Showing posts with label data security. Show all posts
Showing posts with label data security. Show all posts

Saturday, November 26, 2022

The Bluetooth headsets are multi-use tools.



Do you know that the Bluetooth headset can use as an eavesdropping tool? In that case, the eavesdropper must only put the Bluetooth headset where the microphone is in the room. And then connect their laptop or mobile telephone to that headset. The requirement is that the blue tooth is in the range of that tool. 

The fact is that operators can use Bluetooth devices through the walls. Sometimes computers are accidentally connected to the wrong printers. And that caused embarrassing situations. If the attacker leaves the headband headset connected to the mobile telephone in the room. That thing makes it possible to record everything that happens in that room. 

And that kind of headset is one of the remarkable risks to privacy. There is a possibility. By hacking the Bluetooth headset. The hacker can target psychological warfare like subliminal commands to the victim. But even if that thing is not possible hacking the Bluetooth set can cause a situation where hackers hear everything that participants talked about in the meetings. 



Above: Modern AR (Artificial Reality) headset.


The next-generation headsets are using mixed reality. And that thing makes those systems even more effective than before. 

There are headsets where are small action cameras. They can connect to mobile devices or laptops. And that allows them to share experiences on social media. But those systems can also connect with military systems. Infrared cameras make it possible to see in the dark. The information that the camera sends can project into HUD glasses. Or in more primitive models to the screens of mobile telephones. 

In laboratories are also developed headsets equipped with laser microphones. Those systems can use as eavesdropping tools. The laser microphones can eavesdrop on everything that is talked behind closed windows. That kind of system can use as a super-tools for hearing things that not wanted to share with everybody. 

The laser system can also point the enemy tanks and other targets in the military world. So the operator must only look at the target and then use a gesture or button to mark it for the systems. The gesture can be that the person just shows the middle finger or some other mark to the same camera. 

The system can see the fingerprint and then mark the target's position.  The requirement for that system's successful work is that the system recognizes the mark. The system can use the GPS-connected rangefinder and radio compass to locate the target. . And then the image of the target will send to the entire system. Then the snipers or drones etc. can take the target out. 


https://designandinnovationtales.blogspot.com/

Thursday, September 30, 2021

Prepare for quantum revolution.





The quantum computer can make real processor-based multi-tasking possible. So it can at least theoretically drive regular computer programs. Quantum computers can drive the code in the lines. Which means that the code has more layer than in row moving code. 

The system shares the row of the code to the layers. But there is always a limited number of layers or states in the qubit. So the data flow is also driven in rows. The system is introduced in image II. 




(Image II)

Every square is the data segment. And the arrow shows the direction of the data flow. 

And this ability makes it more powerful than any binary system ever can be. The quantum computers can also have virtual workspaces for regular computer programs. The system can drive the program code also in rows.  

In the qubit, the data goes in layers or states. The qubit can drive regular computer programs by using one state for each program. And the quantum system can drive multiple binary code-based programs at the same time. So the quantum computers can make also the real- processor-based multi-tasking possible. And that thing makes it possible to create new and more powerful servers than ever before. 

The race of the leadership in quantum computing is going on. The thing that we must understand about the quantum systems is that the age of the room-temperature operating. And (or) commercial quantum computers are coming. The standard optical cable can operate as the quantum data transporter. The idea is that one of the fibers is acting as 0,1 layers. And other is free to transmit data. 

The system requires that. Each of the glass fibers in the optical data cable is connected to its communication laser. And nanotechnology is making it possible to make that kind of system possible. The data transmitting in the quantum model makes the system safer and fixes the problem of transmitting data between quantum computers. But the bottleneck is the use of quantum computers. The straight use of the quantum system requires operating systems and solutions that are making it possible to use the qubits for some productive work. 

The thing is that we must be sure that our environment and infrastructure are fully capable of revolutionary enlarged data masses that are resulted from large-scale quantum computing. Quantum computing makes many things easier and safer than regular binary computers. But the shadow side is that the supporting infrastructure must also prepare for the quantum systems. 

If we are thinking that the advance of quantum computers is similar to other computers. We must realize that the more powerful systems cause the software developers are starting to make more and more complicated program code. The thing is that the next-generation artificial intelligence can simply generate custom software without human assistance. The user of the AI just says that "I need a CAD program". 

And then the AI just collects that program from the internet. If there is no ready software for download the system just collects the custom software from pieces that it can download from the net. The thing is that even without the room-temperature operating quantum computers the quantum computing will turn more common. The internet allows using of quantum systems remotely over the internet. And that thing can cause risks for the data security. 

The thing is that quantum computers are the most powerful systems. The speed of those machines is so high that they can break any code that is made by using regular computers.



()https://www.fastcompany.com/90680174/ibm-ceo-quantum-computing-will-take-off-like-a-rocket-ship-this-decade


()https://www.newscientist.com/article/mg25133541-600-will-the-us-or-china-win-the-race-for-global-quantum-dominance/

Sunday, September 29, 2019

Selecting a suitable security solution for the ICT sector.

Selecting a suitable security solution for the ICT sector.

When we are choosing a data security solution, the user-friendly and automatized solution might feel good. But the thing is that when we are choosing the solution, we must remember that all software and other maintenance operations are owned and made by somebody. And that thing is making the new kind of threats for security. The thing is that the spies, who might operate in the public or private sector, might want to cover the data, what they steal, that nobody else than people, who are willing to pay that data would use it.

If we think the case, that internet security company starts to attack against us, we might feel paranoid. But then we must realize, that we might know somebody, or in our social media or real-life social media network, the thing is that there might be somebody, who might want to target for attackers by using us as the gate.

This is one thing, what we must realize when we are selecting the ICT-security solution. And before we are starting to do anything, we must make analyze, what kind of threat we will face. That thing is helping us to select the service and programs, which are most suitable for us. Here I must say, that there are two ways to hack the system, one is the technological hacking, and another version is social hacking.

The best example of social hacking is that some good-looking girl comes to ask the passwords or something like that from the ICT-team. This person might be looking innocent, but the thing is that this individual would use the space of some company for installing stethoscopes, what are equipped with microphones to walls, and also put on the server for surveillance cameras to that office. Those actions can be made for surveillance or just spoiling the reputation of some company, and making difficulties for its business.

There are other ways to attack, and one is the hybrid attack, where the Email or some other message will cheat person to use some bandit WLAN station, and that makes possible to create "the man-in-middle" attack against some target. In this attack all data, what some computer sends and receives travels through another computer, what can copy single bit in that traffic. In that process, the attacker's computer can replace original data by using faked data, and this might be used in propaganda operations.

This is a very effective way to observe the use of network-based data. And this is the thing, what the most of computer usage today is. We are using a computer or data networks every time, and if somebody would hack that transmitting, our privacy might be gone.

Whenever we are using mobile systems like cell-phones, we are using mobile networks, which are similar to WLAN networks, but their range is greater. If somebody can hack that system, the privacy is gone, but also mobile payments and other kinds of things are uncovering things, what we might not want to tell other people. But even if we think, that there is nothing to hide in our own lives, in our social life would contain people, who might be good targets for professional hackers.

Friday, September 6, 2019

The problems with mobile telephones and data security (Part III)

The problems with mobile telephones and data security (Part III)

If we are using so-called white noise in some space, we would deny people to remember things, what is not mentioned to other people. This gives better privacy in public places, where people might act somehow striking. And if that kind of things is told to some other people that would cause an embarrassing situation in the shopping centers and other places.

When people are curious, they are making things like eavesdropping or rather saying follow the discussions of people, who are sitting next to them. This kind of things are including the cases, where family members are "accidentally" looking the emails of their spouses or children, and why not parents letters or emails are not opened by children if they have opportunity to do that thing.

There are many things, which makes unprotected mobile devices very big risk, and the biggest risk is equipment, which involves information on how to access also in the emails and operating accounts of other persons. The mistake what would be done is leave the unprotected mobile telephone, where is the password handling software on the sofa, and there is the note, where is the pin code of this software. That allows people to close or "moderate" also other accounts. And here is one thing, what people never mention.

That thing is that if the person doesn't understand, what something means, that would cause that the telephone, where is the many passwords can go to wrong hands. One of this kind of examples is handicapped people, who might give the moderation telephone for the wrong person by accident because that person believes that some cleaner or janitor is a police officer. One of the problems with that kind of controlling software is that the if person opens things like email by using this software, and simply forgets the computer open.

That case allows that every person can read those emails by using the same computer, what that person has done. It is suspicious that somebody has at least tried to focus on people the high power white noise, that they simply would forget their passwords, and that would cause that they must open the file or find the paper from the pocket. This allows people to see the passwords or pin-codes by using surveillance camera, what is in the wrong angle. The white noise denies people to remember things, and that is normally used in the shopping centers that the people would not remember the faces of other inmates.

But the high-volume white noise can be used to disturb the people while they are making something, what they should keep secrecy. That noise can target to the person by using the LRAD system, and that can also be used to give commands for people. That system can install to the drone and the person who is targeted for this system would simultaneously be repeating order other to give passwords to the people, who would call by telephone to those offices. Or if this kind of systems is in hands of criminals they can order people to buy things, or even agitate them to do something, what they don't want even to think to do.

Saturday, May 18, 2019

The difference in data security of modern times and past

The difference in data security of modern times and past

The difference in data security of modern times and past


Modern data networks are extremely fast if we make compares with the data networks in the past and modern times. That is the threat but also an opportunity for the officials and security specialists, who are hunting hackers in the network. And the tools, what is used in that action are also suitable as the hacking tools. This is the thing, what we must remember when we are hiring some penetration testers, who are working for data security companies.

We must understand that those penetration testers can work as full-time hackers, who are trying to penetrate other companies networks. The idea of the penetration tests is that the team would simulate the attacks against the firewall and other tools, what are used to protect the data, what is stored behind the firewalls. But the same tools can be used to penetrate other networks and the contracts of that kind of operations can cover as the penetration test.

But when we are talking about the hacking cases, where the targeted system has been infected with malicious software we must realize that somebody must make that kind of software. The software must be made by some people, who have the right tools and education for that kind of software, which is not very easy to make.

There must be somebody, who makes malicious tools

If we would think the case, that somebody would try to program the malware by using normal computers, the anti-virus can detect that kind of action immediately. And if the hackers or programmers of the malicious software want to make sure, that software is effective, they must test it by using a different kind of anti-viruses and firewalls. And this kind of testing would cause the alarm in the surveillance rooms.

The modern data security bases the offensive technology, where the hacker would attempt to track across the network. That thing works that when the intruder would download some data from the server, the tracking tool would put little cookie or code in the data. This data would answer a similar message, what ping sends to network, and that would allow tracking the hackers. There are people who are judging this thing because this tool can be used to track every person, who is connected to the Internet.

If somebody steals the source code of the computer programs, what officials like NSA are using to create their surveillance tools, that person might create own tools for that kind of developing software. But there are many more things, what people must realize when they are making software. In fact, those developers must have excellent skills in programming because they must remove the tracking codes of that software, and if they cannot do that, the software can send the tracking data to the NSA.

Hackers would need really good laboratories for creating effective hacking tools.

And then those hackers must have a laboratory, where they test the software, what is created by that software. Then those creators must have the knowledge, how those virus-generators are acting. In fact, there could be artificial intelligence based solutions, what mission is to deny the misuse of the governmental software, what is created for making spyware for the intelligence community of the United States.

That means that maybe this kind of special software is code, what would make anti-virus software use the stealth alarms if the malicious software is made by using by the NSA virus generator. In this case that the software, what is used as the generator would make the mark in the things, what made of them, and that will send the mark to the headquarters of the NSA or to the laboratories, what is used for creating the anti-virus.

And maybe the alarm can be caused the situation, that somebody would buy multiple licenses for antivirus tools if that person is not the creator of the antivirus software, or actually stealing the code is a crime. That means that the person must work for some technical magazine. But being the creator of anti-virus would explain, why some person needs to create the malicious code.

The captured source code of computer viruses could be a risk of security because if hackers can get that code, they can modify that to new viruses

That is used for creating the detection of the firewall and antivirus.  In that case, the person needs a laboratory for a testing antivirus program, and also multiple tools for creating that kind of software effectively. But the developer of the antivirus program can also be the cover work for creating the spying and tracking tools.

Sometimes I have thought that if the hackers can penetrate the hard disk of the companies like F-Secure, they would get the codes for many malicious tools, what they could modify if they have enough skills, and that hard disk might be a very interesting target. From there, hackers can get a perfect code for their own solutions, and they can modify that captured malicious software to the new form.

Wednesday, May 15, 2019

Writing about the next generation hacking tools

Writing about the next generation hacking tools

The short story of the Galileo-remote-control system


This software is created by an Israeli company, what product is the thing called "Data security". The name of the system is similar to the European version of the GPS-system, and sometimes I have thought that is it possible that this tracking tool has got the name, what is similar to European Galileo-system actually because people are wanted to deceive for installing this software accidentally, when they want to install the European location software in their computers.

When we are thinking about the companies, whose mission is actually monitoring the employers of some other companies, we must realize the thing, that those companies can also share that data to the third party. This is a very bad thing, and when we are thinking about the cases when the source codes of tracking software have been stolen, that thing might be very dangerous. The hackers can customize that software, and use it in their own purposes. And this is a really bad thing for the security.

Modern hacking has been changed from the operations of hobbyists to fully professional hackers, who are selling data to the persons, who are willing to pay about things like that. They can also customize the software what is used as the tracking tool, and then resell that software. If the network owner would use the legal tool, what reports the user that the connection is monitored, the hacker can fix that code that way that there would be no information about the surveillance. And this stealth version of this software can slip to the targeted system.

The next generation tool for hacking is artificial intelligence. 

Artificial intelligence would be the next generation tool for hackers. It can operate independently, and in the worst case, the hackers just write the name of the targeted company to the screen. And then the computer hacks the target automatically. The benefit of artificial intelligence is that thing ever get tired. This means that the machine can operate non-stop to searching the network, looking for data, and test the passwords. It can change the IP-address of the attacking machine, which makes it really hard to track.

And the thing is is that this operator would ever sleep, and it can operate even years non-stop in the computer, what is in some empty room, and that computer is far away from the human operators. It cannot be connected to any humans, and if it is found, the hackers remain free, because they cannot be tracked, if the system is made correctly. The computer just delivers the captured data to the internet, and the system can carry it by using several servers, which might locate in the different countries, which makes tracking of the hackers very difficult.

When we are thinking about artificial intelligence, it would be the ultimate tool for hackers. Artificial intelligence can collect every single byte of data, what is written about the company, and then it can look at the worlds, what is looking like the passwords. Actually, it can use the same programs, what people use, but artificial intelligence does it more effective way. The thing is that artificial intelligence can make many things faster than human makes it an effective tool for hacking tool. That means that artificial intelligence can try the entire dictionary book of words to some password square.

Artificial intelligence is an effective tool for hackers.

It can change the IP-address of the computer automatically if the targeted system tries to block the address, where the suspicious traffic of bytes comes from. But it can also compile the response time of the targeted system, and that means that artificial intelligence can try letter by letter the password, and the thing would be that the response time would be a little bit longer if the letter is part of the password.

And it will test the password by putting a letter to the line of the password, and it will compile the errors of the response time. The thing is that when the letter is part of the right password, the system must drive the database a little bit longer because the system would compile the password by mark to mark, and this response time can be metering.

The form of the password can make it easy to notice if the wrong file would be opened on the Internet. In the worst case, the passwords are stored in the database, what is hacked. And then the hackers can dump all that data to their own system. Or they can make own superuser in the database, and that thing can cause the situation, that those hackers can operate years in the targeted systems. Those words are combinations of the letters and numbers, what are stored in the databases, and in some cases, those passphrases can be seen at the Internet by googling the name of the domain and trying word passwords after this. That will sometimes uncover the passwords very effectively if they are in the database, where can be accessed from the internet.

The thing what gives warning that some nation would be behind the hacking is that there must be installed some software in every computer, what is used in some country, and what is owned by some companies. This seems a very effective way to monitor people, but there is one thing, what the actors, what makes this kind of operations have forgotten. People can use their own computers also for the business, and that thing will be very good to know when those kind of things are made.

Tuesday, May 14, 2019

The thing about tracking software and private corporations

The thing about tracking software and private corporations


When we are asking some private operator work for our data security, we must realize that those corporations are not always what they claim. That means that sometimes those operators have not able to check the identities of their workers, and here I mean cases where the private operator takes the foreign citizens in their team.

Private corporations have not the same abilities to check backgrounds of their workers than governments have, and sometimes they are facing the situation, that they must hire somebody, and there are only a few suitable coders. In that case, there are only a couple of coders, who has the necessary skills, and then the corporation must make so-called fast recruitment.

In fact in the world of data security, the problem is, that if something reads in the CV that would mean nothing. If the person says that the job is done by using some programming language, that would mean, that this inmate has done anything. And there have been cases, that some "programmer" would be ordered the codes from some friends, and this is the problem for the data security. Those people can call to somebody, who will send the code to the Email, and then they might send the malware accidentally.


One way to make malware, what can pass the firewall is to send the source code by using PDF of some other file, and after that, the contact person just copy-pastes the source code to the program editor, and then the thing is ready. Pressing Ctrl+A and Ctrl+V is very good to take the source code from the document, and then just pressing Ctrl+V the code would be copied to the editor. After that, the user must only create the file, what is able to run and then the software is ready for the run.


Innocence is a pretty thing 


Sometimes we are thinking that some persons are safe because they have limits. This thing is not actually true, because modern electronic equipment has given a chance to make flexible and easily portable screens and communication devices. In fact, even the person, who has ever made code or even opened a computer before can hack by using modern equipment. in this case, the person wears only the action camera, what is in the headset, and mobile telephone. The action camera is connected to the Internet by the mobile telephone, and another telephone can be on the table, and the hacker can send messages, what the operator who is in the house must do.

Or if the team wants to get the feeling of what is a very well known thing from some actions movies, they can use smart glasses, and the hacker can write commands to that screen and follows the things, what is going on the computer screen by using this "remote eye". And on the passage would be the remote camera, what warns the inner operator about the quests like security operators. That camera can be connected to the drone, what just flies out from the window when the operator is gone.

And then the hacker would give the instructions to that person by telling, what must be done. Or if the person, who operates uses the screen like smart glasses, the thing goes more easily, because the hacker can write commands and send them to that screen. Of course, a normal mobile telephone can be done with that and the hacker who watches the screen of the computer from somewhere in distance must only give the person, who operates inside the instructions by using Whatsapp or some other social media solution. In this case, the person, who is in the building is operating as the "human robot".

In those cases, there might be a very big risk, that something disappears, and that "something" might be the source code of the tracking tools of that company. This kind of things is really bad things because by using those code lists the hackers can modify the code, and then make own versions of that malware. This means that the malware maker just renames the program, and changes the addresses, where the system would send the data, and that thing might cause a massive data leak.

This kind of attacks needs the contact person, who has access to the system as the superuser. And in fact, even a handicapped person can make those things, if that person gets the instructions. When we are thinking about the "human robot", we can give that inmate the action camera, and mobile telephone, and then we can give the instructions by using Whatsapp, and that is the situation, what has ever mentioned.

Computer researchers published a new algorithm that revolutionizes web management.

The new database structures require new and powerful tools to manage databases in non-centralized solutions. The new data structures can be ...