The Courts

Texas Sues xHamster and Chaturbate (404media.co) 292

An anonymous reader quotes a report from 404 Media: Texas Attorney General Ken Paxton just sued two more porn sites, xHamster and Chaturbate, alleging they aren't complying with age verification laws. As first reported by local news outlet KXAN, the Office of the Attorney General filed two civil lawsuits on Tuesday afternoon against Hammy Media, which owns xHamster, and Multi Media, which owns Chaturbate. Texas Governor Greg Abbott signed HB 1181 into law in June, which requires porn sites to verify the ages of users through a driver's license or passport. If porn sites don't force consenting adults to hand over a government-issued ID in order to watch other consenting adults have sex on camera, they face heavy fines.

Paxton's lawsuit against xHamster asks the court to force the site to pay a civil penalty of up to $1.67 million, with an additional $10,000 a day since filing. For Chaturbate, it's $1.78 million plus $10,000 per day. Last week, Pornhub's parent company Aylo blocked anyone accessing its network of sites from a Texas IP address, and replaced its network of sites -- which include Pornhub, Brazzers, YouPorn and many more -- with a message about its rejection of age verification legislation that requires adults to show government-issued ID to access porn. [...] As of writing, xHamster and Chaturbate are still accessible in Texas and don't have requirements to verify users' ages with a government ID.

Programming

C++ Creator Rebuts White House Warning (infoworld.com) 258

An anonymous reader quotes a report from InfoWorld: C++ creator Bjarne Stroustrup has defended the widely used programming language in response to a Biden administration report that calls on developers to use memory-safe languages and avoid using vulnerable ones such as C++ and C. In a March 15 response to an inquiry from InfoWorld, Stroustrup pointed out strengths of C++, which was designed in 1979. "I find it surprising that the writers of those government documents seem oblivious of the strengths of contemporary C++ and the efforts to provide strong safety guarantees," Stroustrup said. "On the other hand, they seem to have realized that a programming language is just one part of a tool chain, so that improved tools and development processes are essential."

Safety improvement always has been a goal of C++ development efforts, Stroustrup stressed. "Improving safety has been an aim of C++ from day one and throughout its evolution. Just compare the K&R C language with the earliest C++, and the early C++ with contemporary C++. My CppCon 2023 keynote outlines that evolution," he said. "Much quality C++ is written using techniques based on RAII (Resource Acquisition Is Initialization), containers, and resource management pointers rather than conventional C-style pointer messes." Stroustrup cited a number of efforts to improve C++ safety. "There are two problems related to safety. Of the billions of lines of C++, few completely follow modern guidelines, and peoples' notions of which aspects of safety are important differ. I and the C++ standard committee are trying to deal with that," he said. "Profiles is a framework for specifying what guarantees a piece of code requires and enable implementations to verify them. There are documents describing that on the committee's website -- look for WG21 -- and more are coming. However, some of us are not in a mood to wait for the committee's necessarily slow progress."

Profiles, Stroustrup said, "is a framework that allows us to incrementally improve guarantees -- e.g., to eliminate most range errors relatively soon -- and to gradually introduce guarantees into large code bases through local static analysis and minimal run-time checks. My long-term aim for C++ is and has been for C++ to offer type and resource safety when and where needed. Maybe the current push for memory safety -- a subset of the guarantees I want -- will prove helpful to my efforts, which are shared by many in the C++ standards committee." Stroustrup previously defended the safety of C++ against the NSA, which recommended using memory-safe languages instead of C++ and C in a November 2022 bulletin.

Google

Google Researchers Unveil 'VLOGGER', an AI That Can Bring Still Photos To Life (venturebeat.com) 18

Google researchers have developed a new AI system that can generate lifelike videos of people speaking, gesturing and moving -- from just a single still photo. From a report: The technology, called VLOGGER, relies on advanced machine learning models to synthesize startlingly realistic footage, opening up a range of potential applications while also raising concerns around deepfakes and misinformation. Described in a research paper titled "VLOGGER: Multimodal Diffusion for Embodied Avatar Synthesis," (PDF) the AI model can take a photo of a person and an audio clip as input, and then output a video that matches the audio, showing the person speaking the words and making corresponding facial expressions, head movements and hand gestures. The videos are not perfect, with some artifacts, but represent a significant leap in the ability to animate still images.

The researchers, led by Enric Corona at Google Research, leveraged a type of machine learning model called diffusion models to achieve the novel result. Diffusion models have recently shown remarkable performance at generating highly realistic images from text descriptions. By extending them into the video domain and training on a vast new dataset, the team was able to create an AI system that can bring photos to life in a highly convincing way. "In contrast to previous work, our method does not require training for each person, does not rely on face detection and cropping, generates the complete image (not just the face or the lips), and considers a broad spectrum of scenarios (e.g. visible torso or diverse subject identities) that are critical to correctly synthesize humans who communicate," the authors wrote.

Power

First Large Offshore US Wind Farm Delivers Power To Local Grid (npr.org) 99

An anonymous reader quotes a report from NPR: America's first commercial-scale offshore wind farm is officially open, a long-awaited moment that helps pave the way for a succession of large wind farms. Danish wind energy developer Orsted and the utility Eversource built a 12-turbine wind farm called South Fork Wind 35 miles (56 kilometers) east of Montauk Point, New York. New York Gov. Kathy Hochul went to Long Island Thursday to announce that the turbines are delivering clean power to the local electric grid, flipping a massive light switch to "turn on the future." Interior Secretary Deb Haaland was also on hand.

Achieving commercial scale is a turning point for the industry, but what's next? Experts say the nation needs a major buildout of this type of clean electricity to address climate change. Offshore wind is central to both national and state plans to transition to a carbon-free electricity system. The Biden administration has approved six commercial-scale offshore wind energy projects, and auctioned lease areas for offshore wind for the first time off the Pacific and Gulf of Mexico coasts. New York picked two more projects last month to power more than 1 million homes. This is just the beginning, Hochul said. She said the completion of South Fork shows that New York will aggressively pursue climate change solutions to save future generations from a world that otherwise could be dangerous. South Fork can generate 132 megawatts of offshore wind energy to power more than 70,000 homes.

"It's great to be first, we want to make sure we're not the last. That's why we're showing other states how it can be done, why we're moving forward, on to other projects," Hochul told The Associated Press in an exclusive interview before the announcement. "This is the date and the time that people will look back in the history of our nation and say, 'This is when it changed,'" Hochul added. South Fork will generate more than four times the power of a five-turbine pilot project developed earlier off the coast of Rhode Island, and unlike that subsidized test project, was developed after Orsted and Eversource were chosen in a competitive bidding process to supply power to Long Island. Orsted CEO Mads Nipper called the opening a major milestone that proves large offshore wind farms can be built, both in the United States and in other countries with little or no offshore wind energy currently.

Another large U.S. offshore wind farm began producing energy in January, with plans to eventually power 62 turbines, enough to generate electricity for 400,000 homes.
Printer

Your Next Pair of Walmart Pants Could Be 3D Woven (wired.com) 38

An anonymous reader quotes a report from Wired: We've been ableto design and 3D-print plastic phone cases and toys at home for a decade now. For almost every other consumer product made in a factory, the robots have taken over the heavy lifting. But fashion is still stuck in the 20th century. Take a typical pair of chinos. Cotton threads are woven on a large loom at a mill somewhere in Asia, then shipped to a dye house, then shipped (usually a great distance) to a garment factory somewhere else in Asia. There, the fabric is laid flat and cut into shapes, with the excess fabric being landfilled, incinerated, or (very rarely) recycled. Underpaid and exploited garment workers hand-sew those pieces of fabric into pants, which are then shipped across the ocean to a fulfillment warehouse or a store near you. This global apparel supply chain is inefficient and emissions-heavy -- an estimated 4 percent of global waste and 2 to 4 percent of greenhouse gas emissions are attributed to fashion production. Brands have to make risky predictions many months in advance about which items will sell, leading them to over order on a massive scale.

Now, Walmart is piloting a project with the San Francisco Bay area startup Unspun to test whether it can manufacture the retailer's in-house brand of chinos in the US using a technology called 3D weaving. The experiment is part of a push to nearshore Walmart's supply chain and cut down on emissions and waste associated with textile production. While still very much in the prototype phase -- the two companies are exploring how to use Unspun's technology to supply pants to Walmart's stores -- if successful, this project could upend the way apparel is manufactured on a huge scale. Unspun hopes to eventually deploy 3D weaving micro-factories throughout the United States, so that anyone can order custom and locally made apparel on demand.

AI

Cognition Emerges From Stealth To Launch AI Software Engineer 'Devin' (venturebeat.com) 95

Longtime Slashdot reader ahbond shares a report from VentureBeat: Today, Cognition, a recently formed AI startup backed by Peter Thiel's Founders Fund and tech industry leaders including former Twitter executive Elad Gil and Doordash co-founder Tony Xu, announced a fully autonomous AI software engineer called "Devin." While there are multiple coding assistants out there, including the famous Github Copilot, Devin is said to stand out from the crowd with its ability to handle entire development projects end-to-end, right from writing the code and fixing the bugs associated with it to final execution. This is the first offering of this kind and even capable of handling projects on Upwork, the startup has demonstrated. [...]

In a blog post today on Cognition's website, Scott Wu, the founder and CEO of Cognition and an award-winning sports coder, explained Devin can access common developer tools, including its own shell, code editor and browser, within a sandboxed compute environment to plan and execute complex engineering tasks requiring thousands of decisions. The human user simply types a natural language prompt into Devin's chatbot style interface, and the AI software engineer takes it from there, developing a detailed, step-by-step plan to tackle the problem. It then begins the project using its developer tools, just like how a human would use them, writing its own code, fixing issues, testing and reporting on its progress in real-time, allowing the user to keep an eye on everything as it works. [...]

According to demos shared by Wu, Devin is capable of handling a range of tasks in its current form. This includes common engineering projects like deploying and improving apps/websites end-to-end and finding and fixing bugs in codebases to more complex things like setting up fine-tuning for a large language model using the link to a research repository on GitHub or learning how to use unfamiliar technologies. In one case, it learned from a blog post how to run the code to produce images with concealed messages. Meanwhile, in another, it handled an Upwork project to run a computer vision model by writing and debugging the code for it. In the SWE-bench test, which challenges AI assistants with GitHub issues from real-world open-source projects, the AI software engineer was able to correctly resolve 13.86% of the cases end-to-end -- without any assistance from humans. In comparison, Claude 2 could resolve just 4.80% while SWE-Llama-13b and GPT-4 could handle 3.97% and 1.74% of the issues, respectively. All these models even required assistance, where they were told which file had to be fixed.
Currently, Devin is available only to a select few customers. Bloomberg journalist Ashlee Vance wrote a piece about his experience using it here.

"The Doom of Man is at hand," captions Slashdot reader ahbond. "It will start with the low-hanging Jira tickets, and in a year or two, able to handle 99% of them. In the short term, software engineers may become like bot farmers, herding 10-1000 bots writing code, etc. Welcome to the future."
Ubuntu

'Canonical Turns 20: Shaping the Ubuntu Linux World' (zdnet.com) 38

"2004 was already an eventful year for Linux," writes ZDNet's Jack Wallen. "As I reported at the time, SCO was trying to drive Linux out of business. Red Hat was abandoning Linux end-user fans for enterprise customers by closing down Red Hat Linux 9 and launching the business-friendly Red Hat Enterprise Linux (RHEL). Oh, and South African tech millionaire and astronaut Mark Shuttleworth [also a Debian Linux developer] launched Canonical, Ubuntu Linux's parent company.

"Little did I — or anyone else — suspect that Canonical would become one of the world's major Linux companies."

Mark Shuttleworth answered questions from Slashdot reader in 2005 and again in 2012. And this year, Canonical celebrates its 20th anniversary. ZDNet reports: Canonical's purpose, from the beginning, was to support and share free software and open-source software... Then, as now, Ubuntu was based on Debian Linux. Unlike Debian, which never met a delivery deadline it couldn't miss, Ubuntu was set to be updated to the latest desktop, kernel, and infrastructure with a new release every six months. Canonical has kept to that cadence — except for the Ubuntu 6.06 release — for 20 years now...

Released in October 2004, Ubuntu Linux quickly became synonymous with ease of use, stability, and security, bridging the gap between the power of Linux and the usability demanded by end users. The early years of Canonical were marked by rapid innovation and community building. The Ubuntu community, a vibrant and passionate group of developers and users, became the heart and soul of the project. Forums, wikis, and IRC channels buzzed with activity as people from all over the world came together to contribute code, report bugs, write documentation, and support each other....

Canonical's influence extends beyond the desktop. Ubuntu Linux, for example, is the number one cloud operating system. Ubuntu started as a community desktop distribution, but it's become a major enterprise Linux power [also widely use as a server and Internet of Things operating system.]

The article notes Canonical's 2011 creation of the Unity desktop. ("While Ubuntu Unity still lives on — open-source projects have nine lives — it's now a sideline. Ubuntu renewed its commitment to the GNOME desktop...")

But the article also argues that "2016, on the other hand, saw the emergence of Ubuntu Snap, a containerized way to install software, which --along with its rival Red Hat's Flatpak — is helping Linux gain some desktop popularity."
AI

EA Says Generative AI Could Make It 30% More Efficient (videogameschronicle.com) 46

EA CEO Andrew Wilson believes generative AI will "revolutionize" the gaming industry over the next five years. He predicts that the technology will allow for more efficient content creation, reducing development time from months to days. From a report: Greater efficiency coupled with "deeper, more immersive experiences" will lead to significant audience expansion over the next few years and provide a "multi-billion dollar" growth opportunity, he said. Wilson said that in the past it might take six months to build an in-game sports stadium. Over the last 12 months, that time has shrunk to six weeks, and over the coming years it could maybe be cut to six days.

And while FIFA 23 has 12 run cycles for how the players move in the game, EA Sports FC 24 has 1,200 created with generative AI. Over the next five years, Wilson hopes that generative AI will make EA's development 30% more efficient, help grow its 700 million-strong player base by "at least" 50%, and lead to players spending 10-20% more money on its games. "What we've seen every time there's been a meaningful technological advancement in media and in technology, where you are able to democratise an industry and hand it over to the population at large, incredible things happen," he said.

AI

'AI Prompt Engineering Is Dead' 68

The hype around AI language models has companies scrambling to hire prompt engineers to improve their AI queries and create new products. But new research hints that the AI may be better at prompt engineering than humans, indicating many of these jobs could be short-lived as the technology evolves and automates the role. IEEE Spectrum: Battle and Gollapudi decided to systematically test [PDF] how different prompt engineering strategies impact an LLM's ability to solve grade school math questions. They tested three different open source language models with 60 different prompt combinations each. What they found was a surprising lack of consistency. Even chain-of-thought prompting sometimes helped and other times hurt performance. "The only real trend may be no trend," they write. "What's best for any given model, dataset, and prompting strategy is likely to be specific to the particular combination at hand."

There is an alternative to the trial-and-error style prompt engineering that yielded such inconsistent results: Ask the language model to devise its own optimal prompt. Recently, new tools have been developed to automate this process. Given a few examples and a quantitative success metric, these tools will iteratively find the optimal phrase to feed into the LLM. Battle and his collaborators found that in almost every case, this automatically generated prompt did better than the best prompt found through trial-and-error. And, the process was much faster, a couple of hours rather than several days of searching.
Encryption

Signal's New Usernames Help Keep Cops Out of Your Data (theintercept.com) 39

Longtime Slashdot reader SonicSpike shares a report from The Intercept: With the new version of Signal, you will no longer broadcast your phone number to everyone you send messages to by default, though you can choose to if you want. Your phone number will still be displayed to contacts who already have it stored in their phones. Going forward, however, when you start a new conversation on Signal, your number won't be shared at all: Contacts will just see the name you use when you set up your Signal profile. So even if your contact is using a custom Signal client, for example, they still won't be able to discover your phone number since the service will never tell it to them.

You also now have the option to set a username, which Signal lets you change whenever you want and delete when you don't want it anymore. Rather than directly storing your username as part of your account details, Signal stores a cryptographic hash of your username instead; Signal uses the Ristretto 25519 hashing algorithm, essentially storing a random block of data instead of usernames themselves. This is like how online services can confirm a user's password is valid without storing a copy of the actual password itself. "As far as we're aware, we're the only messaging platform that now has support for usernames that doesn't know everyone's usernames by default," said Josh Lund, a senior technologist at Signal. The move is yet another piece of the Signal ethos to keep as little data on hand as it can, lest the authorities try to intrude on the company. Whittaker explained, "We don't want to be forced to enumerate a directory of usernames." [...]

If Signal receives a subpoena demanding that they hand over all account data related to a user with a specific username that is currently active at the time that Signal looks it up, they would be able to link it to an account. That means Signal would turn over that user's phone number, along with the account creation date and the last connection date. Whittaker stressed that this is "a pretty narrow pipeline that is guarded viciously by ACLU lawyers," just to obtain a phone number based on a username. Signal, though, can't confirm how long a given username has been in use, how many other accounts have used it in the past, or anything else about it. If the Signal user briefly used a username and then deleted it, Signal wouldn't even be able to confirm that it was ever in use to begin with, much less which accounts had used it before.

In short, if you're worried about Signal handing over your phone number to law enforcement based on your username, you should only set a username when you want someone to contact you, and then delete it afterward. And each time, always set a different username. Likewise, if you want someone to contact you securely, you can send them your Signal link, and, as soon as they make contact, you can reset the link. If Signal receives a subpoena based on a link that was already reset, it will be impossible for them to look up which account it was associated with. If the subpoena demands that Signal turn over account information based on a phone number, rather than a username, Signal could be forced to hand over the cryptographic hash of the account's username, if a username is set. It would be difficult, however, for law enforcement to learn the actual username itself based on its hash. If they already suspect a username, they could use the hash to confirm that it's real. Otherwise, they would have to guess the username using password cracking techniques like dictionary attacks or rainbow tables.

Government

Oregon OKs Right-To-Repair Bill That Bans the Blocking of Aftermarket Parts (arstechnica.com) 75

An anonymous reader quotes a report from Ars Technica: Oregon has joined the small but growing list of states that have passed right-to-repair legislation. Oregon's bill stands out for a provision that would prevent companies from requiring that official parts be unlocked with encrypted software checks before they will fully function. Bill SB 1596 passed Oregon's House by a 42 to 13 margin. Gov. Tina Kotek has five days to sign the bill into law. Consumer groups and right-to-repair advocates praised the bill as "the best bill yet," while the bill's chief sponsor, state Sen. Janeen Sollman (D), pointed to potential waste reductions and an improved second-hand market for closing a digital divide.

"Oregon improves on Right to Repair laws in California, Minnesota and New York by making sure that consumers have the choice of buying new parts, used parts, or third-party parts for the gadgets and gizmos," said Gay Gordon-Byrne, executive director of Repair.org, in a statement. Like bills passed in New York, California, and Minnesota, Oregon's bill requires companies to offer the same parts, tools, and documentation to individual and independent repair shops that are already offered to authorized repair technicians. Unlike other states' bills, however, Oregon's bill doesn't demand a set number of years after device manufacture for such repair implements to be produced. That suggests companies could effectively close their repair channels entirely rather than comply with the new requirements. California's bill mandated seven years of availability.

If signed, the law's requirements for parts, tools, and documentation would apply to devices sold after 2015, except for phones, which are covered after July 2021. The prohibition against parts pairing only covers devices sold in 2025 and later. Like other repair bills, a number of device categories are exempted, including video game consoles, HVAC and medical gear, solar systems, vehicles, and, very specifically, "Electric toothbrushes."

NASA

Setback For Hopes of Life As NASA Says Less Oxygen On Jupiter Moon Than Thought (theguardian.com) 25

An anonymous reader quotes a report from The Guardian: New research suggests there's less oxygen on the icy surface of Jupiter's moon Europa than thought -- and that could affect what if any life might be lurking in Europa's underground ocean. Even with little or no oxygen, microbes might still be bustling around in the ocean believed to exist miles beneath Europa's frozen crust. As for what else, "who knows," said the Nasa scientist Kevin Hand, who was not involved in the study published on Monday in Nature Astronomy. More work is needed to confirm these findings, which are contrary to earlier telescope observations of condensed oxygen in Europa's ice, indicating a higher oxygen concentration, said Hand.

The new study is based on data collected by Nasa's Juno spacecraft during a particularly close flyby of Europa in 2022 -- a distance of just 219 miles (353km). A US-European team calculated that between 13 and 39lbs (6 and 18kg) of oxygen are produced every second at Europa's surface. Previous estimates had a much wider spread, with as much as 2,245 pounds (1,100 kilograms) of oxygen produced per second. So "unless Europa's oxygen production was significantly higher in the past," the new measurements provide "a narrower range to support habitability," the researchers wrote. This oxygen is formed, along with hydrogen, as Jupiter's radiation blasts Europa's global shell of frozen water. It is unknown how much oxygen escapes into the moon's atmosphere, how much remains in the ice and how much might find its way to the subterranean sea.
The report notes that NASA plans to launch the Europa Clipper this fall. "The spacecraft will make dozens of close flybys of Europa -- nearly the size of our moon -- while orbiting the giant gas planet."
IBM

Hands Up If You Want To Volunteer For Layoffs, IBM Tells Staff (theregister.com) 34

Paul Kunert writes in an exclusive report for The Register: IBM is asking staff who want to take voluntary redundancy to raise their hand as it embarks on a new round of global job cuts, though roles in Europe and within a handful of departments are expected to shoulder the brunt. The Resource Action, as Big Blue likes to euphemistically refer to layoffs, shouldn't be a massive surprise to anyone with more than a passing interest in IBM as it was signaled last month in a Q4 earnings call. Insiders told us this latest process is not considered to be financial but "transformative," although IBM was quite clear in January when CFO James Kavanaugh discussed achieving "$3 billion annual run rate in savings by the end of 2024." This is a third bigger than the initial ambition. The Reg understands that 80 percent of the reduction target is aimed at Enterprise Operations & Support (EO&S) and Q2C missions, Finance & Operations (including Procurement, CIO, HR, Marketing & Comms and Global Real Estate).

The European Works Council, one IBMer told us, has informed staff that circa 50 percent of IBM's reduction goal will impact staffing levels across the European continent. As if often the preferred route, IBM is seeking employees that are happy to take voluntary redundancy, rather than ditching someone that doesn't want to leave. The sources we spoke to did not reveal the total population in scope for redundancies or the numbers of volunteers being sought. IBM did not confirm the numbers either. [...] Slovakia, we're told, is to feel the tightest squeeze with around a third of IBM's cuts in Europe landing on its International (shared services) Center in Bratislava; the Center in Hungary that supports EO&S/ Q2C, as well as the Finance function in Bulgaria are also going to absorb what our sources described as the most dramatic staff reductions.

Software

Court Orders Maker of Pegasus Spyware To Hand Over Code To WhatsApp (theguardian.com) 53

Stephanie Kirchgaessner reports via The Guardian: NSO Group, the maker of one the world's most sophisticated cyber weapons, has been ordered by a US court to hand its code for Pegasus and other spyware products to WhatsApp as part of the company's ongoing litigation. The decision by Judge Phyllis Hamilton is a major legal victory for WhatsApp, the Meta-owned communication app which has been embroiled in a lawsuit against NSO since 2019, when it alleged that the Israeli company's spyware had been used against 1,400 WhatsApp users over a two-week period.

NSO's Pegasus code, and code for other surveillance products it sells, is seen as a closely and highly sought state secret. NSO is closely regulated by the Israeli ministry of defense, which must review and approve the sale of all licences to foreign governments. In reaching her decision, Hamilton considered a plea by NSO to excuse it of all its discovery obligations in the case due to "various US and Israeli restrictions."

Ultimately, however, she sided with WhatsApp in ordering the company to produce"all relevant spyware" for a period of one year before and after the two weeks in which WhatsApp users were allegedly attacked: from 29 April 2018 to 10 May 2020. NSO must also give WhatsApp information "concerning the full functionality of the relevant spyware." Hamilton did, however, decide in NSO's favor on a different matter: the company will not be forced at this time to divulge the names of its clients or information regarding its server architecture.

Privacy

Meta Will Start Collecting 'Anonymized' Data About Quest Headset Usage (arstechnica.com) 31

An anonymous reader quotes a report from Ars Technica: Meta will soon begin "collecting anonymized data" from users of its Quest headsets, a move that could see the company aggregating information about hand, body, and eye tracking; camera information; "information about your physical environment"; and information about "the virtual reality events you attend." In an email sent to Quest users Monday, Meta notes that it currently collects "the data required for your Meta Quest to work properly." Starting with the next software update, though, the company will begin collecting and aggregating "anonymized data about... device usage" from Quest users. That anonymized data will be used "for things like building better experiences and improving Meta Quest products for everyone," the company writes.

A linked help page on data sharing clarifies that Meta can collect anonymized versions of any of the usage data included in the "Supplemental Meta Platforms Technologies Privacy Policy," which was last updated in October. That document lists a host of personal information that Meta can collect from your headset, including:

- "Your audio data, when your microphone preferences are enabled, to animate your avatar's lip and face movement"
- "Certain data" about hand, body, and eye tracking, "such as tracking quality and the amount of time it takes to detect your hands and body"
- Fitness-related information such as the "number of calories you burned, how long you've been physically active, [and] your fitness goals and achievements"
- "Information about your physical environment and its dimensions" such as "the size of walls, surfaces, and objects in your room and the distances between them and your headset"
- "Voice interactions" used when making audio commands or dictations, including audio recordings and transcripts that might include "any background sound that happens when you use those services" (these recordings and transcriptions are deleted "immediately" in most cases, Meta writes)
- Information about "your activity in virtual reality," including "the virtual reality events you attend"

The anonymized collection data is used in part to "analyz[e] device performance and reliability" to "improve the hardware and software that powers your experiences with Meta VR Products." Meta's help page also lists a small subset of "additional data" that headset users can opt out of sharing with Meta. But there's no indication that Quest users can opt out of the new anonymized data collection policies entirely. These policies only seem to apply to users who make use of a Meta account to access their Quest headsets, and those users are also subject to Meta's wider data-collection policies. Those who use a legacy Oculus account are subject to a separate privacy policy that describes a similar but more limited set of data-collection practices.

AI

Bankers Will See AI Transform Three-Quarters of Day, Study Says (bnnbloomberg.ca) 36

AI is likely to replace or at least lend a hand in tasks that take up almost three-quarters of the time bank employees now spend working. From a report: That's the conclusion of a new analysis by consultancy Accenture, which said banking has the potential to benefit more from the technology than any other industry. Just 27% of employees' time currently has a low potential of being transformed, according to the analysis. "There is a reinvention that is happening across banks, a way for firms to step back and re-evaluate ways of working," Keri Smith, global banking data and AI lead at Accenture, said in an interview.

The release of ChatGPT more than a year ago prompted many firms to boost hiring for AI-related positions and test more uses for generative AI, which can summarize documents, write emails and churn out responses to users' questions. The world's biggest banks have been experimenting, spurred by the promise that the technology will boost staffers' productivity and cut costs. "Every bank needs to think through their talent strategy, and how to take this technology to scale," Smith said. At Citigroup, all 40,000 coders will have the ability to experiment with different AI technologies by the end of March. Analysts at Bank of New York Mellon can wake up two hours later to write their research, because AI technology can create a rough draft and prepare related data for them overnight, Chief Executive Officer Robin Vince said on an earnings call last month.

Cloud

Service Mesh Linkerd Moves Its Stable Releases Behind a Paywall (techtarget.com) 13

TechTarget notes it was Linkerd's original developers who coined the term "service mesh" — describing their infrastructure layer for communication between microservices.

But "There has to be some way of connecting the businesses that are being built on top of Linkerd back to funding the project," argues Buoyant CEO William Morgan. "If we don't do that, then there's no way for us to evolve this project and to grow it in the way that I think we all want."

And so, TechTarget reports... Beginning May 21, 2024, any company with more than 50 employees running Linkerd in production must pay Buoyant $2,000 per Kubernetes cluster per month to access stable releases of the project...

The project's overall source code will remain available in GitHub, and edge, or experimental early releases of code, will continue to be committed to open source. But the additional work done by Buoyant developers to backport minimal changes so that they're compatible with existing versions of Linkerd and to fix bugs, with reliability guarantees, to create stable releases will only be available behind a paywall, Morgan said... Morgan said he is prepared for backlash from the community about this change. In the last section of a company blog post FAQ about the update, Morgan included a question that reads, in part, "Who can I yell at...?"

But industry watchers flatly pronounced the change a departure from open source. "By saying, 'Sorry but we can no longer afford to hand out a production-ready product as free open source code,' Buoyant has removed the open source character of this project," said Torsten Volk, an analyst at Enterprise Management Associates. "This goes far beyond the popular approach of offering a managed version of a product that may include some additional premium features for a fee while still providing customers with the option to use the more basic open source version in production." Open source developers outside Buoyant won't want to contribute to the project — and Buoyant's bottom line — without receiving production-ready code in return, Volk predicted.

Morgan conceded that these are potentially valid concerns and said he's open to finding a way to resolve them with contributors... "I don't think there's a legal argument there, but there's an unresolved tension there, similar to testing edge releases — that's labor just as much as contributing is. I don't have a great answer to that, but it's not unique to Buoyant or Linkerd."

And so, "Starting in May, if you want the latest stable version of the open source Linkerd to download and run, you will have to go with Buoyant's commercial distribution," according to another report (though "there are discounts for non-profits, high-volume use cases, and other unique needs.") The Cloud Native Computing Foundation manages the open source project. The copyright is held by the Linkerd authors themselves. Linkerd is licensed under the Apache 2.0 license.

Buoyant CEO William Morgan explained in an interview with TNS that the changes in licensing are necessary to continue to ensure that Linkerd runs smoothly for enterprise users. Packaging the releases has also been demanding a lot of resources, perhaps even more than maintaining and advancing the core software itself, Morgan explained. He likened the approach to how Red Hat operates with Linux, which offers Fedora as an early release and maintains its core Linux offering, Red Hat Enterprise Linux (RHEL) for commercial clients.

"If you want the work that we put into the stable releases, which is predominantly around, not just testing, but also minimizing the changes in subsequent releases, that's hard hard work" requiring input from "world-leading experts in distributed systems," Morgan said.

"Well, that's kind of the dark, proprietary side of things."

AT&T

AT&T Restores Service After Massive, Nationwide Outage (cnn.com) 55

An anonymous reader quotes a report from CNN Business: AT&T's network went down for many of its customers across the United States Thursday morning, leaving customers unable to place calls, text or access the internet. By a little after 3 pm ET, roughly 11 hours after reports of the outage first emerged, the company said that it had restored service to all impacted customers. "We have restored wireless service to all our affected customers. We sincerely apologize to them," AT&T said in a statement. The company added that it is "taking steps to ensure our customers do not experience this again in the future."

The Federal Communications Commission confirmed Thursday afternoon that it is investigating the outage. The White House says federal agencies are in touch with AT&T about network outages but that it doesn't have all the answers yet on what exactly led to the interruptions. Although Verizon and T-Mobile customers reported some network outages, too, they appeared far less widespread. T-Mobile and Verizon said their networks were unaffected by AT&T's service outage and customers reporting outages may have been unable to reach customers who use AT&T.

Thursday morning, more than 74,000 AT&T customers reported outages on digital-service tracking site DownDetector, with service disruptions beginning around 4 am ET. That's not a comprehensive number: It tracks only self-reported outages. Reports had been rising steadily throughout the morning but leveled off in the 9 am ET hour. By 12:30 pm ET, the DownDetector data showed some 25,000 AT&T customers still reporting outages. By 2 pm ET, fewer than 5,000 customers were still reporting issues. Earlier Thursday, AT&T acknowledged that it had a widespread outage but did not provide a reason for the system failure. By late morning, AT&T said most of its network was back online, and it confirmed Thursday afternoon that service was fully restored.
According to an anonymous industry source, the issue for the outage appears to be related to how cellular services hand off calls from one network to the next, a process known as peering. They said there's no indication that it was the result of a cyberattack or other malicious activity.

The FCC confirmed that it is investigating the incident. "We are aware of the reported wireless outages, and our Public Safety and Homeland Security Bureau is actively investigating," the FCC said in a statement posted on X. "We are in touch with AT&T and public safety authorities, including FirstNet, as well as other providers."
Hardware

Zuckerberg: Neural Wristband For AR/VR Input Will Ship 'In the Next Few Years' (uploadvr.com) 30

Meta CEO Mark Zuckerberg said that it's working on a finger tracking neural wristband that will be ready to ship "in the next few years." UploadVR reports: Appearing on the Morning Brew Daily talk show on Friday, Mark Zuckerberg said "we're actually kind of close to having something here that we're going to have in a product in the next few years." [...] An entirely different approach to finger tracking is to sense the neural electrical signals passing through your wrist to your fingers from your brain, using a technique called electromyography (EMG). Theoretically this could have zero or even negative latency, perfect accuracy, work regardless of lighting conditions, and not be subject to occlusion. When discussing the technology in 2021 Reardon claimed that a recent breakthrough enabled decoding the activity of individual neurons for "almost infinite control over machines." Occlusion-free finger tracking of this quality and reliability could enable precise control of complex interfaces with incredibly subtle movements of your hand resting on your lap, making it an ideal input method for headsets and AR glasses. [...]

So how will this arrive in a Meta product? In early 2023 an internal Meta AR/VR hardware roadmap leaked to The Verge, revealing details about Quest 3, the existence of the headset now rumored to be called Quest 3 Lite, and the cancelation of the 2024 candidate for Quest Pro 2 in favor of a more ambitious but "way out" model. But this roadmap also mentioned that Meta was planning to release the neural wristband alongside the third generation Ray-Ban smartglasses in 2025 as the input method.

According to that roadmap, two models of the wristband will be offered at different price points - one with the neural input tech only and another that also has a display and camera to act as a smartwatch too. A second generation of the wristband will also apparently act as the input device for the true AR glasses Meta plans to launch in 2027. We should however note that this plan or the timeline may have changed in the year since.

Games

How One Developer Earned Over $300K From Games Made in 30 Minutes (theguardian.com) 70

An anonymous reader shares a report: "The first one, I'll be honest, probably took seven or eight hours," says TJ Gardner. "But the subsequent ones -- Stroke the Beaver, for example -- would have taken about half an hour." Gardner is the creator of the "Stroke" video games, available to download from the PlayStation Store for $4 a pop. Each one features a different animal -- cats, dogs and hamsters, along with less cuddly creatures such as snakes and fish -- and they all follow the same blueprint.

When you start the game, an image of the animal appears against a plain blue background. In the top left-hand corner of the screen are the words "Strokes 0." You press X to stroke the animal. The animal flashes briefly. The number in the corner goes up by 1. After 25 strokes, you are rewarded with a bronze trophy. Keep going until you hit 2,000 strokes, and you will receive a platinum award. That's it. There is no animation; there are no sound effects. Just a picture of an animal under a Creative Commons licence from Wikipedia, and some lo-fi acoustic beats looping endlessly in the background. No running, no jumping, no guns, no baddies, no special moves or power-ups or puzzles. Are the Stroke games even video games at all?
The Stroke games, launched in September 2022, have been downloaded more than 120,000 times, amassing nearly $350,000 in sales. Sony takes a 30% cut for hosting the game in the PlayStation Store, leaving Gardner with a pre-tax profit of about $240,000.

Slashdot Top Deals