Businesses

Binance Considers Pulling Back From US Partners as Crypto Crackdown Escalates (bloomberg.com) 20

Crypto giant Binance is considering ending relationships with US business partners as regulators turn up the heat. From a report: The company, which operates the world's largest crypto exchange, is weighing the retreat after its relationships with a key banking partner and stablecoin issuer ran into trouble amid intense scrutiny from authorities, according to a person familiar with the issue. Binance has been probed by the Securities and Exchange Commission, Commodity Futures Trading Commission, Justice Department and the Internal Revenue Service.

Binance is looking at whether to sever ties with intermediary firms such as banks and services firms and is reassessing venture-capital investments in the US, according to the person, who asked not to be identified discussing details that had not yet been made public. It will consider de-listing tokens from any US-based projects, including Circle's stablecoin USD Coin, the person said. Binance isn't authorized to serve crypto customers in the US. Instead, there's Binance.US, a far smaller exchange that claims to be independent and said it has no plans to leave the US.

Security

Researchers Unearth Windows Backdoor That's Unusually Stealthy (arstechnica.com) 33

Researchers have discovered a clever piece of malware that stealthily exfiltrates data and executes malicious code from Windows systems by abusing a feature in Microsoft Internet Information Services (IIS). From a report: IIS is a general-purpose web server that runs on Windows devices. As a web server, it accepts requests from remote clients and returns the appropriate response. In July 2021, network intelligence company Netcraft said there were 51.6 million instances of IIS spread across 13.5 million unique domains. IIS offers a feature called Failed Request Event Buffering that collects metrics and other data about web requests received from remote clients. Client IP addresses and port and HTTP headers with cookies are two examples of the data that can be collected. FREB helps administrators troubleshoot failed web requests by retrieving ones meeting certain criteria from a buffer and writing them to disk. The mechanism can help determine the cause of 401 or 404 errors or isolate the cause of stalled or aborted requests.

Criminal hackers have figured out how to abuse this FREB feature to smuggle and execute malicious code into protected regions of an already compromised network. The hackers can also use FREB to exfiltrate data from the same protected regions. Because the technique blends in with legitimate eeb requests, it provides a stealthy way to further burrow into the compromised network. The post-exploit malware that makes this possible has been dubbed Frebniis by researchers from Symantec, who reported on its use on Thursday. Frebniis first ensures FREB is enabled and then hijacks its execution by injecting malicious code into the IIS process memory and causing it to run. Once the code is in place, Frebniis can inspect all HTTP requests received by the IIS server.

United Kingdom

UK Monopoly Regulator Investigating Google's Search Deal With Apple (theregister.com) 4

Google has been paying Apple a portion of search revenue generated by people using Google Chrome on iOS, The Register reported Friday, citing a source. This is one of the aspects of the relationship between the two tech goliaths that currently concerns the UK's Competition and Markets Authority (CMA), the report added. From the report: Though everyone knows Google pays Apple, Samsung, and other manufacturers billions of dollars to make its web search engine the default on devices, it has not been reported until now that the CMA has been looking into Chrome on iOS and its role in a search revenue sharing deal Google has with Apple. We twice asked Apple and Google to confirm or deny what we've learned, and neither corporation would talk. We also approached the CMA, and a spokesperson for the monopoly regulator said: "The CMA cannot comment on or disclose any confidential information."


Businesses

Tencent Scraps Plans For VR Hardware as Metaverse Bet Falters (reuters.com) 16

Tencent is abandoning plans to venture into virtual reality hardware, as a sobering economic outlook prompts the Chinese tech giant to cut costs and headcount at its metaverse unit, Reuters reported Friday, citing three sources familiar with the matter. From the report: The world's largest video game publisher had ambitious plans to build both virtual reality software and hardware at an "extended reality" XR unit it launched in June last year, for which it hired nearly 300 people. It had come up with a concept for a ring-like hand-held game controller, but difficulties in achieving quick profitability and the large investment needed to produce a competitive product were among factors that prompted a shift away from that strategy, two of the sources said. One of the sources said the XR project was not expected to become profitable until 2027, according to an internal forecast. The second source said the unit also had a lack of promising games and non-gaming applications.
Facebook

'OG Mark' Returns at Meta as Facebook Parent Gives Thousands of Staff Subpar Reviews (wsj.com) 81

Facebook parent Meta gave thousands of employees subpar ratings in a recently concluded round of performance reviews, a signal that more job cuts may be on the way, WSJ reported Friday, citing people familiar with the matter. From the report: The company also cut a bonus metric, the people said, one of several steps senior executives are taking after Chief Executive Mark Zuckerberg declared 2023 would be a "year of efficiency." Meta's leadership expects the ratings to lead more employees to leave in the coming weeks, the people said. The company will consider another round of layoffs if not enough depart, the people said.

About 11,000 workers, or about 13% of employees at the company, were recently laid off. Meta managers gave approximately 10% of employees ratings indicating they are underperforming, the people said. That proportion wasn't unprecedented in the years before the pandemic. But Meta's employee count nearly doubled from 2019 to 2022, to 86,400, and about half its workers had never experienced a typical performance-review cycle at the company, several people familiar with the matter said. The recently wrapped performance reviews were seen as a return to form for Mr. Zuckerberg, who before the pandemic had developed a reputation for delivering direct feedback to workers, people familiar with the process said.

Earth

USAF Might Be Shooting Down Hobbyist Balloons 136

New submitter kalieaire writes: Steve Trimble of Aviation week reports that a Hobby Club's missing ballon might have been inadvertently targeted as a malicious UFO and subsequently shot down. When Scientific Balloon Solutions (SBS) company founder, Ron Meadows, reached out to Gov't resources at the FBI and DoD, they were brushed off. "I'm guessing probably they were pico balloons," said Tom Medlin, a retired FedEx engineer and co-host of the Amateur Radio Roundtable show. Merlin has three pico balloons in flight in the Northern and Southern hemispheres. According to Trimble, the description of all three UFOs shot down during 2/10-12 match the description of pico balloon models which can be purchased for $12-180 each, depending on the type. "Launching high-altitude, circumnavigational pico balloons has emerged only within the past decade," writes Trimble. He continues: Meadows and his son Lee discovered it was possible to calculate the amount of helium gas necessary to make a common latex balloon neutrally buoyant at altitudes above 43,000 ft. The balloons carry an 11-gram tracker on a tether, along with HF and VHF/UHF antennas to update their positions to ham radio receivers around the world. At any given moment, several dozen such balloons are aloft, with some circling the globe several times before they malfunction or fail for other reasons. The launch teams seldom recover their balloons.

The balloons can come in several forms. Some enthusiasts still use common, Mylar party balloons, with a set of published calculations to determine the amount of gas to inject. But the round-shaped Mylar balloons often are unable to ascend higher than 20,000-30,000 ft., so some pico balloonists have upgraded to different materials. [...] In fact, the pico balloons weigh less than 6 lb. and therefore are exempt from most FAA airspace restrictions, Meadows and Medlin said. Three countries -- North Korea, Yemen and the UK -- restrict transmissions from balloons in their airspace, so the community has integrated geofencing software into the tracking devices. The balloons still overfly the countries, but do not transmit their positions over their airspace.
On Feb. 15, NSC spokesman John Kirby told reporters all three objects "could just be balloons tied to some commercial or benign purpose," but he did not mention the possibility of pico balloons.
The Courts

Judge Signals Jail Time if Bankman-Fried's Internet Access Is Not Curbed (nytimes.com) 66

Sarah Blesener writes via The New York Times: Since his arrest two months ago, Samuel Bankman-Fried, the disgraced cryptocurrency executive, has been physically confined to the Palo Alto home of his parents, under the force of a $250 million bail package. But he has roamed largely unfettered in the wilderness of the internet: conducting interviews, posting narratives, making calls on encrypted apps and using a virtual private network, a web tool that allows users to conceal data and visit websites without detection. Those unrestrained days may soon be over. On Thursday, a federal judge overseeing Mr. Bankman-Fried's multibillion-dollar fraud case signaled a willingness to jail him for his persistent testing of his confinement's boundaries, going beyond what prosecutors had asked. "Why am I being asked to turn him loose in this garden of electronic devices?" the judge, Lewis A. Kaplan, asked prosecutors, describing the well-wired home of Mr. Bankman-Fried's parents, both professors at Stanford Law School.

No new conditions were set during Thursday's hearing, the latest of several hearings, held in federal court in Manhattan, to consider more restrictive bail terms. Judge Kaplan asked both sides to prepare concrete proposals that would limit and monitor Mr. Bankman-Fried's access to the internet without inhibiting his ability to participate in his defense. Federal prosecutors in Manhattan have charged Mr. Bankman-Fried with orchestrating widespread fraud at FTX, the cryptocurrency exchange he founded, accusing him of misappropriating billions of dollars of customers' money. Prosecutors said he used the funds to finance lavish real estate purchases, political contributions and investments in other companies. After he was charged in December, Mr. Bankman-Fried was released on bail with the requirement that he wear an ankle monitor and stay confined to his parents' house. [...]

Microsoft

Microsoft Outlines Official Support For Windows 11 on Mac with Apple Silicon (windowscentral.com) 53

Microsoft has outlined how users running Apple Silicon-based Macs can utilize Windows 11 in a new support document published today. The document explains how users running Mac devices with either M1 or M2 chips can use Windows 11, either via the cloud or using a local virtualization such as Parallels Desktop. From a report: Unfortunately, the document makes no mention of installing Windows 11 natively on Apple Silicon hardware. Apple's legacy Bootcamp application, which previously allowed Mac users to install Windows into its own bootable partition on a Mac, was removed when Apple transitioned to ARM processors. As of now, Microsoft points to Windows 365 as a potential solution for running Windows 11 on a Mac, using its enterprise service to stream a Windows 11 PC from the cloud. [...] For those users, Microsoft also mentions Parallels Desktop as a viable alternative. Version 18 of Parallels Desktop is now officially authorized to run Windows 11 on ARM on a Mac with M1 or M2 processors. This is the only way to officially run Windows 11 on ARM locally on a Mac with Apple Silicon.
Youtube

YouTube CEO Susan Wojcicki Stepping Down (vox.com) 60

YouTube CEO Susan Wojcicki, who has led the world's largest video site for the last nine years, is stepping down from her role. She'll be replaced by Neal Mohan, her longtime lieutenant. From a report: In a letter sent to YouTube's employees, Wojcicki said she was leaving in order to "start a new chapter focused on my family, health and personal projects I'm passionate about." During her tenure, YouTube became increasingly important to the business for Google, which bought the site in 2006, and Alphabet, the holding company that houses both of them: In 2022, YouTube generated $29.2 billion in ad sales -- more than 10 percent of Alphabet's total revenue.
The Military

US Issues Declaration on Responsible Use of AI in the Military (reuters.com) 33

The U.S. government on Thursday issued a declaration on the responsible use of artficial intelligence (AI) in the military, which would include "human accountability." From a report: "We invite all states to join us in implementing international norms, as it pertains to military development and use of AI" and autononous weapons, said Bonnie Jenkins, Under Secretary of State for Arms Control.
Businesses

Inside Meta's Push To Solve the Noisy Office (wsj.com) 85

Coming to the campuses of Facebook parent Meta Platforms is a contraption that can block sound, shield workers from their peers and allow for heads-down, uninterrupted work. It's a cubicle. From a report: That is, a noise-canceling cubicle designed using some of the same principles found in soundproof, echo-free anechoic chambers. "The Cube," which the company is beginning to roll out to offices worldwide after months of development, absorbs sound from multiple directions, says John Tenanes, vice president of global real estate and facilities at Meta. "It's like a self-cocoon."

Meta's experiment comes as workplaces are in the midst of a shake-up. Like many other employers, Meta realized early in the pandemic that its open-plan arrangements would need to shift to accommodate a new hybrid era of work. In 2021, it asked 10 groups of architects, design firms and furniture manufacturers-- including MillerKnoll's Herman Miller, KI and others -- to build a new office set-up. They were given guiding principles to follow and eight weeks to do it. [...] The Cube began to take shape, in part, after one of Meta's furniture vendors brought in an early prototype of a movable screen. Engineers quickly gravitated to it, grabbing one or two at a time to essentially barricade themselves at their desks, Dr. Nagy says. Meta and its vendors refined the Cube, and its popularity became even more apparent during testing when workers began personalizing the spaces to effectively reserve them.

Power

Tesla To Open US Charging Network To Rivals In $7.5 Billion Federal Program (reuters.com) 125

Tesla will open part of its U.S. charging network to electric vehicles (EVs) made by rivals as part of a $7.5 billion federal program to expand the use of EVs to cut carbon emissions, the Biden administration said on Wednesday. Reuters reports: Such a move could help turn Tesla into the universal "filling station" of the EV era - and risk eroding a competitive edge for vehicles made by the company, which has exclusive access to the biggest network of high-speed Superchargers in the United States. By late 2024, Tesla will open 3,500 new and existing Superchargers along highway corridors to non-Tesla customers, the Biden administration said. It will also offer 4,000 slower chargers at locations like hotels and restaurants.

A White House official said at a briefing that Tesla would be eligible for a subsidy - including retrofitting its existing fleet - as long as its chargers would allow other vehicles with a federally backed charging standard called CCS to charge. The administration said Tesla has not committed to adopting CCS as its standard, but it must comply with the requirements to qualify for federal funds.

Businesses

Has Google Lost Its Mission? (cnbc.com) 126

A former Google employee said the company has lost its way, writing in a recent blog post that Google is inefficient, plagued by mismanagement and paralyzed by risk. Praveen Seshadri joined the Alphabet-owned company at the start of 2020 when Google Cloud acquired AppSheet, which Seshadri co-founded. He left in January, according to his LinkedIn profile. CNBC reports: Seshadri argued it's a "fragile moment" for Google, particularly because of the recent pressures it is facing to compete with Microsoft's artificial intelligence initiatives. Seshadri said Google's problems are not rooted in its technology, but in its culture. "The way I see it, Google has four core cultural problems," Seshadri said. "They are all the natural consequences of having a money-printing machine called 'Ads' that has kept growing relentlessly every year, hiding all other sins. (1) no mission, (2) no urgency, (3) delusions of exceptionalism, (4) mismanagement."

Instead of working to serve customers, Seshadri argued most employees ultimately serve other Google employees. He described the company as a "closed world" where working extra hard isn't necessarily rewarded. Seshadri said feedback is "based on what your colleagues and managers think of your work." Seshadri said Google is hyper-focused on risk and that "risk mitigation trumps everything else." Every line of code, every launch, nonobvious decisions, changes from protocol and disagreements are all risks that Googlers have to approach with caution, Seshadri wrote. He added that employees are also "trapped" in a long line of approvals, legal reviews, performance reviews and meetings that leave little room for creativity or true innovation.

"Overall, it is a soft peacetime culture where nothing is worth fighting for," Seshadri wrote "The people who are inclined to fight on behalf of customers or new ideas or creativity soon learn the downside of doing so." Seshadri said Google has also been hiring at a rapid pace, which makes it difficult to nurture talent and leads to "bad hires." Many employees also believe the company is "truly exceptional," Seshadri said, which means that a lot of antiquated internal processes continue to exist because "that's the way we do it at Google." Seshadri said Google has a chance to turn things around, but he doesn't think the company can continue to succeed by merely avoiding risk. He argues that Google needs to "lead with commitment to a mission," reward people who fight for "ambitious causes" and trim the layers of middle management. "There is hope for Google and for my friends who work there, but it will require an intervention," he wrote.

China

ASML Says Ex-China Employee Stole Chip Data (cnbc.com) 52

An anonymous reader quotes a report from CNBC: ASML, one of the world's most critical semiconductor firms, said Wednesday that it recently discovered that a former employee in China had misappropriated data related to its proprietary technology. The Dutch firm said that it does not believe the alleged misappropriation is material to its business. "We have experienced unauthorized misappropriation of data relating to proprietary technology by a (now) former employee in China," ASML said in its annual report. "However, as a result of the security incident, certain export control regulations may have been violated. ASML has therefore reported the incident to relevant authorities." The data that was misappropriated involved documents. ASML did not expand on the details.

The security incident comes at a sensitive time for ASML and the government of the Netherlands which has been caught in the middle of a battle for tech supremacy between the U.S. and China. Semiconductors are very much part of that rivalry. ASML holds a unique position in the chip supply chain. The company makes a tool called an extreme ultraviolet lithography machine that is required to make the most advanced semiconductors, such as those manufactured by TSMC. ASML is the only company in the world that produces this piece of kit. The U.S. is worried that if ASML ships the machines to China, chipmakers in the country could begin to manufacture the most advanced semiconductors in the world, which have extensive military and advanced artificial intelligence applications.
"With ASML's unique position and the growing geopolitical tensions in the semiconductor industry, we see increasing security risk trends, ranging from ransomware and phishing attacks to attempts to acquire intellectual property or disrupt business continuity," a spokesperson for the company said.
AI

Audiobook Narrators Complain Apple May Have Used Them To Train AI Voices (appleinsider.com) 32

Customers of Spotify's audiobook narration firm say that they were not adequately informed of a contract clause that they agreed to, that ultimately allowed Apple to use their voices in its AI training. From a report: Apple quietly released a range of audio Apple Books in early January 2023, which were narrated by voices entirely generated by Artificial Intelligence. Publishers and professional voice actors objected that this was removing a major source of income, but Apple claimed it was still committed to artists.

Specifically, Apple said that the new AI audiobooks were only done for titles where it was not economic to hire an actor. So that would be low-circulation ones such as textbooks, small presses, and self-published titles. Now according to Wired, voiceover artists and authors working with a company called Findaway have complained about Apple using them to train their own AI replacements. Findaway is effectively a self-publishing audio company that is owned by Spotify, where authors pay to have audiobooks produced. As yet, it appears that no actors working for traditionally published titles -- where the audiobook is produced by the publisher without a charge to the author -- have complained.

Google

Google CEO's New Memo To Employees: Put Two To Four Hours Into Improving Bard Chatbot (businessinsider.com) 67

Alphabet CEO Sundar Pichai sent an internal memo to Googlers on Wednesday asking them to contribute 2-4 hours of their time to helping improve Bard, the company's AI chatbot that it intends to integrate into search. From a report: The email signals how Google's urgency in moving to win the next generation of AI-based search. The company has found itself on its back foot as Microsoft took the spotlight for its investment in OpenAI. OpenAI created the popular ChatGPT, a chatbot released in late 2022 which can respond to broad, open-ended questions with human-like answers. Last week, Microsoft unveiled a revamped version of its Bing search engine with ChatGPT, and CEO Satya Nadella called it a "new day" for search.

"I know this moment is uncomfortably exciting, and that's to be expected: the underlying technology is evolving rapidly with so much potential," Pichai wrote in his memo to Googlers. "The most important thing we can do right now is to focus on building a great product and developing it responsibly." Google kicked off "dogfooding," or internally testing, Bard on Tuesday, according to another memo seen by Insider. It already has thousands of external and internal testers using it, submitting feedback regarding the quality, safety, and "groundedness" of Bard's responses, Pichai's memo said.

Network

Google Fiber Launches 5Gbps Service 54

Google Fiber is launching the 5Gbps internet plan it began testing in October. Engadget reports: The service will initially cover four cities, but Google says the $125-per-month service will expand to other areas later this year. The new plan is available today in Kansas City, West Des Moines and Fiber's Utah cities. It has symmetrical upload and download rates, an upgraded 10 Gig Fiber Jack (the small box housing the fiber cable's entrance into your home), professional installation, a WiFi 6 router and up to two mesh network extenders.

The upgraded speeds are part of Google's rejuvenated focus on Fiber. The company also recently announced its first network expansion in years. But, perhaps more crucially, it reestablishes Fiber as an industry disrupter pushing competitors to upgrade speeds and lower prices (maybe) on existing plans. Comcast already offers 6Gbps service in some areas, but it costs a whopping $300 and doesn't include symmetrical uploads. Google also reiterated that Fiber's 8Gbps option, also announced late last year, is still "coming soon." That service will also include symmetrical uploads and downloads.
KDE

KDE Plasma 5.27 Released (kde.org) 18

Long-time Slashdot reader jrepin writes: Plasma is a popular desktop environment, which is also powering the desktop mode on the Steam Deck hand-held gaming console. Today, KDE Community announced release of KDE Plasma 5.27, a Long Term Support (LTS) release and the final release in the Plasma 5 series which is based on Qt 5.

This release brings a welcome wizard, which will guide you through setting up the desktop, and a new tiling system for KWin window manager, allowing you to set up custom tile layouts and resize adjacent tiled windows simultaneously. The settings for touch-enabled devices such as touchscreens and drawing tablets have been improved and expanded. For those lucky owners of Valve's Steam Deck gaming console, Discover can now perform system updates from within the desktop. Digital Clock desktop widget can now show the Hebrew calendar in its calendar view, and the Media Player widget is now touch-sensitive. The Bluetooth widget shows the battery status of connected devices when you hover the cursor over it. Those of you who use multiple monitors should benefit greatly from a major overhaul of how Plasma handles them. KDE Plasma now comes with Flatpak permissions settings integrated into the System Settings app.

For details and other new features and improvements be sure to check out the full announcement.

Security

Viral TikTok Challenge Forces Hyundai and Kia To Update Software On Millions of Vehicles (theverge.com) 84

An anonymous reader quotes a report from The Verge: Hyundai and Kia are offering free software updates for millions of their cars in response to a rash of car thefts inspired by a viral social media challenge on TikTok. The so-called "Kia Challenge" on the social media platform has led to hundreds of car thefts nationwide, including at least 14 reported crashes and eight fatalities, according to the National Highway Traffic Safety Administration. Thieves known as "the Kia Boyz" would post instructional videos about how to bypass the vehicles' security system using tools as simple as a USB cable.

The thefts are reportedly easy to pull off because many 2015-2019 Hyundai and Kia vehicles lack electronic immobilizers that prevent thieves from simply breaking in and bypassing the ignition. The feature is standard equipment on nearly all vehicles from the same period made by other manufacturers. Hyundai and its subsidiary Kia are offering to update the "theft alarm software logic" to extend the length of the alarm sound from 30 seconds to one minute. The vehicles will also be updated to require a key in the ignition switch to turn the vehicle on. The software upgrade modifies certain vehicle control modules on Hyundai vehicles equipped with standard "turn-key-to-start" ignition systems. As a result, locking the doors with the key fob will set the factory alarm and activate an "ignition kill" feature so the vehicles cannot be started when subjected to the popularized theft mode. Customers must use the key fob to unlock their vehicles to deactivate the "ignition kill" feature.

There hasn't been a nationwide accounting of how many Hyundai and Kia vehicles have been stolen, but stats from individual cities provide some sense of how viral the trend has become. In Milwaukee, for example, police report that 469 Kias and 426 Hyundais were stolen in 2020. Those numbers spiked the following year to 3,557 Kias and 3,406 Hyundais, according to NPR. Approximately 3.8 million Hyundais and 4.5 million Kias are eligible for the software update free of charge, for a total of 8.3 million cars. Vehicle owners are instructed to take their cars to a local dealership, where technicians will install the upgrades in less than an hour. The upgraded vehicles will also get a window decal indicating they've been equipped with anti-theft technology.

Power

Ford Halts Production, Shipments of F-150 Lightning Over Possible Battery Issue (reuters.com) 82

Ford said on Tuesday that it had stopped production and shipments of its F-150 Lightning electric pickup after discovering a potential battery issue during pre-delivery checks. Reuters reports: "We are not aware of any incidences of this issue in the field," Ford spokesperson Emma Bergg said in an email. She said the production stop was issued at the start of last week. Ford added it was investigating the matter, which was earlier reported by CNBC and first reported by Motor Authority. Shares of the automaker were down 1% in afternoon trade. Bergg says Ford has not established a timeline for when production and the shipments will resume. "The team is diligently working on the root cause analysis," she told CNBC, adding the company is "doing the right thing by our customers" to resolve any potential issues before resuming production and shipments.

Slashdot Top Deals