Transportation

Report: FAA Overruled Engineers, Let Boing Max Keep Flying (apnews.com) 65

An anonymous reader quotes a report from the Associated Press: Some engineers for the Federal Aviation Administration wanted to ground the Boeing 737 Max soon after a second deadly crash, but top officials in the agency overruled them, according to a government watchdog. The inspector general of the Transportation Department said in a new report that FAA officials wanted to sort out raw data about the two crashes, and held off grounding the plane despite growing international pressure. The inspector general's office said that it reviewed emails and interviewed FAA officials. The investigation "revealed that individual engineers at the Seattle (office) recommended grounding the airplane while the accident was being investigated based on what they perceived as similarities between the accidents."

One engineer made a preliminary estimate that the chance of another Max crash was more than 13 times greater than FAA risk guidelines allow. An FAA official said the analysis "suggested that there was a 25% chance of an accident in 60 days" if no changes were made to the planes. "However, this document was not completed and did not go through managerial review due to lack of detailed flight data," the report said. FAA officials at headquarters in Washington, D.C., and the agency's Seattle office opted not to ground the plane. "Instead, they waited for more detailed data to arrive," the watchdog said in the report, which was made public Friday.

The first Max crash occurred in October 2018 in Indonesia and was followed by the second in March 2019 in Ethiopia. In all, 346 people died. The FAA was the last major aviation regulator to ground the Max -- three days after the second crash. The FAA did not let the planes fly again until late 2020, after Boeing altered a flight-control system that autonomously pointed the plane's nose down before both crashes. The inspector general's office said the FAA's caution on grounding the Max fit with its tendency of waiting for detailed data -- an explanation that agency officials offered at the time. Still, the watchdog recommended that FAA document how key and urgent safety decisions are made and make several other changes in how it analyzes crashes.

NASA

NASA Seeks 'Citizen Scientists' to Listen to Space Noises (nasa.gov) 22

"Earth's magnetic environment is filled with a symphony of sound that we cannot hear," NASA wrote this month. When solar winds approach earth, "it causes the magnetic field lines and plasma around Earth to vibrate like the plucked strings of a harp, producing ultralow-frequency waves... a cacophonous operetta portraying the dramatic relationship between Earth and the Sun."

So NASA is now announcing "a new NASA-funded citizen science project called HARP — or Heliophysics Audified: Resonances in Plasmas " that has "turned those once-unheard waves into audible whistles, crunches, and whooshes..." Or, as the Washington Post puts it, "NASA wants your help listening in on the universe."

From NASA's news release: In 2007, NASA launched five satellites to fly through Earth's magnetic "harp" — its magnetosphere — as part of the THEMIS mission (Time History of Events and Macroscale Interactions during Substorms). Since then, THEMIS has been gathering a bounty of information about plasma waves across Earth's magnetosphere. "THEMIS can sample the whole harp," said Michael Hartinger, a heliophysicist at the Space Science Institute in Colorado. "And it's been out there a long time, so it has collected a lot of data."

The frequencies of the waves THEMIS measures are too low for our ears to hear, however. So the HARP team sped them up to convert them to sound waves. By using an interactive tool developed by the team, you can listen to these waves and pick out interesting features you hear in the sounds... Preliminary investigations with HARP have already started revealing unexpected features, such as what the team calls a "reverse harp" — frequencies changing in the opposite way than what scientists anticipated...

"Data sonification provides human beings with an opportunity to appreciate the naturally occurring music of the cosmos," said Robert Alexander, a HARP team member from Auralab Technologies in Michigan. "We're hearing sounds that are literally out of this world, and for me that's the next best thing to floating in a spacesuit."

To start exploring these sounds, visit the HARP website.

"Think listening to years' worth of wave patterns is a job for artificial intelligence? Think again," writes the Washington Post. In a news release, HARP team member Martin Archer of Imperial College London says humans are often better at listening than machines. "The human sense of hearing is an amazing tool," Archer says. "We're essentially trained from birth to recognize patterns and pick out different sound sources. We can innately do some pretty crazy analysis that outperforms even some of our most advanced computer algorithms."
Power

Brit Fusion Magnets Set For US Gamma Ray Bombardment Test (theregister.com) 13

UK fusion company Tokamak Energy claims to have made a breakthrough in fusion magnets, developing technology capable of withstanding the electromagnetic bombardment from a fusion reaction while holding the reaction in place. It plans to put its technology to the test at a U.S. gamma ray facility in the desert. The Register reports: At its Oxford headquarters, Tokamak Energy, which is collaborating with the UK government's nuclear fusion program, has built a specialist gamma radiation cryostat system, designed around a vacuum device which insulates the magnets from fusion energy. The system is now set to be disassembled, shipped, and rebuilt at the Gamma Irradiation Facility based at the US Department of Energy's Sandia Laboratories in Albuquerque, New Mexico.

Tokamak Energy said Sandia was one of the few places in the world capable of housing the system while exposing the company's superconducting magnets to gamma radiation comparable with the expected emissions of a fusion power plant. Research and analysis on sets of individual magnets will run for six months at the New Mexico facility, which is so powerful it can do a 60-year lifetime test in just two weeks, Tokamak Energy said. The company recently signed an agreement with UK Atomic Energy Authority (UKAEA) to jointly develop technology, and share resources and equipment for the development of a Spherical Tokamak for Energy Production (STEP).

United States

Coinbase Offers a Fiery Response To SEC's Threat of Enforcement Action (cnbc.com) 49

Crypto exchange Coinbase offered a fiery response on Thursday to last month's Wells notice from the SEC, telling the federal regulator that an enforcement action against the crypto exchange would pose "major programmatic risks" to the SEC that would "fail on the merits." From a report: "Coinbase does not list, clear, or effect trading in securities," the company's response said. The analysis SEC did staffers to justify an enforcement action "appears to rest on superficial and incorrect analogies to products and services offered by others," Coinbase wrote in a blog post from chief legal officer Paul Grewal. Separately, Grewal told CNBC, "At the time when we went public we had detailed discussions with the SEC about the very aspects of our business that are now -- two years later -- the subject of the Wells notice. Nothing has changed."

The SEC indicated to Coinbase in a March wells notice that its spot trading, staking, custody and institutional trading businesses were at risk. The SEC's warning to Coinbase noted that the regulator would allege Coinbase was offering and selling unregistered securities, in violation of federal law. The SEC has used unregistered offering and sale violations to force other crypto exchanges to close services in the U.S., including the crypto exchange Kraken's staking-as-a-service product.

United States

As Sea Levels Rise, the East Coast is Also Sinking (arstechnica.com) 131

Climate scientists already know that the East Coast of the United States could see around a foot of sea-level rise by 2050, which will be catastrophic on its own. But they are just beginning to thoroughly measure a "hidden vulnerability" that will make matters far worse: The coastline is also sinking. From a report: It's a phenomenon known as subsidence, and it's poised to make the rising ocean all the more dangerous, both for people and coastal ecosystems. New research published in the journal Nature Communications finds that the Atlantic coast -- home to more than a third of the US population -- is dropping by several millimeters per year. In Charleston, South Carolina, and the Chesapeake Bay, it's up to 5 millimeters (a fifth of an inch). In some areas of Delaware, it's as much as twice that. Five millimeters of annual sea-level rise along a stretch of coastline, plus 5 millimeters of subsidence there, is effectively 10 millimeters of relative sea-level rise.

Atlantic coastal cities are already suffering from persistent flooding, and the deluge will only get worse as they sink while seas rise. Yet high-resolution subsidence data like this isn't yet taken into account for coastal hazard assessments. "What we want to do here is to really bring awareness about this missing component, that based on our analysis actually makes the near-future vulnerability a lot worse than what you would expect from sea-level rise alone," says Manoochehr Shirzaei, an environmental security expert at Virginia Tech and coauthor of the new paper.

Microsoft

Microsoft Suggests Businesses Buy Fewer PCs (theregister.com) 66

In early April with the start of previews for "Windows Frontline" -- a service that provides a single license for frontline employees to use up to three Cloud PCs, Microsoft floated the idea that businesses should buy fewer PCs. The Register reports: The "Frontline" name hints at its purpose: Microsoft thinks this license will benefit organizations that employ shift workers in roles like customer support or healthcare. Microsoft imagines shift workers will log on for eight hours, then the next worker on duty will do likewise, and advances this as a fairer way to charge than assuming cloud PCs are used 24x7. To burnish that argument, Microsoft's launch material for Windows Frontline included research (PDF) by tech sustainability consultancy Px3 that tries to answer the question "Can modern work applications and endpoints abate end user computing greenhouse gas emissions and drive climate action?" The answer is "Yes," when one considers cloudy PCs to be "modern endpoints."

The research reaches that conclusion with analysis of the energy consumption of desktop computers, laptops, tablets, and thin clients, compared to the impact of running a Cloud PC. The research also considers bring your own PC plans that see business fund the acquisition of PCs that their staff use for personal and employment purposes, meaning fewer devices need to be summoned into existence and fewer resources are consumed because users operate one machine instead of two. Px3 instead imagines that end users and their sole device to access a Windows365 Cloud PC when they're on the clock. Doing so would mean corporate PC replacement cycles could stretch to eight years!

Readers will not be surprised that the research found the combination of Windows365 and a bring your own PC plan has significantly lower environmental impact and is therefore a jolly good idea. The research's concluding paragraph states "it is reasonable to state that modern work applications and endpoint computers not only abate GHG emissions, they are perhaps critical to securing a sustainable future." That's perhaps a little overblown but the point is made: slowing consumption is a good idea and it's now possible to turn down the speed of the PC upgrade treadmill.

Security

Hacker Group Names Are Now Absurdly Out of Control (wired.com) 56

Hackers, particularly state-sponsored and organized cybercriminals, wreak havoc worldwide. However, their aliases, such as Fancy Bear and Refined Kitten, often undermine the seriousness of their actions, Wired argues. Microsoft's cybersecurity division recently revamped its naming taxonomy for the hundreds of hacker groups it tracks, adopting two-word names with a weather-based term to indicate the hackers' suspected country and affiliation.

For instance, the Iranian group Phosphorous is now dubbed Mint Sandstorm, while Russia's Iridium (Sandworm) goes by Seashell Blizzard. Critics, like Rob Lee, founder and CEO of cybersecurity firm Dragos, argue that the whimsical new names could hinder the perception of the profession and be counterproductive for cybersecurity analysis. Furthermore, the new naming scheme forces analysts and customers to revise their databases and products to align with Microsoft's terminology. The revised system also risks cementing educated guesses about hackers' national loyalties without clarity on the confidence of those assessments.
The Almighty Buck

Opponents to a US Digital Dollar Include Several US Presidential Hopefuls (msn.com) 73

In the U.S., at least three early candidates for president from both parties "want to make it clear they would not support any proposals for a central bank-backed digital US dollar," reports Bloomberg — which may be a little premature, because "A central bank digital currency, or CBDC, is far from reality in the U.S." Some officials at the Federal Reserve have expressed doubt over the need for one, especially for use by everyday Americans. The Fed has also said it would want approval from Congress before moving forward with a digital dollar. But that hasn't stopped the relatively niche issue from emerging as a flash point for individuals eyeing a presidential run.

The idea of a digital dollar has already faced backlash from Wall Street and other banks, because lenders are worried about it acting as a direct competitor to private bank deposits. Digital-asset companies like Circle Internet Financial LLC that issue stablecoins — a form of cryptocurrency traditionally tied to reserve assets like the US dollar or gold and that offers similar features to a retail digital dollar — have also pushed back against certain CBDCs. Circle's Head of Global Policy Dante Disparte said he'd be opposed to a digital dollar if it allows the Fed to control users' access to funds, compromises privacy or disrupts a two-tiered banking and payments system. "I've gone as far as saying that's the version that is un-American," he said in an interview. In a report published last year in response to a Federal Reserve discussion paper, Circle also warned that a digital dollar could "destabilize" the banking sector.

In Congress, Republicans on Capitol Hill have introduced legislation to ban such direct-to-consumer CBDCs, saying they could be used by the federal government to surveil US citizens.

Proponents of a CBDC have argued that it could offer real benefits, including making payments — especially cross-border payments — faster and ensuring the dollar's dominance in the global economy. It could be particularly useful for settling certain financial-market transactions, such as interbank transfers, some Fed officials have said. The government has also indicated it would prefer to have private-sector intermediaries offer accounts and facilitate CBDC payments, rather than taking on that role itself. Supporters have argued it can be tailored in a way to protect consumer privacy, which the Fed has also said is critical if it decides to move forward.

Bloomberg also summarized the analysis of one political consultant specializing in cryptocurrency. "In addition to the potential appeal to libertarian voters and to constituents in banking and crypto, pushing back against a U.S. digital dollar can provide a relatively safe avenue for candidates to attract votes from conspiracy theorists who have rallied around the anti-CBDC movement."
Earth

CNN: Planet Earth 'Just Failed Its Annual Health Checkup' (cnn.com) 111

CNN reports on this year's "State of the Climate" report from the World Meteorological Organization (the UN agency promoting international cooperation on atmospheric science a d climatology).

The report "analyzes a series of global climate indicators — including levels of planet-heating pollution, sea level rise and ocean heat — to understand how the planet is responding to climate change and the impact it is having on people and nature."

CNN's conclusion? "The world just failed its annual health checkup."= - Oceans reached record high temperatures, with nearly 60% experiencing at least one marine heatwave.

- Global sea levels climbed to the highest on record due to melting glaciers and warming oceans, which expand as they heat up.

- Antarctica's sea ice dropped to 1.92 million square kilometers in February 2022, at the time the lowest level on record (the record was broken again this year).

- The European Alps saw a record year for glacier melt, with Switzerland particularly badly affected, losing 6% of its glacier volume between 2021 and 2022.

- Levels of planet warming pollution, including methane and carbon dioxide, reached record highs in 2021, the latest year for which there is global data...


Last year, climate change-fueled extreme weather "affected tens of millions, drove food insecurity, boosted mass migration, and cost billions of dollars in loss and damage," WMO Secretary-General Petteri Taalas said in a statement. In 2022, China had its most extensive and long-lasting drought on record. Droughts also affected East Africa, with more than 20 million people in Ethiopia, Kenya and Somalia facing acute food insecurity as of January this year. Many western and southern US states experienced significant drought and Europe's punishing heatwave is estimated to have led to 15,000 excess deaths. In Pakistan, record-breaking rainfall left huge swaths of the country underwater, killing more than 1,700 people, with almost 8 million displaced, and causing $30 billion in damages...

Last year is unlikely to be an outlier, as temperatures continue their upwards trajectory. The past eight years were the hottest on record, despite three consecutive years of the La Niña climate phenomenon, which has a global cooling effect. The global average temperature last year climbed to about 1.15 degrees Celsius above pre-industrial levels, according to the report, as the world continues its march towards breaching 1.5 degrees of warming for the first time. With the predicted arrival later in the year of El Niño, which brings warmer global temperatures, scientists are deeply concerned that 2023 and 2024 will continue to smash climate records. The hottest year on record, 2016, was the result of a strong El Niño and climate change, said Baddour. "It is only a matter of time before that record is broken...."

"The droughts and level of heatwaves that we saw throughout 2022 were quite remarkable," Samantha Burgess, deputy director of Copernicus, told CNN. "This is really a wake up call that climate change isn't a future problem, it is a current problem. And we need to adapt as quickly as possible," she added.

Omar Baddour, head of the Climate Monitoring and Policy Division at the WMO, also told CNN that "Communities and countries which have contributed least to climate change suffer disproportionately."

And for more bad news, CNN notes a report from the European Union's Copernicus Climate Change Service found Europe experienced its hottest summer ever recorded, unprecedented marine heatwaves in the Mediterranean sea, and widespread wildfires.
The Military

Leaker of US Documents Shared More Secrets Earlier in a Discord Group with 600 Members (japantimes.co.jp) 119

Remember that U.S. Air National Guardsman who's suspected of leaking classified documents? The New York Times has discovered "a previously undisclosed chat group on Discord" where the same airman apparently also posted "sensitive information" including "secret intelligence on the Russian war effort," this time to a group with 600 members — and "months earlier than previously known," in February of 2022. The case against Airman Teixeira, 21, who was arrested on April 13, pertains to the leaking of classified documents on another Discord group of about 50 members, called Thug Shaker Central. There, he began posting sensitive information in October 2022, members of the group told The Times. His job as an information technology specialist at an Air Force base in Massachusetts gave him top secret clearance... The user claimed to be posting information from the National Security Agency, the Central Intelligence Agency and other intelligence agencies.

The additional information raises questions about why authorities did not discover the leaks sooner, particularly since hundreds more people would have been able to see the posts... The exposure of some of America's most closely guarded secrets has prompted criticism about how the Pentagon and intelligence agencies protect classified data, and whether there are weaknesses in both vetting people for security clearances and enforcing the mantra that access to secrets should only be given to people with a "need to know."

Unlike Thug Shaker Central, the second chat room was publicly listed on a YouTube channel and was easily accessed in seconds... Apparently eager to impress others in the group who questioned his analysis, he said: "I have a little more than open source info. Perks of being in a USAF intel unit," referring to the United States Air Force... At times, he appeared to be posting from the military base where he was stationed... Airman Teixeira also claimed that he was actively combing classified computer networks for material on the Ukraine war.

When one of the Discord users urged him not to abuse his access to classified intelligence, Teixeira replied: "too late...."

The Times says they learned about the larger chat room "from another Discord user."
Businesses

Cities Keep Building Luxury Apartments Almost No One Can Afford (bloomberg.com) 243

Cutting red tape and unleashing the free market was supposed to help strapped families. So far, it hasn't worked out that way. From a report: Austin is experiencing an unrivaled apartment boom. In 2021 the region including the Texas capital issued nearly 26,000 multifamily housing permits, about 11 units per 1,000 residents. That's more per capita than any large US metro area since 1996, when Las Vegas OK'd new apartments at only a slightly higher level, according to rental marketing firm Apartment List. By the same measure, which is based on an analysis of US census data, Austin topped the 50 largest US metropolitan areas in 9 of the last 10 years. Many, if not most, of these apartments are classified as luxury, depending on how you define it. (Some developments are likely using a bit of real estate puffery.) Buildings such as the Hanover have become a flashpoint in a fierce, often bitter debate raging in Texas, the US and around the world. It's about the best way to shelter this generation and the next, particularly in the most sought-after and expensive cities.

Academics, developers and people in their 20s and 30s -- particularly those most active on social media -- have reached an unusual level of consensus. Their solution, supported by a wealth of scholarly research, is simple and elegant: Loosen regulations, such as zoning, and build more homes of any kind -- cheap, modest and palatial. The shorthand for the movement has become "Build, build, build" or "Yes, in my backyard" -- Yimby, for short. It's a rejoinder to the "Not in my backyard," or Nimby, crowd, the hidebound folks who typically thwart construction. Texas is famous for its business-friendly ways, and David Ott is one of many embracing the Yimby approach. He oversees the Texas projects of Houston-based Hanover, which developed the building Young was showing on a recent March afternoon. He says Austin is getting overbuilt, so rents will indeed come down, especially in the suburbs. "It's simple supply and demand," he says.

Sci-Fi

Pentagon Shoots Down UFO Rumors But Says 650 Cases Are Still Pending (theregister.com) 40

The Pentagon's All-domain Anomaly Resolution Office (AARO), which was created last year to investigate unidentified flying objects (UFOs), said on Wednesday that they have not found any evidence of aliens in its analysis. The office within the Secretary of Defense is, however, tracking more than 650 potential cases of so-called "unidentified aerial phenomena" -- up from the 350 reports referenced in an unclassified intelligence report released earlier this year. Half of them are considered "especially interesting and anomalous." The Register reports: At hearings (one open and one closed) held by the Senate Armed Services Committee's Subcommittee on Emerging Threats and Capabilities this week, Sean Kirkpatrick said most sightings of UFOs are not as strange as they first appear. They are often balloons, unmanned aerial systems, or aircraft, and look odd due to natural phenomena. "I want to underscore that only a very small percentage of [unidentified anomalous phenomena] (UAP) reports display signatures that could reasonably be described as anomalous," he said during this opening testimony at the hearing.

AARO has failed to resolve some incidents, but it's not because something is inexplicable but due to a lack of data. "In our research, AARO has found no credible evidence thus far of extraterrestrial activity, off-world technology, or objects that defy the known laws of physics," Kirkpatrick confirmed. In other words: It's not aliens. Kirkpatrick said that if the Office does find sufficient scientific data supporting the idea of an object of extraterrestrial origin, it would share its findings with NASA and alert US government personnel. Amateur UFO spotters are fine, he said, but need to apply scientific method to their claims.
Further reading: Pentagon Official Floats a Theory For Unexplained Sightings: Alien Motherships
AI

GPT-4 Will Hunt For Trends In Medical Records Thanks To Microsoft and Epic (arstechnica.com) 54

An anonymous reader quotes a report from Ars Technica: On Monday, Microsoft and Epic Systems announced that they are bringing OpenAI's GPT-4 AI language model into health care for use in drafting message responses from health care workers to patients and for use in analyzing medical records while looking for trends. Epic Systems is one of America's largest health care software companies. Its electronic health records (EHR) software (such as MyChart) is reportedly used in over 29 percent of acute hospitals in the United States, and over 305 million patients have an electronic record in Epic worldwide. Tangentially, Epic's history of using predictive algorithms in health care has attracted some criticism in the past.

In Monday's announcement, Microsoft mentions two specific ways Epic will use its Azure OpenAI Service, which provides API access to OpenAI's large language models (LLMs), such as GPT-3 and GPT-4. In layperson's terms, it means that companies can hire Microsoft to provide generative AI services for them using Microsoft's Azure cloud platform. The first use of GPT-4 comes in the form of allowing doctors and health care workers to automatically draft message responses to patients. The press release quotes Chero Goswami, chief information officer at UW Health in Wisconsin, as saying, "Integrating generative AI into some of our daily workflows will increase productivity for many of our providers, allowing them to focus on the clinical duties that truly require their attention." The second use will bring natural language queries and "data analysis" to SlicerDicer, which is Epic's data-exploration tool that allows searches across large numbers of patients to identify trends that could be useful for making new discoveries or for financial reasons. According to Microsoft, that will help "clinical leaders explore data in a conversational and intuitive way." Imagine talking to a chatbot similar to ChatGPT and asking it questions about trends in patient medical records, and you might get the picture.
Dr. Margaret Mitchell, chief ethics scientist at Hugging Face, is concerned about GPT-4's ability to make up information that isn't represented in its data set. Another concern is the potential bias in GPT-4 that might discriminate against certain patients based on gender, race, age, or other factors.

"Combined with the well-known problem of automation bias, where even experts will believe things that are incorrect if they're generated automatically by a system, this work will foreseeably generate false information," says Mitchell. "In the clinical setting, this can mean the difference between life and death."
Security

LockBit Ransomware Samples For Apple Macs Hint At New Risks For MacOS Users (wired.com) 20

An anonymous reader writes: Security researchers are examining newly discovered Mac ransomware samples from the notorious gang LockBit, marking the first known example of a prominent ransomware group toying with macOS versions of its malware. Spotted by MalwareHunterTeam, the samples of ransomware encryptors seem to have first cropped up in the malware analysis repository VirusTotal in November and December 2022, but went unnoticed until yesterday. LockBit seems to have created both a version of the encryptor targeting newer Macs running Apple processors and older Macs that ran on Apple's PowerPC chips.

Researchers say the LockBit Mac ransomware appears to be more of a first foray than anything that's fully functional and ready to be used. But the tinkering could indicate future plans, especially given that more businesses and institutions have been incorporating Macs, which could make it more appealing for ransomware attackers to invest time and resources so they can target Apple computers. "It's unsurprising but concerning that a large and successful ransomware group has now set their sights on macOS," says longtime Mac security researcher and Objective-See Foundation founder Patrick Wardle. "It would be naive to assume that LockBit won't improve and iterate on this ransomware, potentially creating a more effective and destructive version."

For now, Wardle notes that LockBit's macOS encryptors seem to be in a very early phase and still have fundamental development issues like crashing on launch. And to create truly effective attack tools, LockBit will need to figure out how to circumvent macOS protections, including validity checks that Apple has added in recent years for running new software on Macs. "In some sense, Apple is ahead of the threat, as recent versions of macOS ship with a myriad of built-in security mechanisms aimed to directly thwart, or at least reduce the impact of, ransomware attacks," Wardle says. "However, well-funded ransomware groups will continue to evolve their malicious creations."

Chrome

Google Releases Emergency Chrome Security Update (hothardware.com) 29

"Earlier this week, Google released an emergency security update for the Chrome browser due to a vulnerability that is being actively exploited in the wild," reports Hot Hardware: On Friday, Google highlighted CVE-2023-2033, reported by Clément Lecigne of Google's own Threat Analysis Group (TAG). This vulnerability is a 'type confusion' bug in the JavaScript engine for Chromium browsers useing the V8 Javascript engine. In short, type confusion is a bug that allows memory to be accessed with the wrong type, allowing for the reading or writing of memory out of bounds. The CVE page says that an attacker could create an HTML page that allows the exploitation of heap corruption.

While there is no Common Vulnerability Scoring System (CVSS) score attached to the vulnerability yet, Google is tracking this as a "high" severity issue. This is likely due in part to the fact that "Google is aware that an exploit for CVE-2023-2033 exists in the wild."

The article notes that Chrome updates are generally done automatically, but you can also check for updates by clicking Chrome's three-dots menu in the top-right corner, then "Help" and "About Chrome."
Social Networks

Leaked Documents Show Russians Boasted Just 1% of Fake Social Profiles are Detected (msn.com) 69

"The Russian government has become far more successful at manipulating social media and search engine rankings than previously known," reports the Washington Post, "boosting lies about Ukraine's military and the side effects of vaccines with hundreds of thousands of fake online accounts, according to documents recently leaked on the chat app Discord.

"The Russian operators of those accounts boast that they are detected by social networks only about 1 percent of the time, one document says." That claim, described here for the first time, drew alarm from former government officials and experts inside and outside social media companies contacted for this article. "Google and Meta and others are trying to stop this, and Russia is trying to get better. The figure that you are citing suggests that Russia is winning," said Thomas Rid, a disinformation scholar and professor at Johns Hopkins University's School of Advanced International Studies. He added that the 1 percent claim was likely exaggerated or misleading.

The undated analysis of Russia's effectiveness at boosting propaganda on Twitter, YouTube, TikTok, Telegram and other social media platforms cites activity in late 2022 and was apparently presented to U.S. military leaders in recent months. It is part of a trove of documents circulated in a Discord chatroom and obtained by The Washington Post. Air National Guard technician Jack Teixeira was charged Friday with taking and transmitting the classified papers, charges for which he faces 15 years in prison...

Many of the 10 current and former intelligence and tech safety specialists interviewed for this article cautioned that the Russian agency whose claims helped form the basis for the leaked document may have exaggerated its success rate.

The leaked document was apparently prepared by the Joint Chiefs of Staff, U.S. Cyber Command and Europe Command, which directs American military activities in Europe. "It refers to signals intelligence, which includes eavesdropping, but does not cite sources for its conclusions," the Post reports, describing the document as offering "a rare candid assessment by U.S. intelligence of Russian disinformation operations."

The assessment concludes that foreign bots "view, 'like,' subscribe and repost content and manipulate view counts to move content up in search results and recommendation lists." And the document says a Russian center's disinformation network — working directly for Russia's presidential administration — was still working on improvements as recently as late 2022 and expected to improve its ability to "promote pro-Russian narratives abroad." After Russia's 2016 efforts to interfere in the U.S. presidential election, social media companies stepped up their attempts to verify users, including through phone numbers. Russia responded, in at least one case, by buying SIM cards in bulk, which worked until companies spotted the pattern, employees said. The Russians have now turned to front companies that can acquire less detectable phone numbers, the document says.

A separate top-secret document from the same Discord trove summarized six specific influence campaigns that were operational or planned for later this year by a new Russian organization, the Center for Special Operations in Cyberspace. The new group is mainly targeting Ukraine's regional allies, that document said. Those campaigns included one designed to spread the idea that U.S. officials were hiding vaccine side effects, intended to stoke divisions in the West.

Medicine

Study Reveals Cancer's 'Infinite' Ability To Evolve (bbc.com) 45

An unprecedented analysis of how cancers grow has revealed an "almost infinite" ability of tumors to evolve and survive, say scientists. The BBC reports: The results of tracking lung cancers for nine years left the research team "surprised" and "in awe" at the formidable force they were up against. They have concluded we need more focus on prevention, with a "universal" cure unlikely any time soon. The study -- entitled TracerX -- provides the most in-depth analysis of how cancers evolve and what causes them to spread. More than 400 people -- treated at 13 hospitals in the UK -- had biopsies taken from different parts of their lung cancer as the disease progressed.

The evolutionary analysis has been published across seven separate studies in the journals Nature and Nature Medicine. The research showed:

- Highly aggressive cells in the initial tumor are the ones that ultimately end up spreading around the body
- Tumors showing higher levels of genetic "chaos" were more likely to relapse after surgery to other parts of the body
- Analyzing blood for fragments of tumor DNA meant signs of it returning could be spotted up to 200 days before appearing on a CT scan
- The cellular machinery that reads the instructions in our DNA can become corrupted in cancerous cells making them more aggressive.
"I don't think we're going to be able to come up with universal cures," said Prof Charles Swanton, from the Francis Crick Institute and University College London. "If we want to make the biggest impact we need to focus on prevention, early detection and early detection of relapse."

Last week, Dr Paul Burton, the chief medical officer of pharmaceutical company Moderna, said he believes the firm will be able to offer vaccines for cancer, cardiovascular and autoimmune diseases, and other conditions by 2030. The new analysis reported on by the BBC casts doubt on that timeline.

"I don't want to sound too depressing about this, but I think -- given the almost infinite possibilities in which a tumor can evolve, and the very large number of cells in a late-stage tumor, which could be several hundred billion cells -- then achieving cures in all patients with late-stage disease is a formidable task," said Swanton.
Earth

Shutting Down Nuclear Power Could Increase Air Pollution, Finds MIT Study 155

If reactors are retired, polluting energy sources that fill the gap could cause more than 5,000 premature deaths, researchers estimate. The findings appear in the journal Nature Energy. MIT News reports: They lay out a scenario in which every nuclear power plant in the country has shut down, and consider how other sources such as coal, natural gas, and renewable energy would fill the resulting energy needs throughout an entire year. Their analysis reveals that indeed, air pollution would increase, as coal, gas, and oil sources ramp up to compensate for nuclear power's absence. This in itself may not be surprising, but the team has put numbers to the prediction, estimating that the increase in air pollution would have serious health effects, resulting in an additional 5,200 pollution-related deaths over a single year.

If, however, more renewable energy sources become available to supply the energy grid, as they are expected to by the year 2030, air pollution would be curtailed, though not entirely. The team found that even under this heartier renewable scenario, there is still a slight increase in air pollution in some parts of the country, resulting in a total of 260 pollution-related deaths over one year. When they looked at the populations directly affected by the increased pollution, they found that Black or African American communities -- a disproportionate number of whom live near fossil-fuel plants -- experienced the greatest exposure.
"They also calculated that more people are also likely to die prematurely due to climate impacts from the increase in carbon dioxide emissions, as the grid compensates for nuclear power's absence," adds the report. "The climate-related effects from this additional influx of carbon dioxide could lead to 160,000 additional deaths over the next century."

Lead author Lyssa Freese, a graduate student in MIT's Department of Earth, Atmospheric and Planetary Sciences (EAPS), said: "We need to be thoughtful about how we're retiring nuclear power plants if we are trying to think about them as part of an energy system. Shutting down something that doesn't have direct emissions itself can still lead to increases in emissions, because the grid system will respond."
Space

NASA Reveals What Made an Entire Starlink Satellite Fleet Go Down (inverse.com) 47

schwit1 shares a report from Inverse: On March 23, sky observers marveled at a gorgeous display of northern and southern lights. It was a reminder that when our Sun gets active, it can spark a phenomenon called "space weather." Aurorae are among the most benign effects of this phenomenon. At the other end of the space weather spectrum are solar storms that can knock out satellites. The folks at Starlink found that out the hard way in February 2022. On January 29 that year, the Sun belched out a class M 1.1 flare and related coronal mass ejection. Material from the Sun traveled out on the solar wind and arrived at Earth a few days later. On February 3, Starlink launched a group of 49 satellites to an altitude only 130 miles above Earth's surface. They didn't last long, and now solar physicists know why.

A group of researchers from NASA Goddard Space Flight Center and the Catholic University of America took a closer look at the specifics of that storm. Their analysis identified a mass of plasma that impacted our planet's magnetosphere. The actual event was a halo coronal mass ejection from an active region in the northeast quadrant of the Sun. The material traveled out at around 690 kilometers per second as a shock-driving magnetic cloud. Think of it as a long ropy mass of material writhing its way through space. As it traveled, it expanded and at solar-facing satellites -- including STEREO-A, which took a direct hit from it -- made observations. Eventually, the cloud smacked into Earth's magnetosphere creating a geomagnetic storm.

The atmosphere thickened enough that it affected the newly launched Starlink stations. They started to experience atmospheric drag, which caused them to deorbit and burn up on the way down. It was an expensive lesson in space weather and provided people on Earth with a great view of what happens when satellites fall back to Earth. It was also that could have been avoided if they'd delayed their launch to account for the ongoing threat.

User Journal

Journal Journal: The non-scalability of people 3

\section{Proposed Research Methodology}
Connecting communications geography to election results occurs within a
methodological context. Ballots are cast by individual voters, but the radio station format is a spatial footprint.

Thus, a framework seems helpful both to guide the choices made in conducting the research and to make explicit the biases creeping into those choices.

Slashdot Top Deals