Friday, December 23, 2016

Who Do I Want To Thank This Christmas Season?

Who do I want to thank for this Christmas? My blogger friend JR. Exactly a year ago, she was offered a job but it was in Quezon City and it’s too far for her. She passed the offer to me and I applied and started the next month. It was a good opportunity since it was content writing for an advertising agency


What I didn’t realize that I was going to write for a client who happens to be a presidential candidate during the last election. After the elections, my next project was for a dashboard camera brand. This opportunity doesn’t happen every day but I should be thankful that I have a job and I hope it will prosper next year because I also met new contacts.


I already thank JR for this but it is also something good to blog because this is my big highlight for 2016 and I owe it to her. Thank you, JR. I was compelled to blog about this when I saw the advertising campaign of AirAsia.  Check out this video and you might also do the same.


Thursday, December 22, 2016

Sophos Predicts Cyber Security Trends for 2017

Press release

Philippines - 2016 saw a huge number and variety of cyber attacks, ranging from a high-profile DDoS using hijacked Internet-facing security cameras to the alleged hacking of party officials during the US election. The year also saw a rising tide of data breaches, from organizations big and small, and significant losses of people’s personal information.


With the year almost over, Joergen Jakobsen, regional vice president for Asia-Pacific and Japan (APJ) at Sophos, looks into his crystal ball to predict the top cyber security trends for 2017:

Destructive DDoS IOT attacks will rise. In 2016, Mirai showed the massive destructive potential of DDoS attacks as a result of insecure consumer IoT (Internet of Things) devices. Mirai's attacks exploited only a small number of devices and vulnerabilities and used basic password guessing techniques. However, cybercriminals will find it easy to extend their reach because there are several IoT devices containing outdated code based on poorly-maintained operating systems and applications with well-known vulnerabilities. Expect IoT exploits, better password guessing and more compromised IoT devices being used for DDoS or perhaps to target other devices in your network.

Shift from exploitation to targeted social attacks. Cybercriminals are getting better at exploiting the ultimate vulnerability - humans. Ever more sophisticated and convincing targeted attacks seek to coax users into compromising themselves. For example, it’s common to see an email that addresses the recipient by name and claims they have an outstanding debt the sender has been authorized to collect. Shock, awe or borrowing authority by pretending to be law enforcement are common and effective tactics. The email directs them to a malicious link that users are panicked into clicking on, opening them up to attack. Such phishing attacks can no longer be recognized by obvious mistakes.

Financial infrastructure at greater risk of attack. The use of targeted phishing and "whaling" continues to grow. These attacks use detailed information about company executives to trick employees into paying fraudsters or compromising accounts. We also expect more attacks on critical financial infrastructure, such as the attack involving SWIFT-connected institutions which cost the Bangladesh Central Bank $81 million in February. SWIFT recently admitted that there have been other such attacks and it expects to see more, stating in a leaked letter to client banks: "The threat is very persistent, adaptive and sophisticated – and it is here to stay".

Exploitation of the Internet’s inherently insecure infrastructure. All Internet users rely on ancient foundational protocols, and their ubiquity makes them nearly impossible to revamp or replace. These archaic protocols that have long been the backbone of the Internet and business networks are sometimes surprisingly flaky. For example, attacks against BGP (Border Gateway Protocol) could potentially disrupt, hijack, or disable much of the Internet. And the DDoS attack on Dyn in October (launched by a myriad of IoT devices), took down the DNS provider and, along with it, access to part of the internet. It was one of the largest assaults seen and those claiming responsibility said that it was just a dry run. Large-scale ISPs and enterprises can take some steps to respond, but these may well fail to prevent serious damage if individuals or states choose to exploit the Internet's deepest security flaws.

Increased attack complexity. Attacks increasingly bring together multiple technical and social elements, and reflect careful, lengthy probing of the victim organization's network. Attackers compromise multiple servers and workstations long before they start to steal data or act aggressively. Closely managed by experts, these attacks are strategic, not tactical, and can cause far more damage. This is a very different world to the pre-programmed and automated malware payloads we used to see – patient and evading detection. 

More attacks using built-in admin languages and tools. We see more exploits based on PowerShell, Microsoft's language for automating administrative tasks. As a scripting language, PowerShell evades countermeasures focused on executables. We also see more attacks using penetration testing and other administrative tools that may already exist on the network, need not be infiltrated, and may not be suspected. These powerful tools require equally strong controls.

Ransomware evolves. As more users recognize the risks of ransomware attack via email, criminals are exploring other vectors. Some are experimenting with malware that reinfects later, long after a ransom is paid, and some are starting to use built-in tools and no executable malware at all to avoid detection by endpoint protection code that focuses on executable files. Recent examples have offered to decrypt files after the victim shared the ransomware with two friends, and those friends paid to decrypt their files. Ransomware authors are also starting to use techniques other than encryption, for example deleting or corrupting file headers. And finally, with "old" ransomware still floating around the web, users may fall victim to attacks that can't be "cured" because payment locations no longer work.

Emergence of personal IoT attacks. Users of home IoT devices may not notice or even care if their baby monitors are hijacked to attack someone else's website. But once attackers "own" a device on a home network, they can compromise other devices, such as laptops containing important personal data. We expect to see more of this as well as more attacks that use cameras and microphones to spy on households. Cyber criminals always find a way to profit.

Growth of malvertising and corruption of online advertising ecosystems. Malvertising, which spreads malware through online ad networks and web pages, has been around for years. But in 2016, we saw much more of it. These attacks highlight larger problems throughout the advertising ecosystem, such as click fraud, which generates paying clicks that don't correspond to real customer interest. Malvertising has actually generated click fraud, compromising users and stealing from advertisers at the same time.  

The downside of encryption. As encryption becomes ubiquitous, it has become much harder for security products to inspect traffic, making it easier for criminals to sneak through undetected. Unsurprisingly, cybercriminals are using encryption in creative new ways. Security products will need to tightly integrate network and client capabilities, to rapidly recognize security events after code is decrypted on the endpoint.

Rising focus on exploits against virtualized and cloud systems. Attacks against physical hardware (e.g. Rowhammer) raise the possibility of dangerous new exploits against virtualized cloud systems. Attackers might abuse the host or other guests running on a shared host, attack privilege models, and conceivably access others' data. And, as Docker and the entire container (or ‘serverless’) eco-system become more popular, attackers will increasingly seek to discover and exploit vulnerabilities in this relatively new trend in computing. We expect active attempts to operationalize such attacks.

Technical attacks against states and societies. Technology-based attacks have become increasingly political. Societies face growing risks from both disinformation (e.g., "fake news") and voting system compromise. For instance, researchers have demonstrated attacks that might allow a local voter to fraudulently vote repeatedly without detection. Even if states never engage in attacks against their adversaries' elections, the perception that these attacks are possible is itself a powerful weapon.

Wednesday, December 21, 2016

Young entrepreneurs hold green bazaar in Estancia at Capitol Commons

Press release

In this season of giving, students from Multiple Intelligence International School (MIIS) held a #4GreenPH KIDS CAN! Bazaar in Estancia at Capitol Commons to showcase their business ideas that advocate for a greener, more sustainable future.

The only “for kids, by kids” bazaar in the country is now on its 16th year, featuring products that promote Green Forests, Green Living, Green Christmas, and a Green Philippines. Children as young as 6 years old to 18 years old participated in the bazaar, which allowed them to create and share innovative solutions with an entrepreneurial mindset.
The four sections of the bazaar called Green Forests, Green Living, Green Christmas, and Green Philippines, featured around 80 products which ranged from locally-made organic produce by Filipino farmers; condiments and sauces for those with discerning palates; bath and body products to promote wellness; merchandise such as notebooks, bags, pouches, magnets, and tumblers with artwork designed by students; upcycled products from denim bags, recycled plastic, tarpaulin products, and storage boxes; and beautifully hand-crafted Murano beaded embellishments.
Brands such as Likha also promoted the weave of indigenous tribes through multi-foldable bags. Hiraya sold neck pillows that educated young children about endangered species, while Sewers of Sustainability (SOS) had anti-mosquito shirts.
“Honing the entrepreneurial mind among children and teenagers is an important link in the chain of national development. And we are glad to have Estancia and Ortigas Malls as partners in promoting this advocacy to the Filipino youth and their families,” says Joy Abaquin, Founding Directress of MIIS.
Ortigas Malls, for its part, also continues to help entrepreneurs flourish by enabling retail formats that highlight unique, specialty products.

Tuesday, December 20, 2016

ADIDAS ORIGINALS CELEBRATES EQT AT ART BASEL MIAMI

Press release

- adidas Originals celebrated EQT at the Marine Stadium during Miami Art - Artist Ben Jones unveiled “Video 90, an original video art projection - adidas Originals debuted #TLKS, a global talk series, with guest speakers Ben Jones, Pusha T and Adwoa Aboah in partnership with Surface and moderated by Spencer Bailey, EIC of Surface - Official brand chatbot through Facebook Messenger with a Facebook live of #TLKS - Special music performance by Pusha T - adidas Originals reveals the  EQT Support 93/17 model -

A week agoadidas Originals celebrated EQT during Art Basel Miami at the Marine Stadium. The evening included art, a creative conversation and special music performance. The brand revealed the ‘90s design icon, EQT through a waterfront event at the Marine Stadium and conducted a public seeding of a limited edition EQT Support ADV on Nov 30th, giving away 1000 pairs to consumers through the streets of Miami.

Original Video Art Installation: Artist Ben Jones unveiled Video 90, an original video art projection installation. Growing up in the 90’s the cultural moments and hyper compressed culture of the times have directly influenced Jones’s present day work and inspired the original work unveiled during the event.

 #TLKS: adidas Originals launched the first of its global creative discussion series in Miami. #TLKS explores the topic of creativity and cultural influences. In partnership with Surface, #TLKS featured a discussion between artist Ben Jones, artist and G.O.O.D Music President Pusha T, and model, actress, activist Adwoa Aboah moderated by Spencer Bailey, EIC Surface Magazine. Two firsts for the adidas Originals, #TLKS was streamed via Facebook live and the official chatbot through Facebook messenger was launched, creating a two-way dialogue between brand and its creative community.

Special Music Performance: Pusha T, adidas Originals creative collaborator, performed a very special concert to guests to celebrate EQT, delivered to the unique on-water stage by speedboat, wearing his brand new King Push Grayscale EQTs.

EQT Support 93/17: Revealed during the week’s activities, the latest evolution of the EQT series, the EQT Support 93/17 is a bold new manifestation of the EQT design philosophy. The EQT Support 93/17 reconfigures the original blueprint of the EQT Support 93 with an aggressive design language, blending authentic Equipment materials with an uncompromising modern mode. A woven knit upper in a pixelated noise motif is overlaid with premium nubuck panels and webbing-tape 3-stripes, whilst embroidered details and a contrast heel unit brings the shoe’s striking aesthetic to its peak. More than just looks, a slew of technical details ensure the EQT Support 93/17 is built for performance, including an OrthoLite® sockliner, TPU support panel and full-length BOOST midsole unit. Debuting in a bold colourway that debuts EQT’s brand new turbo red colour palette, the release truly marks the birth of a brand new chapter for the iconic EQT series.

Monday, December 19, 2016

Shopee bids goodbye to a great 2016

Press release

Manila, Philippines— Now one of the leading mobile shopping applications in the country, Shopee wraps up a highly successful 2016 with over 2 million downloads and 1 million products on its platform. "We have felt the tremendous support of our community of buyers and sellers and are very happy to share this success with them, shares Macy Castillo, Head of Commercial Business for Shopee.

2016 is an interesting year for Shopeeholics

The whole Shopee community has made it a very interesting and memorable year, from their inspired reaction to Miss Philippines winning the Miss International pageant to confessing to a lot of retail therapy on their social network accounts.

Shopee’s role in the success of its sellers

Shopee continues to empower sellers through its platform’s integrated tools as well as external events like the 16 Shopee University workshops it hosted around the country. Here, sellers were given tools and tips to boost their revenue. Castillo adds, “We are proud partners in our sellers’ success so we recently held the first Shopee Sellers’ Ball. This allowed us to recognize our successful entrepreneurs and thank our sellers’ dedication and hard work that made Shopee the leading mobile marketplace in the country”. 

What to watch out for in 2017

Despite being only a year old, Shopee has been able to position itself as the leading mobile marketplace platform not only in the Philippines but also in the rest of Southeast Asia and Taiwan and will have even more in store for the new year. 2017 will see even more official merchant partners giving shoppers a wider range of products, a new and improved user interface, as well as more payment channels and expanded Cash on Delivery and delivery pick up coverage, giving Filipino shoppers an even quicker and more hassle-free shopping experience. 

Shopee is available for download for free on the App Store and Google Play across Singapore, Malaysia, Indonesia, Thailand, Vietnam, the Philippines and Taiwan.

Thursday, December 15, 2016

Announcing Live Video Creation on Twitter

Press release

Anyone can now broadcast and experience what’s happening anywhere in the world

MANILA – December 15, 2016 – Twitter today announced that now anyone can broadcast live video directly from its apps. Powered by Periscope, live video on Twitter allows people to share and experience everything from significant moments to daily life together with an audience - all through a Tweet.


"We started Periscope because we wanted to give people the superpower to share live video with an audience. Bringing this capability directly into the Twitter app is an important step because it brings that superpower to the hundreds of millions of people who use Twitter,” said Kayvon Beykpour, CEO of Periscope. “Twitter's already the place where people go to see what's happening. With this update, anyone can now broadcast what's happening live."

 

Members of the audience within a live video on Twitter can interact with the broadcaster by commenting and sending hearts to show their support. Tweets that contain live video can be Retweeted, liked, and shared anywhere that people can share a Tweet.

Anyone on Twitter can now create and Tweet live video with the latest Android and iOS updates.