Tuesday, July 31, 2012

PSA: Dropbox Reports on Customer Spam/Hacking Complaints

See Dropbox's Blog Post http://blog.dropbox.com/index.php/security-update-new-features/ for the full story.

Short version, they say one Dropbox employee account was compromised, and that user emails were available because of that.

Also that some people are using password on multiple sites, and some of those passwords were Hacked from other sites. 

They say they will be improving security, and list a few of the improvements, Two Factor Authentication being the most useful IMO.

For those looking for deeper understanding on (good strong)passwords, see Steve Gibson's Haystacks & Needles (Understanding Passwords).

For more about Hacking or Cracking Passwords, see "Lessons Learned from Cracking 2 Million LinkedIn Passwords".

You can also see all my posts about Passwords or Hacking, by clicking on the Labels Passwords or Hacking respectively, Labels can be found at bottom left of every Blog post, and selected Labels can be found in the cloud at left side of Blog.

HwangSin Streaming again

http://www.own3d.tv/itsgosu/live/276078

Saturday, July 28, 2012

ROOT Battle Royale 2

ROOT's TTOne, ViBE and Masa go at it for glory and $100 in a FFA Winners league format, First one to 10 wins... well.. wins!


When: 07:00KST/00:00CEST/Sat 18:00EDT/Sat 15:00PDT

Streamhttp://www.twitch.tv/rootgaming

TL Threadhttp://www.teamliquid.net/forum/viewmessage.php?topic_id=356504

Quantic.HasHe vs EG.LzGaMeR Bo7


Gamers Abyss is hosting its first showmatch between Quantic.HasHe and EG.LzGaMeR in a Bo7 series for $100.

When: Sat 20:00 EDT/Sat 17:00 PDT

Streamhttp://www.twitch.tv/sc2links


Friday, July 27, 2012

PSA: Twitter Blackhole Malware Alert

See Sophos Naked Security Blog post for details.

Current versions are using tweet about is it you in photo, with link, but link installs malware.


Security & Hacking: "Cyberheist Smokescreen: Email, Phone, SMS Floods"

See article https://krebsonsecurity.com/2012/07/cyberheist-smokescreen-email-phone-sms-floods/

Interesting how Offense and Defense in Cyber Security keeps dancing back and forth.

Thundertoss' Top 200 KOTH (King of the Hill)

Stream: http://ascendtv.com or http://www.twitch.tv/ascendtv (different links to same stream)

When: 10:30 KST/03:30 CEST/Fri 21:30 EDT/Fri 18:30 PDT

CastersAscend & Thundertoss 

Casters on FacebookAscend FB & Thundertoss FB 

Votehttp://www.ascendtv.com/vote 

Drinking Game (Please Drink Responsibly):  http://www.ascendtv.com/drink

Replays:  

Format:  Top 200 Players (Grandmaster priority, top Masters permitted)

Prizes:

  • $20 for each 5 wins 
  • $10 for dethroning a 5+ win player 
  • $10 for "Match of the Night"

Players: join the chat channel "top200koth" on the NA server, and send a message to Thundertoss.

Thread: Top 200 KOTH (with prize $$!)

Tuesday, July 24, 2012

Monday, July 23, 2012

Nerd Gear: Pen Testing & Hacking Tool the "Power Pwn"

Check out the Power Pwn, a very low key but powerful Pen Testing tool, you can preorder now, but they are not expecting delivery till September/October this year.

It isn't cheap either, but then Security seldom is, for good security you have to spend a significant amount of time or money, generally both.

PSA: Gamigo 11 Million Passwords Hacked

See Ars article, also Forbes, the Forbes article links http://pwnedlist.com/ for checking if your email has been leaked.

I haven't heard about http://pwnedlist.com/ before, but shows as green with McAfee.

For more on Password Cracking, or Hacking, and what you should do see "Lessons Learned from Cracking 2 Million LinkedIn Passwords" and/or Steve Gibson's Haystacks & Needles (Understanding Passwords).

But if you have a Gamigo account, you should change your password, the Steve Gibson link above provides good advice on passwords.

Sunday, July 22, 2012

Saturday, July 21, 2012

Sacriel streaming DayZ

http://www.twitch.tv/sacriel

Go watch his stream, and his youtubes are the best I have found for DayZ.

More info http://dayzmod.com/forum/index.php?/topic/10051-index-of-helpful-threads/ 

Weaponshttp://dayzwiki.com/wiki/index.php?title=Weapons

World Championship Series Ukraine Nationals Grand Finals: WhiteRa vs AcerBly

WhiteRa lost first time he met Bly in this event, but came all the way back to face Bly in the Grandfinals!!

So WhiteRa has to win Two Bo3 to win, while Bly only needs to win One Bo3.

Streamhttp://www.twitch.tv/esltv_sc2

WhiteRa vs AcerBly on World Championship Series Ukraine Nationals Day 1

Streamhttp://www.twitch.tv/esltv_sc2

On July 21st and 22nd a total of 24 players will meet at CyberSports Arena in Kiev. The Russian Federation & Ukraine Nationals will determine the National Champions of Russia and Ukraine as well as their participants for the Europe Finals, which will be the Ukrainian champion and Russias Top 3. Russias Champion is also guaranteed a spot in the Global Finals in Asia later this year.

English stream will be provided by Kaelaris, Rotterdam and HasuObs !
http://www.esl.tv/channel/esltv-sc2/

Russian stream will be provided at SC2tv.ru by Adolf, Alex007, kaby and Olsior.
Thread: [SC2WCS] Russia/Ukraine Nationals - July 21st-22nd

Thursday, July 19, 2012

TLO is Streaming again

http://www.twitch.tv/liquidtlo

Go TLO!!

^_^

ChanmanV Pro Corner - ROOTCatZ & Unorthodox Strategies

WhenFri 12:00 KST/ Fri 05:00 CEST/Thu 23:00 EDT/Thu 20:00 PDT

Streamhttp://www.twitch.tv/chanmanv 

"This Pro Corner episode we have ROOTCatZ on to walk us through some unorthodox zerg strategies. ROOTCatZ has always been known for his unique style and thinking outside the box. He will be playing games against a playing partner while talking us through his strategies."

Nerd News: Internet Defense League

The goal of the Internet Defense League fits with what I do already, so I gladly joined today, see link for full information http://internetdefenseleague.org/ snippet below gives a concise idea:

The plan

When the internet's in danger and we need millions of people to act, the League will ask its members to broadcast an action.  (Say, a prominent message asking everyone to call their elected leaders.)  With the combined reach of our websites and social networks, we can be massively more effective than any one organization.

PSA: Maplesoft Security Breach

http://www.maplesoft.com/security/

Full information at link above, snippet from link:
Maplesoft is investigating a security breach of its administrative database that took place on July 17th, 2012. As a result of the breach, the perpetrators gained access to some email subscription data, including email addresses, first and last names, and company and institution names. Any financial information held by Maplesoft remains secure, and has not been affected by this security breach.

The perpetrators appear to be using email addresses they have taken from the database to spread viruses or malware. The perpetrators are posing as Maplesoft in an attempt to have individuals they email click on a link or download a malicious piece of software.

From what I understand this a multipronged threat, Phishing email trying to get you to click a link to install malware, but also virus embedded in some (all?) of the emails as well.

See the Notice Box on right side of http://www.maplesoft.com/security/ for more info on that.

Figured lot of Nerds use or have used Maplesoft products.

Minigun Streaming

http://www.twitch.tv/colminigun

Go Minigun!!!

Wednesday, July 18, 2012

Matthew Fink: A Question of Hardware

Go read this TL post were they "try to get to the heart of what it is to be Matthew "LookNoHands" Fink".

You can follow Matthew at https://twitter.com/looknohands119 (@looknohands119).

Tuesday, July 17, 2012

Firefox 14 is out, with some new Security features

http://www.mozilla.org/en-US/firefox/14.0.1/releasenotes/

My favorite new Security feature in FF 14 is Google searches now utilize HTTPS.

Nerd News: "Ubuntu port of Steam, Source engine, and Left 4 Dead 2"

Story at Ars http://feeds.arstechnica.com/~r/arstechnica/index/~3/5n3_nAq1AkM/

They linked to Valve/Steam press release http://blogs.valvesoftware.com/linux/steamd-penguins/

This news should make a lot of Nerds happy!!!  ^_^

Sounds like they plan to port more games to Ubuntu, hopefully in the near future!

Dimaga streaming

http://www.own3d.tv/mTw/live/52094

I am becoming a fan of Dimaga's plays, his style seems to me the way Zerg should be played, lot of little things like how he does, from his base layout and defense, to the distant 3rd base on most maps (a BW Zerg pattern of play IIRC).


Saturday, July 14, 2012

NVIDA Hack update


Posted July 13, 2012
A small proportion of users’ hashed passwords for DevZone has been posted publicly.
We continue to strongly recommend that you change any identical passwords that you may be using elsewhere, as noted below. 

~http://www.nvidia.com/content/devzone/index.html

NVIDIA has also shut down their online store in addition to Devloper forum that was shut down yesterday. 

Husky Streaming 12 hours with Friends for Charity today

http://www.twitch.tv/Huskystarcraft

WhiteRa tweeted about it a little while ago.

DIMAGA streaming some games vs BratOK

http://www.own3d.tv/mTw/live/52094

Don't know what this is for, could be practice or anything, but I much prefer watching most games from players view nowdays.

Well Ideally I like both players streaming and a Caster casting the game so I can have 3 Streams with different point of views ^_^

TwitchTV Mod Chat Bug

http://support.twitch.tv/discussion/4140/bug-chat-user-list-not-working-missing-mod-options#latest

Cut and past from there:
There is currently with an issue with the userlist not populating on many channels. This typically happens during events when the chat server is under heavy load. Also, related to this issue, moderator status may not displaying properly as well preventing mods from seeing the timeout and ban options in the web chat. Twitch is aware of the issue but there is not user end solution at this time.

If you are a mod in a channel, the chat commands will still work for moderation. These commands are:
  • /timeout [username]
  • /ban [username]
  • /unban [username]
  • /slow & /slowoff
Don't type the [ ].

You can also confirm you are a mod by typing "/mods" and make sure you are on the list.
I am Mod a few places and I have been having trouble with this myself on and off, seems random from my end, ie doesn't matter Browser or OS, so not much you can do if other than use the "/" commands, and some people I know have even reported problems with "/" commands not working.

If anyone has any more information please share it in comments, so far I can still get by allowing anonymous posts, if Spam gets to bad for me to keep that up, you will still be able to post with Open ID (most people on net have them, if you have Gmail/Yahoo/etc you have one already).

I will post updates if I find out any more.

Friday, July 13, 2012

PSA: NVIDIA Devloper Zone Hacked

http://nakedsecurity.sophos.com/2012/07/13/nvidia-android-forums-hackers/

I saw this first on Sophos blog linked above.

Cut and paste from NVIDIA's warning post below, see their link for complete message, http://www.nvidia.com/content/devzone/index.html,
NVIDIA suspended operations today of the NVIDIA Developer Zone (developer.nvidia.com). We did this in response to attacks on the site by unauthorized third parties who may have gained access to hashed passwords.
We are investigating this matter and working around the clock to ensure that secure operations can be restored.
As a precautionary measure, we strongly recommend that you change any identical passwords that you may be using elsewhere.
NVIDIA does not request sensitive information by email. Do not provide personal, financial or sensitive information (including new passwords) in response to any email purporting to be sent by an NVIDIA employee or representative.

For more on Passwords see More D3 Account Security or Computer & Password Security: Salting & Hashing explained clearly or Steve Gibson's Haystacks & Needles (Understanding Passwords).

HwangSin Streaming

http://www.own3d.tv/itsgosu/live/276078

HwangSin Fighting!

Thursday, July 12, 2012

Starcraft 2 Thoughts: Day9's Warp Prism PvT

I have blogged about Warp Prism play before here and here, but today I want everyone to look at Day9's most recent discussion about the Warp Prism vs Terran, from Day9's Daily #475




Part 2

PSA: Yahoo Accounts Hacked? Perhaps Gmail & others as well?


Read this on Ars http://arstechnica.com/security/2012/07/yahoo-service-hacked/

Ars avoided linking anything direct (ie hacked file) in the article, but there are links in the comments section, including this text list http://d33ds.co.nyud.net/archive/yahoo-disclosure.txt

I am not sure if that file is legit or not, or if it contains data from more than one exploit?  It seems to list information for Gmail, Yahoo, and more.

I would (I did) change passwords any Yahoo accounts that you have, might consider for Gmail and others in that text file linked above as well.

If you want to understand more about passwords and computer/Net Security see Steve Gibson's Haystacks & Needles (Understanding Passwords).

For more on what a Hacker can do see "Lessons Learned from Cracking 2 Million LinkedIn Passwords"

Edited to add this link shows other Blogs & News Sites covering this issue http://www.blogrunner.com//snapshot/D/2/1/hackers_expose_453000_credentials_allegedly_taken_from_yahoo_service/

Monday, July 9, 2012

HwangSin Streaming

http://www.own3d.tv/itsgosu/live/276078

SC2 Up & Coming with guest xSixSuppy


SC2 Up & Coming is a weekly podcast, dedicated to the up and coming Starcraft II scene. Each week we will focus on the players, teams, and leagues. Our plan is to shed some light on some of the lesser known players and teams. We will also keep you up to date on qualifying events, LAN events, as well as major tournaments. Hosted by NanMan, ALTWindy, & SamSc2.

Episode 1 will be an introduction episode for the first half. Introducing the hosts and the segments that we will cover each week. We will also have a special guest, xSixSuppy to talk about ESEA.

When: July 10, 2012 Tue 10:30 KST/Tue 03:30 CEST//July 9, 2012 Mon 21:30 EDT/Mon 18:30 PDT

Wherewww.Twitch.tv/TheRealNanMan

Thread: Official SC2 Up & Coming Podcast Thread

Holiday Show Match July 2012 Bling (P) vs qxc (T)

HSM #2:  Holiday Show Match July 2012 Bling (P) vs qxc (T)

Holiday Show Match (HSM) Independence Day 2012: Bling (P) vs qxc (T) in a Bo7

The HSM is the second event of the Holiday SC2 Showmatches sponsored by Cliff's Esports Corner & LXG's NanMan, we plan to have HSM for the holidays every year, we have at least two more planned this year.

[For all my EU, SEA, & Korean viewers going what holiday, 4th of July is a United States Holiday "Independence Day"]

If you missed the first event check out This Thread!

Big Shout Out to Nemesys for the Graphic Design on NanMan's Teamliquid Thread!

Game 1 below, rest of the games can be found at http://www.youtube.com/playlist?list=PL0EB34E080723BAEE&feature=plcp


NXZ vs weTTowel from VroomVroomVroom

aLtNXZ vs iVn.weTTowel in the finals at VroomVroomVroom cast by Duckvillelol, there is spoiler at the end of the VOD about who won.

 Unfortunately Duckvillelol doesn't have enough time to put entire series on his youtube channel, was  a Bo7, of the two games on his Youtube I like this one (Game 2?) the best, Game 1

Enjoy

Sunday, July 8, 2012

Nerd News: Higgs Boson

The Higgs Boson discovery, announced July 4, 2012 is big news in science, but if your not a Physicist you are probably wondering what the big deal is, this youtube from MinutePhysics does a good job of explaining it IMO.



Friday, July 6, 2012

Thundertoss' Top 200 KOTH (King of the Hill)

Stream: http://ascendtv.com or http://www.twitch.tv/ascendtv (different links to same stream)

When: 10:30 KST/03:30 CEST/Fri 21:30 EDT/Fri 18:30 PDT

CastersAscend & Thundertoss 

Casters on FacebookAscend FB & Thundertoss FB 

Votehttp://www.ascendtv.com/vote

Replays:  http://top200koth.blogspot.com/ (See Replay Packs on left side of that page)

Format:  Top 200 Players (Grandmaster priority, top Masters permitted)

Prizes:
  • $20 for each 5 wins 
  • $10 for dethroning a 5+ win player 
  • $10 for "Match of the Night"

Players: join the chat channel "top200koth" on the NA server, and send a message to Thundertoss.

Thread: Top 200 KOTH (with prize $$!)

Wednesday, July 4, 2012

WhiteRa vs Kas Mothership Rush!

Figured everyone has heard about this from previous post of mine or Reddit or TL, so not spoiling it by saying it is a n awesome Mothership Rush ^_^

Very cool game.




Another very cool Mothership Rush from WhiteRa
http://cliffsesportcorner.blogspot.com/2011/10/check-out-nanmans-latest-vod-whitera-vs.html

NanMan recently cast an Event where Jacks faced another Toss that tried this build, but it failed, like Jacks said, he is probably the best defensed Terran vs this build, since WhiteRa did to him so long ago ^_^

ACTA defeated in EU

http://arstechnica.com/tech-policy/2012/07/europe-declares-independence-from-hollywood-with-acta-vote/

Good News.

As always with Ars, I suggest reading through the comments, often you will find more information in comments section of Ars than in the article itself.

Nerd News: Retroactive Security?

http://bristolcrypto.blogspot.com/2012/07/retroactive-security.html

Link above is to a Cryptography/Computer Security blog I follow, mentions a talk by Butler Lampson from Microsoft Research, Lampson suggets using Banking security model as example to follow for computer security.

I don't think I agree with that at all, there are such huge problems with online Banking that at least some experts suggest using a Live CD to reduce vulnerability.

See my post Diablo 3 Account Security & Hacking compared to Online Banking Hacks

Minigun Streaming

http://www.twitch.tv/colminigun

Go Minigun!

Tuesday, July 3, 2012

VroomVroomVroom Tourney: TAMinimat vs Quicksabre [ZvT]

TAMinimat vs Quicksabre [ZvT] cast by Duckvillelol





HwangSin Streaming!

http://www.own3d.tv/itsgosu/live/276078

<333 HwangSin

Nerd News: "Top EU court upholds right to resell downloaded software"

Some really big news IMO http://arstechnica.com/tech-policy/2012/07/top-eu-court-upholds-right-to-resell-downloaded-software/

Maybe this is the start of a more reasonable balance between current situation, and consumer rights?

What do you think?

I know if us followed suit on this, it would probably change my buying habits.

I don't spend much money on software, including games, for various reasons.

I do buy the best hardware for my needs as I can afford, but I have to be careful with how many games I let myself have, because it is to easy for games to take over my life, so I get nothing else done.

Additionally, for software in general and games in particular, I don't like spending a big chunk of money on something that I will only use for a few weeks.

I do put a lot of money into books, but if I spend $25-30 on a book, I know that 5 or 10 years later I can read it again no problem, or if I know I won't want to read it again I can sell or trade it for another book.

With computer games, or other software, after 5 or 10 years, I might not be able to play the game at all, or if I can I will need additional software to let me run it, usually with bugs and crashes, on modern computer and OS.