Businesses

UST's Do Kwon Was Behind Earlier Failed Stablecoin, Ex-Terra Colleagues Say (coindesk.com) 29

Do Kwon, the CEO of Terra creator Terraform Labs, was one of the pseudonymous co-founders behind the failed algorithmic stablecoin Basis Cash, CoinDesk reported Wednesday. From the report: Basis Cash (BAC) was a closely watched revival in decentralized finance (DeFi) circles when it launched on Ethereum in late 2020, just before the launch of terraUSD (UST), Terra's flagship stablecoin. Like UST, BAC sought to maintain a $1 peg through code, not collateral. But it failed: The token of this long-abandoned project never achieved its target of dollar parity, sank below $1 in early 2021 and was trading well below 1 cent on Wednesday.
Bitcoin

Coinbase Warns Bankruptcy Could Wipe Out User Funds (fortune.com) 132

An anonymous reader shares a report: Hidden away in Coinbase Global's disappointing first-quarter earnings report -- in which the U.S.'s largest cryptocurrency exchange reported a quarterly loss of $430 million and a 19% drop in monthly users -- is an update on the risks of using Coinbase's service that may come as a surprise to its millions of users. In the event the crypto exchange goes bankrupt, Coinbase says, its users might lose all the cryptocurrency stored in their accounts too.

Coinbase said in its earnings report Tuesday that it holds $256 billion in both fiat currencies and cryptocurrencies on behalf of its customers. Yet the exchange noted that in the event it ever declared bankruptcy, "the crypto assets we hold in custody on behalf of our customers could be subject to bankruptcy proceedings." Coinbase users would become "general unsecured creditors," meaning they have no right to claim any specific property from the exchange in proceedings. Their funds would become inaccessible.

Businesses

Coinbase CEO Says India Central Bank's 'Informal Pressure' Prompted Trading Halt (techcrunch.com) 3

Coinbase halted trading service in India because of "informal pressure" from the Reserve Bank of India, the crypto exchange's chief executive said on Tuesday, addressing the notable Indian episode for the first time in a month. From a report: The Nasdaq-listed firm launched its eponymous crypto trading service in India to much fanfare on April 7. The app allowed users in the world's second largest internet market to buy crypto tokens using UPI, a highly popular Indian payments infrastructure built by a coalition of retail banks. But just three days after the launch, the firm rolled back the service without an explanation. The move followed a strange statement made by the National Payments Corporation of India, the governing body that oversees UPI in the country, in which it refused to acknowledge UPI support on Coinbase's app.

Asked about the Indian episode on the company's earnings call, Coinbase co-founder and chief executive Brian Armstrong said Coinbase disabled UPI "because of some informal pressure from the Reserve Bank of India." Armstrong pointed out that cryptocurrency trading is not illegal in India -- in fact, the South Asian nation just recently started to tax it -- but there are "elements in the government there, including at Reserve Bank of India, who don't seem to be as positive on it. And so they -- in the press, it's been called a 'shadow ban,' basically, they're applying soft pressure behind the scenes to try to disable some of these payments, which might be going through UPI," he said.

Software

Research Finds Over 1.5 Million 'Abandoned' Mobile Apps (infoq.com) 46

ellithligraw writes: Analytics company Pixalate found that there are over 1.5 million abandoned iOS and Android apps. This analysis comes after Apple's announcement of changes to their App Store for abandoned apps, prompting a discussion on the Web.

"Pixalate claims they crawled the App Store and Play Store to analyze all apps available for download based on their last update to determine their degree of 'abandonment,'" reports InfoQ. "Based on the previous definitions, Pixalate found over 650k iOS apps and about 870k Android apps to qualify as abandoned apps (haven't been updated in over two years). Of those, just about 180k iOS apps and 130k Android apps qualify as super-abandoned (haven't been updated in at least five years)." Note that according to Statista there are 4 million iOS apps, and 3 million Android apps available.

Communications

UK, US, and EU Officially Blame Russia For Cyberattack Targeting Viasat (sky.com) 24

An anonymous reader quotes a report from Sky News: The UK, US and EU have formally accused Russia of being behind a cyber attack targeting a satellite communications network used in Ukraine. Businesses and individuals using routers made by Viasat, an American business that provides broadband-speed satellite internet connections, were knocked offline just before tanks began to roll into the country.

"The cyberattack took place one hour before Russia's unprovoked and unjustified invasion of Ukraine on 24 February 2022, thus facilitating the military aggression," the EU said in its statement. "Although the primary target is believed to have been the Ukrainian military, other customers were affected, including personal and commercial internet users," the Foreign Office added. As a result of the attack 5,800 wind turbines in Germany were knocked offline as they depended upon Viasat routers for remote monitoring and control. The company said in total tens of thousands of its terminals were effectively destroyed and needed to be replaced.
UK Foreign Secretary Liz Truss said: "This is clear and shocking evidence of a deliberate and malicious attack by Russia against Ukraine which had significant consequences on ordinary people and businesses in Ukraine and across Europe. We will continue to call out Russia's malign behavior and unprovoked aggression across land, sea and cyberspace, and ensure it faces severe consequences."

The attack was described as "yet another example of Russia's continued pattern of irresponsible behavior in cyberspace, which also formed an integral part of its illegal and unjustified invasion of Ukraine," in the EU's statement.

"Such behavior is contrary to the expectations set by all UN member states, including the Russian Federation, of responsible state behavior and the intentions of states in cyberspace. Russia must stop this war and bring an end to the senseless human suffering immediately," the EU added.
Google

Google Explains Why It's All In On Matter, the First True Smart Home Standard (theverge.com) 66

Matter is a new open-source, interoperability smart home standard that's been created by over 200 companies to allow all of your devices to communicate with each other locally, without the need for a cloud. The Verge sat down with Michele Turner, the senior director of Google Smart Home Ecosystem, to hear how the company plans to implement Matter when it finally arrives later this year. Here's an excerpt from the interview: Matter has evolved substantially from that first meeting, and there have been delays and setbacks. Do you still feel confident in that original vision, that it's being carried through and is on track to achieve what you set out to do at that Woodside dinner three years ago?

Michele Turner: I do. And, in fact, I think it's exceeding our original vision in some ways. It's been incredibly heartening to see the enthusiasm and the adoption and the number of companies that have joined the CSA and the Matter workgroup. We're at 200 companies -- it's amazing.

How is Matter going to change the smart home experience for the Google Home user?

Michele Turner: "For the Google Home user, I think the bigger areas of Matter where they'll see change first is in getting your devices set up. I just set up some lights at my mother-in-law's house, and it still took me 45 minutes to set up four lights. It shouldn't have been so hard. The first thing is going to be that significantly simpler setup. The second piece is the speed and the reliability of the local network. This has been a big pain point for users. My team spent a lot of time working with partners on improving reliability and reducing latency. Because in our mind, if it's not as fast as a light switch, what's the point? We believe Matter's going to drive down those latency numbers significantly and improve the overall reliability of devices in the home. Then, I think interoperability for users is going to be a big piece. As much as we love having everybody using the Google Assistant, the reality is people have iPhones and Android phones in their homes. Some of them want to use HomeKit. We just don't have that kind of compatibility today for users. And I think that's hard. Being able to have multi-admin really work well between these ecosystems is going to be a big benefit for users.

Then, our long-term goal is to build out what we call the proactive home. Instead of having a whole bunch of connected devices, how do we build that truly proactive home that works for the benefit of users? ... Matter is going to be absolutely foundational to that. It's the architecture behind the proactive home. If we don't have a home that's reliable, if we don't have things running locally, if it doesn't work consistently, we cannot deliver on that promise. The proactive home is really that intelligence layer, whether it's being able to predict that I'm going upstairs, it's 10 at night, and I always go into my bedroom at that time, so turn on the lights for me; or, I'm watching TV, it's 9:30PM, the kids are in bed, and I get a notification on my phone that the lights just went on in the kid's bedroom. Is somebody sick? Are they watching YouTube? Being able to do anomaly detection. Now, Matter doesn't do that. But it's foundational to be able to enable the rest of that. Because if that core foundation of the home -- of the smart home -- isn't solid, the rest of it just doesn't work."

As you've said, Matter is complicated. And there's a lot of expectation that's been placed on its shoulders. What would you say is the biggest misconception right now with Matter?

Michele Turner: "I think the biggest misconception is that Matter is going to solve every problem in IoT. It doesn't have a native intelligence layer that's going to automatically give you the proactive home. In my mind, it's solving three very foundational things. It's solving making setup easier for the majority of the devices that people put in their homes. Not the majority of device types, necessarily, but the majority of devices people put in their homes. It's making the IoT more reliable and faster. And then it's going to solve this multi-admin problem. It's going to provide that device interconnectivity that we don't have today that is really great for users. While it's going to be a lot more than that, it's not today. But it's solving what we believe are really the core problems that have challenged adoption by mainstream users in the past."
The report notes that all of Google's existing Nest branded smart speakers and displays will be upgraded to support Matter, "allowing you to use Google's voice assistant to control any Matter-enabled device in your home, no matter who made it."
Google

Google, Microsoft and Yahoo Back New York Ban on Controversial Search Warrants (techcrunch.com) 23

A coalition of tech giants, including Google, Microsoft and Yahoo, have pledged support for a New York bill that would ban the use of controversial search warrants that can identify people based on their location data and internet search keywords. From a report: In a brief statement, the coalition known as Reform Government Surveillance said it "supports the adoption of New York Assembly Bill A84A, the Reverse Location Search Prohibition Act, which would prohibit the use of reverse location and reverse keyword searches." The bill, if passed, would become the first state law to ban so-called geofence warrants and keyword search warrants, which rely on demanding tech companies turn over data about users who were near the scene of a crime or searched for particular keywords at a specific point in time. But the bill hasn't moved since it was referred to a committee for discussion in January, the first major hurdle before it can be considered for a floor vote.
Technology

Tech YouTubers Are Stepping Up a War Against Indian Scam Call Centers (pcgamer.com) 59

An anonymous reader writes: Former NASA engineer Mark Rober builds some awesome stuff on his YouTube channel, like devious squirrel mazes, but his most popular video series is the annual glitter bomb, a beautifully over-engineered fake package that douses porch pirates with a shower of glitter and fart spray. In an unexpected twist, last year's glitter bomb video also helped police catch and arrest someone involved in a phone scam scheme, and Rober's spent the subsequent year digging into just how these phone scam operations work. In a new video he shows off the extensive results of that effort, including hiring double agents to infiltrate several phone centers in India and hacking their security camera footage. And of course he got off a stink bomb, too.

For Rober, this crusade started when he teamed up with another YouTuber, Jim Browning, to try to send a glitter bomb to a scammer operation. Browning's whole channel, which has 3.7 million followers, is devoted to identifying the call centers behind tech support scams and refund scams. These scams typically target the elderly and less computer-savvy folks and usually rely on the scammers gaining remote access to your computer and then tricking them into giving up personal information like their bank account login. 'Refund' scams make people believe they've been overcompensated with some bogus refund and trick them into sending cash in the mail to the scammers. The people who receive those cash packages in the United States are essentially underlings in these scam operations, so after getting a glitter bomb in their hands last year, Rober set his sights on the call centers themselves. With Browning's help, they were able to gain access to the CCTV of the infiltrated call centers, while another YouTube pair, Trilogy Media, traveled to Kolkata, India to run operations on the ground.
Also worth checking out: Kitboga's YouTube channel.
Intel

Intel Unveils 7 New 12th Gen Intel Core HX Mobile Processors 7

Intel announced seven new mobile processors for the 12th Gen Intel Core mobile family at its Intel Vision event today. From a report: The 12th Gen Intel Core HX processors use desktop-caliber silicon in a mobile package to deliver high levels of performance for professional workflows like CAD, animation and visual effects. The HX processors are unlocked out of the box and available in Core i5, Core i7 and Core i9 models. The 12th Gen Intel Core HX processors enable mobile workstation platforms by providing 65% more performance in multithreaded workloads with more cores, more memory and more I/O while utilizing Intel Thread Director technology to leverage high-power Performance-cores and Efficient-cores so pros can create, program, render and work with maximum efficiency in the office, at home or on the go. In addition to being a commercial workhorse, 12th Gen Intel Core HX processors provide a gaming powerhouse platform that will give enthusiast gamers higher frame rates. The processors have up to 16 cores (8 Performance-cores and 8 Efficient-cores) and 24 threads running at a processor base power of 55 watts. More than 10 workstation and gaming designs powered by 12th Gen Intel Core HX processors are expected to be launched by major computer makers this year, including systems from Dell, HP, Lenovo and others.
Social Networks

Musk Says He Would Reverse Twitter's Permanent Ban on Trump (bloomberg.com) 405

Twitter was "foolish in the extreme" in kicking former US President Donald Trump off its service, and permanent bans should be extremely rare, said Elon Musk, who has agreed to acquire the social media company. From a report: "I would reverse the permanent ban," Musk said Tuesday at a Financial Times conference. "Perma bans just fundamentally undermine trust in Twitter as a town square where everyone can voice their opinion." Booting the former president off the site "didn't end Trump's voice," Musk said. "It will amplify it among the right. This is why it is morally wrong and flat-out stupid. My opinion, and Jack Dorsey I want to be clear shares this opinion, is that we should not have permanent bans," Musk said, referring to the Twitter co-founder and former chief executive officer.
Technology

Bolt Built $11 Billion Payment Business on Inflated Metrics and Eager Investors (nytimes.com) 20

The start-up has had a meteoric rise, thanks to its charismatic co-founder, Ryan Breslow. But he sometimes stretched the truth to get there. From a report: In just over three years, Bolt has soared in valuation to $11 billion from $250 million, making it a Valley success story. But Bolt's meteoric rise has been fueled at least in part by a pattern of stretching the truth, according to interviews with over 50 former and current employees, clients, investors and others with whom Bolt discussed partnerships and fund-raising, as well as a lawsuit filed recently by a big customer. Most of them sought anonymity because they weren't authorized to speak publicly. In a rush to show growth, Bolt often overstated its technological capability and misrepresented the number of merchants using its service, some of the people said. In presentations to investors, it included the names of customers before verifying whether those merchants were able to use its technology. For a time, a fraud detection product it was pitching to merchants was more dependent on manual review than Mr. Breslow implied, according to a former employee. Mr. Breslow, 27, abruptly stepped down as chief executive in January, blindsiding some investors who, just weeks earlier, had put money into Bolt at an $11 billion valuation.

Now, Bolt's troubles are mounting. Some investors are looking to sell their stakes, while customers are questioning Bolt's technology. One of Bolt's biggest customers, Authentic Brands Group, which owns and licenses brands like Brooks Brothers, is suing the company for having "utterly failed to deliver on the technological capabilities that it held itself out as possessing." At an all-hands staff meeting last month, Bolt -- which has around 800 employees -- announced a three-month hiring freeze. Although it has cash to keep operating for a while, Bolt has talked to prospective investors about raising more funds, according to people with knowledge of the outreach. The implosion last month of Fast, a direct competitor, has only heightened investor scrutiny.

[...] The race to add merchants often meant that Bolt's sales team signed deals without always verifying that the merchant's payments technology would be able to integrate with Bolt. Ms. Neve said it was standard industry practice to include both prospective clients and those who had signed, even if they weren't using the service. Guess, for instance, was listed on Bolt's website as a "won" customer but never went live and was later removed, she said. An internal document viewed by The Times laid out what to do if a merchant asked whether Bolt's technology could integrate with its e-commerce platform. "If it's a big merchant, you probably want to act like our integration is already underway, not lie about it being done, but act as if it's close," the document said. "If it's a smaller merchant, gauge how much we want them vs how excited they are. If we want them a lot and they're not absolutely ecstatic, then act as if we'll build it." Ms. Neve said the company couldn't locate the document, but that it does not reflect "the practices or policies of Bolt." Bolt's business tactics raised questions from at least one big potential investor. As part of its due diligence, Tiger Global, a fund known for investing in hundreds of young start-ups, had talked to clients that Bolt said it had signed on. Based on those conversations, Tiger executives weren't so sure those merchants would use Bolt beyond a trial, according to two people involved in the conversations. To Tiger, Bolt's revenue projections seemed overly bullish and exaggerated, the people said. Tiger passed.

United States

House Panel To Hold Public Hearing on Unexplained Aerial Sightings (nytimes.com) 65

A House subcommittee is scheduled to hold next week the first open congressional hearing on unidentified aerial vehicles in more than half a century, with testimony from two top defense intelligence officials. From a report: The hearing comes after the release last June of a report requested by Congress on "unidentified aerial phenomena." The nine-page "Preliminary Assessment" from the Office of the Director of National Intelligence focused on 144 incidents dating back to 2004 and was able to explain only one. The report declined to draw inferences, saying that the available reporting was "largely inconclusive" and noting that limited and inconsistent data created a challenge in evaluating the phenomena. But it said most of the phenomena reported "do represent physical objects." The assessment concluded that the objects were not secret U.S. technology and that "we currently lack data to indicate any UAP are part of a foreign collection program or indicative of a major technological advancement by a potential adversary."
Piracy

US Copyright Office Seeks Input On Mandatory DMCA 'Upload Filters' (torrentfreak.com) 83

An anonymous reader quotes a report from TorrentFreak: The U.S. Copyright Office has launched a public consultation to evaluate whether it's wise to make certain technical protection measures mandatory under the DMCA. The Office hopes to hear all relevant stakeholders and the public at large in what may become a de facto review of the recently introduced SMART Copyright Act. [...] Following repeated nudges from Senators Thom Tillis and Patrick Leahy, the Copyright Office started looking into automated tools that online services can use to ensure that pirated content can't be easily reuploaded. This "takedown and staydown' approach relies on technical protection tools, which include upload filters. This is a sensitive subject that previously generated quite a bit of pushback when the EU drafted its Copyright Directive. To gauge the various options and viewpoints, the Copyright Office launched a consultation last year, which triggered a wave of objections and opposition.

Last week, the Office followed up with yet another consultation, asking for input on shortcomings in the current DMCA legislation and what alternatives could help to improve things. As things stand, online services are allowed to implement their own upload filters, which many do. Scanning uploads for potentially copyright-infringing content isn't mandatory but that could change in the future. The consultation outline mentions several potential changes to the DMCA's Section 512, such as online services losing their safe harbor protection if they fail to implement specific "standard technical measures" (STMs). "Is the loss of the section 512 safe harbors an appropriate remedy for interfering with or failing to accommodate STMs?" the Copyright Office asks. "Are there other obligations concerning STMs that ought to be required of internet service providers?" the list of questions continues.

Stakeholders are asked to share their views on these matters. While it is uncertain whether any measures will be made mandatory, the Copyright Office is already looking ahead. For example, who gets to decide what STMs will be mandatory, and how would the rulemaking process work? "What entity or entities would be best positioned to administer such a rulemaking? What should be the frequency of such a rulemaking? What would be the benefits of such a rulemaking? What would be the drawbacks of such a rulemaking?"

Google

Google Play Users In Russia Can No Longer Update Or Download Paid Apps (9to5google.com) 74

Back in March, Google halted Android app and subscription purchases in Russia due to sanctions. Google Play is now "blocking the downloading of paid apps and updates to paid apps in Russia starting May 5, 2022.â 9to5Google reports: The company cites "compliance efforts" as being responsible for this latest policy. There are no changes to free applications as Google says in the Q&A of its support article on the matter: "Can I publish new apps or update existing apps during this pause? You can still publish new free apps, and update existing free apps. Updates to paid apps are blocked for compliance reasons."

Google has recommended developers defer payment renewals (which is possible for up to one year). Another given possibility for developers was making apps free or removing the paid subscription "during this pause." That was advised for applications that provide a "critical service to users that keeps them safe and provides access to information."

Microsoft

Microsoft Recommends People Uninstall Optional Windows 11 Update KB5012643 (extremetech.com) 75

DrunkenTerror shares a report from ExtremeTech: Microsoft is advising Windows 11 users to uninstall a recent update. Reports indicated the optional update KB5012643 is causing various apps to crash. The problem involves an interaction between the update and the .Net Framework that's part of Windows. At this time it's unclear which apps are affected by the issue, leaving uninstallation as the "only" viable solution.

"Affected apps are using certain optional components in .NET Framework 3.5, such as Windows Communication Foundation (WCF) and Windows Workflow (WWF) components." This update also broke Safe Mode. Microsoft says when users booted into 'Safe Mode without networking' users might see the screen flicker. Per MS, "Components that rely on explorer.exe, such as File Explorer, the Start menu, and the taskbar, can be affected and appear unstable." Microsoft issued a Known Issue Rollback (KiR) for this already so it should be fixed. If you encounter it, you should be able to resolve it by enabling network support in Safe Mode.

Piracy

Pirate Site Blocking Is Making Its Way Into Free Trade Agreements (torrentfreak.com) 39

The new free trade agreement between Australia and the UK includes a site blocking paragraph. The text requires the countries to provide injunctive relief to require ISPs to prevent subscribers from accessing pirate sites. While this doesn't change much for the two countries, rightsholders are already eying similar requirements for trade deals with other nations. TorrentFreak reports: The inclusion of a blocking paragraph in the copyright chapter of the trade deal was high on the agenda of various copyright holder groups. Following a series of hearings and consultations, both countries settled on the following text:

1. Each Party shall provide that its civil judicial authorities have the authority to grant an injunction against an ISP within its territory, ordering the ISP to take action to block access to a specific online location, in cases where:
(a) that online location is located outside the territory of that Party; and
(b) the services of the ISP are used by a third party to infringe copyright or related rights in the territory of that Party.

2. For greater certainty, nothing in this Article precludes a Party from providing that its judicial authorities may grant an injunction to take action to block access to online locations used to infringe intellectual property rights in circumstances other than those specified in paragraph 1.


This hasn't gone unnoticed by the Alliance for Intellectual Property, which represents rightsholder organizations such as the MPA, BPI, and the Premier League. The group repeatedly urged the UK Government to include site-blocking powers in the agreement. In a recent submission to the UK Government, the Alliance once again stresses the importance of site blocking, while also hinting at broadening the current anti-piracy toolbox. "It has become a hugely valuable tool in the armory of rights holders looking to protect their IP. It is vital that the UK Government ensures the preservation of the no-fault injunctive relief regime," the Alliance writes. "We would also encourage the opening of dialogue, wherever possible, to share experience around UK practices and to encourage faster, more efficient website blocking procedures, whether through civil, criminal, administrative or voluntary means."

The site-blocking language is already included in the latest trade deal draft but the Alliance is also looking ahead at future agreements with other countries. In this context, the blocking paragraph will send a clear message. "We would therefore urge the UK Government to include reference to the site blocking legislation in the FTA with Australia as it will send an important message to future countries that we might chose [sic] to negotiate trade agreements with." The Alliance for Intellectual Property doesn't mention any other countries by name. However, it specifically references a report from the U.S. Copyright Office where site blocking was mentioned as a potential future anti-piracy option. In the same report, the Copyright Office also stressed that further research would be required on the effect and impact of a U.S. site-blocking scheme, but the idea wasn't dismissed outright.

Facebook

Facebook To Discontinue 'Nearby Friends' and Other Location-Based Features (9to5mac.com) 11

Facebook on Thursday began informing users that Nearby Friends and other location-based features will soon be discontinued at the end of the month. While the reasons are currently unclear, the company claims that all information related to these features will be deleted from Facebook's servers. 9to5Mac reports: Users have been getting a notification in the Facebook app for iOS and Android about the end of Nearby Friends, a feature that lets people share their current location with other Facebook friends. At the same time, Facebook also says that Time Alerts, Location History, and Background Location are also "going away soon." According to the company, Nearby Friends and other location-based features will no longer be available to users after May 31, 2022.

Some of the data, such as the user's location history (which automatically uses your location to create a map of places you have visited, will be available for download by August 1, 2022. After that, Facebook says that this data will be deleted. Unfortunately, this doesn't mean that Facebook's app will stop collecting users' location. The company states that location data will still be collected "for other experiences." Of course, you can always disable the Facebook app's access to your location by going into the iOS Privacy settings.

Security

Hackers Are Now Hiding Malware In Windows Event Logs (bleepingcomputer.com) 49

Security researchers have noticed a malicious campaign that used Windows event logs to store malware, a technique that has not been previously documented publicly for attacks in the wild. BleepingComputer reports: The method enabled the threat actor behind the attack to plant fileless malware in the file system in an attack filled with techniques and modules designed to keep the activity as stealthy as possible. [...] The dropper copies the legitimate OS error handling file [...] and then drops an encrypted binary resource to the 'wer.dll' (Windows Error Reporting) in the same location, for DLL search order hijacking to load malicious code. DLL hijacking is a hacking technique that exploits legitimate programs with insufficient checks to load into memory a malicious Dynamic Link Library (DLL) from an arbitrary path.

[Denis Legezo, lead security researcher at Kaspersky] says that the dropper's purpose is to loader on the disk for the side-loading process and to look for particular records in the event logs (category 0x4142 - 'AB' in ASCII. If no such record is found, it writes 8KB chunks of encrypted shellcode, which are later combined to form the code for the next stager. "The dropped wer.dll is a loader and wouldn't do any harm without the shellcode hidden in Windows event logs," says Legezo. The new technique analyzed by Kaspersky is likely on its way to becoming more popular as Soumyadeep Basu, currently an intern for Mandiant's red team, has created and published on GitHub source code for injecting payloads into Windows event logs.

The Courts

Match Sues Google Over App Store Billing Rules (bloomberg.com) 31

Match Group accused Alphabet's Google in a lawsuit of acting as a monopolist with its app store billing rules, the latest escalation in a brawl over the mobile-app industry. From a report: Match Group, which operates dating apps such as Tinder and OkCupid, alleged that Google breaks federal and state laws and abuses its power with a requirement that app developers use its billing system on Android devices. "Ten years ago, Match Group was Google's partner. We are now its hostage," Match Group said in a complaint filed Monday in northern California federal court.

"Blinded by the possibility of getting an ever-greater cut of the billions of dollars users spend each year on Android apps, Google set out to monopolize the market for how users pay for their Android apps." Google, like Apple, has faced enormous recent legal and political scrutiny over the commission fees and billing restrictions both companies apply to paid services in their app stores. Congress is currently weighing a bill to force Google and Apple to change their business models.

The Internet

Low-Wage Earners To Get High-Speed Internet For $30 in Biden Program (washingtonpost.com) 226

echo123 writes: Twenty Internet providers, including AT&T, Comcast and Verizon, have agreed to provide high-speed service at a steep discount to low-income consumers, the White House announced Monday, significantly expanding broadband access for millions of Americans. The plan, a feature of the $1 trillion infrastructure package passed by Congress last year, would cost qualifying households no more than $30 per month. The discounts plus existing federal Internet subsidies mean the government will cover the full cost of connectivity if consumers sign on with one of the 20 participating companies. The White House estimates the program will cover 48 million households, or 40 percent of the country.

The 100-megabit-per-second service is fast enough for a family to work from home, complete schoolwork, browse the Internet and stream high-definition movies and TV shows, the White House said. Households can qualify for the subsidies, called the Affordable Connectivity Program, if their income is at or below 200 percent of federal poverty guidelines, a member of the household participates in certain federal anti-poverty initiatives -- including Medicaid, Supplemental Nutrition Assistance Program, federal housing assistance, Pell Grant tuition assistance, or free or reduced-price school meals -- or if the household already qualifies for an Internet provider's low-income service program. Consumers can check whether they qualify for discounted service at getinternet.gov.

Slashdot Top Deals