Why were early computers beige?

It’s a common question: Why were early computers beige? In some ways it seems a curious color choice today.

Read more

Another reason to block fonts at the proxy

Last week Apple released a bunch of patches up and down its product line. One of the vulnerabilities it fixed in OS X was a vulnerability in its font parser.

In the past you could mitigate vulnerabilities like this by only installing fonts from trusted sources, but since it’s now possible for web pages to transmit fonts along with other content, there’s a limitless number of untrusted fonts out there in the world.

Since it may take a while for all of the major operating systems to shake out all of the problems in their font subsystems, that’s the reason I’ve recommended filtering fonts at the proxy.

Read more

The problem with ditching Flash and Java

Last week Adobe issued an out-of-band Flash patch, and once again Brian Krebs urged people to ditch Flash, noting that he’s done so and hasn’t missed it.

We decided to try ditching Flash at work a few months ago, but it didn’t go quite so smoothly for us. I thought I’d share my experience.

Read more

‘PC Does What?’ seems doomed to fail

A coalition of Dell, HP, Intel, Lenovo, and Microsoft are trying to figure out how to reverse the downward trend of PC sales, and what they came up with was a marketing campaign called “PC Does What?”

The problem is it’s not 1995 anymore, and it’s going to take more than a marketing campaign to change that.

Read more

The downside of streaming music

There’s a new rule when it comes to security and privacy: If a service is free, then you’re the product.

Actually, come to think about it, the rule isn’t so new. I’m the product when I listen to the radio. Radio stations exist to deliver a product–namely, an audience–to advertisers, and the audience is different when you’re talking top 40 versus urban contemporary versus country versus classic rock versus alternative versus adult contemporary.

But when it comes to streaming music, the game changes a bit.

Read more

Will ARM overtake x86?

Will ARM overtake x86?

Here’s an interesting question I got recently: Will ARM overtake x86?

I think the answer depends on how you define “overtake.”

Read more

Droidpocalypse? Josh Drake says no.

Josh Drake, the researcher who discovered the Stagefright vulnerability in Android that lets an attacker hack into an Android device by sending a specially crafted picture or video in a text message, was on the Risky Business security podcast this week to talk about it. What he had to say was interesting.

Patrick Gray, the host, tends to be a pretty outspoken critic of Android and isn’t shy about talking up Apple. He tried to get Drake to say Android is a trainwreck, security-wise, but Drake wouldn’t say it. Drake actually went as far as to say he thinks Android and IOS are fairly close, security wise.

So why do we see so many more Android bugs? Drake had an answer.

Read more

How the Amiga could have lived to age 30 and beyond

It was 30 years ago this week that Commodore released its landmark, long-time-coming Amiga 1000 computer–the first 1990s computer in a field full of 1970s retreads.

Yes, it was a 1990s computer in 1985. It had color and sound built in, not as expensive, clunky, hard-to-configure add-ons. It could address up to 8 megabytes of memory, though it ran admirably on a mere 512 kilobytes. Most importantly, it had fully pre-emptive multitasking, something that previously only existed in commercial workstations that cost five figures.

It was so revolutionary that even NBC is acknowledging the anniversary.

Being a decade or so ahead of its time was only the beginning of its problems, unfortunately.

Read more

Looking for a career change? Consider web app pentesting

IT jobs aren’t as easy to come by as they were 20 years ago, but web app pentesting is one subset of the field that I don’t see slowing down any time soon. Unfortunately it’s a poorly understood one.

But if you spent any significant time in the 1980s or early 1990s abusing commercial software, especially Commodore and Apple and Atari and Radio Shack software, I’m looking at you. Even if you don’t know it, you’re uniquely qualified to be a web app pentester.

Read more

Why this latest attempt to resurrect the Commodore brand will probably flop

Why this latest attempt to resurrect the Commodore brand will probably flop

The Commodore brand is back again, this time on an Android smartphone. For a premium price, you get an Android 5.0 phone with the Commodore logo on it, preloaded with VICE and an Amiga emulator, which, between the two of them, emulate just about everything Commodore ever made, except, perhaps, the products that can be emulated with the Android calculator app.

But I don’t expect this attempt to be any more successful than earlier efforts to resurrect the brand.

Read more