Pages

Mail App Flaw In iPhone and iPad

Apple Bytes: 

Apple Inc is planning to fix a flaw that a security firm said may have left more than half a billion iPhones vulnerable to hackers.

The bug, which also exists on iPads, was discovered by ZecOps, a San Francisco-based mobile security forensics company, while it was investigating a sophisticated cyberattack against a client that took place in late 2019. Zuk Avraham, ZecOps’ chief executive, said he found evidence the vulnerability was exploited in at least six cybersecurity break-ins.

An Apple spokesman acknowledged that a vulnerability exists in Apple’s software for email on iPhones and iPads, known as the Mail app, and that the company had developed a fix, which will be rolled out in a forthcoming update on millions of devices it has sold globally.

Apple declined to comment on Avraham’s research, which was published on Wednesday (4-22-20), that suggests the flaw could be triggered from afar and that it had already been exploited by hackers against high-profile users.

To execute the hack, Avraham said victims would be sent an apparently blank email message through the Mail app forcing a crash and reset. The crash opened the door for hackers to steal other data on the device, such as photos and contact details.

ZecOps claims the vulnerability allowed hackers to remotely steal data off iPhones even if they were running recent versions of iOS. By itself, the flaw could have given access to whatever the Mail app had access to, including confidential messages.

ZecOps found the Mail app hacking technique was used against a client last year. Avraham described the targeted client as a “Fortune 500 North American technology company,” but declined to name it. They also found evidence of related attacks against employees of five other companies in Japan, Germany, Saudi Arabia, and Israel.

Avraham based most of his conclusions on data from “crash reports,” which are generated when programs fail in mid-task on a device. He was then able to recreate a technique that caused the controlled crashes.

While Apple is largely viewed within the cybersecurity industry as having a high standard for digital security, any successful hacking technique against the iPhone could affect millions due to the device’s global popularity. In 2019, Apple said there were about 900 million iPhones in active use.

Read the complete article > reuters.com

Free reading materials

Tech News and Views

I imagine that most of you are doing a lot of reading while quarantined at home. So, you will appreciate this site that shows free books you can download and keep for use on your Nook or Kindle or other e-reader.

Before I show you the site, I want you to download the free Calibre book finder, reader and converter. You will find it at calibre-ebook. Once it has downloaded, click on it to install the program. You can use Calibre to search for books, but I like using the sites shown below because you can keep the downloads (the free books are only from the Digital Public Library of America).


When you download books from the link shown above, they will be in epub format.  If you have a Kindle, you will have to use Calibre to convert the books to the Kindle Mobi format.

Your Smartwatch Could Spot Signs Of COVID-19

Just like your smartwatch’s heart-rate monitor can alert you to possible warning signs of atrial fibrillation or sleep apnea, it can also spot warning signs that might signal your body is fighting a flu-like infection — if you know where to look.

App maker Cardiogram pushed an update to its Apple Watch and WearOS apps last week that adds a new stat that shows average beats per minute during sleep. As it turns out, tracking fluctuations in your heart rate during sleep could signal that your body is fighting a viral infection like COVID-19.

Cardiogram co-founder Johnson Hsieh discovered the correlation after tracking his BPM during a bout with the seasonal flu in January. He noticed that his normal sleeping heart rate was about 10 beats per minute higher while his body was fighting the virus and returned to normal as his sickness subsided. The higher BPM was also evident during other parts of the day, but sleep is where it’s easier to spot.

It’s due to vasodilation, which is a fancy medical term for the expansion of the blood vessels during inflammation. As blood vessels expand, signals are sent to your brain to increase your heart rate and provide additional blood supply to inflamed regions.

“A pretty clear signal in your heart rate when you have symptoms that would otherwise be measured exclusively by a thermometer,” said Harish Kilaru, head of product at Cardiogram. “When your body is fighting an infection, both your sleeping BPM and your resting BPM are higher.”

As Kilaru explained, other factors (such as consuming alcohol) can also lead to an increase in resting BPM, so it’s not an exact science just yet. While Cardiogram still recommends taking your temperature and consulting your physician with any concerns, heart-rate monitoring is one more way to stay on top of possible coronavirus symptoms.

“I think there’s a lot of potential here because we have seen a connection between these symptoms and your heart rate,” Kilaru said.

A recent Fitbit study reached a similar conclusion. Researchers discovered a distinct correlation between elevated resting heart rate and influenza-like illness rates and found the data significantly improved flu predictions. Additionally, weekly changes in resting heart rate closely mirrored changes in influenza-like illness rates.

While the Cardiogram app isn’t available for Fitbit OS, the Fitbit watch will natively track your sleeping heart rate each night. And if you have a Charge 3 or Versa 2, you’ll get an even better handle on your COVID-19 exposure due to their relative SpO2 sensors that can track oxygen levels in your blood.

Like Cardiogram’s method, Fitbit’s SpO2 sensor will record your blood-oxygen levels as part of its Sleep Score. While you won’t get a number, each morning you’ll find an Estimated Oxygen Variations chart that will show your levels throughout the night, which can be invaluable for tracking COVID-19 symptoms. A typical blood-oxygen saturation level is above 90 percent, but COVID-19 sufferers can develop severe hypoxia, which lowers the oxygen levels in your blood due to damage to the walls of the air sacs in their lungs.

Monitoring resting heart rate and SpO2 tracking can be excellent indicators of the flu, but they’re still not as good as an actual body temperature reading. While there are very few wearables that are able to accurately show body temperature right now, that’s probably going to change in a post-COVID-19 world.

But even without the ability to track body temperature, your smartwatch can still be useful in monitoring your own coronavirus symptoms. “Just because your wearable devices aren’t taking your temperature regularly,” Kilaru said, “it still provides you a clear and continuous data point that you can use on a day-to-day basis.”

Read the complete story > macworld.com

Facebook Is Dying Because It Seriously Sucks

What was once a truly dynamic platform that allowed people to build useful social networks and promote their companies has now turned into a saccharine community messaging board manipulated by algorithms designed to sell you things Facebook believes you are interested in. From a user's perspective, the social media outlet is getting worse and worse.

Ever wondered why you see an ad on Facebook that seems to be calling your name?

Perhaps you need a new pair of running shoes and have just been talking to a friend about it. Then an hour later you see an ad for a pair of running shoes on your Facebook feed. Yes, this could be a weird coincidence, but in the world of Facebook, there’s no such thing as coincidences - just deliberate and intentional actions, all in the name of profit.

Facebook used to be all about connecting with your nearest and dearest. These days, though, it’s more about Facebook wanting to connect with you as a commodity for data mining. The level of privacy that they violate in exchange for you to access the app is, in a word, disturbing.

The algorithm that they configure to target you as a consumer and the way these ads follow you no matter where you are on the internet is a serious cause for concern.

Every time you log onto Facebook now though, you're shown a conversation from a day or two ago by a friend you may have briefly interacted with over the past week that you have absolutely nothing to do with. You're shown random posts that are not in any sort of chronological order that you're not interested in whatsoever.

All the sites and pages you follow in no longer show up on your feed (unless you've interacted with it in the past week or so), and you're stuck scrolling through your feed to dig for something, anything, that you're vaguely interested in. This isn't a knock on any of your friends, but you rarely see anything they post because they are all experiencing the same thing you are and have left the social network in favor of, well, anything other than Facebook.

Facebook continues to condone paid ads with political leanings that will pop up in your feed, regardless of whether the information you read is true or not. Fake political news is nothing new, but the fact that Facebook now encourages it for profit is a sign of the times, and a disturbing premonition that democracy may be on its way out.

We now live in a world where money = power, but it’s nothing new. Based on history, it was only a matter of time before Facebook got too big for its own good and decided to exploit its powerful position as one of the biggest social media websites in the world.

Clearly, Facebook has put money over morals and decided to throw ethics out as a result. They care much more about making a profit than keeping your information private and only seem to be interested in spearheading the data revolution, where you’re much more of a commodity than a human being with a profile page and real connections with other people.

So, if you want to keep your personal information safe from being mined by greedy companies, and you want to stop supporting the dark side of the free market, maybe you should quit Facebook for good.

It may feel like you’re powerless to such a giant and that you don’t have a choice, but the reality is that you do. Facebook is only as good as its users, and the fewer users it has, the less power and control it has as well. The fact is, people are leaving facebook in droves already.

Boycotting Facebook is the only way to send a clear message that, as a society, we still value morals over money and expect companies, no matter how powerful, to conduct themselves accordingly.

Facebook may see you as a consumer commodity, but at the end of the day, you’re a human being that shouldn’t be forced into sacrificing privacy for someone else’s profit.


Credit: thedailybanter.com and quantummarketer.com


iPhone SE: A Powerful New Smartphone In A Popular Design

Apple Bytes: 

The Most Affordable iPhone Features A13 Bionic, the Fastest Chip in a Smartphone, and the Best Single-Camera System in an iPhone

Apple today (4-15-20) announced the second-generation iPhone SE, a powerful new iPhone featuring a 4.7-inch Retina HD display, paired with Touch ID for industry-leading security. iPhone SE comes in a compact design, reinvented from the inside out, and is the most affordable iPhone.

The new iPhone SE is powered by the Apple-designed A13 Bionic, the fastest chip in a smartphone, to handle the most demanding tasks. iPhone SE also features the best single-camera system ever in an iPhone, which unlocks the benefits of computational photography including Portrait mode, and is designed to withstand the elements with dust and water resistance.

iPhone SE comes in 3 beautiful colors - black, white and (PRODUCT)RED - and will be available for pre-order beginning Friday, April 17, starting at just $399 (US).

Read the entire news release > HERE.

Salvaging An Ancient Computer

Viewing options:
  1. Hover mouse pointer over image and use scroll wheel.
  2. OR
  3. Grab the slider in top right of image and pull down.
  4. OR
  5. Use Pop-out Arrow in top right to open slides on Google.

Executive Board Minutes

Computer Technology Club, Inc. – Executive Board Minutes
April 10, 2020

The April meeting was cancelled due to COVID-19 restrictions & venue closures.

Coronavirus

Tech News and Views

Many of you know that I have long promoted the use of the World Community Grid which uses idle time on individual computers to solve world wide problems such as Ebola, Malaria, obtaining clean water, eliminating cancers, etc. The grid is almost ready to establish an effort to use the mass computing power to help eliminate the coronavirus. In the meantime, there is another grid effort called Folding-at-home which I encourage you to join, which will accomplish the same type of goals as the World Community grid, but will work on the coronavirus immediately.

The following link is from the Kim Komando website. I have followed Kim for many years. She is a nationally syndicated columnist whose columns appears in USA Today and in hundred of other papers and on her own radio program. Here's a link to her site which tells you how you can join the folding-at-home project.


Care About Security And Privacy? Stop Using Zoom!

Credit: techcrunch.com

Zoom’s troubled year just got worse.

Now that a large portion of the world is working from home to ride out the coronavirus pandemic, Zoom’s popularity has rocketed, but also has led to an increased focus on the company’s security practices and privacy promises. Hot on the heels of two security researchers finding a Zoom bug that can be abused to steal Windows passwords, another security researcher found two new bugs that can be used to take over a Zoom user’s Mac, including tapping into the webcam and microphone.

Patrick Wardle, a former NSA hacker and now principal security researcher at Jamf, dropped the two previously undisclosed flaws on his blog Wednesday, which he shared with TechCrunch.

The two bugs, Wardle said, can be launched by a local attacker — that’s where someone has physical control of a vulnerable computer. Once exploited, the attacker can gain and maintain persistent access to the innards of a victim’s computer, allowing them to install malware or spyware.

Wardle’s first bug piggybacks off a previous finding. Zoom uses a “shady” technique — one that’s also used by Mac malware — to install the Mac app without user interaction. Wardle found that a local attacker with low-level user privileges can inject the Zoom installer with malicious code to obtain the highest level of user privileges, known as “root.”

Those root-level user privileges mean the attacker can access the underlying macOS operating system, which are typically off-limits to most users, making it easier to run malware or spyware without the user noticing.

The second bug exploits a flaw in how Zoom handles the webcam and microphone on Macs. Zoom, like any app that needs the webcam and microphone, first requires consent from the user. But Wardle said an attacker can inject malicious code into Zoom to trick it into giving the attacker the same access to the webcam and microphone that Zoom already has. Once Wardle tricked Zoom into loading his malicious code, the code will “automatically inherit” any or all of Zoom’s access rights, he said — and that includes Zoom’s access to the webcam and microphone.

“No additional prompts will be displayed, and the injected code was able to arbitrarily record audio and video,” wrote Wardle.

Because Wardle dropped detail of the vulnerabilities on his blog, Zoom has not yet provided a fix. Zoom also did not respond to TechCrunch’s request for comment.

In the meanwhile, Wardle said, “if you care about your security and privacy, perhaps stop using Zoom.”

LABELS INDEX:

* (5) 2038 Problem (1) 3G - Goodbye (1) 5G (2) Abine Blur (1) Activation Lock (1) ADAS (1) Add sound to Impress (2) Address Book (1) AirTags (3) Amazon (3) Android (2) Android phone (2) Annoying Ads (1) Anti-Virus (1) App Store (1) Apple Bytes-2019 (12) Apple Bytes-2020 (19) Apple Bytes-2021 (13) Apple Bytes-2022 (10) Apple Bytes-2023 (11) Apple Glass (1) Apple Maps (1) Apple Repair (2) Apple Support (2) Apple TV (1) Apple Watch (6) Archives of CTC (7) ARM M1 Processor (1) Attachments (1) Audio Files (1) Autonomous (1) Avast (1) Backups (3) Bank-fraud (1) Battery Icon (1) Battery life (4) Battery Replacement (1) BCC (1) Best Buy (1) Big Data Mining (1) Big Sur (1) Bloatware (1) Board Minutes 2019 (12) Board Minutes 2020 (12) Board Minutes 2021 (12) Board Minutes 2022 (12) Board Minutes 2023 (12) Board Minutes 2024 (2) Boom Supersonic (1) Browser Attack (1) Browser Settings (1) Browser Tabs (1) browsers (1) Cache (1) Camera App (1) Caps Lock Indicator (1) Car charging (1) Car Door Lock (1) Cell phone strength (1) Cell Phones (1) Charge Cycles (1) Chevy Bolt (2) Chrome browser (2) Chromecast (1) Clone vs Image (1) Cloud Computing (1) Colorado (1) Construction (1) Contact Removal (1) Converting CDs (1) coronavirus (1) Coupons (1) COVID-19 (1) Covid-19 Detection (1) CPAP Recall (1) CTC 2023 ISP Survey (1) Customer Support (1) Dash Cams (1) Default browser (1) Delete Apps (2) Digital Estate Planning (1) Disable Thumbnails (1) Disk image (2) DogWalk malware (1) Domino's (1) Download Videos (1) Drive Partition (1) Driver Assistance (1) Drones (3) Drywall (1) DuckDuckGo (4) E-bikes (1) E.A.S.Y Pay (1) ebooks (1) Edge (1) Edge Browser (4) EdgeDeflector (1) Electric Bicycles (2) Electric car batteries (1) Electric Cars (6) Electric Trucks (1) email (1) Email Aliases (1) EV (13) EV Charging (1) External Storage (1) Facebook (4) FaceTime (3) Fake Reviews (1) Fast Charging (1) FBI Warning (1) Fiber Optic Cable (1) FIDO (1) File & Folder Icons (1) Firefox (2) Firefox Relay (1) Fitbit (1) Force Quit (1) Future Tech (1) Gmail (2) Gmail Contact (1) Googerteller App (1) Google (1) Google Maps (1) Google Music (1) Google Play Store (1) Google Search (1) Google TV (1) Group Text (1) Hacking (3) Harley-Davidson (1) Headlights (1) Healthcare (1) ID.4 (1) Identify Music (1) Image vs Clone (1) iMessage (2) Incognito Mode (1) Instagram (1) Intel Drivers (1) Internet Explorer (1) Internet of Things (1) Internet speed (1) iOS 13 (1) iOS 14 (2) iOS 15 (2) iPad (5) iPad Air (1) iPadOS 15 (2) iPhone (16) iPhone 12 (1) iPhone Battery (2) iPhone SE (1) iPod Touch (1) ISO Files (1) ISP Down? (1) Karen's Replicator (1) Keyboard (1) keyboard shortcuts (2) LibreOffice (1) LibreOffice Impress (1) Linux Mint 19.2 (1) Lithium-Iron Phosphate (1) M2 Processor (1) Mac (1) Mac Tips (10) MacBook Air (2) macOS (4) Magnifier (1) Mail App (1) Malware (4) Mars (1) Masked Email (1) meetings (6) Microcomb (1) Microsoft (1) Mirroring Tips (1) Mobile Wi-Fi Hotspot (1) Mouse Speed (1) MyHealtheVet (1) NASA (1) Norton (1) old computers (1) OneDrive (1) Ookla (1) Oregon (1) Oura Rings (1) Outlook (1) Parallels 18 (1) passwords (1) PDF (1) PDF Editing (1) Phishing Scams (1) Phone Data Swap (1) Phone Scams (1) Plug & Charge (1) Pop-Up Blocker (1) Portable EV Chargers (1) print spooler (1) Printer problem (1) printers (2) Privacy (5) Privacy Settings (1) Private Browsing (1) Pro Pilot (1) RAM (1) RAM 1500 REV Pickup (1) Range anxiety (2) Range Extended Vehicle (1) Ransomware (3) Rebooting (1) Recharge Cycles (1) Remote control (1) Robots (1) Roomba robots (1) Router (3) Samsung Drive Storage (1) Samsung Gallery Sync (1) Scams (1) SD Cards (1) Search Engines (3) Search Tips (1) Secret Button (1) Security Flaw (1) Security Key (1) Security Warning (1) Sharing From Phone (1) Short Codes (1) Show Wi-Fi Password (1) Signal Strength (1) Sion (1) Siri (1) SkyDrive (1) Slide Over (1) Slow Internet (1) Smart Glasses (1) Smart Home (1) Smart Toys (1) Smartwatch (1) Solar-powered EV (1) Sono Motors (1) Speed Wars (1) Split Screen (1) Split View (1) Spreadsheets (1) Spy Pixel (1) Start Up (1) Startpage (1) Streaming (1) Streaming Services (1) Street View (1) Surface Duo (1) Surface Earbuds (1) System Tray (1) Tab Syncing (1) Tbps (1) Teams (1) Technology Channels (1) Telegram app (1) Tesla (6) Tesla Adapter (1) Tesla Model 3 (1) Texting (1) Tracking (1) Tracking Pixel (1) Two-Factor Authentication (2) Undo Send (1) Unlock Phone (1) Update problems (1) USB drive (1) USPS Informed Delivery (1) VA access (1) Verizon (1) Vertical TV (1) Video Conferencing (1) Videos (3) Voice Assistant (1) Vultur (1) VW (1) Web Beacon (1) WhatsApp (1) wi-fi (2) Wi-Fi Hotspot (1) Widgets (1) Win 10 Performance (5) Windows (1) Windows 10 (9) Windows 10 Tips & Tricks (1) Windows 11 (8) Windows 7 (1) Windows S Mode (1) Windows Update (1) Windows update problem (1) Wink (1) Winstall (1) Yahoo mail (1) Yippy (1) You've Been Hacked (1) YouTube (1) Zero Emissions (1) Zoom (2)