Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Aujourd’hui — 11 août 2024Slashdot

Mozilla Wants You To Love Firefox Again

Par : EditorDavid
11 août 2024 à 16:37
Mozilla's interim CEO Laura Chambers "says the company is reinvesting in Firefox after letting it languish in recent years," reports Fast Company, "hoping to reestablish the browser as independent alternative to the likes of Google's Chrome and Apple's Safari. "But some of those investments, which also include forays into generative AI, may further upset the community that's been sticking with Firefox all these years..." Chambers acknowledges that Mozilla lost sight of Firefox in recent years as it chased opportunities outside the browser, such as VPN service and email masking. When she replaced Mitchell Baker as CEO in February, the company scaled back those other efforts and made Firefox a priority again. "Yes, Mozilla is refocusing on Firefox," she says. "Obviously, it's our core product, so it's an important piece of the business for us, but we think it's also really an important part of the internet." Some of that focus involves adding features that have become table-stakes in other browsers. In June, Mozilla added vertical tab support in Firefox's experimental branch, echoing a feature that Microsoft's Edge browser helped popularize three years ago. It's also working on tab grouping features and an easier way to switch between user profiles. Mozilla is even revisiting the concept of web apps, in which users can install websites as freestanding desktop applications. Mozilla abandoned work on Progressive Web Apps in Firefox a few years ago to the dismay of many power users, but now it's talking with community members about a potential path forward. "We haven't always prioritized those features as highly as we should have," Chambers says. "That's been a real shift that's been very felt in the community, that the things they're asking for . . . are really being prioritized and brought to life." Firefox was criticized for testing a more private alternative to tracking cookies which could make summaries of aggregated data available to advertisers. (Though it was only tested on a few sites, "Privacy-Preserving Attribution" was enabled by default.) But EFF staff technologist Lena Cohen tells Fast Company that approach was "much more privacy-preserving" than Google's proposal for a "Privacy Sandbox." And according to the article, "Mozilla's system only measures the success rate of ads — it doesn't help companies target those ads in the first place — and it's less susceptible to abuse due to limits on how much data is stored and which parties are allowed to access it." In June, Mozilla also announced its acquisition of Anonym, a startup led by former Meta executives that has its own privacy-focused ad measurement system. While Mozilla has no plans to integrate Anonym's tech in Firefox, the move led to even more anxiety about the kind of company Mozilla was becoming. The tension around Firefox stems in part from Mozilla's precarious financial position, which is heavily dependent on royalty payments from Google. In 2022, nearly 86% of Mozilla's revenue came from Google, which paid $510 million to be Firefox's default search engine. Its attempts to diversify, through VPN service and other subscriptions, haven't gained much traction. Chambers says that becoming less dependent on Google is "absolutely a priority," and acknowledges that building an ad-tech business is one way of doing that. Mozilla is hoping that emerging privacy regulations and wider adoption of anti-tracking tools in web browsers will increase demand for services like Anonym and for systems like Firefox's privacy-preserving ad measurements. Other revenue-generating ideas are forthcoming. Chambers says Mozilla plans to launch new products outside of Firefox under a "design sprint" model, aimed at quickly figuring out what works and what doesn't. It's also making forays into generative AI in Firefox, starting with a chatbot sidebar in the browser's experimental branch. Chambers "says to expect a bigger marketing push for Firefox in the United States soon, echoing a 'Challenge the default' ad campaign that was successful in Germany last summer. Mozilla's nonprofit ownership structure, and the idea that it's not beholden to corporate interests, figures heavily into those plans."

Read more of this story at Slashdot.

Ubuntu Will Start Shipping With the Latest Upstream Linux Kernel - Even Release Candidates

Par : EditorDavid
11 août 2024 à 15:34
Here's a question from the blog OMG Ubuntu. "Ever get miffed reading about a major new Ubuntu release only to learn it doesn't come with the newest Linux kernel? "Well, that'll soon be a thing of the past." Canonical's announced a big shift in kernel selection process for future Ubuntu release, an "aggressive kernel version commitment policy" pivot that means it will ship the latest upstream kernel code in development at the time of a new Ubuntu release. Yes, even if that upstream kernel hasn't yet seen a formal stable release (and received the requisite newspaper-graphic-topped rundown on this blog). Which is a huge change. Currently, new Ubuntu releases include the most recent stable Linux kernel release at the time of the kernel freeze milestone in the Ubuntu development cycle. Here's the official announcement by Canonical's Brett Grandbois. "Ubuntu will now ship the absolute latest available version of the upstream Linux kernel at the specified Ubuntu release freeze date, even if upstream is still in Release Candidate status..." It is actually expected that Late Releases will be the exception rather than the norm and in most releases these guidelines will not be necessary as the upstream kernel will release with enough time for the Ubuntu kernel to stabilize. However, adopting a more aggressive kernel version commitment policy does require us to be prepared for a possible Late Release situation and therefore informing the community on what they can expect.

Read more of this story at Slashdot.

Kia and Hyundai's New Anti-Theft Software is Lowering Car-Stealing Rates

Par : EditorDavid
11 août 2024 à 14:34
An anonymous reader shared this report from CNN: More than a year after Hyundai and Kia released new anti-theft software updates, thefts of vehicles with the new software are falling — even as thefts overall remain astoundingly high, according to a new analysis of insurance claim data. The automakers released the updates starting last February, after a tenfold increase in thefts of certain Hyundai and Kia models in just the past three years — sparked by a series of social media posts that showed people how to steal the vehicles. "Whole vehicle" theft claims — insurance claims for the loss of the entire vehicle — are 64% lower among the Hyundai and Kia cars that have had the software upgrade, compared to cars of the same make, model and year without the upgrade, according to the Highway Loss Data Institute. "The companies' solution is extremely effective," Matt Moore, senior vice president of HLDI, an industry group backed by auto insurers, said in a statement... Between early 2020 and the first half of 2023, thefts of Hyundai and Kia models rose more than 1,000%. The article points out that HDLI's analysis covered 2023, and "By the end of that year, only about 30% of vehicles eligible for the security software had it installed. By now, around 61% of eligible Hyundai vehicles have the software upgrade, a Hyundai spokesperson said." The car companies told CNN that more than 2 million Hyundai and Kia vehicles have gotten the update (part of a $200 million class action settlement reached in May of 2023).

Read more of this story at Slashdot.

Will the Google Antitrust Ruling Change the Internet?

Par : EditorDavid
11 août 2024 à 11:34
Though "It could take years to resolve," the Washington Post imagines six changes that could ultimately result from the two monopoly rulings on Google: Imagine a Google-quality search engine but without ads — or one tailored to children, news junkies or Lego fans. It's possible that Google could be forced to let other companies access its search technology or its essential data to create search engines with the technical chops of Google — but without Google... Would Apple create a search engine...? The likeliest scenario is you'd need to pick whether to use Google on your iPhone or something else. But technologists and stock analysts have also speculated for years that Apple could make its own search engine. It would be like when Apple started Apple Maps as an alternative to Google Maps. What if Google weren't allowed to know so much about you? Jason Kint of Digital Content Next, an industry group that includes online news organizations, said one idea is Google's multiple products would no longer be allowed to commingle information about what you do. It would essentially be a divorce of Google's products without breaking the company up. That could mean, for example, that whatever you did on your Android phone or the websites you visit using Chrome would not feed into one giant Google repository about your activities and interests. The article also wonders if the judge could order Google to be broken up, with separate companies formed out of Android, Google search, and Chrome. (Or if more search competition might make prices drop for the products advertised in search results — or lower the fees charged in Android's app store.) Android's app store might also lose its power to veto apps that compete with Google. "This is educated speculation," the article acknowledges. "It's also possible that not much will really change. That's what happened after Google was found to have broken the European Union's anti-monopoly laws." Google has also said it plans to appeal Monday's ruling.

Read more of this story at Slashdot.

Some Def Con Attendees Forgive Crowdstrike - and Some Blame Microsoft Windows

Par : EditorDavid
11 août 2024 à 07:34
Fortune reports that Crowdstrike "is enjoying a moment of strange cultural cachet at the annual Black Hat security conference, as throngs of visitors flock to its booth to snap selfies and load up on branded company shirts and other swag." (Some attendees "collectively shrugged at the idea that Crowdstrike could be blamed for a problem with a routine update that could happen to any of the security companies deeply intertwined with Microsoft Windows.") Others pointed out that Microsoft should take their fair share of the blame for the outage, which many say was caused by the design of Windows in its core architecture that leads to malware, spyware and driver instability. "Microsoft should not be giving any third party that level of access," said Eric O'Neill, a cybersecurity expert, attorney and former FBI operative. "Microsoft will complain, well, it's just the way that the technology works, or licensing works, but that's bullshit, because this same problem didn't affect Linux or Mac. And Crowdstrike caught it super-early." Their article notes that Crowdstrike is one of this year's top sponsors of the conference. Despite its recent missteps, Crowdstrike had one of the biggest booths, notes TechCrunch, and "As soon as the doors opened, dozens of attendees started lining up." They were not all there to ask tough questions, but to pick up T-shirts and action figures made by the company to represent some of the nation-state and cybercriminal grups it tracks, such as Scattered Spider, an extortion racket allegedly behind last year's MGM Resorts and Okta cyberattacks; and Aquatic Panda, a China-linked espionage group. "We're here to give you free stuff," a CrowdStrike employee told people gathered around a big screen where employees would later give demos. A conference attendee looked visibly surprised. "I just thought it would be dead, honestly. I thought it would be slower over there. But obviously, people are still fans, right?" For CrowdStrike at Black Hat, there was an element of business as usual, despite its global IT outage that caused widespread disruption and delays for days — and even weeks for some customers. The conference came at the same time as CrowdStrike released its root cause analysis that explained what happened the day of the outage. In short, CrowdStrike conceded that it messed up but said it's taken steps to prevent the same incident happening again. And some cybersecurity professionals attending Black Hat appeared ready to give the company a second chance.... TechCrunch spoke to more than a dozen conference attendees who visited the CrowdStrike booth. More than half of attendees we spoke with expressed a positive view of the company following the outage. "Does it lower my opinion of their ability to be a leading-edge security company? I don't think so," said a U.S. government employee, who said he uses CrowdStrike every day. Although TechCrunch does note that one engineer told his parent company they might consider Crowdstrike competitor Sophos...

Read more of this story at Slashdot.

Scientists Slam 'Indefensible' Axing of NASA's $450 Million Viper Moon Rover

Par : EditorDavid
11 août 2024 à 04:35
An anonymous reader shared this report from the Observer: Thousands of scientists have protested to the US Congress over the "unprecedented and indefensible" decision by Nasa to cancel its Viper lunar rover mission. In an open letter to Capitol Hill, they have denounced the move, which was revealed last month, and heavily criticised the space agency over a decision that has shocked astronomers and astrophysicists across the globe. The car-sized rover has already been constructed at a cost of $450 million and was scheduled to be sent to the moon next year, when it would have used a one-metre drill to prospect for ice below the lunar surface in soil at the moon's south pole. Ice is considered to be vital to plans to build a lunar colony, not just to supply astronauts with water but also to provide them with hydrogen and oxygen that could be used as fuels... "Quite frankly, the agency's decision beggars belief," said Prof Clive Neal, a lunar scientist at the University of Notre Dame, in Indiana. "Viper is a fundamental mission on so many fronts and its cancellation basically undermines Nasa's entire lunar exploration programme for the next decade. It is as straightforward as that. Cancelling Viper makes no sense whatsoever." This view was backed by Ben Fernando of Johns Hopkins University, who was one of the organisers of the open letter to Congress. "A team of 500 people dedicated years of their careers to construct Viper and now it has been cancelled for no good reason whatsoever," he told the Observer last week. "Fortunately I think Congress is taking this issue very seriously and they have the power to tell Nasa that it has to go ahead with the project. Hopefully they will intervene." "When Nasa announced its decision to abandon Viper, the space agency said it planned to disassemble and reuse its components for other moon missions — unless other space companies or agencies offered to take over the project. More than a dozen groups have since expressed an interest in taking over Viper, a Nasa spokesperson told the Observer last week."

Read more of this story at Slashdot.

Cyber-Heist of 2.9 Billion Personal Records Leads to Class Action Lawsuit

Par : EditorDavid
11 août 2024 à 01:34
"A lawsuit has accused a Florida data broker of carelessly failing to secure billions of records of people's private information," reports the Register, "which was subsequently stolen from the biz and sold on an online criminal marketplace." California resident Christopher Hofmann filed the potential class-action complaint against Jerico Pictures, doing business as National Public Data, a Coral Springs-based firm that provides APIs so that companies can perform things like background checks on people and look up folks' criminal records. As such National Public Data holds a lot of highly personal information, which ended up being stolen in a cyberattack. According to the suit, filed in a southern Florida federal district court, Hofmann is one of the individuals whose sensitive information was pilfered by crooks and then put up for sale for $3.5 million on an underworld forum in April. If the thieves are to be believed, the database included 2.9 billion records on all US, Canadian, and British citizens, and included their full names, addresses, and address history going back at least three decades, social security numbers, and the names of their parents, siblings, and relatives, some of whom have been dead for nearly 20 years. Hofmann's lawsuit says he 'believes that his personally identifiable information was scraped from non-public sources," according to the article — which adds that Hofmann "claims he never provided this sensitive info to National Public Data... "The Florida firm stands accused of negligently storing the database in a way that was accessible to the thieves, without encrypting its contents nor redacting any of the individuals' sensitive information." Hofmann, on behalf of potentially millions of other plaintiffs, has asked the court to require National Public Data to destroy all personal information belonging to the class-action members and use encryption, among other data protection methods in the future... Additionally, it seeks unspecified monetary relief for the data theft victims, including "actual, statutory, nominal, and consequential damages."

Read more of this story at Slashdot.

Hier — 10 août 2024Slashdot

Trump's Campaign 'Says It Has Been Hacked', Reports CNN

Par : EditorDavid
10 août 2024 à 22:34
CNN reports: Former President Donald Trump's campaign said Saturday in a statement that it had been hacked. Politico reported earlier Saturday that it had received emails from an anonymous account with documents from inside Trump's campaign operation. "These documents were obtained illegally from foreign sources hostile to the United States, intended to interfere with the 2024 election and sow chaos throughout our Democratic process," Trump campaign spokesperson Steven Cheung said in a statement to CNN. Cheung pointed to a recent report published by Microsoft that said Iranian operatives had ramped up their attempts to influence and monitor the US presidential election by creating fake news outlets targeting liberal and conservative voters and by trying to hack an unnamed presidential campaign... Still, it's not clear whether Iran was responsible for the hack. CNN has reached out to the Iranian mission to the United Nations for comment... Politico reported it had received emails that contained internal communications from a senior Trump campaign official and a [271-page] research dossier the campaign had put together on Trump's running mate, Ohio Sen. JD Vance. The dossier included what the Trump campaign identified as Vance's potential vulnerabilities... In 2016, days before the Democratic National Convention, WikiLeaks published nearly 20,000 emails from the Democratic National Committee server.

Read more of this story at Slashdot.

Terraforming Mars Could Be Easier Than Scientists Thought

Par : EditorDavid
10 août 2024 à 21:46
Slashdot reader sciencehabit shared this report from Science magazine: One of the classic tropes of science fiction is terraforming Mars: warming up our cold neighbor so it could support human civilization. The idea might not be so far-fetched, research published today in Science Advances suggests... Samaneh Ansari [a Ph.D. student at Northwestern University and lead author on the new study] and her colleagues wanted to test the heat-trapping abilities of a substance Mars holds in abundance: dust. Martian dust is rich in iron and aluminum, which give it its characteristic red hue. But its microscopic size and roughly spherical shape are not conducive to absorbing radiation or reflecting it back to the surface. So the researchers brainstormed a different particle: using the iron and aluminum in the dust to manufacture 9-micrometer-long rods, about twice as big as a speck of martian dust and smaller than commercially available glitter. Ansari designed a simulation to test how these theoretical particles would interact with light. She found "unexpectedly huge effects" in how they absorbed infrared radiation from the surface and how they scattered that radiation back down to Mars — key factors that determine whether an aerosol particle creates a greenhouse effect. Collaborators at the University of Chicago and the University of Central Florida then fed the particles into computer models of Mars's climate. They examined the effect of annually injecting 2 million tons of the rods 10 to 100 meters above the surface, where they would be lofted to higher altitudes by turbulent winds and settle out of the atmosphere 10 times more slowly than natural Mars dust. Mars could warm by about 10 degreesC within a matter of months, the team found, despite requiring 5000 times less material than other proposed greenhouse gas schemes... Still, "Increasing the temperature of the planet is just one of the things that we would need to do in order to live on Mars without any assistance," says Juan Alday, a postdoctoral planetary science researcher at the Open University not involved with the work. For one, the amount of oxygen in Mars's atmosphere is only 0.1%, compared with 21% on Earth. The pressure on Mars is also 150 times lower than on Earth, which would cause human blood to boil. And Mars has no ozone layer, which means there is no protection from the Sun's harmful ultraviolet radiation. What's more, even once warmed, martian soils may still be too salty or toxic to grow crops. In other words, McInnes says, upping the temperature "isn't some kind of magic switch" that would make Mars habitable. That isn't stopping Ansari and her colleagues from investigating the possibilities.

Read more of this story at Slashdot.

Samsung's New EV Battery Tech: 600-Mile Ranges, and 9-Minute Charges?

Par : EditorDavid
10 août 2024 à 20:46
"Samsung's latest solid-state battery technology will power up premium EVs first, giving them up to 621 miles of range," writes PC Magazine: The new batteries — which promise to improve vehicle range, decrease charging times, and eliminate risk of battery fires — could go into mass production as soon as 2027. Multiple automakers have been reportedly testing samples. Samsung did not list any by name but it's worked with Hyundai, Stellantis, and General Motors, among others. "We supplied samples to customers from the end of last year to the beginning of this year and are receiving positive feedback," Samsung SDI VP Koh Joo-young said at SNE Battery Day 2024 in Seoul, according to Korean outlet The Elec and translated by Google. Perhaps unsurprisingly, the batteries won't be cheap. They will initially go in "super premium EVs" and will offer 900 to 1,000 kilometers (559-621 miles) of range and improved safety... Samsung's presentation also reiterated previously announced plans to create batteries that can charge in nine minutes and last 20 years by 2029. More details from Notebookcheck: According to Samsung SDI's VP, automakers are interested in its solid-state battery packs because they are smaller, lighter, and much safer than what's in current electric cars. Apparently, they are also rather expensive to produce, since it warns that they will first go into the "super premium" EV segment. Those Samsung defines as luxury electric cars that can cover more than 600 miles on a charge. Samsung's oxide solid-state battery technology is rated for an energy density of about 500 Wh/kg, which is about double the density of mainstream EV batteries. Those have capacities that already allow more than 300 miles on a charge, so 600 miles of range in a similar footprint is not out of the question, but the issue is production costs. Thanks to Slashdot reader npetrov for sharing the news.

Read more of this story at Slashdot.

How America's FBI Sabotaged Tech-Stealing Spies from the USSR

Par : EditorDavid
10 août 2024 à 19:46
FBI agent Rick Smith remembered seeing that Austrian-born Silicon Valley entrepreneur one year earlier — walking into San Francisco's Soviet Consulate in the early 1980s. Their chance reunion at a bar "would sow the seeds for a major counterintelligence campaign," writes a national security journalist in Politico, describing the collaboration as "an FBI-led operation that sold the Soviet Bloc millions in secretly sabotaged U.S. hi-tech." The Austrian was already selling American tech goods to European countries, and "By the early 1980s, the FBI knew the Soviet Union was desperate for cutting-edge American technology, like the U.S.-produced microchips then revolutionizing a vast array of digital devices, including military systems..." Moscow's spies worked assiduously to steal such dual use tech or purchase it covertly. The Soviet Union's ballistic missile programs, air defense systems, electronic spying platforms, and even space shuttles, depended on it.... But such tech-focused sanctions-evasion schemes by America's foes offer opportunities for U.S. intelligence, too — including the opportunity to launch ultra-secret sabotage campaigns to alter sensitive technologies before they reach their final destination... Working under the FBI's direction, the Austrian agreed to pose as a crook, a man willing to sell prohibited technology to the communist Eastern Bloc... [T]he FBI and the Austrian would seed faulty tech to Moscow and its allies; drain the Soviet Bloc's coffers; expose its intelligence officers and secret American conspirators; and reveal to American counterspies exactly what tech the Soviets were after... [T]he Soviet Bloc would unknowingly purchase millions of dollars' worth of sabotaged U.S. goods. Communist spies, ignorant that they were being played, would be feted with a literal parade in a Warsaw Pact capital for their success in purchasing this forbidden technology from the West... The Austrian's connections now presented a major opportunity. The Bulgarians, and their East German and Russia allies, were going to get that forbidden tech. But not before the FBI tampered with it first... Some of the tech was subtly altered before the Bulgarians could get their hands on it. Some was rendered completely unusable. Some of it was shipped unadulterated to keep the operation humming — and allay any suspicions from the Eastern Bloc about what might be going on. And some of it never made its way to the Bulgarians at all. In one case, the bureau intercepted a $400,000 order of computer hardware from the San Jose-based firm Proquip and shipped out 6,000 pounds of sandbags instead.... Some suffered what appeared to be "accidental" wear-and-tear during the long journey to the Eastern Bloc, recalled Ed Appel [a former senior FBI official]. Other times, the FBI would tamper with the electronics so they would experience "chance" voltage overloads once Soviet Bloc operatives plugged them in. The sabotage could also be more subtle, designed to degrade machine parts or microchips over time, or to render hi-tech tools that required intense precision slightly, if imperceptibly, inaccurate. The article concludes that "While the Soviet Union might have imploded over three decades ago... Russia's intelligence services are still scouring the globe for prohibited U.S. tech, particularly since Moscow's February 2022 invasion of Ukraine... "Russia has reportedly even covertly imported household items like refrigerators and washing machines to rip out the microchips within them for use in military equipment."

Read more of this story at Slashdot.

North Korean Group Infiltrated 100-Plus Firms with Imposter IT Pros

Par : EditorDavid
10 août 2024 à 18:46
"CrowdStrike has continued doing what gave it such an expansive footprint in the first place," writes CSO Online — "detecting cyber threats and protecting its clients from them." They interviewed Adam Meyers, CrowdStrike's SVP of counter adversary operations, whose team produced their 2024 Threat Hunting Report (released this week at the Black Hat conference). Of seven case studies presented in the report, the most daring is that of a group CrowdStrike calls Famous Chollima, an alleged DPRK-nexus group. Starting with a single incident in April 2024, CrowdStrike discovered that a group of North Koreans, posing as American workers, had been hired for multiple remote IT worker jobs in early 2023 at more than thirty US-based companies, including aerospace, defense, retail, and technology organizations. CrowdStrike's threat hunters discovered that after obtaining employee-level access to victim networks, the phony workers performed at minimal enough levels to keep their jobs while attempting to exfiltrate data using Git, SharePoint, and OneDrive and installing remote monitoring and management (RMM) tools RustDesk, AnyDesk, TinyPilot, VS Code Dev Tunnels, and Google Chrome Remote Desktop. The workers leveraged these RMM tools with company network credentials, enabling numerous IP addresses to connect to victims' systems. CrowdStrike's OverWatch hunters, a team of experts conducting analysis, hunted for RMM tooling combined with suspicious connections surfaced by the company's Falcon Identity Protection module to find more personas and additional indicators of compromise. CrowdStrike ultimately found that over 100 companies, most US-based technology entities, had hired Famous Chollima workers. The OverWatch team contacted victimized companies to inform them about potential insider threats and quickly corroborated its findings. Thanks to Slashdot reader snydeq for sharing the news.

Read more of this story at Slashdot.

Google Just Lost a Big Antitrust Trial. But Now It Has To Face Yet Another.One

Par : EditorDavid
10 août 2024 à 17:34
Google's loss in an antitrust trial is just the beginning. According to Yahoo Finance's senior legal reporter, Google now also has to defend itself "against another perilous antitrust challenge that could inflict more damage." Starting in September, the tech giant will square off against federal prosecutors and a group of states claiming that Google abused its dominance of search advertising technology that is used to sell, buy, and broker advertising space online... Juggling simultaneous defenses "will definitely create a strain on its resources, productivity, and most importantly, attention at the most senior levels," said David Olson, associate professor at Boston College Law School.... The two cases targeting Google have the potential to inflict major damage to an empire amassed over the last two decades. The second case that begins next month began with a lawsuit filed in the US District Court for the Eastern District of Virginia by the Justice Department and eight states in December 2020... Prosecutors allege that since at least 2015 Google has thwarted meaningful competition and deterred innovation through its ownership of the entities and software that power the online advertising technology market. Google owns most of the technology to buy, sell, and serve advertisements online... Google's share of the US and global advertising markets — when measured either by revenue or impressions — exceeded 90% for "many years," according to the complaint. The government prosecutors accused Google of siphoning off $0.35 of each advertising dollar that flowed through its ad tech tools. Thanks to Slashdot reader ZipNada for sharing the article.

Read more of this story at Slashdot.

A New Report Finds Boeing's Rockets Are Built With an Unqualified Work Force

Par : EditorDavid
10 août 2024 à 16:34
Slashdot reader echo123 shared this report from Ars Technica: The NASA program to develop a new upper stage for the Space Launch System rocket is seven years behind schedule and significantly over budget, a new report from the space agency's inspector general finds. However, beyond these headline numbers, there is also some eye-opening information about the project's prime contractor, Boeing, and its poor quality control practices... "We found an array of issues that could hinder SLS Block 1B's readiness for Artemis IV including Boeing's inadequate quality management system, escalating costs and schedules, and inadequate visibility into the Block 1B's projected costs," states the report, signed by NASA's deputy inspector general, George A. Scott. There are some surprising details in the report about Boeing's quality control practices at the Michoud Assembly Facility in southern Louisiana, where the Exploration Upper Stage is being manufactured. Federal observers have issued a striking number of "Corrective Action Requests" to Boeing. "According to Safety and Mission Assurance officials at NASA and DCMA officials at Michoud, Boeing's quality control issues are largely caused by its workforce having insufficient aerospace production experience," the report states. "The lack of a trained and qualified workforce increases the risk that the contractor will continue to manufacture parts and components that do not adhere to NASA requirements and industry standards." This lack of a qualified workforce has resulted in significant program delays and increased costs. According to the new report, "unsatisfactory" welding operations resulted in propellant tanks that did not meet specifications, which directly led to a seven-month delay in the program.

Read more of this story at Slashdot.

Cannibal AIs Could Risk Digital 'Mad Cow Disease' Without Fresh Data

Par : EditorDavid
10 août 2024 à 15:34
A new article in ScienceAlert describes new research into the dangers of "heavily processed sources of digital nourishment" for generative AI: A new study by researchers from Rice University and Stanford University in the US offers evidence that when AI engines are trained on synthetic, machine-made input rather than text and images made by actual people, the quality of their output starts to suffer. The researchers are calling this effect Model Autophagy Disorder (MAD). The AI effectively consumes itself, which means there are parallels for mad cow disease — a neurological disorder in cows that are fed the infected remains of other cattle. Without fresh, real-world data, content produced by AI declines in its level of quality, in its level of diversity, or both, the study shows. It's a warning about a future of AI slop from these models. "Our theoretical and empirical analyses have enabled us to extrapolate what might happen as generative models become ubiquitous and train future models in self-consuming loops," says computer engineer Richard Baraniuk, from Rice University. "Some ramifications are clear: without enough fresh real data, future generative models are doomed to MADness." The article notes that "faces began to look more and more like each other when fresh, human-generated training data wasn't involved. In tests using handwritten numbers, the numbers gradually became indecipherable. "Where real data was used but in a fixed way without new data being added, the quality of the output was still degraded, merely taking a little longer to break down. It appears that freshness is crucial." Thanks to long-time Slashdot reader schwit1 for sharing the news.

Read more of this story at Slashdot.

Are Fake Plastic Lawns Environmentally Irresponsible?

Par : EditorDavid
10 août 2024 à 14:34
"The artificial turf industry has had a great deal of success convincing millions of people that its short-lived, nonrecyclable, fossil-fuel-derived product is somehow good for the environment," complains the head of Los Angeles' chapter of the advocacy nonprofit, the Climate Reality Project. In an opinion piece published in the Los Angeles Times, he argues that "In fact, it's clear that artificial turf is bad for our ecosystems as well as our health." The piece's title? "What's more environmentally irresponsible than a thirsty L.A. lawn? A fake plastic one." Artificial turf exacerbates the effects of climate change. On a 90-degree Los Angeles day, the temperature of artificial turf can reach 150 degrees or higher — hot enough to burn skin. And artificial turf is disproportionately installed to replace private lawns and public landscaping in economically disadvantaged communities that already face the greatest consequences of the urban heat-island effect, in which hard surfaces raise local temperatures. Artificial turf consists of single-use plastics made from crude oil or methane. The extraction, refining and processing of these petrochemicals, along with the transporting and eventual removal of artificial turf, come with a significant carbon footprint. Artificial turf is full of perfluoroalkyl and polyfluoroalkyl substances, or PFAS, known as "forever chemicals" because they accumulate in the environment and living tissue. The Synthetic Turf Council has noted manufacturers' efforts to ensure that their products "contain no intentionally-added PFAS constituents." So what? Tobacco companies don't intentionally add carcinogens to cigarettes; they're built into the product. PFAS have been linked to serious health effects, and while artificial turf is by no means the only source of them, it is one we can avoid. Because artificial turf is a complex product made of multiple types of plastic, it will never be recycled. After its relatively short lifespan of about eight to 15 years, artificial turf ends up in indefinite storage, landfills and incinerators, creating a whole host of additional pollution problems... Remarkably, artificial turf doesn't even save water compared with grass... [A]rtificial turf must be regularly cleaned with water, and in warm climates such as Los Angeles', artificial fields get so hot that schools must water them down before children play on them. Astroturf also doesn't absorb rainwater, the piece poitns out. In fact, studies show the maintenance costs of artificial turf often exceed those of natural grass. Thanks to Slashdot reader Bruce66423 for sharing the article,

Read more of this story at Slashdot.

À partir d’avant-hierSlashdot

Are EV 'Charger Hogs' Ruining the EV Experience?

Par : EditorDavid
5 août 2024 à 11:34
A CNN reporter spent more than two hours waiting for EV chargers — thanks to "ill-mannered charger hogs who don't respect EV etiquette." [T]o protect batteries from damage, charging speeds slow way down once batteries get beyond 80% full. In fact, it can take as long, or even longer, to go from 80% charged to completely full than to reach 80%. Meanwhile, lines of electric vehicles wait behind almost-full cars. I was waiting behind people with batteries that were 92%, 94% and even 97% full, as I could see on the charger screens. Still, they stayed there. I made my own situation worse by giving up on one location and going to another with more chargers, but there were even more EVs waiting there. Given that a lack of public charging is turning many consumers off to EVs, according to multiple surveys, this is a major issue. Both Electrify America and EVgo said they are rapidly expanding their networks to, as EVgo's Rafalson put it, "skate ahead of the puck," trying to make sure there are enough chargers to meet future demand... "I think what you're seeing is demand for public fast charging is really skyrocketing," said Sara Rafalson, executive vice president for policy at EV charging company EVgo, "and I would say we've been really at an inflection point in the last year, year and a half, with demand...." Electrify America, one of America's biggest charging companies, is experimenting with a solution to the problem of charger hogs who can make it slow and unpleasant to travel in an EV. At 10 of the busiest EV fast charging stations in California, Electrify America has enacted a strict limit. Once a car's batteries are 85% charged, charging will automatically stop and the driver will be told to unplug and leave or face additional 40-cent-per-minute "idle time" fees for taking the space. It's similar to something Tesla vehicles do automatically. When a Tesla car, truck or SUV plugs into a particularly heavily-used Supercharger station, the vehicle itself may automatically limit charging to just 80% "to reduce congestion," according to Tesla's on-line Supercharger Support web page. In that case, though, the user can still override the limit using the vehicle's touchscreen. There will be no getting around Electrify America's limit. Electrify America's president points out an EV driver could need a full charge (if they're travelling somewhere with fewer charges) — or if they're driving an EV with a relatively short range. So the article notse that some EV charging companies "have experimented with plans that charge different amounts of money at different times to give drivers incentives to fill their batteries at less busy hours... "For the time being, let's just hope that EV drivers who don't really need to fill all the way up will learn to be more considerate."

Read more of this story at Slashdot.

Founder of Collapsed Social Media Site 'IRL' Charged With Fraud Over Faked Users

Par : EditorDavid
5 août 2024 à 07:34
This week America's Securities and Exchange Commission filed fraud charges against the former CEO of the startup social media site "IRL" The BBC reports: IRL — which was once considered a potential rival to Facebook — took its name from its intention to get its online users to meet up in real life. However, the initial optimism evaporated after it emerged most of IRL's users were bots, with the platform shutting in 2023... The SEC says it believes [CEO Abraham] Shafi raised about $170m by portraying IRL as the new success story in the social media world. It alleges he told investors that IRL had attracted the vast majority its supposed 12 million users through organic growth. In reality, it argues, IRL was spending millions of dollars on advertisements which offered incentives to prospective users to download the IRL app. That expenditure, it is alleged, was subsequently hidden in the company's books. IRL received multiple rounds of venture capital financing, eventually reaching "unicorn status" with a $1.17 billion valuation, according to TechCrunch. But it shut down in 2023 "after an internal investigation by the company's board found that 95% of the app's users were 'automated or from bots'." TechCrunch notes it's the second time in the same week — and at least the fourth time in the past several months — that the SEC has charged a venture-backed founder on allegations of fraud... Earlier this week, the SEC charged BitClout founder Nader Al-Naji with fraud and unregistered offering of securities, claiming he used his pseudonymous online identity "DiamondHands" to avoid regulatory scrutiny while he raised over $257 million in cryptocurrency. BitClout, a buzzy crypto startup, was backed by high-profile VCs such as a16z, Sequoia, Chamath Palihapitiya's Social Capital, Coinbase Ventures and Winklevoss Capital. In June, the SEC charged Ilit Raz, CEO and founder of the now-shuttered AI recruitment startup Joonko, with defrauding investors of at least $21 million. The agency alleged Raz made false and misleading statements about the quantity and quality of Joonko's customers, the number of candidates on its platform and the startup's revenue. The agency has also gone after venture firms in recent months. In May, the SEC charged Robert Scott Murray and his firm Trillium Capital LLC with a fraudulent scheme to manipulate the stock price of Getty Images Holdings Inc. by announcing a phony offer by Trillium to purchase Getty Images.

Read more of this story at Slashdot.

DARPA Wants to Automatically Transpile C Code Into Rust - Using AI

Par : EditorDavid
5 août 2024 à 03:34
America's Defense Department has launched a project "that aims to develop machine-learning tools that can automate the conversion of legacy C code into Rust," reports the Register — with an online event already scheduled later this month for those planning to submit proposals: The reason to do so is memory safety. Memory safety bugs, such buffer overflows, account for the majority of major vulnerabilities in large codebases. And DARPA's hope [that's the Defense Department's R&D agency] is that AI models can help with the programming language translation, in order to make software more secure. "You can go to any of the LLM websites, start chatting with one of the AI chatbots, and all you need to say is 'here's some C code, please translate it to safe idiomatic Rust code,' cut, paste, and something comes out, and it's often very good, but not always," said Dan Wallach, DARPA program manager for TRACTOR, in a statement. "The research challenge is to dramatically improve the automated translation from C to Rust, particularly for program constructs with the most relevance...." DARPA's characterization of the situation suggests the verdict on C and C++ has already been rendered. "After more than two decades of grappling with memory safety issues in C and C++, the software engineering community has reached a consensus," the research agency said, pointing to the Office of the National Cyber Director's call to do more to make software more secure. "Relying on bug-finding tools is not enough...." Peter Morales, CEO of Code Metal, a company that just raised $16.5 million to focus on transpiling code for edge hardware, told The Register the DARPA project is promising and well-timed. "I think [TRACTOR] is very sound in terms of the viability of getting there and I think it will have a pretty big impact in the cybersecurity space where memory safety is already a pretty big conversation," he said. DARPA's statement had an ambitious headline: "Eliminating Memory Safety Vulnerabilities Once and For All." "Rust forces the programmer to get things right," said DARPA project manager Wallach. "It can feel constraining to deal with all the rules it forces, but when you acclimate to them, the rules give you freedom. They're like guardrails; once you realize they're there to protect you, you'll become free to focus on more important things." Code Metal's Morales called the project "a DARPA-hard problem," noting the daunting number of edge cases that might come up. And even DARPA's program manager conceded to the Register that "some things like the Linux kernel are explicitly out of scope, because they've got technical issues where Rust wouldn't fit." Thanks to long-time Slashdot reader RoccamOccam for sharing the news.

Read more of this story at Slashdot.

❌
❌