Domain: slashdot.org
Stories and comments across the archive that link to slashdot.org.
Stories · 37,380
-
Amazon Is Raising Some Workers' Pay Further, Adding Bonuses After Controversy (bloomberg.com)
An anonymous reader quotes a report from Bloomberg: Amazon is sweetening the pay for some of its longtime warehouse workers after employees criticized the loss of bonuses and stock awards as part of the company's pledge to boost all wages to at least $15 an hour. The world's largest online retailer grabbed headlines last week with its minimum-pay pledge -- followed by concerns from veteran workers who feared their compensation would actually decline because the company also eliminated bonuses and stock awards. Amazon said any workers already earning $15 would get raises of $1 per hour. Now, some of those employees are learning their hourly raises will actually be $1.25 an hour. Additionally, Amazon is introducing a new cash bonus of $1,500 to $3,000 for tenure milestones at five, 10, 15 and 20 years. Workers with good attendance in the month of December will also get a $100 bonus, according to the company. "All hourly Operations and Customer Service employees will see an increase in their total compensation as a result of this announcement," Amazon said in a statement. "The significant increase in hourly cash wages effective Nov. 1 more than compensates for the phase out of incentive pay and future (stock) grants." -
Amazon Is Raising Some Workers' Pay Further, Adding Bonuses After Controversy (bloomberg.com)
An anonymous reader quotes a report from Bloomberg: Amazon is sweetening the pay for some of its longtime warehouse workers after employees criticized the loss of bonuses and stock awards as part of the company's pledge to boost all wages to at least $15 an hour. The world's largest online retailer grabbed headlines last week with its minimum-pay pledge -- followed by concerns from veteran workers who feared their compensation would actually decline because the company also eliminated bonuses and stock awards. Amazon said any workers already earning $15 would get raises of $1 per hour. Now, some of those employees are learning their hourly raises will actually be $1.25 an hour. Additionally, Amazon is introducing a new cash bonus of $1,500 to $3,000 for tenure milestones at five, 10, 15 and 20 years. Workers with good attendance in the month of December will also get a $100 bonus, according to the company. "All hourly Operations and Customer Service employees will see an increase in their total compensation as a result of this announcement," Amazon said in a statement. "The significant increase in hourly cash wages effective Nov. 1 more than compensates for the phase out of incentive pay and future (stock) grants." -
James Murdoch In Line To Replace Musk As Tesla Chairman, Says Report [Update] (reuters.com)
21st Century Fox CEO James Murdoch is the lead candidate to replace Elon Musk as Tesla chairman, the Financial Times reported today. The company has until November 13 to appoint an independent chairman of the board, part of settlements reached last month between Tesla, Musk and U.S. regulators in the wake of Musk tweeting in August that he had secured funding to take the company private. Reuters reports: The U.S. Securities and Exchange Commission, which said the statement was fraudulent, allowed the billionaire to retain his role as CEO while stripping him of his chairmanship and imposing a penalty of $20 million on each party. Murdoch, who is a nonexecutive director of Tesla, has signaled he wants the job, the report said. The son of Fox mogul Rupert Murdoch, he joined Tesla's board in July 2017 after years of work with media companies. He has no experience in manufacturing and has never led a company that makes cars or electric vehicles.
Murdoch currently serves on the boards of 21st Century Fox and News Corp. He stepped down from the board of Sky Plc on Tuesday following the completion of Comcast Corp's takeover of the broadcaster. Glass Lewis research director Courteney Keatinge said in a telephone interview on Wednesday that while Murdoch's departure from Sky could alleviate some concerns, the Tesla chairmanship would still require a big time commitment as the company faces pressures on many fronts. Update: In a tweet late Wednesday, Musk said Financial Times' report was inaccurate. -
James Murdoch In Line To Replace Musk As Tesla Chairman, Says Report [Update] (reuters.com)
21st Century Fox CEO James Murdoch is the lead candidate to replace Elon Musk as Tesla chairman, the Financial Times reported today. The company has until November 13 to appoint an independent chairman of the board, part of settlements reached last month between Tesla, Musk and U.S. regulators in the wake of Musk tweeting in August that he had secured funding to take the company private. Reuters reports: The U.S. Securities and Exchange Commission, which said the statement was fraudulent, allowed the billionaire to retain his role as CEO while stripping him of his chairmanship and imposing a penalty of $20 million on each party. Murdoch, who is a nonexecutive director of Tesla, has signaled he wants the job, the report said. The son of Fox mogul Rupert Murdoch, he joined Tesla's board in July 2017 after years of work with media companies. He has no experience in manufacturing and has never led a company that makes cars or electric vehicles.
Murdoch currently serves on the boards of 21st Century Fox and News Corp. He stepped down from the board of Sky Plc on Tuesday following the completion of Comcast Corp's takeover of the broadcaster. Glass Lewis research director Courteney Keatinge said in a telephone interview on Wednesday that while Murdoch's departure from Sky could alleviate some concerns, the Tesla chairmanship would still require a big time commitment as the company faces pressures on many fronts. Update: In a tweet late Wednesday, Musk said Financial Times' report was inaccurate. -
The Breach That Killed Google+ Wasn't a Breach At All (theverge.com)
An anonymous reader quotes a report from The Verge: For months, Google has been trying to stay out of the way of the growing tech backlash, but yesterday, the dam finally broke with news of a bug in the rarely used Google+ network that exposed private information for as many as 500,000 users. Google found and fixed the bug back in March, around the same time the Cambridge Analytica story was heating up in earnest. [...] The vulnerability itself seems to have been relatively small in scope. The heart of the problem was a specific developer API that could be used to see non-public information. But crucially, there's no evidence that it actually was used to see private data, and given the thin user base, it's not clear how much non-public data there really was to see. The API was theoretically accessible to anyone who asked, but only 432 people actually applied for access (again, it's Google+), so it's plausible that none of them ever thought of using it this way.
The bigger problem for Google isn't the crime, but the cover-up. The vulnerability was fixed in March, but Google didn't come clean until seven months later when The Wall Street Journal got hold of some of the memos discussing the bug. [...] Part of the disconnect comes from the fact that, legally, Google is in the clear. There are lots of laws about reporting breaches -- primarily the GDPR but also a string of state-level bills -- but by that standard, what happened to Google+ wasn't technically a breach. Those laws are concerned with unauthorized access to user information, codifying the basic idea that if someone steals your credit card or phone number, you have a right to know about it. But Google just found that data was available to developers, not that any data was actually taken. With no clear data stolen, Google had no legal reporting requirements. As far as the lawyers were concerned, it wasn't a breach, and quietly fixing the problem was good enough. -
The Breach That Killed Google+ Wasn't a Breach At All (theverge.com)
An anonymous reader quotes a report from The Verge: For months, Google has been trying to stay out of the way of the growing tech backlash, but yesterday, the dam finally broke with news of a bug in the rarely used Google+ network that exposed private information for as many as 500,000 users. Google found and fixed the bug back in March, around the same time the Cambridge Analytica story was heating up in earnest. [...] The vulnerability itself seems to have been relatively small in scope. The heart of the problem was a specific developer API that could be used to see non-public information. But crucially, there's no evidence that it actually was used to see private data, and given the thin user base, it's not clear how much non-public data there really was to see. The API was theoretically accessible to anyone who asked, but only 432 people actually applied for access (again, it's Google+), so it's plausible that none of them ever thought of using it this way.
The bigger problem for Google isn't the crime, but the cover-up. The vulnerability was fixed in March, but Google didn't come clean until seven months later when The Wall Street Journal got hold of some of the memos discussing the bug. [...] Part of the disconnect comes from the fact that, legally, Google is in the clear. There are lots of laws about reporting breaches -- primarily the GDPR but also a string of state-level bills -- but by that standard, what happened to Google+ wasn't technically a breach. Those laws are concerned with unauthorized access to user information, codifying the basic idea that if someone steals your credit card or phone number, you have a right to know about it. But Google just found that data was available to developers, not that any data was actually taken. With no clear data stolen, Google had no legal reporting requirements. As far as the lawyers were concerned, it wasn't a breach, and quietly fixing the problem was good enough. -
WhatsApp Fixes Bug That Let Hackers Take Over App When Answering a Video Call (zdnet.com)
WhatsApp developers have fixed a bug in the Android and iOS versions of the WhatsApp mobile app that allowed hackers to take over the application when users answered an incoming video call. From a report: Natalie Silvanovich, a security researcher with Google's Project Zero security research team, discovered the WhatsApp vulnerability at the end of August. She described the vulnerability as a "memory corruption bug in WhatsApp's non-WebRTC video conferencing implementation." "Heap corruption can occur when the WhatsApp mobile application receives a malformed RTP packet," Silvanovich said in a bug report. "This issue can occur when a WhatsApp user accepts a call from a malicious peer." It is unclear how popular the video feature is on WhatsApp, which is used by more than 1.2 billion users. But in July, the company said users were spending over two billion minutes on calls (including voice) each day. -
FBI Director on Whether Apple and Amazon Servers Had Chinese Spy Chips: 'Be Careful What You Read' (cnbc.com)
During a hearing in front of the Senate Homeland Security Committee on Wednesday, FBI Director Christopher Wray told senators to "be careful what you read," when asked about a recent story involving spy chips from China being secretly embedded into servers owned by Apple, Amazon and other big companies. From a report: Senator Ron Johnson, R-Wis., chairman of the committee, asked Wray when his agency found out about the chips that server manufacturer Super Micro implanted into server hardware, as reported last week by Bloomberg Businessweek. "I would say to the newspaper article or, I mean, the magazine article, I would say be careful what you read," Wray replied. "Especially in this context." Johnson called on Wray to speak to the accuracy of the story, telling the FBI director that, "We don't want false information out there." Wray said he couldn't offer much detail because the agency has a policy of not confirming or denying that an investigation is underway. "I do want to be careful that my comment not be construed as inferring or implying, I should say, that there is an investigation," Wray said. "We take very seriously our obligation to notify victims when they've been targeted." -
New App Lets You 'Sue Anyone By Pressing a Button' (vice.com)
Jason Koebler writes: Do Not Pay, a free service that launched in the iOS App store today, uses artificial intelligence to help people win up to $25,000 in small claims court. It's the latest project from 21-year-old Stanford senior Joshua Browder, whose service previously allowed people to fight parking tickets or sue Equifax; now, the app has streamlined the process. It's the "first ever service to sue anyone (in all 3,000 counties in 50 states) by pressing a button." -
New App Lets You 'Sue Anyone By Pressing a Button' (vice.com)
Jason Koebler writes: Do Not Pay, a free service that launched in the iOS App store today, uses artificial intelligence to help people win up to $25,000 in small claims court. It's the latest project from 21-year-old Stanford senior Joshua Browder, whose service previously allowed people to fight parking tickets or sue Equifax; now, the app has streamlined the process. It's the "first ever service to sue anyone (in all 3,000 counties in 50 states) by pressing a button." -
Android Creator Is Building an AI Phone That Texts People for You, Report Says (bloomberg.com)
Andy Rubin, the creator of Android operating system, is not giving up on his Essential company. The consumer electronics startup is putting most projects aside to focus on development of a new kind of phone that will try to mimic the user and automatically respond to messages on their behalf, Bloomberg reported Wednesday, citing people familiar with the plans. From the report: The company paused development of a planned home speaker, months after canceling a different smartphone that had been in the works, said the people, who asked not to be identified because the details are private. Sales of an earlier phone were disappointing, and the company is abandoning the effort partly because the product is too similar to others on the market. Essential had considered selling itself this year after a series of setbacks.
The design of the new mobile device isn't like a standard smartphone. It would have a small screen and require users to interact mainly using voice commands, in concert with Essential's artificial-intelligence software. The idea is for the product to book appointments or respond to emails and text messages on its own, according to the people familiar with the plans. Users would also be able to make phone calls from the planned device. -
Android Creator Is Building an AI Phone That Texts People for You, Report Says (bloomberg.com)
Andy Rubin, the creator of Android operating system, is not giving up on his Essential company. The consumer electronics startup is putting most projects aside to focus on development of a new kind of phone that will try to mimic the user and automatically respond to messages on their behalf, Bloomberg reported Wednesday, citing people familiar with the plans. From the report: The company paused development of a planned home speaker, months after canceling a different smartphone that had been in the works, said the people, who asked not to be identified because the details are private. Sales of an earlier phone were disappointing, and the company is abandoning the effort partly because the product is too similar to others on the market. Essential had considered selling itself this year after a series of setbacks.
The design of the new mobile device isn't like a standard smartphone. It would have a small screen and require users to interact mainly using voice commands, in concert with Essential's artificial-intelligence software. The idea is for the product to book appointments or respond to emails and text messages on its own, according to the people familiar with the plans. Users would also be able to make phone calls from the planned device. -
Android Creator Is Building an AI Phone That Texts People for You, Report Says (bloomberg.com)
Andy Rubin, the creator of Android operating system, is not giving up on his Essential company. The consumer electronics startup is putting most projects aside to focus on development of a new kind of phone that will try to mimic the user and automatically respond to messages on their behalf, Bloomberg reported Wednesday, citing people familiar with the plans. From the report: The company paused development of a planned home speaker, months after canceling a different smartphone that had been in the works, said the people, who asked not to be identified because the details are private. Sales of an earlier phone were disappointing, and the company is abandoning the effort partly because the product is too similar to others on the market. Essential had considered selling itself this year after a series of setbacks.
The design of the new mobile device isn't like a standard smartphone. It would have a small screen and require users to interact mainly using voice commands, in concert with Essential's artificial-intelligence software. The idea is for the product to book appointments or respond to emails and text messages on its own, according to the people familiar with the plans. Users would also be able to make phone calls from the planned device. -
Google Appeals $5 Billion EU Fine In Android Case (wsj.com)
An anonymous reader quotes a report from The Wall Street Journal: Alphabet's Google on Tuesday said it filed an appeal of the European Union's $4.97 billion antitrust fine (Warning: source may be paywalled; alternative source) for allegedly abusing the dominance of its Android operating system for mobile phones. But Google said it has no plans to ask for so-called interim measures to pause application of the decision. Without further action, Google will have to meet a deadline at the end of October to end the behavior the EU says is anticompetitive or face additional fines of up to 5% of average daily global revenue for each day it doesn't comply. Google had promised that it would appeal the decision when the European Commission, the bloc's antitrust regulator, delivered it in mid-July. The commission said that Google broke the block's competition laws in part by strong-arming phone makers that use its free Android operating system to pre-install its namesake search engine, from which the company makes the bulk of its advertising revenue.
In the Android case, the European Commission has ordered Google to stop making phone manufacturers pre-install its search app and the Chrome web browser if they want to pre-install Google's Play store, which is the main way to download Android apps. The bloc also ordered Google to end restrictions that discourage manufacturers from selling devices that run unofficial versions of Android. It contends both restrictions illegally constrained competing search engines and operating systems. Google has argued that Android, which is free for manufacturers to use, has increased competition among smartphone makers, lowering prices for consumers. The company has said the allegation that it stymied competing apps is false because manufacturers typically install many rival apps on Android devices, and consumers can easily download others. -
The End of Coal Could Be Closer Than It Looks (bloomberg.com)
The Intergovernmental Panel on Climate Change released a report on Monday saying that the world's electrical utilities need to reduce coal consumption by at least 60 percent over the next two decades through 2030 to avoid the worst effects of climate change that could occur with more than 1.5 degrees Celsius of warming. While that reduction seems out of reach, Bloomberg crunched some numbers and found that "it's possible to meet consumption-cut targets on the current path." From the report: The conventional wisdom is that this isn't possible, as rising demand from emerging economies, led by China and India, overwhelms the switch from fossil fuels in richer countries. That may underestimate the changing economics of energy generation, though. For one thing, it assumes that Asian countries will continue to build new coal-fired plants at a rapid rate, even though renewables are already the cheaper option in India and heading that way in China and Southeast Asia. For another, the falling cost and rising penetration of wind and solar is so recent that we're only just starting to see how they damage the business models of conventional generators. Thanks to the deflation of recent years, renewables already produce energy at a lower cost than thermal power plants. That causes the overall price of wholesale electricity to fall, reducing a conventional plant's revenue per megawatt-hour. When this drops below the generator's operating costs, the only away to avoid losing money is to switch off altogether. As a result, capacity factors -- the share of time when the plant is on and producing electricity -- decline as well, further undermining returns.
The shift from an always-on "baseload" demand profile to a peaks-and-troughs one like this carries its own problems. The act of ramping up and down consumes fuel and causes the physical plant to wear out faster. Absent expensive refurbishments, that could take a decade off the 40- to 50-year life of a coal plant -- and banks will get progressively less likely to fund long-term refurbs as wind and solar further damage the economics of fossil power. Researchers at the Australian National University this year modeled the effect of this sort of scenario on that country's generation mix. Assuming that the cost of renewables continues to evolve in line with current trends, they found the average retirement age of coal plants falls to 30 years from 50 years. As a result, coal-powered generation drops by about 70 percent between 2020 and 2030. "Let's assume the addition of net new generation stops in 2020; that plant life reduces to 30 years from 40 years; and that capacity factors gradually fall from the current 50 percent to 35 percent, still well above the levels of the U.K.'s coal generators in recent years," the report says in closing. "The effect of those operating changes alone reduces coal-fired electricity output in 2030 by about 40 percent relative to the higher scenario. [...] Factor in a price on carbon or other robust government intervention and the decline would be much faster." -
Google's Human-Sounding Phone Bot Is Coming To the Pixel Next Month (wired.com)
Google's human-sounding AI software that makes calls for you is coming to Pixel smartphones next month in select markets, like New York, Atlanta, Phoenix, and the San Francisco Bay Area. Google Duplex, as it is called, will be a feature of Google Assistant and, for now, will only be able to call restaurants without online booking systems, which are already supported by the assistant. Wired reports: A Google spokesperson told WIRED that the company now has a policy to always have the bot disclose its true nature when making calls. Duplex still retains the human-like voice and "ums," "ahs," and "umm-hmms" that struck some as spooky, though. Nick Fox, the executive who leads product and design for Google search and the company's assistant, says those interjections are necessary to make Duplex calls shorter and smoother. "The person on the other end shouldn't be thinking about how do I adjust my behavior, I should be able to do what I normally do and the system adapts to that," he says.
Fox, the Google exec leading the project, pitches Duplex as a win-win. Google users will be freed from having to make phone calls to plan their outings; restaurants without online booking systems will gain new customers. "Those businesses lose out because people say 'Unless I can book this online I'm not going to book,'" he says. Some people closer to the restaurant business worry that Duplex might make calling restaurants too easy for Google users. Gwyneth Borden, executive director of the Golden Gate Restaurant Association, a trade group for Bay Area restaurants, says people may use the technology to book multiple reservations and then flake out, or call restaurants over and over. Restaurants can opt out of receiving Duplex calls by speaking up during a call from Duplex, or through the website where businesses can manage listing information shown in Google's search and maps services. When calls go awry -- Fox says the "overwhelming majority" work out fine -- the software will alert an operator in a Google call center who takes over. -
Microsoft Rereleases Windows 10 October 2018 Update, Fixes Data Deletion Bug (theverge.com)
An anonymous reader quotes a report from The Verge: Microsoft is re-releasing its Windows 10 October 2018 Update today, following the company pulling it offline due to data deletion issues over the weekend. The software giant says there were only a few reports of data loss, at a rate of one one-hundredth of one percent. "We have fully investigated all reports of data loss, identified and fixed all known issues in the update, and conducted internal validation," says Microsoft's John Cable, director of program management for Windows Servicing and Delivery. Microsoft is now re-releasing the Windows 10 October 2018 Update to Windows Insiders, before rolling it out more broadly to consumers. "We will carefully study the results, feedback, and diagnostic data from our Insiders before taking additional steps towards re-releasing more broadly," explains Cable.
It appears the bug that caused file deletion was related to Windows 10 users who had enabled Known Folder Redirection to redirect folders like desktop, documents, pictures, and screenshots from the default location. Microsoft introduced code in its latest update to delete the empty and duplicate known folders, but it appears they weren't always empty. Microsoft has developed fixes to address a variety of problems related to these folder moves, and these fixes are now being tested with Windows Insiders. -
Microsoft Rereleases Windows 10 October 2018 Update, Fixes Data Deletion Bug (theverge.com)
An anonymous reader quotes a report from The Verge: Microsoft is re-releasing its Windows 10 October 2018 Update today, following the company pulling it offline due to data deletion issues over the weekend. The software giant says there were only a few reports of data loss, at a rate of one one-hundredth of one percent. "We have fully investigated all reports of data loss, identified and fixed all known issues in the update, and conducted internal validation," says Microsoft's John Cable, director of program management for Windows Servicing and Delivery. Microsoft is now re-releasing the Windows 10 October 2018 Update to Windows Insiders, before rolling it out more broadly to consumers. "We will carefully study the results, feedback, and diagnostic data from our Insiders before taking additional steps towards re-releasing more broadly," explains Cable.
It appears the bug that caused file deletion was related to Windows 10 users who had enabled Known Folder Redirection to redirect folders like desktop, documents, pictures, and screenshots from the default location. Microsoft introduced code in its latest update to delete the empty and duplicate known folders, but it appears they weren't always empty. Microsoft has developed fixes to address a variety of problems related to these folder moves, and these fixes are now being tested with Windows Insiders. -
Google Launches Third-Gen Chromecast With 60fps Video, Multiroom Audio Support (variety.com)
Alongside the new Pixel smartphones, and the Pixel Slate laptop-tablet hybrid, Google on Tuesday also announced a new version of its Chromecast streaming adapter, the third generation of the company's streaming device, which supports playback video at higher frame rates and can also stream multiroom audio. From a report: The new device goes on sale Tuesday in the U.S., Australia, Canada, Denmark, Finland, Great Britain, Japan, Netherlands, New Zealand, Norway, Singapore and Sweden. Stateside, the new Chromecast once again costs $35 -- the same as its predecessor. [...] The bigger changes are on the inside: The new Chromecast is 15% faster than the previous model, which allows it to stream 1080p HD video with a rate of up to 60 frames per second (fps). "Everything becomes much smoother," said Google Home product manager Chris Chan during a recent interview with Variety. He specifically cited the growth of 60fps content on YouTube as one of the reasons Google added the new feature. -
Google Launches Third-Gen Chromecast With 60fps Video, Multiroom Audio Support (variety.com)
Alongside the new Pixel smartphones, and the Pixel Slate laptop-tablet hybrid, Google on Tuesday also announced a new version of its Chromecast streaming adapter, the third generation of the company's streaming device, which supports playback video at higher frame rates and can also stream multiroom audio. From a report: The new device goes on sale Tuesday in the U.S., Australia, Canada, Denmark, Finland, Great Britain, Japan, Netherlands, New Zealand, Norway, Singapore and Sweden. Stateside, the new Chromecast once again costs $35 -- the same as its predecessor. [...] The bigger changes are on the inside: The new Chromecast is 15% faster than the previous model, which allows it to stream 1080p HD video with a rate of up to 60 frames per second (fps). "Everything becomes much smoother," said Google Home product manager Chris Chan during a recent interview with Variety. He specifically cited the growth of 60fps content on YouTube as one of the reasons Google added the new feature. -
At Least Two US Attorneys General Are Investigating Google+ Breach (reuters.com)
At least two U.S. states are investigating a breach at Alphabet's Google that may have exposed private profile data of at least 500,000 users to hundreds of external developers. From a report: The investigation follows Google's announcement on Monday that it would shut down the consumer version of its social network Google+ and tighten its data-sharing policies after a "bug" potentially exposed user data that included names, email addresses, occupations, genders and ages. "We are aware of public reporting on this matter and are currently undertaking efforts to gain an understanding of the nature and cause of the intrusion, whether sensitive information was exposed, and what steps are being taken or called for to prevent similar intrusions in the future," Jaclyn Severance, a spokeswoman for Connecticut Attorney General George Jepsen, told Reuters in an email. The New York Attorney General's office also said it was looking into the breach. -
New Evidence of Hacked Supermicro Hardware Found in US Telecom: Bloomberg (bloomberg.com)
A major U.S. telecommunications company discovered manipulated hardware from Super Micro Computer in its network and removed it in August, fresh evidence of tampering in China of critical technology components bound for the U.S., Bloomberg reported Tuesday. From the report: The security expert, Yossi Appleboum, provided documents, analysis and other evidence of the discovery following the publication of an investigative report in Bloomberg Businessweek that detailed how China's intelligence services had ordered subcontractors to plant malicious chips in Supermicro server motherboards over a two-year period ending in 2015. Appleboum previously worked in the technology unit of the Israeli Army Intelligence Corps and is now co-chief executive officer of Sepio Systems in Gaithersburg, Maryland. His firm specializes in hardware security and was hired to scan several large data centers belonging to the telecommunications company. Bloomberg is not identifying the company due to Appleboum's nondisclosure agreement with the client. Unusual communications from a Supermicro server and a subsequent physical inspection revealed an implant built into the server's Ethernet connector, a component that's used to attach network cables to the computer, Appleboum said. -
Google Unveils Pixel Slate, Its First Laptop-Tablet Hybrid in Three Years (engadget.com)
In addition to announcing new flagship phones today, Google took the wraps off a new premium tablet called the Pixel Slate. It's a Chrome OS-powered slate with a 12.3-inch display that's supposed to be the sharpest in its class. Google claims this isn't just a laptop pretending to be a tablet or a phone pretending to be a computer. From a report: It has a resolution of 3,000 x 2,000 -- i.e., a pixel density of 293 ppi, which Google says is the highest for a premium 12-inch tablet. For reference, the Surface Pro 6 and iPad Pro (12.9 inch) come in at 267 ppi and 264 ppi, respectively. Google was able to make the screen so sharp because of an energy-efficient LCD technology called Low Temperature PolySilicon (LTPS), which let the company pack in more pixels without sacrificing size or battery. In fact, the Pixel Slate is supposed to last up to 12 hours on a charge, which is impressive for its skinny 7mm profile. [...] What stands out about the Pixel Slate is the version of Chrome OS it runs. When docked to a mouse or a keyboard accessory with a trackpad, it runs the regular desktop interface most people are familiar with by now. Disconnect peripherals, though, and it switches automatically to tablet mode, which is optimized for touch. In this profile, the home screen features icons for installed apps, much like the app drawer on Android phones. You can split the screen between up to two apps or drag and drop browser tabs to place them side by side. The Pixel Slate will be available with an Intel Celeron or Core M3, i5 or i7 processor, and 4GB to 16GB of RAM at a starting price of $599. The keyboard will cost an additional $200, should you wish to buy one, and the pen accessory will similarly cost $99. -
Commissioning Misleading Core i9-9900K Benchmarks (techspot.com)
On Monday, Intel unveiled the 9th Gen Core i9-9900K, which will rival AMD's Ryzen 2700X when it goes on sale in two weeks. We will soon be reading reviews of the 9th Gen Core i9-9900K, which Intel claims is the "world's best gaming processor," to see how exactly it fares against its AMD counterpart. But as reviewers test the new CPU and comply with an NDA/embargo (non-disclosure agreement) with Intel, which requires them to not share performance data of Intel's new CPU for another few days, surprisingly, one publication has already made a bold claim. In a story published this week, news outlet PCGamesN said, "Intel's Core i9 9900K is up to 50% faster than AMD's Ryzen 7 2700X in games." The publication cites data from an Intel-commissioned report [PDF] by third-party firm Principle Technologies to make the claim. TechSpot explains the issues with this: So Intel can go and publish their own "testing" done suspiciously through a third party ten days before reviews, while reviewers are prohibited from refuting the claims due to the NDA. First bad sign. Scrolling down PCGamesN says the following when looking over Intel's commissioned benchmarks. "But the real point of all this is for Intel to be able to hold out the 9900K as hands down the best gaming processor compared with the AMD competition, and in that it seems to have excelled. On some games, such as Civ 6 and PUBG, the performance delta isn't necessarily that great, but for the most part you're looking at between 30 and 50% higher frame rates from the 9900K versus the 2700X."
Right away many of the results looked very suspect to me, having spent countless hours benchmarking both the 2700X and 8700K, I have a good idea of how they compare in a wide range of titles and these results looked very off. Having spotted a few dodgy looking results my next thought was, why is PCGamesN publishing this misleading data and why aren't they not tearing the paid benchmark report apart? Do they simply not know better?
Over at the Principled Technologies website you can find the full report which states how they tested and the hardware used. Official memory speeds were used which isn't a particularly big deal, though they have gone out of their way to handicap Ryzen, or at the very least expose its weaknesses. Ryzen doesn't perform that well with fully populated memory DIMMs, two modules is optimal. However timings are also important and they used Corsair Vengeance memory without loading the extreme memory profile or XMP setting, instead they just set the memory frequency to 2933 and left the ridiculously loose default memory timings in place. These loose timings ensure compatibility so systems will boot up, but after that point you need to enable the memory profile. It's misleading to conduct benchmarks without executing this crucial step. -
Apple Releases iOS 12.0.1 With Fixes For Wi-Fi 2.4GHz Bug, Lightning Charging Issue (macrumors.com)
Apple has released iOS 12.0.1, the first official update to the iOS 12 OS that brings a number of fixes, including a fix to the charging issue that was affecting some iPhone XS owners. Mac Rumors reports: Today's update fixes several high profile bugs that have been plaguing iOS 12 users. It resolves an issue that could cause some iPhone XS devices not to charge when connected to a Lightning cable, an issue that was discovered shortly after iOS 12 was released. Reports suggested multiple iOS 12 devices were affected rather than just the iPhone XS, and it's likely that if other devices are impacted, the new update solves the problem.
https://www.macrumors.com/2018/10/08/apple-releases-ios-12-0-1-update/ iOS 12.0.1 also fixes a major Wi-Fi bug that could cause some iPhone XS devices to prefer to join a 2.4GHz Wi-Fi network rather than a 5GHz Wi-Fi network, resulting in perceived slower Wi-Fi connection speeds. After this update, many users who were stuck with their phones connecting to a 2.4GHz network should see much faster Wi-Fi connection speeds as the devices once again prefer a 5GHz network. Other bug fixes in this update include a reorientation of the "123" number key on the iPad, which was moved in the iOS 12 update and swapped with the emoji/language key, a fix for a problem that could cause subtitles not to appear in some video apps, and an issue where Bluetooth could become unavailable. -
Chrome 70's Upcoming Security Change Will Break Hundreds of Sites (techcrunch.com)
When Chrome 70 arrives on October 16th, it will drop trust for a major HTTPS certificate provider, putting hundreds of popular websites at risk of breaking. "Chrome 70 is expected to be released on or around October 16, when the browser will start blocking sites that run older Symantec certificates issued before June 2016, including legacy branded Thawte, VeriSign, Equifax, GeoTrust and RapidSSL certificates," reports TechCrunch. From the report: [D]espite more than a year to prepare, many popular sites are not ready. Security researcher Scott Helme found 1,139 sites in the top one million sites ranked by Alexa, including Citrus, SSRN, the Federal Bank of India, Pantone, the Tel-Aviv city government, Squatty Potty and Penn State Federal to name just a few. Ferrari, One Identity and Solidworks were named on the list but recently switched to new certificates, escaping any future outages.
HTTPS certificates encrypt the data between your computer and the website or app you're using, making it near-impossible for anyone -- even on your public Wi-Fi hotspot -- to intercept your data. Not only that, HTTPS certificates prove the integrity of the the site you're visiting by ensuring the pages haven't been modified in some way by an attacker. Most websites obtain their HTTPS certificates from a certificate authority, which abide by certain rules and procedures that over time become trusted by web browsers. If you screw that up and lose their trust, the browsers can pull the plug on all of the certificates from that authority. For these reasons, Google stopped supporting Symantec certificates last year after it was found to be issuing misleading and wrong certificates, as well as allowing non-trusted organizations to issue certificates without the proper oversight. -
UK High Court Blocks Billion-Dollar Privacy Lawsuit Against Google (bbc.com)
An anonymous reader quotes a report from the BBC: The High Court has blocked a bid to sue Google for allegedly unlawfully taking data from 4.4 million UK iPhone users. The legal case was mounted by a group called Google You Owe Us, led by former Which director Richard Lloyd. It sought compensation for people whose handsets were tracked by Google for several months in 2011 and 2012. Mr Lloyd said he was "disappointed" by the ruling and his group would appeal, but Google said it was "pleased" and thought the case was "without merit."
Mr Justice Warby who oversaw the case explained that it was blocked because the claims that people suffered damage were not supported by the facts advanced by the campaign group. Another reason for blocking it, he said, was the impossibility of reliably calculating the number of iPhone users affected by the alleged privacy breach. The complaint made by Google You Owe Us alleged that the cookies were used by Google to track people and get around settings on Apple's Safari browser that blocked such monitoring. Ads were sold on the basis of the personal information gathered by Google's cookies. The Safari workaround was used by Google on lots of different devices but the UK case centered on iPhone users. The group hoped to win $1.3 billion in compensation for affected users. -
FAA Moves Toward Treating Drones and Planes As Equals (hackaday.com)
Hackaday's Tom Nardi writes about the Federal Aviation Administration's push to repeal Section 336, which states that small remote-controlled aircraft as used for hobby and educational purposes aren't under FAA jurisdiction. "Despite assurances that the FAA will work towards implementing waivers for hobbyists, critics worry that in the worst case the repeal of Section 336 might mean that remote control pilots and their craft may be held to the same standards as their human-carrying counterparts," writes Nardi. From the report: Section 336 has already been used to shoot down the FAA's ill-conceived attempt to get RC pilots to register themselves and their craft, so it's little surprise they're eager to get rid of it. But they aren't alone. The Commercial Drone Alliance, a non-profit association dedicated to supporting enterprise use of Unmanned Aerial Systems (UAS), expressed their support for repealing Section 336 in a June press release: "Basic 'rules of the road' are needed to manage all this new air traffic. That is why the Commercial Drone Alliance is today calling on Congress to repeal Section 336 of the FAA Modernization and Reform Act of 2012, and include new language in the 2018 FAA Reauthorization Act to enable the FAA to regulate UAS and the National Airspace in a common sense way."
The 2018 FAA Reauthorization Act does not simply repeal Section 336, it also details the new rules the agency would impose on unmanned aircraft and their operators. Under these proposed rules, all unmanned aircraft would be limited to an altitude of 400 feet unless they have specific authorization to exceed that ceiling. They must also be operated within line of sight at all times, effectively ending long-range First Person View (FPV) flying. There's also language in the Reauthorization Act about studying the effects of flying unmanned aircraft at night, or over groups of people. It also states that drones, just like traditional aircraft, must be registered and marked. It even authorizes the FAA to investigate methods of remote identification for drones and their operators, meaning it's not unreasonable to conclude that RC aircraft may be required to carry transponders at some point in the future. To many in the hobby this seems like an unreasonable burden, especially in the absence of clear limits on what type of small aircraft would be excluded (if any). The report also notes that the 2018 FAA Reauthorization Act will require drone operators to have to pass an "aeronautical knowledge and safety test," and to show proof of their passing to any law enforcement if questioned. Also with the repeal of Section 336, "young people might actually be excluded from flying remote-controlled aircraft," Nardi writes. "While many RC planes and quadcopters are marketed as children's toys, in the absence of Section 336, it's not clear that a child could legally operate one. The FAA requires a person to be 16 years of age to obtain a pilot's license, and if unmanned aircraft are truly expected to obey the same 'rules of the road,' it's not unreasonable to assume that age requirement will remain in effect." -
Microsoft Announces Project Xcloud For Streaming Games To PCs, Consoles, and Mobile Devices (theverge.com)
Microsoft has unveiled "Project xCloud," its new game streaming service designed to work across consoles, PCs, and mobile devices. "Scaling and building out Project xCloud is a multi-year journey for us," explains Microsoft's cloud gaming chief Kareem Choudhry in a blog post. "We'll begin public trials in 2019 so we can learn and scale with different volumes and locations." The Verge reports: Microsoft has built custom hardware for its datacenters, as The Verge previously exclusively reported, so that existing and future Xbox games will be compatible with the services. Games will be streamed to devices, and Microsoft has been testing the xCloud service with Xbox wireless controllers connected to consoles, mobile devices, and PCs. Microsoft says its research teams are "creating ways to combat latency" via advanced network techniques combined with video encoding and decoding. This should make game streaming viable on 4G networks, too. -
Limo Firm To Judge: Tell Us Whether Uber Drivers Are Employees (arstechnica.com)
An anonymous reader quotes a report from Ars Technica: Lawyers representing a Southern California limousine company that sued Uber last month over state unfair competition allegations have now filed a motion for partial summary judgement. If the filing is granted by the judge, the motion would substantially streamline the case and answer the vexing question: are Uber drivers employees or not? The proposed class-action lawsuit, known as Diva Limousine v. Uber, relies on a recently decided California Supreme Court decision that makes it more difficult for companies to unilaterally declare their workers as contractors, which effectively deprives them of benefits that they would otherwise receive as employees.
In the California Supreme Court case, known as Dynamex, that court came up with a three-part test, known as the ABC test, to figure out whether companies can assert contractor status or not: "(A) that the worker is free from the control and direction of the hiring entity in connection with the performance of the work, both under the contract for the performance of the work and in fact, (B) that the worker performs work that is outside the usual course of the hiring entity's business, and (C) that the worker is customarily engaged in an independently established trade, occupation, or business, the worker should be considered an employee and the hiring business an employer under the suffer or permit to work standard in wage orders." "The standard for summary judgement is that there is no triable issue of material facts. That seems to be the case here," says Professor Veena Dubal of the University of California, Hastings, which is just blocks from Uber's headquarters in San Francisco.
"Under Dynamex, workers are likely employees for purposes of minimum wage and overtime if they perform work that is within the usual course of the hiring entity's business. Uber drivers provide rides, and Uber is a transportation company that facilitates the provision of those rides. I have a hard time imagining how Uber can argue that there is a triable issue of fact here, although I am confident that they will argue that they are a software company. They have lost that argument in courts across the world." -
IBM Pushes Beyond 7 Nanometers, Uses Graphene To Place Nanomaterials on Wafers (ieee.org)
An anonymous reader shares a report: Four years ago, IBM announced that it was investing $3 billion over the next five years into the future of nanoelectronics with a broad project it dubbed "7nm and Beyond." With at least one major chipmaker, GlobalFoundries, hitting the wall at the 7-nm node, IBM is forging ahead, using graphene to deposit nanomaterials in predefined locations without chemical contamination. In research described in the journal Nature Communications, the IBM researchers for the first time electrified graphene so that it helps to deposit nanomaterials with 97% accuracy.
"As this method works for a wide variety of nanomaterials, we envision integrated devices with functionalities that represent the unique physical properties of the nanomaterial," said Mathias Steiner, manager at IBM Research-Brazil. "We also can envision on-chip light detectors and emitters operating within a distinct wavelength range determined by the optical properties of the nanomaterial." As an example, Steiner explained that if you wanted to modify the spectral performance of an optoelectronic device, you could simply replace the nanomaterial while keeping the manufacturing process flow the same. If you take the method one step further, you could assemble different nanomaterials in different places doing multiple passes of assembly to create on-chip light detectors operating in different detection windows at the same time. -
iFixit Confirms You Can Still Repair Your Own iMac Pro Or MacBook Pro -- At Least For Now (engadget.com)
After it was reported that proprietary diagnostic software was needed in order to replace key parts on computers equipped with Apple's T2 chip, iFixit decided to put that claim to the test by replacing a part on a brand-new 2018 MacBook Pro. They found that after pulling it apart and replacing the display, it still worked -- even without the software. Engadget reports: As they put it, any "secret repair kill switch hasn't been activated -- yet." So far, it has limited approaches that limit repairs based on security to the TouchID and FaceID sensors that require specialized software, as I noted yesterday, even though people have reported trouble with the ambient light sensor after replacing iPhone displays. While it's possible that a future software update could change things and make it require specialized software that only official Apple Stores and authorized service centers have access to, we're not there yet. Passing "right to repair" laws currently under consideration could be a big step to guaranteeing things stay that way. -
UK Cyber Security Agency Backs Apple, Amazon China Hack Denials (reuters.com)
An anonymous reader quotes a report from Reuters: Britain's national cyber security agency said on Friday it had no reason to doubt the assessments made by Apple and Amazon challenging a Bloomberg report that their systems contained malicious computer chips inserted by Chinese intelligence services. "We are aware of the media reports but at this stage have no reason to doubt the detailed assessments made by AWS and Apple," said the National Cyber Security Centre, a unit of Britain's eavesdropping agency, GCHQ. AWS refers to Amazon Web Services, the company's cloud-computing unit.
"The NCSC engages confidentially with security researchers and urges anybody with credible intelligence about these reports to contact us," it said. Apple's recently retired general counsel, Bruce Sewell, told Reuters he called the FBI's then-general counsel James Baker last year after being told by Bloomberg of an open investigation into Super Micro Computer, a hardware maker whose products Bloomberg said were implanted with malicious Chinese chips. "I got on the phone with him personally and said, 'Do you know anything about this?," Sewell said of his conversation with Baker. "He said, 'I've never heard of this, but give me 24 hours to make sure.' He called me back 24 hours later and said 'Nobody here knows what this story is about.'" The U.S. Department of Homeland Security said on Saturday that it too had no reason to doubt statements from companies that have denied the Bloomberg report.
"The Department of Homeland Security is aware of the media reports of a technology supply chain compromise," DHS said in a statement. "Like our partners in the UK, the National Cyber Security Center, at this time we have no reason to doubt the statements from the companies named in the story," it said. -
UK Cyber Security Agency Backs Apple, Amazon China Hack Denials (reuters.com)
An anonymous reader quotes a report from Reuters: Britain's national cyber security agency said on Friday it had no reason to doubt the assessments made by Apple and Amazon challenging a Bloomberg report that their systems contained malicious computer chips inserted by Chinese intelligence services. "We are aware of the media reports but at this stage have no reason to doubt the detailed assessments made by AWS and Apple," said the National Cyber Security Centre, a unit of Britain's eavesdropping agency, GCHQ. AWS refers to Amazon Web Services, the company's cloud-computing unit.
"The NCSC engages confidentially with security researchers and urges anybody with credible intelligence about these reports to contact us," it said. Apple's recently retired general counsel, Bruce Sewell, told Reuters he called the FBI's then-general counsel James Baker last year after being told by Bloomberg of an open investigation into Super Micro Computer, a hardware maker whose products Bloomberg said were implanted with malicious Chinese chips. "I got on the phone with him personally and said, 'Do you know anything about this?," Sewell said of his conversation with Baker. "He said, 'I've never heard of this, but give me 24 hours to make sure.' He called me back 24 hours later and said 'Nobody here knows what this story is about.'" The U.S. Department of Homeland Security said on Saturday that it too had no reason to doubt statements from companies that have denied the Bloomberg report.
"The Department of Homeland Security is aware of the media reports of a technology supply chain compromise," DHS said in a statement. "Like our partners in the UK, the National Cyber Security Center, at this time we have no reason to doubt the statements from the companies named in the story," it said. -
Microsoft Open Sources Parts of Minecraft's Java Code (kotaku.com.au)
Four years after Microsoft acquired Minecraft developer Mojang, the company has decided to open source some of Minecraft's Java code. According to Kotaku, Microsoft and Mojang released two parts of Minecraft's Java code in library form, so that "anyone can pick them up and use them in their own game," says Lead Engineer Nathan Adams. From the report: For now, there's just the two libraries: "Brigadier," a "command parser and dispatcher"; and "DataFixerUpper," designed for "incremental building, merging and optimization of data transformations ... [to convert] the game data for Minecraft: Java Edition between different versions of the game." While the news doesn't mean much for players, it will be a boon for interested programmers and developers, keen to see the guts of Minecraft. The plan is to open source more components in the future, though no time frame is specified. For now, if you want to check out Brigadier or DataFixerUpper, both can be found on Mojang's GitHub page. -
How To Disable Gmail's Annoying New 'Smart Compose' Predictive Typing Feature (vortex.com)
"I've seen this 'Smart Compose' feature described publicly with a range of adjectives," writes Lauren Weinstein, "including intrusive, wonderful, invasive, creepy, accurate, loony, mistaken, helpful, misguided -- well, you get the point, opinions are all over the map...." My foundational complaint here isn't that Google deployed Smart Compose, but rather that they enabled it by default without providing users even basic related information, including the all important "How the hell do I turn this damned thing off?" -- the very question filling my inbox of late!
So here's how you turn it off. It's easy, IF you know how.
One anonymous reader has another solution. "I'm just using Gmail in HTML-only mode now. Its actually far more usable than their new crap and I'm quite fond of the older look anyway." You could also just stop using Gmail -- but Weinstein thinks it's easier to disable the "Smart Compose feature.
"With the understanding that Google has great AI and is itching to use it whenever and wherever possible, I don't really need it analyzing my email drafts as I type them. At least in my case, its proposed wordings are nearly always -- what's the technical term? -- oh yes, WRONG.
"And the predictions intrusively and continuously interrupt my flow of typing as each one needs to be individually bypassed." -
Elon Musk Tweets About Tesla Sales, the SEC, and a Special Offer From SpaceX (marketwatch.com)
Tesla's model 3 is now one of the five top-selling sedans in America (while sales of the Mercedes-Benz C-Class are down 28 percent through September), Bloomberg reports. Elon Musk tweeted out a link to their article on Thursday -- but it was his other tweet, a satirical criticism of the SEC, that made headlines. MarketWatch reports: Tesla shares ended 7% lower on Friday as Wall Street reacted to Musk's tweet seemingly out of nowhere late Thursday about the "Shortseller Enrichment Commission." Musk also tweeted that day that short sellers were "value destroyers" and should be illegal. Friday's losses for Tesla "produced more than half a billion in paper profit for the shorts," S3 Partners LLC, which tracks real-time short interest data, said in a note. Since news of the Musk's settlement with the SEC, shorts are up $941 million, S3 Partners said. "Clearly short positions are building in the wake of strong selling by longs, as Musk demonstrates a refusal to keep away from controversy," the note said.
The article notes that last Saturday the SEC settled charges that Musk misled investors with a tweet about taking Tesla private. "Terms of the settlement included requiring Tesla to rein in Musk's social-media communications, but it was unclear when Tesla intends to implement that.... The settlement has yet to be court-approved."
On Friday Musk was back on point, tweeting out the news that Tesla owners "can refer someone to buy a Tesla & get any image they want laser etched in glass & sent to deep space for millions of years." -
Microsoft Pulls Windows 10 October Update (zdnet.com)
Amid reports of users facing a number of issues after updating their computers to Windows 10 October 2018 Update, Microsoft said Saturday it was pausing the rollout of the latest version of its Windows 10 desktop operating system. ZDNet: In a support document updated today, October 6, the Redmond-based OS maker said it took this decision after users complained that v1809 had deleted files after the update. We have paused the rollout of the Windows 10 October 2018 Update (version 1809) for all users as we investigate isolated reports of users missing some files after updating. Microsoft employs a gradual rollout scheme, and not all Windows 10 users have received its latest bi-annual OS update. The October 2018 Update is no longer available for download, and Microsoft urges users who manually downloaded a Windows 10 installation package to wait until new installation media is available. "We will provide an update when we resume rolling out the Windows 10 October 2018 Update to customers," Microsoft said. -
Apple Insiders Say Nobody Internally Knows What's Going On With Bloomberg's China Hack Story (buzzfeednews.com)
An anonymous reader quotes a report from BuzzFeed News: Multiple senior Apple executives, speaking with BuzzFeed News on the condition of anonymity so that they could speak freely all denied and expressed confusion with a report earlier this week that the company's servers had been compromised by a Chinese intelligence operation. On Thursday morning, Bloomberg Businessweek published a bombshell investigation. The report -- the result of more than a year of reporting and over 100 interviews with intelligence and company sources -- alleged that Chinese spies compromised and infiltrated almost 30 U.S. companies including Apple and Amazon by embedding a tiny microchip inside company servers. Both Amazon and Apple issued uncharacteristically strong and detailed denials of Bloomberg's claims.
Reached by BuzzFeed News multiple Apple sources -- three of them very senior executives who work on the security and legal teams -- said that they are at a loss as to how to explain the allegations. These people described a massive, granular, and siloed investigation into not just the claims made in the story, but into unrelated incidents that might have inspired them. A senior security engineer directly involved in Apple's internal investigation described it as "endoscopic," noting they had never seen a chip like the one described in the story, let alone found one. "I don't know if something like this even exists," this person said, noting that Apple was not provided with a malicious chip or motherboard to examine. "We were given nothing. No hardware. No chips. No emails." Equally puzzling to Apple execs is the assertion that it was party to an FBI investigation -- Bloomberg wrote that Apple "reported the incident to the FBI." A senior Apple legal official told BuzzFeed News the company had not contacted the FBI, nor had it been contacted by the FBI, the CIA, the NSA or any government agency in regards to the incidents described in the Bloomberg report. This person's purview and responsibilities are of such a high level that it's unlikely they would not have been aware of government outreach. -
Honda-Waymo Talks Are Said To Have Faltered On Tech Access (bloomberg.com)
Honda has reportedly walked away from a deal with Alphabet's Waymo to jointly develop autonomous vehicles earlier this year. Instead, Honda bought into Cruise, the self-driving car startup whose majority shareholder is General Motors. Bloomberg reports on the possible reasons why the deal fell through: For one, Waymo wasn't willing to share the substantial technology it had already developed to run autonomous vehicles, and was seeking to cut a deal that would focus on Honda providing the cars, according to two people with knowledge of the matter, who asked not to be named because the talks were private. Essentially, Waymo wanted to be the brains and have Honda be the brawn in the relationship.
One person familiar with the talks said that Waymo wanted Honda to supply electric vehicles -- an area where the automaker is just beginning to establish itself. All of Waymo's existing partnerships supply EVs or plug-in hybrids because its autonomous driving system needs more power than the puny 12-volt batteries in conventional cars. After starting talks with Honda in late 2016, Honda told Waymo it was working on an EV for the partnership that would compete with Tesla Inc.'s Model 3. But by December of last year, Waymo was concerned about progress toward that goal and Honda went shopping for battery packs to power the vehicle, the person said. -
Years After ProPublica Exposed Vizio For Spying On Users, Lawyers Will Make Millions From Lawsuit (hollywoodreporter.com)
After it was revealed that Vizio was tracking customers' viewing habits and sharing that data with advertisers, a class-action lawsuit was filed against the company. Now, Ars Technica is reporting that "lawyers representing Vizio TV owners have asked a federal judge in Orange County, California to sign off on [the settlement] with the company for $17 million, for an affected class of 16 million people, who must opt-in to get any money." The company "also agrees to delete all data that it collected." From the report: Notice of the lawsuit will be shown directly on the Vizio Smart TVs, three separate times, as well as through paper mailings. When it's all said and done, new court filings submitted on Thursday say each of those 16 million people will get a payout of somewhere between $13 and $31. By contrast, their lawyers will collectively earn a maximum payout of $5.6 million in fees.
Eventually, the company agreed to pay $2.2 million to settle a complaint brought by the Federal Trade Commission. However, this new settlement is related to an entirely separate lawsuit, one that was consolidated in federal court in southern California. This $17 million amount is more than Vizio made by licensing the data collected, according to a source with knowledge of the deal. -
Years After ProPublica Exposed Vizio For Spying On Users, Lawyers Will Make Millions From Lawsuit (hollywoodreporter.com)
After it was revealed that Vizio was tracking customers' viewing habits and sharing that data with advertisers, a class-action lawsuit was filed against the company. Now, Ars Technica is reporting that "lawyers representing Vizio TV owners have asked a federal judge in Orange County, California to sign off on [the settlement] with the company for $17 million, for an affected class of 16 million people, who must opt-in to get any money." The company "also agrees to delete all data that it collected." From the report: Notice of the lawsuit will be shown directly on the Vizio Smart TVs, three separate times, as well as through paper mailings. When it's all said and done, new court filings submitted on Thursday say each of those 16 million people will get a payout of somewhere between $13 and $31. By contrast, their lawyers will collectively earn a maximum payout of $5.6 million in fees.
Eventually, the company agreed to pay $2.2 million to settle a complaint brought by the Federal Trade Commission. However, this new settlement is related to an entirely separate lawsuit, one that was consolidated in federal court in southern California. This $17 million amount is more than Vizio made by licensing the data collected, according to a source with knowledge of the deal. -
Bloomberg's Spy Chip Story Reveals the Murky World of National Security Reporting (techcrunch.com)
TechCrunch's security editor, Zack Whittaker, analyzes Bloomberg's recent report that China infiltrated Apple, Amazon and others via a tiny microchip inserted into servers at the data centers associated with these companies. With Apple and Amazon refuting Bloomberg's claims, Whittaker talks about the "murky world of national security reporting" and the difficulties of reporting stories of this magnitude with anonymous sources. An anonymous reader shares an excerpt from his report: Today's bombshell Bloomberg story has the internet split: either the story is right, and reporters have uncovered one of the largest and jarring breaches of the U.S. tech industry by a foreign adversary or it's not, and a lot of people screwed up. Welcome to the murky world of national security reporting. I've covered cybersecurity and national security for about five years, most recently at CBS, where I reported exclusively on several stories -- including the U.S. government's covert efforts to force tech companies to hand over their source code in an effort to find vulnerabilities and conduct surveillance. And last year I revealed that the National Security Agency had its fifth data breach in as many years, and classified documents showed that a government data collection program was far wider than first thought and was collecting data on U.S. citizens. Even with this story, my gut is mixed.
Naturally, people are skeptical of this "spy chip" story. On one side you have Bloomberg's decades-long stellar reputation and reporting acumen, a thoroughly researched story citing more than a dozen sources -- some inside the government and out -- and presenting enough evidence to present a convincing case. On the other, the sources are anonymous -- likely because the information they shared wasn't theirs to share or it was classified, putting sources in risk of legal jeopardy. But that makes accountability difficult. No reporter wants to say "a source familiar with the matter" because it weakens the story. It's the reason reporters will tag names to spokespeople or officials so that it holds the powers accountable for their words. And, the denials from the companies themselves -- though transparently published in full by Bloomberg -- are not bulletproof in outright rejection of the story's claims. These statements go through legal counsel and are subject to government regulation. These statements become a counterbalance -- turning the story from an evidence-based report into a "he said, she said" situation. That puts the onus on the reader to judge Bloomberg's reporting. Reporters can publish the truth all they want, but ultimately it's down to the reader to believe it or not. Whittaker ends by saying "Bloomberg's delivery could have been better," and that they "missed an opportunity to be more open and transparent in how it came to the conclusions that it did."
"Journalism isn't proprietary," Whittaker writes. "It should be open to as many people as possible. If you're not transparent in how you report things, you lose readers' trust. That's where the story rests on shaky ground. Admittedly, as detailed and as well-sourced as the story is, you -- and I -- have to put a lot of trust and faith in Bloomberg and its reporters." -
China's Tencent Employs Facial Recognition To Detect Minors in Top-Grossing Mobile Game (scmp.com)
AmiMoJo shares a report: Tencent Holdings, the world's top-grossing games publisher, will use facial recognition technology to detect minors amid tighter scrutiny by the Chinese government over concerns excessive video gaming is hurting public health. Tencent's blockbuster mobile title, Honour of Kings, will be the first to test the technology, with some 1,000 new users in Beijing and Shenzhen selected to verify their identities through camera checks, the company said in a statement. In mid-September, Tencent found that almost half of the 600 game-playing minors and their parents who took part in its survey doubted facial-recognition checks in games, according to the statement. Tencent said it hoped to see how to use facial recognition and unearth problems through the scheme. -
China's Tencent Employs Facial Recognition To Detect Minors in Top-Grossing Mobile Game (scmp.com)
AmiMoJo shares a report: Tencent Holdings, the world's top-grossing games publisher, will use facial recognition technology to detect minors amid tighter scrutiny by the Chinese government over concerns excessive video gaming is hurting public health. Tencent's blockbuster mobile title, Honour of Kings, will be the first to test the technology, with some 1,000 new users in Beijing and Shenzhen selected to verify their identities through camera checks, the company said in a statement. In mid-September, Tencent found that almost half of the 600 game-playing minors and their parents who took part in its survey doubted facial-recognition checks in games, according to the statement. Tencent said it hoped to see how to use facial recognition and unearth problems through the scheme. -
California Bans Default Passwords on Any Internet-Connected Device (engadget.com)
In less than two years, anything that can connect to the internet will come with a unique password -- that is, if it's produced or sold in California. From a report: The "Information Privacy: Connected Devices" bill that comes into effect on January 1, 2020, effectively bans pre-installed and hard-coded default passwords. It only took the authorities about two weeks to approve the proposal made by the state senate. The new regulation mandates device manufacturers to either create a unique password for each device at the time of production or require the user to create one when they interact with the device for the first time. According to the bill, it applies to any connected device, which is defined as a "physical object that is capable of connecting to the Internet, directly or indirectly, and that is assigned an Internet Protocol address or Bluetooth address." -
A Look at Facebook's Use of Systemd (phoronix.com)
At an event this month (you can find the video of it here), Davide Cavalca, a production engineer at Facebook, spoke about the growing adoption of systemd at the data centers of the company. From a report: Facebook continues making use of systemd's many features inside their data centers. Some of their highlights for systemd use in 2018 includes: Facebook's servers have been relying on systemd for about the past two years. Facebook is using CentOS 7 everywhere from hosts to containers. While relying on CentOS 7, Facebook backports a lot of packages including new systemd releases, Meson, other dependencies, and of course new Linux kernel releases. Facebook is working on "pystemd" as a Python (Cython) wrapper on top of SD-BUS. -
Secret Amazon Brands Are Quietly Taking Over Amazon.com (qz.com)
An anonymous reader shares a report: Arabella. Lark & Roe. Mae. NuPro. Small Parts. You might not know it from their names, but these brands all belong to Amazon. Amazon's private label business is booming, on pace to generate $7.5 billion this year and $25 billion by 2022, according to estimates from investment firm SunTrust Robinson Humphrey. To accelerate that growth, the company is inviting manufacturers to create products exclusively for its collection of private brands. The "Amazon Accelerator Program" is hiring a senior product manager for private brands, CNBC reported. The job listing invites applicants to "invent and Think Big to take an idea from concept to reality for Amazon customers." Duties include managing and planning inventory, identifying business opportunities, and working across a wide swath of Amazon divisions, including consumables, Prime Pantry, Prime Fresh, Prime Now, and Amazon Go. Another job listing spotted by CNBC, for a private brands program leader, notes that the "Private Brands team is rapidly expanding and is looking for an exceptional product leader to grow the business." Brands created through the accelerator will be exclusive to Amazon, but not owned by it, the company said. Further reading: Amazon is Stuffing Its Search Results Pages With Ads. -
The Software Side of China's Supply Chain Attack (bloomberg.com)
Bloomberg BusinessWeek published a story on Thursday which claimed that data center equipments run by Amazon Web Services and Apple were subject to surveillance from the Chinese government via a tiny microchip inserted during the equipment manufacturing process. Both Amazon and Apple have vehemently refuted Bloomberg's reporting. Bloomberg's reporters, who have spent more than a year on the story and have cited 17 sources for the claims they make in it, have doubled down. In a new story, the news outlet reports that Supermicro was the target of at least two additional forms of attack. This report claims that Facebook was aware of these attacks, too, which has confirmed it. From the story: The first of the other two prongs involved a Supermicro online portal that customers used to get critical software updates, and that was breached by China-based attackers in 2015. The problem, which was never made public, was identified after at least two Supermicro customers downloaded firmware -- software installed in hardware components -- meant to update their motherboards' network cards, key components that control communications between servers running in a data center. The code had been altered, allowing the attackers to secretly take over a server's communications, according to samples passed around at the time among a small group of Supermicro customers. One of these customers was Facebook.
"In 2015, we were made aware of malicious manipulation of software related to Supermicro hardware from industry partners through our threat intelligence industry sharing programs," Facebook said in an emailed statement. "While Facebook has purchased a limited number of Supermicro hardware for testing purposes confined to our labs, our investigations reveal that it has not been used in production, and we are in the process of removing them." The victims considered the faulty code a serious breach. Further reading: Bloomberg's spy chip story reveals the murky world of national security reporting. -
Windows 10 October 2018 Update is Deleting User Data For Many (windowscentral.com)
New submitter CaptainPhoton writes: I updated my test PC using the Windows 10 October Update (1809). That seemed safe enough, so I proceeded to upgrade my production PC. I just encountered an issue where everything in the Documents folder was deleted, even though I had clicked the option to keep my files. Everything else in my user profile remains intact. I am curious, how widespread is this issue? Has anyone else here encountered this issue? Some articles are starting to crop up acknowledging this failure. Citing complaints from several users, Windows Central reports: Sometimes, when you perform an upgrade to a new version of Windows 10, the setup may move the user files to the previous installation backup located inside the "Windows.old" folder. However, according to those users experiencing sudden data loss, they looked everywhere, and their personal files are nowhere to be found.