iOS version of Pokémon Go is a possible privacy trainwreck [Updated]

No user data has been accessed, and Google and Niantic are working on fixes.

If you sign into Pokémon Go on iOS, you may be giving it more access than it needs. (credit: Andrew Cunningham)

Update: Niantic has confirmed in a statement that the Pokémon Go app requests more permissions than it needs, but that it has not accessed any user information. Google will automatically push a fix on its end to reduce the app's permissions, and Niantic will release an update to the app to make it request fewer permissions in the first place. The full statement:

"We recently discovered that the Pokémon Go account creation process on iOS erroneously requests full access permission for the user's Google account. However, Pokémon Go only accesses basic Google profile information (specifically, your user ID and e-mail address) and no other Google account information is or has been accessed or collected. Once we became aware of this error, we began working on a client-side fix to request permission for only basic Google account information, in line with the data we actually access. Google has verified that no other information has been received or accessed by Pokémon Go or Niantic. Google will soon reduce Pokémon Go's permission to only the basic profile data that Pokémon Go needs, and users do not need to take any actions themselves.

Original story: A word of warning if you're playing Pokémon Go on iOS: signing into the app through Google currently gives the game full access to your Google account (hat tip to Adam Reeve for discovering the issue). External apps that you sign into with Google often ask for a small subset of permissions based on what they need to do—view your contacts, view and send e-mail, view and delete Google Drive documents, and so on. But Niantic's Pokémon Go iOS app doesn't ask, and with full account access, it can theoretically do all of those things and more. You can check on and revoke permissions for Pokémon Go and any other external app on this page.

We've independently verified that the game requests full account access on iOS, but the Android version doesn't appear to have the same problem; you can sign in with Google but the app doesn't show up on the permissions page. And, of course, you don't need to use a Google account to play Pokémon Goan account created through the Pokémon site will also work. However, that site is currently having server problems and you may not be able to create an account right now if you don't already have one.

Read 1 remaining paragraphs | Comments

Huawei launches Honor 8 smartphone for $300 and up (in China)

Huawei launches Honor 8 smartphone for $300 and up (in China)

Huawei is expanding its Honor line of mid-range smartphones with high-end specs. The new Honor 8 smartphone is a 5.2 inch phone with a 1080p display, a Kirin 950 octa-core processor, and a starting price of about $300.

The company unveiled the phone in China, where a model with 3GB of RAM and 32GB of storage will sell for 1,999 yuan ($299).

There’s also a 2,299 yuan ($343) version with 4GB of RAM and 32GB of storage and a 2,499 yuan ($373) model with 4GB of RAM and 64GB of storage.

Continue reading Huawei launches Honor 8 smartphone for $300 and up (in China) at Liliputing.

Huawei launches Honor 8 smartphone for $300 and up (in China)

Huawei is expanding its Honor line of mid-range smartphones with high-end specs. The new Honor 8 smartphone is a 5.2 inch phone with a 1080p display, a Kirin 950 octa-core processor, and a starting price of about $300.

The company unveiled the phone in China, where a model with 3GB of RAM and 32GB of storage will sell for 1,999 yuan ($299).

There’s also a 2,299 yuan ($343) version with 4GB of RAM and 32GB of storage and a 2,499 yuan ($373) model with 4GB of RAM and 64GB of storage.

Continue reading Huawei launches Honor 8 smartphone for $300 and up (in China) at Liliputing.

Decrypted, episode 1: Our crash course to the world of Mr. Robot

Ars returns to the podcasting—this time with a limited series tied to S2 of Mr. Robot.

I've wanted Mr. Robot to return so badly that my work notebooks are filled with schoolboy doodles. Unfortunately, my Elliot looks too much like Doug Funnie. (credit: Nathan Mattise)

If there are two things the Ars staff has been itching for over the past year, it's a return to podcasting and the return of Mr. Robot. If you feel similar, we have some good news.

Welcome to Decrypted, Ars Technica's weekly podcast for season 2 of Mr. Robot.

For our debut episode, we look back to season one exclusively through the eyes (err, words) of main character Elliot Alderson (played by Rami Malek). Despite the Internet's (justified) obsession with the show's realistic depiction of tech, Ars reviewer Jonathan Gitlin said the characters and especially how "they break down and experience their delusions" is what makes Mr. Robot compelling. So if breakdowns and delusions are what you're after, there's no better way to relive season 1 than through Elliot's words.

Read 5 remaining paragraphs | Comments

Families: Hamas on Facebook, so firm must pay $1B after terror deaths

Facebook will likely argue for protection under Section 230 of CDA.

Hamas and its supporters have published images like this on Facebook. (credit: Force v. Facebook)

On Sunday, the families of several terrorist victims sued Facebook under an American anti-terrorism law. The victims died in multiple terrorist attacks in Israel in 2015 and 2016, and the families are seeking at least $1 billion in damages.

The plaintiffs allege that the social networking giant is liable as it provides “material support” to Hamas—which the United States government considers a terrorist group—by allowing its leaders and followers to openly use the service.

The case, known as Force v. Facebook, is the latest example of families attempting to use terrorism statutes as a way to shut down objectionable speech online and gain a monetary benefit for their deceased loved ones from social networks. None of the other efforts so far have been successful.

Read 4 remaining paragraphs | Comments

CopperheadOS is now selling Nexus phones with security-hardened OS (for premium prices)

CopperheadOS is now selling Nexus phones with security-hardened OS (for premium prices)

CopperheadOS is a security-hardened version of Google Android that’s designed to offer protection from zero-day vulnerabilities, stronger sandboxing of apps and services to help protect your data, a firewall, MAC randomization, and other tools designed to make Android more secure.

It’s an open source project based on Android Open Source Project code, and you can download and install CopperheadOS on a number of recent Nexus phones and tablets including the Nexus 5, Nexus 5X, Nexus 6P, and Nexus 9.

Continue reading CopperheadOS is now selling Nexus phones with security-hardened OS (for premium prices) at Liliputing.

CopperheadOS is now selling Nexus phones with security-hardened OS (for premium prices)

CopperheadOS is a security-hardened version of Google Android that’s designed to offer protection from zero-day vulnerabilities, stronger sandboxing of apps and services to help protect your data, a firewall, MAC randomization, and other tools designed to make Android more secure.

It’s an open source project based on Android Open Source Project code, and you can download and install CopperheadOS on a number of recent Nexus phones and tablets including the Nexus 5, Nexus 5X, Nexus 6P, and Nexus 9.

Continue reading CopperheadOS is now selling Nexus phones with security-hardened OS (for premium prices) at Liliputing.

Romanian Govt. Seizes Leading Pirate Site Domain

Romania, the country with Europe’s fastest average Internet connection speeds, has stepped up its piracy crackdown. The Ministry of Justice says it has seized the domain of one of the country’s most popular movie and TV show streaming sites as part of a criminal investigation.

Source: TF, for the latest info on copyright, file-sharing, torrent sites and ANONYMOUS VPN services.

domainseizedOver the past several years, many countries in mainly Western Europe have responded to pressure from US-based companies to act against Internet piracy.

In some cases, this has involved passing new legislation to make life harder for pirates but largely it has been left to national courts and informal industry-led stakeholders groups to decide how to deal with unauthorized distribution.

In Eastern Europe, anti-piracy activity is much more limited but now it appears that tough measures can be taken when the authorities see fit. According to reports coming out of Romania, the government has seized the domain of one of the country’s most popular streaming portals.

990.ro was among Romania’s top 100 most popular sites overall and looked like this before being shut down by the state.

rom-seized1

A TorrentFreak reader familiar with the site confirmed that 990.ro was one of the most popular locations for streaming video, TV shows in particular.

“Game of Thrones episodes were live within just a few hours after airing, complete with new (local) translations. This site was huge, you could almost watch any TV show on the planet and about 90% of the latest movies,” he explained.

For now, however, the show(s) won’t go on. Following action by the government, 990.ro’s domain is now under the control of the Ministry of Justice and displays the following message.

rom-seized

While no notice was given of this seizure, the action didn’t entirely come out of the blue. In 2012, Romania’s Audiovisual Council (CNA) reported more than 40 ‘pirate’ movie and TV show websites to the police, demanding action to shut them down.

990.ro was among those reported. The list also included Vplay.ro, the largest site of its type at the time. That domain is also under the control of the Ministry of Justice. Many of the others mentioned have since shut down, moved to new domains and/or had old ones seized.

The action against 990.ro follows a similar crackdown carried out in June 2015 which received assistance from the FBI. Three sites were shut down then and several people were arrested.

Thus far there has been no reports of arrests following the latest domain seizure. However, more serious breaches of Romanian copyright law can be punishable by fines and jail sentences of up to four years.

Since 990.ro carried a lot of advertising, it wouldn’t be a surprise to hear that tax evasion and money laundering offenses are being investigated, just as they were following last year’s raids.

Local media initially reported that 990.ro is owned by Romanian news and entertainment portal Romania Online but the company is now denying the allegations.

“The 990.ro site does not belong and has never belonged to the company ROL ONLINE NETWORK SA or any other companies in the group ROL.ro,” the company said in a statement.

“990.ro site was one of the 145,232 customers of the FASTUPLOAD.ro free service that lets you store, transfer and viewing files. FASTUPLOAD.ro site is the largest Romanian storage services and file transfer and operates under Romanian law.”

According to ROL.ro’s Linkedin page, ROL.ro is indeed affiliated with FASTUPLOAD but says that any liability lies with that company, not them.

A direct IP address for 990.ro has since ceased to function and there is no news of any return for the site.

Source: TF, for the latest info on copyright, file-sharing, torrent sites and ANONYMOUS VPN services.

Having three genetic parents makes mice age better

Different variants of mitochondrial DNA alter tumor incidence, DNA damage.

The cell's powerhouse, which looks a bit like a heavily compartmentalized kidney bean. (credit: NIH)

Mitochondria are “the powerhouse of the cell” (or so every fifth grade biology book will tell you) because they use aerobic respiration to generate ATP, the molecular form of energy that enables cellular processes to occur.

Structurally, mitochondria are unusual in that they have their own DNA. This is because they were initially bacterial cells that long ago got subsumed by other cells, relinquishing their independence for a safe harbor and giving their hosts an energy boost in exchange.

Mitochondrial DNA (mtDNA) encodes many of the proteins required for aerobic respiration—but not all of them. Respiration still requires many proteins that are encoded by the cell's regular chromosomes. A new study suggests that the right match between mtDNA genes and chromosomal genes could be key to an organism's health and that some mtDNA may actually be beneficial.

Read 8 remaining paragraphs | Comments

Xiaomi: 110 million Redmi phones sold (in 3 years)

Xiaomi: 110 million Redmi phones sold (in 3 years)

Xiaomi may not be one of the top 5 smartphone makers in the world anymore, but the Chinese company still sells a lot of phones.

Vice president Hugo Barra noted today that Xiaomi has sold 110 Redmi smartphones since launching the low-cost brand in August, 2013.

Xiaomi has a reputation for offering high-quality phone at low prices. The Mi line of smartphones tend to have flagship-level specs and mid-range prices, while the Redmi phones have mid-range specs and typically sell for around $100 to $130.

Continue reading Xiaomi: 110 million Redmi phones sold (in 3 years) at Liliputing.

Xiaomi: 110 million Redmi phones sold (in 3 years)

Xiaomi may not be one of the top 5 smartphone makers in the world anymore, but the Chinese company still sells a lot of phones.

Vice president Hugo Barra noted today that Xiaomi has sold 110 Redmi smartphones since launching the low-cost brand in August, 2013.

Xiaomi has a reputation for offering high-quality phone at low prices. The Mi line of smartphones tend to have flagship-level specs and mid-range prices, while the Redmi phones have mid-range specs and typically sell for around $100 to $130.

Continue reading Xiaomi: 110 million Redmi phones sold (in 3 years) at Liliputing.

One fast vaccine strategy could protect against Ebola, H1N1, more

Nanoparticle-encapsulated mRNAs successfully vaccinate mice against pathogens.

(credit: City of Columbus)

Vaccination has improved health and lengthened life spans over the last two centuries, but it takes time to develop vaccines in response to emergent health threats. A paper published in PNAS presents a new type of nanoparticle vaccine technology using RNA to encode proteins that trigger immune responses. This new vaccine technology could allow us to respond more quickly to new threats, potentially saving many lives during future outbreaks.

Currently, four types of vaccines are commonly used. Inactivated vaccines contain bacterial cells or viruses that are killed or inactivated—they can’t replicate, but they can produce an immune response. Attenuated vaccines contain live bacteria or viruses that have low virulence, so they will evoke an immune response, but won’t cause a full-fledged infection. Virus-like particle vaccines contain the shell of a virus, but lack any genetic material. Finally, subunit vaccines contain proteins derived from the infectious agent, which can provoke an immune response without introducing the pathogen.

The new vaccine technology presented in this paper relies on what’s called “replicon mRNA,” which is based on a deactivated virus. It can make copies of itself and trigger the production of the proteins it encodes but can’t make new viruses, so it never escapes beyond the cells it first gets into. Replicon mRNA can be used to produce large quantities of specific proteins within the body, which in turn can provoke an immune response against those proteins.

Read 7 remaining paragraphs | Comments

Snapdragon 821: Qualcomm bringt Speed-Bump mit 2,4 GHz

Ein bisschen mehr Takt hier, eine leicht höhere Frequenz da: Qualcomms neuer Snapdragon 821 ist ein Snapdragon 820 mit beschleunigten CPU-Kernen und flotterer Grafikeinheit. (Snapdragon, Smartphone)

Ein bisschen mehr Takt hier, eine leicht höhere Frequenz da: Qualcomms neuer Snapdragon 821 ist ein Snapdragon 820 mit beschleunigten CPU-Kernen und flotterer Grafikeinheit. (Snapdragon, Smartphone)