×
The Almighty Buck

Bitcoin Addresses Tied To Defunct Canadian Crypto Exchange QuadrigaCX Wake Up (coindesk.com) 42

More than 100 bitcoins tied to the defunct Canadian crypto exchange QuadrigaCX were transferred out of cold wallets thought to be beyond anyone's control over the weekend, after sitting dormant for more than three years. From a report: The company's bankruptcy trustee, Ernst and Young, did not initiate the transfers, CoinDesk has learned. QuadrigaCX went bankrupt in 2019 after the apparent death of founder and CEO Gerald Cotten. At the time of its collapse, Quadriga was believed to have owed thousands of customers nearly $200 million in various cryptocurrencies -- a staggering failure for what was once Canada's largest crypto exchange.

EY, which is acting as the trustee for Quadriga's estate, announced in February 2019 that it lost control of about 100 BTC after mistakenly sending the coins to Quadriga-operated cold wallets that the Big Four financial services firm said it couldn't access. At the time, the bitcoin was worth around $355,000 (C$470,000).

Bitcoin

Binance's Books Are a Black Box, Filings Show, As It Tries To Rally Confidence (reuters.com) 33

The world's biggest crypto exchange, Binance, is battling to shore up confidence after a surge in customer withdrawals and a steep drop in the value of its digital token. Reuters reports: The exchange said it dealt with net outflows of around $6 billion over 72 hours last week "without breaking stride" because its finances are solid and "we take our responsibility as a custodian seriously." After the collapse of rival exchange FTX last month, Binance's founder Changpeng Zhao promised his company would "lead by example" in embracing transparency. Yet a Reuters analysis of Binance's corporate filings shows that the core of the business -- the giant Binance.com exchange that has processed trades worth over $22 trillion this year -- remains mostly hidden from public view.

Binance declines to say where Binance.com is based. It doesn't disclose basic financial information such as revenue, profit and cash reserves. The company has its own crypto coin, but doesn't reveal what role it plays on its balance sheet. It lends customers money against their crypto assets and lets them trade on margin, with borrowed funds. But it doesn't detail how big those bets are, how exposed Binance is to that risk, or the full extent of its reserves to finance withdrawals. Binance is not required to publish detailed financial statements because it is not a public company, unlike U.S. rival Coinbase, which is listed on the Nasdaq. Nor has Binance raised outside capital since 2018, industry data show, which means it hasn't had to share financial information with external investors since then.

In an effort to look inside Binance's books, Reuters reviewed filings by Binance units in 14 jurisdictions where the exchange on its website says it has "regulatory licenses, registrations, authorisations and approvals." These locations include several European Union states, Dubai and Canada. Zhao has described the authorisations as milestones in Binance's "journey to being fully licensed and regulated around the world." The filings show that these units appear to have submitted scant information about Binance's business to authorities. The public filings do not show, for example, how much money flows between the units and the main Binance.com exchange. The Reuters analysis also found that several of the units appear to have little activity. Former regulators and ex-Binance executives say these local businesses serve as window dressing for the main unregulated exchange.
Binance Chief Strategy Officer Patrick Hillmann said the Reuters analysis of the units' filings in the 14 jurisdictions was "categorically false."

Binance's Hillmann did not comment on the Reuters estimates. "The vast majority of our revenue is made on transaction fees," he said, adding that the exchange has been able to "accumulate large corporate reserves" by keeping expenses down. Binance's "capital structure is debt free" and the company keeps its money made from fees separate from the assets it buys and holds for users, Hillmann said.

Further reading: Binance US To Buy Bankrupt Voyager Digital's Assets for $1 Billion
Bitcoin

How Scammers Took a Winnipeg Town For $430K Using Bitcoin (www.cbc.ca) 37

Slashdot reader lowvisioncomputing shares a story from the CBC about an elaborate heist discovered "when the chief administrative officer of a southwestern Manitoba rural municipality [population: 3,300] noticed the series of unusual cash withdrawals from its bank account...." It began with a job advertisement. A seemingly legitimate company, with a professional website and a Nova Scotia address, claimed it was looking for cash processors. The contract was for one month. Employees could work from home.

They were told they would receive payments to their credit cards, which they would be expected to move to their bank accounts. They would then withdraw the payments, convert them into bitcoin, and send that to another account.... The majority of the 18 people hired were young and lived in various communities across the country.... Anyone who did an internet search for the company would find a professional website, with information matching what was provided in the employment agreement.

In early December 2019, the cybercriminals sent a phishing email to multiple people at the municipal office of WestLake-Gladsone, a municipality about 150 kilometres west of Winnipeg, on the southwestern shore of Lake Manitoba. At least one person clicked on the link, which allowed the hackers to get into the municipality's computers and bank accounts. But weeks went by and nothing happened, so the municipality didn't report it to the police. It was only after the money disappeared that the municipality discovered the two incidents were connected, said Kate Halashewski, who at the time was the assistant chief administrative officer for the Municipality of WestLake-Gladstone....

Court documents say that on Dec. 19, 2019, a person logged into the municipality's bank account and changed the password, along with the personal verification questions. Over the next 17 days, the cyberattackers added the 18 "employees" hired as payees and began systematically making withdrawals, transferring the money to the employees' credit cards. Dozens of withdrawals were made, totalling $472,377, according to court documents — a considerable amount for a municipality with an entire annual budget of $7 million.

Those withdrawals weren't discovered until Jan. 6, when Halashewski saw 48 bank transfers — each less than $10,000 — going to unfamiliar accounts.... Once they'd completed the initial transfers and conversion, the bitcoin was then sent to the private account of the scammers — who cybersecurity experts say likely aren't in Canada....

The municipality finally announced it had lost nearly half a million dollars in an Oct. 12, 2020, news release.... No arrests have been made in connection with the WestLake-Gladstone cyberattack and RCMP say it is no longer under active investigation.

Google

Google Debuts OSV-Scanner, a Go Tool For Finding Security Holes in Open Source (theregister.com) 16

Google this week released OSV-Scanner -- an open source vulnerability scanner linked to the OSV.dev database that debuted last year. From a report: Written in the Go programming language, OSV-Scanner is designed to scan open source applications to assess the security of any incorporated dependencies -- software libraries that get added to projects to provide pre-built functions so developers don't have to recreate those functions on their own. Modern applications can have a lot of dependencies. For example, researchers from Mozilla and Concordia University in Canada recently created a single-page web application with the React framework using the create-react-app command. The result was a project with seven runtime dependencies and nine development dependencies.

But each of these direct dependencies had other dependencies, known as transitive dependencies. The react package includes loose-envify as a transitive dependency -- one that itself depends on other libraries. All told, this basic single-page "Hello world" app required a total of 1,764 dependencies. As Rex Pan, a software engineer on Google's Open Source Security Team, observed on Tuesday in a blog post, vetting thousands of dependences isn't something developers can do on their own.

Patents

Apple Satellite Plans May Extend Beyond Emergencies, Suggests New Patent (9to5mac.com) 28

A new patent granted to Apple suggests the company could use satellite communications for more than just getting help in an emergency. 9to5Mac reports: Emergency SOS via Satellite was one of the headline features of September's Apple event -- so much so that the Far Out event name referenced it. The service launched in the US and Canada last month, and was yesterday extended to the UK, France, Germany, and Ireland. More countries will follow. A patent granted on the same day the service expanded to more countries suggests that Apple satellite plans may extend beyond text, and beyond emergency use.

Patently Apple spotted it: "Satellite communications data conveyed by transceivers #28 and antenna radiators #30 may include media data (e.g., streaming video, television data, satellite radio data, etc.), voice data (e.g., telephone voice data), internet data, and/or any other desired data." Apple has currently committed $450M to support the satellite communications feature, a reasonably sizeable amount of money even by Apple standards for a service that will be of use to a tiny fraction of iPhone owners. But if it's the start of something more, then the investment could look rather modest.

Crime

UK Arrests Five For Selling 'Dodgy' Point of Sale Software (theregister.com) 23

Tax authorities from Australia, Canada, France, the UK and the USA have conducted a joint probe into "electronic sales suppression software" -- applications that falsify point of sale data to help merchants avoid paying tax on their true revenue. From a report: A Friday announcement from the Joint Chiefs of Global Tax Enforcement (known as the J5), states that the probe "resulted in the arrest of five individuals in the United Kingdom who allegedly designed and sold electronic sales suppression systems internationally." Those responsible allegedly started to export their wares during the COVID-19 pandemic.

"These dodgy sales suppression tools allow retailers to keep a separate set of books and launder the money in one transaction," explained J5 chief and Australian Taxation Office deputy commissioner John Ford. "They conceal and transfer this income anonymously, sometimes offshore."

The Courts

Class-Action Alleging Fortnite Is Addictive Will Go Ahead, Judge Rules (www.cbc.ca) 144

"The CBC is reporting that a class action lawsuit against Epic Games over Fortnite being addictive to children will go ahead," writes Slashdot reader lowvisioncomputing. From the report: The suit was first brought to the courts in 2019 by three Quebec parents who claimed that Fortnite was designed to addict its users, many of them children, to the game. According to the original filing, the plaintiffs say their children exhibited troubling behaviors, including not sleeping, not eating, not showering and no longer socializing with their peers. According to the filing, one of the children was diagnosed with an addiction by an on-call doctor at a Quebec clinic, or CLSC, in the Lower St. Lawrence region. It also notes that the World Health Organization (WHO) recognized addictive gaming disorder as a disease in 2018.

Jean-Philippe Caron, one of the CaLex Legal lawyers working on the suit, said the case isn't unlike a 2015 Quebec Superior Court ruling that found tobacco companies didn't warn their customers about the dangers of smoking. "[The game] has design patterns that make sure to always encourage player engagement. You have to understand that children's prefrontal cortices are still developing so that could be part of the explanation for why this game is particularly harmful," he said. The class action will also discuss in-game purchases, namely cosmetic items -- known as skins -- and the game's Battle Pass system, which offers expanded rewards as players level up.

The children allegedly spent excessive amounts of money on V-Bucks -- an in-game currency users buy with real money -- which can be exchanged for skins or used to unlock the Battle Pass. One of the children reportedly spent over $6,000 on skins, while another spent $600 on V-Bucks -- items Superior Court Judge Sylvain Lussier described as "without any tangible value." That may run afoul of Article 1406 of Quebec's civil code, where "serious disproportion between the prestations of the parties" -- meaning, the obligation to provide something in turn -- "creates a presumption of exploitation."

Power

General Motors Installs the First of 40,000 New EV Chargers (arstechnica.com) 127

An anonymous reader quotes a report from Ars Technica: Electric vehicle drivers in Marshfield, Wisconsin, and Owosso, Michigan, are the first to benefit from General Motors' Dealer Community Charging Program. These deployments of new level 2 (AC) chargers are the first in a planned rollout of 40,000 new plug-in points, which GM says will nearly double the number of public charging stations in the US and Canada. GM announced the program in October 2021 and since then has had almost 1,000 of its Chevrolet dealerships sign on to the initiative, which is designed to increase charger access in underserved, rural, and urban locations. GM will supply dealerships with up to 10 19.2 kW chargers to be installed around the communities they serve, and the chargers are available to any EV driver, not just those who drive electric models from GM.

Wheeler's Chevrolet in Wisconsin was the first dealership to sign on to the initiative and has installed chargers in two parks, a library, and a sports complex, among other locations in Marshfield. "We're excited to be the first dealership in the nation to have these chargers," said Mary Jo Wheeler-Schueller, owner of Wheelers Chevrolet GMC. "This will help put Marshfield on the map in terms of EV leadership. This is a great stop for commuters to check out our community and see all that Marshfield has to offer." Young Cadillac Chevrolet in Michigan followed and installed its first charger at a health care center in Owosso. GM says that the next installations should take place in Delaware, Georgia, Illinois, Indiana, Kansas, Ohio, and Washington in the coming months. Separately, GM has another program that, together with EVgo, is in the midst of installing 5,250 DC fast chargers by 2025, including 2,000 fast chargers at Pilot and Flying J travel centers.

Security

Samsung Galaxy S22 Hacked Again On Second Day of Pwn2Own (bleepingcomputer.com) 18

Contestants hacked the Samsung Galaxy S22 again during the second day of the consumer-focused Pwn2Own 2022 competition in Toronto, Canada. They also demoed exploits targeting zero-day vulnerabilities in routers, printers, smart speakers, and Network Attached Storage (NAS) devices from HP, NETGEAR, Synology, Sonos, TP-Link, Canon, Lexmark, and Western Digital. BleepingComputer reports: Security researchers representing the vulnerability research company Interrupt Labs were the ones to demonstrate a successful exploit against Samsung's flagship device on Wednesday. They executed an improper input validation attack and earned $25,000, 50% of the total cash award, because this was the third time the Galaxy S22 was hacked during the competition.

On the first day of Pwn2Own Toronto, the STAR Labs team and a contestant known as Chim demoed two other zero-day exploits as part of successful improper input validation attacks against the Galaxy S22. In all three cases, according to the contest rules, the devices ran the latest version of the Android operating system with all available updates installed.

The second day of Pwn2Own Toronto wrapped up with Trend Micro's Zero Day Initiative awarding $281,500 for 17 unique bugs across multiple categories. This brings the first two days of Pwn2Own total to $681,250 awarded for 46 unique zero-days, as ZDI's Head of Threat Awareness Dustin Childs revealed. The full schedule for Pwn2Own Toronto 2022's second day and the results for each challenge are available here. You can also find the complete schedule of the competition here.

Bitcoin

Canada's Biggest Pension Fund Ends Crypto Investment Pursuit (financialpost.com) 53

Canada's biggest pension fund, CPP Investments, has ended its nearly year-long effort of studying investment opportunities in the volatile crypto market, Reuters reported Wednesday, citing people familiar with the matter. From the report: The reasons behind CPPI's abandonment of crypto research were not immediately clear. CPPI declined to comment but said it has made no direct investments in crypto. It referred to previous comments on cryptocurrency by its CEO, John Graham, in which he sounded a note of caution. CPPI's Alpha Generation Lab, which examines emerging investment trends, had formed a three-member team in early 2021 to research crypto currencies and blockchain-related businesses, with a view to taking potential exposure, the people added.
Earth

As the Arctic Warms, Beavers Are Moving In (arstechnica.com) 65

It began decades ago, with a few hardy pioneers slogging north across the tundra. It's said that one individual walked so far to get there that he rubbed the skin off the underside of his long, flat tail. Today, his kind have homes and colonies scattered throughout the tundra in Alaska and Canada -- and their numbers are increasing. Beavers have found their way to the far north. From a report: It's not yet clear what these new residents mean for the Arctic ecosystem, but concerns are growing, and locals and scientists are paying close attention. Researchers have observed that the dams beavers build accelerate changes already in play due to a warming climate. Indigenous people are worried the dams could pose a threat to the migrations of fish species they depend on.

"Beavers really alter ecosystems," says Thomas Jung, senior wildlife biologist for Canada's Yukon government. In fact, their ability to transform landscapes may be second only to that of humans: Before they were nearly extirpated by fur trappers, millions of beavers shaped the flow of North American waters. In temperate regions, beaver dams affect everything from the height of the water table to the kinds of shrubs and trees that grow. Until a few decades ago, the northern edge of the beaver's range was defined by boreal forest, because beavers rely on woody plants for food and material to build their dams and lodges. But rapid warming in the Arctic has made the tundra more hospitable to the large rodents: Earlier snowmelt, thawing permafrost and a longer growing season have triggered a boom in shrubby plants like alder and willow that beavers need. Aerial photography from the 1950s showed no beaver ponds at all in Arctic Alaska. But in a recent study, Ken Tape, an ecologist at the University of Alaska Fairbanks, scanned satellite images of nearly every stream, river and lake in the Alaskan tundra and found 11,377 beaver ponds.

Television

Meet DTV's Successor: NextGen TV (cnet.com) 135

Around 2009 Slashdot was abuzz about how over-the-air broadcasting in North America was switching to a new standard called DTV. (Fun fact: North America and South America have two entirely different broadcast TV standards — both of which are different from the DVB-T standard used in Europe/Africa/Australia.) But 2022 ends with us already talking about DTV's successor in North America: the new broadcast standard NextGen TV.

This time the new standard isn't mandatory for TV stations, CNET points out — and it won't affect cable, satellite or streaming TV. But now even if you're not paying for a streaming TV service, another article points out, in most major American cities "an inexpensive antenna is all you'll need to get get ABC, CBS, Fox, NBC and PBS stations" — and often with a better picture quality: NextGen TV, formerly known as ATSC 3.0, is continuing to roll out across the U.S. It's already widely available, with stations throughout the country broadcasting in the new standard. There are many new TVs with compatible tuners plus several stand-alone tuners to add NextGen to just about any TV. As the name suggests, NextGen TV is the next generation of over-the-air broadcasts, replacing or supplementing the free HD broadcasts we've had for over two decades. NextGen not only improves on HDTV, but adds the potential for new features like free over-the-air 4K and HDR, though those aren't yet widely available.

Even so, the image quality with NextGen is likely better than what you're used to from streaming or even cable/satellite. If you already have an antenna and watch HD broadcasts, the reception you get with NextGen might be better, too.... Because of how it works, you'll likely get better reception if you're far from the TV tower.

The short version is: NextGen is free over-the-air television with potentially more channels and better image quality than older over-the-air broadcasts.

U.S. broadcast companies have also created a site at WatchNextGenTV.com showing options for purchasing a compatible new TV. That site also features a video touting NextGen TV's "brilliant colors and a sharper picture with a wider range of contrast" and its Dolby audio system (with "immersive, movie theatre-quality sound" with enhancements for voice and dialogue "so you get all of the story.") And in the video there's also examples of upcoming interactive features like on-screen quizzes, voting, and shopping, as well as the ability to select multiple camera angles or different audio tracks.

"One potential downside? ATSC 3.0 will also let broadcasters track your viewing habits," CNet reported earlier this year, calling the data "information that can be used for targeted advertising, just like companies such as Facebook and Google use today...

"Ads specific to your viewing habits, income level and even ethnicity (presumed by your neighborhood, for example) could get slotted in by your local station.... but here's the thing: If your TV is connected to the internet, it's already tracking you. Pretty much every app, streaming service, smart TV and cable or satellite box all track your usage to a greater or lesser extent."

But on the plus side... NextGen TV is IP-based, so in practice it can be moved around your home just like any internet content can right now. For example, you connect an antenna to a tuner box inside your home, but that box is not connected to your TV at all. Instead, it's connected to your router. This means anything with access to your network can have access to over-the-air TV, be it your TV, your phone, your tablet or even a streaming device like Apple TV....

This also means it's possible we'll see mobile devices with built-in tuners, so you can watch live TV while you're out and about, like you can with Netflix and YouTube now. How willing phone companies will be to put tuners in their phones remains to be seen, however. You don't see a lot of phones that can get radio broadcasts now, even though such a thing is easy to implement.

But whatever you think — it's already here. By August NextGen TV was already reaching half of America's population, according to a press release from a U.S. broadcaster's coalition. That press release also bragged that 40% of consumers had actually heard of NextGen TV — "up 25% from last year among those in markets where it is available."
Earth

2022's 'Earthshot Prizes' Recognize Five Innovative Responses to Climate Change (bbc.com) 32

"Childhood friends in Oman who figured out how to turn carbon dioxide into rock are among five winners chosen for the Prince of Wales's prestigious Earthshot Prize," reports the BBC: The annual awards were created by Prince William to fund projects that aim to save the planet. Each winner will receive £1m ($1.2m) to develop their innovation.... "I believe that the Earthshot solutions you have seen this evening prove we can overcome our planet's greatest challenges," Prince William said during the ceremony. "By supporting and scaling them we can change our future," he said.
1,500 projects were nominated, according to the event's web site. Here's the five winners:
  • A Kenya-based company producing stoves powered by processed biomass (made from charcoal, wood and sugarcane) that "burns cleaner, creating 90% less pollution than an open fire," while cutting fuel costs in half.
  • The Indian startup behind Greenhouse-in-a-box. "Plants in the greenhouse require 98% less water than those outdoors and yields are seven-times higher," explains the site, while the greenhouses themselves are 90% cheaper than a standard greenhouse, "more than doubling farmers' incomes [while] using less water and fewer pesticides."
  • A Queensland-based program to expand the network of rangers using drones to monitor reefs and wildfires while sharing information and innovative ideas.
  • London-based start-up Notpla, which created a plastic alternative made from seaweed and plants that's entirely biodegradable. (The seaweed used in its production also captures carbon twenty-times faster than trees.)
  • The company 44.01 removes CO2 permanently by mineralising it in peridotite, accelerating the natural process by pumping carbonated water into peridotite underground. (Unlike carbon storage, "mineralizing" CO2 removes it forever, making the process safer, cost-effective, and scalable.)

Five prizes will be awarded each year until 2030.


Movies

Prime Video Replaces Netflix As No. 1 Streaming Service In US (deadline.com) 47

Prime Video has supplanted Netflix as the No. 1 subscription streaming outlet in the U.S. in an annual ranking compiled by research firm Parks Associates. Deadline reports: The company didn't disclose its methodology for how it isolates the number of Prime Video subscribers, a metric long cloaked in secrecy due to Amazon's general reluctance to disclose statistics about its Prime business. Still, Parks has been a reputable tracker of the streaming space for more than a decade. For many years in the 2010s, its rankings looked consistent, with the former "Big 3" of Netflix, Prime Video and Hulu sharing the top three spots, always with Netflix at the top. Today, the rankings are much more fragmented given how many new players have entered the scene. The list reflects total subscribers through September 2022, via the OTT Video Market Tracker, a Parks offering described by the firm as "an exhaustive analysis of market trends and profiles of the nearly 100 over-the-top video service providers in the U.S. and Canada."

Amazon said last year it has more than 200 million Prime members, with Prime Video among the program's benefits. Several weeks ago, the company also recently said The Lord of the Rings: The Rings of Power has been viewed by more than 100 million Prime subscribers worldwide. [...] Netflix, meanwhile, has hit a plateau in the U.S., even shedding a small amount of subscribers over recent quarters. The company reported 73.4 million subscribers in the U.S. and Canada as of September 30, up 100,000 from the previous quarter but below levels in 2021 and earlier this year.

On a global basis, of course, Netflix continues to lead the field with a bit more than 223 million subscribers. Disney has been hot on its heels, with Disney+ now at 164.2 million and the company overall reaching 235.7 million across Disney+, Hulu and ESPN+. The rest of the 2022 chart looks relatively similar to the 2021 edition, though NBCUniversal's Peacock broke through to take the No. 10 spot as Showtime dropped out of the picture.

Communications

iPhone 14 Satellite Feature Saves Stranded Man In Alaska (macrumors.com) 49

Apple's iPhone 14 Emergency SOS via Satellite Feature was put to the test in Alaska yesterday, when a man became stranded in a rural area. MacRumors reports: In the early hours of the morning on December 1, Alaska State Troopers received an alert that a man traveling by snow machine from Noorvik to Kotzebue had become stranded. The man was in a cold, remote location with no connectivity, and he activated the Emergency SOS via satellite feature on his iPhone 14 to alert authorities to his predicament. Apple's Emergency Response Center worked with local search and rescue teams and the Northwest Arctic Borough Search and Rescue Coordinator to send out volunteer searchers directly to the GPS coordinates that were relayed to Apple using the emergency function.

The man was rescued successfully and there were no injuries. The area where he was located is remote and on the fringes of where satellite connectivity is available. Apple says that satellite connectivity might not work in places above 62 degrees latitude, such as northern parts of Canada and Alaska, and Noorvik and Kotzebue are close to 69 degrees latitude. Troopers who helped with the rescue were "impressed with the accuracy and completeness of information included in the initial alert," with the Emergency SOS via Satellite feature designed to ask several questions ahead of when an alert is sent out to expedite rescue missions.

Movies

Netflix Nights Still Come Wrapped in Red-and-White Envelopes (apnews.com) 85

Netflix's trailblazing DVD-by-mail rental service has been relegated as a relic in the age of video streaming, but there is still a steady -- albeit shrinking -- audience of diehards who are happily paying to receive those discs in the iconic red-and-white envelopes. From a report: Netflix declined to comment for this story but during a 2018 media event, co-founder and co-CEO of Netflix Reed Hastings suggested the DVD-by-mail service might close around 2023. When -- not if -- it happens, Netflix will shut down a service that has shipped more than 5 billion discs across the U.S. since its inception nearly a quarter century ago. And it will echo the downfall of the thousands of Blockbuster video rental stores that closed because they couldn't counter the threat posed by Netflix's DVD-by-mail alternative.

Shortly before breakup from video streaming, the DVD-by-mail service boasted more than 16 million subscribers, a number that has now dwindled to an estimated 1.5 million subscribers, all in the U.S., based on calculations drawn from Netflix's limited disclosures of the service in its quarterly reports. Netflix's video streaming service now boasts 223 million worldwide subscribers, including 74 million in the U.S. and Canada. "The DVD-by-mail business has bequeathed the Netflix that everyone now knows and watches today," Marc Randolph, Netflix's original CEO, said during an interview at a coffee shop located across the street from the post office in Santa Cruz, California.

Bitcoin

Major Canadian Crypto Exchange Coinsquare Says Client Data Breached (coindesk.com) 19

Coinsquare, one of Canada's largest cryptocurrency exchanges, may have been breached, but the company claims customer assets are "secure in cold storage and are not at risk." CoinDesk reports: The exchange, which touts itself as "Canada's trusted platform to securely buy, sell and trade Bitcoin, Ethereum, and more," emailed customers Friday to report a "data incident" in which an unauthorized third party accessed a customer database containing personal information. According to the email, the breach exposed "customer names, email addresses, residential addresses, phone numbers, dates of birth, device IDs, public wallet addresses, transaction history, and account balances." Although the email was sent Friday, Coinsquare discovered the breach last week and notified customers via Twitter. "No passwords were exposed. We have no evidence any of this information was viewed by the bad actor," the email stated.

Coinsquare suspended activities on its platform after detecting the vulnerability last week, triggering speculation of possible liquidity issues, given the momentous implosion of multi-billion-dollar crypto exchange, FTX, earlier this month. Full service was restored on Friday, according to a tweet. "We want to reiterate that 100% of client funds are safely held in cold storage and are not used for business activities," the company tweeted.

Privacy

Small Study Finds Computer Repair Shops Accessed Personal Data - And Sometimes Even Copied It (arstechnica.com) 128

Ars Technica reports on what happened when researchers at the University of Guelph in Ontario, Canada, left laptops overnight at 12 computer repair shops — and then recovered logs after receiving their repairs: The logs showed that technicians from six of the locations had accessed personal data and that two of those shops also copied data onto a personal device....

The amount of snooping may actually have been higher than recorded in the study, which was conducted from October to December 2021. In all, the researchers took the laptops to 16 shops in the greater Ontario region. Logs on devices from two of those visits weren't recoverable. Two of the repairs were performed on the spot and in the customer's presence, so the technician had no opportunity to surreptitiously view personal data. In three cases, Windows Quick Access or Recently Accessed Files had been deleted in what the researchers suspect was an attempt by the snooping technician to cover their tracks....

The vast majority of repair shops provide no privacy policy and those that do have no means of enforcing them. Even worse, repair technicians required a customer to surrender their login password even when it wasn't necessary for the repair needed. These findings came from a separate part of the study, in which the researchers brought an Asus UX330U laptop into 11 shops for a battery replacement. This repair doesn't require a technician to log in to the machine, since the removal of the back of the device and access to the device BIOS (for checking battery health) is all that's needed. Despite this, all but one of the repair service providers asked for the credentials to the device OS anyway.

When the customer asked if they could get the repair without providing the password, three refused to take the device without it, four agreed to take it but warned they wouldn't be able to verify their work or be responsible for it, one asked the customer to remove the password, and one said they would reset the device if it was required.

EU

'How Washington Chased Huawei Out of Europe' (politico.eu) 102

Huawei "is giving up on Europe," writes Politico, saying the Chinese telecommunications company is "retrenching its European operations and putting its ambitions for global leadership on ice."

"The reasons for doing this have little to do with the company's commercial potential — Huawei is still able to offer cutting-edge technology at lower costs than its competitors — and everything to do with politics, according to interviews with more than 20 current and former staff and strategic advisers to the company." Pressed by the United States and increasingly shunned on a Continent it once considered its most strategic overseas market, Huawei is pivoting back toward the Chinese market, focusing its remaining European attention on the few countries — Germany and Spain, but also Hungary — still willing to play host to a company widely viewed in the West as a security risk.

"It's no longer a company floating on globalization," said one Huawei official. "It's a company saving its ass on the domestic market...."

Huawei's predicament was summed up by the company's founder Ren Zhengfei in a speech to executives at the company's Shenzhen headquarters in July. He laid out the trifecta of challenges the company has faced over the last three years: hostility from Washington; disruptions from the coronavirus pandemic; and Russia's invasion of Ukraine, which upended global supply chains and heightened European concerns about over-dependence on countries like China. "The environment we faced in 2019 was different from the one we face today," Ren said in his speech, which wasn't made public but was seen by POLITICO. "Don't assume that we will have a brighter future."

"We previously had an ideal for globalization striving to serve all humanity," he added. "What is our ideal today? Survival....!"

The company is also retrenching elsewhere, according to Ren. "We will give up markets in some countries," the firm's founder said in his speech this summer. "For example, we will give up markets in the Five Eyes countries and India." The "Five Eyes" refers to an intelligence-sharing arrangement between the U.S., U.K., Canada, Australia and New Zealand. All five countries have banned or are in the process of banning Huawei and other Chinese companies from their critical infrastructure because of security concerns.

Thanks to Slashdot reader fbobraga for submitting the article.
Sci-Fi

FBI, Air Force Agents Mysteriously Raid House of Guy Who Runs Area 51 Blog (gizmodo.com) 107

Earlier this month, agents from both the FBI and the U.S. Air Force raided multiple homes belonging to a man who runs a little-known blog about Area 51. Gizmodo reports: That man, Joerg Arnu, said the swarm of federal agents in riot gear busted into his primary residence, handcuffed him, then marched him outside to wait in the freezing cold while they rifled through his apartment and took pretty much every piece of electronic equipment that he owned. So far, the government has been pretty tight-lipped about the whole thing, but officials did verify that it happened. In a statement provided to the Las Vegas Review-Journal, Lt. Col. Bryon McGarry confirmed the raid. He did not elaborate on its purpose, saying only: "This is an open and ongoing law enforcement investigation between the Las Vegas FBI and Air Force OSI."

What did cops want? It's not exactly clear. Since 1999, Arnu has run Dreamland Resort, a website that covers activities in and around Area 51, the notoriously secretive government facility located in Groom Lake, Nevada. Long the subject of speculation and curiosity, the highly classified facility is the site of myriad UFO sightings. Coincidentally (or not), it is also the location where the Air Force reportedly tests and develops some of its most sensitive and experimental new projects and aircraft (see: the U-2 spy plane in the 1950s, for instance). Among other things, Arnu's site features pictures and writing about the Air Force's so-called "black projects" -- opaque, classified operations carried out behind a veil of government secrecy.
Arnu claims that the agents confiscated his "laptops, phones, backup drives, camera gear, and my drone were seized." He describes the situation in detail in a blog post on his website.

Slashdot Top Deals