Hardware

Big Money, Big Dreams, Big Expectations and a Lot of Hype: Magic Leap One AR Headset Goes on Sale for $2,295 in Certain US Markets (cnet.com) 62

After earning the moniker "tech's most secretive startup" from Wired and telling Forbes in 2016 it was going to ship its system "soon-ish," the company is finally releasing the $2,295 Magic Leap One. For now, it will be available for purchase in limit U.S. markets. CNET: It includes a high-powered, moon pie-shaped computer called the Lightpack, a handheld remote called Control and a steampunk-inspired headset with round lenses and patented optics. That's called Lightwear. There's just one thing: Regular folks like us aren't the intended audience. At least not yet. This "Creator Edition," says CEO Abovitz, is part of a "controlled market release" in just a handful of cities in the United States for the developers and creative types Magic Leap will woo this year and next. The goal: for those makers to dream up the experiences (aka content) it needs to convince us to become Leapers. The company is already showing investors and partners prototypes of its smaller (and hopefully less expensive) Magic Leap Two and Magic Leap Three, but won't say when they'll be released. Magic Leap, valued at $6.3 billion as of two months ago, counts Google, Alibaba, Warner Bros, AT&T, and several top Silicon Valley venture capital firms and about a dozen other big names as its investors. More about the product going on sale here.
Iphone

Apple Tells Lawmakers iPhones Are Not Listening In On Consumers (reuters.com) 214

An anonymous reader quotes a report from Reuters: Apple told U.S. lawmakers on Tuesday that its iPhones do not listen to users without their consent and do not allow third-party apps to do so either, after lawmakers asked the company if its devices were invading users' privacy. Representatives Greg Walden, Marsha Blackburn, Gregg Harper and Robert Latta wrote to Apple's chief executive Tim Cook and Alphabet chief executive Larry Page in July, citing concerns about reports that smartphones could "collect 'non-triggered' audio data from users' conversations near a smartphone in order to hear a 'trigger' phrase, such as 'Okay Google' or 'Hey Siri.'"

In a letter to Walden, an Oregon Republican who chairs the House Energy and Commerce Committee, Apple said iPhones do not record audio while listening for Siri wakeup commands and Siri does not share spoken words. Apple said it requires users to explicitly approve microphone access and that apps must display a clear signal that they are listening.

Medicine

Women Die More From Heart Attacks Than Men -- Unless the ER Doc Is Female (scientificamerican.com) 275

Women who suffer from heart attacks may be at a higher risk of death in the emergency room if they see a male physician rather than a female one, a new study suggests. The study doesn't jump to conclusions, but doctors and cardiologists have a few theories. There could be a systematic bias where male physicians are not listening to female patients' complaints as readily as [those of] a man, or there could be a bias that favors men in the medical literature, leading to misdiagnoses in women. It may also be that female doctors do a better job than their male counterparts. "In the new study everyone was more likely to survive if they saw a female physician, and a study published last year [...] indicated all patients of female physicians had lower mortality and hospital readmission rates," reports Scientific American. From the report: Heart disease is the number-one killer of both men and women, but the latter are significantly less likely to survive heart attacks. According to 2016 American Heart Association statement, 26 percent of women will die within a year of a heart attack compared with just 19 percent of men. The gap widens with time: By five years after a heart attack almost half of women die, compared with 36 percent of men. The reason has eluded researchers for years, but the authors of the new study point to the disparity in male and female representation in emergency doctors as a potential source of answers. The researchers analyzed a Florida Agency for Health Care Administration database containing every heart attack case from every ER in the state (excluding Veterans Affairs hospitals) between 1991 and 2010.

The researchers divided 500,000-plus cases into four categories: male doctors treating men; male doctors treating women; female doctors treating men; and female doctors treating women. "All of those are statistically indistinguishable except for male doctor -- female patient," says Brad Greenwood, an author on the study and a data scientist at the University of Minnesota. If a heart attack patient is a woman and her emergency physician is a man, he says, her risk of death suddenly rises by about 12 percent. Put another way, a heart attack patient dies in the ER about 11.9 percent of the time overall -- but the research team found women with heart attacks will die about 12.4 percent of the time if their cases are handled by male doctors. This means approximately one out of every 66 women with heart attacks dies in the emergency room if she sees a male doctor rather than a female one.

Cloud

Oracle Challenges Pentagon's $10 Billion Cloud Computing Contract (theregister.co.uk) 101

Oracle has filed an official complaint with the U.S. government over plans to award the Pentagon's lucrative cloud contract to a single vendor. Rebecca Hill writes via The Register: The Joint Enterprise Defense Infrastructure (JEDI) contract, which has a massive scope, covering different levels of secrecy and classification across all branches of the military, will run for a maximum of 10 years and is worth a potential $10 billion. In spite of this pressure from vendors and the tech lobby -- as well as concerns from Congress -- the US Department of Defense (DoD) refused to budge, and launched a request for proposals (RFP) at the end of last month. Oracle is less than impressed with the Pentagon's failure to back down, and this week filed a bid protest to congressional watchdog the Government Accountability Office asking for the RFP to be amended.

In the protest, the database goliath sets out its arguments against a single vendor award -- broadly that it could damage innovation, competition, and security. Reading between the lines, it doesn't want either of Amazon or Microsoft or Google to get the whole pie to itself, and thus endanger Oracle's cosiness with Uncle Sam. Summing up its position in a statement to The Register, Oracle said that JEDI "virtually assures DoD will be locked into legacy cloud for a decade or more" at a time when cloud technology is changing at an unprecedented pace.

Security

The Internal Report Proving the FCC Made Up a Cyberattack (gizmodo.com) 134

An anonymous reader quotes a report from Gizmodo: An investigation carried out by Federal Communication Commission's own inspector general officially refutes controversial claims that a cyberattack was responsible for disrupting the FCC's comment system in May 2017, at the height of the agency's efforts to kill off net neutrality. The investigation also uncovered that FCC officials had provided congressional lawmakers with misleading information regarding conversations between an FCC employee and the Federal Bureau of Investigation's cybercrime task force. A report from the inspector general's office (OIG) released Tuesday afternoon states that the comment system's downtime was likely caused by a combination of "system design issues" and a massive surge in traffic caused when Last Week Tonight host John Oliver directed millions of TV viewers to flood the FCC's website with pro-net neutrality comments.

Investigators were unable to "substantiate the allegations of multiple DDoS attacks" alleged by then-FCC Chief Information Officer David Bray, the report says. "At best, the published reports were the result of a rush to judgment and the failure to conduct analyses needed to identify the true cause of the disruption to system availability." [Here's an excerpt from the report:] "While we identified a small amount of anomalous activity and could not entirely rule out the possibility of individual DoS attempts during the period from May 7 through May 9, 2017, we do not believe this activity resulted in any measurable degradation of system availability given the minuscule scale of the anomalous activity relative to the contemporaneous voluminous viral traffic."
Yesterday, before the report was released, FCC chairman Ajit Pai came clean on the fact that the hack of its comment system last year actually took place. Pai blamed the former chief information officer and the Obama administration for providing "inaccurate information about the incident to me, my office, Congress, and the American people."
Government

Cities' Offers For Amazon Base Are Secrets Even To Many City Leaders (nytimes.com) 142

The location for Amazon's second headquarters is shrouded in secrecy, so much so that many city leaders are unaware of the financial incentives their cities used to entice Amazon (Warning: source may be paywalled; alternative source). The New York Times reports: Across the country, the search for HQ2, as the project has been nicknamed, is shrouded in secrecy. Even civic leaders can't find out what sort of tax credits and other inducements have been promised to Amazon. And there is a growing legal push to find out, because taxpayers could get saddled with a huge bill and have little chance to stop it. A primary reason for the information blackout is that, in many cases, the bids were handled by local private Chamber of Commerce affiliates or economic development groups that aren't required to make their negotiations public. Many of the groups are also not covered by Freedom of Information Act or state open-records requests.

But another reason is gamesmanship. Some cities say they want their Amazon proposals to remain confidential to avoid showing their hand to rivals. And Amazon required the finalists to sign nondisclosure agreements that forbid the local groups to release proprietary information about the company. With so much secrecy -- and bids like Austin's that involve unelected officials making promises -- there is the risk that taxpayers and their civic leaders will be forced to accept the proposed terms or live with turning down an enormously lucrative opportunity. Amazon, which is expected to make $235 billion in revenue this year, promises to bring the winning location up to 50,000 high-paying jobs and a $5 billion investment in construction.

Science

Plan To Replicate 50 High-Impact Cancer Papers Shrinks To Just 18 (sciencemag.org) 29

Five years ago, researchers set out to replicate experiments from 50 high-impact cancer biology papers. Now, due to various challenges relating to a lack of funding and expertise, the project only expects to complete just 18 studies. Science Magazine reports: The Reproducibility Project: Cancer Biology (RP:CP) began in October 2013 as an open effort to test replicability after two drug companies reported they had trouble reproducing many cancer studies. The work was a collaboration with Science Exchange, a company based in Palo Alto, California, that found contract labs to reproduce a few key experiments from each paper. Funding included a $1.3 million grant from the Laura and John Arnold Foundation, enough for about $25,000 per study. Experiments were expected to take 1 year.

Costs rose and delays ensued as organizers realized they needed more information and materials from the original authors; a decision to have the proposed replications peer reviewed also added time. Organizers whittled the list of papers to 37 in late 2015, then to 29 by January 2017. In the past few months, they decided to discontinue 38% or 11 of the ongoing replications, Errington says. (Elizabeth Iorns, president of Science Exchange, says total costs for the 18 completed studies averaged about $60,000, including two high-priced "outliers.") One reason for cutting off some replications was that it was taking too long to troubleshoot or optimize experiments to get meaningful results...
So far, the project has published replication results for 10 of the 18 studies. "Five were mostly repeatable, three were inconclusive, and two studies were negative, but the original findings have been confirmed by other labs," reports Science Magazine. "In fact, many of the initial 50 papers have been confirmed by other groups, as some of the RP:CB's critics have pointed out."
Social Networks

Hacker Posts Snapchat Source Code To GitHub (thenextweb.com) 49

tacarat shares a report from The Next Web with the caption, "Oops": A GitHub with the handle i5xx, believed to be from the village of Tando Bago in Pakistan's southeastern Sindh province, created a GitHub repository called Source-Snapchat. At the time of writing, the repo has been removed by GitHub following a DMCA request from Snap Inc, so we can't take a closer look and see what it contains. That said, there are a few clues to its contents. The repository has a description of "Source Code for SnapChat," and is written in Apple's Objective-C programming language. This strongly suggests that the repo contained part or whole of the company's iOS application, although there's no way we can know for certain. It could just as easily be a minor component to the service, or a separate project from the company.

The most fascinating part of this saga is that the leak doesn't appear to be malicious, but rather comes from a researcher who found something, but wasn't able to communicate his findings to the company. According to several posts on a Twitter account believed to belong to i5xx, the researcher tried to contact SnapChat, but was unsuccessful. "The problem we tried to communicate with you but did not succeed In that we decided [sic] Deploy source code," wrote i5xx. The account also threatened to re-upload the source code. "I will post it again until you reply :)," he said.
A Snap spokesperson said in a statement: "An iOS update in May exposed a small amount of our source code and we were able to identify the mistake and rectify it immediately. We discovered that some of this code had been posted online and it has been subsequently removed. This did not compromise our application and had no impact on our community."

According to Motherboard, some researchers appear to be trading the data privately.
Bug

TCP Flaw Lets Remote Attackers Stall Devices With Tiny DoS Attack (zdnet.com) 54

An anonymous reader quotes a report from ZDNet: Security researchers are warning Linux system users of a bug in the Linux kernel version 4.9 and up that could be used to hit systems with a denial-of-service attack on networking kit. The warning comes from Carnegie Mellon University's CERT/CC, which notes that newer versions of the Linux kernel can be "forced to make very expensive calls to tcp_collapse_ofo_queue() and tcp_prune_ofo_queue() for every incoming packet which can lead to a denial of service (DoS)".

It lists a number of network-equipment vendors, PC and server manufacturers, mobile vendors, and operating-system makers that may be affected but notes that it hasn't confirmed whether any of them actually are. But, given the widespread use of Linux, the bug could affect every vendor from Amazon and Apple through to Ubuntu and ZyXEL. A remote attacker could cause a DoS by sending specially modified packets within ongoing TCP sessions. But sustaining the DoS condition would mean an attacker needs to have continuous two-way TCP sessions to a reachable and open port.
The bug, dubbed "SegmentSmack" by Red Hat, has "no effective workaround/mitigation besides a fixed kernel."
Privacy

NEC Unveils Facial Recognition System For 2020 Tokyo Olympics (theverge.com) 25

NEC, a Japanese IT and networking company, announced plans to provide a large-scale facial recognition system for the 2020 Summer Olympic and Paralympic Games in Tokyo. "The system will be used to identify over 300,000 people at the games, including athletes, volunteers, media, and other staff," reports The Verge. From the report: NEC's system is built around an AI engine called NeoFace, which is part of the company's overarching Bio-IDiom line of biometric authentication technology. The Tokyo 2020 implementation will involve linking photo data with an IC card to be carried by accredited people. NEC says that it has the world's leading face recognition tech based on benchmark tests from the US's National Institute of Standards and Technology. NEC demonstrated the technology in Tokyo today, showing how athletes and other staff wouldn't be able to enter venues if they were holding someone else's IC card. The company even brought out a six-foot-eight former Olympic volleyball player to demonstrate that the system would work with people of all heights, though he certainly had to stoop a bit. It worked smoothly with multiple people moving through it quickly; the screen displayed the IC card holder's photo almost immediately after.
Science

Europe's Heatwave is Forcing Nuclear Power Plants To Shut Down (qz.com) 281

Europe's heatwave -- which led to wildfires in Greece and Sweden, droughts in central and northern parts, and made the normally green UK look brown from space -- is forcing nuclear plants to shut down or curtail the amount of power they produce, local media reports. From a report: French utility EDF shut four reactors at three power plants on Saturday, Swedish utility Vattenfall shut one of two reactors at a power plant earlier last week, and nuclear plants in Finland, Germany, and Switzerland have cut back the amount of power they produce. Thermal power plants, such as nuclear or coal, use high-temperature steam to turn turbines, which convert heat energy into electricity. In the process, the steam's temperature falls, so it can no longer be used to move the turbine again. [...] Europe's heatwave, however, hasn't just increased air temperatures but also water temperatures.
Social Networks

Online Photos Can't Simply Be Republished, EU Court Rules (politico.eu) 154

The European Court of Justice ruled Tuesday that internet users must ask for a photographer's permission before posting their images online, even if the photos were already freely accessible on other websites. "The posting on a website of a photograph that was freely accessible on another website with the consent of the author requires a new authorization by that author," the EU's top court said in a statement. Politico reports: The court had been asked to decide on a case in Germany, in which a secondary school student downloaded and used a photo that had been freely accessible on a travel website for a school project. The photo was later posted on the school's website as well. The photographer who took the picture argued the school's use of his photo was a copyright infringement because he only gave the travel site permission to use it, and claimed damages amounting to 400 euros (~$463). The ECJ ruled in the photographer's favor, saying that under the EU's Copyright Directive, the school should have gotten his approval before publishing the photo.
Verizon

Verizon 'Grossly Overstated' Its 4G LTE Coverage In Government Filings, Trade Group Says (arstechnica.com) 81

An anonymous reader quotes a report from Ars Technica: Verizon "grossly overstated" its 4G LTE coverage in government filings, potentially preventing smaller carriers from obtaining funding needed to expand coverage in underserved rural areas, a trade group says. The Federal Communications Commission last year required Verizon and other carriers to file maps and data indicating their current 4G LTE coverage. The information will help the FCC determine where to distribute up to $4.5 billion in Mobility Fund money over the next 10 years. The funds are set aside for "primarily rural areas that lack unsubsidized 4G," the FCC says. If Verizon provided the FCC with inaccurate data, the company's rural competitors might not be able to get that government funding. "Verizon's claimed 4G LTE coverage is grossly overstated," the Rural Wireless Association (RWA), which represents rural carriers, told the FCC in a filing yesterday. "Verizon should not be allowed to abuse the FCC challenge process by filing a sham coverage map as a means of interfering with the ability of rural carriers to continue to receive universal service support in rural areas," the RWA wrote. "RWA's members are in the middle of the Challenge Process but are expending enormous time and financial resources in their efforts due to inaccurate data submitted by Verizon," the group said. "RWA requests that the Commission investigate the 4G LTE coverage claimed by Verizon and require re-filing of Verizon's data to correct its overstated coverage."

According to the RWA, Verizon claims to cover almost all of the Oklahoma Panhandle, an area of 14,778.47 square kilometers, but estimates that the actual coverage area should be approximately 6,806.49 square kilometers. "[That's] not even half of the LTE coverage area Verizon publicly claims to serve," the RWA wrote.
Businesses

Only a Small Percentage of Users Buy Stuff Through Alexa, Report Claims (arstechnica.com) 67

Analysts have been aggressively optimistic in their predictions about the growth of consumer shopping via virtual assistants like Amazon's Alexa, but a new report claims that only a small fraction of Alexa device owners shop with voice commands. And most of those who do only try it once or stick to a limited range of products. From a report: Two people who have been briefed on Amazon's "internal figures" told tech business publication The Information that only around 2 percent of people who own Alexa-equipped devices like those in Amazon's Echo line have ever made a purchase with Alexa. Of that 2 percent, about 90 percent tried it once and did not attempt it again after that, one of The Information's sources said. And even those users who regularly use Alexa to shop mainly do so for small purchases like household supplies.
Businesses

Popular Subscription Email Service Newton Mail Is Being Discontinued (thurrott.com) 45

An anonymous reader shares a report: CloudMagic, the makers of Newton, today announced that Newton Mail is being discontinued. The company is no longer allowing new users to purchase Newton Mail which costs $100 a year, and existing users will be provided with refunds. For those using the monthly subscription plan, it will immediately stop automatically renewing. And for those on the yearly subscription, you will be given a refund on a pro-rata basis. "We explored various business models but couldn't successfully figure out profitability & growth over the long term. It was hard; the market for premium consumer mail apps is not big enough, and it faces stiff competition from high-quality free apps from Google, Microsoft, and Apple," said Rohit Nadhani, the founder and CEO of CloudMagic. All of that makes sense -- when we have companies like Microsoft and Google making brilliant free email clients like Outlook Mobile and Inbox, there really is no space for paid apps like Newton on the market.

Slashdot Top Deals