Submission + - Google Plans to Exempt Sanctioned Nations From Android Developer Verification (arstechnica.com)

An anonymous reader writes: We are a month away from the initial rollout of Google’s Android developer verification system, and the company contends this policy does not impinge on the platform’s open nature. Still, the restrictions will be a big change, and there are still some unanswered questions. An issue that has come up repeatedly in the run-up to verification is what will happen to devs who can’t verify because of where they live. It turns out that Google has a cryptic answer for that buried in an FAQ. Developer verification will soon block the installation of apps from unverified developers on any Android device running Google services, which is functionally all Android phones outside Russia and China. Developers who want to keep releasing software, even if it’s not in the Play Store, have to provide Google with their ID and pay a small fee.

But what if you’re an Android developer living in a sanctioned nation? Currently, the U.S. sanction list includes Iran, Cuba, North Korea, and occupied areas of Ukraine. Given the current uncertain state of US foreign policy, that list could change in the future. Google doing any business with developers in those places is a thorny issue, and it seems like the company has decided to just leave them hanging. A rather lengthy FAQ a few levels deep on the Google developer site addresses various issues around dev verification. Smack in the middle is this: "How does this program impact developers in sanctioned countries? Devices in sanctioned countries will be excluded from Android developer verification checks. This allows any developer to continue distributing apps in these regions without verification, though users there won’t benefit from the enhanced security benefits of the program."

[...] A Google spokesperson has expanded on the FAQ and confirmed to Ars that people living in sanctioned nations will not be allowed to go through the verification process. That means they will not be able to effectively distribute software through any channel internationally. Today, someone making an app in, say, Cuba can distribute it freely around the world, as well as at home. Anyone can install it and see their work in action after tapping through a few sideloading alerts. In the coming months, that will no longer be the case. These unverified apps will only be easily installable in the sanctioned countries where verification doesn’t exist.

Submission + - OpenAI Finds Evidence Other AI Agents Escaped Containment (reuters.com)

An anonymous reader writes: OpenAI has discovered other instances in which autonomous agents have escaped containment as the company expands its investigation of the hacking incident at tech firm Hugging Face that drew global attention this month, two people familiar with the matter said on Friday. The new breakouts were uncovered during the company'spublicly announced investigationinto how one of its agents escaped what was meant to be a contained testing environment this month, the two people said, and OpenAI is now looking into those instances as well. One of the sources said that the escapes were limited in nature and that none of the agents were thought to have left OpenAI's network.

An OpenAI spokesperson referred toa statement issued by the companyon Tuesday that said it was reviewing "broader activity from our models" in addition to the Hugging Face intrusion. The discovery of additional rogue behavior at OpenAI, even if limited in nature, could feed growing appetite for regulation coming out of the White House and elsewhere. The expanded investigation by OpenAI was launched shortly before its primary rival, Anthropic, disclosed that its models were also responsible fora series of break-insthat led to breaches at three other companies dating back to April, according to the two sources and a third source familiar with the matter. The recent discovery of other past breakouts at OpenAI has not previously been reported.

AI safety experts said the new disclosures paint a portrait of a group of cutting-edge labs whose ability to develop dangerous autonomous hacking agents outstrips their ability to keep them under control. "We have a whole industry where the people designing, developing and putting out these tools aren't keeping up themselves to responsibly develop these things and keep them safe," said Maurice Chiodo, a mathematician who works at Cambridge University's Center for the Study of Existential Risk. Reuters could not establish exactly how many incidents OpenAI investigators found or the timings or circumstances under which they occurred. The three sources said OpenAI and outside experts were examining log data from earlier in the year in a bid to understand what took place.

Submission + - xAI sues Minnesota over its first-in-the-nation law banning 'nudification" tech (apnews.com)

fjo3 writes: Elon Musk’s company xAI has sued Minnesota over the state’s first-in-the-nation law that bans “nudification” technology on websites and apps, potentially providing a test for how far states can go in constitutionally regulating the use of artificial intelligence.

Musk’s company sued Monday in federal court, days before the law is set to take effect Saturday and make Minnesota the first state to try to outlaw the increasingly proliferating technology that lets people use AI to to create fake nude images of real people. The law was signed in May.

Submission + - Google Brings Its Age-Assurance Tech to Android Developers Worldwide (techcrunch.com)

An anonymous reader writes: Google is expanding its answer to Apple’s age-assurance tools with Wednesday’s news that it will bring its Play Signal API to users worldwide by the end of 2026. The technology, already available in Brazil, allows Android developers to identify younger users of their apps in order to provide safer, age-appropriate experiences. The expansion will initially bring the API to Australia and Canada by mid-August, before rolling out globally to all markets by the end of the year.

[...] Like Apple, Google’s technology allows developers to obtain a user’s age range without needing to access personal information, like their date of birth. Instead, it enables parents to share their child’s age range directly with apps. It also lets adults share their age when prompted by app developers as well, allowing for customized experiences. Parents won’t have to manage sharing this information on an app-by-app basis, either. To make it easier, Google centralizes these controls inside its parental controls dashboard, Family Link. Once entered, any developer that chooses to incorporate age-range information can access this signal to customize their apps accordingly.

Google notes, however, that the age ranges are not shared by default — parents must opt in by entering that information. The feature joins other safety tools on Google Play, including those that let developers restrict a child’s ability to discover their apps. Parents, meanwhile, can continue to use Google Play’s Family Link app to manage their child’s screen-time limits, approve app downloads, or set PIN-based content filters for specific apps.

Submission + - FSB Issues "Arrest Warrant" for Telegram's Pavel Durov (dw.com)

D,Petkow writes: The honeymoon is over. In 2024, French authorities nabbed Telegram founder Pavel Durov and the Kremlin had a geopolitical meltdown over their definition of 'freedom of speech.'
Now the FSB has issued its own international arrest warrant for Durov, charging him with 'facilitating terrorism.'
According to DW, the FSB is furious that Telegram's lack of moderation is biting them back.
They claim Ukrainian intelligence has been using Telegram dating bots to pose as young women, lure Russian teens, and get them to commit arson and sabotage against police stations. Essentially: 'Hot singles in your area want to burn down a draft office.'
Classic hypocrisy. Kremlin suddenly discovers unmoderated free speech isn't fun when it's happening in their own backyard and reverts to the trusty authoritarian playbook. Meanwhile, Telegram learns that playing neutral command-and-control platform for a ground war is a great way to end up on everyone's most-wanted list.

The official Telegram response on X/twitter is just a middle finger from Durov himself.
Durov thought he could ignore law enforcement forever, but it may turn out doing nothing unites East and West in the race to lock him up.

Submission + - Judge Blocks First State Law That Would Have Banned Prediction Markets (arstechnica.com)

An anonymous reader writes: Minnesota, the first US state to prohibit prediction markets, was prevented from enforcing the law by a federal court ruling just days before the ban was scheduled to take effect. But while Minnesota was stopped from enforcing a total ban, the state may ultimately be allowed to prohibit some types of prediction-market wagers. The Trump administration and the two largest prediction markets—Kalshi and Polymarket—sued Minnesota after the state enacted the law in May. The cases were consolidated, and a ruling (PDF) issued yesterday imposed a preliminary injunction blocking the law that was scheduled to take effect on August 1.

Minnesota lawmakers saw prediction markets as indistinguishable from gambling, but the US Commodity Futures Trading Commission (CFTC) argues it has exclusive authority to regulate the platforms under federal law. One of the primary legal questions is whether event contracts are “swaps,” which are regulated by the CFTC. Swaps are defined broadly in US law to include contracts in which payment “is dependent on the occurrence, nonoccurrence, or the extent of the occurrence of an event or contingency associated with a potential financial, economic, or commercial consequence.” US District Judge Katherine Menendez in the District of Minnesota, a Biden appointee, said Minnesota’s total ban on prediction markets is likely to violate US law because many trades on Kalshi and Polymarket are swaps.

Menendez wrote: "Specifically, it appears that whether the Minnesota statute is expressly preempted turns on whether the state law attempts to regulate trades in event contracts that qualify as “swaps” within the meaning of the CEA [Commodity Exchange Act]. And there are several examples of event contracts hosted by Kalshi and Polymarket US that fit that definition because they concern the occurrence of events with clear potential economic, financial, or commercial consequences that are neither remote or unattenuated. Kalshi and Polymarket US are designated contract markets, so the CFTC has exclusive jurisdiction to regulate transactions involving those 'swaps.'"

Menendez said the CFTC, Kalshi, and Polymarket met their burden of showing they are likely to succeed on the merits, so she issued “a preliminary injunction barring enforcement of Minnesota’s prediction market statute until a final decision on the merits is reached.” But she said Minnesota may be able to prohibit some types of event contracts offered on Kalshi and Polymarket because not all of them appear to meet the definition of swaps. For example, Menendez doesn’t think prediction-market bets on the outcome of Love Island USA meet the legal definition of swaps. Minnesota could continue litigating the case in district court or ask a federal appeals court to overturn the preliminary injunction.

Submission + - A Missing Underscore Sent Innocent Man to Prison For 18 Months (arstechnica.com)

An anonymous reader writes: One missing underscore in a Skyrim-themed username put an innocent Nova Scotia man in prison for 18 months. A 2018 child-luring investigation, which began in Madison, Wisconsin, and eventually extended to Halifax, Canada, was based on a false premise. Police were looking for a man using the Kik messaging service under the name “fus__ro_dah” (two underscores after “fus”), but they accidentally requested records for the username “fus_ro_dah” (one underscore after “fus”). This one-character difference led them not to the perpetrator but to a Canadian man named Brandon Klayme. (Ars readers may recognize “fus ro dah” as the Unrelenting Force “dragon shout” from The Elder Scrolls V: Skyrim.)

Despite finding no evidence of the crime on his digital devices, Canadian police arrested Klayme in 2020 on child sex abuse charges. He was convicted after a trial in 2023 and sentenced in 2024 to 18 months in prison. He served the full term. Even after release, Klayme continued to fight his conviction. In the process of preparing his appeal, the username mistake that led to all these years of disruption was finally discovered. On Thursday, the Nova Scotia Court of Appeal overturned Klayme’s conviction, writing: “Mr. Klayme is factually innocent of the offences. He should never have been charged, let alone convicted.” [...] As the court puts it, “Although the information about the usernames was available at the time of the trial, there is no evidence confirming or explaining how it went unnoticed.”

Submission + - Nvidia, Tech Giants Launch AI Safety Initiative (securityweek.com)

wiredmikey writes: Nvidia and a large group of technology, cybersecurity, and enterprise software companies have launched new initiative aimed at developing and sharing open source tools, models, and techniques for securing AI systems and agents. The new Open Secure AI Alliance aims to give defenders more open tools for testing, auditing and protecting AI models and agents. Nvidia points to the recent security incident involving OpenAI and Hugging Face, noting that when closed AI tools could not differentiate between attackers and defenders and blocked forensic work, Hugging Face used the open-weight GLM 5.2 model on its own systems to review over 17,000 actions and contain the breach.

Submission + - How Many AI Tech Companies Does it Take to Write a Threatening Letter? Fifty! 1

theodp writes: "You’ve got a nice little healthy AI economy here. It’d be a shame if anything happened to it." That's the gist of Open Weights and American AI Leadership, a don't-mess-with-AI-if-you-know-what's-good-for-you letter crafted and distributed on Friday by fifty leading AI tech organizations and circulated on social media by their CEOs.

"Open-weight models are essential to a healthy AI ecosystem," argued Microsoft CEO Satya Nadella on X/Twitter and LinkedIn. "Together with others across our industry, we are outlining a path for open-weight models to strengthen American competitiveness and expand economic opportunity, while protecting national security." Echoing Nadella's messaging, NVIDIA CEO Jensen Huang tweeted: "For my first post, I’m sharing a letter signed on why open models matter. AI will transform every industry, power every company, and be built by every country. Open models strengthen safety and cybersecurity, accelerate innovation and diffusion, and enable sovereignty. The world needs both frontier closed models and frontier open models." Retweeting Nadella's message, Meta CEO Mark Zuckerberg added: "Open source is a positive and important force for both empowering people and preventing centralization. Proud to support this."

The 50 signatories to the letter — hey, so much for AI enabling everyone to be a writer! — were: AI21, AMD, American Innovators Network, AMP, Andreessen Horowitz, Arcee AI, Arena, Baseten, Black Forest Labs, Block, Box, Cisco, Cloudflare, Cohere, CrowdStrike, Dell Technologies, DoorDash, Emergence Capital, Fireworks AI, Genspark, GitHub, Google, Hugging Face, IBM, Inferact, Interconnects AI, The Linux Foundation, Mariana Minerals, Meta, Microsoft, Mistral, Morph, Mozilla, Nebius, Nous Research, NVIDIA, Ollama, OpenAI, OpenClaw, Palantir, Palo Alto Networks, Periodic Labs, Perplexity, Prime Intellect, Reflection, Replit, ServiceNow, Telnyx, Trajectory, Y Combinator (conspicuous by their absence are Anthropic and Amazon/AWS).

Interestingly, when asked to compare the 7/24 letter signed by the 50 AI companies to a 7/3 FORTUNE op-ed penned by David Siegel, ChatGPT had this to say: "They are remarkably similar in their core narrative, to the point that they appear to be drawing from the same intellectual and policy framework. The July 24 open-weight letter can almost be read as a shorter, more policy-oriented version of the argument David Siegel made three weeks earlier. [...] Siegel is actually more demanding than the July 24 coalition. A major section of his essay argues that many so-called 'open' AI models are not really open because they release only model weights while withholding training data and training code. He wants visibility into how systems were built, not merely the ability to run them. By contrast, the Microsoft-led letter specifically defends open-weight models, which are a narrower concept. Open-weight models allow access to model parameters but typically do not release training datasets or complete training pipelines. In that sense, Siegel's position is arguably more radical and more aligned with traditional free-software principles than the coalition's."

Slashdot Top Deals