Monday, December 31, 2012

Android apps and SSL: Where's the padlock? | TechRepublic

Takeaway: Are we making dangerous assumptions about Android apps and SSL connections? It seems like it, but Michael Kassner asks the experts to be sure.

At the urging of security-conscious IT managers, we became aware of Secure Socket Layer (SSL) encryption, and how important it was. I?ll bet Do not provide any private or financial information unless you see a closed padlock and HTTPS sounds familiar?

Exact details weren?t important for most; we just knew when both were present in the web browser, it was safe for digital traffic to traverse the unforgiving internet. When cell phones became smart, those same managers dutifully reminded us that mobile web browsers also use SSL ? for example, Chrome?s mobile web browser.

So, we?re still safe traversing the internet using either the cellular network, or a Wi-Fi connection, as long as a closed padlock and HTTPS are visible.

What about apps?

That takes care of web browsers, but what about computer applications ? many advertise using SSL, for example Skype:

When you sign into your account on our site all the information is sent over SSL. SSL encrypts all the information before it leaves your computer, and can only be decrypted by our server.

For some reason, computer applications using SSL do not show if SSL is enabled ? no sign of a padlock or HTTPS. I?ve been all over the Skype app, and there is no mention of SSL anywhere. If I missed it, please let me know.

No problem, I?ll test whether Skype is encrypting their traffic by using a packet sniffer. And, it sure looks like it according to the following gibberish.

When it comes to the Skype mobile application, we have a different story. Like the computer application, the mobile app does not give any indication SSL is enabled and working correctly. To make matters worse, there is no easy way to test whether the app is encrypting traffic or not.

I asked fellow TechRepublic writer and Android developer, William Francis, if applications could be altered to inform the user about the condition of the SSL connection:

Not exactly, as you could have multiple SSL connections at the same time. Monitoring all the incoming traffic would require channeling all traffic through a proxy, or a lower level (kernel) privileged application. The Android app/permission system runs interference, keeping apps from spying on network traffic being sent to other installed applications.

I received an almost identical answer from Kurt Huwig, the creator of SSL Verify, an Android app that verifies popular SSL certificates:

There is a way. One could write an HTTP proxy that verifies SSL connections. Then display an icon in the taskbar when SSL is active. Still, there are usually several apps running in the background on Android, making it difficult to associate traffic with the correct application.

It seems assuming is not a good idea

According to a German research team from Leibniz University of Hannover and Philipps University of Marburg, led by Dr. Bernd Freisleben (top picture) and Dr. Matthew Smith, a significant share of Android applications are not using SSL correctly. The introduction to the team?s research paper, ?Why Eve and Mallory Love Android: An Analysis of Android SSL (In)Security? mentions:

Our analysis revealed 1,074 (8.0%) of the apps examined contain SSL/TLS code that is potentially vulnerable to Man in the Middle (MitM) attacks. Various forms of SSL/TLS misuse were discovered during a further manual audit of 100 selected apps that allowed us to successfully launch MitM attacks against 41 apps, and gather a large variety of sensitive data.

Professor Freisleben wanted me to point out that although the researchers only tested free apps, one should not assume purchased apps are free of any SSL problems.

One section of the paper particularly interested me. It was where the researchers provided details about how developers would incorrectly incorporate SSL into their applications:

  • Trusting all Certificates: The TrustManager interface can be implemented to trust all certificates, irrespective of who signed them or even for what subject they were issued.
  • Allowing all Hostnames: It is possible to forgo checks of whether the certificate was issued for this address or not. For example, when accessing the server example.com, a certificate issued for some other domain.com is accepted.
  • Trusting many Certificate Authorities (CA): This is not necessarily a flaw, but Android 4.0 trusts 134 CA root certificates by default.
  • Mixed-Mode/No SSL: App developers are free to mix secure and insecure connections in the same app, or not use SSL at all. This is not directly an SSL issue. But it is relevant to mention there are no outward signs, and no possibility for a common app to check whether a secure connection is being used or not.

I now have three sources saying it?s next to impossible for a user to determine if an Android application is using SSL, and using SSL correctly. If that?s true, what?s the research team?s secret?

How do they know then?

The research team created an Androguard extension called MalloDroid, a tool that facilitates static code analysis of Android applications. Details specific to MalloDroid are:

  • Analyze the networking API calls, and extract valid HTTP(S) URLs from the decompiled apps.
  • Check the validity of the SSL certificates of all extracted HTTPS hosts.
  • Identify apps containing API calls that differ from Android?s default SSL usage, e.g., contain non-default trust managers, SSL socket factories or hostname verifiers with permissive verification strategies.

Professor Freisleben explains what happens after MalloDroid has flagged apps with likely SSL problems:

We conducted a manual study of 100 cherry-picked apps to find out what sort of information is actually sent via the potentially broken SSL communication channels by installing these apps on a real phone, and executing an active MitM attack against the apps.

I?m glad they?re checking apps; I don?t have time to check each mobile app manually. In my digital travels, I found another group of people interested in making sure traffic from mobile devices is secure.

ZAP by Zscalar

Zscaler, a company interested in online security, needed a way to test mobile applications. So they created ZAP. Zscalar Application Profiler (ZAP) is:

[A] web-based tool designed to streamline the capture and analysis of HTTP(S) traffic from mobile applications. ZAP is capable of analyzing traffic from both iOS and Android applications.

I?m familiar with Zscaler. Three years ago, Michael Sutton, Vice-President of Security Research at Zscalar, was my expert source when I wrote about multifunction printers acting as spy tools. I called Michael, asking him to explain ZAP:

ZAP employs dynamic analysis (no code is inspected). We set up a proxy server that allows you to send traffic through our system and we analysis what is being transmitted.

Michael further explained:

Our main concern is user privacy and making sure that personally-identifiable information is encrypted. To that end, we have the user setup a fake account within the app for testing. Then when traffic from application is analyzed, we check to see if any of the fake-user data is sent in the clear.

ZAP checks the following:

  • Authentication: Username/password sent in clear text or using weak encoding methods.
  • Device Metadata Leakage: Data that can identify an individual device, such as the Unique Device Identifier (UDID).
  • Personally Identifiable Information Leakage: Data that can identify an individual user, such as an email address, phone number or mailing address.
  • Exposed content: Communication with third parties such as advertising or analytics sites.

So, with ZAP, we have one way of checking mobile applications. It sounds like the research team will have their MalloDroid website up and running soon. Together, the tools should provide a good idea of what?s wrong with a mobile application.

But what then?

What are our options?

The research paper went on to list what could be done to eliminate faulty SSL?implementation:

  • Enforced Certi?cate Checking: Force developers to use the standard library implementations provided by Android?s APIs.
  • HTTPS Everywhere: A solution to improve a fair number of the vulnerabilities discovered in our sample set would be an Android version of HTTPS-Everywhere, integrated into the communication APIs.
  • Improved Permissions and Policies: Instead of a general permission for Internet access, a more fine-grained policy model could allow for more control.
  • Visual Security Feedback: Reasonable feedback to the user about the security status of the currently running application is undoubtedly a valuable countermeasure.
  • MalloDroid Installation Protection: MalloDroid could be integrated into app installers or App Markets to perform static code analysis.

The problem with each of the above suggestions, they are not something we can do. The research team did hint at something though:

[I]ntroducing policies like GSM_ONLY, NO_OPEN_ WIFI or TRUSTED_NETWORKS could help to protect apps from some MitM attacks. Despite the fact cellular networks such as GSM/3G/4G do not provide absolute security, they still require considerably more effort to execute an active MitM attack.

That?s interesting; cellular networks are more secure than Wi-Fi connections. I needed confirmation, so I checked with Dr. Denis Foo Kune. He is my go-to-expert for cellular technology. You may remember my article, ?Locating cell-phone owners the non-GPS way,? where I explained how Denis could track people without using the phone?s GPS. Denis had this to say:

The vulnerability can be exploited by anyone on the path between the device, and the server. Having the device on the cellular network makes it a little harder. An attacker needs to either be in control of a node between the service provider and the internet server, or use an off-path attack to divert traffic to a node under its control. Zhiyun Qian had a couple of papers about that.

I would say using the cellular network instead of the Wi-Fi network is slightly better (assuming you trust your cellular service provider more than people on your Wi-Fi network), but it should not be considered a final solution.

Final thoughts

That mobile applications are having trouble with SSL is troubling. Professor Freisleben had an interesting comment regarding this:

We got different reactions from developers we contacted; some were not aware of the issues, some switched off SSL validation checks during development (and apparently forgot to switch them on afterwards), and some argued their customers wanted them to avoid using SSL certificates.

Once again, it boils down to Buyer Beware. Check mobile apps at installation, every time the application is updated, and consider using cellular connections if there is the slightest concern about security or privacy.

Source: http://www.techrepublic.com/blog/security/android-apps-and-ssl-wheres-the-padlock/8836

2016 Olympics TD Bank mountain lion hanley ramirez Christian Bale visits victims Perez Hilton national weather service

Wanted man captured in Rome on drug trafficking charges

A local man wanted on federal drug trafficking charges was captured Saturday by the U. S. Marshals Service Regional Fugitive Task Force.

Pablo Goico, was wanted by the Marshals and the Drug Enforcement Administration, and tips led authorities to finding him staying with an associate in Rome.

At about 12:30 p.m., authorities responded to 614 N. Washington St. in Rome, where Goico was captured in the basement of the residence after attempting to flee from police throughout the apartment.

The following agencies participated in the investigation:

U.S. Marshals Service, Utica; Oneida County Sheriff?s Office, Warrants and K-9 units; the Utica Police Department?s Warrants and Metro Units; Oneida County Probation Department; state police Violent Felonies Warrants Unit; state Department of Corrections and Community Supervision; and Rome police.

?

Source: http://www.uticaod.com/news/x1783189419/Wanted-man-captured-in-Rome-on-drug-trafficking-charges

september 11 adam levine 9/11 Memorial Google Docs 911 masterchef Dictionary.com

Tony Romo Under Fire in Dallas; Should He Start in 2013?

Source: http://www.thehollywoodgossip.com/2012/12/tony-romo-under-fire-in-dallas-should-he-start-in-2013/

raspberry ketone ron burgundy millennial media nit championship transcendentalism bells palsy channel 5 news

Sunday, December 30, 2012

With lowest vaccination rate in Canada, Quebecers urged to get flu shot

CTV Montreal
Published Saturday, Dec. 29, 2012 2:10PM EST
Last Updated Saturday, Dec. 29, 2012 2:20PM EST

MONTREAL?With cases of influenza spiking during the holidays, health authorities reminded Montrealers on Saturday that it isn?t too late to go get vaccinated against the flu.

Quebec is the province with the lowest level of vaccination in Canada, with only 27 per cent of Quebecers getting the shot.

With numerous handshakes and close greetings exchanged during the holidays between friends and family, the flu virus has a near-perfect way to travel. Vaccinations are still being offered at local CLSCs and people with small children, the elderly or those with chronic diseases are urged to get vaccinated.

The vaccination is free for those in at-risk groups.

?With files from The Canadian Press.

Source: http://montreal.ctvnews.ca/with-lowest-vaccination-rate-in-canada-quebecers-urged-to-get-flu-shot-1.1095282

george zimmerman sheree whitfield weather dallas pat summitt real housewives of atlanta colton bo ryan

Huge iOS and Android Activity on Christmas Day

?
Home | Apple Stock | Tracked Sites | TechNN | | E-Mail | Sherlock Plugin
Close Left Panel | Login | Subscribe to MacSurfer's Headline News
Poll | Most Popular | Talking Heads | A Year Ago Today |

Saturday, December 29, 2012
Checked 10:45 PM; Last Updated 9:30 PM CST; 03:30 GMT
?

Subscriptions

Benefits Include:

? Custom Newspages
? Keyword-Built Page
? Timestamp Options
? Choice of RSS Feeds
? Headline Discussions
? MORE ...








Do you agree that Apple shares are unequivocally cheap? Cast your vote in "Today's Poll..." in the left column below or go straight to the results here.

WEEKEND BLOWOUT: Every NEW or RENEWING paid subscriber receives 2 YEARS FREE....

Weekend Highlights: Foss Patents reports that the ITC Judge wants Samsung to post a bond for 88 percent of its U.S. smartphone sales due to the Apple patent case; The Macalope considers small sample sizes; Insanely Great Mac updates a video review of results of charging iOS devices with the newest 12v charger, with interesting results; Rocco Pendola at TheStreet on the massive opportunity yet to be realized with Apple's million-dollar-per-day retail stores; MacNewsWorld's John Mello clarifies reports claiming Tim Cook's pay was cut 99%, when in actuality his base pay was raised by 51%; Macworld reviews the big Apple news stories of 2012; it seems that Apple's lack of online reviews are what brought down their online customer satisfaction score, which is still a respectable 80; $15 billion is what Samsung may be forced to pay for its attempt to ban Apple products in the EU; Apple had a huge Christmas according to Distimo, seeing an 87% increase in App Store downloads; report from Ina Fried over at AllThingsD says developers finding it more difficult to obtain app loyalty; Google's YouTube and Maps apps topped list of most downloaded apps on December 25th; former Apple designer reveals early product prototypes featuring some very interesting designs; LG seeking to ban Samsung's Galaxy Note for patent infringement; sending a quake of concern through ultrabook vendors, MacBook Air rumored to feature new processor platform in 2013 while retaining same design?reports in our Hardware/Software section; and apparently iDevice demand is so high that Apple's suppliers are going to keep working through the Chinese New Year; PC Magazine reviews Flickr for iPhone; PadGadget offers advice on finding accessories for your new iPad, iPad mini; Charles Moore discusses the pros/cons of buying Apple's extended AppleCare warranty for your devices; tablets now disposable commodity?

This weekend's MacUpdate Promo offers 82% savings on Strata Design 3D CX & Foto 3D CX 7. "Strata Design 3D CX and Foto 3D CX are the ultimate pairing when it comes to 3D rendering and animation. Foto 3D CX has the power to turn any set of images into a textured 3D rendering of real-life objects. While Strata Design 3D CX allows you to bring your imagination to life with gorgeous textures, lighting effects, and animation."

Welcome to MacSurfer's Headline News!
Is this the headline you are looking for?

Fri Dec 28
"Huge iOS and Android Activity on Christmas Day" Forbes 9:37 AM
  • "ITC judge wants Samsung to post a bond of 88% of its U.S. smartphone sales due to Apple patent case"?Foss Patents?7:24 AM
  • "ITC Judge recommends Samsung post 88 percent value bond, import bans in Apple patent case"?Engadget?8:33 AM
  • "ITC judge recommends ban on Samsung devices infringing on Apple patents: Following an October preliminary finding, judge also approves design tweaks for Samsung."?Ars Technica?9:27 PM
  • "Details of proposed sanctions emerge in Apple-Samsung case: Sanctions against Samsung in patent case before U.S. International Trade Commission would involve sales, import ban and posting of bond for 88 percent of value of smartphones at issue while potential bans were under review."?CNET News?4:41 PM
  • "Apple (AAPL) Drops Patent Claim Against Samsung's S III Mini in the U.S."?Wall Street Pit?7:19 AM
  • "Apple's wild ride, set to music"?Fortune?7:21 AM
  • "No Matter How You Look at It, Apple's Shares Are Cheap"?Barron's?7:21 AM
  • "The Idea That Apple's Best Days Are Behind It Is Absurd/"?Business Insider?12:12 PM
  • "'Not Deliberate' Says Google, On Google Finance Showing Apple Stock Chart For 'Sell'"?Search Engine Land?9:05 PM
  • "Reports of Tim Cook's Pay Cut Greatly Exaggerated: Despite appearances, Apple CEO Tim Cook's $1.3 million cash salary actually was a $400,000 increase over his pay in 2011. The company compensated him with $378 million last year, but the overwhelming majority of it was in restricted share units: a sort of stock grant that has no actual current value."?MacNewsWorld?12/28
  • "Apple gives Tim Cook 51 percent salary increase: Apple CEO Tim Cook received compensation totaling $4.17 million in 2012, down 98.9 percent on last year?although his 2011 compensation of $378 million consisted mostly of a one-off stock grant, worth $376.2 million at the time."?IDG News Service?12/28
  • "Huge Christmas for iTunes, App Store"?PC Magazine?12/28
  • "AAPL: iPad mini Sells Out in Hong Kong, Says Topeka"?Barron's?12/28
  • "Apple to drop patent claims against new Samsung phone: Apple Inc has agreed to withdraw patent claims against a new Samsung phone with a high-end display after Samsung said it was not offering to sell the product in the crucial U.S. market."?Reuters?12/28
  • "Apple Will Drop Galaxy S III Mini From Samsung Patent Suit"?Bloomberg?12/28
  • "Apple to drop patent claims against Samsung phone"?AFP?12/28
  • "Apple drops patent claim against Samsung Galaxy S3 Mini"?CNET News?12/28
  • "Samsung Could Face $15 Billion Fine For Trying To Ban iPhone, Other Apple Devices"?BGR?12/28
  • "Apple fined by China court for copyright violation"?BBC?12/28
  • "Apple loses another copyright lawsuit in China: Xinhua"?Reuters?12/28
  • "Apple's $160K Copyright Fine In China Is A Pittance, But Could It Open The Door For Further Claims?"?TechCrunch?12/28

More Memory = A Faster Mac. OWC Has Memory Upgrades For All Mac Desktops & Laptops - Prices Dropped For The Holidays! Free Shipping on All Memory Orders Over $25! Macsales.com


AppleCare/Troubleshooting
  • "Q&A: MacFixIt Answers/This week, readers e-mailed in questions about RAM prices for MacBook systems, resetting admin passwords, and more."?CNET Reviews?12/28
Reviews/How-To/Tips
  • "Corel AfterShot Pro vs Adobe Lightroom 4: Noise Reduction"?Foliovision?12/28
  • "Audirvana Plus audiophile music player (review)"?IT.Enquirer?12/28
  • "Favorite Mac Gems of 2012"?Macworld?12/28
  • "How to quickly set calendar times in OS X: If needed, you can take advantage of the OS X Calendar's ability to identify time frames to enter events faster."?MacFixIt?12/28
  • "How to Create a Keyboard Shortcut for Menu Items Everywhere"?Mactuts+?12/28
  • "Get Emoji Definitions Quickly in iOS"?OS X Daily?12/28
  • "Let's Talk About One-Trick Pony Apps For Your Mac (the app that's always on top)"?NoodleMac?12/28
  • "How An App Makes Your Mac Faster And Makes Your Battery Last Longer"?BohemianBoomer?12/28
  • "A Simple, Inexpensive Way To Create Subtitles Or Captions On Your Movies"?McSolo?12/28
  • "Is There A Simple, Easy, Inexpensive Way To Hide Files And Folders On A Mac?"?Mac 360?12/28
  • "How This Clever, Free App Can Help You Become A Mac Power User"?TeraTalks?12/28
Op/Ed
  • "Stupidity That's Hereditary"?Rixstep?12/28
  • "Why Apple does cloud computing right."?PalmAddict?12/28
Press Releases
  • "GraphicConverter 8.5 Adds Retina, 16-bit Grayscale RAW Support, More"?FairerPlatform?12/28
  • "Bluestacks App Player brings 750,000 Android apps to OS X"?T3?12/28
  • "Zevrix Extends 50% Holiday Sale until January 5 for All Products"?prMac?12/28
  • "iPhone and iPad sales: Two Christmas Day data points/1) 17 million iOS and Android devices activated; 2) App Store downloads up 87%"?Fortune?12/28
  • "Apple's Christmas gift - an 87 percent rise in app downloads"?CNET News?12/28
  • "iPad continues to lead the tablet market in web traffic"?SlashGear?12/28
  • "Report: iPad Still Destroying Other Tablets in Web Usage"?Mashable?12/28
  • "Huge iOS and Android Activity on Christmas Day"?Forbes?12/28
  • "It's Getting More Costly for iPhone App Makers to Get Loyal Customers"?AllThingsD?12/28
  • "Apple sees big slide in customer satisfaction"?TG Daily?12/28
  • "Analyst: Apple may have to pay for 'iPhone' name in Brazil"?Electronista?12/28
  • "YouTube, Google Maps top list of most download apps on Christmas Day"?iDownload Blog?12/28
  • "Apple designer shows off early prototypes in new book"?Electronista?12/28
  • "Early Apple Computer And Tablet Designs Reveal The iMac And iPad That Might Have Been"?TechCrunch?12/28
  • "How Apple's holistic approach to design began back in 1982"?Ars Technica?12/28
  • "Upcoming book gives look at early Apple designs"?CNET News?12/28
  • "Apple Computer Designs That You've Never Seen [Video]?Mashable?12/28
  • "China's ZTE Targets iPhone"?WSJ.com [Paid Membership Required]?12/28
  • "Ihnatko: The best tech products of 2012"?Chicago Sun-Times [Free Registration Required]?12/28
  • "New York City Mayor Bloomberg blames iPhones & iPads for increase in crime"?9 to 5 Mac?12/28
  • "Mayor Bloomberg blames Apple thefts for rise in New York City crime rate"?The Verge?12/28
  • "NYC mayor blames theft of Apple devices for uptick in crime"?CNET News?12/28
Non-Apple News
  • "Microsoft Invents Smart Walls for Next-Gen Homes & Offices"?Patent Bolt?12/28
  • "Trend 2013: Desktop Computers with Tiltable Touch Displays"?Patent Bolt?12/28
  • "Google's new VP9 video technology reaches public view"?CNET News?12/28
  • "Here Comes the First Smartphone for Baby Boomers"?TheStreet?12/28
  • "LG Display bringing Retina Display-like resolution to 7-inch tablets, 12.9-inch laptop screen"?ZDNet?12/28
  • "Japanese mobile carriers beg users to limit New Year's texts, calls"?IDG News Service?12/28
  • "Ouya game consoles now on their way to developers"?CNET News?12/28
  • "OUYA Ships 1,200 Development Consoles, Shows Off Its Pre-Release Android Gaming Hardware On Video"?TechCrunch?12/28
  • "Mobile gift cards increase in popularity"?Financial Times [Paid Membership Required]?12/28
  • "Schools use smart devices to help make kids smarter"?USA Today?12/28
  • "All is well after Zuckerberg photo flap"?CNN?12/28
  • "Bug reveals 'deleted' Snapchat videos"?BBC?12/28
  • "Kim Dotcom To Host Mega's Launch Event At His New Mega Zealand Mansion Next Month"?TechCrunch?12/28
  • "DotCom promises splashy launch for Mega"?CNET News?12/28
  • "Report: Fujitsu President Says Windows 8 Demand Weak, Intros New Smartphone"?PC Magazine?12/28
  • "Weak Windows 8 Demand Saps PC Sales, Fujitsu President Says"?Bloomberg?12/28
  • "Cisco, HP, Walmart, others support Judge Posner, propose methodologies for patent damages"?Foss Patents?12/28
  • "Android-Android war raging in Korea as LG seeks injunction against Samsung Galaxy Note 10.1"?Foss Patents?12/28
Publications/Podcasts
  • "Hartmut Esslinger's Upcoming Book Reveals Early Apple Designs"?Design Trend?7:25 AM
  • "Gene Steinberg meets Peter Cohen, from The Loop and the Angry Mac Bastards radio show, and Kirk McElhearn, Macworld's 'iTunes Guy,' this week on The Tech Night Owl LIVE!"?The Tech Night Owl LIVE?12/28
  • "New iPads In March And Our iOS 7 Hopes And Dreams On Our All-New CultCast"?Cult of Mac?12/28
  • "Podcast: End of Year Review - 2012 Apple products plus Holiday wrap up"?Insanely Great Mac?12/28
  • "Apple to Update MacBook Pro and MacBook Air in June 2013 with New Processors, All Retina?"?MacRumors?12/28
  • "Here Come New, More Powerful Versions Of Apple's Best Computer, The MacBook Air"?Business Insider?12/28
  • "Suppliers hint at changes to MacBook Air -- Digitimes"?CNET News?12/28
  • "Rumor: New MacBook Pro and MacBook Air Due In June 2013"?Apple Bitch?12/28
  • "Apple Suppliers To Continue Work During Chinese New Year To Meet High Market Demand"?App Advice?12/28
  • "Strong demand prompts Apple suppliers to work during Chinese New Year"?AppleInsider?12/28
  • "'Insatiable demand' for iPad mini drives stock-outs in China"?AppleInsider?12/28
  • "iPad mini in hot demand in China -- analyst"?CNET News?12/28
AppleCare/Helps
  • "I have a little later (mid-year vintage) model of that machine and so far am having no issues. However, there are some things to try and sleuthing to do. I would first try two things: Try resetting the PRAM and the SMC. There are instructions for both procedures all over the place. Also, determine if this happens only when the 9400 is involved, or does it happen with the 9600 (or with both). Are there any console messages that occur just prior to the panic? What software is running at the time of the crash? Do you recall installing any particular software or attaching any special hardware just prior to this syndrome beginning?"?MacInTouch?12/28
Price Trackers/Deals
  • "Fruitopia For iPhone Is Temporarily Available For Free (Normally $0.99)"?Apple Sliced?9:33 AM
  • "World of Blocks For iPhone Is Free Right Now (Previously $0.99)"?Apple Sliced?9:33 AM
  • "ORBITAL HD For iPad Is Free Today (Was $2.99), The iPhone Version Is Also Free"?Apple Sliced?9:33 AM
  • "Apple drops prices on refurbished Mac Minis by $50, now start at $469"?9 to 5 Mac?4:00 PM
  • "Defender II For iPhone and iPad Is Temporarily Available For Free (Normally $0.99)"?Apple Sliced?12/28
  • "LensFlare For iPhone and iPad Is Free Right Now (Previously $0.99)"?Apple Sliced?12/28
  • "Puzz For iPad Is Free Today (Was $1.99)"?Apple Sliced?12/28
  • "15" MacBook Pro Prices & Sales"?MacPrices?12/28
  • "13" MacBook Pro Prices & Sales"?MacPrices?12/28
  • "MacBook Air Prices & Sales"?MacPrices?12/28
  • "PadGadget Daily App Deal ? 80 iPad Apps on Sale"?PadGadget?12/28
  • "2012 iPod touch Deals: New from $185, Refurbished from $129"?FairerPlatform?12/28

Deal Brothers Daily Deal: Attention Merchants: MasterCard and VISA may cost you more than AmEx


  • "Is the iPad Set for a Holiday Blowout or Blowup?"?The Motley Fool?8:56 PM
  • "Steve Jobs Isn't The Only Kind Of Artist Leader"?Forbes?8:52 PM
  • "Google's big push to make better iOS apps than Apple"?GigaOM?8:43 PM
  • "What Is an iPhone? My dumbphone experiment takes an unexpected twist."?Technology Review?8:42 PM
  • "Type 'sell' into Google Finance and take a bite out of Apple: It's not clear why, exactly, this is happening, but as of this writing, if you type 'sell' into Google Finance, you get Apple's rather sullen stock chart. Algorithmic slip-up? Or gremlinesque Android?"?CNET News?6:34 PM
  • "Top Comments: The Problems with Facebook, Windows and Apple"?Mashable?4:41 PM
  • "Apple And Google Race For Black Gold"?Forbes?12:02 PM
  • "ITC judge recommends ban on Samsung devices infringing on Apple patents: Following an October preliminary finding, judge also approves design tweaks for Samsung."?Ars Technica?9:27 PM
  • "Loss Of Apple'S Processor Business Unlikely To Affect Samsung"?BGR?12/28
  • "Attempts to ban Apple devices could see Samsung fined $15 billion"?TUAW?12/28
  • "The Sad Tale of Two Apple Audio Players"?512 Pixels?12/28
  • "Apple's iPad Generates 87% of Pre-Xmas Tablet Web Traffic"?The Mac Observer?12/28
  • "Man Bites Dog: China Fines Apple for Copyright Infringement"?TechNewsWorld?12/28
  • "China iPad mini Demand Called 'Insatiable"?Tapscape?12/28
  • "Sorry folks, book publishers don't know Apple's plans"?TUAW?12/28
  • "Rethinking The Mobile App 'Walkthrough'"?TechCrunch?12/28
  • "The Year of Doom For Microsoft, Google and Apple"?Forbes?12/28
  • "Why I Might Drop the iPhone 5 for the Galaxy Note II, and you should too." ["All in all, Apple has fallen behind the curve. After trying the Galaxy Note II for two weeks, it's clear that Android Jellybean (4.1) has managed to pull ahead. And the second iteration of the Note ? a device I've made fun of since before it even made it to the shelves ? is a far better phone, semantically and as a competitive computer."]?Forbes?12/28
  • "Tim Cook's $4.2M Compensation; Foxconn's Improving Conditions; EA Scrubs Gun Links"?PC Magazine?12/28
  • "Are tablets now disposable computing devices? Summary: With the price of 7" tablets now reaching the sub-$200 level, should they be considered disposable computing devices?"?ZDNet?12/28
  • "Can the N.Y. Times ride Apple all the way to a Pulitzer? Part 9 in its iEconomy series, published Thursday, is the hammer that tries to nail it"?Fortune?12/28
  • "Social networks, Apple, Microsoft and Linux in 2013"?The Inquirer?12/28
  • "Looking back at my Apple-related predictions for 2012"?AppleDailyReport?12/28
  • "Shut Up, You're Not Apple"?Forbes?12/28
  • "Is AppleCare extended warranty coverage worth the money?"?AppleTell?12/28
  • "[Wayne] The tech I used most in 2012"?BetaNews?12/28
  • "The Most Disturbing New Trend For Apple Customers In 2012"?PixoBebo?12/28
Non-Apple
  • "The Wii U Is The Nintendo'S Last Console"?BGR?12/28
  • "5 common computer problems you can fix yourself"?USA Today?12/28
  • "Raspberry Pi Hack Turns The Ultra-Affordable Computer Into An AirPlay Receiver"?TechCrunch?12/28
  • "ASUS Matrix Radeon HD 7970 Platinum Review"?HotHardware?12/28
  • "16 of the most useful cloud management tools"?Network World?12/28
  • "Digitimes Research: Loss of Apple processor orders unlikely to affect Samsung"?DigiTimes?12/28
  • "Zuckerberg Photo Flap: 4 Lessons/What Randi Zuckerberg's 'private' Facebook photo -- and subsequent Twitter fuming -- can teach the rest of us about social business."?InformationWeek?12/28
  • "Tips to help your smartphone work better" [Video Report]?CNET News?12/28
  • "Can New BlackBerries Help Save Research in Motion?" [Video Report]?TheStreet?12/28
  • "Google Music Scan and Match swaps explicit songs for clean tracks"?TG Daily?12/28
  • "2 Tech Moments of 2012 That Made You Say 'WTF?'"?Wired Magazine?12/28
  • "2012: The tech year in cartoons/From SOPA to the Petraeus affair, here's a look at some of the year's biggest IT stories from the pen of Computerworld's editorial cartoonist, John Klossner."?Computerworld?12/28
  • "Mobile's Biggest Losers In 2012: The last twelve months have been turbulent for smartphone makers and wireless network providers. Here's who took it on the chin hardest."?InformationWeek?12/28
  • "Drones, phones and other 2012 privacy threats"?Computerworld?12/28
  • "The top 10 trends in enterprise cloud for 2013"?VentureBeat [Free Registration Required]?12/28
  • "Security in 2013: The rise of mobile malware and fall of hacktivism"?PCWorld?12/28
  • "2012''s worst security exploits, fails and blunders"?PCWorld?12/28
  • "10 Biggest Information Security Stories Of 2012: From John McAfee's escape from Belize to the privacy debacle that compromised CIA director Petraeus' career, 2012 had no shortage of security shockers."?InformationWeek?12/28
  • "Video games in 2012: A year of high-octane sequels"?Washington Post [Free Registration Required]?12/28
  • "How Amazon ruined my Christmas: Netflix's Christmas outage is yet another reminder that downtime happens at the worst possible time and the cloud is not inherently resilient."?ZDNet?12/28
  • "Could These 6 Pending Regulations Destroy The Internet In 2013?"?ReadWrite?12/28
  • "After initial flop, does Google+ have a secret weapon for a comeback?"?Beatweek Magazine?12/28
  • "Seriously, Google? Really? How Google's Math Kills The Web As You Know It"?Mac 360?12/28
  • "AUTONOMY UPDATE: Lynch Junks Accounting Fraud Allegations as US Investigation Underway"?FxPips.com?7:43 AM
  • "HP Confirms Subsidiary Autonomy Being Probed By Justice Department"?redOrbit?4:16 PM
  • "It Just Keeps Getting Worse for Hewlett-Packard"?The Motley Fool?7:45 AM
  • "Autonomy's Lynch rejects fraud claims as US probe is launched: Firm's founder hits back at HP"?Irish Independent?7:45 AM
  • "US Justice Department looks into HP's Autonomy acquisition"?PCWorld?9:05 PM
  • "Fujitsu president blames poor sales on 'weak' Windows 8 demand: Windows 8 becoming a scapegoat?"?TechRadar UK?7:50 AM
  • "Windows 8 wrestles with PC's legacy: opinion On a traditional PC, Windows 8 Metro is a solution looking for a problem."?CNET Reviews?8:43 PM
  • "Can Microsoft Go Pro in Tablets in 2013?"?DailyFinance?9:10 PM
  • "Short Microsoft? No, Just Buy The Dips Of This Solid DiVidend Stock"?Seeking Alpha?7:50 AM
  • "Kabini to be 10 percent faster than 28nm Bobcat"?Fudzilla?7:46 AM
  • "Intel's Cable TV Service And Set Top Box Will Soon Roll Out City By City"?TechCrunch?4:19 PM
  • "Intel Reportedly plans to launch its internet TV service in a limited number of cities"?The Verge?6:39 PM
  • "Intel's 'Redhookbay' Spotted in Benchmarks with Android 4.2.1, Dual-Core CPU"?Softpedia?7:47 AM
  • "Intel Redhookbay benchmarks surface, show dual-core Merrifield processor"?SlashGear?7:47 AM
  • "Intel postpones Haswell launch until Computex"?Hardware.info?7:48 AM
  • "Intel Haswell possibly delayed till June 2013"?Tech2?7:49 AM
  • "Intel Haswell CPUs delayed until June 2013"?CPU World?9:07 PM
  • "US judge SLAMS both IBM and the SEC over bribery settlement"?The Register?7:52 AM
  • "4 Reasons Cisco Will Be The #1 IT Company"?Seeking Alpha?7:47 AM
  • "HP Goes Radio Silent Into 2013 on Autonomy Debacle"?TheStreet?12/28
  • "HP confirms DOJ investigation into Autonomy acquisition: HP said in a regulatory filing with the SEC that it has provided information to U.S. and U.K. authorities"?IDG News Service?12/28
  • "Hewlett-Packard Says Justice Department Probing Autonomy"?Bloomberg?12/28
  • "HP discloses US probe into Autonomy"?Financial Times [Paid Membership Required]?12/28
  • "H-P Confirms DOJ Probe Over Autonomy Mess"?FOXBusiness?12/28
  • "HP-Autonomy acquisition under US govt investigation"?ZDNet?12/28
  • "Autonomy's Lynch defends record as HP confirms Federal probe"?Reuters?12/28
  • "HP Has Been Slammed With 10 Lawsuits Over The Autonomy Debacle"?Business Insider?12/28
  • "Year in Review: Windows 8, roadmaps, Office Next top the reader charts"?ZDNet?12/28
  • "You need a touchscreen for Windows 8: Windows 8's best feature isn't being used by most Windows 8 PC owners."?CNNMoney?12/28
  • "Intel to cooperate with HP, Lenovo, Quanta, Compal to launch smart TVs in 2013"?DigiTimes?12/28
  • "This Dumb Year: The 57 Lamest Moments in Tech 2012"?Techland?12/28
  • "2012: The year in application development/Native vs. Web, the rise of GitHub, hard truths for HTML5 -- here's a look back at the year in programming trends" [Slideshow]?InfoWorld?12/28
  • "Top 10 Tech News Stories of 2012: From Apple vs. Samsung to Facebook's IPO, here's what had the tech world talking in 2012."?PC Magazine?12/28
? ?

Source: http://www.macsurfer.com/redirr.php?u=751049

brooklyn nets may day protests tony nominations 2012 facebook organ donor jessica simpson gives birth carrie underwood blown away chk

Bomb targeting Shiites kills 4 in Pakistan

QUETTA, Pakistan (AP) ? A government official says a bomb has struck a pair of buses carrying Shiite Muslim pilgrims in southwest Pakistan, killing four people.

Zubair Ahmed said the attack Sunday in Baluchistan province's Mastung district wounded another 15 people, including three women. The bomb was strapped to a motorcycle and detonated by remote control. One bus was almost completely destroyed. The other was damaged.

Ahmed said the buses were coming from neighboring Iran, a majority Shiite country and popular destination for religious pilgrims.

Pakistan has experienced a spike in killings over the last year by radical Sunni Muslims targeting Shiites who they consider heretics. Many attacks have occurred in Baluchistan, believed to be a hiding place for senior Afghan Taliban commanders and also the site of a decades-long insurgency by nationalists.

Source: http://news.yahoo.com/bomb-targeting-shiites-kills-4-pakistan-055418713.html

correspondents dinner 2012 white house correspondents dinner 2012 whcd 2012 nfl draft kevin durant jazz fest zurich classic

Saturday, December 29, 2012

Senate leaders work to avoid New Year's "fiscal cliff"

WASHINGTON (Reuters) - Congressional negotiators burrowed into their Capitol offices on Saturday to see if they can stop the economy from falling off a "fiscal cliff" in just three days when the biggest tax increases ever to hit Americans in one shot are scheduled to begin.

Aides to Senate Majority Leader Harry Reid, a Democrat, and Senate Republican leader Mitch McConnell were expected to work through the day on a possible compromise that would set aside $600 billion in tax increases and across-the-board government spending cuts that are set to kick in next week.

A variety of lower taxes are scheduled to expire on December 31. If allowed to rise, the approximately $500 billion value of the revenue increases would represent a historic hike when taken together.

The combined punch of the tax increases and spending cuts would likely put the U.S. economy into a downward spiral, according to economists' forecasts.

"We're now at the point where, in just a couple days, the law says that every American's tax rates are going up. Every American's paycheck will get a lot smaller. And that would be the wrong thing to do for our economy," President Barack Obama said in his weekly radio and Internet address, which was broadcast on Saturday.

At midday, McConnell walked into his office on the second floor of the Capitol. Asked by waiting journalists if he thought his efforts would be successful, McConnell responded: "I hope so."

A Senate Republican leadership aide said that it might not be known until sometime on Sunday whether these talks bear fruit. That is when leaders are expected to brief their rank-and-file members.

The Senate is scheduled to hold a rare Sunday session beginning at 1 p.m. EST (1800 GMT), but it was not clear whether the chamber would have fiscal cliff legislation to act upon.

Reid and McConnell and their staffs held last-ditch negotiations Friday night and resumed on Saturday with no guarantees that their efforts would pay off. Republicans remained opposed to Obama's demand that households making above $250,000 a year see their income tax rate rise to 39.6 percent, from the current 35 percent, in order to help tame budget deficits.

In recent days, some aides have said that a $400,000 threshold, instead of $250,000, has been discussed as a possible compromise.

PESSIMISTIC OUTLOOK

Democrats and Republicans also are jousting over what to do about inheritance taxes on estates.

Unless Congress acts, the tax is set to jump on January 1 to 55 percent with the first $1 million exempted for individuals. Currently, there is a 35 percent tax and a $5 million exemption.

One Democratic aide was pessimistic that McConnell would come up with a counteroffer that Reid would find acceptable. Such a counteroffer would have to be calibrated in a way that also could attract votes from conservative House Republicans, many of whom have balked at any tax rate increases.

Similarly, a senior House Republican aide on Saturday voiced pessimism about prospects for a deal.

"It's hard to see Reid agreeing to anything that can get the votes of the majority of the majority in the House, thereby allowing a bipartisan accomplishment," the aide said. A "majority of the majority" refers to the 241 Republicans who are in the 435-member House.

The Republican aide placed the blame squarely on Democrats, as many Republican members have done publicly, saying that going off the fiscal cliff is a "policy upside" for them. "Higher taxes, devastating defense cuts. The polls tell them they can win the PR war in January. From their perspective, why stop the cliff dive?"

Democrats, in turn, have publicly accused Republican House Speaker John Boehner of preferring to put off any tough fiscal cliff votes until after a January 3 House election in which he is expected to win another two-year term as speaker.

If McConnell and Reid can manage to reach a deal on inheritance taxes and raising income tax rates on the wealthiest, they likely would throw into the compromise some other fiscal cliff solutions.

Those could include extending an array of other expiring tax breaks, such as one that encourages companies to conduct research and development. Also, Congress wants to prevent a steep pay-cut in January for doctors who treat elderly Medicare patients.

Lawmakers also want to prevent middle-class taxpayers from inadvertently creeping into a higher tax bracket, known as the alternative minimum tax, intended for the wealthiest.

If the Reid-McConnell effort fails, Obama has asked the Senate to hold a vote on Monday on a "basic package" that would stop taxes from going up on the middle class and would extend long-term unemployment benefits that are about to expire. If it passed the Senate, its fate would be in the hands of the Republican-controlled House.

(Additional reporting by Thomas Ferraro and Jeff Mason; Editing by Fred Barbash and Eric Beech)

Source: http://news.yahoo.com/senate-leaders-last-ditch-fiscal-cliff-effort-012150621--business.html

etta james ufc on fox evans vs davis fast times at ridgemont high fast times at ridgemont high soylent green phil davis

Olivia Wilde Bikini Photos: THG Hot Bodies Countdown #8!

Source:

petrino clayton kershaw tyler perry face transplant maundy thursday fab melo google glasses

Last ditch effort to avoid fiscal cliff under way

President Barack Obama pauses during a statement on the fiscal cliff negotiations with congressional leaders in the briefing room of the White House on Friday, Dec. 28, 2012, in Washington. The negotiations are a last ditch effort to avoid across-the-board first of the year tax increases and deep spending cuts. (AP Photo/ Evan Vucci)

President Barack Obama pauses during a statement on the fiscal cliff negotiations with congressional leaders in the briefing room of the White House on Friday, Dec. 28, 2012, in Washington. The negotiations are a last ditch effort to avoid across-the-board first of the year tax increases and deep spending cuts. (AP Photo/ Evan Vucci)

House Minority Leader Nancy Pelosi of Calif. waits for her car as she leaves a meeting at the White House in Washington, Friday, Dec. 28, 2012, after a closed-door meeting between President Barack Obama and Congressional leaders to negotiate the framework for a deal on the fiscal cliff. The end game at hand, President Barack Obama and congressional leaders made a final stab at compromise Friday to prevent a toxic blend of middle-class tax increases and spending cuts from taking effect at the turn of the new year. (AP Photo/ Evan Vucci)

President Barack Obama pauses while he speaks to reporters in the Brady Press Briefing Room at the White House in Washington after meeting with Congressional leaders regarding the fiscal cliff, Friday, Dec. 28, 2012. (AP Photo/Charles Dharapak)

Senate Majority Leader Harry Reid of Nev. leaves the White House in Washington, Friday, Dec. 28, 2012, after a closed-door meeting between President Barack Obama and Congressional leaders to negotiate the framework for a deal on the fiscal cliff. The end game at hand, President Barack Obama and congressional leaders made a final stab at compromise Friday to prevent a toxic blend of middle-class tax increases and spending cuts from taking effect at the turn of the new year. (AP Photo/ Evan Vucci)

Senate Minority Leader Mitch McConnell, R-Ky. arrives at the White House in Washington, Friday, Dec. 28, 2012, for a closed-door meeting between President Barack Obama and Congressional leaders to negotiate the framework for a deal on the fiscal cliff. The negotiations are a last ditch effort to avoid across-the-board first of the year tax increases and deep spending cuts. (AP Photo/ Evan Vucci)

(AP) ? The end game at hand, the White House and Senate leaders made a final stab at compromise Friday night to prevent middle-class tax increases from taking effect at the turn of the new year and possibly block sweeping spending cuts as well.

"I'm optimistic we may still be able to reach an agreement that can pass both houses in time," President Barack Obama said at the White House after meeting for more than an hour with top lawmakers from both houses.

Surprisingly, after weeks of postelection gridlock, Senate leaders sounded even more bullish.

The Republican leader, Sen. Mitch McConnell of Kentucky, said he was "hopeful and optimistic" of a deal that could be presented to rank-and-file lawmakers as early as Sunday, a little more than 24 hours before the year-end deadline.

Said Majority Leader Harry Reid: "I'm going to do everything I can" to prevent the tax increases and spending cuts that threaten to send the economy into recession. He cautioned, "Whatever we come up with is going to be imperfect."

House Speaker John Boehner, a Republican who has struggled recently with anti-tax rebels inside his own party, said through an aide he would await the results of the talks between the Senate and White House.

Under a timetable sketched by congressional aides, any agreement would first go to the Senate for a vote. The House would then be asked to assent, possibly as late as Jan. 2, the final full day before a new Congress takes office.

Officials said there was a general understanding that any agreement would block scheduled income tax increases for middle class earners while letting rates rise at upper income levels.

Democrats said Obama was sticking to his campaign call for increases above $250,000 in annual income, even though in recent negotiations he said he could accept $400,000.

The two sides also confronted a divide over estate taxes.

Obama favors a higher tax than is currently in effect, but one senior Republican, Sen. Jon Kyl of Arizona, said he's "totally dead set" against it. Speaking of fellow GOP lawmakers, he said they harbor more opposition to an increase in the estate tax than to letting taxes on income and investments rise at upper levels.

Also likely to be included in the negotiations are taxes on dividends and capital gains, both of which are scheduled to rise with the new year. Also the alternative minimum tax, which, if left unchanged, could hit an estimated 28 million households for the first time with an average increase of more than $3,000.

In addition, Obama and Democrats want to prevent the expiration of unemployment benefits for about 2 million long-term jobless men and women, and there is widespread sentiment in both parties to shelter doctors from a 27 percent cut in Medicare fees.

The White House has shown increased concern about a possible doubling of milk prices if a farm bill is not passed in the next few days, although it is not clear whether that issue, too, might be included in the talks.

One Republican who was briefed on the White House meeting said Boehner made it clear he would leave in place spending cuts scheduled to take effect unless alternative savings were included in any compromise to offset them. If he prevails, that would defer politically difficult decisions on curtailing government benefit programs like Medicare until 2013.

Success was far from guaranteed in an atmosphere of political mistrust ? even on a slimmed-down deal that postponed hard decisions about spending cuts into 2013 ? in a Capitol where lawmakers grumbled about the likelihood of spending the new year holiday working.

In a brief appearance in the White House briefing room, Obama referred to "dysfunction in Washington," and said the American public is "not going to have any patience for a politically self-inflicted wound to our economy. Not right now."

If there is no compromise, he said he expects Reid to put legislation on the floor to prevent tax increases on the middle class and extend unemployment benefits ? an implicit challenge to Republicans to dare to vote against what polls show is popular.

The president also booked a highly unusual appearance on Meet the Press for Sunday, yet another indication of his determination to retain the political high ground that came with his re-election.

The guest list for the White House meeting included Reid, McConnell, Boehner and House Democratic leader Nancy Pelosi, D-Calif.

The same group last met more than a month ago and emerged expressing optimism they could strike a deal that avoided the fiscal cliff. At that point, Boehner had already said he was willing to let tax revenues rise as part of an agreement, and the president and his Democratic allies said they were ready to accept spending cuts.

Since then, though, talks between Obama and Boehner faltered, the speaker struggled to control his rebellious rank and file, and Reid and McConnell sparred almost daily in speeches on the Senate floor. Through it all, Wall Street has paid close attention, and the meeting was still going on at the White House when stocks closed lower for the fifth day in a row.

The core issue is the same as it has been for more than a year, Obama's demand for tax rates to rise on upper incomes while remaining at current levels for most Americans. He made the proposal central to his successful campaign for re-election, when he said incomes above $200,000 for individuals and $250,000 for couples should rise to 39.6 percent from the current 35 percent.

Boehner refused for weeks to accept any rate increases, and simultaneously accused Obama of skimping on the spending cuts he would support as part of a balanced deal to reduce deficits, remove the threat of spending cuts and prevent the across-the-board tax cuts.

Last week, the Ohio Republican pivoted and presented a Plan B measure that would have let rates rise on million-dollar earners. That was well above Obama's latest offer, which called for a $400,000 threshold, but more than the speaker's rank and file were willing to accept.

Facing defeat, Boehner scrapped plans for a vote, leaving the economy on track for the cliff that political leaders in both parties had said they could avoid. In the aftermath, Democrats said they doubted any compromise was possible until Boehner has been elected to a second term as speaker when the new Congress convenes on Jan. 3.

Further compounding the year-end maneuvering, there are warnings that the price of milk could virtually double beginning next year.

Congressional officials said that under current law, the federal government is obligated to maintain prices so that fluid milk sells for about $20 per hundredweight. If the law lapses, the Department of Agriculture would be required to maintain a price closer to $36 of $38 per hundredweight, they said. It is unclear when price increases might be felt by consumers.

______

Associated Press writers Alan Fram and Andrew Taylor contributed to this report.

Associated Press

Source: http://hosted2.ap.org/APDEFAULT/3d281c11a96b4ad082fe88aa0db04305/Article_2012-12-28-Fiscal%20Cliff/id-d900f7f92eb5459c96f2cdb673837639

foster friess new orleans hornets ghost rider spirit of vengeance hornets prince johan friso windows 8 logo anguilla