Crime

The Untold History of Today's Russian-Speaking Hackers (ft.com) 22

Monday sees the release of "The Billion Dollar Heist," a documentary about the theft of $81 million from the Bangladesh Bank, considered the biggest cyber-heist of all time. The film's executive producer wrote the book Dark Market: How Hackers Became the New Mafia (and is also a rector at the Institute for Human Sciences).

But he's also written an article for the Financial Times outlining the complicated background of Russian-speaking hacker gangs responsible for malware and ransomware, starting with "one of the most remarkable if little-known events in post-cold war history: the first and, to my knowledge, the last publicly organised conference of avowed criminals" in May, 2002.

The First Worldwide Carders Conference was the brainchild of the administrators of a landmark website, carderplanet.com. Known as "the family", this was a mixed group of young men, both Ukrainians and Russians, who had spent the previous 10 years growing up in a lively atmosphere of gangster capitalism. During the 1990s, conventional law and order in the former Soviet Union had broken down. The collapse of the communist system had left a vacuum in which new forms of economic activity were emerging...

Founded a year before the conference, CarderPlanet revolutionised web-based criminal activity, especially the lucrative trade in stolen or cloned credit card data, by solving the conundrum that until then had faced every bad guy on the web: how can I do business with this person, as I know he's a criminal, so he must be untrustworthy by definition? To obviate the problem, the CarderPlanet administrators created an escrow system for criminals. They would act as guarantor of any criminal sale of credit and debit card data — a disinterested party mediating between the vendor and the purchaser... The escrow system led to an explosion of credit card crime around the world in which many criminal fortunes were made....

Roman Stepanenko Vega, a Russian-speaking Ukrainian national who was one of the founders and administrators of CarderPlanet, explained to me how "two days before the conference's opening, we received a visit from an FSB [Federal Security Service] officer in Moscow. He explained that Moscow had no objections to us cloning credit cards or defrauding banks in Europe and the United States but anywhere within the CIS was off limits." In addition, the FSB officer let CarderPlanet know that if the Russian state ever required assistance from criminal gangs, it would be expected to co-operate...

Members of criminal gangs were later recruited into notorious state-backed hacking teams such as Advanced Persistent Threat 28.

A 2021 ransomware attack on Colonial Pipeline brought warnings of a U.S. counterattack, the article notes, after which "Russian police started arresting and imprisoning cyber criminal groups." Ransomware attacks now seem particularly focused on Europe, and "According to cyber-security experts, the Russian government is giving these criminal groups information on potential targets." But once more the hackers have been careful not to cross what the Americans consider red lines, as advised, presumably, by Russia's security services. Russia is probably confident that disrupting European businesses will be unlikely to provoke a cyber attack. But the U.S. — whether its government, municipalities or police — remains strictly off-limits.
Thanks to long-time Slashdot reader Geoffrey.landis for sharing the article.
Science

Why Was Silicon Valley So Obsessed with LK-99 Superconductor Claims? (msn.com) 78

What to make of the news that early research appears unable to duplicate the much-ballyhooed claims for the LK99 superconductor?

"The episode revealed the intense appetite in Silicon Valley for finding the next big thing," argues the Washington Post, "after years of hand-wringing that the tech world has lost its ability to come up with big, world-changing innovations, instead channeling all its money and energy into building new variations of social media apps and business software..." [M]any tech leaders are nervous that the current focus on consumer and business software has led to stagnation. A decade ago, investors prophesied that self-driving cars would take over the roads by the mid-2020s — but they are still firmly in the testing phase, despite billions of dollars of investment. Cryptocurrencies and blockchain technology have had multiple hype cycles of their own, but have yet to fundamentally change any industry, besides crime and money laundering. Tech meant to help mitigate climate change, like carbon capture and storage, has lagged without major advances in years. Meanwhile, Big Tech companies used their huge cash hoards to snap up smaller competitors, with antitrust regulators only recently beginning to clamp down on consolidation. Over the last year, as higher interest rates have cut into the amount of venture capital and slowing growth has caused companies to pull back spending, a massive wave of layoffs has swept the industry, and companies such as Google that previously said they'd invest some of their profits in big, risky ideas have turned away from such "moonshots..."

Room-temperature superconductors would be especially relevant to the tech industry right now, which is busy burning billions of dollars on new computer chips and the energy costs to run them to train the AI models behind tools like ChatGPT and Google's Bard. For years, computer chips have gotten smaller and more efficient, but that progress has run up against the limits of the physical world as transistors get so small some are now just one atom thick.

Crime

'Bulletproof' Web Site Hosting Ransomware Finally Seized, Founder Indicted (cnbc.com) 16

An anonymous reader shared this report from CNBC: The mastermind behind a ransomware hosting service that allegedly helped criminals collect more than 5,000 bitcoin in ransom from hundreds of victims was indicted in federal court this week, prosecutors announced Thursday. Artur Grabowski's LolekHosted service operated for about a decade and advertised itself as a haven for "everything but child porn," according to Florida prosecutors. Clients allegedly used the hosting service to deploy ransomware viruses that infected around 400 networks around the world... [That's 400 just for the Netwalker ransomware, which the announcement calls "one of the ransomware variants facilitated by LolekHosted."]

Grabowski was charged with computer fraud, wire fraud, and conspiracy to commit international money laundering. Grabowski himself is also the subject of a $21.5 million seizure order... Grabowski, a Polish national, faces a maximum sentence of 45 years, if he is ever detained and convicted.

Grabowski also "remains a fugitive," according to an announcement from the U.S. Department of Justice. It notes that the 36-year-old's site — registered in 2014 — also "facilitated" brute-force attacks, and phishing.

"Grabowski allegedly facilitated the criminal activities of LolekHosted clients by allowing clients to register accounts using false information, not maintaining Internet Protocol (IP) address logs of client servers, frequently changing the IP addresses of client servers, ignoring abuse complaints made by third parties against clients, and notifying clients of legal inquiries received from law enforcement."
Crime

FTX's Bankman-Fried Headed For Jail After Judge Revokes Bail (reuters.com) 59

A U.S. judge revoked Sam Bankman-Fried's bail due to probable cause that he tampered with witnesses at least twice. U.S. District Judge Lewis Kaplan rejected a defense request to delay SBF's detention pending appeal of the bail revocation. Reuters reports: The decision could complicate Bankman-Fried's efforts to prepare for trial, where the 31-year-old former billionaire faces charges of having stolen billions of dollars in FTX customer funds to plug losses at his Alameda Research hedge fund. Bankman-Fried has pleaded not guilty. He was led out of the courtroom by members of the U.S. Marshals Service in handcuffs after removing his shoelaces, jacket and tie and emptying his pockets.

His parents, both law professors at Stanford University, were present in the courtroom's audience. His mother, Barbara Fried, nodded to him in tears as he left. His father, Joseph Bankman, placed his hand over his heart as he watched his son be led away. Bankman-Fried has been largely confined to his parents' Palo Alto, California, home on $250 million bond since his December 2022 arrest.

United Kingdom

Millions of UK Voters' Data Accessible In Cyber Attack (theguardian.com) 14

The UK's Electoral Commission revealed that a cyber attack granted access to the data of 40 million voters. It went unnoticed for a year and was not disclosed to the public for an additional 10 months. The Guardian reports: The Electoral Commission apologized for the security breach in which the names and addresses of all voters registered between 2014 and 2022 were open to "hostile actors" as far back as August 2021. The attack was discovered last October and reported within 72 hours to the Information Commissioner's Office (ICO), as well as the National Crime Agency. However, the public has only now been informed that the electoral registers containing the data of millions of voters may have been accessible throughout that time.

The Electoral Commission said it was "not able to know conclusively" what information had been accessed. It is not known whether the attackers were linked to a hostile state, such as Russia, or a criminal cyber gang. The watchdog said "much of the data" was already in the public domain and insisted it would be difficult for anyone to influence the outcome of the UK's largely paper-based electoral system, but it acknowledged that voters would still be concerned.

The attackers were able to access full copies of the electoral registers, held by the commission for research purposes and to enable permissibility checks on political donations. These registers include the name and address of anyone in the UK who was registered to vote between 2014 and 2022. The commission's email system was also accessible during the attack. The full register held by the Electoral Commission contains name and address data that can be inspected by the public but only locally through electoral registration officers, with only handwritten notes allowed. The information is not permitted to be used for commercial or marketing purposes. The data of anonymous voters whose details are private for safety reasons and the addresses of overseas voters were not accessible to the intruders in the IT system.
A spokesperson for the ICO, the UK's independent regulator on data protection, said: "The Electoral Commission has contacted us regarding this incident and we are currently making inquiries."

They added: "We recognize this news may cause alarm to those who are worried they may be affected and we want to reassure the public that we are investigating as a matter of urgency. In the meantime, if anyone is concerned about how their data has been handled, they should get in touch with the ICO or check our website for advice and support."
Crime

Serial Murders Have Dwindled, Thanks To a Cautious Citizenry and Improved Technology (nytimes.com) 184

An anonymous reader quotes a report from the New York Times: Rex Heuermann, the meticulous architectural consultant who the authorities say murdered three women and buried them on a Long Island beach more than a decade ago, may have been among the last of the dying breed of American serial killers. Even as serial killers came to inhabit a central place in the nation's imagination -- inspiring hit movies, television shows, books, podcasts and more -- their actual number was dwindling dramatically. There were once hundreds at large, and a spike in the 1970s and '80s terrified the country. Now only a handful at most are known to be active, researchers say. The techniques that led to the arrest of Mr. Heuermann, who has pleaded not guilty to the crimes, help explain the waning of serial killing, which the F.B.I. defines as the same person killing two or more victims in separate events at different times.

It is harder to hide. Rapid advances in investigative technology, video and other digital surveillance tools, as well as the ability to analyze mountains of information, quickly allow the authorities to find killers who before would have gone undetected. At the same time, Americans have adopted more cautious habits in their everyday lives -- hitchhiking, for example, is less common, and children are driven to and from school. That reduces easy targets. And, some theorize, those bent on killing now opt for spectacular mass murders. "The 'perfect crime' concept is more of a concept than it ever has been before," said Adam Scott Wandt, an assistant professor at John Jay College of Criminal Justice. More than a decade ago, prosecutors said, Mr. Heuermann tried to cover his digital tracks by communicating with victims using so-called burner phones, prepaid units purchased anonymously for temporary use. But thanks to exponential progress in technology since 2010, investigators were able not only to chart Mr. Heuermann's decade-old movements; they could also monitor exactly what he was searching online in recent months. They saw that he was using an anonymous account for internet queries like "Why could law enforcement not trace the calls made by the long island serial killer," prosecutors said. He had also been visiting massage parlors and contacting women working as escorts, they said.

The ubiquity of technology has made it harder to get away with murder, Mr. Wandt said. The amount of data people create in their daily lives is more than many can conceptualize, he said. Just by walking outside, people are now tracked by ever-present cameras, from Amazon's Ring units outside homes to surveillance at banks and retail stores, he said. Every use of a phone or computer creates streams of data that are collected directly on devices or immortalized on servers, he said. A concerted effort by the federal government to ensure that even the smallest police departments can use technology to their benefit has also helped give investigators an upper hand, Mr. Wandt said. In 1987, there were 198 known active serial killers -- people connected to at least two murders -- and 404 known victims across the United States, according to a report published three years ago by researchers who run Radford University and Florida Gulf Coast University's Serial Killer Database. By 2018, there were only 12 known serial killers and 44 victims, according to the report.
"The big question is: Are they going underground and finding other techniques?â said Terence Leary, an associate professor in the psychology department at Florida Gulf Coast University and the team leader for the database.

He said that some serial murderers have killed for discrete periods before taking prolonged breaks: "Maybe they decided to give it up. Who knows?"
Bitcoin

Razzlekhan and Husband Guilty of Bitcoin Launder (bbc.com) 45

A husband and wife cyber-crime team have pleaded guilty to trying to launder $4.5bn of Bitcoin that he had stolen in a hack in 2016. From a report: Heather Morgan and Ilya Lichtenstein were arrested last year in New York after police traced their riches back to the crypto heist. While evading police, Morgan masqueraded as a rapper and tech entrepreneur. As part of a plea deal, Lichtenstein admitted he was behind the hack. The couple both pleaded guilty to money laundering, but Morgan pleaded guilty to an additional count of conspiracy to defraud the United States. In spite of attempting to cover up her crimes, Morgan published dozens of expletive-filled music videos and rap songs filmed in locations around New York, under the name Razzlekhan. In her lyrics she called herself a "bad-ass money maker" and "the crocodile of Wall Street."

In articles published in Forbes, Morgan also claimed to be a successful tech businesswoman, calling herself an "economist, serial entrepreneur, software investor and rapper." But while developing her rapping and tech persona, she and her computer programmer husband were attempting to cash out their fortune stolen from the crypto firm Bitfinex. The couple now face prison sentences with Lichtenstein in line for a possible maximum 20 years in prison and Morgan a possible 10. At the time of their arrest in February 2022, the stash of 119,000 Bitcoins was worth about $4.5bn -- making it the US Department of Justice's largest single financial seizure in its history. When the hack was carried out, the Bitcoins were worth about $71m.

IT

What Should Happen to Empty Downtown Office Spaces? (theguardian.com) 358

"A significant swath of our downtown office space is sitting empty," writes a columnist for the Guardian. "New York, Chicago, Atlanta, Los Angeles, Denver, Philadelphia, San Francisco, Houston, Dallas and other big cities are experiencing record-high office vacancies as workers keep working from home and companies keep letting them..." Some face-time is necessary but we're never going to go back to a 100% in-the-office policy, and companies that attempt this will lose talent to those that adapt to the shift. All this means that a substantial amount of square feet in all those tall office buildings in our major metropolitan areas are going to remain empty. The owners of these properties are already feeling the pressure of meeting higher debt maintenance with lower lease revenue, with many facing default. Countless small businesses in downtown areas facing significantly less traffic are closing their doors. And unless something is done, those empty buildings — after the banks have repossessed them from bankrupt borrowers — will become derelict, inviting even more crime and homelessness. It's already happening.

So what to do? The good news is that there are many opportunities for the entrepreneurial.

For example, existing office floors can be turned into less expensive single units for startups and incubators who want to boast a downtown address. Some buildings in cities with a vibrant and residential downtown — like Philadelphia — could be turned into residences. Others that are burdened with older, unsafe, non-air-conditioned school structures could convert this space into classrooms for students. Or perhaps all the homeless people sleeping on the streets outside of these empty structures could be given a warm place to stay with medical and counselling support?

With the continuing boom in e-commerce, warehouse space remains costly but could become more affordable — and logistically accessible — in a downtown structure. Manufacturing space could be more accommodating, with a better location making it easier to procure workers. Other alternatives for these buildings already being considered include vertical farming, storage facilities, gyms and movie sets. Or what about taking the red pill and merely knocking these buildings down and creating open spaces, parks, museums or structures that are more amenable to this new era of downtown life?

AI

AI Watches Millions of Cars and Tells Cops if You Might Be a Criminal (forbes.com) 155

Forbes' senior writer on cybersecurity writes on the "warrantless monitoring of citizens en masse" in the United States.

Here's how county police armed with a "powerful new AI tool" identified the suspicious driving pattern of a grey Chevy owned by David Zayas: Searching through a database of 1.6 billion license plate records collected over the last two years from locations across New York State, the AI determined that Zayas' car was on a journey typical of a drug trafficker. According to a Department of Justice prosecutor filing, it made nine trips from Massachusetts to different parts of New York between October 2020 and August 2021 following routes known to be used by narcotics pushers and for conspicuously short stays. So on March 10 last year, Westchester PD pulled him over and searched his car, finding 112 grams of crack cocaine, a semiautomatic pistol and $34,000 in cash inside, according to court documents. A year later, Zayas pleaded guilty to a drug trafficking charge.

The previously unreported case is a window into the evolution of AI-powered policing, and a harbinger of the constitutional issues that will inevitably accompany it... Westchester PD's license plate surveillance system was built by Rekor, a $125 million market cap AI company trading on the NASDAQ. Local reporting and public government data reviewed by Forbes show Rekor has sold its ALPR tech to at least 23 police departments and local governments across America, from Lauderhill, Florida to San Diego, California. That's not including more than 40 police departments across New York state who can avail themselves of Westchester County PD's system, which runs out of its Real-Time Crime Center... It also runs the Rekor Public Safety Network, an opt-in project that has been aggregating vehicle location data from customers for the last three years, since it launched with information from 30 states that, at the time, were reading 150 million plates per month. That kind of centralized database with cross-state data sharing, has troubled civil rights activists, especially in light of recent revelations that Sacramento County Sheriff's Office was sharing license plate reader data with states that have banned abortion...

The ALPR market is growing thanks to a glut of Rekor rivals, including Flock, Motorola, Genetec, Jenoptik and many others who have contracts across federal and state governments. They're each trying to grab a slice of a market estimated to be worth at least $2.5 billion... In pursuit of that elusive profit, the market is looking beyond law enforcement to retail and fast food. Corporate giants have toyed with the idea of tying license plates to customer identities. McDonalds and White Castle have already begun using ALPR to tailor drive-through experiences, detecting returning customers and using past orders to guide them through the ordering process or offer individualized promotion offers. The latter restaurant chain uses Rekor tech to do that via a partnership with Mastercard.

A senior staff attorney at the ACLU tells Forbes that "The scale of this kind of surveillance is just incredibly massive."

Thanks to long-time Slashdot reader Geek_Cop for sharing the article.
Chrome

Google Urges Gmail Users to Enable 'Enhanced Safe Browsing' for Faster, More Proactive Protection (msn.com) 58

The Washington Post's "Tech Friend" newsletter has the latest on Google's "Enhanced Safe Browsing" for Chrome and Gmail, which "monitors the web addresses of sites that you visit and compares them to constantly updated Google databases of suspected scam sites." You'll see a red warning screen if Google believes you're on a website that is, for example, impersonating your bank. You can also check when you're downloading a file to see if Google believes it might be a scam document. In the normal mode without Enhanced Safe Browsing, Google still does many of those same security checks. But the company might miss some of the rapid-fire activity of crooks who can create a fresh bogus website minutes after another one is blocked as a scam.

This enhanced security feature has been around for three years, but Google recently started putting a message in Gmail inboxes suggesting that people turn on Enhanced Safe Browsing.

Security experts told me that it's a good idea to turn on this safety feature but that it comes with trade-offs. The company already knows plenty about you, particularly when you're logged into Gmail, YouTube, Chrome or other Google services. If you turn on Enhanced Safe Browsing, Google may know even more about what sites you're visiting even if you're not signed into a Google account. It also collects bits of visual images from sites you're visiting to scan for hallmarks of scam sites.

Google said it will only use this information to stop bad guys and train its computers to improve security for you and everyone else. You should make the call whether you are willing to give up some of your privacy for extra security protections from common crimes.

Gmail users can toggle the feature on or off at this URL. Google tells users that enabling the feature will provide "faster and more proactive protection against dangerous websites, downloads, and extensions."

The Post's reporter also asked Google why it doesn't just enable the extra security automatically, and "The company told me that because Google is collecting more data in Enhanced Safe Browsing mode, it wants to ask your permission."

The Post adds as an aside that "It's also not your fault that phishing scams are everywhere. Our whole online security system is unsafe and stupid... Our goal should be to slowly replace the broken online security system with newer technologies that ditch our crime-prone password system for different methods of verifying we are who we say we are."
News

Kevin Mitnick, Hacker Who Once Eluded Authorities, is Dead at 59 (dignitymemorial.com) 100

Kevin Mitnick, once the so-called "most wanted computer criminal in US history," died on Sunday. He was 59. The New York Times adds: The cause was complications from pancreatic cancer. He had been undergoing treatment at the University of Pittsburgh Medical Center following his diagnosis more than a year ago, according to the King David Memorial Chapel & Cemetery in Las Vegas. After serving prison time for breaking into and tampering with corporate computer networks, he was released in 2000 and began a new career as a security consultant, writer and public speaker.

Mr. Mitnick was best known for the crime spree during the 1990s that involved the theft of thousands of data files and credit card numbers from computers across the country. He used his skills to work his way into the nation's phone and cell networks, vandalizing government, corporate and university computer systems. Investigators at the time named him the "most wanted" computer hacker in the world.

In 1995, after a more than two-year-long manhunt, Mr. Mitnick was captured by the F.B.I. and charged with the illegal use of a telephone access device and computer fraud. "He allegedly had access to corporate trade secrets worth millions of dollars. He was a very big threat," Kent Walker, a former assistant U.S. attorney in San Francisco, said at the time. In 1998, while Mr. Mitnick awaited sentencing, a group of supporters commandeered The New York Times website for several hours, forcing it to shut down. The next year, Mr. Mitnick pleaded guilty to computer and wire fraud as part of an agreement with prosecutors and was sentenced to 46 months in prison. He was also prohibited from using a computer or cellphone without the permission of his probation officer for the three years following his release.

From an obituary: Kevin was an original; much of his life reads like a fiction story. The word that most of us who knew him would use -- magnificent.

He grew up brilliant and restless in the San Fernando Valley in California, an only child with a penchant for mischief, a defiant attitude toward authority, and a love for magic. Kevin's intelligence and delight in holding the rapt attention of audiences revealed themselves early in his childhood and continued throughout his life. In time, he transitioned from pranks and learning magic tricks to phone phreaking, social engineering, and computer hacking.

When his desire to push boundaries led him too far astray, he landed in juvenile detention and eventually served a couple of stints in prison. His time on the FBI's Most Wanted List was well documented in his New York Times bestselling book, The Ghost in the Wires: My Adventures as the World's Most Wanted Hacker, and his other titles: The Art of Deception, The Art of Intrusion, both co-authored with William Simon, and The Art of Invisibility with Robert Vamosi.

Kevin emerged from his final prison term, which he deemed a 'vacation,' in January 2000. He was a changed individual, and began constructing a new career, as a White Hat hacker and security consultant. He became a highly sought-after global public speaker, a writer, and established the successful Mitnick Security Consulting. In November 2011, he became the Chief Hacking Officer and part owner of security awareness training company KnowBe4, founded by close friend and business partner Stu Sjouwerman.

Transportation

Teenager Denied Flight Boarding for 'Skiplagging', the Money-Saving Lifehack Airlines Hate (ktla.com) 338

"Logan Parson's first flight by himself ended with airport officials taking the teenager into custody and whisking him away into an interrogation room," reports the Independent. The teen was "denied boarding to an American Airlines flight," reports the Washington Post. "He hadn't committed a crime, nor was he accused of being unruly.

"His offense? Attempting to make use of a money-saving hack that gutsy fliers use every year." Direct flights to major cities are so expensive, it can actually be cheaper to book a flight with stops in two cities — and then skip the flight to that second city. The Post points out that while passengers can save money with this so-called "hidden-city ticket" trick — or skiplagging — "most carriers regard it as a form of fraud."

From North Carolina TV station WJZY: In a statement to WJZY, American Airlines said, "Purchasing a ticket without intending to fly all flights to gain lower fares (hidden city ticketing) is a violation of American Airlines terms and conditions and is outlined in our Conditions of Carriage online...." Other major airlines, like Delta and United, also prohibit hidden city ticketing. Even [skip-lagging resource] Skip Lagged warns there may be consequences of hidden city ticketing, like your checked luggage moving on to the final destination instead of where you stop or losing frequent flyer miles you've accrued.
The Arizona Republic adds: According to American and Southwest's contracts of carriage, they can cancel any unused part of a ticket, refuse to let the passenger and their bags fly, not issue a refund and charge the customer for what the ticket would have cost for the full route. Airlines may ban a passenger from flying with them in the future.

Some airlines have challenged the practice in court but without success. In November 2014, United Airlines sued Skiplagged.com and its founder in court, claiming trademark infringement, according to court documents. A judge dismissed the suit the following year.

The Washington Post shares another warning: Chris Dong, a Los Angeles-based travel writer and points expert who used to skiplag, says you especially can't do this on a round-trip flight. "Airlines will cancel your return flight if you're a 'no show' for any segment of a booked itinerary," Dong said in an email.
While the teen's father told WJZY that his son was "interrogated a little bit" before being "taken to a security room," American Airline says their records don't show that the teen was taken to a security room. Instead, they've told the Post that "Our records indicate the customer was questioned only at the ticket counter about their travel, while attempting to check-in for their flight." The fact that the teen was denied boarding underscores how serious airlines take skiplagging. It makes sense, since the practice saps revenue from them on two fronts: Not only do passengers underpay — potentially by hundreds of dollars per ticket — but the seat on the tossed leg could have been sold to someone else. Most contracts of carriage from major airlines expressly forbid skiplagging as a result.
The Post also got this quote from Clint Henderson, an industry expert and managing editor for the Points Guy. "The airlines are getting increasingly sophisticated and smart about it. I expect that will get even more prevalent as technology improves further."
Games

'GTA 6' Leaker is Unfit to Stand Trial, Say Group of Psychiatrists (gamerant.com) 68

A new article in Game Rant points out that the 2013 game Grand Theft Auto V was "the most successful piece of fictional media ever made, amassing almost 8 billion dollars." So with a sequel planned, it was a big deal when 50 minutes of authentic pre-release footage was leaked by a U.K. teenager.

Game Rant reports that the trial of that teenager has begun. But a group of psychiatrists has just declared that the teenager "is unable to stand trial, so instead, the jury will decide if he committed these alleged crimes instead of delivering a verdict based on his guilt." 18-year-old Arion Kurtaj, a member of the hacker group named Lapsus$, attempted to blackmail Rockstar Games by releasing the Grand Theft Auto 6 source code online. Kurtaj has a history of hacking into giant companies, like when he caused nearly three million dollars of damage to Uber by releasing private information...

This story almost feels like a side mission in Grand Theft Auto 6, but it's all true. Kurtaj also had an unnamed partner in crime who demanded a four million dollar ransom from EE, a British mobile company. The two hackers were known as "key players" in Lapsus$. Lapsus$ has members all over the world and is suspected to be highly organized. The group has attacked companies as big as Samsung, Microsoft, Nvidia, and Ubisoft.

Kurtaj has been charged with three counts of blackmail, as well as nine other offenses, including fraud.

Privacy

You Can Say No To a TSA Face Scan. But Even a Senator Had Trouble. (washingtonpost.com) 127

An anonymous reader shares a report: On his way to catch a flight, Sen. Jeff Merkley (D-Ore.) was asked to have his photo taken by a facial recognition machine at airport security. The Transportation Security Administration has been testing use of facial recognition software to verify travelers' identification at some airports. Use of the technology is voluntary, the TSA has told the public and Congress. If you decline, a TSA agent is supposed to verify your identification, as we have done at airport security for years. When Merkley said no to the face scan at Washington's Reagan National Airport, he was told it would cause a significant delay, a spokeswoman for the senator said. There was no delay. The spokeswoman said the senator showed his photo ID to the TSA agent and cleared security.

Is facial recognition technology really voluntary if a United States senator has trouble saying no? The TSA is using facial recognition technology for a limited purpose that the agency says is accurate. As flying reaches record highs again this summer, the technology could improve safety and efficiency with fewer risks than controversial uses of facial recognition such as police trying to identify crime suspects from vast numbers of images. But problems encountered by Merkley and others raise questions about whether the technology can be used fairly and how far it might spread in American life without true oversight.

Crime

Elizabeth Holmes' Prison Sentence Was Quietly Reduced By Two Years (gizmodo.com) 156

An anonymous reader quotes a report from Gizmodo: Disgraced Theranos co-founder Elizabeth Holmes' prison sentence has been reduced by two years, according to the Bureau of Prisons records. Holmes was sentenced to 11 years and three months in prison for defrauding investors by claiming her blood-testing company provided quick and reliable results but she was found to have lied about the reliability of those tests. Holmes surrendered to the Bureau of Prisons in California on May 30 to serve out her sentence at a minimum-security all-female federal prison camp in Bryan, Texas.

Less than two months after she reported to prison, her sentence was quietly changed, with her new release date scheduled for December 29, 2032, the Bureau's site says. The Bureau has not provided additional information for why Holmes' projected release date was shortened, but its site says an inmate's good behavior, substance abuse program completion, and time credits they receive for activities and programs they've completed can result in a lessened sentence. Only last month, Theranos' former president and chief operating officer Ramesh "Sunny" Balwani's 13-year sentence was likewise reduced by two years, making his new projected release date April 11, 2034.

Holmes is serving out her remaining nine-year sentence at FPC Bryan, an all-female prison camp, where the women adhere to a strict schedule requiring them to begin work at 6 a.m. each day. Those who are considered eligible to work are assigned jobs earning between 12 cents and $1.15 an hour in roles like food service and factory employment.

IT

Big-Tech Cities Are Still 'Facing a Reckoning' from Remote Work (seattletimes.com) 170

"According to the federal Bureau of Labor Statistics, nearly 73% of businesses reported that their workers rarely or never engaged in remote work in 2022 — closing in on pre-pandemic levels," writes a Seattle Times business columnist. "But this minority of the civilian workforce working remotely casts a large shadow over our economy, especially central business districts."

The column's headline argues that Seattle "is still facing the reckoning from remote work" — which may also be true in other big tech cities. Kastle Systems, which tracks back-to-the-office moves, estimated 49.8% occupancy as of late June. Kastle uses a 10-city average ranging from New York to Los Angeles but doesn't include Seattle. In the latest report, Houston led at nearly 61% occupancy. San Jose, Calif., in the heart of Silicon Valley, where remote work flourishes, was the lowest at 38%. As of May, 48% of workers in Seattle's central core have returned to the office compared with 2019, according to the Downtown Seattle Association. The most significant boost has come from Amazon, which mandated employees must work in the office at least three days a week.

So, you can be an offices-half-full or an offices-half-empty kind of person.

Still, Capital Economics, an independent research firm, estimated this past month that remote work will shave 35% from the value of the U.S. office sector. In addition, it predicted many office buildings won't return to their previous peak values until 2040 or later... As loans come due for commercial real estate properties, many cities face a reckoning. Refinancing is difficult with high interest rates. In some cases, buildings are worth less than the land they occupy. Foreclosures and defaults are rising. This is already spilling over to hurt sectors that are dependent on offices, such as architects, cleaning services, construction and others. The Wall Street Journal estimates this accounts for a "multibillion-dollar ecosystem."

As a result, many American cities are struggling to convert office buildings unlikely to see workers again into other uses, especially apartments. Rigid zoning and building codes, the footprint of the structures, and resistance from nearby homeowners to increased density all make this difficult. Seattle is facing some of the same challenges. Mayor Bruce Harrell announced a "call for ideas" to alter some of the city's office space to residential or other uses...

Several trend lines are moving in the right direction — return of workers, number of residents, visitors and hotel occupancy are all going up, and crime is going down, with violent crime and property crime down the first five months of the year compared with 2022. Downtown has seen a 13.8% decrease in violent crime and a 35.1% drop in property crime over the same period... To be sure, we're in undiscovered territory. But giving up on downtown Seattle is not an option. It accounts for the majority of the city's business taxes and majority of its workers...

Whether remote or hybrid work remains for much of the local workforce or a gradual return to the office continues, the heart of the city must be healthy.

Crime

22-Year-Old Gamer Sentenced in France for 2020 Swatting of Ubisoft's Montreal Office (engadget.com) 50

An anonymous reader quotes this report from Engadget: A disgruntled Tom Clancy's Rainbow Six Siege gamer who called in a fake emergency to Ubisoft's Montreal office was sentenced this week to three years of community service, according to The Montreal Gazette. Yanni Ouahioune, 22, was handed the sentence on Monday in Paris following his call to authorities about a fake hostage situation in November 2020.

Police say Ouahioune called in the hoax because he was angry he had been banned several times from Tom Clancy's Rainbow Six Siege. In response to the bogus call, a heavily armed squad of police officers surrounded the building. The officers secured the headquarters — and closed several nearby streets — before confirming there wasn't an active threat. Ouahioune allegedly called from his parents' house using Russian servers to mask his identity (unsuccessfully). After being charged, La Presse reported (via Polygon) that Ouahioune pleaded for Ubisoft to unban his account. "Can you say that I am kindly asking the Ubisoft team to 'unban' my account please," Ouahioune said. "I have put over $1,500 in cosmetic enhancements in my profile."

The sentencing also includes Ouahioune's alleged part in a DDoS attack against a French government office and making threats against Minecraft developers. The convicted hoaxer will reportedly be required to "compensate victims, undergo treatment for a mental health problem and either work or undergo training" in addition to the community service.

Games

After Riots In France, Macron Partially Blames Video Games On Violence (npr.org) 108

President Emmanuel Macron is partially blaming video games for the spread of violence in France following the shooting death of a teenager during a police traffic stop in a Paris suburb last week. NPR reports: "It sometimes feels like some of them are experiencing, on the streets, the video games that have intoxicated them," Macron said in a press conference on July 1. He added that protesters are using Snapchat and TikTok to organize themselves and spread "a mimicking of violence, which for the youngest leads to a kind of disconnect from reality." Concerns that video games promote shootings, massacres or rioting are now about half a century old; it has been traced back to the 1976 release of Death Race, an arcade video game which put players behind the wheel of a car to mow down humanoid figures for points. The argument gained renewed traction in the 1990s with the release of much more realistic first-person shooter games. It is an old bogeyman that politicians have latched onto in the wake of horrific tragedies. But it has become less common as troves of studies have largely concluded there is no causal link between video games and violent behavior.

Christopher Ferguson, a professor at Stetson University in Florida who has studied the impact of such games on the public, said he is surprised at Macron's comments. The president is 45 years old and belongs to a generation raised with video games, so "seeing him mention this is almost anachronistic," Ferguson said, sounding perplexed. "The evidence is very clear. Whatever may be going on in France, whatever violence is occurring, it certainly is not due to violence in video games." Decades of research, especially long-term experiments spanning decades, have consistently found "that playing violent video games, do not cause even prank-level aggressive behaviors, let alone violent crimes," Ferguson said. He also noted that the overall violent crime in the U.S. dropped significantly between 1993 and 2020, the same period during which violent video games soared in popularity.

And it's not just in the United States. A 2019 study out of Oxford University determined that early violent video game playing among British teenagers does not predict serious or violent criminal behavior later in life. According to Ferguson, if video games were the cause of rampant violence, then countries like Japan, South Korea and the Netherlands, which consume more violent video games per capita, would be rife with bloodshed. "Instead, they're three of the most peaceful countries on the planet in terms of violent crime," he said. "You could wave a magic wand and take all these people's video games away, and that's not going to have any effect in any way going to help their lives and reduce their aggression," Ferguson said. So why do politicians turn to the familiar refrain? Ferguson said it is a way for elected leaders to shift the blame away from failing government policies. "It gets people talking about the wrong thing. They're thinking about video games. They're not thinking about gun control or whatever inequalities are happening in France," Ferguson said.

Cellphones

France Passes New Bill Allowing Police To Remotely Activate Cameras On Citizens' Phones (gizmodo.com) 132

An anonymous reader quotes a report from Gizmodo: Amidst ongoing protests in France, the country has just passed a new bill that will allow police to remotely access suspects' cameras, microphones, and GPS on cell phones and other devices. As reported by Le Monde, the bill has been criticized by the French people as a "snoopers" charter that allows police unfettered access to the location of its citizens. Moreover, police can activate cameras and microphones to take video and audio recordings of suspects. The bill will reportedly only apply to suspects in crimes that are punishable by a minimum of five years in jail and Justice Minister Eric Dupond-Moretti claimed that the new provision would only affect a few dozen cases per year. During a debate over the bill yesterday, French politicians added an amendment that orders judge approval for any surveillance conducted under the scope of the bill and limits the duration of surveillance to six months, according to Le Monde.

"For organized crime, the police can have access to the sound and image of a device. This concerns any connected device: telephone, speaker microphone, computer camera, computer system of a car... all without the knowledge of the persons concerned," French advocacy group La Quadrature du Net said in a statement on Twitter last month, machine translated by Gizmodo. "In view of the growing place of digital tools in our lives, accepting the very principle that they are transformed into police auxiliaries without our being aware of it poses a serious problem in our societies."
In 2021, France passed a bill that would expand the French police force's ability to monitor civilians using drones -- all in an effort to protect officers from increasingly violent protestors, according to French President Emmanuel Macron.
Businesses

Amazon Sellers Say They Were Kicked Off Site After Unknowingly Hawking Stolen Goods (cnbc.com) 96

Of the many acts that can get an Amazon merchant kicked off the site, few are as devastating as selling stolen goods. Amazon calls the behavior "illegal and strictly prohibited," and those accused of such activity can be permanently suspended. From a report: Dozens of small businesses have been booted from Amazon in recent months for purportedly hawking stolen goods from home appliance brands such as Breville, Keurig, Levoit and SharkNinja. But suspended sellers, who spent years building their businesses on Amazon, told CNBC they had no idea they were selling stolen products.

Amazon has provided limited evidence to back up its claims, sellers said, leaving them scrambling to find the problematic merchandise. To try to get reinstated and save their million-dollar business from potential collapse, they've taken it upon themselves to discover if they unsuspectingly bought stolen goods from one of the many wholesalers, closeout businesses and distributors that supply their Amazon inventory.

Amazon's marketplace of independent sellers accounts for over 60% of goods sold on the platform. It's such a dominant force in e-commerce that it's often the primary or even sole source of revenue for third-party sellers. Over the past decade, the rapid growth of the marketplace has fueled a parallel boom in counterfeiters and spammers trying to game the system, pushing Amazon to ramp up enforcement.

Slashdot Top Deals