By: Chase PalmerSenior Program ManagerCISSP In early 2015, Magento found a vulnerability known as Shoplift Bug and released a patch for it. Unfortunately, many businesses still haven’t patched this vulnerability, which could threaten their e-commerce integrity.Here is some more information about the Shoplift Bug, how it makes your system vulnerable, and what you need to do to combat it.SEE ALSO: How do Hackers Hack?How does the Shoplift Bug work?
Through the Shoplift Bug, hackers can remotely execute code on Magento software. This vulnerability seems to affect both the community and enterprise versions of Magento.The Shoplifting exploit is actually a chain of vulnerabilities in the Magento core software, but is frighteningly simple. The exploit uses a Python script that forces the server to downgrade the website from HTTPS to HTTP and then uses SQL injection to create a new user with administrative privileges.Once the attacker has access to the dashboard with administrator access, they will typically install software through the console that will create a backdoor that allows the attacker to remotely alter the functionality of the online store, add or remove products, change the price of products, add phony coupons, and much more.Follow for more data security articles like thisWhat should I do? Unfortunately, this exploit was highly automated and nearly all vulnerable instances of the Magento dashboard are assumed to be compromised. If you don’t know if you’ve patched your site recently or if you’re a Magento user, check on MageReport.com.If you haven’t installed this patch, here’s a list of steps you should take to patching your website:
Download and implement the two patches from the Magento Community Edition download pageTest the patches in a development environment first to make sure they’re working properly before deploying them in your production environmentCheck for unknown files in web server document root directory. If you find any, remove the files, keeping a secure copy if possibleCheck all admin accounts to make sure they’re all authorized. Change all admin passwords have you suspect a breachCheck for unknown IP addresses accessing the system, since hackers may be using legitimate credentials to gain access to your system. Examples of addresses could include 62.76.177.179, 185.22.232.218, and 23.245.26.35 If you need help installing patches, refer to Magento’s Community Security patch forum where community members, moderators, and Magento can assist with questions about downloading and installing patches.If you haven’t already installed this latest patch, you should do so as soon as possible.
TweetPatch your systemsRemember, it’s important to stay up to date on your systems and patch any vulnerabilities that pop up. Tips to do this include:Sign up for newsletters/notifications from vendors you use: Once they release a new patch, you’ll be notified. Patch the vulnerability as soon as possible: The sooner you fix the vulnerability, the less time you’ll be open to attacksSet up a schedule to regularly patch and update software: This will keep your software updated in its most secure state. SEE ALSO: Security Patches in Your Business: Complying with PCI Requirement 6.1Chase Palmer (CISSP) is the Senior Program Manager and has been working at SecurityMetrics for seven years. He manages the company’s largest corporate partners in running mass Level 4 PCI DSS programs worldwide. Chase has a Bachelor’s degree in Business Management from Western Governor’s University. He currently lives in Provo, Utah, and he loves everything about motorcycles.
Facial Recognition and Understanding Emotional Expressions
When you recognize a friend’s face, how do you know? Do you make a careful study of their nose and cheekbones? Are you thrown off if they don’t wear the usual expression?
The vast majority of people probably scoffed at those questions. Facial recognition isn’t a matter of careful study, but instead it is an instantaneous process. Your brain just knows whose face you are seeing. As Tim Newman pointed out in Medical News Today, this underscores how incredible the process of facial recognition is, given the complexity of and similarities between the thousands of faces we see on a regular basis.
Not only is facial recognition itself a remarkable ability, but it is closely tied with crucial cognitive functions.
Facial recognition is a key part of understanding emotional expressions. Humans use facial recognition skills to detect deviations from normal or prototypical expressions. This process involves noticing when brows are furrowed or eyes are squinted, instantly comparing those expressions with what is expected upon seeing a face.
Because the recognition of a face is instantaneous, it is only a small cognitive step towards noticing when the face appears differently than expected, and this difference is then analyzed as displaying a certain emotion.
The ability to perceive emotions in this fashion appears to be a basic human feature. The same sort of basic human expressions, such as anger, revulsion, and sadness are found across the world, from Japan to Borneo to the United States. Even emotions displayed in ancient cave paintings show similar expressions!
Similarly, by recognizing faces in this sense, humans also make quick judgments as to the attractiveness of an unfamiliar face. They may often be unable to explain why a face seems attractive or not, just as we are unable to describe exactly how we recognize familiar faces or emotions. We immediately process many factors, including facial symmetry, to develop these impressions.
In fact, the ability to recognize and process faces in this fashion is deeply rooted in our species. Human babies can even differentiate between human and, for example, gorilla faces at an incredibly early age. While 3-month olds can tell human and gorilla bodies apart, even newborn babies can distinguish faces.
And it isn’t just humans! Other primates have a similar ability. Chimpanzees, who have the most similar recognition skills to humans, quickly identify familiar faces, and they can even distinguish familiar family characteristics in unfamiliar faces. This is similar to when we meet someone and notice that they look like a cousin or a sibling.
Understanding this incredible ability has many practical implications, even if they may not seem immediately obvious. Most intuitively, the ability to recognize faces is important for law enforcement work and eyewitness testimony. Witnesses must be able to correctly recognize the faces of criminal suspects, and law enforcement officers must recognize faces from security footage or photo IDs.
These important applications are complicated by the fact that people range considerably in their ability to recognize faces.
Some individuals, called super-recognizers, are incredibly good at matching unfamiliar faces, and they mark the high end of a spectrum that includes all levels of ability. This also includes those suffering from face-blindness, or prosopagnosia. These individuals are not only unable to match unfamiliar faces but can be unable to recognize close friends of family members. Instead, they must rely on other cues, like voices or hair color.
Brad Duchaine, who studies facial recognition at Dartmouth College, wrote in 2015 about the impact that these variations have on law enforcement practices. If a witness cannot successfully recognize faces or mistakenly identifies the defendant, their testimony will be severely compromised. Similarly, if law enforcement officials have trouble recognizing faces, they may be unable to complete basic tasks like ensuring that a photo ID matches its owner.
Facial recognition is a critical part of human interaction, comprising the ability to notice emotions of facial similarities, but it is a skill like many others. While some people are naturally better at it, it is something that can be taught and better understood.
For more information about universal emotions, see our article on the Seven Basic Emotions, and click here to find out how you can strengthen this skill.
Why do humans engage in warfare
at all? At first blush engaging in warfare seems to make no evolutionary sense. After all, if survival and reproduction are our core needs, why would we ever want to engage in an activity where the chances of us getting killed are so high?To understand why this happens we first need to look at why we engage in risky behaviors at all…Choosing risky behaviors A risky behavior may simply be defined as a behavior which has the potential to incur huge costs to the person doing that behavior.Starting a business can be a risky behavior because you might end up wasting time and money if you’re unsuccessful; proposing to your crush can be a risky behavior because you might get rejected; investing in the stock market can be a risky behavior because you might end up losing your money.And engaging in warfare can be a risky behavior because you might get killed- the ultimate loss.Yet people start businesses, propose to their crushes, invest in the stock market, and engage in warfare. Why?It’s because the potential benefits of these behaviors can outweigh their potential costs. A risky behavior is that where the potential benefits and costs are both huge.An entrepreneur can become a millionaire by starting a business, so can a person investing in the stock market, and proposing to your crush may lead to a relationship. These are all benefits that some people believe are worth taking huge risks for.But what are the potential benefits of engaging in warfare?Evolution of warfare Warfare is an activity pursued exclusively by men. Their intended victims are most often other men, although women frequently suffer as well.Men have physical adaptations that facilitate success in a war. Men exceed women in upper body strength; the average man is nearly twice as strong as an average woman in the chest, shoulder, and arm strength. Men show superiority in throwing distance and throwing accuracy, which would facilitate combat involving rocks and spears (weapons that we used for most of our evolutionary history). The psychological adaptations include the tendency to form coalitions (gangs) that explicitly exclude women. One of the strongest fears of men is to act cowardly in a battle and they experience great excitement, glory, and a sense of brotherhood at the prospect of war (think all-male modern sports competitions).But for warfare to evolve, certain important conditions need to be met. All these conditions are designed to make men perceive the benefits of engaging in warfare greater than the potential costs. Let’s go over these conditions…First and foremost, in order to pass on its genes to the next generation, an animal typically requires resources (food and land) and mates. The ideal way to gain more resources is to gain more land. Gaining more land also provides sexual access to mates.As you can see, if you gain more land (especially fertile lands), your reproductive success is more or less guaranteed to increase. Although few wars are initiated with the stated intent of capturing women, gaining more copulations is almost always viewed as the desired benefit of successfully vanquishing an enemy. Secondly, members of the coalitions must believe that their group will be victorious and that the collective resources of one’s coalition will be greater after the aggressive encounter than before it. Since the potential costs of war are huge, you require a great deal of motivation in the opposite direction to successfully outweigh them. By promising your soldiers that they’re going to get huge rewards when they’re victorious, you’re able to boost their morale.Note that wars are essentially carried out in coalitions. This is because, in a war, there’s always a risk of death. If you go alone to a battle, you have a 100% chance of getting killed. If you go with 10 men, your chance of getting killed is 1/10 (10%), which is quite low compared to the previous case but kind of high given we’re talking about as such a precious resource as human life. But when more people accompany you, your probability of getting killed decreases significantly. The greater the number the better it is for each individual. If 100 people go to war, the probability of each person getting killed would be 1/100 (1%) and if 1000 people go to war then this probability would be 1/1000 (0.1%), which is very low.As you can see, forming large coalitions enables men to share the huge risks that wars carry. This tips the scale more toward the benefits side of engaging in a war.Consider what happens when an army has been subdued and the numbers are reduced, say from 1000 to just 100. The probability of each member getting killed is dramatically increased from what it was at the initial stage. This often results in surrender or what is known as the ‘battlefield panic’ where a group of men thinks it wiser to defect and save their lives than to continue.Chimps frequently patrol the borders of their territory, sometimes raiding, attacking or even killing their neighbors.Conclusion To summarize, engaging in a war has the potential of providing men with huge benefits in terms of resources and reproductive success but in order to motivate them to go to war, the huge costs associated with war have to be reduced.If you look at history, men have created all kinds of expansionist ideologies and under the guise of fighting for or defending their ideologies, all they actually ever fought for was land, power, resources and women.References:Why do chimps kill each other?More males mean more territory patrols, study shows
- « Previous Page
- 1
- …
- 115
- 116
- 117
- 118
- 119
- …
- 558
- Next Page »