. Keep reading us as we bring to you the freshest and the finest bytes of technology.
With inputs from The Register

Read More »

Tips To Keep Your Android Device Safe and Sound

Tips To Keep Your Android Device Safe and Sound

It would not be an exaggeration to say that the present age is the age of smartphones. They have invaded our lives to an extent that was hardly conceivable a few years ago! And what is the single biggest reason behind this- Yes you guessed it right or probably wrong – Android. When you think about it- the versatility of Android is completely unparalleled. Every day a new Android App keeps popping up that leaves people wondering “Whoa, can such an app really exist”.

But with great functionality come greater threats. Cases involving leakage of personal or credit card information along with misuse of someone’s private photographs have become a regular feature of daily newspapers. We are under the radar of hackers and unscrupulous companies waiting just for the opportune moment to steal our data.
But Android is not all that scary! There is plenty much you can do to protect your Android device from the malicious intent of others! Just follow these tips to make your device as safe and secure as possible.
(I am going to ignore explaining the obvious methods involving common sense such as “Never give your phone to people whom you don’t trust” or “Never Leave Your Phone Unattended in Public Places”.)

Set A Screen Lock:

Make your device secure by adding a screen lock with a Pattern,PIN or Password.
Just go to Settings –> Security –> Screen Security –> Screen Lock

Back Up Your Data:

In case you end up losing your device or it gets stolen or damaged, Backups may just prove to be the saving grace.
To save backup your photos and videos you could use the Auto Backup facility to back them up to Google+.
Simply go to Google Photos –> Settings –> Auto-Backup
You can upload your files and folder to ‘Google Drive’ and further backup your Music using ‘Music Manager’.

Encrypt Your Device:

Encryption shall come in handy in case you lose your device. Make sure your device is running Jelly Bean (Android 4.1 or higher).
Go to Settings –> Security –> Encryption –> Encrypt phone

Just in case you are wondering how Encryption is better than providing a Screen Lock. Encryption scrambles all the data on your phone with a cryptographic key, without which it is impossible to access the phone’s data by even connecting it to a computer (Something which isn’t provided for by Screen Locks)

2-Factor Authentication:

In case someone has access to your password try using this feature which uses a password and a code generated by the phone to prevent unauthorized access thereby providing your phone with an extra layer of protection.

Download Apps From Trusted Sources Only:

It is advisable to download applications from the Google Play Store only as they are all tested for harmful behaviour and undergo stringent policy checks before being posted there. Apps downloaded from harmful sources can even result in you being charged some hidden fee or disclosing your personal information to hackers.

Enable Android Device Manager:

One of our biggest fears today would be losing our Android device and with it all the precious data that we might have been holding in it for years. But do not fret, the wonderful features of Android Device Manager such as “Remotely locate this device”, “Allow remote lock and erase” and “Find My Phone” provide the perfect remedy for such a situation. 

Add Your Contact Information To Your Lock Screen:

You can add some personal contact information on the lock screen in case you lose your Android phone and some stranger ends up finding it.


Read More »

Monday, February 8, 2016

Two Coders Have Turned Donald Trump Into A Programming Language

TrumpScript – Two Coders Have Turned Donald Trump Into A Programming Language
KofestoTech: Participating in a hackathon and after a 20-hours long coding session, two programmers have written a python-based programming language called TrumpScript. This language is something Donal Trump would approve of. Take a look at the rules and syntax of the language and know more.
Sam Shadwell and Chris Brown, two computer science students, have pledged to “Make Python Great Again”, and, in this process, they have trolled Donald Trump in an epic manner. These coders participated in a hackathon and coded the language along with Dan Korn and Cannon Lewis.
After a total 20 hours coding,  the coders were able to write TrumpScript, a python based programming language that is inspired by Donald Trump.
But, when I say ‘inspired by Donald Trump’, apart from “Making Python Great Again”, what does that exactly mean?
To write a program in TrumScript, you need to choose malformed sentences using only pre-formed words and only a small subset of ‘logical’ operator. The error messages don’t help you track down the bug, they criticize your code. Words like “true” or “false” are “fact” and “lie”.
Here are some of TrumpScript’s features:
  • No floating point numbers, only integers. America never does anything halfway.
  • All numbers must be strictly greater than 1 million. The small stuff is inconsequential to us.
  • There are no import statements allowed. All code has to be home-grown and American made.
  • Instead of True and False, we have fact and lie.
  • Only the most popular English words, Trump’s favorite words, and current politician names can be used as variable names.
  • Error messages are mostly quotes directly taken from Trump himself.
  • All programs must end with “America is great.”
  • Our language will automatically correct Forbes’ $4.5B to $10B.
  • In its raw form, TrumpScript is not compatible with Windows, because Trump isn’t the type of guy to believe in PC.
  • The language is completely case insensitive.
The mission of language states that “TrumpScript is language based upon the illustrious Donald Trump. As the undeniably best presidential candidate in the 2016 language, we found that the current field of programming languages does not include any that Trump’s glorious golden combover would approve of.”
By making a programming language that Donald Trump would approve of, Sam and Chris want to make programming great again.
Cheers, guys!

Read More »

Sunday, February 7, 2016

Beware: Cheap USB Type-C Cables May Harm Your Devices

Beware: Cheap USB Type-C Cables May Harm Your Devices
KofestoTech: Thinking of buying a cheap USB Type-C cable from Amazon? Well, think again. Google engineer has blasted the substandard Type-C cables on the product reviews citing them for failing the mentioned specs. Some of those could even damage your device.
Type C cables are in town and are slowly making way into people’s electronics must-have list. USB Type-C cables came into picture as the universal connector platform, but the cheap ones might be doing more damage to your devices than charging it.
As revealed by Benson Leung, engineer at Google, cheap Type-C cables and adaptors sold at Amazon do not fulfill the provided standard specs. Benson tested 10 USB Type-C connectors from Amazon and found only three of them:Belkin, iOrange-E and Frieq ($20) to be capable of charging his Chromebook while seven others that were with $10 tags could not.
The cables might be optimal for smartphones, but using the cheap ones for high-powered devices might do some damage. The problem is that the Type-C 1.1 specs clearly allow a power delivery of 3A which is used by the laptops. However, few adaptors are marked with USB to Type-C specifications but do not have an adequate hardware for that purpose.
In other investigation, Leung found that another adaptor manufacturer used easy methods to draw 3A current by using a 10 kΩ resistor rather than the standard 56kΩ. The adaptor would no doubt, Leung says, charge your phones, laptops or notebooks but will cause damage to the cable or the device itself.
Leung has been severe while giving reviews to the products that failed the standard specs.
So, simply said, you can use the cheap Type-C connectors and USB to Type-C adaptors for your smartphones but do not risk your laptop computer with these, instead stick to the official products or rather, the expensive ones.

Read More »

10 Smartest People Alive Today

10 Smartest People Alive Today
As we all know that there are lots of clever minds on this planet, but the fact is that not all of them are genius. A person with an IQ of 140 or higher is considered as Genius. Only 0.5% of the world’s population can use their mind up to that level, that means 1 person out of 200- these are the smartest people on the planet. The way they see things and react and draw conclusions are much different and seem crazy to others.
Today, I am going you to show a list of 10 smartest people alive. I am pretty sure you have heard about some of them but not all of them. Also, I am sure that the very first name which comes in everyone’s mind while talking about alive  smartest people or genius people is of Stephen Hawking. Yeah, that’s right, Theoretical Physicist Stephen Hawking has an IQ of level 160. But there are others who have much more IQ.

                              Check the list of 10 smartest people who are alive today:
You may not see some of your favorite personalities in the list because everyone couldn’t be included in the list. This list of smartest people was generated by SuperScholar.org and the infographics are taken fromvisual.ly.
Did you find this list interesting? Share it with your friends!

Read More »

World’s First Ubuntu Linux Tablet Converts Into A Complete PC, Thanks To Convergence

World’s First Ubuntu Linux Tablet Converts Into A Complete PC, Thanks To Convergence

KofestoTech: Believing in convergence, Canonical has unveiled the world’s first tablet that runs on Ubuntu Linux. The Ubuntu-maker promises  that it’s a device that can provide you a complete Ubuntu desktop experience as you plug-in a keyboard, mouse, and monitor. Built by Spanish OEM BQ, the price of this device hasn’t been revealed. According to the sources, we can expect a price tag of $260.

Few years back, when Ubuntu Linux showed off its new Unity PC interface, people called it one master interface for laptops, PCs, and tablets. Well, that day has finally arrived as Canonical has unveiled the world’s first Ubuntu tablet, Aquaris M10 Ubuntu Edition.

Believing in Convergence, Ubuntu maker Canonical has announced its first ever tablet that transforms and gives you the complete desktop experience. Just plug-in a keyboard and mouse and your 10.1-inch tablet turns into awindowed interface. As you add a monitor, it becomes afull Ubuntu PC. Sounds cool to me.
In its statement, Canonical says that Aquaris M10 is the first in a series of converged devices. So, get ready for some more in near future. Built by Spanish OEM BQ, the price of this device hasn’t been revealed. According to the sources, we can expect a price tag of $260.
In a statement, Jane Silber, Canonical CEO said: “We’re bringing you everything you’ve come to expect from your Ubuntu PC, now on the tablet with BQ, soon on smartphones. This isn’t a phone interface stretched to desktop size – it’s the right user experience and interaction model for the given situation.

What are the specifications of Aquaris M10 Ubuntu Edition?

Apart from offering an Ubuntu convergent experience, Aquaris M10 is the first tablet running on Ubuntu Linux. Here are its specifications:
  • A 10.1-inch IPS touch display with HD 1920×1200 pixel resolution at 240 ppi
  • MediaTek quad-core MT8163A 1.5GHz processor
  • 2GB RAM and 16GB internal storage, approximately 11GBs is available for use
  • MicroSD slot (up to 64GB)
  • 802.11n Wi-Fi, Bluetooth 4.0, GPS, FM Radio
  • 8-megapixel camera with autofocus and dual flash
  • Front mounted speakers
  • Micro HDMI port
  • 7,280mAh Li-Po battery

What are the key Ubuntu convergence features?

Ubuntu makes multitasking and windows management easier. It brings a full range of desktop applications and thin client support for productivity and mobile. You get to manage applications easily and get the advantage of integrated services with desktop notifications.
According to Canonical, convergence makes file browsing and file and folder management much easier. As you switch the interface, the responsive applications detect the point/click input and re-shape according to the UI. “Also, in terms of applications, we have something no other OS can provide: a single, visual framework and set of tools for applications to run on any type of Ubuntu smart device,” says Jane Silber
Apart from Canonical, the similar convergence approach is being pushed forward by Microsoft in the form of Windows 10. The company launched Windows 10 last July and showed us what it’s trying to achieve with Continuum.
About this competition, Silber says, “We share a vision with Microsoft. I think they have a very similar view of what’s happening in the personal computing space.” She adds: “On the one hand it’s competition, on the other hand it’s reinforcement.”

Read More »

First Step to Effective Security – How to Know if You’ve Been Hacked

First Step to Effective Security – How to Know if You’ve Been Hacked


KofestoTech: Was your data compromised in the latest data breaches? How to know if you’ve been hacked? Here are the answers.
he online world is becoming scarier each day and the possibility of getting hacked gets increased each time you sign into your online accounts. It’s possible that you haven’t been hacked yet, but you must ensure to follow secure practices to remain safe in the future.
News of new data breaches and password thefts are as common as any other development around you. These attacks occur via various means- either through a malicious email, or a flaw in your computer’s operating system. Even the White House and Pentagon aren’t immune to hackers.
There have been about 5,593 data breaches since the year 2005 and this number is rising exponentially. These breaches have exposed about 800.3 million individual records alone in the United States.
These data breaches are a big risk that ask you to be prepared and follow secure practices.
The Identity Theft Resource Center defines data breach as an “incident in which an individual name plus a Social Security number, driver’s license number, medical record or financial record (credit/debit cards included) is potentially put at risk because of exposure.”
So, what do I lose in a data breach?
Usually, it’s just your basic information like name and email addresses. By collecting this basic information and connecting the dots, an expert hacker can gain tons of other sensitive information to hurt you in various ways.
As written in the Forrester report, Planning for Failure, “even enterprises with the most mature security organizations and advanced security controls can’t prevent every single breach — especially if your opponent has the time and financial backing to target you.”
The situation is getting worse with time and keeping your data safe from the reach of the prying eyes must be your top priority.
But, how to know if you’ve been hacked?
With the increase in hacking attacks, a number of sites have opened up that give you alerts when data breaches take place. One of the best places to get these announcements is the mailing hosted at the 

Another website called Was Company Hacked? performs a Twitter-based search to tell you if there’s any activity on Twitterverse about attacks on the company.
PwnedList and Shouldichangemypassword.com offer a similar service that notify users with email if an email address in compromised.
You are also advised to keep your antivirus updated and scan your system using a good antimalware scan. Your irregular financial statement could be another hint that your data is compromised.
Stay informed, stay safe.
In the follow-up article, I’ll be describing what should be done if your data is hacked. Stay tuned.


Read More »