Cloud

Google Launches Media CDN To Compete on Content Delivery (techcrunch.com) 10

This week at the 2022 NAB Show Streaming Summit, Google launched in general availability Media CDN, a platform for delivering content using the same infrastructure that powers YouTube. From a report: With a presence in over 1,300 cities across 200 countries, Google says that Media CDN is designed to -- in the company's words -- "automate all facets" of "serving content [close to users]." The pandemic led to an explosion in demand for streaming content as business closures and shelter-in-place orders forced folks to stay home.

Media CDN, which joins Google's CDN portfolio for web and API acceleration, is by no stretch of the imagination the first of its kind. There's plenty of CDNs optimized to serve media. But Google touts ostensibly unique benefits like delivery protocols tailored to individual users and network conditions and "industry-leading" offload rates. "With multiple tiers of caching, we minimize calls to origin -- even for infrequently accessed content," Google VP Shailesh Shukla wrote in a blog post yesterday. "This alleviates performance or capacity stress in the content origin and saves costs." Media CDN also features tools for ad insertion, allowing customers to dynamically inject video content with ads. Moreover, the service is "built with AI/ML" to power interactive experiences, Google says, like real-time stats during sporting events and purchase links embedded in virtual billboards.

Security

At Least $13M in NFTs Stolen After Bored Ape Yacht Club Instagram, Discord Hacked (coindesk.com) 62

Bored Ape Yacht Club's Instagram account and Discord server were both hacked on Monday, with an unofficial "mint" link being sent out to followers. From a report: "There is no mint going on today. It looks like BAYC Instagram was hacked. Do not mint anything, click links, or link your wallet to anything," the NFT project wrote on Twitter. At the time of writing, it is estimated that around 24 Bored Apes and 30 Mutant Apes have been stolen according to recent OpenSea transfers, although some of these may be holders transferring their NFTs for security purposes. The value of the 54 NFTs calculated by floor price is $13.7 million.
Privacy

Spyware and Pegasus: How Democracies Spy on Their Citizens (newyorker.com) 55

Writing for the New Yorker, Ronan Farrow reports on Pegasus, "a spyware technology designed by NSO Group, an Israeli firm, which can extract the contents of a phone, giving access to its texts and photographs, or activate its camera and microphone to provide real-time surveillance — exposing, say, confidential meetings." Pegasus is useful for law enforcement seeking criminals, or for authoritarians looking to quash dissent.... In Catalonia, more than sixty phones — owned by Catalan politicians, lawyers, and activists in Spain and across Europe — have been targeted using Pegasus. This is the largest forensically documented cluster of such attacks and infections on record. Among the victims are three members of the European Parliament... Catalan politicians believe that the likely perpetrators of the hacking campaign are Spanish officials, and the Citizen Lab's analysis suggests that the Spanish government has used Pegasus....

In recent years, investigations by the Citizen Lab and Amnesty International have revealed the presence of Pegasus on the phones of politicians, activists, and dissidents under repressive regimes. An analysis by Forensic Architecture, a research group at the University of London, has linked Pegasus to three hundred acts of physical violence. It has been used to target members of Rwanda's opposition party and journalists exposing corruption in El Salvador. In Mexico, it appeared on the phones of several people close to the reporter Javier Valdez Cárdenas, who was murdered after investigating drug cartels. Around the time that Prince Mohammed bin Salman of Saudi Arabia approved the murder of the journalist Jamal Khashoggi, a longtime critic, Pegasus was allegedly used to monitor phones belonging to Khashoggi's associates, possibly facilitating the killing, in 2018. (Bin Salman has denied involvement, and NSO said, in a statement, "Our technology was not associated in any way with the heinous murder.") Further reporting through a collaboration of news outlets known as the Pegasus Project has reinforced the links between NSO Group and anti-democratic states.

But there is evidence that Pegasus is being used in at least forty-five countries, and it and similar tools have been purchased by law-enforcement agencies in the United States and across Europe. Cristin Flynn Goodwin, a Microsoft executive who has led the company's efforts to fight spyware, told me, "The big, dirty secret is that governments are buying this stuff — not just authoritarian governments but all types of governments...." "Almost all governments in Europe are using our tools," Shalev Hulio, NSO Group's C.E.O., told me. A former senior Israeli intelligence official added, "NSO has a monopoly in Europe." German, Polish, and Hungarian authorities have admitted to using Pegasus. Belgian law enforcement uses it, too, though it won't admit it.

Calling the spyware industry "largely unregulated and increasingly controversial," the article notes how it's now impacting major western democracies. "The Citizen Lab's researchers concluded that, on July 26 and 27, 2020, Pegasus was used to infect a device connected to the network at 10 Downing Street, the office of Boris Johnson, the Prime Minister of the United Kingdom.... The United States has been both a consumer and a victim of this techÂnology. Although the National Security Agency and the C.I.A. have their own surveillance technology, other government offices, including in the military and in the Department of Justice, have bought spyware from private companies, according to people involved in those transactions."

But are the company's fortunes faltering? The company has been valued at more than a billion dollars. But now it is contending with debt, battling an array of corporate backers, and, according to industry observers, faltering in its long-standing efforts to sell its products to U.S. law enforcement, in part through an American branch, Westbridge Technologies. It also faces numerous lawsuits in many countries, brought by Meta (formerly Facebook), by Apple, and by individuals who have been hacked by NSO....

In November, the [U.S.] Commerce Department added NSO Group, along with several other spyware makers, to a list of entities blocked from purchasing technology from American companies without a license. I was with Hulio in New York the next day. NSO could no longer legally buy Windows operating systems, iPhones, Amazon cloud servers — the kinds of products it uses to run its business and build its spyware.

The Internet

Brave Is Bypassing Google AMP Pages Because They're 'Harmful To Users' (theverge.com) 75

Brave announced a new feature for its browser on Tuesday: De-AMP, which automatically jumps past any page rendered with Google's Accelerated Mobile Pages framework and instead takes users straight to the original website. The Verge reports: "Where possible, De-AMP will rewrite links and URLs to prevent users from visiting AMP pages altogether," Brave said in a blog post. "And in cases where that is not possible, Brave will watch as pages are being fetched and redirect users away from AMP pages before the page is even rendered, preventing AMP / Google code from being loaded and executed." Brave framed De-AMP as a privacy feature and didn't mince words about its stance toward Google's version of the web. "In practice, AMP is harmful to users and to the Web at large," Brave's blog post said, before explaining that AMP gives Google even more knowledge of users' browsing habits, confuses users, and can often be slower than normal web pages. And it warned that the next version of AMP -- so far just called AMP 2.0 -- will be even worse.

Brave's stance is a particularly strong one, but the tide has turned hard against AMP over the last couple of years. Google originally created the framework in order to simplify and speed up mobile websites, and AMP is now managed by a group of open-source contributors. It was controversial from the very beginning and smelled to some like Google trying to exert even more control over the web. Over time, more companies and users grew concerned about that control and chafed at the idea that Google would prioritize AMP pages in search results. Plus, the rest of the internet eventually figured out how to make good mobile sites, which made AMP -- and similar projects like Facebook Instant Articles -- less important.

The Internet

Ukraine War Stokes Concerns in Taiwan Over Its Fragile Internet Links (wsj.com) 48

The war in Ukraine is reviving concerns in Taiwan and some Asia-Pacific nations about the fragility of their internet connections because they rely on undersea cables that could be severed in a Chinese attack. From a report: Ukrainians have used the internet to rally resistance to Russia's invasion, counter Moscow's propaganda and win international support, including through President Volodymyr Zelensky's appeals for weapons. Ukraine has extensive internet connections across its land borders and most of the country has remained online despite Russian attacks on internet infrastructure.

In contrast, Taiwan, a self-ruled island that Beijing claims, receives and sends about 95% of its data-and-voice traffic via cables that lie on the seabed. Currently officials say about 14 cables -- bundles of fiber-optic lines about the thickness of a garden hose -- are in operation, and they reach land at four locations on Taiwan's coast. If the cables were to be cut at sea by submarines or divers, or if military strikes were to destroy the lightly protected landing stations, most of the island would be thrown offline. "We're very vulnerable," said Kenny Huang, chief executive of Taiwan Network Information Center, a government-affiliated cybersecurity and internet-domain-registration organization.

Spam

Americans Are Drowning In Spam (axios.com) 134

An anonymous reader quotes a report from Axios: The average American received roughly 42 spam texts just in the month of March, according to new data from RoboKiller, an app that blocks spam calls and texts. Spammers like using text messages because of their high open rates -- and are now even mimicking targets' own phone numbers to get them to click malicious links, the New York Times reported. "Just like with robocalls, it's extremely easy to deploy [spam texts] in enormous volume and hide your identity," Will Maxson, assistant director of the FTC's division of marketing practices, told Axios. "There's a large number of actors all over the world trying to squeeze spam into the network from almost an infinite number of entry points all the time."

It's not just texts. Every form of spam is on the rise. There were more spam calls last month than in any of the previous six months, per YouMail's Robocall Index. Spam emails rose by 30% from 2020 to 2021, according to a January report from the Washington Post. There was an unprecedented increase in social media scams last year, according to data from the Federal Trade Commission. Many scams were related to bogus cryptocurrency investments.

Experts attribute the sharp increase in spam to the pandemic. People's increased reliance on digital communications turned them into ready targets. The Federal Communications Commission saw a nearly 146% increase in the number of complaints about unwanted text messages in 2020. Americans reported losing $131 million to fraud schemes initiated by text in 2021, a jump over 50% from the year before, according to data from the FTC.

Facebook

Gizmodo Publishes Massive New Leaked Trove of Internal Facebook Papers (gizmodo.com) 20

"Big scoop from Gizmodo today: 'Gizmodo has reviewed, redacted, and published more than two dozen leaked Facebook documents, the first of hundreds to come,'" writes Slashdot reader DevNull127. From the report: We have undertaken this project to help better inform the public about Facebook's role in a wide range of controversies, as well as to provide researchers with access to materials that we hope will advance general knowledge of social media's role in modern history's most troubling crises [...]. The documents will reveal to you, for instance, an internal analysis of the many groups that Facebook knew to be prolific sources of both voter suppression efforts and hate speech targeting its most marginalized users. The records show the company was privately aware of the growing fears among users of being exposed to election-related falsehoods. The papers show that Meta's own data pinpointed the account of then-President Trump as being principally responsible for a surge in reports concerning violations of its violence and incitement rules.

Today's release is the first of a series of posts from Gizmodo to be published in tandem with legal and academic partners. Our goal is to minimize any costs to individuals' privacy and any furtherance of other harms while ensuring the responsible disclosure of the greatest amount of information in the public interest possible. Future releases will be added to this page, a directory, that will eventually offer our readers links all of the leaked internal documents we have published.

Piracy

DuckDuckGo Removes Pirate Sites and YouTube-DL From Its Search Results (torrentfreak.com) 77

An anonymous reader quotes a report from TorrentFreak: Privacy-centered search engine DuckDuckGo has completely removed the search results for many popular pirates sites including The Pirate Bay, 1337x, and Fmovies. Several YouTube ripping services have disappeared, too and even the homepage of the open-source software youtube-mp3 is unfindable. [...] The lack of results is not tied to a specific country and manually fiddling with the region settings didn't change anything either. Apparently, DuckDuckgo has simply removed all thepiratebay.org URLs from its index. This whole-site removal isn't limited to The Pirate Bay either. When we do similar searches for 1337x.to, NYAA.se, Fmovies.to, Lookmovie.io, and 123moviesfree.net, no results appear. For RarBG.to and Fitgirl-repacks we only get one result, instead of the hundreds of thousands we see on other search engines.

The absence of results doesn't only apply to pirate sites themselves. For example, there are no results for the streaming portals Flixtor and Primewire. In addition, the associated status pages, which merely include links to the official domains, are not indexed either. Even several popular stream-rippers have been completely wiped from the search results. That includes 2conv.com, Flvto.bid, and several others. The most surprising omission, by far, is that the official site for the open-source software youtube-dl is not indexed by DuckDuckGo. This site certainly doesn't host or link to any copyright-infringing material. We don't know why the official youtube-dl.org website is not in DuckDuckGo's search results, but at least the official GitHub repository is still findable.
DuckDuckGo has yet to explain why these domain names aren't showing up in its search results. "It wouldn't be a surprise if the move is copyright-related," says TorrentFreak.

UPDATE 4/18/22: A spokesperson from DuckDuckGo reached out to us and provided the following statement: "After looking into this, our records indicate that YouTube-dl and The Pirate Bay were never removed from our search results when you searched for them directly by name or URL, which the vast majority of people do (it's rare for people to use site operators or query operators in general)."

They added: "We are having issues with our site: operator, and not just for these sites, but now at least the official site should be coming up for them when you use the site: operator for them. Some of the other sites routinely change domain names and have spotty availability, and so naturally come in and out of the index but should be available as of now."
Television

Plex Wants To Become the First App You Open on Your TV Every Day (protocol.com) 108

Plex has an audacious plan to become the daily go-to app for everyone's streaming needs: The media center app rolled out new universal search, watchlist and discovery features Tuesday that are designed to help people find and keep track of all of the shows and movies available across a growing universe of streaming services. From a report: "The app dance, going from app to app to find something to watch, just doesn't make any sense," said Plex's senior product and design director, Jason Williams. Instead, Williams hopes that people will just open Plex to browse everything that's new on various streaming services, and then follow deep links to directly launch playback on Netflix, Hulu or anywhere else. "You're going to open up Plex every day," Williams said. "It's going to be your trusted source." Universal search and discovery have long been a holy grail for the streaming industry, but efforts by platform operators to integrate these types of features directly into the smart TV home screen have been held back by industry power struggles. Plex hopes it can avert some of those issues, and is betting on the ingenuity of its power users to help out along the way. In addition to universal search and a universal watchlist across multiple streaming services as well as personal media, Plex is also launching a dedicated discovery section in its app that highlights new titles on Netflix and other services.
Communications

Modem-Wiping Malware Caused Viasat Satellite Broadband Outage In Europe (theregister.com) 17

Tens of thousands of Viasat satellite broadband modems that were disabled in a cyber-attack some weeks ago were wiped by malware with possible links to Russia's destructive VPNFilter, according to SentinelOne. The Register reports: On February 24, as Russian troops invaded Ukraine, Viasat terminals in Europe and Ukraine were suddenly and unexpectedly knocked offline and rendered inoperable. This caused, among other things, thousands of wind turbines in Germany to lose satellite internet connectivity needed for remote monitoring and control. Earlier this week, Viasat provided some details about the outage: it blamed a poorly configured VPN appliance, which allowed a miscreant to access a trusted management segment of Viasat's KA-SAT satellite network.

The broadband provider said this intruder then explored its internal network until they were able to instruct subscribers' modems to overwrite their flash storage, requiring a factory reset to restore the equipment. We were told: "The attacker moved laterally through this trusted management network to a specific network segment used to manage and operate the network, and then used this network access to execute legitimate, targeted management commands on a large number of residential modems simultaneously. Specifically, these destructive commands overwrote key data in flash memory on the modems, rendering the modems unable to access the network, but not permanently unusable."

How exactly these modems had their memory overwritten wasn't said. According to the research arm of SentinelOne, though, it may have been wiper malware deployed to the devices as a malicious firmware update from Viasat's compromised backend. This conclusion was based on a suspicious-looking MIPS ELF binary named "ukrop" that was uploaded to VirusTotal on March 15. "Only the incident responders in the Viasat case could say definitively whether this was in fact the malware used in this particular incident," SentinelOne's Juan Andres Guerrero-Saade and Max van Amerongen wrote on Thursday.

United States

Misinformation is Derailing Renewable Energy Projects Across the United States (npr.org) 224

An anonymous reader shares a report: On a winter night in early 2016, Jeremy Kitson gathered in his buddy's large shed with some neighbors to plan their fight against a proposed wind farm in rural Van Wert County, Ohio. The project would be about a mile from his home. From the beginning, Kitson -- who teaches physics and chemistry at the local high school -- knew he didn't want the turbines anywhere near him. He had heard from folks who lived near another wind project about 10 miles away that the turbines were noisy and that they couldn't sleep. "There were so many people saying that it's horrible, you do not want to live under these things,'" Kitson says. He and his neighbors went on the offensive. "I was just like, there's got to be a way to beat 'em," he says of the developer, Apex Clean Energy. "You got to outsmart them. You got to figure out the science. You got to figure out the economic arguments. You got to figure out what they're going to say and figure out how to counter it."

At the shed, according to Kitson, they agreed that part of their outreach would involve posting information on a Facebook community page called "Citizens for Clear Skies," which ultimately grew to more than 770 followers. In between posts selling anti-wind yard signs and posts about public meetings opposing local wind projects, there were posts that spread false, misleading and questionable information about wind energy. Links to stories about wind turbine noise causing birth defects in Portuguese horses. Posts about the health effects of low frequency infrasound, also called wind turbine syndrome. Posts about wind energy not actually reducing carbon dioxide emissions. Photos of wind turbines breaking, burning and falling -- some in nearby counties and states, but some in Germany and New Zealand.

According to 2014 data from the Department of Energy, the most recent available, out of the then-40,000 turbines in the U.S., there had been fewer than 40 incidents. Kitson, the administrator of the Facebook page, says he knows that these accidents aren't typical. "Those events are not likely. We know that," Kitson says. But Kitson has seen a broken piece of a fallen turbine blade himself, which got him worrying about how the fiberglass might affect the integrity of the soil and the crops. So he posts the photos and articles, many of which he receives from an anti-wind email list. "I do that just to try to show people what's possible." Kitson's group is one of dozens in the United States and abroad that oppose utility-scale wind and solar projects. Researchers say that in many groups, misinformation is raising doubts about renewable energy and slowing or derailing projects.

Youtube

YouTube Added 1,500 Free Movies, But Good Luck Finding Them (mashable.com) 30

An anonymous reader quotes a report from Mashable: YouTube recently added a bunch more movies and TV shows for its U.S. users to stream for free, provided you're willing to sit through some ads. Unfortunately, actually finding them all isn't easy. While YouTube has offered free, ad-supported movies before, this is the first time it has branched out to TV shows. Announced last week, YouTube's updated catalogue of free content now includes over 1,500 movies and 100 television shows, such as 10 Things I Hate About You, The Sandlot, Robin Hood: Men In Tights, Legally Blonde, two seasons of Kitchen Nightmares, and a decent number of more obscure titles such as 1970's Western The Return of a Man Called Horse.

However, YouTube has also made browsing its free titles much more annoying than it needed to be. The platform won't just show you all its free titles and let you scroll through them to find your next binge watch. It certainly won't let you filter them, so you can't narrow your search to all of YouTube's free action movies, or free romantic comedies. Rather, YouTube's algorithm selects a few hundred ad-supported titles to show you in its "free to watch movies" section, hiding the rest. Mashable only counted 360 ad-supported films available in this category, despite YouTube stating it offers over four times that number. Mashable also counted 100 free TV shows.

YouTube noted that viewers can use its search bar to look for titles, as well as browse through content in genre-themed sections which contain a mix of free, hire, and purchasable content. However there's no section only listing all of YouTube's free films or television shows, giving users no option but to trust that YouTube knows best what they should watch. [...] It seems like a strange lack of functionality, but then again, YouTube's bread and butter is in user-uploaded content rather than blockbuster films.
"YouTube is personalized to users, so instead of seeing the entire library at once in the links, users see personalized selections for them," a YouTube spokesperson told Mashable. "Once users begin watching or when new titles cycle in or out, the makeup of the selection in the shelves will change."
Communications

Global Science Project Links Android Phones With Satellites To Improve Weather Forecasts (theverge.com) 10

An anonymous reader quotes a report from The Verge: Collecting satellite data for research is a group effort thanks to this app developed for Android users. Camaliot is a campaign funded by the European Space Agency, and its first project focuses on making smartphone owners around the world part of a project that can help improve weather forecasts by using your phone's GPS receiver. The Camaliot app works on devices running Android version 7.0 or later that support satellite navigation. Researchers think that they can use satellite signals to get more information about the atmosphere. For example, the amount of water vapor in the atmosphere can affect how a satellite signal travels through the air to something like a phone.

The app gathers information to track signal strength, the distance between the satellite and the phone being used, and the satellite's carrier phase, according to Camaliot's FAQs. With enough data collected from around the world, researchers can theoretically combine that with existing weather readings to measure long-term water vapor trends. They hope to use that data to inform weather forecasting models with machine learning. They can also track changes in Earth's ionosphere -- the part of the atmosphere near space. Creating better ionospheric forecasts could be relevant in tracking space weather and could eventually make Global Navigation Satellite Systems (GNSS) more accurate by accounting for events like geomagnetic storms. Camaliot could eventually expand to include more attempts at collecting data on a massive scale using sensors present in "Internet of Things" connected home devices.
According to The Verge, these are the steps to take to begin using the Camaliot app on your Android phone:

1. Select "start logging" and place your phone in an area with a clear sky view to begin logging the data
2. Once you have measured to your liking, select "stop logging"
3. Then, upload your session to the server and repeat the process over time to collect more data. You can also delete your locally-stored log files at this step.

"In addition to being able to view your own measurements against others accumulated over time, you can also see a leaderboard showing logging sessions done by other participants," adds The Verge. "Eventually, the information collected for the study will be available in a separate portal."
Twitter

Can Twitter Help Disseminate Scientific Information? (science.org) 92

Science magazine explores how actual scientists feel about Twitter: "I like that there's a low bar to entry [on Twitter] — I can put something out and see how other scientists are thinking of a problem, people who have a different skill set than mine," says biostatistician Natalie Dean of Emory University, whose Twitter account has some 138,000 followers. But the pandemic has also helped demonstrate the limitations of social media. It can be difficult, for example, for scientists to be heard over the cacophony of messages on Twitter — some 500 million each day. And although some scientists have used the platform to elevate their online presence, that has rarely translated into concrete professional rewards....

[A]s the pandemic exploded and researchers sought to pump out information to each other and an eager public, many saw advantages to Twitter. Its vast reach became a draw: more than 200 million active daily users, including an estimated one-quarter of U.S. adults, according to the Pew Research Center. This allows scientists to use a single platform to share research findings with both peers and the public and to foster open discussions... One result is that the platform has carried posts about a majority of the total COVID-19 literature — about 51% of journal articles on pandemic research had been mentioned in at least one tweet through May 2021, according to a report by the Research on Research Institute (RoRI). That exceeds the number cited in scholarly articles or mentioned in several other communications venues, including news stories, Facebook, YouTube, Wikipedia, blogs, and policy documents. And it's well above the level before the pandemic, when studies found that just 10% to 30% of papers on any scientific topic got a mention on Twitter....

But an emerging body of research about tweeting suggests that, overall, scientists often struggle to be heard on social media. One study, for example, found tweets containing links to scholarly papers typically get little engagement. Of 1.1 million such tweets about papers published before the pandemic, half drew no clicks, and an additional 22% attracted just one or two, according to a 2021 paper in the Journal of the Association for Information Science and Technology.

An information scientist at the University of Ottawa tells the magazine that "We are really not at the point where we want to get, which is, ideally, seeing the impact of research on the greater good of society."

Thanks to Slashdot reader sciencehabit for sharing the story...
Music

How the Music Industry Survived the Internet. Sort of. (nytimes.com) 152

"Music was one of the first industries that felt the sonic boom of the internet, starting with song-sharing websites like Napster in the late 1990s and iTunes digital downloads later," writes the New York Times.

They take a quick look at how the music industry "survived an online revolution," arguing that streaming services "saved the music industry from the jaws of the internet," making it financially healthy and giving it a wider reach.

"But all is not entirely well." Even now, the music industry in the United States generates less revenue than at the peak of the CD. There's a raging debate about how long the gravy train from streaming will last. And many musicians and others say that they're not sharing in the spoils from the digital transformation....

First, I'll lay out the case that the music industry is doing awesome. More than 500 million people around the world pay for digital music, mostly in fees for services such as Spotify, Apple Music or Tencent Music, which is based in China. Those services have given the industry something it has never had before: a steady stream of cash every month. The industry also is making money a gazillion ways. When you watch a music video on YouTube, money flows to the people responsible for that song. TikTok pays record companies when videos feature their popular songs....

Revenue for the music industry has been increasing consistently since 2015, but revenue from all sources — including streaming subscriptions, CDs and royalties from elevator music — is still less than it was in 1999. Total industry revenue back then was about $24 billion adjusted for inflation, and revenue in 2021 was $15 billion, according to the Recording Industry Association of America. (Global sales data from a different music trade group show a similar trajectory.) There aren't an infinite number of people who are willing to pay the going rate in many countries of $10 a month to access a whole bunch of songs on their phones via a service like Spotify. That's what worries people who believe the music industry's digital success has peaked.

Finally, the article points out that even the most-popular songs...aren't as popular as songs got in the past. And then it links to a story headlined "Streaming Saved Music. Artists Hate It."

"The big winners are the streaming services and the large record companies. The losers are the 99 percent of artists who aren't at Beyoncé's level of fame. And they're angry about not sharing in the music industry's success."
Security

Germany Warns Kaspersky Software Risks Being Exploited by Russia (bloomberg.com) 44

Germany warned against using anti-virus software from Moscow-based Kaspersky Lab due to risks it could be exploited by Russia for a cyber attack. From a report: The Federal Office for Information Security, or BSI, issued the warning on Tuesday, saying that companies and authorities with special security status and operators of critical infrastructure could be "particularly at risk." The danger has increased since Russia's invasion of Ukraine, the Bonn-based agency said in a press release, citing threats made by Moscow against NATO, the European Union and Germany. In 2017, the U.S. government banned all use of Kaspersky Lab software in federal information systems, citing concerns about the firm's links to the Russian government and espionage. The company denied any wrongdoing in that case and pushed back against Germany's move now.
Google

Vanced, an Alternative to YouTube's Official App, is Shutting Down (androidpolice.com) 40

"We're here to mourn the passing of YouTube Vanced," writes the site Android Police: If you weren't too fond of the official YouTube app, there were many alternatives at your disposal. One of them was YouTube Vanced — a modded version of the original app that added features like ad blocking, background playback, and many more without charging users like YouTube's Premium tier. We even put it on our list of the best indie apps you can get. It further gained popularity by bringing back dislike counts in videos just as Google removed them from their service...

The folks behind the project announced Sunday in the app's official Telegram channel and on the Vanced Twitter account that it will be discontinued. No clear reason was given as to why it was killed off, so we can only speculate — but it's likely due to Google's legal department taking notice of Vanced...

Vanced was never the only alternative YouTube app. Others include open-source NewPipe, which is more lightweight than the official app. But YouTube Vanced had a huge user base, and we'll miss it. It won't be updated anymore, but you can still get the last version. Do it quickly, though — the download links will soon be gone.

Social Networks

DuckDuckGo's Down-Ranking of Russian Disinformation Caused by Microsoft's Bing (rawstory.com) 115

Slashdot reader nickwinlund77 quotes the New York Times (also quoted here): DuckDuckGo has little control over its search results because they are provided by Microsoft's Bing, which announced that it would follow the European Union's order to restrict access to the Russian state news agencies RT and Sputnik. But the criticism from the far right was directed at DuckDuckGo. The conservative website Breitbart said DuckDuckGo was "adopting the censorship policies" of Big Tech. In social media channels devoted to conspiracy theories, users vowed to switch to alternatives like the Russian search engine Yandex....

In a statement, Kamyl Bazbaz, the vice president of communications for DuckDuckGo, said that the affected sites were engaged in "active disinformation campaigns," meaning they were similar to other low-quality websites already penalized by search algorithms. "This isn't censorship, it's just search rankings," he said....

The company also announced this month that it would pause its relationship with Yandex, the Russian search engine, which was providing certain links for results in Russia and Turkey.

Security

Stolen Nvidia Certificates Used To Hide Malware in Driver Downloads (pcworld.com) 32

Last week Nvidia confirmed that it had been the victim of an internal hack, though it claimed no customer information was compromised. Now we're seeing one of the first effects of the hack on end-users: Nvidia GPU driver packages with malware hidden inside. PCWorld: While it was always possible for malefactors to host links pretending to be drivers in the hopes of installing viruses, trojans, and other nasty stuff on a user's PC, this situation is more concerning. The hackers appear to have leaked Nvidia's official code signing certificates, a means by which users (and Microsoft) can verify that a downloaded program comes from the publisher it says it's from. That's allowing files containing a host of popular malware suites to be posted and downloaded, bypassing Windows Defender's built-in executable verification and slipping past anti-virus software. BleepingComputer reports that two now-expired (but still usable) verification codes have been compromised and used to deliver remote access trojans. Another example, using the Nvidia verification to sign a fake Windows driver, was also spotted.
Google

The Oddly Addictive Quality of Google Alerts (newyorker.com) 7

The imperfect, scattershot search tool delivers just enough usefulness and serendipity to keep one hooked. From a report: Google Alerts can cast a wonderful net, but mesh size matters: large holes and it catches nothing, too small and it catches everything. Consider the earliest and one of the most persistent reasons for setting these alerts: tracking yourself. All is vanity, perhaps especially on the Internet, so it's no surprise that one of the things that we're most eager to know is what the world is saying about us. The engineer who developed the alert system for Google told CNN that when he first presented the idea, twenty years ago, his manager was skeptical, worrying that it would starve the search-engine of traffic: rather than consumers constantly searching for fresh mentions of whatever topic interested them, they would wait for the alert, then follow its links not to Google but to outside Web sites, leaching away potential advertising revenue. In response, the engineer, one of the first forty or so employees of the company, took his prototype to Google's co-founders, who approved it after watching him demonstrate only two search terms: "Google" and "Larry Page," the name of one of the co-founders.

Learning what other people thought about us used to take either a great deal of luck, like Tom Sawyer being mistaken for dead and then getting to eavesdrop on his own funeral, or a great deal of effort, like Harun al-Rashid, a caliph of the Abbasid dynasty, in the "Arabian Nights," disguising himself in order to venture out into the streets and talk with his subjects candidly. But the Internet has made it easy -- made it, in fact, almost unavoidable. The same Google Alert can make sure you know that your long-lost bunkmate from summer camp has mentioned you in an essay, that a friend of your deceased uncle has written a memoir of their time together in the Marines (including the care packages you sent them), and that the local newspaper has digitized its archives, thereby offering up to the Internet your high-school football averages and your arrest for vandalism.

Slashdot Top Deals