Just in:
Andertoons by Mark Anderson for Wed, 01 May 2024 // DC and Zebra Comics Announce Collaboration on Joker: The World Anthology // UAE Brings Smiles to Faces of Nine Ailing Children in Cairo // Job Title Inflation in Hong Kong: 6 in 10 expect promotion within 12 – 18 months // UAE Bolsters Cooperation at Islamic Development Bank Meetings // Microsoft Makes Strategic Investment in UAE’s AI Leader G42 // Dominic Khoo Wins Misrepresentation Case Against Innovest Affiliated Company, MCA and Others // Revolutionizing Racing and Trading: AlphaX Teams Up with F2 Sensation Enzo Fittipaldi // Jiangxi’s Cultural and Tourism Promotion Shines in Malaysia, Inviting Tourists to Explore Picturesque Jiangxi // Dubai Sees Modest Inflation Uptick in February // Sheikh Tahnoon Bin Mohammed Al Nahyan’s Legacy // AI’s Role in Shaping Literature Discussed at Abu Dhabi Book Fair // Thailand’s NACC finds guilty among four former executives of energy base firm of corruption and bribery // UAE Central Bank Boasts Monumental Balance Sheet Growth // Israel puts Gaza ceasefire ball in Hamas court // UAE, Sudan Cultivate Strong Ties Rooted in Brotherhood // Two more Delhi Cong leaders quit over alliance with AAP // Huangshan Tourism Group partners with Alipay to launch “International Visitor Friendly Scenic Spot” ahead of May Day holiday // Chubb Promotes Kate Burke to Head of International Personal Lines, Asia Pacific // Minister Al Hussaini and World Bank Discuss MENA Development Strategies //

The Trump Administration's Cyber Hubris

524322 google android smartphone

Cyber security helped elect Donald Trump. During the presidential campaign, hackers cracked open all of the Democrats’ secrets and splayed them out for everyone to see, while Hillary Clinton was raked over the coals for using an insecure server for her own personal email. Republicans’ communications, meanwhile, stayed out of the public eye.


ADVERTISEMENT

But success can breed hubris, and there are some worrying trends in the first few days of the Trump administration. Nobody hacked Trump, but he’s acting like nobody can.


Why Nobody Should Use a Galaxy S3


According to the New York Times, President Trump is still using his old Android phone to tweet. According to Android Central, that may be a Samsung Galaxy S3.


OpinionsThe S3 is susceptible to the worst Android bug ever discovered, Stagefright. Cured in Android 5.1.1, Stagefright lets hackers gain full access to your phone with some specially crafted MMS messages. There haven’t been a ton of confirmed Stagefright-related hackings in the US, but most of us aren’t as high value a target as the President of the United States. The Galaxy S3 never got an upgrade beyond Android 4.3. It’s horrendously insecure.


Of course, just because he’s using a Galaxy S3 for tweeting doesn’t mean he’s accessing classified data on it. But arbitrary code vulnerabilities like Stagefright can, for example, turn on a phone’s microphone to use it as a spy device, even if the phone has no access to anything more sensitive than a public Twitter account.


About Those Email Accounts


According to Wired and Newsweek, influential White House staffers including Sean Spicer and Jared Kushner maintain email accounts on RNC servers; and, for a while, the official POTUS Twitter account pointed back to a Gmail account. Also, Spicer appears to have randomly tweeted things that looked like passwords.


Keeping email on non-government servers can be a good way to keep it out of the public eye, as long as your servers are secure. (Remember all of those deleted Hillary Clinton emails?) Of course, those servers often aren’t secure. (Remember all of those Wikileaked DNC emails?)


In any case, it’s not a good idea for government officials to outsource their information security to consumer email providers. While Trump famously doesn’t use email—rendering him as secure as possible—staffers could still be sending around messages with information they’d prefer not make it into the hands of foreign governments.


The good news is that the staff seem to be adapting. Just today, the password reset address for the POTUS Twitter account shifted from Gmail to a White House address. Hopefully, that’s a sign of how things are getting cleaned up behind the scenes.


But the tweeted passwords show another vulnerability: it doesn’t look like a lot of the White House’s communications are being edited or double checked before they go out.


Does Trump Need to Worry?




Trump’s operation has been blessed in the information security realm. Even when the RNC was hacked, the information wasn’t released in a way that could damage the organization. So it would make sense that the President feels his operation is impregnable.


The question is when, and if, competent opposing forces will attack the White House in a cyber-spying assault. Those could be a foreign government, such as China, trying to secretly collect data to predict and anticipate Trump’s moves, or vigilante hackers trying to embarrass the administration by releasing play-by-plays of how the policy sausage is made.


We haven’t seen that happen yet but, come on, it’s only been a week. Trump personally may not care much for the nuts and bolts of cyber security, but his staff needs to put their feet down, and keep locking down their electronic hygeine. The fate of the world is actually at stake.

(via PCMag)

ADVERTISEMENT

ADVERTISEMENT
Just in:
Two more Delhi Cong leaders quit over alliance with AAP // UAE Bolsters Cooperation at Islamic Development Bank Meetings // Report: BRICS+ likely new counterpoint to G7-led geopolitical order // Dominic Khoo Wins Misrepresentation Case Against Innovest Affiliated Company, MCA and Others // Revolutionizing Racing and Trading: AlphaX Teams Up with F2 Sensation Enzo Fittipaldi // Liverpool FC and AXA Celebrate Continued Growth of Its Successful Partnership Until 2029 // Emirati Leader Makes Surprise Visit to Popular Shopping Destination // AI’s Role in Shaping Literature Discussed at Abu Dhabi Book Fair // Thailand’s NACC finds guilty among four former executives of energy base firm of corruption and bribery // Dubai Sees Modest Inflation Uptick in February // Rape Allegation Against Prajwal Revanna Casts Its Shadow On Third Phase In Karnataka Polls // Andertoons by Mark Anderson for Wed, 01 May 2024 // Minister Al Hussaini and World Bank Discuss MENA Development Strategies // Dubai Holding Makes Strategic Debt Move to Capitalize on Thriving Real Estate Market // Israel puts Gaza ceasefire ball in Hamas court // Huangshan Tourism Group partners with Alipay to launch “International Visitor Friendly Scenic Spot” ahead of May Day holiday // DC and Zebra Comics Announce Collaboration on Joker: The World Anthology // Job Title Inflation in Hong Kong: 6 in 10 expect promotion within 12 – 18 months // Luxshare Precision Announces 2023 Annual Results // UAE Central Bank Boasts Monumental Balance Sheet Growth //