Security Alerts & News
by Tymoteusz A. Góral

#1912 Don't use Android pattern lock to protect secrets, researchers warn
Researchers have demonstrated an attack that can crack 95 percent of Android pattern locks within the five attempts allowed.

The side-channel attack, devised by researchers from China and the UK, uses video footage from a smartphone's camera and a computer vision algorithm to crack Android's geometric lock patterns. Lock patterns are an alternative to PINs and passwords.

As noted by the researchers, the attack doesn't require footage of the screen itself, only a line of sight to the user's hand movements. The algorithm tracks fingertip motions and reconstructs the lock pattern. The researchers tested the attack on 120 unique patterns from 215 users and report that the method can crack 95 percent of patterns within five attempts.

Additionally, they found that more complex patterns are easier to crack, with 97.5 percent falling within the first attempt, compared with 60 percent of simple patterns and 87 percent of median complex patterns.
Read more
#1913 Firefox 51 arrives with warning for HTTP websites that collect passwords, WebGL 2 and FLAC support
#1912 Don't use Android pattern lock to protect secrets, researchers warn
#1911 Cisco patches critical flaw in WebEx Chrome plugin
#1910 Online security 101: Tips for protecting your privacy from hackers and spies
#1909 Apple patches critical kernel vulnerabilities
#1908 Virulent Android malware returns, gets >2 million downloads on Google Play
#1907 Widely used WebEx plugin for Chrome will execute attack code—patch now!
2017: 01 02 03 04 05
2016: 01 02 03 04 05 06 07 08 09 10 11 12