Biotech

Biotechs Turn to Digital Coins, Crypto to Boost Stock Prices (yahoo.com) 24

Struggling small biotech firms are pivoting into cryptocurrencies, rebranding as "crypto treasuries" or stockpiling digital assets like Ether and Litecoin as a last-ditch effort to boost share prices amid stalled funding and weak drug pipelines. Bloomberg reports: Shares of 180 Life Sciences Corp., now doing business as ETHZilla, tripled after the Peter Thiel-backed company said it had accumulated Ether tokens worth over $350 million. Less than two weeks later, the stock's gains have been erased. In July, Sonnet BioTherapeutics Holdings soared 243% in one volatile session on plans to transform into a public crypto treasury while MEI Pharma Inc. initially doubled on plans to sell shares to fund a Litecoin treasury.

Such about-faces are a tried-and-true formula for small firms when funds are low and shares are under pressure. For drugmakers it can be a sudden shift to chase after trendy new treatment targets, still other companies rebrand with buzzwords like artificial intelligence to juice returns. Now some biotech executives are using digital coins to pump new life into flagging shares. So far in 2025, at least 10 biotechs have announced a pivot into digital assets. The announcements frequently spark frenzied, but short-lived, spikes in shares.
"If they're low on ideas, if they can't find relevance in drug development, they're going to try to justify their existence as management in another way," according to Mike Taylor, lead portfolio manager of the Simplify Health Care ETF. "You have a handful of companies trying to reinvent themselves into some other tangent. And, most, if not all won't work out."
Power

Flames, Smoke, Toxic Gas: The Danger of Battery Fires on Planes (cnn.com) 68

"Delta Air Lines Flight 1334 was flying from Atlanta to Fort Lauderdale last month when smoke and flames started pouring out of a backpack," reports CNN. "The pilots declared an emergency and diverted to Fort Meyers where the 191 people onboard safely evacuated."

The culprit was a passenger's personal lithium-ion battery pack, which had been tucked away in the carry-on bag. At the FAA's William J. Hughes Technical Center for Advanced Aerospace in Atlantic City, New Jersey, fire safety engineers research and demonstrate just how bad it can be. "Lithium batteries can go into what's called thermal runaway," Fire Safety Branch Manager Robert Ochs, explained. "All of a sudden, it'll start to short circuit ... It will get warmer and warmer and warmer until the structure of the battery itself fails. At that point, it can eject molten electrolyte and flames and smoke and toxic gas...."

These thermal runaways are difficult to fight. The FAA recommends flight attendants first use a halon fire extinguisher, which is standard equipment on planes, but that alone may not be enough. In the test performed for CNN, the flames sprung back up in just moments... "Adding the water, as much water from the galley cart, non-alcoholic liquids, everything that they can get to just start pouring on that device." The problems are not new, but more batteries are being carried onto planes than ever before. Safety organization UL Standards and Engagement says today an average passenger flies with four devices powered by lithium-ion batteries. "The incidents of fire are rare, but they are increasing. We're seeing as many as two per week, either on planes or within airports," Jeff Marootian, the president and CEO of the organization, told CNN...

[T]he latest federal data shows external battery packs are the top cause of incidents, and as a result the FAA has banned them from checked baggage where they are harder to extinguish. But despite all of the warnings, UL Standards and Engagement says two in five passengers still say they check them.

Facebook

Whistleblower Alleges Meta Artificially Boosted Shops Ads Performance (adweek.com) 8

An anonymous reader quotes a report from Adweek: Meta wanted advertisers to believe its ecommerce ad product, Shops ads, was outperforming the competition, per a whistleblower complaint filed in a U.K. court. The former employee alleges the social media giant artificially inflated return on ad spend (ROAS) by counting shipping fees as revenue, subsidizing bids in ad auctions, and applying undisclosed discounts. The complaint, viewed by ADWEEK, was filed with the London Central Employment Tribunal on Wednesday (August 20) by Samujjal Purkayastha, a former product manager on Meta's Shops ads team. The document claims Meta artificially inflated performance metrics to push brands toward its fledgling ecommerce ad product.

The company's motivation, the complaint says, was in part to combat Apple's 2021 privacy changes that cut the troves of iOS tracking information that had long powered Meta's ad machine. Meta's former chief financial officer (CFO), David Wehner, said the changes would cost "on the order of $10 billion" in losses during the company's Q4 2021 earnings call. User purchases on Facebook or Instagram Shops pages would provide more first-party data, however. Purkayastha, who joined Meta (then Facebook) in 2020 as a product manager on the Facebook Artificial Intelligence Applied Research team, was reassigned to the Shops Ads team in March 2022 and remained at the company until Feb. 19, 2025, when he was terminated.

He alleged that during internal reviews in early 2024, Meta data scientists found the return on ad spend (ROAS) from Shops ads had been inflated between 17% and 19%. This discrepancy stemmed from Meta counting shipping fees and taxes as part of a sale, even though that money never went to merchants, he alleged. The company's other ad products exclude those figures, in line with competitors like Google, the complaint reads. Without including the fees and taxes, Shops ads performed no better than Meta's traditional ads, Purkayastha claimed. "This was significant," the complaint reads. "In addition to the ROAS performance metric being overstated by nearly a fifth, it meant that, rather than having exceeded our primary target, the Shops Ads team had in fact missed it once the figure was reduced to take account of the artificial inflation."
Purkayastha raised these concerns with senior leadership in multiple meetings between 2022 and 2024, and is now seeking interim relief through his employment tribunal filing to have his former position reinstated.

A Meta spokesperson told ADWEEK the company is "actively defending these proceedings," adding that "allegations related to the integrity of our advertising practices are without merit and we have full confidence in our performance review processes."
Transportation

Global EV Sales Up 27% In 2025 (cleantechnica.com) 144

An anonymous reader quotes a report from CleanTechnica: In a sharp rebuke to the anti-electrification agenda in the US, global EV sales are up 27% over last year, with some legacy automakers -- but not all -- indicating the potential for a successful transition to electric mobility. CleanTechnica has spilled much ink on the pace of plug-in hybrid and full EV adoption, and the latest report from the UK firm Rho Motion (a branch of the price reporting agency Benchmark Mineral Intelligence) adds some fresh insights.

Covering the first seven months of 2025, earlier today Rho Motion totaled up more than 10.7 million EVs sold for a "robust" 27% increase over the same period last year, with China leading the pack by a wide margin. Europe also contributed to the overall robustness. Germany and the UK racked up impressive gains and Italy also turning in a mentionable performance. "The European EV market has grown by 30% year-to-date, with strong momentum in both battery electric vehicles (BEVs) and plug-in hybrids (PHEVs), up 30% and 32% respectively," Rho Motion summarized.

"In contrast, North America's growth has been muted so far in 2025, with the US facing policy headwinds and Canada seeing a slowdown," Rho Motion Data Manager Charles Lester observed. "We expect a short-term lift in US demand ahead of the IRA consumer tax credit deadline in September, followed by a likely dip," Lester added. That short-term lift won't help North America catch up to Europe [...]
Rho Motion's EV sales snapshot shows the recent gains:

Global: 10.7 million, +27%
China: 6.5 million, +29%
Europe: 2.3 million, +30%
North America: 1.0 million, +2%
Rest of World: 0.9 million, +42%
KDE

KDE's 'Other' Distro - KDE Linux - Now Available To Download In Pre-Alpha (theregister.com) 28

"KDE Linux is an all-new desktop Linux distro being developed as a showcase for the KDE desktop project," reports The Register.

"The project is still in a pre-alpha testing stage, but recently went public on the KDE website. Versions are available to download and try out." KDE Linux is an entirely new and experimental OS. There's lots of room for confusion here, because KDE already has a demonstration distro, KDE Neon. KDE Linux is a totally separate and far more ambitious project. In terms of its underlying design, it's intended to be a super-stable end-user distro. This is in contrast with Neon, which is an experimental showcase for the latest and greatest code. Neon isn't meant to be anyone's daily driver...

Several aspects of [KDE Linux's] design are clearly influenced by Valve's SteamOS 3. Like SteamOS 3, KDE Linux is an immutable distro, with dual read-only Btrfs-format root partitions that update each other alternately... KDE Linux isn't based on Ubuntu or Debian. It's built using Arch Linux, but it's different enough that it doesn't really count as an Arch variant. As an immutable distro, there's no package manager, for instance, so the user can't install Arch packages... You can only install sandboxed apps that go in their own corner of the OS, and here the plan is that users will install Flatpak (and possibly Snap, "if it's not too hard and the UX is OK") packages using the KDE Discover app store. Aside from them, you won't be able to update individual packages. OS updates come as a whole new system image, with all components updated at once.

"This is intended to one day be a bulletproof daily driver, not a demo system, which is the intended purpose of KDE Neon..." the article concludes.

And while their test of current work-in-progress/test version kept crashing, "the promise is considerable, and this could turn out to be one of the most radical end-user distros out there."

Thanks to Slashdot reader king*jojo for sharing the news.
NASA

Mistakenly Sold NASA Command Trailer Goes On Sale (theregister.com) 28

alternative_right quotes a report from The Register: Space fans looking to camp out in style have a chance to pick up an Airstream trailer that once served as the Convoy Command Vehicle for NASA's Space Shuttle operations at Edwards Air Force Base -- if they have a couple hundred thousand to spare, that is. "This is the NASA 025 Command Vehicle," current owner Jonathan Kitzen says of the once-silver, now paint-daubed and otherwise unassuming Airstream trailer. "NASA 025 was designed to land crewed missions at Edwards Air Force Base. [Airstream] informed me that this was, in their, words, 'the only NASA Airstream ever sold,' and the others [001-024] were all crushed or in museums. The sister crew vehicle (a 28-ft with one rear axle) is sitting at Kennedy museum [the Kennedy Space Center Visitor Complex]. All the rest are gone, except for this one."

Kitzen picked up the vehicle in 2022 up after spotting it on a government surplus auction site, where it had been listed with few details and at a very low starting price. As for how the rare vehicle ended up for sale in the first place, Kitzen says he was told it was a mistake. "Apparently there was some miscommunication when the vehicle was decommissioned," he claims in the sale listing. "It should have been offered to museums but the sales team did not know what it was. They were told it was just a 'NASA vehicle,' they did not know it had any special status or history. To the sellers they thought it was just a van that could have been for moving laundry around the base. It was an accidental (yet valid) sale.

"When I pulled up to Vandenberg Air Force Base after getting my NASA contractor badge I was greeted by the senior asset manager," Kitzen continues. "'We didn't know what we were selling!' were the first words out of her mouth. 'We didn't advertise it or offer it up to museums, the phone has exploded. Nobody told us what it was!'" [...] The listing on vehicle sale site Hemmings.com has an asking price of $199,000, though with no offers yet submitted. A listing on eBay with a $50,000 minimum bid and $290,000 buy-it-now price ended in May with no takers.

Power

Four Radioactive Wasp Nests Found Near US Nuclear Storage Site (nbcnews.com) 76

The Washington Post reports: In early July, a wasp nest with a radiation level 10 times what is allowed by federal regulations was found inside the grounds of a sprawling Cold War-era nuclear site in South Carolina that today partly serves as a storage area for radioactive liquid waste. Federal officials said Friday that at least three more contaminated wasp nests were found within the 310-square-mile Savannah River Site, which encompasses an area more than four times the size of the District of Columbia...

[F]ederal authorities said that the discoveries were not cause for alarm and experts noted that the discovery of radioactivity in wildlife near nuclear facilities did not necessarily indicate the likelihood of a major leak... In a statement sent to reporters, Edwin Deshong, manager of the Savannah River Site's Office of Environmental Management, said the wasp nests had "very low levels of radioactive contamination" and did not pose health risks to the site's workers, nearby residents or the environment... The Savannah River Site's 43 active underground waste tanks have more than 34 million gallons of radioactive liquid waste. The oldest tanks have previously "developed small hairline cracks" that led to small-volume leaks, the Savannah River Site says on its website.

A July report after the first nest was found said there was "no impact" from the contaminated nest, the Post reports, with the nest's high radioactivity level due to "on-site legacy radioactive contamination" rather than "a loss of contamination control." More from the Associated Press: The tank farm is well inside the boundaries of the site and wasps generally fly just a few hundred yards from their nests, so there is no danger they are outside the facility, according to a statement from Savannah River Mission Completion which now oversees the site. If there had been wasps found, they would have significantly lower levels of radiation than their nests, according to the statement which was given to the Aiken Standard.
Thanks to long-time Slashdot reader sandbagger for sharing the news.
Security

In Search of Riches, Hackers Plant 4G-Enabled Raspberry Pi In Bank Network (arstechnica.com) 54

Hackers from the group UNC2891 attempted a high-tech bank heist by physically planting a 4G-enabled Raspberry Pi inside a bank's ATM network, using advanced malware hidden with a never-before-seen Linux bind mount technique to evade detection. "The trick allowed the malware to operate similarly to a rootkit, which uses advanced techniques to hide itself from the operating system it runs on," reports Ars Technica. Although the plot was uncovered before the hackers could hijack the ATM switching server, the tactic showcased a new level of sophistication in cyber-physical attacks on financial institutions. The security firm Group-IB, which detailed the attack in a report on Wednesday, didn't say where the compromised switching equipment was located or how attackers managed to plant the Raspberry Pi. Ars Technica reports: To maintain persistence, UNC2891 also compromised a mail server because it had constant Internet connectivity. The Raspberry Pi and the mail server backdoor would then communicate by using the bank's monitoring server as an intermediary. The monitoring server was chosen because it had access to almost every server within the data center. As Group-IB was initially investigating the bank's network, researchers noticed some unusual behaviors on the monitoring server, including an outbound beaconing signal every 10 minutes and repeated connection attempts to an unknown device. The researchers then used a forensic tool to analyze the communications. The tool identified the endpoints as a Raspberry Pi and the mail server but was unable to identify the process names responsible for the beaconing.

The researchers then captured the system memory as the beacons were sent. The review identified the process as lightdm, a process associated with an open source LightDM display manager. The process appeared to be legitimate, but the researchers found it suspicious because the LightDM binary was installed in an unusual location. After further investigation, the researchers discovered that the processes of the custom backdoor had been deliberately disguised in an attempt to throw researchers off the scent.

[Group-IB Senior Digital Forensics and Incident Response Specialist Nam Le Phuong] explained: "The backdoor process is deliberately obfuscated by the threat actor through the use of process masquerading. Specifically, the binary is named "lightdm", mimicking the legitimate LightDM display manager commonly found on Linux systems. To enhance the deception, the process is executed with command-line arguments resembling legitimate parameters -- for example, lightdm -- session child 11 19 -- in an effort to evade detection and mislead forensic analysts during post-compromise investigations. These backdoors were actively establishing connections to both the Raspberry Pi and the internal Mail Server."

IT

Dropbox Pulls the Plug on Password Manager (theregister.com) 35

Dropbox will shut down its password manager service by October 28, giving users until then to extract their data before permanent deletion. The discontinuation occurs in phases: Dropbox Passwords becomes view-only on August 28, the mobile app stops working September 11, and complete shutdown follows October 28. The company cited focusing on core product features as the reason for dropping the service, which launched in 2020 for paid users and expanded to all users in 2021.
Businesses

Only 27% of Managers Worldwide Feel Engaged at Work (msn.com) 48

Manager engagement has plummeted to its lowest level since tracking began, with only 27% of managers globally reporting they feel involved and enthusiastic about their work, according to Gallup's annual State of the Global Workplace report. The 3-percentage-point decline from 2023 marks an unprecedented drop in manager satisfaction.

Overall employee engagement fell to 21% in 2024 from 23% the previous year, representing only the second decline in 15 years of data collection. The last drop occurred during 2020 COVID lockdowns. Female managers experienced the steepest decline at 7 percentage points, while younger managers fell 5 points. Managers now oversee nearly three times as many employees as in 2017, yet only 44% have received managerial training.
Operating Systems

Linux 6.16 Brings Faster File Systems, Improved Confidential Memory Support, and More Rust Support (zdnet.com) 50

ZDNet's Steven Vaughan-Nichols shares his list of "what's new and improved" in the latest Linux 6.16 kernel. An anonymous reader shares an excerpt from the report: First, the Rust language is continuing to become more well-integrated into the kernel. At the top of my list is that the kernel now boasts Rust bindings for the driver core and PCI device subsystem. This approach will make it easier to add new Rust-based hardware drivers to Linux. Additionally, new Rust abstractions have been integrated into the Direct Rendering Manager (DRM), particularly for ioctl handling, file/GEM memory management, and driver/device infrastructure for major GPU vendors, such as AMD, Nvidia, and Intel. These changes should reduce vulnerabilities and optimize graphics performance. This will make gamers and AI/ML developers happier.

Linux 6.16 also brings general improvements to Rust crate support. Crate is Rust's packaging format. This will make it easier to build, maintain, and integrate Rust kernel modules into the kernel. For those of you who still love C, don't worry. The vast majority of kernel code remains in C, and Rust is unlikely to replace C soon. In a decade, we may be telling another story. Beyond Rust, this latest release also comes with several major file system improvements. For starters, the XFS filesystem now supports large atomic writes. This capability means that large multi-block write operations are 'atomic,' meaning all blocks are updated or none. This enhances data integrity and prevents data write errors. This move is significant for companies that use XFS for databases and large-scale storage.

Perhaps the most popular Linux file system, Ext4, is also getting many improvements. These boosts include faster commit paths, large folio support, and atomic multi-fsblock writes for bigalloc filesystems. What these improvements mean, if you're not a file-system nerd, is that we should see speedups of up to 37% for sequential I/O workloads. If your Linux laptop doubles as a music player, another nice new feature is that you can now stream your audio over USB even while the rest of your system is asleep. That capability's been available in Android for a while, but now it's part of mainline Linux.

If security is a top priority for you, the 6.16 kernel now supports Intel Trusted Execution Technology (TXT) and Intel Trusted Domain Extensions (TDX). This addition, along with Linux's improved support for AMD Secure Encrypted Virtualization and Secure Memory Encryption (SEV-SNP), enables you to encrypt your software's memory in what's known as confidential computing. This feature improves cloud security by encrypting a user's virtual machine memory, meaning someone who cracks a cloud can't access your data.
Linux 6.16 also delivers several chip-related upgrades. It introduces support for Intel's Advanced Performance Extensions (APX), doubling x86 general-purpose registers from 16 to 32 and boosting performance on next-gen CPUs like Lunar Lake and Granite Rapids Xeon. Additionally, the new CONFIG_X86_NATIVE_CPU option allows users to build processor-optimized kernels for greater efficiency.

Support for Nvidia's AI-focused Blackwell GPUs has also been improved, and updates to TCP/IP with DMABUF help offload networking tasks to GPUs and accelerators. While these changes may go unnoticed by everyday users, high-performance systems will see gains and OpenVPN users may finally experience speeds that challenge WireGuard.
EU

To Fight Climate Change, Norway Wants to Become Europe's Carbon Dump (msn.com) 69

Liquefied CO2 will be transported by ship to "the world's first carbon shipping port," reports the Washington Post — an island in the North Sea where it will be "buried in a layer of spongy rock a mile and a half beneath the seabed."

Norway's government is covering 80% of the $1 billion first phase, with another $714 million from three fossil fuel companies toward an ongoing expansion (with an additional $150 million E.U. subsidy). As Europe's top oil and gas producer, Norway is using its fossil fuel income to see if they can make "carbon dumping" work. The world's first carbon shipment arrived this summer, carrying 7,500 metric tons of liquefied CO2 from a Norwegian cement factory that otherwise would have gone into the atmosphere... If all goes as planned, the project's backers — Shell, Equinor and TotalEnergies, along with Norway — say their facility could pump 5 million metric tons of carbon dioxide underground each year, or about a tenth of Norway's annual emissions...

[At the Heidelberg Materials cement factory in Brevik, Norway], when hot CO2-laden air comes rushing out of the cement kilns, the plant uses seawater from the neighboring fjord to cool it down. The cool air goes into a chamber where it gets sprayed with amine, a chemical that latches onto CO2 at low temperatures. The amine mist settles to the bottom, dragging carbon dioxide down with it. The rest of the air floats out of the smokestack with about 85 percent less CO2 in it, according to project manager Anders Pettersen. Later, Heidelberg Materials uses waste heat from the kilns to break the chemical bonds, so that the amine releases the carbon dioxide. The pure CO2 then goes into a compressor that resembles a giant steel heart, where it gets denser and colder until it finally becomes liquid. That liquid CO2 remains in storage tanks until a ship comes to carry it away. At best, operators expect this system to capture half the plant's CO2 emissions: 400,000 metric tons per year, or the equivalent of about 93,000 cars on the road...

[T]hree other companies are lined up to follow: Ørsted, which will send CO2 from two bioenergy plants in Denmark; Yara, which will send carbon from a Dutch fertilizer factory; and Stockholm Exergi, which will capture carbon from a Swedish bioenergy plant that burns wood waste. All of these projects have gotten significant subsidies from national governments and the European Union — essentially de-risking the experiment for the companies. Experts say the costs and headaches of installing and running carbon-capture equipment may start to make more financial sense as European carbon rules get stricter and the cost of emitting a ton of carbon dioxide goes up. Still, they say, it's hard to imagine many companies deciding to invest in carbon capture without serious subsidies...

The first shipments are being transported by Northern Pioneer, the world's biggest carbon dioxide tanker ship, built specifically for this project. The 430-foot ship can hold 7,500 metric tons of CO2 in tanks below deck. Those tanks keep it in a liquid state by cooling it to minus-15 degrees Fahrenheit and squeezing it with the same pressure the outside of a submarine would feel 500 feet below the waves. While that may sound extreme, consider that the liquid natural gas the ship uses for fuel has to be stored at minus-260 degrees. "CO2 isn't difficult to make it into a liquid," said Sally Benson, professor of energy science and engineering at Stanford University. Northern Pioneer is designed to emit about a third less carbon dioxide than a regular ship — key for a project that aims to eliminate carbon emissions. The ship burns natural gas, which emits less CO2 than marine diesel produces (though gas extraction is associated with methane leaks). The vessel uses a rotor sail to capture wind power. And it blows a constant stream of air bubbles to reduce friction as the hull cuts through the water, allowing it to burn less fuel. For every 100 tons of CO2 that Northern Lights pumps underground, it expects to emit three tons of CO2 into the atmosphere, mainly by burning fuel for shipping.

Eventually the carbon flows into a pipeline "that plunges through the North Sea and into the rocky layers below it — an engineering feat that's a bit like drilling for oil in reverse..." according to the article.

"Over the centuries, it should chemically react with the rock, eventually being locked away in minerals."
AI

Google Gemini Deletes User's Files, Then Just Admits 'I Have Failed You Completely and Catastrophically' (mashable.com) 59

An anonymous reader shared this report from Mashable: Google Gemini's coding agent hallucinated while completing a task and then deleted a bunch of code, a GitHub user claims.

The frustrated vibe coder is Anuraag Gupta, who goes by anuraag2601 on GitHub. He shared a recent experience where things went very wrong while using Gemini CLI (command line interface), an open-source coding agent. In his GitHub post, Gupta, who is a product lead at cybersecurity firm Cyware, clarified he's not a developer, but a "curious product manager experimenting with vibe coding...." For Gupta, the vibe coding mishap started with a simple request to move all the files from his Claude coding experiments to a new folder called "anuraag_xyz project." However, when Gupta checked his desktop for the new folder, he said he couldn't find it.

Gupta reported that after multiple failed search attempts, Gemini admitted the files were gone:

"I have failed you completely and catastrophically.

"My review of the commands confirms my gross incompetence. The mkdir command to create the destination folder likely failed silently... I cannot find your files. I have lost your data.

"This is an unacceptable, irreversible failure."

Only the last file survived, the blog post explains, since every moved filed ended up overwriting the previous file with the exact same name — the name of the path to the non-existent folder.

"Google did not respond to Mashable's request for comment by the time of publication."
AI

Two Major AI Coding Tools Wiped Out User Data After Making Cascading Mistakes (arstechnica.com) 151

An anonymous reader quotes a report from Ars Technica: Two recent incidents involving AI coding assistants put a spotlight on risks in the emerging field of "vibe coding" -- using natural language to generate and execute code through AI models without paying close attention to how the code works under the hood. In one case, Google's Gemini CLI destroyed user files while attempting to reorganize them. In another, Replit's AI coding service deleted a production database despite explicit instructions not to modify code. The Gemini CLI incident unfolded when a product manager experimenting with Google's command-line tool watched the AI model execute file operations that destroyed data while attempting to reorganize folders. The destruction occurred through a series of move commands targeting a directory that never existed. "I have failed you completely and catastrophically," Gemini CLI output stated. "My review of the commands confirms my gross incompetence."

The core issue appears to be what researchers call "confabulation" or "hallucination" -- when AI models generate plausible-sounding but false information. In these cases, both models confabulated successful operations and built subsequent actions on those false premises. However, the two incidents manifested this problem in distinctly different ways. [...] The user in the Gemini CLI incident, who goes by "anuraag" online and identified themselves as a product manager experimenting with vibe coding, asked Gemini to perform what seemed like a simple task: rename a folder and reorganize some files. Instead, the AI model incorrectly interpreted the structure of the file system and proceeded to execute commands based on that flawed analysis. [...] When you move a file to a non-existent directory in Windows, it renames the file to the destination name instead of moving it. Each subsequent move command executed by the AI model overwrote the previous file, ultimately destroying the data. [...]

The Gemini CLI failure happened just days after a similar incident with Replit, an AI coding service that allows users to create software using natural language prompts. According to The Register, SaaStr founder Jason Lemkin reported that Replit's AI model deleted his production database despite explicit instructions not to change any code without permission. Lemkin had spent several days building a prototype with Replit, accumulating over $600 in charges beyond his monthly subscription. "I spent the other [day] deep in vibe coding on Replit for the first time -- and I built a prototype in just a few hours that was pretty, pretty cool," Lemkin wrote in a July 12 blog post. But unlike the Gemini incident where the AI model confabulated phantom directories, Replit's failures took a different form. According to Lemkin, the AI began fabricating data to hide its errors. His initial enthusiasm deteriorated when Replit generated incorrect outputs and produced fake data and false test results instead of proper error messages. "It kept covering up bugs and issues by creating fake data, fake reports, and worse of all, lying about our unit test," Lemkin wrote. In a video posted to LinkedIn, Lemkin detailed how Replit created a database filled with 4,000 fictional people.

The AI model also repeatedly violated explicit safety instructions. Lemkin had implemented a "code and action freeze" to prevent changes to production systems, but the AI model ignored these directives. The situation escalated when the Replit AI model deleted his database containing 1,206 executive records and data on nearly 1,200 companies. When prompted to rate the severity of its actions on a 100-point scale, Replit's output read: "Severity: 95/100. This is an extreme violation of trust and professional standards." When questioned about its actions, the AI agent admitted to "panicking in response to empty queries" and running unauthorized commands -- suggesting it may have deleted the database while attempting to "fix" what it perceived as a problem. Like Gemini CLI, Replit's system initially indicated it couldn't restore the deleted data -- information that proved incorrect when Lemkin discovered the rollback feature did work after all. "Replit assured me it's ... rollback did not support database rollbacks. It said it was impossible in this case, that it had destroyed all database versions. It turns out Replit was wrong, and the rollback did work. JFC," Lemkin wrote in an X post.

Medicine

Scientists Are Developing Artificial Blood That Could Save Lives In Emergencies (npr.org) 42

Scientists at the University of Maryland are developing ErythroMer, a freeze-dried artificial blood substitute made from hemoglobin encased in fat bubbles, designed to be shelf-stable for years and reconstituted with water in emergencies. With promising animal trial results and significant funding from the Department of Defense, the team aims to begin human testing within two years. NPR reports: "The No. 1 cause of preventable death on the battlefield is hemorrhage still today," says Col. Jeremy Pamplin, the project manager at the Defense Advanced Research Projects Agency. "That's a real problem for the military and for the civilian world." [Dr. Allan Doctor, a scientist at the University of Maryland working to develop the artificial blood substitute] is optimistic his team may be on the brink of solving that problem with ... ErythroMer. Doctor co-founded KaloCyte to develop the blood and serves on the board and as the firm's chief scientific officer.

"We've been able to successfully recapitulate all the functions of blood that are important for a resuscitation in a system that can be stored for years at ambient temperature and be used at the scene of an accident," he says. [...] Doctor's team has tested their artificial blood on hundreds of rabbits and so far it looks safe and effective. "It would change the way that we could take care of people who are bleeding outside of hospitals," Doctor says. "It'd be transformative." [...]

While the results so far seem like cause for optimism, Doctor says he still needs to prove to the Food and Drug Administration that his artificial blood would be safe and effective for people. But he hopes to start testing it in humans within two years. A Japanese team is already testing a similar synthetic blood in people. "I'm very hopeful," Doctor says.
While promising, some experts remain cautious, noting that past attempts at artificial blood ultimately proved unsafe. "I think it's a reasonable approach," says Tim Estep, a scientist at Chart Biotech Consulting who consults with companies developing artificial blood. "But because this field has been so challenging, the proof will be in the clinical trials," he adds. "While I'm overall optimistic, placing a bet on any one technology right now is overall difficult."
Microsoft

Microsoft Poaches Top Google DeepMind Staff in AI Talent War (ft.com) 26

Microsoft has recruited more than 20 AI employees from Google's DeepMind research division, the newest front in a talent war being waged by Silicon Valley's tech giants as they jostle to gain an edge in the nascent technology. From a report: Amar Subramanya, the former head of engineering for Google's Gemini chatbot, is the latest to move to Microsoft from its rival, according to a post on his LinkedIn profile on Tuesday. "The culture here is refreshingly low ego yet bursting with ambition," he wrote, confirming his appointment as corporate vice-president of AI.

Subramanya will join other DeepMind staff including engineering lead Sonal Gupta, software engineer Adam Sadovsky and product manager Tim Frank, according to people familiar with Microsoft's recruiting. The Seattle-based company has persuaded at least 24 staff to join in the past six months, they added.

Cloud

Xbox Cloud Games Will Soon Follow You Across Xbox, PC, and Windows Handhelds (theverge.com) 15

Microsoft is rolling out updates to the Xbox PC app and consoles that sync your cloud gaming history and progress across devices, making it easier to resume cloud-playable titles on PCs, handhelds, and other Xbox hardware. The Verge reports: Cloud-playable games are now starting to show inside play history or the library on the Xbox PC app. "This includes all cloud playable titles, even console exclusives spanning from the original Xbox to Xbox Series X|S, whether you own the title or access it through Game Pass," explains Lily Wang, product manager of Xbox experiences. Your recent games, including cloud ones, will soon follow you across devices -- complete with cloud-powered game saves. So if you played an Xbox game on your console that's not natively available on PC, it will still show up in your recent games list and be playable through Xbox Cloud Gaming on Windows.

Cloud-playable games on the Xbox PC app can be found from a new filter in the library section, and a new "play history" section will appear at the end of the "jump back in" list on the home screen of the Xbox PC app. "While the large tiles highlight games you've recently played on your current device, the play history tile shows games you've played across any Xbox device, making it easy to pick up where you left off," says Wang. This same play history section will appear on the main Xbox console interface, too -- which could mean we'll eventually see PC games listed here and playable through Xbox Cloud Gaming.

Security

'Tens of Thousands' of SharePoint Servers at Risk. Microsoft Issues No Patch (msn.com) 90

"Anybody who's got a hosted SharePoint server has got a problem," the senior VP of cybersecurity firm CrowdStrike told the Washington Post. "It's a significant vulnerability."

And it's led to a new "global attack on government agencies and businesses" in the last few days, according to the article, "breaching U.S. federal and state agencies, universities, energy companies and an Asian telecommunications company, according to state officials and private researchers..."

"Tens of thousands of such servers are at risk, experts said, and Microsoft has issued no patch for the flaw, leaving victims around the world scrambling to respond." (Microsoft says they are "working on" security updates "for supported versions of SharePoint 2019 and SharePoint 2016," offering various mitigation suggestions, and CISA has released their own recommendations.)

From the Washington Post's article Sunday: Microsoft has suggested that users make modifications to SharePoint server programs or simply unplug them from the internet to stanch the breach. Microsoft issued an alert to customers but declined to comment further... "We are seeing attempts to exploit thousands of SharePoint servers globally before a patch is available," said Pete Renals, a senior manager with Palo Alto Networks' Unit 42. "We have identified dozens of compromised organizations spanning both commercial and government sectors.''

With access to these servers, which often connect to Outlook email, Teams and other core services, a breach can lead to theft of sensitive data as well as password harvesting, Netherlands-based research company Eye Security noted. What's also alarming, researchers said, is that the hackers have gained access to keys that may allow them to regain entry even after a system is patched. "So pushing out a patch on Monday or Tuesday doesn't help anybody who's been compromised in the past 72 hours," said one researcher, who spoke on the condition of anonymity because a federal investigation is ongoing.

The breaches occurred after Microsoft fixed a security flaw this month. The attackers realized they could use a similar vulnerability, according to the Department of Homeland Security's Cybersecurity and Infrastructure Security Agency. CISA spokeswoman Marci McCarthy said the agency was alerted to the issue Friday by a cyber research firm and immediately contacted Microsoft... The nonprofit Center for Internet Security, which staffs an information-sharing group for state and local governments, notified about 100 organizations that they were vulnerable and potentially compromised, said Randy Rose, the organization's vice president. Those warned included public schools and universities. Others that were breached included a government agency in Spain, a local agency in Albuquerque and a university in Brazil, security researchers said.

But there's many more breaches, according to the article:
  • "Eye Security said it has tracked more than 50 breaches, including at an energy company in a large state and several European government agencies."
  • "At least two U.S. federal agencies have seen their servers breached, according to researchers."
  • "One state official in the eastern U.S. said the attackers had 'hijacked' a repository of documents provided to the public to help residents understand how their government works. The agency involved can no longer access the material..."

"It was not immediately clear who is behind the hacking of global reach or what its ultimate goal is. One private research company found the hackers targeting servers in China..."


Power

CoreWeave Data Center To Double City's Power Needs (yahoo.com) 30

An anonymous reader quotes a report from Bloomberg: CoreWeave is expanding a data center that is projected to double the electricity needs of a city near Dallas, another example of the strains that artificial intelligence workloads are placing on the US power supply. Local officials have grappled with how to handle the increased stress on the electricity grid from the project, according to a late 2024 presentation and emails seen by Bloomberg. The site is being developed by Core Scientific and will be used by OpenAI in Denton, Texas. Last week, CoreWeave announced it would acquire Core Scientific for about $9 billion, in part, to gain direct control of its data centers aimed at supplying AI work.

Denton, about 50 miles northwest of Dallas, has almost doubled its population in the last 25 years to about 166,000 residents. To meet the spike in AI-related power demand, the city is passing on any extra costs to the data center operator and constructing additional grid infrastructure, Antonio Puente, general manager of local utility Denton Municipal Electric, said in an interview. "To serve the entire load from Core Scientific, we do have some transmission challenges," Puente said. "We will have to make some additional transmission investments." [...] Like some other large AI data center projects, the site in Denton was focused on cryptocurrency mining before pivoting to AI workloads in December. This transition means unrelenting power consumption -- the site will no longer curtail operations when power prices are high -- which will increase grid strain. "Now you're talking about a facility that has to have energy 24 hours a day, 365 days a year," Puente said. That challenge will be mitigated by the addition of backup generators and batteries, he added.

Unlike many large projects, the Denton data center didn't receive local tax exemptions. Officials expect more than $600 million in property and sales tax from the data center expansion, more than double the costs it plans to incur, according to an analysis document seen by Bloomberg. It also anticipates that 135 new jobs will be created, according to the document. The Denton site, which is already being rented by CoreWeave, is Core Scientific's largest planned project at about 390 megawatts of power. It's "utilizing the majority of extra system capacity" in the city, wrote a utility executive in a January email seen by Bloomberg. Any additional large power users will exacerbate overloads on the grid, the executive added.
"When fully built out, it will host one of the largest GPU clusters in North America," Core Scientific Chief Executive Officer Adam Sullivan said of the site during a May call. "Denton is a flagship facility."

The report notes that Texas could face electricity shortages as soon as 2026 due to surging power demand from data centers, oil and gas operations, and crypto mining.
Social Networks

Bay Area Restaurants Are Vetting Your Social Media Before You Even Walk In (sfgate.com) 154

Bay Area Michelin-starred restaurants are conducting extensive background research on diners before they arrive, mining social media profiles and maintaining detailed guest databases to personalize dining experiences. Lazy Bear maintains records on 115,000 people and employs a guest services coordinator who creates weekly reports by researching publicly available social media information.

Staff study color-coded Google documents containing guest data before each service. SingleThread's reservation team researches social media, Google, and LinkedIn profiles for guests, where meals cost over $500 on weekends. General manager Akeel Shah told SFGate the information helps "tailor the experience and make it memorable." Acquerello has collected guest data for 36 years, initially handwritten in books. Co-owner Giancarlo Paterlini said their director of operations reviews each reservation for dining history and wine preferences to customize service.

Slashdot Top Deals