Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Aujourd’hui — 8 mai 2024Slashdot

US Revokes Intel, Qualcomm Licenses To Sell Chips To Huawei

Par : BeauHD
8 mai 2024 à 13:00
An anonymous reader quotes a report from MSN: The US has revoked licenses allowing Huawei to buy semiconductors from Qualcomm and Intel, according to people familiar with the matter, further tightening export restrictions against the Chinese telecom equipment maker. Withdrawal of the licenses affects US sales of chips for use in Huawei phones and laptops, according to the people, who discussed the move on condition of anonymity. House Foreign Affairs Committee Chairman Michael McCaul confirmed the administration's decision in an interview Tuesday. He said the move is key to preventing China from developing advanced AI. "It's blocking any chips sold to Huawei," said McCaul, a Texas Republican who was briefed about the license decisions for Intel and Qualcomm. "Those are two companies we've always worried about being a little too close to China." While the decision may not affect a significant volume of chips, it underscores the US government's determination to curtail China's access to a broad swathe of semiconductor technology. Officials are also considering sanctions against six Chinese firms that they suspect could supply chips to Huawei, which has been on a US trade restrictions list since 2019. [...] Qualcomm recently said that its business with Huawei is already limited and will soon shrink to nothing. It has been allowed to supply the Chinese company with chips that provide older 4G network connections. It's prohibited from selling ones that allow more advanced 5G access.

Read more of this story at Slashdot.

Heat Waves In North Pacific May Be Due To China Reducing Aerosols

Par : BeauHD
8 mai 2024 à 10:00
Computer models have found that recent heat waves in the north Pacific may be due to a large reduction in aerosols emitted by factories in China. The findings have been published in the Proceedings of the National Academy of Sciences. Phys.Org reports: In this new effort, the research team noted that the onset of the heat waves appeared to follow successful efforts by the Chinese government to reduce aerosol emissions from their country's factories. Beginning around 2010, factories and power generating plants in China began dramatically reducing emissions of aerosols such as sulfate, resulting in much cleaner air. Noting that aerosols can act like mirrors floating in the air, reflecting heat from the sun back into space, and also pointing out that earlier research efforts had suggested that massive reductions of aerosols in one place could lead to warming in other places -- they wondered if reductions of aerosols in China might be playing a role in the heat waves that began happening in the north Pacific. To find out if that might be the case, the team began collecting data and then input it into 12 different computer climate models. They ran them under two conditions -- one where emissions from East Asia remained as they were over the past several decades and one where they dropped in the way they had in reality. They found that the models with no declines did not cause much change elsewhere, whereas those with aerosol drops showed heat waves occurring in the northeast parts of the Pacific Ocean. The models also showed why -- as less heat was reflected back into space over China, warming of coastal regions in Asia began, resulting in the development of high-pressure systems. That in turn made low-pressure systems in the middle Pacific more intense. And that resulted in the Aleutian Low growing bigger and moving south which weakened the westerly winds that typically cool the sea surface. The result was hotter conditions.

Read more of this story at Slashdot.

Renewable Energy Passes 30% of World's Electricity Supply

Par : BeauHD
8 mai 2024 à 07:00
Renewable energy accounted for more than 30% of the world's electricity for the first time last year, according to climate thinktank Ember. The Guardian reports: Clean electricity has already helped to slow the growth in fossil fuels by almost two-thirds in the past 10 years, according to the report by climate thinktank Ember. It found that renewables have grown from 19% of electricity in 2000 to more than 30% of global electricity last year. Solar was the main supplier of electricity growth, according to Ember, adding more than twice as much new electricity generation as coal in 2023. It was the fastest-growing source of electricity for the 19th consecutive year, and also became the largest source of new electricity for the second year running, after surpassing wind power. The first comprehensive review of global electricity data covers 80 countries, which represent 92% of the world's electricity demand, as well as historic data for 215 countries. The surge in clean electricity is expected to power a 2% decrease in global fossil fuel generation in the year ahead, according to Ember. [...] World leaders are aiming to grow renewables to 60% of global electricity by 2030 under an agreement struck at the UN's Cop28 climate change conference in December. This would require countries to triple their current renewable electricity capacity in the next six years, which would almost halve power sector emissions.

Read more of this story at Slashdot.

FTX Customers Poised to Recover All Funds Lost in Collapse

Par : BeauHD
8 mai 2024 à 06:25
Lawyers for the defunct cryptocurrency exchange FTX said customers would receive all the money they lost when the firm collapsed in 2022 and receive interest on top of it. "But the recoveries come with a caveat," reports the New York Times. "The amount owed to customers was calculated based on the value of their holdings at the time of FTX's bankruptcy in November 2022. That means customers won't reap the benefits of a recent surge in the crypto market that sent the price of Bitcoin to a record high." From the report: The announcement was a landmark in the attempt to recover the $8 billion in customer assets that disappeared when FTX imploded virtually overnight, setting off a crisis in the crypto industry. Under a plan filed in federal bankruptcy court in Delaware, virtually all FTX's creditors, including hundreds of thousands of ordinary investors who used the exchange to buy and sell cryptocurrencies, would receive cash payments equivalent to 118 percent of the assets they had stored on FTX, the lawyers said. Those payments would flow from a pool of assets that FTX's lawyers have pulled together in the 17 months since the exchange collapsed, the lawyers said. [...] It will take months for the payouts to begin. The plan must be approved by the federal judge overseeing FTX's bankruptcy, John T. Dorsey.

Read more of this story at Slashdot.

Defense Think Tank MITRE To Build AI Supercomputer With Nvidia

Par : BeauHD
8 mai 2024 à 03:30
An anonymous reader quotes a report from the Washington Post: A key supplier to the Pentagon and U.S. intelligence agencies is building a $20 million supercomputer with buzzy chipmaker Nvidia to speed deployment of artificial intelligence capabilities across the U.S. federal government, the MITRE think tank said Tuesday. MITRE, a federally funded, not-for-profit research organization that has supplied U.S. soldiers and spies with exotic technical products since the 1950s, says the project could improve everything from Medicare to taxes. "There's huge opportunities for AI to make government more efficient," said Charles Clancy, senior vice president of MITRE. "Government is inefficient, it's bureaucratic, it takes forever to get stuff done. ... That's the grand vision, is how do we do everything from making Medicare sustainable to filing your taxes easier?" [...] The MITRE supercomputer will be based in Ashburn, Va., and should be up and running late this year. [...] Clancy said the planned supercomputer will run 256 Nvidia graphics processing units, or GPUs, at a cost of $20 million. This counts as a small supercomputer: The world's fastest supercomputer, Frontier in Tennessee, boasts 37,888 GPUs, and Meta is seeking to build one with 350,000 GPUs. But MITRE's computer will still eclipse Stanford's Natural Language Processing Group's 68 GPUs, and will be large enough to train large language models to perform AI tasks tailored for government agencies. Clancy said all federal agencies funding MITRE will be able to use this AI "sandbox." "AI is the tool that is solving a wide range of problems," Clancy said. "The U.S. military needs to figure out how to do command and control. We need to understand how cryptocurrency markets impact the traditional banking sector. ... Those are the sorts of problems we want to solve."

Read more of this story at Slashdot.

Study Suggests Genetics as a Cause, Not Just a Risk, for Some Alzheimer's

Par : BeauHD
8 mai 2024 à 02:02
Pam Belluck reports via the New York Times: Scientists are proposing a new way of understanding the genetics of Alzheimer's that would mean that up to a fifth of patients would be considered to have a genetically caused form of the disease. Currently, the vast majority of Alzheimer's cases do not have a clearly identified cause. The new designation, proposed in a study published Monday, could broaden the scope of efforts to develop treatments, including gene therapy, and affect the design of clinical trials. It could also mean that hundreds of thousands of people in the United States alone could, if they chose, receive a diagnosis of Alzheimer's before developing any symptoms of cognitive decline, although there currently are no treatments for people at that stage. The new classification would make this type of Alzheimer's one of the most common genetic disorders in the world, medical experts said. "This reconceptualization that we're proposing affects not a small minority of people," said Dr. Juan Fortea, an author of the study and the director of the Sant Pau Memory Unit in Barcelona, Spain. "Sometimes we say that we don't know the cause of Alzheimer's disease," but, he said, this would mean that about 15 to 20 percent of cases "can be tracked back to a cause, and the cause is in the genes." The idea involves a gene variant called APOE4. Scientists have long known that inheriting one copy of the variant increases the risk of developing Alzheimer's, and that people with two copies, inherited from each parent, have vastly increased risk. The new study, published in the journal Nature Medicine, analyzed data from over 500 people with two copies of APOE4, a significantly larger pool than in previous studies. The researchers found that almost all of those patients developed the biological pathology of Alzheimer's, and the authors say that two copies of APOE4 should now be considered a cause of Alzheimer's -- not simply a risk factor. The patients also developed Alzheimer's pathology relatively young, the study found. By age 55, over 95 percent had biological markers associated with the disease. By 65, almost all had abnormal levels of a protein called amyloid that forms plaques in the brain, a hallmark of Alzheimer's. And many started developing symptoms of cognitive decline at age 65, younger than most people without the APOE4 variant.

Read more of this story at Slashdot.

OpenAI Exec Says Today's ChatGPT Will Be 'Laughably Bad' In 12 Months

Par : BeauHD
8 mai 2024 à 01:25
At the 27th annual Milken Institute Global Conference on Monday, OpenAI COO Brad Lightcap said today's ChatGPT chatbot "will be laughably bad" compared to what it'll be capable of a year from now. "We think we're going to move toward a world where they're much more capable," he added. Business Insider reports: Lightcap says large language models, which people use to help do their jobs and meet their personal goals, will soon be able to take on "more complex work." He adds that AI will have more of a "system relationship" with users, meaning the technology will serve as a "great teammate" that can assist users on "any given problem." "That's going to be a different way of using software," the OpenAI exec said on the panel regarding AI's foreseeable capabilities. In light of his predictions, Lightcap acknowledges that it can be tough for people to "really understand" and "internalize" what a world with robot assistants would look like. But in the next decade, the COO believes talking to an AI like you would with a friend, teammate, or project collaborator will be the new norm. "I think that's a profound shift that we haven't quite grasped," he said, referring to his 10-year forecast. "We're just scratching the surface on the full kind of set of capabilities that these systems have," he said at the Milken Institute conference. "That's going to surprise us." You can watch/listen to the talk here.

Read more of this story at Slashdot.

Minor Car Crashes Mean High Tech Repairs

Par : BeauHD
8 mai 2024 à 00:45
"With all the improvements in car safety over the decades, the recent addition of a plethora of high tech sensors and warnings comes with increased costs," writes longtime Slashdot reader smooth wombat. "And not just to have to have them on your car. Any time you get into an accident, even a minor one, it will most likely require a detailed examination of any sensors which may have been affected and their subsequent realignment, replacement, and calibration." CNN reports: Some vehicles require "dynamic calibration," which means, once the sensors and cameras are back in place, a driver needs to take the vehicle out on real roads for testing. With proper equipment attached the car can, essentially, recalibrate itself as it watches lane lines and other markers. It requires the car to be driven for a set distance at a certain speed but weather and traffic can create problems. "If you're in Chicago or L.A., good luck getting to that speed," said [Hami Ebrahimi, chief commercial officer at Caliber] "or if you're in Seattle or Chicago or New York, with snow, good luck picking up all the road markings." More commonly, vehicles need "static calibration," which can be done using machinery inside a closed workshop with a flat, level floor. Special targets are set up around the vehicle at set distances according to instructions from the vehicle manufacturer. "The car [views] those targets at those specific distances to recalibrate the world into the car's computer," Ebrahimi said. These kinds of repairs also demand buildings with open space that meet requirements including specific colors and lighting. And it requires special training for employees to perform these sorts of recalibrations, he said "The change that we've seen in the last five years is greater than we've seen, probably, in the last five decades," said Todd Dillender, chief operating officer of Caliber Collision, one of the biggest auto body repair companies in the United States with more than 1,700 locations across 41 states. [...] With a rapidly changing industry, qualified auto body repair technicians are in short supply, just as they are in the engine repair business. That's also led to upward pressure on pay in the industry as technicians have to be highly qualified and educated, Dillender said. That's good for people who work in the industry, of course, but tougher for those who pay, and for the insurance companies who, in turn, pay for the repairs. A new study from consumer automotive group AAA says the cost to fix sensors and cameras in new vehicles "now accounts for more than a third of the post-crash repair costs," reports CNN. However, "no one, including AAA, recommends not getting these features because of repair costs," since many of them can cut crash rates in half and improve a car's overall safety. "They're not going to prevent everything," said Greg Brannon, director of automotive engineering at AAA. "And when you are in a crash, there are additional costs so it's sort of the old 'there's no free ride' when it comes to these things."

Read more of this story at Slashdot.

Amazon's Delivery Drones Won't Fly In Arizona's Summer Heat

Par : BeauHD
8 mai 2024 à 00:02
An anonymous reader quotes a report from Wired: Amazon plans to start flying delivery drones in Arizona this year -- but don't count on them to bring you a refreshing drink on a hot day. The hexacopter can't operate when temperatures top 104 degrees Fahrenheit, or 40 degrees Celsius, the company says, and average daily highs exceed that for three months of the year in Tolleson, the city outside Phoenix where Amazon is preparing to offer aerial deliveries from inside a 7.5-mile radius. The drones can't help with midnight snacks either, because they'll be grounded after sunset. Potentially being inoperable for a quarter of the year might make launching drone deliveries in Tolleson and neighboring desert communities seem like an odd choice. It's far from the first challenge faced by Amazon's much-delayed drone project. The unit is years behind its goals of flying items to customers in under an hour on a regular basis, and a one-time target of 500 million deliveries by 2030 seems distant. Amazon Prime Air has completed just thousands of deliveries, falling behind rivals; Alphabet subsidiary Wing has notched hundreds of thousands of delivery flights and Walmart more than 20,000. In the California wine country town of Lockeford, where Amazon initially launched drone deliveries, some residents told WIRED last year that they ordered only because Amazon lured them with gift cards. In Arizona, it could be discouraging not being able to rely on drones during those hours when one might not want to venture too far from the comfort of air conditioning. [...] That temperature and other environmental conditions could ground or hamper the drone industry has been known for years. A team from University of Calgary's geography department estimated that on average across the world, drones with limitations similar to Amazon's, including from weather and daylight, would be limited to flying about 2 hours a day. In the world's 100 most populous cities, the average daily flight time would be 6 hours. "Weather is an important and poorly resolved factor that may affect ambitions to expand drone operations," they wrote in a study published in 2021. Heat, in particular, forces motors to work harder to keep drones aloft, and their batteries are only so powerful.

Read more of this story at Slashdot.

UK Startup 'Wayve' Gets $1 Billion Funding For Self-Driving Car Tech

Par : BeauHD
7 mai 2024 à 23:20
Wayve, a UK-based AI firm focused on developing self-driving car technology, has secured a record $1.05 billion in funding, with Microsoft and Nvidia participating in the round led by SoftBank. According to the BBC, this investment is the largest for an AI company in Europe. The BBC reports: Wayve says the funding will allow it to help build the autonomous cars of the future. [...] Wayve is developing technology intended to power future self-driving vehicles by using what it calls "embodied AI." Unlike AI models carrying out cognitive or generative tasks such as answering questions or creating pictures, this new technology interacts with and learns from real-world surroundings and environments. "[The investment] sends a crucial signal to the market of the strength of the UK's AI ecosystem, and we look forward to watching more AI companies here thrive and scale," said Wayve head Alex Kendall.

Read more of this story at Slashdot.

Hier — 7 mai 2024Slashdot

Theranos Fraudster Elizabeth Holmes Has Prison Sentence Reduced Again

Par : BeauHD
7 mai 2024 à 22:40
For the second time, the disgraced former CEO of Theranos has had her federal prison sentence shortened. In July, it was reduced by two years. Now, 40-year-old Holmes is scheduled for release on August 16, 2032 instead of December 29, 2032 -- a reduction of more than four months. The Guardian reports: People incarcerated in the U.S. can have their sentences shortened for good conduct and for completing rehabilitation programs, such as a substance abuse program. The latest reduction of Holmes's sentence still meets federal sentencing guidelines. Those guidelines mandate that people convicted of federal offenses must serve at least 85% of their sentence, regardless of reductions for good behavior. In 2022, Holmes was sentenced to 11 years and three months in prison after being convicted on four counts of defrauding investors. She was also ordered to pay $452m in restitution to those she defrauded, but a judge delayed those payments due to Holmes's "limited financial resources." Holmes's lawyers have already begun attempts to get her conviction overturned. Oral arguments for her appeal are set to begin on June 11 in a federal appeals court in San Francisco, California, NBC News reported.

Read more of this story at Slashdot.

Apple Announces M4 With More CPU Cores and AI Focus

Par : BeauHD
7 mai 2024 à 22:00
An anonymous reader quotes a report from Ars Technica: In a major shake-up of its chip roadmap, Apple has announced a new M4 processor for today's iPad Pro refresh, barely six months after releasing the first MacBook Pros with the M3 and not even two months after updating the MacBook Air with the M3. Apple says the M4 includes "up to" four high-performance CPU cores, six high-efficiency cores, and a 10-core GPU. Apple's high-level performance estimates say that the M4 has 50 percent faster CPU performance and four times as much graphics performance. Like the GPU in the M3, the M4 also supports hardware-accelerated ray-tracing to enable more advanced lighting effects in games and other apps. Due partly to its "second-generation" 3 nm manufacturing process, Apple says the M4 can match the performance of the M2 while using just half the power. As with so much else in the tech industry right now, the M4 also has an AI focus; Apple says it's beefing up the 16-core Neural Engine (Apple's equivalent of the Neural Processing Unit that companies like Qualcomm, Intel, AMD, and Microsoft have been pushing lately). Apple says the M4 runs up to 38 trillion operations per second (TOPS), considerably ahead of Intel's Meteor Lake platform, though a bit short of the 45 TOPS that Qualcomm is promising with the Snapdragon X Elite and Plus series. The M3's Neural Engine is only capable of 18 TOPS, so that's a major step up for Apple's hardware. Apple's chips since 2017 have included some version of the Neural Engine, though to date, those have mostly been used to enhance and categorize photos, perform optical character recognition, enable offline dictation, and do other oddities. But it may be that Apple needs something faster for the kinds of on-device large language model-backed generative AI that it's expected to introduce in iOS and iPadOS 18 at WWDC next month. A separate report from the Wall Street Journal says Apple is developing a custom chip to run AI software in datacenters. "Apple's server chip will likely be focused on running AI models, also known as inference, rather than in training AI models, where Nvidia is dominant," reports Reuters. Further reading: Apple Quietly Kills the Old-school iPad and Its Headphone Jack

Read more of this story at Slashdot.

Ten Years Ago Microsoft Bought Nokia's Phone Unit, Then Killed It As a Tax Write-Off

Par : BeauHD
7 mai 2024 à 10:00
The Register provides a retrospective look at how Microsoft "absorbed the handset division of Nokia" ten years ago, only to kill the unit two years later and write it off as a tax loss. What went wrong? "It was a fatal combination of bad management, a market evolving in ways hidebound people didn't predict, and some really (with a few superb exceptions) terrible products," reports The Register. From the report: Like Nokia, Windows Mobile's popularity peaked in 2007, then started to drop away. The iPhone was the tech item of choice for fashionistas, Blackberry was seen as essential for serious business, and Android -- with Google as its new owner -- was gaining traction. Microsoft by that time had a new CEO in Steve Ballmer, who completely and famously failed to see the shifting sands in the mobile market. He dismissed the iPhone as a threat to what he thought was Windows Mobile's unassailable market position, and was roundly mocked for it. So the scene was set for a mobile standards war, and Steve Ballmer staked his professional pride on winning it. Microsoft recruited Nokia to help out. [...] Under [Executive VP of Microsoft Stephen Elop's] leadership, a closer working relationship with Microsoft was a given -- but in 2013 Redmond announced it was going the whole hog and buying Nokia's handset business outright for $7.2 billion. The deal was done in April 2014, a decade ago from today. Microsoft also got a ten-year license on Nokia's patents and the option to renew in perpetuity. It also got Elop back, as executive vice president of the Microsoft Devices Group. That meant stepping down as CEO of Nokia, for which he trousered an 18.8 million bonus package -- a payoff the Finnish prime minister at the time called "outrageous." Nokia retained its networking business in Finland. It purchased Siemens' half of the Nokia Siemens Networks joint venture and renamed in Nokia Networks. The Nokia board rolled the dice again on hiring another non-Suomi manager, Rajeev Suri, and this time hit a double D20 in D&D terms. When Ballmer stepped down from the helm at Microsoft in 2014 -- shortly before the Nokia deal completion -- he left a hot mess to deal with. His plan had been to develop the mobile operating system in conjunction with Windows 10, and Windows Mobile 10 was supposed to be a part of a unified code environment. While Windows 10 on the desktop wasn't a bad operating system, Windows Mobile 10 really was. The promised synergy just didn't happen -- it was power-hungry, clunky, and about as popular as a rattlesnake in a pinata. It was this mess that Satya Nadella faced when he took over the reins. Nadella was never very keen on the phone platform and spent more time in press conferences talking about cricket or the cloud than Microsoft's mobile ambitions. It was clear to all that this really wasn't working. Elop was laid off by Redmond a year later. It was clear that Windows Mobile wasn't going to work. Android and iOS were drinking Microsoft's milkshake, and Redmond realized the game was up. Microsoft started shedding mobile jobs -- both in Finland and Redmond. While mobile was still publicly touted as the way forward for Microsoft with Ballmer gone, the impetus wasn't there and support for the mobile OS shriveled. In 2015 Microsoft declared it was writing off $7.6 billion on the Phone Hardware division as "goodwill and asset impairment charges" -- $400 million more than it had originally paid for the Finnish firm. Nokia bought European networking giant Alcatel-Lucent in a $16.7 billion deal in 2015. Around the same time, Suri announced a move into tablets, since it had a non-compete agreement with Microsoft on mobiles. Meanwhile a bunch of former Nokia execs who'd fled Elop and Microsoft had started a mobile biz of their own: HMD. It was Finnish, but outsourced production to Foxconn in China, and was planning to make cheapish Android devices. In 2016 Microsoft sold its mobile hardware arm to HMD for an undisclosed -- but probably not large -- sum. Nadella clearly wanted out of the whole business and the Finnish startup concentrated on selling good-enough Android smartphones to Nokia's traditional cheap markets.

Read more of this story at Slashdot.

Boeing Starliner's First Crewed Mission Scrubbed

Par : BeauHD
7 mai 2024 à 07:00
"Out of an abundance of caution," Boeing says its historic Starliner launch has been postponed, citing an issue with the oxygen relief valve on the Atlas V rocket's upper stage. It was expected to launch tonight at 10:34 p.m. ET. TechCrunch reports: There are backup launch opportunities on May 7, 10 and 11. After years of delays and over $1 billion in cost overruns, the mission is set to be Boeing's first attempt to transport astronauts to the International Space Station. Once the issue is resolved with the upper stage, the United Launch Alliance Atlas V will carry the CST-100 Starliner capsule to orbit along with the two onboard astronauts -- Butch Wilmore and Sunny Williams -- from Florida's Cape Canaveral at 10:34 PM local time Monday evening. The mission also marks the first time ULA's Atlas will carry crew. The rocket boasts a success rate of 100% across 99 missions. (ULA is a joint venture of Boeing and Lockheed Martin.) The astronauts would now dock at the station at the earliest on Thursday, where they would remain for at least eight days. The two astronauts will return to Earth in the capsule no earlier than May 16. If all goes to plan, Boeing will be able to finally certify its Starliner for human transportation and begin fulfilling the terms of its $4.2 billion NASA astronaut taxi contract. That contract, under the agency's Commercial Crew Program, was awarded in 2014. Elon Musk's SpaceX was also granted a contract under that program, for its Crew Dragon capsule, and has been transporting astronauts to and from the ISS since 2020.

Read more of this story at Slashdot.

Apple's iPhone Spyware Problem Is Getting Worse

Par : BeauHD
7 mai 2024 à 03:30
An anonymous reader quotes a report from Wired: In April, Apple sent notifications to iPhone users in 92 countries, warning them they'd been targeted with spyware. "Apple detected that you are being targeted by a mercenary spyware attack that is trying to remotely compromise the iPhone associated with your Apple ID," the notification reads. Users quickly took to social media sites including X, trying to work out what the notification meant. Many of those targeted were based inIndia, but others in Europe also reported receiving Apple's warning. Weeks later, little is still known about the latest iPhone attacks. Former smartphone giant Blackberry, now a security firm, has released research indicating they are linked to a Chinese spyware campaign dubbed "LightSpy," but Apple spokesperson Shane Bauer says this is inaccurate. While Apple says the latest spyware notifications aren't linked to LightSpy, the spyware remains a growing threat, particularly to people who may be targeted in Southern Asia, according to Blackberry's researchers. Described as a "sophisticated iOS implant," LightSpy first emerged targeting Hong Kong protesters in 2020. However, the latest iteration is much more capable than the first. "It is a fully-featured modular surveillance toolset that primarily focuses on exfiltrating victims' private information, including hyper-specific location data and sound recording during voice over IP calls," the researchers wrote. April's warnings were not the first time Apple has issued notifications of this kind. The iPhone maker has sent out alerts to people in over 150 countries since 2021 as spyware continues to target high-profile figures across the globe. Spyware can be weaponized by nation-state adversaries -- but this is relatively rare and expensive. Its deployment is typically highly targeted against a very specific group of people, including journalists, political dissidents, government workers, and businesses in certain sectors. "Such attacks are vastly more complex than regular cybercriminal activity and consumer malware, as mercenary spyware attackers apply exceptional resources to target a very small number of specific individuals and their devices," Apple wrote in an advisory in April. "Mercenary spyware attacks cost millions of dollars and often have a short shelf life, making them much harder to detect and prevent. The vast majority of users will never be targeted by such attacks." Plus, Apple says its Lockdown Mode feature can successfully protect against attacks. "As we have said before, we are not aware of anyone using Lockdown Mode being successfully attacked with mercenary spyware," Bauer says. Still, for those who are targeted and caught unaware, spyware is extremely dangerous. There are a number of ways to protect yourself against spyware and zero-click exploits in particular: 1. Regularly Update Devices: Keep your devices updated to the latest software to protect against known vulnerabilities. 2. Restart Devices Daily: Regularly restarting your device can help disrupt persistent spyware infections by forcing attackers to reinfect the device, potentially increasing their chances of detection. 3. Disable Vulnerable Features: Consider disabling features prone to exploits, such as iMessage and FaceTime, especially if you suspect you're a target for spyware. 4. Use Multifactor Authentication and Secure Sources: Employ multifactor authentication and only install apps from verified sources to prevent unauthorized access and downloads. 5. Monitor for Indicators: Be vigilant for signs of infection such as battery drain, unexpected shutdowns, and high data usage, though these may not always be present with more sophisticated spyware. 6. Seek Professional Help: If you suspect a spyware infection, consider professional assistance or helplines like Access Now's Digital Security Helpline for guidance on removal. 7. Utilize Advanced Security Features: Activate security features like Apple's Lockdown Mode, which limits device functionality to reduce vulnerabilities, thus safeguarding against infections.

Read more of this story at Slashdot.

Stockholm Exergi Lands World's Largest Permanent Carbon Removal Deal With Microsoft

Par : BeauHD
7 mai 2024 à 02:10
Swedish energy company Stockholm Exergi and Microsoft have announced a 10-year deal that will provide the tech giant with more than 3.3 million tons of carbon removal certificates through bioenergy with carbon capture and storage. While the value of the deal was not disclosed, it stands as the largest of its kind globally. Carbon Herald reports: Scheduled to commence in 2028 and span a decade, the agreement underscores a pivotal moment in combatting climate change. Anders Egelrud, CEO of Stockholm Exergi, lauded the deal as a "huge step" for the company and its BECCS project, emphasizing its profound implications for climate action. "I believe the agreement will inspire corporations with ambitious climate objectives, and we target to announce more deals with other pioneering companies over the coming months," he said. Recognizing the imperative of permanent carbon removals in limiting global warming to 1.5C or below, the deal aligns with Microsoft's ambitious goal of becoming carbon negative by 2030. "Leveraging existing biomass power plants is a crucial first step to building worldwide carbon removal capacity," Brian Marrs, Microsoft's Senior Director of Energy & Carbon Removal, said, highlighting the importance of sustainable biomass sourcing for BECCS projects, as is the case with Stockholm Exergi. The partners will adhere to stringent quality standards, ensuring transparent reporting and adherence to sustainability criteria. The BECCS facility, once operational, will remove up to 800,000 tons of carbon dioxide (CO2) annually, contributing significantly to atmospheric carbon reduction. With environmental permits secured and construction set to commence in 2025, Stockholm Exergi plans to reach the final investment decision by the end of the year.

Read more of this story at Slashdot.

Novel Attack Against Virtually All VPN Apps Neuters Their Entire Purpose

Par : BeauHD
7 mai 2024 à 01:41
Researchers have discovered a new attack that can force VPN applications to route traffic outside the encrypted tunnel, thereby exposing the user's traffic to potential snooping or manipulation. This vulnerability, named TunnelVision, is found in almost all VPNs on non-Linux and non-Android systems. It's believe that the vulnerability "may have been possible since 2002 and may already have been discovered and used in the wild since then," reports Ars Technica. From the report: The effect of TunnelVision is "the victim's traffic is now decloaked and being routed through the attacker directly," a video demonstration explained. "The attacker can read, drop or modify the leaked traffic and the victim maintains their connection to both the VPN and the Internet." The attack works by manipulating the DHCP server that allocates IP addresses to devices trying to connect to the local network. A setting known as option 121 allows the DHCP server to override default routing rules that send VPN traffic through a local IP address that initiates the encrypted tunnel. By using option 121 to route VPN traffic through the DHCP server, the attack diverts the data to the DHCP server itself. [...] The attack can most effectively be carried out by a person who has administrative control over the network the target is connecting to. In that scenario, the attacker configures the DHCP server to use option 121. It's also possible for people who can connect to the network as an unprivileged user to perform the attack by setting up their own rogue DHCP server. The attack allows some or all traffic to be routed through the unencrypted tunnel. In either case, the VPN application will report that all data is being sent through the protected connection. Any traffic that's diverted away from this tunnel will not be encrypted by the VPN and the Internet IP address viewable by the remote user will belong to the network the VPN user is connected to, rather than one designated by the VPN app. Interestingly, Android is the only operating system that fully immunizes VPN apps from the attack because it doesn't implement option 121. For all other OSes, there are no complete fixes. When apps run on Linux there's a setting that minimizes the effects, but even then TunnelVision can be used to exploit a side channel that can be used to de-anonymize destination traffic and perform targeted denial-of-service attacks. Network firewalls can also be configured to deny inbound and outbound traffic to and from the physical interface. This remedy is problematic for two reasons: (1) a VPN user connecting to an untrusted network has no ability to control the firewall and (2) it opens the same side channel present with the Linux mitigation. The most effective fixes are to run the VPN inside of a virtual machine whose network adapter isn't in bridged mode or to connect the VPN to the Internet through the Wi-Fi network of a cellular device. You can learn more about the research here.

Read more of this story at Slashdot.

Google Fit Dev APIs Shutdown Set, Fate of Android and Wear OS Apps Go Unannounced

Par : BeauHD
7 mai 2024 à 00:53
Abner Li reports via 9to5Google: Since the launch of Health Connect in 2022, Google has been winding down the Google Fit developer APIs. Earlier this week, the company fully detailed how the "Google Fit APIs have been deprecated and will be supported until June 30, 2025." Fitness and exercise apps that previously used Google Fit have until the June 2025 deadline to switch to Health Connect, with Google broadly referring to it as the "Android Health platform." Google's migration guide for developers lists what they're supposed to switch to on Android phones and Wear OS. However, there is no replacement for the Goals API that lets Google Fit users set "how many steps and heart points they want to aim for each day." Google says it will "share more details about what's next for Android Health" at I/O later this month. As of this API shutdown announcement, Google has said nothing about the Google Fit apps on Android, Wear OS, and iOS. They still work to track activity and house your full archive. [...] At this point, it's clear that Google Fit is not the future. On the Pixel Watch, Fitbit is the default, while Samsung and other Wear OS manufacturers have their own health tracking solutions. If Google were to announce a deprecation of the Fit app, having it coincide with the June 2025 developer deadline makes sense.

Read more of this story at Slashdot.

Pokemon Go Players Are Vandalizing Real Maps With Fake Data To Catch Rare Pokemon

Par : BeauHD
7 mai 2024 à 00:02
An anonymous reader quotes a report from 404 Media: Pokemon Go players are creating a headache for members of the open source map tool OpenStreetMaps by adding fake beaches where they don't exist in hopes of more easily catching Wigletts, a Pokemon that only spawns on beaches. OpenStreetMaps is a free, open source map tool much like Google or Apple maps, but is maintained by a self-governing community of volunteers where anyone is welcome to contribute. An April 27 thread in the OpenStreetMap community forum first spotted the issue, flagging two users in Italy who began marking beaches in all sorts of locations where they don't actually exist. The OpenStreetMap user who noticed the fictitious beaches immediately connected the dots: Pokemon Go, the mega popular mobile game where players catch Pokemon and can engage in different activities depending on their geolocation, introduced different "biomes" like beach, city, forest, and mountains. Each of these have a different look, and critically, some specific Pokemon will only spawn at specific biomes. Wiglett, for example, only spawns at beaches. Some video game sites quickly noticed that Pokemon Go's beaches were appearing in real world locations like golf courses, sports fields, and other places that are not real beaches. Pokemon Go uses OpenStreetMap for its map data, and is how the game knows players are near certain points of interest. The OpenStreetMap user created a filter of OpenStreetMap that surfaced instances where "new mappers" added beaches to the map, revealing a number of clearly fake submissions. [...] It's not clear how often Pokemon Go updates the game with data from OpenStreetMaps, but in theory the people who are manipulating the data would have easier access to the beach biome the next time it does. The OpenStreetMap thread goes on to identify one repeat offender who added dozens of fake beaches. Some are near bodies of water, like lakes, rivers, or docks, and others are landlocked schools, parking lots, and random strips of land. If there was any doubt that some of these changes are being made by Pokemon Go players, the same repeat offender also marked the map with his handle, as well as a poke ball.

Read more of this story at Slashdot.

❌
❌