The Almighty Buck

FTX CEO Sam Bankman-Fried Says Likening Crypto Yield Farming To Ponzi Scheme a 'Reasonable Response' (ft.com) 43

Sam Bankman-Fried, chief executive and founder of Bahama-based crypto-exchange FTX and one of the most influential people in crypto, offered his insights into yield farming, projects that deliver tokens to buyers for staking. An excerpt from the podcast: Bloomberg's Levine: Can you give me an intuitive understanding of farming? I mean, like to me, farming is like you sell some structured puts and collect premium, but perhaps there's a more sophisticated understanding than that.

Sam Bankman-Fried: Let me give you sort of like a really toy model of it, which I actually think has a surprising amount of legitimacy for what farming could mean. You know, where do you start? You start with a company that builds a box and in practice this box, they probably dress it up to look like a life-changing, you know, world-altering protocol that's gonna replace all the big banks in 38 days or whatever. Maybe for now actually ignore what it does or pretend it does literally nothing. It's just a box. So what this protocol is, it's called 'Protocol X,' it's a box, and you take a token. You can take ethereum, you can put it in the box and you take it out of the box. Alright so, you put it into the box and you get like, you know, an IOU for having put it in the box and then you can redeem that IOU back out for the token.

So far what we've described is the world's dumbest ETF or ADR or something like that. It doesn't do anything but let you put things in it if you so choose. And then this protocol issues a token, we'll call it whatever, 'X token.' And X token promises that anything cool that happens because of this box is going to ultimately be usable by, you know, governance vote of holders of the X tokens. They can vote on what to do with any proceeds or other cool things that happen from this box. And of course, so far, we haven't exactly given a compelling reason for why there ever would be any proceeds from this box, but I don't know, you know, maybe there will be, so that's sort of where you start.

And then you say, alright, well, you've got this box and you've got X token and the box protocol declares, or maybe votes by on-chain governance, or, you know, something like that, that what they're gonna do is they are going to take half of all the X tokens that were re-minted. Maybe two thirds will, two thirds will offer X tokens, and they're going to give them away for free to whoever uses the box. So anyone who goes, takes some money, puts in the box, each day they're gonna airdrop, you know, 1% of the X token pro rata amongst everyone who's put money in the box. That's for now, what X token does, it gets given away to the box people. And now what happens? Well, X token has some market cap, right? It's probably not zero. Let say it's, you know, a $20 million market.

Levine: Wait, wait, wait, from like first principles, it should be zero, but okay.

SBF: Uh, sure. Okay. Completely reasonable comments. [...] Describe it this way, you might think, for instance, that in like five minutes with an internet connection, you could create such a box and such a token, and that it should reflect like, you know, it should be worth like $180 or something market cap for like that, you know, that effort that you put into it. In the world that we're in, if you do this, everyone's gonna be like, 'Ooh, box token. Maybe it's cool. If you buy in box token,' you know, that's gonna appear on Twitter and it'll have a $20 million market cap. And of course, one thing that you could do is you could like make the float very low and whatever, you know, maybe there haven't been $20 million dollars that have flowed into it yet. Maybe that's sort of like, is it, you know, mark to market fully diluted valuation or something, but I acknowledge that it's not totally clear that this thing should have market cap, but empirically I claim it would have market cap.

The Military

What Happened After Russia Seized Chernobyl Nuclear Disaster Site? (apnews.com) 144

The Associated Press files this report from Chernobyl, where invading tanks in February "churned up highly contaminated soil from the site of the 1986 accident that was the world's worst nuclear disaster..."

"Here in the dirt of one of the world's most radioactive places, Russian soldiers dug trenches. Ukrainian officials worry they were, in effect, digging their own graves." For more than a month, some Russian soldiers bunked in the earth within sight of the massive structure built to contain radiation from the damaged Chernobyl nuclear reactor. A close inspection of their trenches was impossible because even walking on the dirt is discouraged.... Maksym Shevchuck, the deputy head of the state agency managing the exclusion zone, believes hundreds or thousands of soldiers damaged their health, likely with little idea of the consequences, despite plant workers' warnings to their commanders. "Most of the soldiers were around 20 years old," he said....

The full extent of Russia's activities in the Chernobyl exclusion zone is still unknown, especially because the troops scattered mines that the Ukrainian military is still searching for. Some have detonated, further disturbing the radioactive ground. The Russians also set several forest fires, which have been put out.

Ukrainian authorities can't monitor radiation levels across the zone because Russian soldiers stole the main server for the system, severing the connection on March 2. The International Atomic Energy Agency said Saturday it still wasn't receiving remote data from its monitoring systems. The Russians even took Chernobyl staffers' personal radiation monitors....

When the Russians hurriedly departed March 31 as part of a withdrawal from the region that left behind scorched tanks and traumatized communities, they took more than 150 Ukrainian national guard members into Belarus. Shevchuck fears they're now in Russia. In their rush, the Russians gave nuclear plant managers a choice: Sign a document saying the soldiers had protected the site and there were no complaints, or be taken into Belarus. The managers signed.

The article includes more stories from Chernobyl's staff: Even now, weeks after the Russians left, "I need to calm down," the plant's main security engineer, Valerii Semenov, told The Associated Press. He worked 35 days straight, sleeping only three hours a night, rationing cigarettes and staying on even after the Russians allowed a shift change. "I was afraid they would install something and damage the system," he said in an interview....

Another Ukrainian nuclear plant, at Zaporizhzhia in southeastern Ukraine, remains under Russian control. It is the largest in Europe.

Long-time Slashdot reader MattSparkes also notes reports that researchers at Chernobyl "had been looking for bacteria to eat radioactive waste — but they now fear that their work was irreparably lost during the Russian invasion of the facility."

New Scientist reports (in a pay-walled article) that scientist Olena Pareniuk "was attempting to identify bacteria that could consume radioactive waste within Chernobyl's destroyed reactor before the Russian invasion. If her samples are lost it will likely be impossible to replace them."
GNU is Not Unix

Richard Stallman Speaks on the State of Free Software, and Answers Questions (libreplanet.org) 112

Richard Stallman celebrated his 69th birthday last month. And Wednesday, he gave a 92-minute presentation called "The State of the Free Software Movement."

Stallman began by thanking everyone who's contributed to free software, and encouraged others who want to help to visit gnu.org/help. "The Free Software movement is universal, and morally should not exclude anyone. Because even though there are crimes that should be punished, cutting off someone from contributing to free software punishes the world. Not that person."

And then he began by noting some things that have gotten better in the free software movement, including big improvements in projects like GNU Emacs when displaying external packages. (And in addition, "GNU Health now has a hospital management facility, which should make it applicable to a lot more medical organizations so they can switch to free software. And [Skype alternative] GNU Jami got a big upgrade.")

What's getting worse? Well, the libre-booted machines that we have are getting older and scarcer. Finding a way to support something new is difficult, because Intel and AMD are both designing their hardware to subjugate people. If they were basically haters of the public, it would be hard for them to do it much worse than they're doing.

And Macintoshes are moving towards being jails, like the iMonsters. It's getting harder for users to install even their own programs to run them. And this of course should be illegal. It should be illegal to sell a computer that doesn't let users install software of their own from source code. And probably shouldn't allow the computer to stop you from installing binaries that you get from others either, even though it's true in cases like that, you're doing it at your own risk. But tying people down, strapping them into their chairs so that they can't do anything that hurts themselves -- makes things worse, not better. There are other systems where you can find ways to trust people, that don't depend on being under the power of a giant company.

We've seen problems sometimes where supported old hardware gets de-supported because somebody doesn't think it's important any more — it's so old, how could that matter? But there are reasons...why old hardware sometimes remains very important, and people who aren't thinking about this issue might not realize that...


Stallman also had some advice for students required by their schools to use non-free software like Zoom for their remote learning. "If you have to use a non-free program, there's one last thing... which is to say in each class session, 'I am bitterly ashamed of the fact that I'm using Zoom for this class.' Just that. It's a few seconds. But say it each time.... And over time, the fact that this is really important to you will sink in."

And then halfway through, Stallman began taking questions from the audience...

Read on for Slashdot's report on Stallman's remarks, or jump ahead to...
The Courts

'Club Penguin Rewritten' Allegedly Shut Down By Disney, Website Seized By London Police (techcrunch.com) 62

"Club Penguin Rewritten," a popular remake of Club Penguin enjoyed by thousands of gamers, has been seized by the City of London Police, with three people in connection with the site's shuttering reportedly arrested for allegedly distributing copyrighted material. "Over 140,000 users were members of a Discord server for the game until today, when every message on the Discord disappeared," reports TechCrunch. From the report: In 2007, Disney purchased Club Penguin -- the children's RPG that served as my first introduction to online fandom -- for a whopping $700 million. Even then, as a child with little context about tech industry acquisitions, the purchase seemed foreboding (at least my friends thought so on the Miniclip forums, where I fraudulently claimed to be 13). But eventually, those of us who were dedicated fans of virtual sledding games and dance parties grew out of it, and after once boasting 200 million users, the game was shut down due to lack of interest in 2017. Disney tried to shuttle remaining players to a new mobile game called Club Penguin Island, but it only lasted for a year. But ever since the end of Club Penguin -- when the iceberg finally tipped in a strangely emotional moment -- there have always been remakes out there for nostalgic adults to relive their days of collecting puffles, dancing in the pizza shop and speed-running bans.

Only one message on the Discord remains, posted early this morning by an admin: "CPRewritten is shutting down effective immediately due to a full request by Disney," the admin said. "We have voluntarily given control over the website to the police for them to continue their copyright investigation." TechCrunch reached out to the City of London Police and Disney to verify these claims but did not hear back before publication.
In 2020, Disney shut down "Club Penguin Online," another copy of the game that acquired over a million new players during the pandemic.
Businesses

Nokia Disputes Report of Work on Russian Surveillance System as 'Misleading' (itwire.com) 14

While Nokia stopped sales in Russia and denounced the invasion of Ukraine, the New York Times reported Monday that Nokia had previously "worked with state-linked Russian companies to plan, streamline and troubleshoot" the connection between a Russian telecom and the government's powerful SORM digital surveillance tool. But Nokia says the claims are "misleading," reports ITWire.

Slashdot reader juul_advocate shares ITWire's report, which labels the Times' story "a rehashing of a story published by the American tech website TechCrunch back in 2019."

A Nokia spokesperson said, in a detailed rebuttal, that the Times had confirmed that the documents used as source material for the story were the same as those used by TechCrunch....

The Russian lawful intercept system is known as System for Operative Investigative Activities, or SORM. Nokia said the Times had suggested that its networks play an active part in enabling equipment used for SORM. "This is incorrect. Like any other network infrastructure supplier, Nokia is required to ensure that the networking products we sell have passive capability to interface with lawful intercept equipment of law enforcement agencies," the company said.

"This is governed by internationally recognised standards, as well as local regulations. All Nokia deals go through a strict human rights due diligence process that has been externally assessed and vetted by the Global Network Initiative. We are the first and only telecommunications equipment vendor to have this external assessment in place...."

[I]t is a third party which converts the standards-based interface in Nokia's products to fit with the legal intercept requirements — a fact which is also reflected in the 2019 documents." The Finnish company, one of four that is able to supply end-to-end 5G networks, added: "As Nokia has made clear to The New York Times, Nokia does not manufacture, install or service SORM equipment or systems. Any suggestions that we do, are incorrect.

"Lawful intercept is a standard capability that exists in every network in almost every nation. It provides properly authorised law enforcement agencies with the ability to track and view certain data and communications passing through an operator's network for purposes of combatting crime."

In short, Nokia's rebuttal argues, "The information that was already published by TechCrunch in 2019 does not show anything more than Nokia's product interfaces meeting the standards-based, legal requirements related to lawful intercept."
Crime

Ubiquiti Files Case Against Security Blogger Krebs Over 'False Accusations' (itwire.com) 32

In March of 2021 the Krebs on Security blog reported that Ubiquiti, "a major vendor of cloud-enabled Internet of Things devices," had disclosed a breach exposing customer account credentials. But Krebs added that a company source "alleges" that Ubiquiti was downplaying the severity of the incident — which is not true, says Ubiquiti.

Krebs' original post now includes an update — putting the word "breach" in quotation marks, and noting that actually a former Ubiquiti developer had been indicted for the incident...and also for trying to extort the company. It was that extortionist, Ubiquiti says, who'd "alleged" they were downplaying the incident (which the extortionist had actually caused themselves).

Ubiquiti is now suing Krebs, "alleging that he falsely accused the company of 'covering up' a cyberattack," ITWire reports: In its complaint, Ubiquiti said contrary to what Krebs had reported, the company had promptly notified its clients about the attack and instructed them to take additional security precautions to protect their information. "Ubiquiti then notified the public in the next filing it made with the SEC. But Krebs intentionally disregarded these facts to target Ubiquiti and increase ad revenue by driving traffic to his website, www.KrebsOnSecurity.com," the complaint alleged.

It said there was no evidence to support Krebs' claims and only one source, [the indicted former employee] Nickolas Sharp....

According to the indictment issued by the Department of Justice against Sharp in December 2021, after publication of the articles in question on 30 and 31 March, Ubiquiti's stock price fell by about 20% and the company lost more than US$4 billion (A$5.32 billion) in market capitalisation.... The complaint alleged Krebs had intentionally misrepresented the truth because he had a financial incentive to do so, adding, "His entire business model is premised on publishing stories that conform to this narrative...."

"Through its investigation, Ubiquiti learned that Sharp had used his administrative access codes (which Ubiquiti provided to him as part of his employment) to download gigabytes of data. Sharp used a Virtual Private Network (VPN) to mask his online activity, and he also altered log retention policies and related files to conceal his wrongful actions," the complaint alleged. "Ubiquiti shared this information with federal authorities and the company assisted the FBI's investigation into Sharp's blackmail attempt. The federal investigation culminated with the FBI executing a search warrant on Sharp's home on 24 March 2021." The complaint then went into detail about how Sharp contacted Krebs and how the story came to be published.

Krebs was accused of two counts of defamation, with Ubiquiti seeking a jury trial and asking for a judgment against him that awarded compensatory damages of more than US$75,000, punitive damages of US$350,000, all expenses and costs including lawyers' fees and any further relief deemed appropriate by the court.

Krebs' follow-up post in December had included more details: Investigators say they were able to tie the downloads to Sharp and his work-issued laptop because his Internet connection briefly failed on several occasions while he was downloading the Ubiquiti data. Those outages were enough to prevent Sharp's Surfshark VPN connection from functioning properly — thus exposing his Internet address as the source of the downloads...

Several days after the FBI executed its search warrant, Sharp "caused false or misleading news stories to be published about the incident," prosecutors say. Among the claims made in those news stories was that Ubiquiti had neglected to keep access logs that would allow the company to understand the full scope of the intrusion. In reality, the indictment alleges, Sharp had shortened to one day the amount of time Ubiquiti's systems kept certain logs of user activity in AWS.

Thanks to Slashdot reader juul_advocate for sharing the story...
Transportation

Can Controlling Vehicles Make Streets Safer and More Climate Friendly? (nytimes.com) 77

Sweden has long been at the forefront of road innovation and is again leading the way with trials of a technology known as geofencing. From a report: In April 2017, a man drove a stolen truck into a crowded shopping district in central Stockholm and crashed it into a department store, killing four people and injuring 15 others. The terrorist attack prompted the Swedish government to investigate how digital technology could be used to prevent these kinds of incidents in the future. It began a four-year research program to test one type, geofencing, in urban environments. Geofencing is a virtual tool in which software uses GPS or similar technology to trigger a preprogrammed or real-time action in vehicles to control their movements within a geographical area. It can regulate a vehicle's speed within the zone, determine whether the vehicle belongs there and automatically switch hybrid vehicles to electric driving mode.

Johannes Berg, senior adviser for digitalization at the Swedish Transport Administration, said the technology can improve traffic safety and lower emissions. It also has the potential to adjust speed based on road and weather conditions, and to ensure compliance with regulations, like stopping a vehicle if a driver doesn't have a permit to enter a geofenced area, he added. In simple uses -- like when a map with restrictions is downloaded to a vehicle before the start of a trip to reduce speed automatically when it enters a low-speed zone -- vehicles do not need to be connected to an outside source, Mr. Berg said. But in more advanced applications -- real-time use, for example -- vehicles must be connected. Rules and regulations are in a tech cloud and could be changed based on the actual position of the vehicles, he said. "The cloud service can access the engine of the vehicle using the telematics connection of the vehicle."

Sweden, which began a series of geofencing trials in 2019, has long been an innovator in vehicle-related safety. In the 1990s, it introduced Vision Zero, an approach to safety that takes human error into account. The goal is to eliminate all traffic deaths and serious injuries by creating multiple layers of protection; if one fails, others will create a safety net. Sweden now has one of the lowest crash death rates in the world, and many cities globally have implemented the approach. Earlier this year the U.S. Department of Transportation officially adopted the strategy to address a dramatic spike in the death toll in the United States. In Stockholm, geofencing pilot programs have focused on commercial traffic in the city center, assessing such things as whether deliveries to businesses could occur at lower speeds at night when streets typically have fewer people. [...] In another trial, sensors added to pavements monitor pedestrian flow, which have been able to trigger speed reduction in pilot vehicles. "The trucks are actually decreasing their speed automatically," Mr. Berg said.

Businesses

When Nokia Pulled Out of Russia, a Vast Surveillance System Remained (nytimes.com) 32

The Finnish company played a key role in enabling Russia's cyberspying, documents show, raising questions of corporate responsibility. From a report: Nokia said this month that it would stop its sales in Russia and denounced the invasion of Ukraine. But the Finnish company didn't mention what it was leaving behind: equipment and software connecting the government's most powerful tool for digital surveillance to the nation's largest telecommunications network. The tool was used to track supporters of the Russian opposition leader Aleksei A. Navalny. Investigators said it had intercepted the phone calls of a Kremlin foe who was later assassinated. Called the System for Operative Investigative Activities, or SORM, it is also most likely being employed at this moment as President Vladimir V. Putin culls and silences antiwar voices inside Russia.

For more than five years, Nokia provided equipment and services to link SORM to Russia's largest telecom service provider, MTS, according to company documents obtained by The New York Times. While Nokia does not make the tech that intercepts communications, the documents lay out how it worked with state-linked Russian companies to plan, streamline and troubleshoot the SORM system's connection to the MTS network. Russia's main intelligence service, the F.S.B., uses SORM to listen in on phone conversations, intercept emails and text messages, and track other internet communications. The documents, spanning 2008 to 2017, show in previously unreported detail that Nokia knew it was enabling a Russian surveillance system. The work was essential for Nokia to do business in Russia, where it had become a top supplier of equipment and services to various telecommunications customers to help their networks function. The business yielded hundreds of millions of dollars in annual revenue, even as Mr. Putin became more belligerent abroad and more controlling at home.

The Internet

'The Plain-Text Internet is Coming' (protocol.com) 180

Protocol reports: The web is overrun with junk. This is so obvious, I almost don't need to say it. But I will: Between the pop-ups, the autoplaying videos, the cookie banners, the incessant calls for sign-ups, the coupon offers, the "Don't forget to subscribe!" reminders on top of the other "Don't forget to subscribe!" reminders, the in-line ads slowing the page down, the slew of trackers also slowing the page down ... you get the idea. For lots of reasons, some good and some bad, much of the internet has become totally unusable.

Plain Text Sports is nothing like any of those sites. The site, created by developer Paul Julius Martinez (who you might know as CodeIsTheEnd all over the internet), is more like something out of the 1970s, a wall of monospaced plain text with ASCII-art boxes surrounding real-time scores for all the professional sports games happening right now. It has no images, no pop-ups, no trackers. It loads practically instantly, even on a bad connection. I've been refreshing it obsessively the last few weeks, through the end of the NBA seasons and the beginning of March Madness. Not only is it a useful site for sports fans, but it feels like a harbinger of things to come....

He loves that Plain Text Sports is simple. "There's no cookie banner, there's no GDPR banner, there's no asking-you-to-donate banner...." Plain Text Sports manages to be that simple on the front end with a surprising amount of complexity on the back end, making sure the whole sports world is represented in real time on that page.

In general, we're starting to see developers and designers rebel against the general overwhelm of the internet, as sites and apps ditch their cruft and complications for things that load faster and work more intuitively. Social networks are bringing back chronological feeds; reading modes are now everywhere in browsers. Even apps like Obsidian, a favorite among productivity obsessives, are based primarily on plain text.

They don't look like much, but that's kind of the point.

Crime

UK Police Arrest 7 People In Connection With Lapsus$ Hacks (techcrunch.com) 9

An anonymous reader quotes a report from TechCrunch: Police in the United Kingdom have arrested seven people over suspected connections to the Lapsus$ hacking group, which has in recent weeks targeted tech giants including Samsung, Nvidia, Microsoft and Okta. In a statement given to TechCrunch, Detective Inspector Michael O'Sullivan from the City of London Police said: "The City of London Police has been conducting an investigation with its partners into members of a hacking group. Seven people between the ages of 16 and 21 have been arrested in connection with this investigation and have all been released under investigation. Our enquiries remain ongoing."

News of the arrests comes just hours after a Bloomberg report revealed a teenager based in Oxford, U.K. is suspected of being the mastermind of the now-prolific Lapsus$ hacking group. Four researchers investigating the gang's recent hacks said they believed the 16-year-old, who uses the online moniker "White" or "Breachbase," was a leading figure in Lapsus$, and Bloomberg was able to track down the suspected hacker after his personal information was leaked online by rival hackers. TechCrunch has seen a copy of the the suspected hacker's leaked personal information, which we are not sharing -- but it matches Bloomberg's reporting. City of London Police, which primarily focuses on financial crimes, did not say if the 16-year-old was among those arrested.

At least one member of Lapsus$ was also apparently involved with a recent data breach at Electronic Arts, according to [security reporter Brian Krebs], and another is suspected to be a teenager residing in Brazil. The latter is said to be so capable of hacking that researchers first believed that the activity they were witnessing was automated. Researchers' ability to track the suspected Lapsus$ members may be because the group, which now has more than 45,000 subscribers to its Telegram channel where it frequently recruits insiders and leaks victims' data, does little to cover its tracks. In a blog post this week, Microsoft said the group uses brazen tactics to gain initial access to a target organization, which has included publicly recruiting company insiders. As reported by Bloomberg this week, the group has even gone as far as to join the Zoom calls of companies they've breached and taunted employees trying to clean up their hack.

Submission + - UK Police Arrest 7 People In Connection With Lapsus$ Hacks (techcrunch.com)

An anonymous reader writes: Police in the United Kingdom have arrested seven people over suspected connections to the Lapsus$ hacking group, which has in recent weeks targeted tech giants including Samsung, Nvidia, Microsoft and Okta. In a statement given to TechCrunch, Detective Inspector Michael O’Sullivan from the City of London Police said: “The City of London Police has been conducting an investigation with its partners into members of a hacking group. Seven people between the ages of 16 and 21 have been arrested in connection with this investigation and have all been released under investigation. Our enquiries remain ongoing.”

News of the arrests comes just hours after a Bloomberg report revealed a teenager based in Oxford, U.K. is suspected of being the mastermind of the now-prolific Lapsus$ hacking group. Four researchers investigating the gang’s recent hacks said they believed the 16-year-old, who uses the online moniker “White” or “Breachbase,” was a leading figure in Lapsus$, and Bloomberg was able to track down the suspected hacker after his personal information was leaked online by rival hackers. TechCrunch has seen a copy of the the suspected hacker’s leaked personal information, which we are not sharing — but it matches Bloomberg’s reporting. City of London Police, which primarily focuses on financial crimes, did not say if the 16-year-old was among those arrested.

At least one member of Lapsus$ was also apparently involved with a recent data breach at Electronic Arts, according to [security reporter Brian Krebs], and another is suspected to be a teenager residing in Brazil. The latter is said to be so capable of hacking that researchers first believed that the activity they were witnessing was automated. Researchers’ ability to track the suspected Lapsus$ members may be because the group, which now has more than 45,000 subscribers to its Telegram channel where it frequently recruits insiders and leaks victims’ data, does little to cover its tracks. In a blog post this week, Microsoft said the group uses brazen tactics to gain initial access to a target organization, which has included publicly recruiting company insiders. As reported by Bloomberg this week, the group has even gone as far as to join the Zoom calls of companies they’ve breached and taunted employees trying to clean up their hack.

The Courts

DC Sues Grubhub, Claiming App Is Full of Hidden Fees and High Prices (theverge.com) 120

An anonymous reader quotes a report from The Verge: District of Columbia Attorney General Karl Racine is suing Grubhub for deceptive business practices, saying its food delivery app covertly inflates prices for diners who order through it. The suit demands an end to a laundry list of allegedly illegal practices as well as financial restitution and civil penalties. The newly filed lawsuit (PDF) argues that Grubhub's promises of "free" online orders -- and "unlimited free delivery" for Grubhub Plus -- are misleading. While customers can make pickup orders for free, the company charges delivery and service fees for standard orders and service fees for Grubhub Plus orders, displaying the service fee until recently as part of a single line with sales taxes. "Grubhub misled District residents and took advantage of local restaurants to boost its own profits, even as District consumers and small businesses struggled during the COVID-19 pandemic," said Racine in a statement. "Grubhub charged hidden fees and used bait-and-switch advertising tactics -- which are illegal."

The complaint says Grubhub orders often cost more than ordering the same item at a restaurant and argues that the company fails to reasonably disclose this to consumers. "Because Grubhub already charges consumers several different types of fees for its services ... consumers expect that the menu prices listed on Grubhub are the same prices offered at the restaurant or on the restaurant's website," it says. Grubhub has also listed many restaurants without their permission to expand its service, routing orders through its services and taking a commission. The complaint says it listed "over a thousand" restaurants in DC that had no connection with the company, asserting that the unapproved listings often contained menu errors and resulted in orders that would "take longer to fill, would be filled incorrectly, would be delivered cold, or would eventually be cancelled altogether."

Grubhub -- which also operates Seamless and several other food delivery apps -- has made more elaborate attempts to insert itself into restaurant transactions as well. The lawsuit notes its launch of unsanctioned microsites that appear to be official restaurant sites, as well as custom phone numbers that let it charge fees when customers call restaurants, even when the calls didn't result in orders. The company also offered a "Supper for Support" promotion that required restaurants to foot the bill for a special discount; it offered restaurants $250 in compensation after a backlash.
"During the past year, we've sought to engage in a constructive dialogue with the DC attorney general's office to help them understand our business and to see if there were any areas for improvement," said Katie Norris, director of corporate communications, in a statement. "We are disappointed they have moved forward with this lawsuit because our practices have always complied with DC law, and in any event, many of the practices at issue have been discontinued. We will aggressively defend our business in court and look forward to continuing to serve DC restaurants and diners."

According to The Verge, Grubhub "says the app no longer lists restaurants that haven't agreed to work with it, and it's retired its microsites and the Supper for Support program." It will also make it more clear to users that prices might be lower when ordering directly from the restaurant, "and it will specify in marketing that only pickup orders are free," adds The Verge. The company maintains that it "has not misrepresented its fees," however.
Communications

What Happened After Starlink's Satellite Internet Service Arrived in Ukraine? (yahoo.com) 145

The Washington Post looks at what happened after Starlink activated its satellite-based internet service to help Ukraine: Ukraine has already received thousands of antennas from Musk's companies and European allies, which has proved "very effective," Ukraine's minister of digital transformation, Mykhailo Fedorov said in an interview with The Washington Post Friday. "The quality of the link is excellent," Fedorov said through a translator, using a Starlink connection from an undisclosed location. "We are using thousands, in the area of thousands, of terminals with new shipments arriving every other day...." A person familiar with Starlink's effort in Ukraine, speaking on the condition of anonymity to discuss sensitive matters, said there are more than 5,000 terminals in the country....

Internet flows deteriorated on the first day of Russia's invasion of Ukraine on Feb. 24 and have not fully recovered, according to data-monitoring services. But since that initial dip, connectivity has remained fairly stable, with mainly temporary, isolated outages even during heavy Russian shelling. "Every day there are outages, but generally service comes back," said Doug Madory, director of Internet analysis for Kentik, which monitors global data flows.

Even before Fedorov tweeted at Musk for help, SpaceX was working on a way to get Starlink to Ukraine. President and COO Gwynne Shotwell said in a talk at California Institute of Technology this month that the company had been working for several weeks to get regulatory approval to allow the satellites to communicate in Ukraine.

In addition, the Washington Post reports, this week on Twitter Elon Musk also "challenged Putin to a fight and followed up by pledging he would use just one hand if Putin was scared. And he told Putin he could bring a bear." Reached for comment by the Post's reporters, Elon Musk responded by telling The Post to give his regards "to your puppet master Besos," following it with two emojis.

But the Post's article also argues Starlink's technology "could have widespread implications for the future of war. Internet has become an essential tool for communication, staying informed and even powering weapons." And The Telegraph reports that Starlink "is helping Ukrainian forces win the drone war as they use the technology in their effort to track and kill invading Russians." In the vanguard of Ukraine's astonishingly effective military effort against Vladimir Putin's forces is a unit called Aerorozvidka (Aerial Reconnaissance) which is using surveillance and attack drones to target Russian tanks and positions. Amid internet and power outages, which are expected to get worse, Ukraine is turning to the newly available Starlink system for some of its communications. Drone teams in the field, sometimes in badly connected rural areas, are able to use Starlink to connect them to targeters and intelligence on their battlefield database. They can direct the drones to drop anti-tank munitions, sometimes flying up silently to Russian forces at night as they sleep in their vehicles...

Should Ukraine's internet largely collapse, the "drone warriors" of Aerorozvidka would still be able to communicate with their bases by sending signals from mobile Starlink terminals, and using ground stations in neighbouring countries including Poland.... As Ukraine's internet is inevitably degraded, Starlink will be an alternative. General James Dickinson, commander of US Space Command, told the Senate armed services committee: "What we're seeing with Elon Musk and the Starlink capabilities is really showing us what a megaconstellation, or a proliferated architecture, can provide in terms of redundancy and capability."

It's not all Starlink. The Telegraph points out that "The Ukrainian system benefitted from equipment given by Western countries, including radio communications which superceded Soviet-era technology, and the US has also poured in millions of dollars to protect against Russian hacking, jamming of signals and attempts to 'spoof' GPS technology."

And meanwhile, weakness in Russia's own communications infrastructure may have played a role in the killing of five senior Russian generals in the last three weeks, according to a recent CNN interview with retired U.S. army general and former CIA director David Petraeus: "The bottom line is that [Russia's] command-and-control has broken down. Their communications have been jammed by the Ukranians.

Their secure comms didn't work. They had to go single-channel. That's jammable, and that's exactly what the Ukranians have been doing to that. They used cellphones. The Ukranians blocked the prefix for Russia, so that didn't work. Then they took down 3G. [The Russians] are literally stealing cellphones from Ukranian civilians to communicate among each other.

So what happens? The column gets stopped. An impatient general is sitting back there in his armored or whatever vehicle. He goes forward to find out what's going on... And the Ukranians have very, very good snipers, and they've just been picking them off left and right.

Thanks to long-time Slashdot reader schwit1 for submitting the story.
Programming

How Do You Like Ubuntu's New Logo? (ubuntu.com) 132

Slashdot reader mmanciop reminded us that Ubuntu released a new version of its "circle of friends" logo this week (which its designer says gives it "a more contemporary look and feel.")

From the Ubuntu blog: We proudly present to you the transformation of the Circle of Friends logo for Ubuntu. The new logo isn't a revolution; rather, it's an evolution of the Circle of Friends. As you can see at the top of the post, the classic white-on-orange colour scheme hasn't changed. But the new version sports sleek lines which bind the Circle of Friends even more closely together.

While it is important to have a respectful continuity with the previous Circle of Friends, the updated version is leaner, more focused, more sophisticated. It also makes a little more sense that the heads are now inside the circle, facing each other and connecting more directly. The rectangular orange tag is a break from the conventional square or circle, as it allows for the boldness of the orange to express itself and provides a recognisable colourful mark across media. Finally, the logo moves from a tiny superscript to a large, dynamic and leading presence.

Some might wonder why we had to touch the Ubuntu logo at all. As one can imagine, it is a daunting honour to work on something so many of us have such a strong connection to. But in the end, a logo should match what it represents. Similar to how Ubuntu continues to evolve and adapt to new uses in technology, its logo should follow suit to encapsulate and reflect such ongoing change.

For comparison, here's the original logo.

Share your reactions in the comments. (For example, how do you think it compares to other logos?) Do you like it more or less than, say, the logo for Raku?
The Military

Anti-Russian Railway Workers in Belarus Reportedly Sabotaged All Rail Traffic to Ukraine (msn.com) 153

"Belarusian railway workers have reportedly cut off all rail connections between their country and Ukraine," reports Germany's public broadcaster DW: Ukrainian railway chief Olexander Kamyshin thanked Belarusian railway workers for this claimed act of sabotage on Saturday. "As of today, I can say there is no rail traffic between Belarus and Ukraine," Kamyshin was quoted as saying by Ukraine's Unian news agency. Kamyshin said that he would not give further details.

Franak Viacorka, advisor to exiled Belarusian opposition leader Sviatlana Tsikhanouskaya, tweeted about the incident and said that it had been confirmed by Belarusian railway workers, while declining to provide details.

Although Russia has moved many of its troops and military equipment into Ukraine through Belarus, Belarusian leader Alexander Lukashenko has not committed Belarusian troops to the offensive.

A Ukrainian online newspaper claims that "There is no longer a railway connection between Ukraine and Belarus, so the Russian occupiers will not be able to deliver Russian equipment by rail from Belarus," citing the longer televisied remarks of Ukrainian railway chief Olexander Kamyshin: "I believe that these people will be able to prevent Belarusian Railways from transporting military convoys to Ukraine," Kamyshin added.

"Currently, the railways are out of order", Kamyshin confirmed, "so Russian equipment from Belarus will not be able to be delivered."

Google

Google Internet Cable Lands in Africa, Promising Fast Connection (reuters.com) 17

A subsea cable owned by Google that promises to double internet speeds for millions in Africa arrived in Togo on Friday, the company said, the latest step in a multi-year project to provide cheaper access to users across the continent. From a report: The Equiano cable, the first of its kind to reach Africa, has wound its way from Portugal and will double internet speed for Togo's 8 million residents, Google said in a statement.

That may be a taste of things to come for other countries set to benefit in a region where internet use is rising fast but where networks are often cripplingly slow and are a drag on economic development. The new line will also make land in Nigeria, Namibia and South Africa, with possible branches offering connections to nearby countries. It is expected to start operating by the end of the year.

AI

AI Suggests 40,000 New Possible Chemical Weapons In Just Six Hours (theverge.com) 100

An anonymous reader quotes a report from The Verge: It took less than six hours for drug-developing AI to invent 40,000 potentially lethal molecules. Researchers put AI normally used to search for helpful drugs into a kind of "bad actor" mode to show how easily it could be abused at a biological arms control conference. All the researchers had to do was tweak their methodology to seek out, rather than weed out toxicity. The AI came up with tens of thousands of new substances, some of which are similar to VX, the most potent nerve agent ever developed. Shaken, they published their findings this month in the journal Nature Machine Intelligence. The Verge spoke with Fabio Urbina, lead author of the paper, to learn more about the AI. When asked how easy it is for someone to replicate, Urbina said it would be "fairly easy."

"If you were to Google generative models, you could find a number of put-together one-liner generative models that people have released for free," says Urbina. "And then, if you were to search for toxicity datasets, there's a large number of open-source tox datasets. So if you just combine those two things, and then you know how to code and build machine learning models -- all that requires really is an internet connection and a computer -- then, you could easily replicate what we did. And not just for VX, but for pretty much whatever other open-source toxicity datasets exist."

He added: "Of course, it does require some expertise. [...] Finding a potential drug or potential new toxic molecule is one thing; the next step of synthesis -- actually creating a new molecule in the real world -- would be another barrier."

As for what can be done to prevent this kind of misuse of AI, Urbina noted OpenAI's GPT-3 language model. People can use it for free but need a special access token to do so, which can be revoked at any time to cut off access to the model. "We were thinking something like that could be a useful starting point for potentially sensitive models, such as toxicity models," says Urbina.

"Science is all about open communication, open access, open data sharing. Restrictions are antithetical to that notion. But a step going forward could be to at least responsibly account for who's using your resources."
Power

They're Frustrated with Power Utilities - So They're Leaving the Grid Altogether (msn.com) 239

Power blackouts and rising electricity costs have inspired "a small but growing number of Californians" to leave the power grid altogether for their own home-generated energy, reports the New York Times.

And thanks to "a stunning drop" in the cost of solar panels and batteries, "Some homeowners who have built new, off-grid homes say they have even saved money because their systems were cheaper than securing a new utility connection...." Nobody is quite sure how many off-grid homes there are but local officials and real estate agents said there were dozens here in Nevada County, a picturesque part of the Sierra Nevada range between Sacramento and Lake Tahoe. Some energy experts say that millions of people could eventually go off the grid as costs drop....

People going off the grid argue that utilities are not moving fast enough to address climate change and are causing other problems. In Northern California, Pacific Gas & Electric's safety record has alienated many residents. The company's equipment caused the 2018 Camp Fire, which killed dozens and destroyed the town of Paradise, about 70 miles north of Nevada City. The utility's effort to prevent fires by cutting off power to homes and businesses has also angered people. One of those residents is Alan Savage, a real estate agent in Grass Valley, who bought an off-grid home six years ago and has sold hundreds of such properties. He said he never loses power, unlike PG&E customers. "I don't think I'll ever go back to being on the grid," Mr. Savage said.

For people like him, it is not enough to take the approach favored by most homeowners with solar panels and batteries. Those homeowners use their systems to supplement the electricity they get from the grid, provide emergency backup power and sell excess energy to the grid.

The appeal of off-grid homes has grown in part because utilities have become less reliable. As natural disasters linked to climate change have increased, there have been more extended blackouts in California, Texas, Louisiana and other states.... Installing off-grid solar and battery systems is expensive, but once the systems are up and running, they typically require modest maintenance and homeowners no longer have an electric bill. RMI, a research organization formerly known as the Rocky Mountain Institute, has projected that by 2031 most California homeowners will save money by going off the grid as solar and battery costs fall and utility rates increase. That phenomenon will increasingly play out in less sunny regions like the Northeast over the following decades, the group forecasts....

Some energy experts worry that people who are going off the grid could unwittingly hurt efforts to reduce greenhouse gas emissions. That is because the excess electricity that rooftop solar panels produce will no longer reach the grid, where it can replace power from coal or natural gas plants. "We don't need everybody to cut the cord and go it alone," said Mark Dyson, senior principal with the carbon-free electricity unit of RMI.... Scott Aaronson, a senior vice president for security and preparedness at the Edison Electric Institute, a utility industry trade group, said that while off-grid living might appeal to some, it was "like having a computer not connected to the internet.... You're getting some value but you're not part of a greater whole," he said. "When something goes wrong, that's wholly on you...."

Off-grid systems are particularly attractive to people building new homes. That's because installing a 125- to 300-foot overhead power line to a new home costs about $20,000, according to the California Public Utilities Commission. In places where lines have to be buried, installation runs about $78,000 for 100 feet.

The article ends by pointing out that off-the-grid residents will soon also have a handy alternative to the giant electric batteries that store the excess energy from their solar panels: electric cars like the Ford F-150 Lightning and the Hyundai Ioniq 5.
Crime

US Extradites REvil Ransomware Member To Stand Trial For Kaseya Attack (bleepingcomputer.com) 14

The U.S. Department of Justice announced that alleged REvil ransomware affiliate, Yaroslav Vasinskyi, was extradited to the United States last week to stand trial for the Kaseya cyberattack. BleepingComputer reports: Vasinkyi, a 22-year-old Ukrainian national, was arrested in November 2021 while entering Poland for his cybercrime activities as a REvil member. Vasinkyi is believed to be a REvil ransomware affiliate tasked to breach corporate networks worldwide, steal unencrypted data, and then encrypt all of the devices on the network. Shortly after Vasinkyi was arrested, the DOJ announced that he was responsible for the ransomware attack against Kaseya, a managed services provider, impacting thousands of companies worldwide.

"In the alleged attack against Kaseya, Vasinskyi caused the deployment of malicious Sodinokibi/REvil code throughout a Kaseya product that caused the Kaseya production functionality to deploy REvil ransomware to "endpoints" on Kaseya customer networks," explained the U.S. DoJ announcement. "After the remote access to Kaseya endpoints was established, the ransomware was executed on those computers, which resulted in the encryption of data on computers of organizations around the world that used Kaseya software."
Vasinskyi is facing the following charges: conspiracy to commit fraud and related activity in connection with computers; intentional damage to protected computers; and conspiracy to commit money laundering.

"If convicted for all counts, Vasinskyi will be sentenced to a total of 115 years in prison," adds BleepingComputer. "Additionally, he will also forfeit all property and financial assets."
Bitcoin

Ormeus Coin's John, Tina Barksdale Scammed Investors, Feds Say (gizmodo.com) 16

An anonymous reader quotes a report from GIzmodo: Ormeus is a cryptocurrency that was launched in 2017, the brainchild of John and Tina Barksdale -- two siblings and self-identified crypto marketers -- who are now facing federal securities charges in connection with their business. In a complaint unsealed Tuesday, the Securities and Exchange Commission charged the siblings with defrauding their investors out of $124 million. In an accompanying federal indictment unsealed the same day, the Justice Department announced multiple charges against John Barksdale -- wire fraud, conspiracy to commit wire fraud, conspiracy to commit securities fraud. Both agencies allege that the duo used misleading and outright fraudulent marketing techniques to lure in investors to a coin that wasn't nearly as valuable as they claimed.

"As alleged, Barksdale operated like a traveling salesman and peddled lies, overstatements, and misrepresentations regarding a cryptocurrency called Ormeus Coin, which resulted in duping thousands of investors throughout the world," said Ricky J. Patel, Homeland Security Investigations New York Special Agent in Charge, in a statement. According to officials, the Barksdales claimed that their business was supported by "one of the largest crypto mining operations in the world" and that the company was raking in monthly mining revenue between $5.4 and $8 million. The Barksdales also heralded their token as a "new digital money system backed by a fully-audited industrial crypto-mining operation." But, according to federal officials, most of those claims were BS.

Officials say the Ormeus mining operations shut down in 2019 after drawing too little money, that it never reached even a million dollars per month. According to the DOJ, John Barksdale claimed to have $250 million worth of Bitcoin stored at the mining operation that would secure the token's value. In reality, the coins belonged to someone else, the indictment states. The indictment against him claims that misrepresentations and fabrications about the coin's value were promoted via Ormeus Global, a multi-level marketing company that used false and manipulative advertising to encourage hapless investors to go all-in on the coin.

Slashdot Top Deals