Black Duck Hub Open Source Security and Management Solution Integrated with Red Hat OpenShift Container Platform

Black Duck Hub Open Source Security and Management Solution Integrated with Red Hat OpenShift Container Platform

Automates identification of open source components and related security-vulnerability risks in container images without slowing the pace of development..

 

Black Duck, the global leader in automated solutions for securing and managing open source, today announced the integration of its Hub solution with Red Hat OpenShift Container Platform, the industry’s most comprehensive enterprise Kubernetes platform for traditional and cloud-native applications.

The Hub integration allows Red Hat OpenShift Container Platform users to automatically inventory all the open source components in a container image, identify known open source vulnerabilities and license-compliance obligations, and continuously monitor the inventory for new open source vulnerability disclosures.

“Innovative container technology is a breakthrough for development speed and agility, but persistent concerns about security have been barriers to container adoption in the enterprise,” said Black Duck CEO Lou Shipley. 

“Integrating Hub with the Red Hat OpenShift Container Platform helps allay those security concerns. Open source components comprise 80% to 90% of the software in containers and having Hub’s automated visibility into the open source components in containers, as well as any associated security and license risks will increase confidence levels,” said Shipley. 

Black Duck is previewing the integration at this week’s Red Hat Summit which opened today in the Boston Convention and Exhibition Center. Black Duck said it expects the integration will be generally available next month.

“The push towards digital transformation requires that many organisations evolve into software companies, with this software frequently taking the form of cloud-native, containerised applications. Red Hat OpenShift Container Platform delivers the industry’s most comprehensive Kubernetes-based platform to build and deploy these innovations, while our integration with Black Duck Hub enables enterprises to bring to bear one of the most powerful Linux container scanners on the market today, pairing open innovation with greater container security,” said Ashesh Badani, vice president and general manager, OpenShift, Red Hat. 

Black Duck said that implementing a container security strategy requires an understanding of the risks inherent in building, deploying and scaling of containerised solutions. Defining open source risk-management policies from the development phase through deployment are vital in preventing open source security, licensing, and operational issues from becoming deployment problems.

Black Duck said its Red Hat OpenShift Container Platform integration is designed to include comprehensive container inspection on both the operating system and open source components in the early phases of container construction to deliver greater security, licensing, and operational risk visibility.

Additionally, continuous scanning and monitoring of open source in the containerised applications delivered across the container application platform can enable a proactive response to open source vulnerability disclosures.

Regardless of image source, build model or deployment state, scanned images provide a clear view of the risk state for the Red Hat OpenShift Container Platform cluster.

Review – @PoeticCases Karbon Shield slim case for the Samsung Galaxy S8 Plus

The Karbon shield slim case for the Samsung Galaxy S8 Plus is a nice one,even to look at with all the requirements you will need to protect your phone. Check out the image gallery below and video review the see the specs and where to purchase….

 

IMAGE GALLERY

 

 

  • Made of High grade TPU. Sophisticated styling with Carbon fiber texture in the Poetic X-form DNA
  • Revolutionary tactile corner impact protection that makes sure that the corner of the device doesn’t come in contact with the ground when dropped.
  • Rear pattern provides a grip area to handle the device.
  • Front bezel to prevent the device from coming in contact with any surface.
  • Trendy and classy Carbon fiber texture on the back to protect against bumps and scratches

 

BUY HERE 

Video Review – @TerrapinCases TPU case for the Samsung Galaxy S8+ from @casehut

We take a look at two simplistic TPU cases from https://www.casehut.com/  which come from the Terrapin selection,Simple and clean no fuss but has a good grip and simplistic looks check out the video review and image gallery below…

 

Terrapin Samsung Galaxy S8 Plus TPU Gel Case – Solid Red Matte

 

 

 

Terrapin Samsung Galaxy S8 Plus TPU Gel Case – Solid Purple Matte

 

 

 

Slip your phone into this gel case and instantly experience a sensual touch with a sophisticated look.

New slim-fitting low profile design, this case provides the robust protection of a hard case and the form-fitting flexibility of a soft case.

Carefully crafted for a precise fit. This case features full body protection in a slim, bulk-free fashionably-aware way that enhances your device’s aesthetics.

Delivering everyday protection for your phone against impacts, scratches, dirt, dust and everyday hazards.

Access to all controls and openings

 

#RiskIQ Researchers Identify New Threat Actor NoTrove Delivering Millions of Scam Ads

RiskIQ Researchers Identify New Threat Actor NoTrove Delivering Millions of Scam Ads, Threatening Consumers, and the Digital Advertising Industry

 

Earlier this year, RiskIQ, the leader in digital threat management, reported an eight-fold increase in internet scam incidents that deny the $83 billion digital advertising industry millions of dollars. Now, researchers at RiskIQ have identified NoTrove, a newly discovered and major threat actor that is delivering millions of scam ads that threaten consumers and further undermine the digital advertising industry.

A new research report released today, “NoTrove: The Threat Actor Ruling a Scam Empire,” presents a detailed analysis demonstrating how NoTrove uses advanced automation techniques to deliver scam ads from millions of different domain names to stay ahead of detection and takedown efforts. NoTrove was so effective that one of his pages ranked as the internet’s most visited pages for one day.

The online ad scams work by serving up attractive but disingenuous ads on legitimate websites. The ads might offer bogus surveys or free software upgrades, as examples. When someone clicks on the ad, however, the scammer’s software then re-directs the users “clicks” and traffic toward various locations across the internet.

Since advertisers and web content providers want as much of the traffic pie as they can get, web traffic is an essential commodity. Ad scammers like NoTrove profit from this demand, participating in traffic affiliate programmes or selling traffic to traffic buyers (brokers). Unfortunately for the digital advertisers, however, the users are negatively impacted the ad they are seeing and don’t even know how they got it.

Equally troubling for the digital advertising industry is that as ad scammers increase, the likelihood consumers will implement ad blockers as a way to avoid bogus ads increases, as well. This practice, according to Juniper Research, will cost the digital media industry over $27 billion by 2020*.

For consumers, this is more than just a nuisance. Ad scams can also be used to download PUPs—potentially unwanted programmes—and can redirect them to unwanted places.

The RiskIQ report takes a deep dive into how NoTrove works and shows the advances being made to avoid detection, preventing efforts to take it down, and making it one of the most effective and largest ad scam operations ever. Key findings include:

  • To stay ahead of efforts to block its fake ads, NoTrove uses automation to constantly change how the ads are delivered and clickthroughs re-routed.
  • The scam master has burned through 2,000 randomly generated domains and over 3,000 IPs, operating across millions of Fully Qualified Domain Names; an FQDN is a complete web address, typically including subdomains for ad scammers, such as ajee99.mycontent.example.com.
  • RiskIQ observed 78 variants of NoTrove campaigns, such as scam survey rewards, fake software downloads, and redirections to PUPs.
  • Alexa rankings for its domains show how effective NoTrove is; even though each domain is short-lived, the rankings often shoot up into the Alexa top 10,000 based purely on scam ad deliveries; one NoTrove domain reached the ranking of 517, making it one of the most visited pages on the entire internet for that day.

 

RiskIQ first observed NoTrove a year ago when it began expanding its focus on scams, but PDNS results inside RiskIQ PassiveTotal indicate this group has been operating as far back as December of 2010. Used by more than 18,000 security analysts, PassiveTotal expedites external threat investigation tasks and automates threat research collaboration and artifact monitoring. You can view the Public Project for NoTrove compiled by RiskIQ’s Threat Research team here: https://passivetotal.org/projects/7ee582dc-c792-e635-ce78-0396e1e00bf4

 

“NoTrove harms not only visiting users, but also legitimate advertisers, adversely affecting those reliant on the credibility of the digital advertising ecosystem such as online retailers, publishers, and networks,” said William MacArthur, a threat researcher at RiskIQ. “Constantly shifting infrastructure means simply blocking domains and IPs isn’t enough. We must now begin utilising machine learning to leverage human security teams who increasingly depend on accurate, automated scam detection.”

 

To conduct this and other web research, RiskIQ applies its proprietary virtual user web crawling technology. This advanced internet reconnaissance acts like a user would, thoroughly interrogating websites and web apps, as well as respective browser session communications.It processes more than two billion HTTP requests per day to surface, identify, and connect internet elements to malicious campaigns.

 

Acting in concert with RiskIQ’s machine learning, virtual user technology can provide a deep level of analysis of how threat actors are behaving,their underlying infrastructure, and the techniques they use. In the NoTrove example, they can detect what the NoTrove page looks like down to the document object model (DOM), how a user gets there, and learn what makes a NoTrove page a NoTrove page. RiskIQ’s platform will even understand and dynamically monitor for small variances in the payload without the need for any human intervention, so it can continue to detect NoTrove, even as this threat actor evolves.

10 Great Apps for Accessibility. #Apps #Disability #Access #Healthcare

 

People with disabilities may find it quite hard to communicate or to live independently, depending on the nature of the impairment(s) with which they are living. Abilities such as speech, hearing and mobility could be affected, and these are things which able-bodied people can easily take for granted. However, advancements in technology have led to the creation of apps which make the world more ‘accessible’ for people living with disabilities.

In the infographic below from Home Healthcare Adaptations  http://www.home-healthcare-adaptations.ie/stairlifts-dublin/ , you can see 10 such apps which aim to give sensually impaired people greater independence. There are apps for the hard of hearing, people with sight loss, people with developmental displays, people with dementia and people with limited mobility.

Among the apps featured are Tap, Tap, See, with which visually impaired people can take a photo of an item and the app will tell them what it is; Medisafe, which delivers an easily understandable reminder of what medication needs to be taken and when; and Wheelmap, an app which grades the accessibility of amenities and transport in your location with a simple color-coded system.

Anything which can help to make the lives of people with disabilities a bit easier should be embraced, which is why these apps are very worthy of your attention and belong on the devices of anyone who has a disability or lives with someone who does.

 

 

 

Big Data In Practice: From Buzz Word To Business Benefits. #BigData #Business

Companies who use big data seem to follow one common mantra – knowledge is power. Businesses collate so much information that it can be very time-consuming to make sense of it all manually. That’s where the use of big data practices is so invaluable. The concept takes huge packets of information, studies it in an attempt to establish discernible patterns and conjugates key trends that decision makers can use for the future direction of the business.

A study of businesses using big data showed that the most oft-cited benefit of its implementation is the ability to make better strategic decisions owing from the neat presentation of vital information. Some leading business thinkers argue that companies resisting the use of big data are selling themselves short and leaving themselves inadequately equipped to make crucial business decisions.

Despite its clear benefits and widespread implementation, there remains a significant number of businesses not wanting to adopt big data practices. Some feel that they don’t have the requisite budget or know-how to implement it, or perhaps they feel that big data cannot guarantee the safeguarding of confidential business information.

This infographic from Colourfast (http://www.colourfast.com/) delves further into the primary reasons for and benefits of adopting big data practices, with some helpful advice on how to make the most of the concept. With 40% of companies worldwide already big data converts, we can expect that figure to grow even more in the months ahead.

 

 

MIXX Audio Launches S3 Wireless Bluetooth Speaker & Digital Alarm Clock.

The latest product launch from Mixx Audio, this compact and great sounding speaker is packed with features, including digital clock with two alarms, built in charging port and microphone. All for just £40.

 

UK audio specialists Mixx Audio today announces the launch of its S3 Wireless Bluetooth Speaker with built in digital alarm clock. The Mixx S3 offers great sound and functionality; whether as a bedside wireless speaker, a digital clock with alarm or a phone charger, as well as being portable enough to use in all areas of your home. All this, in one in stylish, lightweight device.

 

 

The Mixx S3 is the perfect solution for anyone who is looking for a speaker that is small in size, sounds great and is incredibly easy to use. Available in pink and black, with anti-slip base to reduce surface vibration and dual speaker design for bass and detail, the S3 is packed full of extra features. Heavy sleepers need not despair as its two alarm settings will ensure you are up in time for your first meeting, your lecture or to get the kids to school before the bell rings. For those reluctant to emerge from under the duvet, there is also the comfort of a touch to snooze button for those extra few minutes of rest!

 

Whilst being used as an alarm clock, the S3 can power up your phone with its built in charging port so you can wake up gently with your phone fully charged, ready to start the day with a strong coffee and your favourite tunes pumping.  The built in microphone allows for hands-free calls so ideal for multi-tasking and calls on the go.

 

 

 

The S3 uses Bluetooth 4.0, allowing it to easily connect to any audio device such as smartphones, laptops or tablets within 30 feet/10 metres and has a rechargeable battery with up to 7 hours music playback. There is also the option of an additional back up battery option to retain clock time and alarm.

So, if you are looking for one device which wakes you up, charges your phone, plays your music, allows for hands free calling and is light and portable, the Mixx S3 is for you. Style, versatility and functionality for anyone, anywhere.

 

 

 

 

Specs list..

  • Wireless Bluetooth speaker and Digital Alarm Clock
  • Rechargeable battery with up to 7 hours music play back
  • Built-in phone charging port – Perfect for bedside charging
  • 24-hour Digital Clock
  • Touch to snooze for those extra few minutes.
  • Dual alarm setting options
  • Built-in microphone for hands-free calls
  • Dual speaker design for bass and detail
  • Stream music from up to 30ft/10mtr from any Bluetooth-enabled device such as smartphone, notebook, tablet, etc.
  • Built-in microphone for hands-free calls
  • Anti Slip Base to reduce surface vibration
  • Designed with two internal 3w speakers – One for bass and the other for vocals and detail
  • Connects using Bluetooth 4.0 to any Bluetooth audio device such as Smartphones, Laptops or Tablets
  • Micro USB charging adaptor and cable for charging included
  • 3.5mm Aux port to connect non Bluetooth devices
  • Additional back up battery option to retain clock time and alarm

 

The Mixx S3 is available from www.mixx-audio.com for £40

Video review – The Gear4 Greenwich case for the Samsung Galaxy S8+ @GEAR4

Next up in our case reviews for the new Samsung S8 range is a case from Gear4 in the UK which sports D30 IMPACT TECHNOLOGY….

The new Samsung Galaxy S8 and S8+ case range, featuring D3O® – the most advanced shock absorbing technology for enhanced impact protection adds two brand new cases to the range, the Battersea and Greenwich as well as the new Oxford and the ever popular Piccadilly to colour match perfectly  the new S8 and S8+. See them all HERE  

 

GEAR4 designers have combined this unique technology with designs that enhance the elegant form of the Samsung Galaxy S8 and S8+ to deliver an unprecedented level of protection while still honoring the design of the device itself. All of the new GEAR4 cases for Samsung Galaxy S8 and S8+ are available at GEAR4.com and Carphone Warehouse.

 

IMAGE GALLERY

 

The Greenwich has a grooved transparent PC back, with advanced D3O technology inside. Available with Orchid Grey and Blue Coral borders to frame your Galaxy S8+.

  • Clear PC & TPU case with Colour Match D3O inside
  • 256% more D3O than Piccadilly for greater impact protection
  • Easy access to all ports
  • Scratch protected by UV coating

BUY HERE 

 

VIDEO REVIEW

£1.17 Billion Will Be Generated from Video Streaming Subscriptions in the UK by 2019

£1.17 Billion Will Be Generated from Video Streaming Subscriptions in the UK by 2019, That is a staggering sum and our friends over at Frame Your TV in the UK have sent over this Visual Asset to check out with the details.