Top-selling handgun safe can be remotely opened in seconds—no PIN needed

Not clear if issue with highly-rated safe can be patched.

Enlarge (credit: Two Sixes Labs)

One of Amazon's top-selling electronic gun safes contains a critical vulnerability that allows it to be opened by virtually anyone, even when they don't know the password.

The Vaultek VT20i handgun safe, ranked fourth in Amazon's gun safes and cabinets category, allows owners to electronically open the door using a Bluetooth-enabled smartphone app. The remote unlock feature is supposed to work only when someone knows the four- to eight-digit personal identification number used to lock the device. But it turns out that this PIN safeguard can be bypassed using a standard computer and a small amount of programming know-how.

As the video demonstration below shows, researchers with security firm Two Six Labs were able to open a VT20i safe in a matter of seconds by using their MacBook Pro to send specially designed Bluetooth data while it was in range. The feat required no knowledge of the unlock PIN or any advanced scanning of the vulnerable safe. The hack works reliably even when the PIN is changed. All that's required to make it work is that the safe have Bluetooth connectivity turned on.

Read 11 remaining paragraphs | Comments

Ajit Pai jokes with Verizon exec about him being a “puppet” FCC chair

“We want to groom a Verizon puppet to install as FCC chair,” Verizon says in skit.

FCC Chairman Ajit Pai at Fox Studios on November 10, 2017 in New York City. (credit: Getty Images | John Lamparski )

On Thursday night in Washington, DC, net neutrality advocates gathered outside the annual Federal Communications Commission Chairman's Dinner to protest Chairman Ajit Pai's impending rollback of net neutrality rules.

Inside the dinner (also known as the "telecom prom") at the Washington Hilton, Pai entertained the audience with jokes about him being a puppet installed by Verizon to lead the FCC.

Pai was a Verizon associate general counsel from 2001 to 2003, and next week he will lead an FCC vote to eliminate net neutrality rules—just as Verizon and other ISPs have asked him to.

Read 12 remaining paragraphs | Comments

Hollywood and Netflix Ask Court to Seize Tickbox Streaming Devices

A group of major Hollywood studios plus Amazon and Netflix have asked a California court to halt the infringing activities of TickBox TV, a Kodi-powered streaming device. As part of their ongoing lawsuit, the companies request an injunction requiring Tickbox to remove infringing add-ons and for existing devices to be seized.

Source: TF, for the latest info on copyright, file-sharing, torrent sites and more. We also have VPN discounts, offers and coupons

More and more people are starting to use Kodi-powered set-top boxes to stream video content to their TVs.

While Kodi itself is a neutral platform, sellers who ship devices with unauthorized add-ons give it a bad reputation.

According to the Alliance for Creativity and Entertainment (ACE), an anti-piracy partnership between Hollywood studios, Netflix, Amazon, and more than two dozen other companies, Tickbox TV is one of these bad actors.

Earlier this year, ACE filed a lawsuit against the Georgia-based company, which sells set-top boxes that allow users to stream a variety of popular media. The Tickbox devices use the Kodi media player and come with instructions on how to add various add-ons.

According to ACE, these devices are nothing more than pirate tools, allowing buyers to stream copyright infringing content. “TickBox promotes and distributes TickBox TV for infringing use, and that is exactly the result of its use,” they told court this week.

After the complaint was filed in October, Tickbox made some cosmetic changes to the site, removing some allegedly inducing language. The streaming devices are still for sale, however, but not for long if it’s up to the media giants.

This week ACE submitted a request for a preliminary injunction to the court, hoping to stop Tickbox’s sales activities.

“TickBox is intentionally inducing infringement, pure and simple. Plaintiffs respectfully request that the Court enter a preliminary injunction that requires TickBox to halt its flagrantly illegal conduct immediately,” they write in their application.

The companies explain that that since Tickbox is causing irreparable harm, all existing devices should be impounded.

“[A]ll TickBox TV devices in the possession of TickBox and all of its officers, directors, agents, servants, and employees, and all persons in active concert or participation or in privity with any of them are to be impounded and shall be retained by Defendant until further order of the Court,” the proposed order reads.

In addition, Tickbox should push out a software update which remove all infringing add-ons from the devices that were previously sold.

“TickBox shall, via software update, remove from all distributed TickBox TV devices all Kodi ‘Themes,’ ‘Builds,’ ‘Addons,’ or any other software that facilitates the infringing public performances of Plaintiffs’ Copyrighted Works.”

Among others, the list of allegedly infringing add-ons and themes includes Spinz, Lodi Black, Stream on Fire, Wookie, Aqua, CMM, Spanish Quasar, Paradox, Covenant, Elysium, UK Turk, Gurzil, Maverick, and Poseidon.

The filing shows that ACE is serious about its efforts to stop the sale of these type of streaming devices. Tickbox has yet to reply to the original complaint or the injunction request.

While this is the first US lawsuit of its kind, the anti-piracy conglomerate has been rather active in recent weeks. The group has successfully pressured several addon developers to quit and has been involved in enforcement actions around the globe.

A copy of the proposed preliminary injunction is available here (pdf).

Source: TF, for the latest info on copyright, file-sharing, torrent sites and more. We also have VPN discounts, offers and coupons

Looks like a rough flu season ahead. Here are answers to ALL your flu questions

New data suggests a particularly nasty flu type and a crummy vaccine this year.

Enlarge / Influenza virus. Image produced from an image taken with transmission electron microscopy. Viral diameter ranges from around 80 to 120 nm. (credit: Getty | BSIP)

The 2017-2018 flu season is off to an early start, potentially hitting highs during the end-of-year holidays. Data so far suggests it could be a doozy. The predominant virus currently circulating tends to cause more cases of severe disease and death than other seasonal varieties. And the batch of vaccines for this year have some notable weaknesses.

To help you prepare—or just help you brush up on your flu facts—here are answers to every critical flu question you might ever have (well, hopefully). We’ll start off with the basics...

Table of Contents

What is the flu?

The flu, or influenza, is a contagious respiratory infection caused by the influenza virus (not to be confused with Haemophilus influenzae, an opportunistic bacterium that can cause secondary infections following sicknesses, such as the flu). Symptoms of the flu include chills, fever, headache, malaise, running nose, sore throat, coughing, tiredness, and muscle aches.

Read 49 remaining paragraphs | Comments

The Grand Tour season 2: the one where Hammond nearly dies… again

Clarkson, May, and Hammond go to Switzerland in some supercars.

Enlarge (credit: Amazon)

Warning: this post contains some spoilers about the first episode of the new season of The Grand Tour.

Some say it's the greatest car show... in the world. Others say it started well but had a very patchy first season. All I know is that The Grand Tour came back to Amazon Prime on Friday for a second season.

If you loved the first season of The Grand Tour, you'll have a fine old time with season 2. The idea behind the show is to keep all the bits that you loved about Top Gear but without pissing off the BBC's lawyers. And based on the season preview clips we saw during the intro to the first episode of season 2, there should be plenty of that in store—particularly the episode that features a Bugatti EB110 and a Jaguar XJ220. But if you find Jeremy Clarkson's antics boorish, be warned; on that front, season 2 is very much more of the same.

Read 9 remaining paragraphs | Comments

Google Home Mini regains (some) touch controls

Google’s entry-level smart home speaker provides a simple and affordable way to interact with Google Assistant by voice. But shortly after the Google Home Mini was released, Android Police reported an issue that caused it to record users’ v…

Google’s entry-level smart home speaker provides a simple and affordable way to interact with Google Assistant by voice. But shortly after the Google Home Mini was released, Android Police reported an issue that caused it to record users’ voices even when it wasn’t supposed to… and Google responded by disabling a key feature. Basically you […]

Google Home Mini regains (some) touch controls is a post from: Liliputing

Romanian to serve 29 months in prison for aiding online car sales fraud

DOJ cracks down on online scammers who trick people on eBay and other sites.

Enlarge / This real Mercedes-Benz GL450 was one of the cars that Vlad Diaconu tried to trick people into believing that he was selling. (credit: FREDERIC J. BROWN/AFP/Getty Images)

It’s like your parents always told you: if something’s too good to be true, it probably is.

Or, translated into the online world: if a guy in Romania claiming to be an American service member overseas wants to sell you a Mercedes at a really good price and all you have to do is send some money to an escrow account, he’s probably scamming you.

On Friday, a Romanian man was sentenced by a federal judge in Tennessee to two years and five months in prison for participating in a scheme to defraud Americans out of over $870,000 in goods that never existed.

Read 3 remaining paragraphs | Comments

Anheuser Busch: US-Brauerei bestellt 40 Tesla-Trucks vor

Das US-Brau-Unternehmen Anheuser Busch hat 40 der neuen Lkws von Tesla vorbestellt. Dem Hersteller zufolge ist das die größte Vorbestellung bisher. Auch Walmart und DHL haben den Elektro-Truck bereits geordert. (Tesla, Elektroauto)

Das US-Brau-Unternehmen Anheuser Busch hat 40 der neuen Lkws von Tesla vorbestellt. Dem Hersteller zufolge ist das die größte Vorbestellung bisher. Auch Walmart und DHL haben den Elektro-Truck bereits geordert. (Tesla, Elektroauto)

Thelma is a supernatural teen love story where reality is real power

Yes, people use Carrie or Rosemary’s Baby as initial references—but Thelma is different.

Enlarge / Meet Thelma. Medical professionals can't seem to nail down what's happening in her brain... (credit: Fantastic Fest / Thelma)

You might not see a more stunning film in 2017 than Director Joachim Trier’s Thelma, Norway’s submission for Best Foreign Language Film at the Oscars. It tonally combines the unbridled happiness of a coming-of-age/first love film with the creepy stillness and angularity of arthouse horror. And aesthetically it unleashes sequences that will inevitably play silently on repeat at the hippest bar you can think of once Thelma hits a streaming service.

With all that beauty, it’s a shame the film seems so reductive at first—forbidden love and a cursed child; a body horror like Carrie but set in Europe. Luckily, that impression proves to be as window dressing-y as the title character’s minimalist Nordic dorm room. With a dash of the supernatural and a mystery that ultimately reveals answers by excluding explanation, Thelma offers more depth (and fun) than the clichés of its film blurb would lead you to believe.

Go to college, see the world

Shy Thelma leaves her religious, conservative family in small-town Norway to pursue university in vibrant Oslo. The lifestyle proves to be quite different. Kids drink and go out late, they try weed and stuff. Accordingly, Thelma doesn’t seem to be connecting much if at all at first (but you’re making new friends on Facebook, her dad encourages). Worse, one day early in the semester, she suffers a very public and sudden seizure in the library. Her parents already ask her daily for every little detail (Mom overlooks nothing: what’s for dinner? Isn’t your next class tomorrow, what are you doing tonight?). This isn’t a welcome development.

Read 9 remaining paragraphs | Comments