×
China

Baidu Placed AI Chip Order from Huawei in Shift Away From Nvidia (reuters.com) 31

Baidu ordered AI chips from Huawei this year, Reuters reported citing two people familiar with the matter, adding to signs that U.S. pressure is prompting Chinese acceptance of the firm's products as an alternative to Nvidia's. From the report: One of the people said Baidu, one of China's leading AI firms, which operates the Ernie large language model, placed the order in August, ahead of widely anticipated new rules by the U.S. government that in October tightened restrictions on exports of chips and chip tools to China, including those of U.S. chip giant Nvidia.

Baidu ordered 1,600 of Huawei's 910B Ascend AI chips - which the Chinese firm developed as an alternative to Nvidia's A100 chip - for 200 servers, the source said, adding that by October, Huawei had delivered more 60% of the order, or about 1,000 chips, to Baidu. The second person said that the order's total value was approximately 450 million yuan ($61.83 million) and that Huawei was to deliver all of the chips by the end of this year. Although the order is tiny relative to the thousands of chips top Chinese tech firms have historically ordered from Nvidia, the sources said it was significant, as it showed how some firms could shift away from the U.S. company.

Google

Google Photos' Magic Editor Will Refuse To Make Some Edits (androidauthority.com) 50

Combing through the code of the new version of Google Photos app for Android, some users have found that Google plans to restrict Magic Editor, a feature it unveiled at Google I/O this year, from making certain kinds of edit. AndroidAuthority: Summarizing the strings above, it seems Magic Editor will refuse to edit:
1. Photos of ID cards, receipts, and other documents that violate Google's GenAI terms.
2. Images with personally identifiable information.
3. Human faces and body parts.
4. Large selections or selections that need a lot of data to be generated.

Encryption

Scientist Claims Quantum RSA-2048 Encryption Cracking Breakthrough (tomshardware.com) 129

Mark Tyson reports via Tom's Hardware: A commercial smartphone or Linux computer can be used to crack RSA-2048 encryption, according to a prominent research scientist. Dr Ed Gerck is preparing a research paper with the details but couldn't hold off from bragging about his incredible quantum computing achievement (if true) on his LinkedIn profile. Let us be clear: the claims seem spurious, but it should be recognized that the world isn't ready for an off-the-shelf system that can crack RSA-2048, as major firms, organizations, and governments haven't yet transitioned to encryption tech that is secured for the post-quantum era.

In his social media post, Gerck states that a humble device like a smartphone can crack the strongest RSA encryption keys in use today due to a mathematical technique that "has been hidden for about 2,500 years -- since Pythagoras." He went on to make clear that no cryogenics or special materials were used in the RSA-2048 key-cracking feat. BankInfoSecurity reached out to Gerck in search of some more detailed information about his claimed RSA-2048 breakthrough and in the hope of some evidence that what is claimed is possible and practical. Gerck shared an abstract of his upcoming paper. This appears to show that instead of using Shor's algorithm to crack the keys, a system based on quantum mechanics was used, and it can run on a smartphone or PC.

In some ways, it is good that the claimed breakthrough doesn't claim to use Shor's algorithm. Alan Woodward, a professor of computer science at the University of Surrey, told BankInfoSecurity that no quantum computer in existence has enough gates to implement Shor's algorithm and break RSA-2048. So at least this part of Gerck's explanation checks out. However, the abstract of Gerck's paper looks like it is "all theory proving various conjectures - and those proofs are definitely in question," according to Woodward. The BankInfoSecurity report on Gerck's "QC Algorithms: Faster Calculation of Prime Numbers" paper quotes other skeptics, most of whom are waiting for more information and proofs before they organize a standing ovation for Gerck.

The Military

US Military Members' Personal Data Being Sold By Online Brokers, Report Finds 32

Jacob Knutson reports via Axios: Sensitive, highly detailed personal data for thousands of active-duty and veteran U.S. military members can be purchased for as little as one cent per name through data broker websites, according to a new study (PDF) published on Monday by Duke University researchers. [...] The data about military personnel purchased as part of the study included full names, physical and email addresses, health and financial information and details about their ethnicity, religious practices and political affiliation. In some cases, the information also included whether the person owned or rented a home, was married or had children. The children's ages and sexes were accessible, too.

The researchers bought data on up to around 45,000 military personnel for between $0.12 to $0.32 per record. They also bought data belonging to 5,000 friends and family members of military personnel. Larger data purchases of over 1.5 million service members were available for as little as $0.01 per record from at least one broker the researchers contacted. The researchers called on Congress to pass a comprehensive privacy law and for regulatory agencies like the Federal Trade Commission to develop rules to govern military personnel data purchases.
Transportation

Washington DC Gives Residents Free AirTags To Help Track Stolen Cars (pcmag.com) 110

The city of Washington D.C. is planning to give residents Apple AirTags to help officers track down stolen vehicles. PCMag reports: "Last week, we introduced legislation to address recent crime trends; this week, we are equipping residents with technology that will allow MPD to address these crimes, recover vehicles, and hold people accountable," D.C. Mayor Muriel Bowser said in a statement. "We have had success with similar programs where we make it easier for the community and MPD to work together -- from our Private Security Camera Incentive Program to the wheel lock distribution program -- and we will continue to use all the tools we have, and add new tools, to keep our city safe."

At launch, the AirTags will be available to residents in specific areas of the city that have recently seen the largest increase in vehicle thefts. To obtain the tags, residents will have to attend one of three scheduled distribution events next week where officers will install the device on the resident's cars and help them set up the tracking tag on their mobile devices. The program is currently available for residents who live in Police Service Areas 106, 501, 502, 603, 605, and 606. Check where you live on the MPD's website.

The Courts

Epic Games Goes To Court To Challenge Google's App Store Practices (cnn.com) 63

Epic Games, the maker of the popular game "Fortnite," has launched a battle against Google in federal court in a closely watched antitrust showdown that could reshape how smartphone users get Android apps and pay for in-app content. From a report: Epic's lawsuit in the US District Court in California's Northern District targets the Google Play Store, focusing on Google's fees for in-app subscriptions and one-off transactions, along with other terms that app developers such as Epic say helped Google maintain an illegal monopoly in app distribution.

The legal battle follows a years-long debate about whether app store operators such as Google and Apple foster an open, competitive app ecosystem. The two companies argue their app stores help unlock billions in revenue for small businesses, while ensuring that Android and iOS users benefit from security oversight that the technology giants provide. The jury may hear high-profile witnesses testify from both sides, including Google CEO Sundar Pichai and Epic CEO Tim Sweeney.

The court fight traces back to 2020, when Epic launched Project Liberty, a plan to circumvent Apple and Google's app store terms. That move by Epic forced a confrontation with the tech giants. Epic updated the Fortnite app to encourage players to pay for in-app content directly through Epic's own website -- rather than through Apple and Google's in-app payment systems. That gambit triggered a violation of the app stores' developer terms. The move also prompted both app stores to remove the Fortnite app from their platforms.

The Internet

Elon Musk Says SpaceX's Starlink Achieves Breakeven Cash Flow (cnbc.com) 155

There's now two million subscribers to SpaceX's Starlink satellite internet service, with CEO Elon Musk announcing Thursday that it has "achieved breakeven cash flow..."

Long-time Slashdot reader SonicSpike shared this report from CNBC: Musk did not specify whether that milestone was hit on an operating basis or for a specified time period. Earlier this year, SpaceX President and Chief Operating Officer Gwynne Shotwell said Starlink "had a cash flow positive quarter" in 2022, and the overall SpaceX company reportedly turned a profit in the first quarter of 2023.

SpaceX's valuation has soared to about $150 billion, with Starlink seen as a key economic driver of the company's goals. Two years ago, Musk emphasized that making Starlink "financially viable" required crossing "through a deep chasm of negative cash flow."

Musk has discussed spinning off Starlink to take it public through an initial public offering once the business was "in a smooth sailing situation." But timing of a Starlink IPO remains uncertain. Last year, Musk told employees that taking the business public wasn't likely until 2025 or later.

AI

After Suspending Its Self-Driving Cars, Cruise Takes Steps to Win Back Trust (nytimes.com) 76

Cruise stopped its driverless operations nationwide last week. But the New York Times reports on the company's moves since then...

- Cruise hired the law firm Quinn Emanuel to investigate its response to a San Francisco incident involving a pedestrian, "including its interactions with regulators, law enforcement and the media."
- A separate review of the incident is being doncuted by Exponent, a consulting firm that evaluates complex software systems.
- The company's rivals "fear Cruise's issues could lead to tougher driverless car rules for all of them."
- "Cruise employees worry that there is no easy way to fix the company's problems, said five former and current employees and business partners."

Company insiders are putting the blame for what went wrong on a tech industry culture — led by 38-year-old [Chief Executive Kyle] Vogt — that put a priority on the speed of the program over safety. In the competition between Cruise and its top driverless car rival, Waymo, Mr. Vogt wanted to dominate in the same way Uber dominated its smaller ride-hailing competitor, Lyft. "Kyle is a guy who is willing to take risks, and he is willing to move quickly. He is very Silicon Valley," said Matthew Wansley, a professor at the Cardozo School of Law in New York who specializes in emerging automotive technologies. "That both explains the success of Cruise and its mistakes."

When Mr. Vogt spoke to the company about its suspended operations on Monday, he said that he did not know when they could start again and that layoffs could be coming, according to two employees who attended the companywide meeting. He acknowledged that Cruise had lost the public's trust, the employees said, and outlined a plan to win it back by being more transparent and putting more emphasis on safety. He named Louise Zhang, vice president of safety, as the company's interim chief safety officer and said she would report directly to him...

With its business frozen, there are concerns that Cruise is becoming too much of a financial burden on G.M. and is hurting the auto giant's reputation... The shutdown complicates Cruise's ambition of hitting its goal of $1 billion of revenue in 2025. G.M. has spent an average of $588 million a quarter on Cruise over the past year, a 42 percent increase from a year ago. Each Chevrolet Bolt that Cruise operates costs $150,000 to $200,000, according to a person familiar with its operations.

Facebook

Amazon and Meta Promise UK Regulators to Stop Unfairly Undercutting Rivals (theregister.com) 16

Friday the U.K.'s competition regulator made an announcement. Amazon and Meta agreed they wouldn't use data collected their marketplaces for an unfair advantage against competitors.

The Register explains: In Amazon's case, the e-commerce giant used vendors' sales figures to decide which items it should sell, and how much to price products to get an edge over everyone else. The internet behemoth also promoted its own products with its Buy Box feature and it further cut into retailers' margins by charging extra costs if they wanted to use Amazon's Prime delivery services, the CMA said. Now Amazon has committed to doing less of that.

The Competition and Markets Authority said [Amazon] will be prevented from using third-party seller data that gives it an unfair commercial advantage, and will allow rivals to negotiate rates with independent delivery contractors working on behalf of Amazon. Merchants' items will also be better supported by the Buy Box too, according to the CMA, instead of Amazon-led products or those from sellers that have bought into the company's packing and delivery services...

[Facebook] was accused of exploiting advertisers hawking wares on Facebook Marketplace, and using competitors' data to improve its own products or services. "Going forward, competitors of Facebook Marketplace that advertise on Meta platforms can 'opt out' of their data being used to improve Facebook Marketplace," the CMA said.

The CMA also has specific plans for enforcement, reports TechCrunch. for Meta the UK agency "has said it will set up a monitoring trustee to oversee its adherence, including its new technical system rollout and employee training," while Amazon will also get an "independent trustee" overseeing their compliance.
Transportation

Whatever Happened to Amazon's Drone Delivery Service? (yahoo.com) 71

The New York Times shows an enormous Amazon drone hovering over a driveway in the Texas suburbs. (Alternate URL here.) The drone lets go of a large brown package, which plummets to the ground.

But 10 years after Amazon revealed its drone program, drone delivery is only "kind of" a reality, the Times argues — in one city in Texas. "The venture as it currently exists is so underwhelming that Amazon can keep the drones in the air only by giving stuff away." Years of toil by top scientists and aviation specialists have yielded a program that flies Listerine Cool Mint Breath Strips or a can of Campbell's Chunky Minestrone With Italian Sausage — but not both at once — to customers as gifts....

Only one item can be delivered at a time. It can't weigh over five pounds. It can't be too big. It can't be something breakable, since the drone drops it from 12 feet. The drones can't fly when it is too hot or too windy or too rainy. You need to be home to put out the landing target and to make sure that a porch pirate doesn't make off with your item or that it doesn't roll into the street... But your car can't be in the driveway. Letting the drone land in the backyard would avoid some of these problems, but not if there are trees. Amazon has also warned customers that drone delivery is unavailable during periods of high demand for drone delivery...

A more complicated issue was getting the technology to the point where it was safe not just most of the time but all of the time. The first drone that lands on someone's head, or takes off clutching a cat, sets the program back another decade, particularly if it is filmed.

The drones also struggled with real-world issues like Texas heat waves. During one heat wave the drones were suspended. And when they flew again, "a 54-year-old professor of civil engineering at Texas A&M ordered a medication through the mail. By the time he retrieved the package, the drug had melted." One of Amazon's customers tells the Times that Amazon's drones "feel more like a toy than anything — a toy that wastes a huge amount of paper and cardboard."

Amazon claims that in the last 10 months their drones have delivered "hundreds" of items in Texas. Beyond that, Amazon recently announced that its drone deliveries would be expanding within the next 14 months, the Times points out — to Britain, Italy, and a new U.S. location. "Yet even on the threshold of growth, a question lingers. Now that the drones finally exist in at least limited form, why did we think we needed them in the first place?"
Google

Will AI-Powered SEO Ruin Google's Search Results? (theverge.com) 69

A long read at the Verge explores the quality of Google's search results — and whether they've been affected by the Search Engine Optimization industry.

But it begins by saying that "A lot of folks' complain that "The links that pop up when they go looking for answers online, they say, are "absolutely unusable"; "garbage"; and "a nightmare" because "a lot of the content doesn't feel authentic."

If so, the question is why. SEO Daron Babin warns that "We're entering a very weird time, technologically, with AI, from an optimization standpoint... All the assholes that are out there paying shitty link-building companies to build shitty articles, now they can go and use the free version of GPT." Soon, he said, Google results would be even worse, dominated entirely by AI-generated crap designed to please the algorithms, produced and published at volumes far beyond anything humans could create, far beyond anything we'd ever seen before. "They're not gonna be able to stop the onslaught of it," he said. Then he laughed and laughed, thinking about how puny and irrelevant Google seemed in comparison to the next generation of automated SEO. "You can't stop it...!"

Nowadays, he mostly invests in cannabis and psychedelics. SEO just got to be too complicated for not enough money, he told me. [SEO Missy] Ward had told me the same thing, that she had stopped focusing on SEO years ago.

But the Verge also spoke to Danny Sullivan, the former journalist who started the SEO-industry site Search Engine Land — who was eventually hired by Google as their "public liaison for serach." And Sullivan "is pissed that people think Google results have gone downhill. Because they haven't, he insisted. If anything, search results have gotten a lot better over time. Anyone who thought search quality was worse needed to take a hard look in the mirror." Sullivan was not the only person who tried to tell me that search results have improved significantly. Out of the dozen-plus SEOs that I spoke with at length, nearly every single one insisted that search results are way better than they used to be...

This was not what I had been noticing, and this was certainly not what I had been hearing from friends and journalists and friends who are journalists. Were all of us wrong...? I began to worry all the people who were mad about search results were upset about something that had nothing to do with metrics and everything to do with feelings and ~vibes~ and a universal, non-Google-specific resentment and rage about how the internet has made our lives so much worse in so many ways, dividing us and deceiving us and provoking us and making us sadder and lonelier.

SEO Lily Ray says Google did change its algorithm in 2016 to fight disinformation, trying to favor sites with "experience, expertise, authoritativeness, and trustworthiness." But the point that really hit me was that for certain kinds of information, Google had undone one of the fundamental elements of what had made its results so appealing from the start. Now, instead of wild-west crowdsourcing, search was often reinforcing institutional authority...

The second major reason why Google results feel different lately was, of course, SEO... Google is harder to game now — it's true. But the sheer volume of SEO bait being produced is so massive and so complex that Google is overwhelmed. "It's exponentially worse," Ray said. "People can mass auto-generate content with AI and other tools," she went on, and "in many cases, Google's algorithms take a minute to catch onto it."

The future that Babin had cackled about at the alligator party was already here. We humans and our pedestrian questions were getting caught up in a war of robots fighting robots, of Google's algorithms trying to find and stop the AI-enabled sites programmed by SEOs from infecting our internet experience.

Firefox

Mozilla Introduces Firefox Nightly .deb Packages for Debian-based Linux Distros (9to5linux.com) 23

Mozilla has some news for users of Debian-based Linux distributions (such as Debian, Ubuntu, Linux Mint, and others): installing, updating, and testing the latest Firefox Nightly builds just got a lot easier. We've set up a new APT repository for you to install Firefox Nightly as a .deb package... These packages are compatible with the same Debian and Ubuntu versions as our traditional binaries. If you've previously used our traditional binaries (distributed as .tar.bz2 archives), switching to Mozilla's APT repository allows Firefox to be installed and updated like any other application... You will not have to restart Firefox after updating the package with APT...

For those of you who would like to use Firefox Nightly in a different language than American English, we have also created .deb packages containing the Firefox language packs.

Some context from 9to5Linux: Back in April, I reported that Mozilla was offering a DEB package of the Firefox 113 release during the beta testing phase. Unfortunately, that was the only time a DEB package was available for download and, of course, it didn't make it into the final release of Firefox 113, nor future releases. It would appear that Mozilla needed more time to work on the DEB package for Debian and Ubuntu-based distributions, and it looks like it will finally become a thing starting with an upcoming Firefox release, like Firefox 121 or later...

Using the DEB package over Snap or the official binary package offers some benefits like better performance due to advanced compiler-based optimizations, hardened binaries with all security flags enabled, access to the latest Firefox releases as fast as possible [because the .deb is integrated into Firefox's release process], and you won't have to create your own .desktop file anymore.

The Media

Will 'News Influencers' Replace Traditional Media? (msn.com) 123

The Washington Post looks at the "millions of independent creators reshaping how people get their news, especially the youngest viewers." News consumption hit a tipping point around the globe during the early days of the coronavirus pandemic, with more people turning to social media platforms such as TikTok, YouTube and Instagram than to websites maintained by traditional news outlets, according to the latest Digital News Report by the Reuters Institute for the Study of Journalism. One in 5 adults under 24 use TikTok as a source for news, the report said, up five percentage points from last year. According to Britain's Office of Communications, young adults in the United Kingdom now spend more time watching TikTok than broadcast television. This shift has been driven in part by a desire for "more accessible, informal, and entertaining news formats, often delivered by influencers rather than journalists," the Reuters Institute report says, adding that consumers are looking for news that "feels more relevant...."

While a few national publications such as the New York Times and The Washington Post have seen their digital audiences grow, allowing them to reach hundreds of thousands more readers than they did a decade ago, the economics of journalism have shifted. Well-known news outlets have seen a decline in the amount of traffic flowing to them from social media sites, and some of the money that advertisers previously might have spent with them is now flowing to creators. Even some outlets that began life on the internet have struggled, with BuzzFeed News shuttering in April, Vice entering into bankruptcy and Gawker shutting down for a second time in February. The trend is likely to continue. "There are no reasonable grounds for expecting that those born in the 2000s will suddenly come to prefer old-fashioned websites, let alone broadcast and print, simply because they grow older," Reuters Institute Director Rasmus Kleis Nielsen said in the report, which is based on an online survey of roughly 94,000 adults in 46 national markets, including the United States...

While many online news creators are, like Al-Khatahtbeh, trained journalists collecting new information, others are aggregators and partisan commentators sometimes masquerading as journalists. The transformation has made the public sphere much more "chaotic and contradictory," said Jay Rosen, an associate professor of journalism at New York University and author of the PressThink blog, adding that it has never been easier to be both informed and misinformed about world events. "The internet makes possible much more content, and reaching all kinds of people," Rosen said. "But it also makes disinformation spread."

The article notes that "some content creators don't follow the same ethical guidelines that are guideposts in more traditional newsrooms, especially creators who seek to build audiences based on outrage."

The article also points out that "The ramifications for society are still coming into focus."
Transportation

VW Group's Troubled Cariad Software Division To Lay Off 2,000 Workers 34

According to Germany's Manager Magazin, Volkswagen's board has approved laying off 2,000 employees in the Cariad software unit as part of the latest restructuring intended to right the digital ship. Autoblog reports: Former group CEO Herbert Diess established Car.Software Organization in 2020, eventually renaming it Cariad and giving the task of creating "a uniform software and technology platform for all Volkswagen Group brands." VW's info page on the division says the unit employs roughly 6,000 people around the world, up from roughly 4,500 at the end of 2021. Despite that same page claiming Cariad is building "the leading tech stack for the automotive industry," the failed stacks brought down the division's first CEO in less than a year, then brought down VW Group CEO Diess two years later as problems continued. It then probably played a role in bringing down Audi brand CEO Markus Duesmann and much, if not all, of Audi's Project Trinity when Oliver Blume took over as CEO of the VW Group. It finally took out Cariad's second CEO, Dirk Hilgenberg, over the summer. And aside from the career killing, Cariad's woes have proved problematic for every battery-electric car VW Group launch since the ID.3.

Blume put ex-Bentley production manager Peter Bosch in charge in May. Since then, Bosch has been at work on a reorganization plan to get the software division running as it should so that the software runs as it should, and so that vital products like the Audi Q6 E-Tron and Porsche Macan EV can get out the door as envisioned. Manager Magazin reported that Bosch's plan involves laying off those 2,000 employees over the next 15 months, a step that would rewind back to 2021 staffing levels, but that action needs to be discussed with VW's Works Council as it concerns labor issues. [...] As it awaits its v1.2 VW Group software, Porsche said it's going to move ahead with Google Built-In as an interim solution. More worryingly, Cariad's timetable was meant to have v2.0 out by 2025, when products like the electric Cayman and Boxster are expected, but v2.0 has been buried in favor of a redesign from scratch.
Windows

Microsoft Commits To 6 Years of Firmware Updates For New and Some Older Surface PCs (windowscentral.com) 12

Microsoft has updated its Surface support documentation, committing to supporting some Surface Pcs with six years of firmware updates -- up from the four years it originally offered. Windows Central reports: The updated documentation states that any Surface PC shipped after January 1, 2021 will receive six years of firmware updates. Surface devices shipped before that date will remain on four years of firmware updates. This means Surface Pro 7+, Surface Go 3, Surface Laptop 4, Surface Laptop Go 2, Surface Studio 2+, Surface Laptop Studio 1 and newer have all had their support cycles extended by two additional years.

Here's what the documentation says:

- For devices released before January 1, 2021: Surface devices will receive driver and firmware updates for at least four years from when the device was first released. In cases where the support duration is longer than four years, an updated end-of-servicing date will be published before the date of the last servicing.
- For devices released on and after January 1, 2021: Surface devices will receive driver and firmware updates for at least six years from when the device was first released. In cases where the support duration is longer than six years, an updated end-of-servicing date will be published before the date of the last servicing.

AI

Meta's Free AI Isn't Cheap To Use, Companies Say (theinformation.com) 18

Some companies that pay for OpenAI's artificial intelligence have been looking to cut costs with free, open-source alternatives. But these AI customers are realizing that oftentimes open-source tech can actually be more expensive than buying from OpenAI. The Information: Take Andreas Homer and Ebby Amir, co-founders of Cypher, an app that helps people create virtual versions of themselves in the form of a chatbot. Industry excitement this summer about the release of Llama 2, an open-source large language model from Meta Platforms, prompted the duo to test it for their app, leading to a $1,200 bill in August from Google Cloud, Cypher's cloud provider. Then they tried using GPT-3.5 Turbo, an OpenAI model that underpins services such as ChatGPT, and were surprised to see that it cost around $5 per month to handle the same amount of work.

Baseten, a startup that helps developers use open-source LLMs, says its customers report that using Llama 2 out of the box costs 50% to 100% more than for OpenAI's GPT-3.5 Turbo. The open-source option is cheaper only for companies that want to customize an LLM by training it on their data; in that case, a customized Llama 2 model costs about one-fourth as much as a customized GPT-3.5 Turbo model, Baseten found. Baseten also found that OpenAI's most advanced model, GPT-4, is about 15 times more expensive than Llama 2, but typically it's only needed for the most advanced generative AI tasks like code generation rather than the ones most large enterprises want to incorporate.

Security

Okta Breach: 134 Customers Exposed in October Support System Hack 13

Okta says attackers who breached its customer support system last month gained access to files belonging to 134 customers, five of them later being targeted in session hijacking attacks with the help of stolen session tokens. From a report: "From September 28, 2023 to October 17, 2023, a threat actor gained unauthorized access to files inside Okta's customer support system associated with 134 Okta customers, or less than 1% of Okta customers," Okta revealed. "Some of these files were HAR files that contained session tokens which could in turn be used for session hijacking attacks. The threat actor was able to use these session tokens to hijack the legitimate Okta sessions of 5 customers, 3 of whom have shared their own response to this event." The three Okta customers that already disclosed they were targeted due to the company's October security breach are 1Password, BeyondTrust, and Cloudflare. They all notified Okta of suspicious activity after detecting unauthorized attempts to log into in-house Okta administrator accounts.
Google

Google, Lendlease End Deals for San Francisco Bay Projects (bloomberg.com) 48

Alphabet's Google and property developer Lendlease Group have ended an agreement to build four projects in the San Francisco Bay Area as the technology firm reviews its real estate footprint. From a report: Lendlease said it will be compensated for its work during the planning process for the projects, which are located in San Jose, Sunnyvale and Mountain View, according to a statement Thursday. "The decision to end these agreements followed a comprehensive review by Google of its real estate investments, and a determination by both organizations that the existing agreements are no longer mutually beneficial given current market conditions," Sydney-based Lendlease said in the statement.

The projects would have totaled more than 15 million square feet (1.4 million square meters) of office, residential, retail, hospitality and community development space. The projects were also slated to bring more housing to California's tight residential market. Google still plans to work with developers and capital partners to move the projects forward, according to a spokesperson. "As we've shared before, we've been optimizing our real estate investments in the Bay Area, and part of that work is looking at a variety of options to move our development projects forward and deliver on our housing commitment," Alexa Arena, a senior director of development at Google, said in an emailed statement.

Power

12 V Battery Problem Forces Toyota To Recall 1.8 Million SUVs (arstechnica.com) 62

An anonymous reader quotes a report from Ars Technica: There's plenty of fear, uncertainty, and doubt about electric cars and the potential risk of battery fires, but the regular old 12 V battery is responsible for Toyota issuing a recall for more than 1.8 million cars this week. Toyota says the problem is due to differences in the sizes of replacement batteries -- some have smaller tops than others, and if a smaller-top battery isn't held in properly by its clamp, the battery could move under hard cornering, letting the positive terminal contact the clamp, causing a short-circuit and possible fire risk.

The problem affects 2013-2018 RAV4s -- about 1,854,000 of them, according to Toyota. The official National Highway Traffic Safety Administration safety recall notice has not yet been posted, but NHTSA's Office of Defects Investigation has had an open case looking into the problem since February 2021, after 11 complaints about "non-crash thermal events" starting in the engine bays of RAV4s. Toyota says that it's working on a new hold-down clamp, battery tray, and positive terminal cover. Once those are ready, the automaker will replace those components for free. The automaker says owners should be contacted about the recall by late December.

Google

Apple Called Android a 'Massive Tracking Device' In 2013 (9to5google.com) 29

An anonymous reader quotes a report from 9to5Google: Coming out of the ongoing Google antitrust trial, an internal Apple presentation has surfaced (via The Verge) in which the company called Android a "massive tracking device." The presentation in question was regarding a push within Apple to start "Competing on Privacy." The slides, made in January 2013, dove into how Apple's competitors (Google, Facebook, Amazon, and Microsoft primarily) handled privacy matters and user data. A "privacy timeline" includes some 2000s and 2010s events that made headlines regarding privacy, such as Google's Street View cars recording private Wi-Fi networks and Instagram's aim to use user photos in its ads, as well as Google's privacy policy move to combining user data across services. Apple went on to compare how its products handle privacy differently from Google and others.

The presentation culminates in the full-page statement [...] where Apple says that "Android is a massive tracking device." The slideshow is partially redacted and abridged, which leaves out the context of this statement, but it's certainly a bold way to talk about a competitor. Of course, all mobile devices do a whole lot of tracking, whether it's Android or iOS.

Slashdot Top Deals