Researcher Drops Third Windows Zero-Day Exploit in Four Months – Security Boulevard

Researcher Drops Third Windows Zero-Day Exploit in Four Months  Security Boulevard

A security researcher named SandboxEscaper has published proof-of-concept exploit code for an unpatched vulnerability in Windows.

“zero day exploit” – read more

Slack Banning Random Iranian Ex-Pats Shows Why Making Tech Companies Police The Internet Is Crazy Stupid

On Thursday morning, I started seeing a bunch of tweets pop up in my feed from people of Iranian backgrounds, who no longer lived in Iran, who were having their entire Slack groups shut down, with the company blaming US laws regarding sanctions on Iran.

There are a lot more reports like this, but that was just the first batch I found with a quick search. Slack’s explanation to the press seems… lacking:

“We updated our system for applying geolocation information, which relies on IP addresses, and that led to the deactivations for accounts tied to embargoed countries,” the representative said. “We only utilize IP addresses to take these actions. We do not possess information about nationality or the ethnicity of our users. If users think we’ve made a mistake in blocking their access, please reach out to [email protected] and we’ll review as soon as possible.”

All of the blocked people talking about it on Twitter note that they don’t live in any sanctioned country — though many admit to having visited those countries in the past (often years ago) and probably checking in on Slack while they were there. That… is not how the sanctions system is supposed to work. In another press statement Slack tries to pin the blame on the US government:

“Slack complies with the U.S. regulations related to embargoed countries and regions. As such, we prohibit unauthorized Slack use in Cuba, Iran, North Korea, Syria and the Crimea region of Ukraine. For more information, please see the US Department of Commerce Sanctioned Destinations , The U.S. Department of Treasury website, and the Bureau of Industry and Security website.”

But that’s bullshit. The sanctions rules don’t say you have to cut off completely anyone who ever connected from a sanctioned country. The Verge (linked above) spoke to an Oxford researcher with knowledge in this area:

“They are either incompetent at OFAC interpretation or racist,” said Oxford researcher Mahsa Alimardani, who specializes in communication tools in Iran.

[….]

“Detecting an Iranian IP address on a paid account (which is presumed to be for business) login as a violation of sanctions is a wrong interpretation of these regulations,” Alimardani says. “At best it’s over-regulation to prevent any sort of misunderstanding or possible future hassle with OFAC.”

Of course, as former Facebook Chief Security Officer Alex Stamos notes in his own tweet on this topic, this is exactly what happens when you have vague rules with strong punishment, and expect internet platforms to magically police the web:

And of course, we’re seeing more and more and more of that. FOSTA does that in the US. The GDPR is doing that around the globe. The EU Copyright Directive will do that. The EU Terrorist Content Regulation will do it. And a bunch of other regulations targeting the internet as well. That’s why some of us keep warning that these laws are going to lead to widespread censorship and suppression of free speech. Because that’s how it always works out. If you threaten internet platforms with huge penalties for failing to block content, but leave the details pretty vague, they’re going to make decisions like that and simply kick people off their services entirely, rather than face liability. It’s a recipe for disaster — and one that seems to be favored by tons of clueless regulators, politicians, and plenty of people who just don’t realize how much harm they will cause.

Permalink | Comments | Email This Story

Techdirt.

Caribou Coffee Says 265 Locations Affected by Security Data Breach – FOX 21 Online

  1. Caribou Coffee Says 265 Locations Affected by Security Data Breach  FOX 21 Online
  2. Caribou Coffee says data breach exposed customer info  MPR News
  3. Caribou Coffee notifies customers of data breach  Star Tribune
  4. Caribou, Bruegger’s say credit card data stolen in data breach  Minneapolis / St. Paul Business Journal
  5. Caribou Coffee says its customers’ card information was possibly exposed in data breach  KMSP-TV
  6. View full coverage on read more

“data breach” – read more

Chinese government carrying out global cyberwarfare campaign, UK says – The Independent

  1. Chinese government carrying out global cyberwarfare campaign, UK says  The Independent
  2. West accuses China of carrying out ‘malicious’ cyber warfare campaign  The National
  3. US and UK accuse China of cyber espionage campaign  Financial Times
  4. US Indicts Two Chinese Nationals For Massive Hacking  The Epoch Times
  5. Chinese hacking ‘no surprise’- Andrew Little  Radio New Zealand
  6. View full coverage on read more

“cyber warfare news” – read more