Crime

California Tech CEO and EV Pioneer Arrested, Accused of Murder (sfgate.com) 25

California tech executive Gordon Abas Goodarzi has been arrested and charged with murder in the death of his estranged wife, Aryan Papoli, whose body was found last November down an embankment off Highway 138 in San Bernardino County. Authorities initially believed the injuries were consistent with a fall, but the case was later ruled a homicide following a months-long investigation by the San Bernardino County Sheriff's Department. "Arrest records show that Goodarzi is currently in custody without bail and faces a murder charge and that he is set to appear in court Monday," reports SFGATE. From the report: Goodarzi, a California tech executive with ties to BattleBots, is publicly listed as the president and CEO of Magmotor, which describes itself as a "proud" supporter of the combat robot community and claims to support several teams each year. According to his LinkedIn, Goodarzi also previously worked as a research affiliate at UCLA's B. John Garrick Institute for the Risk Sciences since 2023.

Originally from Iran, Papoli and Goodarzi settled in Los Angeles County's verdant Rolling Hills community because of its tranquility and natural beauty, Papoli previously wrote. [...] She described her husband, Goodarzi, as a pioneer in the world of renewable energy, developing both electric and hybrid vehicles since the 1980s. According to Papoli, he also worked as the technical director at Hughes Electronics, which developed and manufactured the EV1, an early iteration of the electric car, in the 1990s.

United States

New California Law Means Big Changes For Photos of Homes in Real Estate Listings (sfchronicle.com) 38

California house hunters now have legal protection against the kind of real estate photo trickery that has long plagued the home-buying process, as a new state law requiring disclosure of digitally altered listing images took effect on January 1.

Assembly Bill 723 mandates that real estate agents and brokers include a "reasonably conspicuous" statement whenever photos have been altered using editing software or AI to add, remove, or change elements like furniture, appliances, flooring, views or landscaping. Agents must also provide access to the original, unaltered image through a QR code, link, or placement next to the altered photo.

The law does not cover wide-angle lenses -- a perennial complaint among buyers who find rooms smaller than they appeared -- nor does it apply to routine adjustments like cropping, color correction or exposure. California is the first state to require such disclosures, though Wisconsin passed a similar law in December that takes effect next year.
Bug

cURL Removes Bug Bounties (etn.se) 39

Ancient Slashdot reader jantangring shares a report from Swedish electronics industry news site Elektroniktidningen (translated to English), writing: "Open source code library cURL is removing the possibility to earn money by reporting bugs, hoping that this will reduce the volume of AI slop reports," reports etn.se. "Joshua Rogers -- AI wielding bug hunter of fame -- thinks it's a great idea." cURL maintainer Daniel Stenberg famously reported on the flood AI-generated bad bug reports last year -- "Death by a thousand slops." Now, cURL is removing the bounty payouts as of the end of January.

"We have to try to brake the flood in order not to drown," says cURL maintainer Daniel Stenberg [...]. "Despite being an AI wielding bug hunter himself, Joshua Rogers -- slasher of a hundred bugs -- thinks removing the bounty money is an excellent idea. [...] I think it's a good move and worth a bigger consideration by others. It's ridiculous that it went on for so long to be honest, and I personally would have pulled the plug long ago," he says to etn.se.

Transportation

Waymos Are Now Coming For Your Coveted San Francisco Parking Spots (sfchronicle.com) 59

An anonymous reader quotes a report from the San Francisco Chronicle: A long stretch of curb in San Francisco's Mission District might contain a whole menagerie of parked vehicles: hatchbacks, SUVs, dusty pick-ups, chic Teslas. And recently, Waymo robotaxis. That's what Kyle Grochmal saw walking through the northeast Mission District on Monday afternoon. Cutting down York Street, he glimpsed a tell-tale white electric Jaguar in one of the coveted one-hour spots, its sensors spinning. The Waymo sat there for at least 20 minutes, Grochmal said. He whipped out his cell phone and started recording. After the Waymo drove off, another one showed up within an hour and took the same spot.

"This is something I started to notice about six months ago," Grochmal said, recalling how disorienting it was to be strolling down a largely deserted sidewalk, and suddenly hear the purring motor and soft click of autonomous vehicle cameras. He'd look up to see a Waymo "just sitting there, not loading anyone." But Waymo's use of public curb space raised questions for Grochmal, who wonders whether San Franciscans are prepared to have their infrastructure dominated by autonomous vehicles. "Say Tesla gets to self-driving, so people have personal AVs," he said. "So then do people from Palo Alto get dropped off in San Francisco and let their cars drive around all day searching for free parking?"

Such a future seems particularly unsettling in the northeast Mission, where snug streets couldn't handle much traffic, and competition for parking is already fierce. A recent influx of Artificial Intelligence companies brought many more workers and cars, as well as robotaxis that trawl the blocks, waiting for fares. It makes sense, to Grochmal, that some of them wind up squatting in one-hour spaces. [...] Still, it's conceivable that residents will lose patience with Waymo, and other AV companies, as the fleets scale up and the vehicles compete more aggressively with humans for parking.

News

An Amateur Codebreaker May Have Just Solved the Black Dahlia and Zodiac Killings 29

Los Angeles Times (non-paywalled source): When police questioned Marvin Margolis following the murder of Elizabeth Short -- who became known as the Black Dahlia -- he lied about how well he had known her. The 22-year-old Short had been found mutilated in a weedy lot in South Los Angeles, severed neatly in half with what detectives thought was surgical skill. Margolis was on the list of suspects. He was a sullen 21-year-old premed student at USC, a shell-shocked World War II veteran who had expressed an eagerness to practice surgery. He was "a resentful individual who shows ample evidence of open aggression," a military psychiatrist had concluded.

At first, Margolis did not tell detectives that he had lived with Short for 12 days at a Hollywood Boulevard apartment, three months before her January 1947 murder. Margolis later admitted they had lived together in Apartment 726 at the Guardian Arms Apartments. But he soon moved to Chicago and changed his name, frustrating further attempts to question him. Among many suspects, a district attorney investigator would note, Margolis was "the only pre-medical student who ever lived as a boy friend with Beth Short."

A generation later and hundreds of miles north, a killer who called himself the Zodiac terrorized the San Francisco Bay Area with five seemingly random murders from 1968 to 1969, taunting police and media for years with letters and cryptograms. The toughest to decipher was the letter he sent in April 1970 to the San Francisco Chronicle, with the words "My name is -" followed by a 13-character string of letters and symbols. It came to be called the Z13 cipher, and its brevity has stymied generations of PhDs and puzzle prodigies.

Alex Baber, a 50-year-old West Virginia man who dropped out of high school and taught himself codebreaking, now says he has cracked the Zodiac killer's identity -- and in the process solved the Black Dahlia case as well. "It's irrefutable," said Baber, obsessive, hyperfocused and cocksure in manner, his memory encyclopedic and his speech a firehose of dates, locations and surprising linkages.

[...] To attack the problem, Baber used artifical intelligence and generated a list of 71 million possible 13-letter names. Using known details of the Zodiac killer, based on witness descriptions, he cross-checked those names against military, marriage, census and other public records. "This takes me nine months of working 18-20 hour days," he said. "I'm starting to kill this onion. I'm starting to eliminate layers: Too tall, too short, or wrong race." The candidates narrowed to 185, to 14, and then, he said, to one. The name he found buried in the Z13 code: "Marvin Merrill."
Businesses

Apple and Google Asking Some Employees With H-1B Visas To Avoid International Travel (sfchronicle.com) 63

Tech giants Google and Apple are asking some employees with H-1B visas to reconsider international travel, as their legal teams warned that visa processing delays could keep employees abroad for months, according to Business Insider. From a report: Law firms representing the tech giants sent memos advising staff who require visa stamps for reentry to stay in the U.S., warning that international travel could entangle them in visa screening delays following the introduction of a new social media screening requirement, according to the news agency. The policy subjects H-1B workers and their dependents to reviews of their social media histories.

"Please be aware that some US Embassies and Consulates are experiencing significant visa stamping appointment delays, currently reported as up to 12 months," BAL Immigration Law, which represents Google, said in a memo obtained by Business Insider. The law firm said the delays were affecting H-1B, H-4, F, J and M visas.

Transportation

Garmin Emergency Autoland Has First Save (avbrief.com) 39

"Garmin's Collier Trophy award-winning Autonomi emergency Autoland, a system designed to safely land an aircraft in the event of pilot incapacitation, made its first real-world use and save on Saturday," writes Slashdot reader slipped_bit. AvBrief.com reports: Social media posts from flight tracking hobbyists reported a King Air 200 squawked 7700 about 2 p.m. local time today. The Autoland system was initiated and landed the aircraft at Rocky Mountain Metropolitan Airport near Denver. A recording from LiveATC's feed of the airport's tower frequency includes a robotic female voice declaring a pilot incapacitation and the intention to land on Runway 30. The aircraft landed successfully and there have been no reports of injuries. The nature of the incapacitation and the condition of the pilot have not been released. VASAviation put together this nice animation of the event [here].

The aircraft, N479BR, was being operated by Buffalo River Outfitters from Aspen to Rocky Mountain Metropolitan. It's not clear how many people were on board. The system appeared to work flawlessly, and the controller at Rocky Mountain Metropolitan seemed to take it in stride, accommodating as many requests as he could before shutting down the airport for the landing.

Transportation

'Confused' Waymos Stopped in Intersections During San Francisco Power Outage (cnbc.com) 146

"On Saturday, videos shared widely on social media showed Waymo vehicles stopped mid-intersection with hazard lights flashing, forcing other cars to maneuver around them," reports the San Francisco Chronicle.

The Independent notes that "Without working traffic lights, the driverless cars were seemingly left confused, with many halting in their tracks and causing major traffic jams. Local riders and pedestrians shared photos and videos of the vehicles stuck at intersections with long lines of drivers piling up behind them..." In some instances, several Waymos were piled up in front of a single intersection. "6 Waymos parked at a broken traffic light blocking the roads. Seems like they were not trained for a power outage," another social media user wrote.
More from CNBC: San Francisco resident Matt Schoolfield said he saw at least three Waymo autonomous vehicles stopped in traffic Saturday around 9:45 p.m. local time, including one he photographed near Arguello Boulevard and Geary Street. "They were just stopping in the middle of the street," Schoolfield said.

The power outages began around 1:09 p.m. Saturday and peaked roughly two hours later, affecting about 130,000 customers, according to Pacific Gas and Electric. As of Sunday morning, about 21,000 customers remained without power, mainly in the Presidio, the Richmond District, Golden Gate Park and parts of downtown San Francisco. PG&E said the outage was caused by a fire at a substation that resulted in "significant and extensive" damage, and said it could not yet provide a precise timeline for full restoration...

Amid the disruption, Tesla CEO Elon Musk posted on X: "Tesla Robotaxis were unaffected by the SF power outage." Unlike Waymo, Tesla does not operate a driverless robotaxi service in San Francisco. Tesla's local ride-hailing service uses vehicles equipped with "FSD (Supervised)," a premium driver assistance system. The service requires a human driver behind the wheel at all times...

The Waymo pause in San Francisco indicates cities are not yet ready for highly automated vehicles to inundate their streets, said Bryan Reimer, a research scientist at the MIT Center for Transportation and co-author of "How to Make AI Useful." "Something in the design and development of this technology was missed that clearly illustrates it was not the robust solution many would like to believe it is," he said. [He recommends "human backup systems in place around highly automated systems, including robotaxis."] State and city regulators will need to consider what the maximum penetration of highly automated vehicles should be in their region, Reimer added, and AV developers should be held responsible for "chaos gridlock," just as human drivers would be held responsible for how they drive during a blackout.

Waymo did not say when its service would resume and did not specify whether collisions involving its vehicles had occurred during the blackout.

Apple

Compromised Apple Gift Card Leads to Apple Account Lockout (tidbits.com) 62

An Apple developer was locked out of his Apple Account after redeeming a compromised Apple Gift Card, exposing how automated fraud systems can effectively cut users off from their digital lives with little explanation or recourse. TidBITS reports: After attempting to redeem a $500 Apple Gift Card purchased from a well-known retailer, Apple developer, author, and /dev/world conference organizer Paris Buttfield-Addison found himself locked out of his Apple Account. He writes: "I am writing this as a desperate measure. After nearly 30 years as a loyal customer, authoring technical books on Apple's own programming languages (Objective-C and Swift), and spending tens upon tens upon tens of thousands of dollars on devices, apps, conferences, and services, I have been locked out of my personal and professional digital life with no explanation and no recourse."

As far as I can tell from his extensively documented story, Buttfield-Addison did nothing wrong. Personally, I wouldn't have purchased an Apple Gift Card to pay for Apple services -- he planned to use it to pay for his 6 TB iCloud+ storage plan. I presume he bought it at a discount, making the hassle worthwhile compared to simply paying with a credit card. But I have received Apple Gift Cards as thank-yous or gifts several times, so I can easily imagine accidentally trying to redeem a compromised card number and ending up in this situation. [...] For now, we can hope that ongoing media attention pushes Apple to unlock Buttfield-Addison's account. More troublingly, if this can happen to such a high-profile Apple user, I have to assume it also afflicts everyday users who lack the media reach to garner coverage.

Programming

Is the R Programming Language Surging in Popularity? (infoworld.com) 42

The R programming language "is sometimes frowned upon by 'traditional' software engineers," says the CEO of software quality services vendor Tiobe, "due to its unconventional syntax and limited scalability for large production systems." But he says it "continues to thrive at universities and in research-driven industries, and "for domain experts, it remains a powerful and elegant tool."

Yet it's now gaining more popularity as statistics and large-scale data visualization become important (a trend he also sees reflected in the rise of Wolfram/Mathematica). That's according to December's edition of his TIOBE Index, which attempts to rank the popularity of programming languages based on search-engine results for courses, third-party vendors, and skilled engineers. InfoWorld explains: In the December 2025 index, published December 7, R ranks 10th with a 1.96% rating. R has cracked the Tiobe index's top 10 before, such as in April 2020 and July 2020, but not in recent years. The rival Pypl Popularity of Programming Language Index, meanwhile, has R ranked fifth this month with a 5.84% share. "Programming language R is known for fitting statisticians and data scientists like a glove," said Paul Jansen, CEO of software quality services vendor Tiobe, in a bulletin accompanying the December index...

Although data science rival Python has eclipsed R in terms of general adoption, Jansen said R has carved out a solid and enduring niche, excelling at rapid experimentation, statistical modeling, and exploratory data analysis. "We have seen many Tiobe index top 10 entrants rising and falling," Jansen wrote. "It will be interesting to see whether R can maintain its current position."

"Python remains ahead at 23.64%," notes TechRepublic, "while the familiar chase group behind it holds steady for the moment. The real movement comes deeper in the list, where SQL edges upward, R rises to the top 10, and Delphi/Object Pascal slips away... SQLclimbs from tenth to eighth at 2.10%, adding a small +0.11% that's enough to move it upward in a tightly packed section of the table. Perl holds ninth at 1.97%, strengthened by a +1.33% gain that extends its late-year resurgence."

It's interesting to see how TIOBE's ranking compare with PYPL's (which ranks languages based solely on how often language tutorials are searched on Google):
TIOBE PYPL
Python Python
C C/C++
C++ Objective-C
Java Java
C# R
JavaScript JavaScript
Visual Basic Swift
SQL C#
Perl PHP
R Rust

Despite their different methodologies, both lists put Python at #1, Java at #5, and JavaScript at #7.
AI

Bill Gates' Daughter Secures $30 Million For AI App Built In Stanford Dorm 40

Phoebe Gates, Bill Gates' youngest daughter, has raised $30 million for the AI shopping app she built in her Stanford dorm room with classmate Sophia Kianni. The app is called Phia and is pitched as a way to simplify price comparison and secondhand shopping. "Its AI-powered search engine -- available as an app and as a browser extension for Chrome and Safari -- pulls listings from more than 40,000 retail and resale sites so users can compare prices, surface real-time deals, and determine whether an item's cost is typical, high or fair," reports the San Francisco Chronicle. The app has reached 750,000 downloads in eight months and is valued at $180 million. From the report: Gates told Elle that when she first floated the idea to her parents, they urged her to keep it as a side project -- advice she followed by enrolling in Stanford's night program after moving to New York and finishing her degree in 2024. "They were like, 'Okay, you can do this as a side thing, but you need to stay in school.' I don't think people would expect that from my family, to be honest," she said.

Her father dropped out of Harvard University in 1975 to launch Microsoft. Kianni even paused her degree temporarily "to learn, as quickly as possible, as much as we could about the industry that we would be operating in," she told Vogue. Bill Gates has not invested in the company, though he has publicly supported its mission.
PHP

PHP 8.5 Brings Long-Awaited Pipe Operator, Adds New URI Tools (theregister.com) 18

"PHP 8.5 landed on Thursday with a long-awaited pipe operator and a new standards-compliant URI parser," reports the Register, "marking one of the scripting language's more substantial updates... " The pipe operator allows function calls to be chained together, which avoids the extraneous variables and nested statements that might otherwise be involved. Pipes tend to make code more readable than other ways to implement serial operations. Anyone familiar with the Unix/Linux command line or programming languages like R, F#, Clojure, or Elixir may have used the pipe operator. In JavaScript, aka ECMAScript, a pipe operator has been proposed, though there are alternatives like method chaining.

Another significant addition is the URI extension, which allows developers to parse and modify URIs and URLs based on both the RFC 3986 and the WHATWG URL standards. Parsing with URIs and URLs â" reading them and breaking them down into their different parts â" is a rather common task for web-oriented applications. Yet prior versions of PHP didn't include a standards-compliant parser in the standard library. As noted by software developer Tim Düsterhus, the parse_url() function that dates back to PHP 4 doesn't follow any standard and comes with a warning that it should not be used with untrusted or malformed URLs.

Other noteworthy additions to the language include: Clone With, for updating properties more efficiently; the #[\NoDiscard] attribute, for warning when a return value goes unused; the ability to use static closures and first-class callables in constant expressions; and persistent cURL handles that can be shared across multiple PHP requests.

Crime

Fired Techie Admits Sabotaging Ex-Employer, Causing $862K In Damage (theregister.com) 57

An Ohio IT contractor pleaded guilty to breaking into his former employer's network after being fired, impersonating another worker and using a PowerShell script to reset 2,500 passwords -- an act that locked out thousands of employees and caused more than $862,000 in damage. He faces up to 10 years in prison. The Register reports: Maxwell Schultz, 35, impersonated another contractor to gain access to the company's network after his credentials were revoked. Announcing the news, US attorney Nicholas J. Ganjei did not specify the company in question, which is typical in these malicious insider cases, although local media reported it to be Houston-based Waste Management.

The attack took place on May 14, 2021, and saw Schultz use the credentials to reset approximately 2,500 passwords at the affected organization. This meant thousands of employees and contractors across the US were unable to access the company network. Schultz admitted to running a PowerShell script to reset the passwords, searching for ways to delete system logs to cover his tracks -- in some cases succeeding -- and clearing PowerShell window events, according to the Department of Justice.

Prosecutors said the attack caused more than $862,000 worth of damage related to employee downtime, a disrupted customer service function, and costs related to the remediation of the intrusion. Schultz is set to be sentenced on Jan 30, 2026, and faces up to ten years in prison and a potential maximum fine of $250,000.

Science

UC Berkeley Scientists Hail Breakthrough In Decoding Whale Communication (sfgate.com) 35

UC Berkeley researchers working with Project CETI discovered that sperm whales produce vowel-like sounds embedded in their click codas, suggesting a far more complex communication system than previously understood. "It was striking just how structured the system was. I've never seen anything like that before with other animals," Begus, a UC Berkeley linguistics professor and the linguistics lead at Project CETI, told SFGATE. "We're showing the world that there's more than meets the eye in sperm whales and that, if one cares to look closely, they're not as alien. We're much more similar to each other than we used to think." SFGATE reports: With the help of a machine-learning model to identify patterns, Begus and his team combed through recordings collected from social units of sperm whales off the coast of the island of Dominica between 2005 and 2018. When they sped up the audio, removing the silences between clicks, they heard new patterns. They found acoustic properties that share similarities with two vowels -- a and i -- and several vowel combinations.

"Before, people were looking just at the timing and the number of clicks exchanged between sperm whales, but now we have to look at the frequencies, too. A whole new set of patterns have appeared," Begus said. "Now, it's one of the most complex non-human communication systems we have observed." [...] Begus said the research only shows how much more we have to learn about whales' style of communicating. He is particularly interested in exploring how the system may differ for whales between regions and how whale babies learn to communicate in this way. Most importantly, he wants to understand the meaning behind the sounds, as a "window into whale thoughts and lives."
The research was published in the journal Open Mind.
Power

EV Sales Are Still Rising. They Have Not Slumped (electrek.co) 126

"Media headlines suggesting some slowdown in EV sales are simply incorrect," writes the site Electrek, "and leave out the bigger picture that gas car sales actually are dropping..." Over the course of the last two years or so, sales of battery electric vehicles, while continuing to grow, have posted lower year-over-year percentage growth rates than they had in years prior. EV sales used to grow at 50%+ per year, but for the last couple years, they have grown closer to ~25% per year. This alone is not particularly remarkable — it is inevitable that any growing product or category will show slower percentage growth rates as sales rise, particularly one that has been growing at such a fast rate for so long. In some recent years, we had even seen year-over-year doublings in EV market share (though one of those was 2020->2021, which was anomalous). To expect improvement at that level perpetually would be close to impossible — after 3 years of doubling market share from 2023's 18% number, EVs would account for more than 100% of the global automotive market, which cannot happen...

We have seen a global EV sales growth rate of 23% in the first 10 months of this year, according to a report just released by Rho Motion (recently acquired by Benchmark Mineral Intelligence). That includes a +32% bump in Europe, +22% bump in China, +4% in North America, and a big +48% bump in the "rest of the world." Notably, this 23% global growth rate is higher than last year's YTD growth rate, which was 22% at this time...

In covering these trends, some journalists have attempted to use the less-wrong phrase "slower growth," showing that EV sales are still growing, but at a lower percentage change than previously seen. But for the first ten months of this year, that isn't true — EV sales are up more in 2025 than in 2024 by a percentage basis. They are also up in raw sales numbers — in 2024, EV sales grew by a larger number than in 2023. And the same is true so far in 2025. Going back to 2023, 10.7 million EVs were sold globally in the first 10 months. Then in 2024, 13.3 million were sold, a difference of 2.6 million. And so far in 2025, 16.5 million EVs have sold, a difference of 3.2 million. Not only are the numbers getting bigger, but the growth in unit sales is getting bigger as well.

Even in America, the EV market "has increased so far this year, with 11.7% US EV sales growth YTD." In terms of US hybrid sales, much has been made of customers "shifting from EVs to hybrids," which is also not the case. Conventional gas-hybrid sales are indeed up and plug-in hybrids, which have grown more slowly than gas-hybrids/BEVs, have also shown some growth lately. But gas-hybrid sales have not come at the cost of EV sales, rather at the cost of gas-only car sales.

Because that's just the thing: the number of gas-only vehicles being sold worldwide is a number that actually is falling. That number continues to go down year over year. Sales of new gas-powered cars are down by about a quarter from their peak in 2017, and show no signs of recovering... And yet, somehow, virtually every headline you read is about the "EV sales slump," rather than the "gas-car sales slump." The one you keep hearing about isn't happening, but the one you rarely hear about is happening... No matter what region of the world you're in, EV sales were up in the first 10 months of this year.

AI

While Meta Crawls the Web for AI Training Data, Bruce Ediger Pranks Them with Endless Bad Data (bruceediger.com) 43

From the personal blog of interface expert Bruce Ediger: Early in March 2025, I noticed that a web crawler with a user agent string of

meta-externalagent/1.1 (+https://developers.facebook.com/docs/sharing/webmasters/crawler)

was hitting my blog's machine at an unreasonable rate.

I followed the URL and discovered this is what Meta uses to gather premium, human-generated content to train its LLMs. I found the rate of requests to be annoying.

I already have a PHP program that creates the illusion of an infinite website. I decided to answer any HTTP request that had "meta-externalagent" in its user agent string with the contents of a bork.php generated file...

This worked brilliantly. Meta ramped up to requesting 270,000 URLs on May 30 and 31, 2025...

After about 3 months, I got scared that Meta's insatiable consumption of Super Great Pages about condiments, underwear and circa 2010 C-List celebs would start costing me money. So I switched to giving "meta-externalagent" a 404 status code. I decided to see how long it would take one of the highest valued companies in the world to decide to go away.

The answer is 5 months.

PHP

The PHP Foundation Is Seeking a New Executive Director (thephp.foundation) 12

New submitter benramsey writes: The PHP Foundation has launched a search for its next executive director.

The Executive Director serves as the operational leader of the PHP Foundation, defining its strategic vision and translating it into reality while managing day-to-day operations and serving as the primary bridge between the Board, staff, community, and sponsors.

While the programming language PHP is over 30 years old, the PHP Foundation was only created in 2021. The Executive Director will be responsible for maturing the foundation's internal structure and will play a crucial role in ensuring the foundation can effectively support this vital ecosystem.

Interested parties are encouraged to submit a cover letter describing their interest and relevant experience, resume or CV, and a brief vision statement detailing the applicant's understanding of the position, key opportunities and challenges they see for the foundation, and their approach to the role.

Music

Nonprofit Releases Thousands of Rare American Music Recordings Online (ucsb.edu) 17

The nonprofit Dust-to-Digital Foundation is making thousands of historic songs accessible to the public for free through a new partnership with the University of California, Santa Barbara. The songs represent "some of the rarest and most uniquely American music borne from the Jazz Age and the Great Depression," according to the university, and classic blues recordings or tracks by Fiddlin' John Carson and his daughter Moonshine Kate "would have likely been lost to landfills and faded from memory."

Launched in 1999 by Lance and April Ledbetter, Dust-to-Digital focused on preserving hard-to-find music. Originally a commercial label producing high-quality box sets (along with CDs, records, and books), it established a nonprofit foundation in 2010, working closely with collectors to digitize and preserve record collections. And there's an interesting story about how they became familiar with library curator David Seubert... Once a relationship is established, Dust-to-Digital sets up special turntables and laptops in a collector's home, with paid technicians painstakingly digitizing and labeling each record, one song at a time. Depending on the size of the collection, the process can take months, even years... In 2006, they heard about Seubert's Cylinder Preservation and Digitization Project getting "slashdotted," a term that describes when a website crashes or receives a sudden and debilitating spike in traffic after being mentioned in an article on Slashdot.
Here in 2025, the university's library already has over 50,000 songs in a Special Research Collections, which they've been uploading it to a Discography of American Historical Recordings (DAHR) database. ("Recordings in the public domain are also available for free download, in keeping with the UCSB Library's mission for open access.") Over 5,000 more songs from Dust-to-Digital have already been added, says library curator Seubert, and "Thousands more are in the pipeline."

One interest detail? The bulk of the new songs come from Joe Bussard, a man whose 75-year obsession with record collecting earned him the name "the king of the record collectors and "the saint of 78s".
The Almighty Buck

You Can't Leave Unless You Buy Something (sfgate.com) 195

An anonymous reader quotes a report from SFGATE: At the Safeway on San Francisco's King Street, you now can't leave the store unless you buy something. The Mission Bay grocery store recently installed new anti-theft measures at the entrance and exit. New gates at the entrance automatically swing open when customers walk in, but they're set to trigger an alarm if someone attempts to back out. And if you walk into Safeway and change your mind about grocery shopping, you might find yourself trapped: Another gate that only opens if you scan your receipt blocks the store's sole exit.

During my Monday visit, I purchased a kombucha and went through the check-out line without incident. (No high-tech gates block the exit if you go through the line like normal.) But for journalism's sake, I then headed back into the store to try going out the new gate. While I watched some customers struggle with the new technology, my receipt scanned immediately. The glass doors slid open, and I was free. But if, like this person on the San Francisco subreddit recounted, I hadn't bought anything, my only means of exit would have been to beg the security guard to let me out.

Power

Ukraine First To Demo Open Source Security Platform To Help Secure Power Grid (theregister.com) 10

concertina226 shares a report from The Register: [A massive power outage in April left tens of millions across Spain, Portugal, and parts of France without electricity for hours due to cascading grid failures, exposing how fragile and interconnected Europe's energy infrastructure is. The incident, though not a cyberattack, reignited concerns about the vulnerability of aging, fragmented, and insecure operational technology systems that could be easily exploited in future cyber or ransomware attacks.] This headache is one the European Commission is focused on. It is funding several projects looking at making electric grids more resilient, such as the eFort framework being developed by cybersecurity researchers at the independent non-profit Netherlands Organisation for Applied Scientific Research (TNO) and the Delft University of Technology (TU Delft).

TNO's SOARCA tool is the first ever open source security orchestration, automation and response (SOAR) platform designed to protect power plants by automating the orchestration of the response to physical attacks, as well as cyberattacks, on substations and the network, and the first country to demo it will be the Ukraine this year. At the moment, SOAR systems only exist for dedicated IT environments. The researchers' design includes a SOAR system in each layer of the power station: the substation, the control room, the enterprise layer, the cloud, or the security operations centre (SOC), so that the SOC and the control room work together to detect anomalies in the network, whether it's an attacker exploiting a vulnerability, a malicious device being plugged into a substation, or a physical attack like a missile hitting a substation. The idea is to be able to isolate potential problems and prevent lateral movement from one device to another or privilege escalation, so an attacker cannot go through the network to the central IT management system of the electricity grid. [...]

The SOARCA tool is underpinned by CACAO Playbooks, an open source specification developed by the OASIS Open standards body and its members (which include lots of tech giants and US government agencies) to create standardized predefined, automated workflows that can detect intrusions and changes made by malicious actors, and then carry out a series of steps to protect the network and mitigate the attack. Experts largely agree the problem facing critical infrastructure is only worsening as years pass, and the more random Windows implementations that are added into the network, the wider the attack surface is. [...] TNO's Wolthuis said the energy industry is likely to be pushed soon to take action by regulators, particularly once the Network Code on Cybersecurity (NCCS), which lays out rules requiring cybersecurity risk assessments in the electricity sector, is formalized.

Slashdot Top Deals