Showing posts with label Windows Computer. Show all posts
Showing posts with label Windows Computer. Show all posts

Tuesday, 24 October 2017

Lenovo Provides Computers With FIDO Authenticators



Lenovo has provided various computer models of so-called FIDO authenticators that let users login their accounts via a fingerprint scan or click on a prompt on the screen. The Fast IDentity Online (FIDO) Alliance has set itself the goal of replacing the password with authentication methods that are "safer and user-friendly."

Lenovo is one of the FIDO members, among other things, Google, Microsoft, MasterCard and PayPal. The parties involved develop products and services that make use of the FIDO protocol. This would automatically recognize devices that support FIDO and allow users to replace passwords by another authentication method.

Lenovo now claims that it is the first PC manufacturer to integrate directly into Windows computers by FIDO certified authenticators. Instead of a password to log in, users can choose from an alternative. For example, a fingerprint scan can be logged through the Universal Authentication Framework (UAF). In addition, the system also supports Universal 2nd Factor (U2F).

In case a user has enabled two-factor authentication for his account, it is no longer necessary to enter a separate security key or SMS. The two-factor authentication is built directly into the computer. In the case of two-factor authentication via U2F, users get a prompt to confirm, after which they are logged in to their account. This login method is supported by Google, Facebook and Dropbox.

To support UAF and U2F, Lenovo uses Intel Online Connect and Intel Software Guard Extensions (Intel SGX) on the latest Intel processors. The functionality will be delivered with different computer models and available for all models delivered. Intel Online Connect is available for download from Lenovo's website and will be available through Lenovo System Update and Lenovo App Explorer.

Wednesday, 27 May 2015

E-mail Resumes And Internship Requests Infects Tills


Researchers have discovered a new variant of checkout malware that spreads via e-mail. The emails focus on companies and have different topics ranging from training requests and resumes, to ask if there are job vacancies. Attached is added to the e-mail a Word document. This document states that it is a secure document and the user macros must turn to see the content.

Once macros are enabled, the document will download the malware. This malware additional malware can be downloaded and installed. Through the malware that is first the attackers can determine what malware is then to be actively installed. It is then possible to install malware that targets POS systems that run on Windows. Several retail chains, especially in the US, using payment terminals that are connected to a Windows computer.

Once the computer is infected, the malware can intercept the data of credit cards and collect processed through the POS system. With the stolen payment card data can then be fraudulent. According to security firm FireEye shows that even attack cyber criminals engaged in random spam operations include cash and malware that can be used to infect some of their victims.

Saturday, 14 March 2015

Six Million Windows Computers Infected Via Spam Messages


In less than 2.5 months more than six million Windows computers have been infected by users links and infected attachments opened in spam messages, as Microsoft has announced. It involves the Upatre malware mainly social engineering applied and is spread mainly through emails.

Upatre performs various functions on an infected computer. So can install other malware families that use the computer to send spam messages or search for valuable data. The malware is mainly active in the United States, where Microsoft 5.3 million infections observed. Ireland following distance by about 790,000 infections. Also in Canada, Britain and Australia tens of thousands of computers were infected through Upatre.


"Upatre manages to penetrate by applying age-old social engineering tricks. It knows how to seduce people by getting them to click on links in spam messages," says Patrick Estavillo of the Microsoft Malware Protection Center. In addition to not click on links and advises attachments in emails Estavillo to keep all software up to date and use a virus scanner.