Friday, December 10, 2010

Anonymous attackers 'go public'

<!-- Embedding the video player --> <!-- This is the embedded player component -->
<!-- embedding script -->
<!-- companion banner --> <!-- END - companion banner --><!-- caption -->

'Coldblood', a member of the group Anonymous, tells Jane Wakefield why he views its attacks on Visa and Mastercard as defence of Wikileaks.

<!-- END - caption -->
<!-- end of the embedded player component --> <!-- Player embedded -->

A group of pro-Wikileaks activists who coordinated a series of web attacks have explained their actions.

The Anonymous group said they were not hackers but "average internet citizens" who felt motivated to act because of perceived injustices against Wikileaks.

The group said it had no interest in stealing credit card details or attacking critical infrastructure.

The details were posted online by one of the many factions claiming to carry out the attacks.

"Anonymous is not a group, but rather an internet gathering," it said in a statement published on 10 December.

It said the ongoing attacks were a "symbolic action" targeted at corporate website that had withdrawn services from Wikileaks.

"We do not want to steal your personal information or credit card numbers. We also do not seek to attack critical infrastructure of companies such as Mastercard, Visa, PayPal or Amazon," it read.

The statement comes as other documents have come to light suggesting the group may be changing its tactics.

Numbers game

The statement was published by one of the several Anonymous groups operating online.

"Anonymous has a very loose and decentralized command structure that operates on ideas rather than directives," it said.

Is taking part in these attacks illegal?

<!-- pullout-items--> <!-- Embedding the audio player --> <!-- This is the embedded player component -->
<!-- embedding script -->
<!-- end of the embedded player component --> <!-- Player embedded --> <!-- pullout-body-->

The short answer is yes, according to Struan Robertson, legal director at law firm Pinsent Masons.

He told the BBC that in the UK, taking part in the attacks would be a breach of the Computer Misuse Act.

He said that anyone found guilty of taking part could face "up to ten years imprisonment".

"Even downloading the [software] tools to assist in committing these attacks… are themselves guilty of an offence," he said.

He said this could carry a sentence of up to two years in the UK.

Different countries will have different laws and penalties.

However, security expert Peter Wood said that in practice it would be very difficult to track down the people involved because the attacks used "anonymising software" to hid their tracks online.

<!-- pullout-links-->

It also acknowledged that there was "perceived dissent between individuals" in the group, but said that it did not threaten its structure.

For example, members have distanced themselves from a member of the group, calling himself Coldblood, who spoke with several media outlets, including the BBC.

Several Twitter accounts have also appeared that claim to be coordinating Operation Payback, as the attacks are known.

Anonymous has been conducting the attacks using a tool called LOIC that allows people to bombard a site of their choosing with data.

The tool launches what is known as a distributed denial of service (DDoS) attack, which tries to knock a website offline by bombarding it with so much data that it cannot respond.

The LOIC tool has been downloaded more than 46,000 times.

However, the group has not always had the numbers needed to make its operations successful.

On 9 December, for example, the group abandoned an attack on the online retailer Amazon after some elements admitted it did not have enough people using the tool.

"While it is indeed possible that Anonymous may not have been able to take Amazon.com down in a DDoS attack, this is not the only reason the attack never occurred," read the document.

"After the attack was so advertised in the media, we felt that it would affect people such as consumers in a negative way and make them feel threatened by Anonymous. Simply put, attacking a major online retailer when people are buying presents for their loved ones would be in bad taste."

Instead, the attack was re-directed towards Paypal and its computer systems, which, according to a status page, have intermittently suffered "performance issues" ever since.

Early on 10 December, elements of the group also attacked money transfer site Moneybookers, knocking it offline briefly at 1100 GMT.

Criminal chain

Defences against the attacks are being drawn up as security firms scrutinise the code behind LOIC to work out how attacks happen. Some suggest that well-written firewall rules would be able to filter out most of the harmful traffic.

Information is also starting to emerge about the other resources that supporters of Anonymous have been able to bring to bear. Research by security firm Panda suggests that some of the earlier attacks on payment firms were aided by hi-tech criminals.

What is Anonymous?

<!-- pullout-items--> <!-- pullout-body-->

'Anonymous' describes itself as an 'internet gathering'. The term is used to describe a leaderless collective of people who come together online, commonly to stage a protest.

The groups vary in size and make-up depending on the cause. Members often identify themselves in web videos by wearing the Guy Fawkes masks popularised by the book and film V for Vendetta.

Its protests often take the form of disrupting websites and services.

Its use of the term Anonymous comes from a series of websites frequented by members, such as the anarchic image board 4Chan.

These allow users to post without having to register or provide a name. As a result, their comments are tagged "Anonymous".

In the past, groups have staged high-profile protests against plans by the Australian government to filter the internet and the Church of Scientology.

The latter spilled over into the real world with protests by masked members outside churches. An offshoot of Anonymous called Project Chanology focuses purely on this cause.

Many Anonymous protests tackle issues of free speech and preserving the openness of the net.

<!-- pullout-links-->

Luis Corrons, technical director of Panda Labs, said during its investigation of Anonymous' attacks its analysts got talking to some of the activists via Internet Relay Chat (IRC).

One of those activists said he had a botnet of 30,000 machines under his control that he was planning to use on behalf of Wikileaks.

"The guy said he had this botnet which was nothing special and was not specifically designed to do these attacks but could be used to do them," said Mr Corrons.

A botnet is a network of hijacked home computers that have been compromised by their owners visiting a booby-trapped webpage that installs code to hand over control to a hi-tech criminal.

Mr Corrons said a botnet with 30,000 machines in it was "about average size". Most of the spam sent around the net is funnelled through machines that are in botnets.

It was becoming clear, he said, that some attacks were aided by the 30,000 machines under the cyber criminals control.

"We know for sure the botnet was used in at least one attack on Paypal," he said.

Panda itself has come under attack with its blog knocked offline for hours by an attack very similar to those Anonymous has been carrying out. Mr Corrons said that, so far, it did not why it was being attacked or who was attacking it.

Fresh leaks

There are also suggestions that the Anonymous group might be about to drop the web attacks in favour of another tactic.

A message posted on the 4chan image board, out of which Anonymous has grown, suggests dropping LOIC in favour of publicising information in the diplomatic cables that Wikileaks is releasing.

Searching for the less-well publicised cables and spreading the information they contain around the web could be more effective than simply knocking out sites deemed to be enemies of Wikileaks, it said.

The message also suggests using misleading tags on posts and YouTube videos to trick people into reading or viewing the information.

"They don't fear the LOIC, they fear exposure," read the message.

It is not yet clear if the call to change tactics has been taken up by the Anonymous group at large.

In related news, Wikileaks looks set to have a rival as former staffers of the whistle-blowing website prepare to launch. Set up by Daniel Domscheit-Berg, Open Leaks is expected to launch in mid_December and will host and post information leaked to it.



Powered by WizardRSS | Best Membership Site Software

Web attackers mull tactic change

<!-- Embedding the video player --> <!-- This is the embedded player component -->
<!-- embedding script -->
<!-- companion banner --> <!-- END - companion banner --><!-- caption -->

'Coldblood', a member of the group Anonymous, tells Jane Wakefield why he views its attacks on Visa and Mastercard as defence of Wikileaks.

<!-- END - caption -->
<!-- end of the embedded player component --> <!-- Player embedded -->

Web attacks carried out in support of Wikileaks are being wound down as activists consider changing tactics.

Attacks against Amazon were called off late on 9 December and re-directed towards net payments firm Paypal.

Analysis suggests the earlier attacks were made more effective by the involvement of hi-tech criminals.

At the same time one wing of the activist group suggested ditching the attacks and doing more to publicise what is in the leaked cables.

Site saving

The attacks have been carried out using a tool, called LOIC, that allows people to bombard a site of their choosing with data or let the target be chosen by those running the Anonymous campaign.

Is taking part in these attacks illegal?

<!-- pullout-items--> <!-- Embedding the audio player --> <!-- This is the embedded player component -->
<!-- embedding script -->
<!-- end of the embedded player component --> <!-- Player embedded --> <!-- pullout-body-->

The short answer is yes, according to Struan Robertson, legal director at law firm Pinsent Masons.

He told the BBC that in the UK, taking part in the attacks would be a breach of the Computer Misuse Act.

He said that anyone found guilty of taking part could face "up to ten years imprisonment".

"Even downloading the [software] tools to assist in committing these attacks… are themselves guilty of an offence," he said.

He said this could carry a sentence of up to two years in the UK.

Different countries will have different laws and penalties.

However, security expert Peter Wood said that in practice it would be very difficult to track down the people involved because the attacks used "anonymising software" to hid their tracks online.

<!-- pullout-links-->

The tool launches what is known as a distributed denial of service (DDoS) attack which tries to knock a website offline by bombarding it with so much data that it cannot respond.

The LOIC tool has been downloaded more than 46,000 times but, said Anonymous activists in a tweet, this did not translate into enough people using it to knock the retail giant off the web.

Instead, the attack was re-directed towards Paypal and its computer systems which, according to a status page, has intermittently suffered "performance issues" ever since.

There have also been calls for attacks on official Dutch websites following the arrest of a 16-year-old boy suspected of involvement in the online campaign.

But early on 10 December Moneybookers was chosen as the next target and its site was occasionally unreachable from about 1100 GMT.

The chances of success could be boosted by a new version of LOIC written in web programming language Javascript that allows anyone with a browser, including on a mobile phone, to launch attacks.

However, defences against the attacks were being drawn up as security firms scrutinise the code behind LOIC to work out how attacks happen. Some suggest that well-written firewall rules would be able to filter out most of the harmful traffic.

Criminal chain

Information is also starting to emerge about the other resources that supporters of Anonymous have been able to bring to bear. Research by security firm Panda suggests that some of the earlier attacks on payment firms were aided by hi-tech criminals.

What is Anonymous?

<!-- pullout-items--> <!-- pullout-body-->

'Anonymous' is commonly used to describe a leaderless collective of people who come together online, commonly to stage a protest.

The groups vary in size and make-up depending on the cause. Members often identify themselves in web videos by wearing the Guy Fawkes masks popularised by the book and film V for Vendetta.

Its protests often take the form of disrupting websites and services.

Its use of the term Anonymous comes from a series of websites frequented by members, such as the anarchic image board 4Chan.

These allow users to post without having to register or provide a name. As a result, their comments are tagged "Anonymous".

In the past, groups have staged high-profile protests against plans by the Australian government to filter the internet and the Church of Scientology.

The latter spilled over into the real world with protests by masked members outside churches. An offshoot of Anonymous called Project Chanology focuses purely on this cause.

Many Anonymous protests tackle issues of free speech and preserving the openness of the net.

<!-- pullout-links-->

Luis Corrons, technical director of Panda Labs, said during its investigation of Anonymous' attacks its analysts got talking to some of the activists via Internet Relay Chat (IRC).

One of those activists said he had a botnet of 30,000 machines under his control that he was planning to use on behalf of Wikileaks.

"The guy said he had this botnet which was nothing special and was not specifically designed to do these attacks but could be used to do them," said Mr Corrons.

A botnet is a network of hijacked home computers that have been compromised by their owners visiting a booby-trapped webpage that installs code to hand over control to a hi-tech criminal.

Mr Corrons said a botnet with 30,000 machines in it was "about average size". Most of the spam sent around the net is funnelled through machines that are in botnets.

It was becoming clear, he said, that some attacks were aided by the 30,000 machines under the cyber criminals control.

"We know for sure the botnet was used in at least one attack on Paypal," he said.

Panda itself has come under attack with its blog knocked offline for hours by an attack very similar to those Anonymous has been carrying out. Mr Corrons said that, so far, it did not why it was being attacked or who was attacking it.

Fresh leaks

There are also suggestions that the Anonymous group might be about to drop the web attacks in favour of another tactic.

A message posted on the 4chan image board, out of which Anonymous has grown, suggests dropping LOIC in favour of publicising information in the diplomatic cables that Wikileaks is releasing.

Searching for the less-well publicised cables and spreading the information they contain around the web could be more effective than simply knocking out sites deemed to be enemies of Wikileaks, it said.

The message also suggests using misleading tags on posts and YouTube videos to trick people into reading or viewing the information.

"They don't fear the LOIC, they fear exposure," read the message.

It is not yet clear if the call to change tactics has been taken up by the Anonymous group at large.

In related news, Wikileaks looks set to have a rival as former staffers of the whistle-blowing website prepare to launch. Set up by Daniel Domscheit-Berg, Open Leaks is expected to launch in mid_December and will host and post information leaked to it.



Powered by WizardRSS | Best Membership Site Software

Twitter &#39;popular for minorities&#39;

African-American and Latino adults in the US who use the internet are twice as likely as whites to use the website Twitter, a survey has found.

The Pew Research Center, a Washington-based think tank, found that 13% of Latino and 18% of African-American adult internet users use Twitter.

Of all US adult internet users, 8% use the micro-blogging site, Pew found.

Minority groups visit the site more because they are younger and use mobile technology more often, the centre said.

"Both of those groups, African-American and Latino adult internet users in the US, tend to be younger than white internet users, which helps to lead to their adoption of Twitter," said Senior Research Specialist Aaron Smith.

"Both of those groups are also very mobile populations in their use of cell phones in particular to access the web," he said, adding that "Twitter lends itself easily to mobile technology."

"Overall, non-whites are more likely than white cell phone owners to do a range of non-voice tasks on their cell phones - they are more likely to use instant messaging and social networking on their phones."

The study also suggested those who live in cities and were more likely to use the social networking site - which lets users post updates using up to 140 characters.

Twitter obsession

Researchers found that 25% of active Twitter users checked the service several times a day, with 2% saying they were extremely active.

As Americans spend more of their time online, social networking technology as a whole is growing and starting to replace activities individuals once performed in physical spaces, Mr Smith said.

The Pew researchers noted in the report that they focused on Twitter because the service was "one of the most popular online activities among tech enthusiasts and has become a widely used tool among analysts to study the conversations and interests of users, buzz about news, products or services".

Twitter was launched in July of 2006 and now claims tens of millions of users around the globe.

The Pew study - part of an initiative to explore technology in the US - surveyed 2,257 adult internet users.



Powered by WizardRSS | Best Membership Site Software

Thursday, December 9, 2010

Hacktivists abandon Amazon attack

<!-- Embedding the video player --> <!-- This is the embedded player component -->
<!-- embedding script -->
<!-- companion banner --> <!-- END - companion banner --><!-- caption -->

'Coldblood', a member of the group Anonymous, tells Jane Wakefield why he views its attacks on Visa and Mastercard as defence of Wikileaks.

<!-- END - caption -->
<!-- end of the embedded player component --> <!-- Player embedded -->

Pro-Wikileak activists have abandoned plans to bring down the website of online retailer Amazon, and switched back to targeting PayPal.

The group Anonymous had pledged to attack the site at 1600 GMT, but have since changed their plans, saying they did not have the "forces".

The site was targeted because it withdrew services from whistle-blowing website Wikileaks.

In the Netherlands a teenager has been arrested in connection to the attacks.

The 16-year-old was arrested by a high-tech crime unit in The Hague after allegedly admitting to involvement in the targeting of the websites of two credit card companies, MasterCard and Visa.

A tool enabling computers to join the co-ordinated attacks against websites perceived to be "anti-Wikileaks" is now reported to have been downloaded more than 31,000 times.

However, security experts warned people to avoid joining the voluntary botnet.

A Twitter message issued by the group said Amazon was too big to attack successfully for now.

"We cannot attack Amazon, currently. The previous schedule was to do so, but we don't have enough forces," read one message on Twitter.

The activists instead instructed followers to attack PayPal, which has suspended the WikiLeaks account, which the organisation had used to collect donations.

A PayPal spokesman told Reuters news agency the company had detected an attack on the site.

'Operation Payback'

Activists are targetting using the Anonymous attack tool, known as LOIC. When a person installs the tool on their PC it enrols the machine into a voluntary botnet which then bombards target sites with data.

These distributed denial-of-service (DDoS) attacks are illegal in many countries, including the UK.

Social network Facebook confirmed that it had removed Operation Payback - as the campaign is known - from the site because it was promoting its attack tool.

Anonymous member Coldblood told the BBC that he did not understand how firms such as Visa and Mastercard have decided that Wikileaks is illegal.

"We feel that they have bowed to government pressure. They say Wikileaks broke their terms and conditions but they accept payments from groups such as the Ku Klux Klan," he told the BBC.

He said that he has not personally taken part in the recent distributed denial-of-service (DDoS) attacks but explained the motives of those who have.

"Start Quote

These Anonymous attacks are like riding a bull, they can change wildly and at a moment's notice"

End Quote Paul Sop Prolexic

"Everyone is aware that they are illegal but they feel that it is a worthy cause and the possible outcome outweighs the risk," he said.

He said such attacks were only one tactic in its fight to keep the information being distributed by Wikileaks available.

In a twist to the story it has emerged that Amazon, which last week refused to host Wikileaks, is selling a Kindle version of the documents Wikileaks has leaked.

Earlier attacks against Visa and Mastercard knocked the official websites of the two offline for a while and resulted in problems for some credit card holders.

The attacks have been relatively small so far mustering less then 10 gigabits per second of traffic, said Paul Sop, chief technology officer at Prolexic which helps firms to defend themselves against the type of attack being employed by Anonymous.

"What's really wreaking havoc with these enterprises is how often the attackers can rotate the attack vectors," he said. "We see the attack complexity being more devastating as the mitigation technologies enterprises use can't filter out all these permutations."

Defending against an attack typically involves analysis to work out which ones are being employed. A tactic that may not work well in this case, he said.

"These Anonymous attacks are like riding a bull, they can change wildly and at a moment's notice," said Mr Sop.

Carole Thierault, a security researcher at Sophos, warned against getting involved with the Anonymous campaign.

"No-one, no matter how much you want to take part, should do this," she said. "It is very risky, and most probably illegal."

Ms Thierault said downloading and installing the LOIC attack tool was very risky.

"No-one should download unknown code on to their system," she said. "You're giving access to your computer to a complete stranger."

Coinciding ideals

As well as releasing the attack tool, the Anonymous group has also been active in helping to create mirror sites. To date there are over one thousand sites offering exact copies of the content on Wikileaks.

It is also ensuring the information is available on dark nets, heavily encrypted layers of the internet via which information can be extracted while remaining untraceable.

The new-found attention on Anonymous has led the group to publish its manifesto.

In it, it denies that it is a group of hackers.

"Anonymous is not an organisation... it most certainly is not a group of hackers," it said.

"Anonymous is an online living consciousness, comprised of different individuals with, at times, coinciding ideals and goals."

It also keen to distance itself from Coldblood, who it said is not a spokesperson for the group.



Powered by WizardRSS | Best Membership Site Software

Phones used to redraw UK regions

Social networks could provide the key to redrawing the regional map of Britain, producing areas with strong social cohesion.

That's the idea of an international team, who have created a social map of Great Britain.

They used more than 12 billion landline calls to create a map of Britons' connections.

This social apporach to delineating regions sees parts of Wales merged with the West Midlands.

Regional boundaries are useful for governments, said Carlo Ratti, of the Massachusetts Institute of Technology, who led the work. "But they don't say anything about how people in those regions interact."

His team used records of more than 12 bilion anonymised landline telephone calls, to model who Britons frequently spoke to.

These records allowed the team identify the the local telephone exchanges used in the calls.

Where people spoke frequently and for extended periods, they were treated as having a stronger connection, Mr Ratti told BBC News.

A map created using those connections showed that people tended to communicate most with people that we geographically close to them, he added.

That enabled the team to identify dense clusters of connection as distinct regional groups.

They used a computer program to identify where they could draw regional borders which cut through the fewest number of connections possible.

Joined-up government

The resultant map of the Britain showed some instantly-recognisable regions, such as London (see image below).

But they also produced surprise results, including the creation of a region that encompassed parts of Wales and the West Midlands.

Ultimately, analysing social networks could help governments understand the likely impact of events such as a full secession of Scotland, the researchers said.

"Although you'd need to analyse further data sets, such as emails, instant messages to build a fuller picture of how people communicate," said Mr Ratti.

The data set used by the team was originally created for the BBC's Britain from Above series.



Powered by WizardRSS | Best Membership Site Software

Privacy project dices up details

A project that could radically reduce the amount of personal information we share in our dealings has been revealed by IBM researchers.

The ABC4Trust project is developing an "electronic wallet", with encrypted versions of all a person's details.

A query by a device like a "chip and PIN" reader will involve only the information that is strictly necessary.

The idea could also be applied to online transactions, and aims to give people more control over personal data.

IBM researchers, speaking at a press event at the firm's research laboratory in Zurich, say this exchange of encrypted data in a piecemeal fashion is far preferable to the case in which, for example, a consumer hands over a passport or driver's license for identification.

IBM is involved in developing some of the protocols and technology to accomplish the goals of the 13.6m euro (�11.4m) European-funded Attribute-Based Credentials for Trust project.

"There's two basic principles that we try to apply in order to protect online privacy," Jan Camenisch, an IBM researcher who is part of the ABC4Trust project, told BBC News.

"One of them is that with every piece of information that you're releasing you should specify what this information is used for - what's the purpose and why it's needed.

"The second is that whenever you release something, you should only release the information that is minimally necessary for this purpose."

For instance, renting a car might require no more information than confirming that a customer has had a valid licence for a given number of years.

Joining a chatroom for teenagers, by contrast, needs only a confirmation that a potential user is within a certain age group.

Token effort

In Dr Camenisch's vision, the future "electronic wallet" can be deployed to confirm these facts through encrypted transactions that give up no further information.

The project, which began in November and will run for four years, aims to define first of all the technology that is needed to accomplish its goal.

In principle, every single personal detail could be crunched into one long encrypted number that could even be stored in a mobile phone.

Dr Camenisch said a retailer or service provider such as a car rental agency would have a device that could send requests for specific pieces of information to a phone, and he described what the phone would display.

"It would open the 'wallet application', and tell you that the rental agency wants to know from you that you have a licence and you took the test more than four years ago," he explained.

The phone would list what information is being requested and then create an encrypted "token" that contains the answers.

"Your phone would do the rest - it would compute the new tokens from that and send that information off to the car rental agency."

Dr Camenisch said that the principle works the same for online transactions.

He explained that much of the project's work lies ahead in the development of the encryption protocols and the reader devices.

But the project is ensuring that the standards can be reviewed and improved as the technology is developed.

"In the end, these kinds of technologies will be open standards," Dr Camenisch said. "Some of our work is already available as open-source code so everybody can inspect that and see that it does what it promises to do."



Powered by WizardRSS | Best Membership Site Software

Wednesday, December 8, 2010

Mastercard attack &#39;hits payments&#39;

Web attacks on the Mastercard site have disrupted payments, the BBC has learnt.

The site is among several targeted by the Anonymous group of hackers, who have pledged to pursue firms that have withdrawn services from Wikileaks.

Mastercard, which stopped processing payments to the whistle-blowing site, said the attack had had "no impact" on people's ability to use their cards.

But the BBC has been contacted by a payment firm that said its customers had "a complete loss of service".

In particular, it said that an authentication service for online payments known as Mastercard's SecureCode, had been disrupted.

Other readers have also said that they have had problems with online payments. The scale of the problems is still unclear.

Mastercard has not responded to the claims.

Earlier, Doyel Maitra of the firm, said: "Mastercard is experiencing heavy traffic on its external corporate website - Mastercard.com - but this remains accessible.

"We are working to restore normal speed of service. There is no impact whatsoever on Mastercard or Maestro cardholders' ability to use their cards for secure transactions."

False account

Anonymous, which claimed to have carried out the attack, is a loose-knit group of hacktivists, with links to the notorious message board 4chan.

It said that it has hit several targets, including the website of the prosecutors who are acting in a legal case against Wikileaks founder Julian Assange.

"Start Quote

Websites that are bowing down to government pressure have become targets"

End Quote Coldblood Anonymous

PayPal, which has stopped processing donations to Wikileaks, has also been targeted.

The firm said Wikileaks' account had violated its terms of services.

"On 27 November the State Department, the US government, basically wrote a letter [to Wikileaks] saying that [its] activities were deemed illegal in the United States," PayPal's Osama Bedier told the Le Web conference in France.

"And as a result our policy group had to make the decision of suspending their account.

"It's honestly, just pretty straight forward from our perspective and there's not much more to it than that," he said.

Other firms that have distanced themselves from the site have also been hit in the recent spate of attacks including the Swiss bank, PostFinance, which closed the account of Wikileaks founder Julian Assange.

The bank said Mr Assange had provided false information when opening his account.

Swamp site

Security experts said the sites had been targeted by a so-called distributed denial-of-service attack (DDoS), which swamp a site with so many page requests that it becomes overwhelmed and drops offline.

Paul Mutton of security firm Netcraft said that 1,600 computers were involved in flooding the site with spoof requests.

Access to Mastercard's site is still intermittent.

Noa Bar Yosef, a senior analyst at Imperva said the attacks were "very focused".

"It is recruiting people from within their own network. They are actually asking supporters to download a piece of code, the DDoSing malware, and upon a wake-up call the computer engages in the denial of service," he said.

Before the Mastercard attack, a member of Anonymous, who calls himself Coldblood, told the BBC that "multiple things" were being done to target companies that had stopped working with Wikileaks or which were perceived to have attacked the site.

"Websites that are bowing down to government pressure have become targets," he said.

"As an organisation we have always taken a strong stance on censorship and freedom of expression on the internet and come out against those who seek to destroy it by any means."

"We feel that Wikileaks has become more than just about leaking of documents, it has become a war ground, the people vs. the government," he said.

Some of the early DDoS hits failed to take sites offline, although that was not the point of the attacks, according to Coldblood.

"The idea is not to wipe them off but to give the companies a wake-up call," he said. "Companies will notice the increase in traffic and an increase in traffic means increase in costs associated with running a website."

DDoS attacks are illegal in many countries, including the UK.

Coldblood admitted that such attacks "may hurt people trying to get to these sites" but said it was "the only effective way to tell these companies that us, the people, are displeased".

Anonymous is also helping to create hundreds of mirror sites for Wikileaks, after its US domain name provider withdrew its services.

Coldblood said that the group was beginning to wind down the DDoS attacks so that it could concentrate on using "other methods which are more focused on supporting Wikileaks and making sure the Internet stays a free and open place".

Are you a Mastercard customer? Have you been affected by the attack? Send us your comments using the form below.



Powered by WizardRSS | Best Membership Site Software

Google unveils Chrome OS notebook

<!-- Embedding the video player --> <!-- This is the embedded player component -->
<!-- embedding script -->
<!-- companion banner --> <!-- END - companion banner --><!-- caption -->

Google's head of product for Chrome, Sundar Pichai, demonstrates the new operating system

<!-- END - caption -->
<!-- end of the embedded player component --> <!-- Player embedded -->

Google has delayed the launch of its much anticipated laptop, powered by its Chrome operating system, until 2011.

Instead, Google announced a pilot programme aimed at people who "live on the web".

Chrome OS is Google's boldest bid yet to challenge Microsoft's market dominance with Windows software.

Google has already gone after Microsoft's Office software with its Google Docs product.

Chrome marks a departure from traditional operating systems, such as Mac OSX and Windows, by targeting users who spend most of their time on the web.

"We think cloud computing will define computing as we know it," said Eric Schmidt, Google's chief operating officer.

"Finally there is a viable third choice for an operating system."

Google's Sundar Pichai said the pilot scheme is aimed at early adopters, developers and users who are used to using beta software.

They will be given an unbranded black notebook, called the Cr-48.

Mr Pichai said there would be no devices on sale until next year simply because the software was not ready for prime time, due to a number of bugs and unfinished features.

"This is a profound shift," said Mr Pichai, claiming that the operating system is Google's attempt to "re-think the personal experience for the modern web".

"Chrome is nothing but the web," he added.

Machines for the pilot scheme will start shipping soon.

Consumer devices from Acer and Samsung are due on the market in 2011. No pricing details were given.

Computer share

At the press event in San Francisco, Google also outlined a number of features in Chrome OS.

Security was at its heart, with automatic updates for users taking away the need to constantly ensure that the latest version has been activated.

The company said that it hoped to be the first to ship a tool called "verified boot" on Chrome OS devices, which makes sure nothing on the machine has been modified or compromised.

"We are confident that when we ship Chrome notebooks, it will be the most secure OS ever shipped to users," said Mr Pichai.

He also said that because data will be accessed through the cloud, users could loan their machines to other people.

"By delivering nothing but the web, it makes it very easy to share your computer," said Mr Pichai.

Google said it has also partnered with US telecom titan Verizon to offer connectivity with Chrome notebooks when they go on sale.

The plans range from 100 MB of free data, to $9.99 a day for unlimited data, with no extra fees.

Two paths

A number of analysts have questioned whether or not Google is making a smart play with the Chrome OS, given that the computing world has changed dramatically since it announced plans for the low-cost operating system over 18 months ago.

In the last year, Apple's iPad has reinvigorated the tablet market, and Google's own Android OS - which powers smartphones - has taken off.

Android is also being used in tablet devices and netbooks, prompting a number of industry watchers to question Google's twin approach in the OS market.

"Google hasn't done a good job on why these two things need to exist," Michael Gartenberg, director with research firm Gartner, told the BBC last week.

"Android is designed for the here and now, an app centred world. The hottest devices don't have keyboards. Google has to come up with a better story of how Chrome fits in," he added.

Many fear two Google operating systems will cause confusion for consumers.

Google's Mr Schmidt does not believe it will, and recently stated that Chrome was for keyboards and Android was for touch-based devices.

The Chrome OS will be given free to hardware manufacturers.

Microsoft, in comparison, charges a fee for its Windows software.

Back in October, the software leader said Windows sales increased by 66% on a year earlier, to $4.8bn, helping to boost first quarter profits.



Powered by WizardRSS | Best Membership Site Software

IE9 introduces anti-tracking tool

Microsoft's IE9 browser will have tools that control what data is collected about what a user does online.

The tools will let people stop a site they are visiting sharing information about what they do with other sites.

Users will be able to create lists stating that their data will only be shared with sites they want to see it.

The news comes as the US government criticises the computer industry for its slow progress on protecting user privacy.

In a blog post, Microsoft said many people did not realise that when they visit a website what they look for, view or buy there is often shared with other companies without that user's knowledge.

In IE9, Microsoft is planning to introduce what it calls "Tracking Protection Lists" that it says will work like the "Do Not Call" lists that limit who marketing firms can cold call.

The lists will be defined by users and limit the sharing of data only to those sites which a user is happy to see the information. When switched on, the system might mean that some adverts or other features do not appear when users visit sites.

Anyone will be able to write a list and share it with others so they can get the same protection, said Microsoft.

It also plans to release the formatting and standards for the lists under an open licence so other browser makers can adopt them.

The tracking system will be turned off by default and users will have to "opt in" to use it.

Microsoft said early versions of the tools would be included in the version of IE9 due for release in early 2011.

It is not the first browser to offer such functionality. Chrome, Firefox and Opera also allow users to create lists of trusted sites.

The announcement comes in the wake of a report from the US Federal Trade Commission report into online privacy.

In it the FTC said that industry self-regulation of privacy was "too slow" and has "failed to provide adequate and meaningful protection".

It called for consumers to be given far more choice about the data being collected about them. It recommended the creation of a "Do Not Track" mechanism that would stop the wholesale collection of information about where people go online and what they are interested in.



Powered by WizardRSS | Best Membership Site Software

Tuesday, December 7, 2010

Cataclysm hits Warcraft&#39;s world

Thousands of people around the world queued into the night to get hold of the latest expansion for World of Warcraft (WoW).

The expansion, called Cataclysm, is the first for two years and makes big changes to the game.

The expansion re-makes the world in which WoW is set and rips up the geography of many familiar places.

It also introduces two new races to the game, increases the level cap and makes many other changes.

Shops around the world stayed open at midnight on 6 December to let eager players get their hands on Cataclysm. In Germany the MediaMarkt shop in Berlin ran a competition for the best WoW-themed costume worn by those queuing outside the store.

The Cataclysm expansion revolves around the emergence into Azeroth, the world in which WoW is set, of Deathwing the dragon. The seismic activity accompanying his emergence causes changes to almost every part of the game world.

Many of the geographical changes to Azeroth have already been applied to the game via a patch applied in late November. The expansion pack lets subscribers create worgen (wolfmen) and goblin characters. The level cap for players is also increased to 85 from 80.

Alongside the geographic changes go many alterations to the quests players must do to progress to higher levels. Many are themed around helping regions recover from the devastation wrought by Deathwing.

"Cataclysm is probably a far bigger deal for Warcraft-makers Blizzard than they're letting on," said journalist Alec Meer who writes for the Rock Paper Shotgun gaming blog.

"It's about transforming the World of Warcraft from something that could arguably be seen as winding down back into very much a going concern," he said.

Mr Meer said the expansion "rebooted, reimagined and reinvigorated" the many zones in the game in a bid to make it appealing to both veterans and new players.

"If Blizzard's plan works, the bulk of the game's population will spend the next few months adventuring through fresh-but-familiar lands together," he said, "making Cataclysm quite the opposite of what its apocalyptic title implies: a rebirth for the world's most successful videogame, and for its community."



Powered by WizardRSS | Best Membership Site Software