×
Transportation

Cruise Robotaxis Now Run All Day In San Francisco (electrek.co) 37

According to a recent Twitter post from Cruise CEO Kyle Vogt, the robotaxi service is now operating all day in San Francisco. The post says we will soon see Cruise "open up full operations in other cities," which may soon include Dallas, Texas, according to a recent job listing. From the report: According to a recent LinkedIn post from Cruise CEO Kyle Vogt, the robotaxi network is now running 24/7 rides across San Francisco, beginning with employees. As The Kilowatts points out on Twitter, nonemployees in the San Francisco area are still limited to about one-third of the city between f 10:00 p.m. and 5:30 a.m. In his post, Vogt said that in accordance with safety policies, around-the-clock public rides will roll out "very soon."

Cruise is a robotaxi startup founded in the San Francisco Bay area in 2013. In the last decade, the company (along with plenty of support from GM) has made tremendous progress in its home state of California, where it continues to try and expand. Services that began in San Francisco have since grown to Phoenix, Arizona, and, most recently, Austin, Texas. In February, the Cruise president, CEO, and cofounder, Kyle Vogt, shared that the company had surpassed one million miles driven without anyone behind the wheel. In many ways, the city by the bay has become a proving ground for Cruise's electric robotaxis, and its hilly, congested terrain will act as a testing site for yet another major milestone -- around-the-clock robotaxi operations.

Communications

AT&T Helps Complete the First 'Space-Based Voice Call' Using a Standard Smartphone (engadget.com) 34

Satellite manufacturer AST SpaceMobile partnered with AT&T to make the first two-way audio call using satellites with a standard smartphone. "The initial call was placed using AT&T's networks in Midland, Texas, to mobile carrier Ratuken in Japan on an unmodified Samsung Galaxy S22 smartphone using AST SpaceMobile's BlueWalker 3 satellite," reports Engadget. AST SpaceMobile claims to be building "the first and only space-based cellular broadband network." From the report: AT&T aims to use satellites to provide global cellular broadband from 2G to 5G. "Achieving what many once considered impossible, we have reached the most significant milestone to date in our quest to deliver global cellular broadband from space," Abel Avellan, CEO and chairman of AST SpaceMobile, said in a release. "While we take a moment to celebrate this tremendous accomplishment, we remain focused on the path ahead and pivotal next steps that get us closer to our goal of transforming the way the world connects."

It's unclear whether satellite access would come at an extra cost. In AT&T's original AST SpaceMobile partnership announcement, the company couldn't say whether existing plans would include satellite coverage. [...] While satellite offerings aren't available for consumers yet, this successful test brings widespread access one step closer to becoming a reality.

AI

Stability AI Launches StableLM, an Open Source ChatGPT Alternative 17

An anonymous reader quotes a report from Ars Technica: On Wednesday, Stability AI released a new family of open source AI language models called StableLM. Stability hopes to repeat the catalyzing effects of its Stable Diffusion open source image synthesis model, launched in 2022. With refinement, StableLM could be used to build an open source alternative to ChatGPT. StableLM is currently available in alpha form on GitHub in 3 billion and 7 billion parameter model sizes, with 15 billion and 65 billion parameter models to follow, according to Stability. The company is releasing the models under the Creative Commons BY-SA-4.0 license, which requires that adaptations must credit the original creator and share the same license.

Stability AI Ltd. is a London-based firm that has positioned itself as an open source rival to OpenAI, which, despite its "open" name, rarely releases open source models and keeps its neural network weights -- the mass of numbers that defines the core functionality of an AI model -- proprietary. "Language models will form the backbone of our digital economy, and we want everyone to have a voice in their design," writes Stability in an introductory blog post. "Models like StableLM demonstrate our commitment to AI technology that is transparent, accessible, and supportive." Like GPT-4 -- the large language model (LLM) that powers the most powerful version of ChatGPT -- StableLM generates text by predicting the next token (word fragment) in a sequence. That sequence starts with information provided by a human in the form of a "prompt." As a result, StableLM can compose human-like text and write programs.

Like other recent "small" LLMs like Meta's LLaMA, Stanford Alpaca, Cerebras-GPT, and Dolly 2.0, StableLM purports to achieve similar performance to OpenAI's benchmark GPT-3 model while using far fewer parameters -- 7 billion for StableLM verses 175 billion for GPT-3. Parameters are variables that a language model uses to learn from training data. Having fewer parameters makes a language model smaller and more efficient, which can make it easier to run on local devices like smartphones and laptops. However, achieving high performance with fewer parameters requires careful engineering, which is a significant challenge in the field of AI. According to Stability AI, StableLM has been trained on "a new experimental data set" based on an open source data set called The Pile, but three times larger. Stability claims that the "richness" of this data set, the details of which it promises to release later, accounts for the "surprisingly high performance" of the model at smaller parameter sizes at conversational and coding tasks.
According to Ars' "informal experiments," they found StableLM's 7B model "to perform better (in terms of outputs you would expect given the prompt) than Meta's raw 7B parameter LLaMA model, but not at the level of GPT-3." They added: "Larger-parameter versions of StableLM may prove more flexible and capable."
AI

Supreme Court Rejects Computer Scientist's Lawsuit Over AI-Generated Inventions (reuters.com) 69

The U.S. Supreme Court on Monday declined to hear a challenge by computer scientist Stephen Thaler to the U.S. Patent and Trademark Office's refusal to issue patents for inventions his AI system created. From a report: The justices turned away Thaler's appeal of a lower court's ruling that patents can be issued only to human inventors and that his AI system could not be considered the legal creator of two inventions that he has said it generated. Thaler founded Imagination Engines Inc, an advanced artificial neural network technology company based in Saint Charles, Missouri. According to Thaler, his DABUS system, short for Device for the Autonomous Bootstrapping of Unified Sentience, created unique prototypes for a beverage holder and emergency light beacon entirely on its own.

The U.S. Patent and Trademark Office and a federal judge in Virginia rejected his patent applications for the inventions on the grounds that DABUS is not a person. The patent-focused U.S. Court of Appeals for the Federal Circuit upheld those decisions last year and said U.S. patent law unambiguously requires inventors to be human beings. Thaler told the Supreme Court that AI is being used to innovate in fields ranging from medicine to energy, and that rejecting AI-generated patents "curtails our patent system's ability - and thwarts Congress's intent - to optimally stimulate innovation and technological progress."

Movies

Redbox Owner Interested In Buying Netflix's DVD Business (hollywoodreporter.com) 56

Redbox CEO Bill Rouhana told The Hollywood Reporter that he'd like to buy the business, saying: "I wish Netflix would sell me that business instead of shutting it down." From the report: Redbox is already the biggest DVD rental company in the U.S., with a network of some 32,000 red DVD kiosks across the country. Just this week, it announced plans to add another 1,500 kiosks at Dollar General stores (Rouhana says the Dollar General kiosks are some of the company's most profitable). While the DVD business kickstarted Netflix's meteoric rise, in recent years it has been on the decline. In 2022, it had $146 million in revenue, down $40 million from the year prior. Q1 had revenue of $32 million, suggesting a further decline this year.

And Rouhana says he has reached out to Netflix over the years expressing a desire to acquire the DVD business, to no avail. "I have tried like three or four times to reach out to the corporate development people about it but just got rebuffed each time," Rouhana says. "So when I saw it being closed, I thought, 'Well, maybe they'll do it now.'" A Netflix source tells THR that the company is winding down the business, and not selling it. (As for what happens to those warehouses full of DVDs that fueled Netflix's red envelope business, they seem to be in limbo for now.)

Even if that is the case, Rouhana says he believes Netflix's decision to shutter the service will benefit his company. "This could be a great boon to us because now there are a whole bunch of people who are going to look for a new place to get their DVDs, and we're close to 90 percent of them based on where our kiosks are located," he says. And, he notes, he does not expect the DVD business to go away anytime soon. "We believe in it, and we believe it's going to be around for a while. Like most legacy things, it's a lot harder to kill them than people say, I believe," he adds.

In fact, he believes the DVD business is in a position for growth over the next few years, thanks to a larger slate of movies hitting theaters and a desire from studios to reengage with windowing strategies. "We programmed our business plan for us to get back to about 30 percent of the 2019 level," Rouhana says. "I feel that's pretty conservative, I think we'll be better than that. But, you know, that's how we built the business plan that we've articulated. So people can decide for themselves whether they think that's overly optimistic or overly pessimistic."

Privacy

Mullvad VPN Maker Says Police Tried To Raid Its Offices But Couldn't Find Any User Data (theverge.com) 81

Mullvad, the Swedish company behind Mullvad VPN (virtual private network), says police walked away with nothing after attempting to seize computers from its office. From a report: According to an update on Mullvad's site, the authorities left and didn't take anything after it informed them that the company doesn't store customer data. "We argued they had no reason to expect to find what they were looking for and any seizures would therefore be illegal under Swedish law," Mullvad writes. "After demonstrating that this is indeed how our service works and them consulting the prosecutor they left without taking anything and without any customer information." [...] Mullvad says this is the first time in its 14 years of operating a VPN that police have issued a search warrant, and company CEO Jan Jonsson tells The Verge he doesn't "know exactly what they were looking for." Even if the authorities had seized its servers, Jonsson says that police wouldn't have found anything due to its strict policies against keeping data. The Verge reached out to Swedish authorities with a request for more information but didn't immediately hear back.
Government

The EARN IT Act Will Be Introduced To Congress For the Third Time (engadget.com) 107

An anonymous reader quotes a report from Engadget: The controversial EARN IT Act, first introduced in 2020, is returning to Congress after failing twice to land on the president's desk. The Eliminating Abusive and Rampant Neglect of Interactive Technologies Act, (EARN IT) Act is intended to minimize the proliferation of Child Sexual Abuse Material (CSAM) throughout the web, but detractors say it goes too far and risks further eroding online privacy protections.

Here's how it would work, according to the language of the bill's reintroduction last year. Upon passing, EARN IT would create a national commission composed of politically-appointed law enforcement specialists. This body would be tasked with making a list of best practices to ostensibly curb the digital distribution of CSAM. If online service providers do not abide by these best practices, they would potentially lose blanket immunity under Section 230 of the Communications Decency Act, opening them up to all kinds of legal hurdles -- including civil lawsuits and criminal charges. [...] The full text of H.R.2732 is not publicly available yet, so it's unclear if anything has changed since last year's attempt, though when reintroduced last year it was more of the same. (We've reached out to the offices of Reps. Wagner and Garcia for a copy of the bill's text.) A member of Senator Graham's office confirmed to Engadget that the companion bill will be introduced within the next week. It also remains to be seen if and when this will come up for a vote. Both prior versions of EARN IT died in committee before ever coming to a vote.
The Center for Internet and Society at Stanford Law School, the Center for Democracy and Technology, and the American Civil Liberties Union all oppose the bill.

Those defending it include the Rape, Abuse & Incest National Network (RAINN), saying that it will "incentivize technology companies to proactively search for and remove" CSAM materials. "Tech companies have the technology to detect, remove, and stop the distribution of child sexual abuse material. However, there is no incentive to do so because they are subject to no consequences for their inaction."
Android

Jack Dorsey's Bluesky App Is Now On Android (techcrunch.com) 28

Bluesky, the Twitter alternative backed by Twitter co-founder and CEO Jack Dorsey, has now rolled out to Android users. TechCrunch reports: The app, which promises a future of decentralized social networking and choose-your-own algorithms, initially launched to iOS users in late February and remains in a closed beta. The exclusivity is driving demand for the newer social network to some extent, but so is having Dorsey's name attached. Bluesky aims to give users algorithmic choice, letting them eventually choose from a marketplace of algorithms that let them control what they see on their own feed, instead of having it controlled by some central authority.

At launch, however, Bluesky remains a pared-down version of Twitter without many of the features that make the social network what it is today, including basic tools for tracking likes or bookmarks, editing tweets, quote-tweeting, DM's, using hashtags and more. It's also building in decentralization with its own protocol -- the AT Protocol -- instead of contributing to the existing work around ActivityPub, the protocol powering the open source Twitter alternative Mastodon and a range of other decentralized apps in the wider "Fediverse" -- the name for these interconnected servers running open software used for web publishing. That puts Bluesky on the outside of where a lot of the current activity is taking place around decentralized social networking.
You can download Bluesky on the Google Play Store here.
The Internet

ICANN/Verisign Proposal Would Allow Any Government To Seize Domain Names (freespeech.com) 91

Longtime Slashdot reader GeorgeK and author at FreeSpeech.com writes: ICANN and Verisign have quietly proposed enormous changes to global domain name policy in their proposed renewal of the .NET registry agreement, which is now open for public comments. They've proposed allowing any government in the world to cancel, redirect, or transfer to their control applicable domain names. This is an outrageous and dangerous proposal that must be stopped, as it does not respect due process. While this proposal is currently only for .NET domain names, presumably they would want to also apply it to other extensions like .COM as those contracts come up for renewal. "This proposal represents a complete government takeover of domain names, with no due process protections for registrants," adds Kirikos. "It would usurp the role of registrars, making governments go directly to Verisign (or any other registry that adopts similar language) to achieve anything they desired. It literally overturns more than two decades of global domain name policy."

Furthermore, Kirikos claims ICANN and Verisign "have deliberately timed the comment period to avoid public scrutiny." He writes: "The public comment period opened on April 13, 2023, and is scheduled to end (currently) on May 25, 2023. However, the ICANN76 public meeting was held between March 11 and March 16, 2023, and the ICANN77 public meeting will be held between June 12 and June 15, 2023. Thus, they published the proposal only after the ICANN76 public meeting had ended (where we could have asked ICANN staff and the board questions about the proposal), and seek to end the public comment period before ICANN77 begins. This is likely not by chance, but by design."
Science

Scientists Identify Mind-Body Nexus In Human Brain (reuters.com) 77

An anonymous reader quotes a report from Reuters: Researchers said on Wednesday they have discovered that parts of the brain region called the motor cortex that govern body movement are connected with a network involved in thinking, planning, mental arousal, pain, and control of internal organs, as well as functions such as blood pressure and heart rate. They identified a previously unknown system within the motor cortex manifested in multiple nodes that are located in between areas of the brain already known to be responsible for movement of specific body parts -- hands, feet and face -- and are engaged when many different body movements are performed together.

The researchers called this system the somato-cognitive action network, or SCAN, and documented its connections to brain regions known to help set goals and plan actions. This network also was found to correspond with brain regions that, as shown in studies involving monkeys, are connected to internal organs including the stomach and adrenal glands, allowing these organs to change activity levels in anticipation of performing a certain action. That may explain physical responses like sweating or increased heart rate caused by merely pondering a difficult future task, they said.
"Basically, we now have shown that the human motor system is not unitary. Instead, we believe there are two separate systems that control movement," said radiology professor Evan Gordon of the Washington University School of Medicine in St. Louis, lead author of the study.

"One is for isolated movement of your hands, feet and face. This system is important, for example, for writing or speaking -movements that need to involve only the one body part. A second system, the SCAN, is more important for integrated, whole body movements, and is more connected to high-level planning regions of your brain," Gordon said.

"Modern neuroscience does not include any kind of mind-body dualism. It's not compatible with being a serious neuroscientist nowadays. I'm not a philosopher, but one succinct statement I like is saying, 'The mind is what the brain does.' The sum of the bio-computational functions of the brain makes up 'the mind,'" said study senior author Nico Dosenbach, a neurology professor at Washington University School of Medicine. "Since this system, the SCAN, seems to integrate abstract plans-thoughts-motivations with actual movements and physiology, it provides additional neuroanatomical explanation for why 'the body' and 'the mind' aren't separate or separable."

The findings have been published in the journal Nature.
Wireless Networking

Google Fi Gets Third Rebrand In 8 Years (arstechnica.com) 33

Google Fi, Google's cellular service, is getting its third rebrand in eight years. Ars Technica reports: First it was Project Fi, then Google Fi, and now it's "Google Fi Wireless." It also has its third logo, and this one's kind of clever: It's an "F" styled to look like sideways signal bars and in Google's trademark rainbow colors. There is also now a free trial mode. Google is harnessing the power of remotely configurable eSIMs to give anyone with an eSIM-compatible phone a seven-day/10GB free trial of Google Fi. That makes it easy to run around and test coverage.

Google Fi is a mobile virtual network operator (MVNO) -- a cellular reseller -- of T-Mobile's network, so whatever your T-Mobile coverage is like, that's what Fi is like. Google says that during the trial, "We'll give you a new Fi number to try out on your phone, but your current number will still work. During the trial, you can choose between Fi or your current network whenever you're calling, texting, or using mobile data." You'll need to enter a credit card for the trial, and after seven days, you'll be automatically billed on a $50 "Simply Unlimited" plan. Google notes you can cancel immediately (this is just one or two taps inside the app) and will still get the seven-day trial.

Network

Used Routers Often Come Loaded With Corporate Secrets (arstechnica.com) 33

An anonymous reader shares a report: You know that you're supposed to wipe your smartphone or laptop before you resell it or give it to your cousin. After all, there's a lot of valuable personal data on there that should stay in your control. Businesses and other institutions need to take the same approach, deleting their information from PCs, servers, and network equipment so it doesn't fall into the wrong hands. At the RSA security conference in San Francisco next week, though, researchers from the security firm ESET will present findings showing that more than half of secondhand enterprise routers they bought for testing had been left completely intact by their previous owners. And the devices were brimming with network information, credentials, and confidential data about the institutions they had belonged to. The researchers bought 18 used routers in different models made by three mainstream vendors: Cisco, Fortinet, and Juniper Networks. Of those, nine were just as their owners had left them and fully accessible, while only five had been properly wiped. Two were encrypted, one was dead, and one was a mirror copy of another device.

All nine of the unprotected devices contained credentials for the organization's VPN, credentials for another secure network communication service, or hashed root administrator passwords. And all of them included enough identifying data to determine who the previous owner or operator of the router had been. Eight of the nine unprotected devices included router-to-router authentication keys and information about how the router connected to specific applications used by the previous owner. Four devices exposed credentials for connecting to the networks of other organizations -- like trusted partners, collaborators, or other third parties. Three contained information about how an entity could connect as a third party to the previous owner's network. And two directly contained customer data.

Music

Sonos' Exciting New Product Category Is Commercial Audio (theverge.com) 39

Today, Sonos is introducing Sonos Pro, a new service targeted at businesses -- restaurants, bars, and retail stores -- that makes it easy to play music across numerous locations without breaking any licensing rules. Sonos Pro works with all S2-compatible hardware including the Ikea Symfonisk line and, if you're into retrofitting existing speakers, the Amp and Port. The Verge reports: Pro customers will gain access to a web portal that lets them remotely control what's playing in each of their locations (divided into different zones) and perform troubleshooting from afar. If you're a normal consumer and want to reset your Sonos system at home, you've got to unplug the products, but Pro customers will be able to do it with software. They'll also have the ability to schedule particular genres for different times of the day to lock in the right atmosphere for their business. Want to keep the volume low in the mornings when you've got less foot traffic and automatically raise it during peak hours? Sonos Pro can do that.

The monthly Sonos Pro subscription, priced at $35 per business location, will include "Sonos Backgrounds." This is a commercially licensed music service featuring a range of royalty-free music from independent artists that's all legally compliant for streaming at business establishments. If you're wondering why that's necessary, businesses technically aren't allowed to just start playing Spotify, Apple Music, or other mainstream music apps over their speakers. Spotify says so right here. Those services are only licensed for personal use; playing them in a public setting counts as a live performance, and that's a no-no unless you've paid for the necessary licenses from ASCAP, BMI, and other organizations. That can get extremely complicated in and of itself.

The service will provide deep, granular control over the entire system in a commercial space. You can set maximum volume limits for each speaker or enable / disable features like AirPlay, line-in playback, and more. If you want to give your staff access to Spotify after hours, that's doable with an "allow direct control" setting. Speaking of which, business owners can grant their employees access to Sonos Pro and set different permission tiers for each person. And again, this can all be done remotely. Try adjusting settings (or even switching your Wi-Fi network) for Sonos devices on a regular account, and it can get messy fast. If you're away from the devices, forget about it.

AI

Reddit Wants To Get Paid for Helping To Teach Big AI Systems (nytimes.com) 46

Reddit has long been a forum for discussion on a huge variety of topics, and companies like Google and OpenAI have been using it in their A.I. projects. From a report: Reddit has long been a hot spot for conversation on the internet. About 57 million people visit the site every day to chat about topics as varied as makeup, video games and pointers for power washing driveways. In recent years, Reddit's array of chats also have been a free teaching aid for companies like Google, OpenAI and Microsoft. Those companies are using Reddit's conversations in the development of giant artificial intelligence systems that many in Silicon Valley think are on their way to becoming the tech industry's next big thing. Now Reddit wants to be paid for it.

The company said on Tuesday that it planned to begin charging companies for access to its application programming interface, or A.P.I., the method through which outside entities can download and process the social network's vast selection of person-to-person conversations. "The Reddit corpus of data is really valuable," Steve Huffman, founder and chief executive of Reddit, said in an interview. "But we don't need to give all of that value to some of the largest companies in the world for free." The move marks one of the first significant examples of a social network's charging for access to the conversations it hosts for the purpose of developing A.I. systems like ChatGPT, OpenAI's popular program. Those new A.I. systems could one day lead to big businesses, but they aren't likely to help companies like Reddit very much. In fact, they could be used to create competitors -- automated duplicates to Reddit's conversations.

Social Networks

Leaked Documents Show Russians Boasted Just 1% of Fake Social Profiles are Detected (msn.com) 69

"The Russian government has become far more successful at manipulating social media and search engine rankings than previously known," reports the Washington Post, "boosting lies about Ukraine's military and the side effects of vaccines with hundreds of thousands of fake online accounts, according to documents recently leaked on the chat app Discord.

"The Russian operators of those accounts boast that they are detected by social networks only about 1 percent of the time, one document says." That claim, described here for the first time, drew alarm from former government officials and experts inside and outside social media companies contacted for this article. "Google and Meta and others are trying to stop this, and Russia is trying to get better. The figure that you are citing suggests that Russia is winning," said Thomas Rid, a disinformation scholar and professor at Johns Hopkins University's School of Advanced International Studies. He added that the 1 percent claim was likely exaggerated or misleading.

The undated analysis of Russia's effectiveness at boosting propaganda on Twitter, YouTube, TikTok, Telegram and other social media platforms cites activity in late 2022 and was apparently presented to U.S. military leaders in recent months. It is part of a trove of documents circulated in a Discord chatroom and obtained by The Washington Post. Air National Guard technician Jack Teixeira was charged Friday with taking and transmitting the classified papers, charges for which he faces 15 years in prison...

Many of the 10 current and former intelligence and tech safety specialists interviewed for this article cautioned that the Russian agency whose claims helped form the basis for the leaked document may have exaggerated its success rate.

The leaked document was apparently prepared by the Joint Chiefs of Staff, U.S. Cyber Command and Europe Command, which directs American military activities in Europe. "It refers to signals intelligence, which includes eavesdropping, but does not cite sources for its conclusions," the Post reports, describing the document as offering "a rare candid assessment by U.S. intelligence of Russian disinformation operations."

The assessment concludes that foreign bots "view, 'like,' subscribe and repost content and manipulate view counts to move content up in search results and recommendation lists." And the document says a Russian center's disinformation network — working directly for Russia's presidential administration — was still working on improvements as recently as late 2022 and expected to improve its ability to "promote pro-Russian narratives abroad." After Russia's 2016 efforts to interfere in the U.S. presidential election, social media companies stepped up their attempts to verify users, including through phone numbers. Russia responded, in at least one case, by buying SIM cards in bulk, which worked until companies spotted the pattern, employees said. The Russians have now turned to front companies that can acquire less detectable phone numbers, the document says.

A separate top-secret document from the same Discord trove summarized six specific influence campaigns that were operational or planned for later this year by a new Russian organization, the Center for Special Operations in Cyberspace. The new group is mainly targeting Ukraine's regional allies, that document said. Those campaigns included one designed to spread the idea that U.S. officials were hiding vaccine side effects, intended to stoke divisions in the West.

Privacy

Hackers Claim Vast Access To Western Digital Systems (techcrunch.com) 29

An anonymous reader quotes a report from TechCrunch: The hackers who breached data storage giant Western Digital claim to have stolen around 10 terabytes of data from the company, including reams of customer information. The extortionists are pushing the company to negotiate a ransom -- of "minimum 8 figures" -- in exchange for not publishing the stolen data. On April 3, Western Digital disclosed "a network security incident" saying hackers had exfiltrated data after hacking into "a number of the Company's systems." At the time, Western Digital provided few details about exactly what data the hackers stole, saying in a statement that the hackers "obtained certain data from its systems and [Western Digital] is working to understand the nature and scope of that data."

One of the hackers spoke with TechCrunch and provided more details, with the goal of verifying their claims. The hacker shared a file that was digitally signed with Western Digital's code-signing certificate, showing they could now digitally sign files to impersonate Western Digital. Two security researchers also looked at the file and agreed it is signed with the company's certificate. The hackers also shared phone numbers allegedly belonging to several company executives. TechCrunch called the numbers. Most of the calls rang but went to automated voicemail messages. Two of the phone numbers had voicemail greetings that mentioned the names of the executives that the hackers claimed were associated with the numbers. The two phone numbers are not public.

Screenshots shared by the hacker show a folder from a Box account apparently belonging to Western Digital, an internal email, files stored in a PrivateArk instance (a cybersecurity product), and a screenshot of a group call where one of the participants is identified as Western Digital's chief information security officer. They also said they were able to steal data from the company's SAP Backoffice, a backend interface that helps companies manage e-commerce data. The hacker said that their goal when they hacked Western Digital was to make money, though they decided against using ransomware to encrypt the company's files. [...] If Western Digital doesn't get back to them, the hacker said, they are ready to start publishing the stolen data on the website of the ransomware gang Alphv. The hacker said they are not directly affiliated with Alphv but "I know them to be professional."
Western Digital said they're declining to comment or answer questions about the hacker's claims.
Businesses

More and More Americans Are Gaming the Deposit-Insurance System (economist.com) 49

A new report looks at the firms that quietly move billions around the banking industry each day. Reciprocal deposits enable banks to place deposits with another bank and receive the same value back through technology firms, reshuffling approximately $1 trillion through their platforms. This deposit-swapping allows banks to offer customers more insurance, a priority after Silicon Valley Bank's failure, where 93% of deposits were uninsured. At the end of last year, around 45% of deposits in the American banking system were uninsured.

Invented by Eugene Ludwig in 2002, reciprocal deposits help banks offer greater deposit insurance without forgoing deposit funding. Ludwig's firm, IntraFi, allows banks to place insured deposits around the system while receiving the same value from other locations. IntraFi, the largest firm with 3,000 banks on its platform, has been joined by r&t Deposit Solutions, ModernFi, and StoneCastle Cash Management. These firms are experiencing rapid growth, with reciprocal deposits' value increasing significantly since March.

The story asks: All this deposit-swapping raises the question of whether it makes sense to maintain the federal cap. The private sector has come up with a clever workaround to offer more deposit insurance than mandated. It is conceivable that, with several thousand banks in the network, an account could offer deposit insurance for hundreds of millions of dollars. Indeed, StoneCastle offers an account with $125m in deposit insurance. But there is a difference between a private-sector workaround and a public-sector mandate. It is currently difficult to match banks so that all are able to offer such high limits (most offer just a few million dollars' insurance), and reciprocal-deposit firms levy fees, too. They apply on top of the charges, of between 0.05% and 0.32% of the value of total liabilities, that institutions pay for federal-deposit insurance.

Abolishing the cap would make insurance pricier across the system; these higher costs would almost certainly be passed on to customers in the form of lower interest rates. Still, if enough depositors seek insurance by spreading deposits around, higher costs might be the result anyway.

China

China's Didi To Roll Out Self-Developed Robotaxis By 2025 (reuters.com) 5

Chinese ride-hailing giant Didi Global said on Thursday that it is working with Chinese carmakers to develop its own robotaxis, which it aims to put into service by 2025, revealing a concept one with robotic arms it called "Didi Neuron." From a report: The company said that it is collaborating with multiple new energy carmakers in China on developing robotaxis. "We hope they can enter Didi's network and provide services by 2025," Didi Autonomous Driving COO Meng Xing said at a company event that was livestreamed online. "We hope they will be domestically produced. We hope the supply chain is controllable, and even 90% of the key components inside can be domestically produced," he said. He also showed off a robotaxi concept car called "Didi Neuron", with robotic arms that can help passengers pick up luggage.
Software

Crypto's Ethereum Blockchain Completes Its Key Shanghai Software Upgrade (bloomberg.com) 17

The Ethereum blockchain, the most important commercial highway in the digital-asset sector, successfully implemented a widely anticipated software upgrade. From a report: The so-called Shanghai update enables investors to queue up to withdraw Ether coins that they had pledged to help operate the network in return for rewards, a process called staking. Tim Beiko, who helps to co-ordinate the development of Ethereum, posted on Twitter on Wednesday that the upgrade is now "official." The network revamp -- also known as Shapella -- is designed to let people exit an Ether staking investment and has stirred debate on whether the appeal of the largest token after Bitcoin will increase over time.

"Ethereum is updating and navigating with great skill -- so far anyway -- and cementing its position as the No. 2 crypto," said Aaron Brown, a crypto investor who writes for Bloomberg Opinion. He added that the network is "moving to the future much faster than Bitcoin." About 1.2 million of Ether tokens -- worth approximately $2.3 billion at current prices -- are expected to be withdrawn over the next five days, according to researcher Coin Metrics. Some $36.7 billion of Ether is locked up for staking, data from Staking Rewards shows.

Government

Colorado Approves First-Ever Agricultural Right to Repair Bill (ifixit.com) 23

Denver legislators have just passed the first-ever agricultural Right to Repair bill. Today's landslide 44-16 vote in the House follows a successful vote in the Senate last month. iFixit reports: Once the Agricultural Right to Repair bill passes, manufacturers will be required to share all the parts, embedded software, firmware, tools, and documentation necessary for repair. One critical step remains: a signature by Governor Polis, who has signaled that he supports the legislation.

To support Right to Repair legislation near you, find your state on Repair.org -- or, if you're outside the US, look for your country's advocacy network here.
The summary of HB23-1011 reads: "Starting January 1, 2024, the bill requires a manufacturer to provide parts, embedded software, firmware, tools, or documentation, such as diagnostic, maintenance, or repair manuals, diagrams, or similar information (resources), to independent repair providers and owners of the manufacturer's agricultural equipment to allow an independent repair provider or owner to conduct diagnostic, maintenance, or repair services on the owner's agricultural equipment.

The bill folds agricultural equipment into the existing consumer right-to-repair statutes, which statutes provide the following:

- A manufacturer's failure to comply with the requirement to provide resources is a deceptive trade practice;
- In complying with the requirement to provide resources, a manufacturer need not divulge any trade secrets to independent repair providers and owners; and
- Any new contractual provision or other arrangement that a manufacturer enters into that would remove or limit the manufacturer's obligation to provide resources to independent repair providers and owners is void and unenforceable; and
- An independent repair provider or owner is not authorized to make modifications to agricultural equipment that permanently deactivate any safety notification system or bring the equipment out of compliance with safety or emissions laws or to engage in any conduct that would evade emissions, copyright, trademark, or patent laws."

Slashdot Top Deals