EU

Le Pen Concedes Defeat To Macron In France's Post-Hack Election (reuters.com) 671

"France has voted for continuity," candidate Marine Le Pen said in the wake of her defeat in France's presidential election, conceding that Emmanuel Macron had a decisive lead. Reuters has ongoing coverage of Le Pen's concession phone call and reactions from world leaders. "France Rejects Far Right," read a headline at CNN, touting their own live updates and early results showing Macron with a 65.9% to 34.1% lead, "on course for a decisive win." Macron is schedule to speak at the Louvre museum (where the grounds were "briefly evacuated" this morning after discovery of a suspicious bag.) Quartz is calling 39-year-old Macron "the second Generation X president of a major world power" (after Canada's Justin Trudeau).

The election was closely watched after a 9-gigabyte trove of emails from Macron's campaign were leaked online. CNBC reports that "One of the most talked about emails makes reference to binge-watching Dr. Who and masturbating to the sound of running water. It sounds generally incoherent. It could be false, or maybe the person wrote it after a few too many." The New Yorker traces the leak to a right-leaning Canadian site, whose editor says he found the documents on 4chan. But Reuters is crediting WikiLeaks with providing "the largest boost of attention" to the leaked documents, according to an analysis pubished by the Digital Forensic Research Lab of the Atlantic Council, a D.C.-based think tank on international affairs. WikiLeaks tweeted about the leak 15 times, bragging to Reuters that "we were hours ahead of all other major outlets." On Friday WikiLeaks also disputed the Macron campaign's claim that the leak mixed real documents with fake ones. "We have not yet discovered fakes in #MacronLeaks & we are very skeptical that the Macron campaign is faster than us."

Saturday WikiLeaks noted that several of the Office files "have Cyrillic meta data. Unclear if by design, incompetence, or Slavic employee." And Saturday afternoon they added "name of employee for Russian govt security contractor Evrika appears 9 times in metadata for 'xls_cendric.rar' leak archive."

Meanwhile, on the International Space Station, French astronaut Thomas Pesquet voted from space. Feel free to discuss the election's results in the comments.
NASA

What NASA Found Beyond The Rings Of Saturn (omaha.com) 48

NASA's Cassini spacecraft explored the inner edge of the rings of Saturn for the first time, and Phys.org reports that it made a surprising discovery: nothing. "Scientists have been surprised to find that not all that much -- not even space dust -- lies between Saturn's iconic rings." After the first pass, the NASA official managing the project described the the region between the rings and Saturn as "the big empty." An anonymous reader quotes the Pittsburgh Post-Gazette: Cassini also beamed back pictures and other essential data as it maneuvered the 1,500-mile-wide space between the solar system's second largest planet and its icy rings. The images, which take 78 minutes to make the billion-mile trip back to Earth, reveal a blazing, mysterious process of alternating light and darkness in the rings that scientists will be working for years to understand. That seems only fair since it has already taken 20 years for Cassini to be in a position to do what it is doing so far.

Between now and September, Cassini will make 22 dives between Saturn's rings and the planet, clocking at an impressive 76,800 mph each time. The end result should be a treasure trove of stunning images of the planet and its diverse and mysterious rings, along with detailed maps of the gas giant's gravity, magnetic fields and atmospheric conditions. On Sept. 15, it will plunge into Saturn's atmosphere, streaming data back to Earth as it makes its descent of no return.

Education

Should The Government Pay For Veterans To Attend Code Schools? (backchannel.com) 168

mirandakatz writes: David Molina was finishing up his 12-year time in the army when he started teaching himself to code, and started to think that he might like to pursue it professionally once his service was done. But with a wife and family, he couldn't dedicate the four years he'd need to get an undergraduate degree in computer science -- and the GI Bill, he learned, won't cover accelerated programs like code schools. So he started an organization dedicated to changing that. Operation Code is lobbying politicians to allow vets to attend code schools through the GI Bill and prepare themselves for the sorts of stable, middle-class jobs that have come to be called "blue-collar coding." Molina sees it as a serious failing that the GI Bill will cover myriad vocational programs, but not those that can prepare veterans for one of the fastest-growing industries in existence.
The issue seems to be quality. The group estimates there are already nine code schools in the U.S. which do accept GI Bill benefits -- but only "longer-standing ones that have made it through State Approving Agencies." Meanwhile, Course Report calculates 18,000 people finished coding bootcamps last year -- and that two thirds of them found a job within three months.

But I just liked how Molina described his introduction into the world of programmers. While stationed at Dover Air Force Base, he attended Baltimore's long-standing Meetup for Ruby on Rails, where "People taught me about open source. There was pizza, there was beer. They made me feel like I was at home."
Social Networks

Social Media Giants Sued For Helping ISIS (torontosun.com) 135

Long-time Slashdot reader nnet quotes the Toronto Sun: Social media giants Twitter, Google and Facebook are being sued by the families of victims of the San Bernardino terror attacks. The lawsuit claims those companies aided ISIS by letting them build their online profile and bolster recruitment. Fourteen people were killed in the December 2015 attacks by twisted husband-wife Islamist extremists Syed Rizwan Farook and Tashfeen Malik. "Without defendants Twitter, Facebook and Google (YouTube), the explosive growth of IS over the last few years into the most feared terrorist group in the world would not have been possible," the suit, filed Wednesday in Los Angeles, alleges.
Transportation

Glaring Vulnerabilities Make Many Commercial Drones 'Insecure by Design' (threatpost.com) 22

Slashdot reader msm1267 quotes ThreatPost: Drones, many readily available on ecommerce shops such as Amazon, are plagued by vulnerabilities that could give attackers full root access, read or delete files, or crash the device. The United States Computer Emergency Readiness Team (US-CERT) published a warning about one model, the DBPOWER U818A WiFi quadcopter, last month, but according to the researcher who reported the vulnerabilities, multiple drone models -- manufactured by the same company but sold under different names -- are also vulnerable.

They contain two appealing attack vectors: an open access point and a misconfigured FTP server. If an attacker was within WiFi range of the drone they could easily obtain read and write permissions to the drone's filesystem and modify its root password... Like any attack dependent on Wi-Fi, an attacker would need to be in close proximity to the drone to carry out an attack, but an attacker could connect their computer to the drone access point, essentially treating it as a proxy to spy on the device's live feed or the drone's open ports.

The Internet

A New Use For Browser Fingerprints: Defeating Spoofing (browserprint.info) 64

AnonymousCube writes: Researchers at the University of Adelaide have found a new use for browser fingerprints: uncovering and defeating spoofing by web browsers. By using machine learning on browser fingerprints they were able to correctly guess the OS or browser family of a browser 90% of the time, and defeat operating system and browser family spoofing 76% of the time. This was done with small training sets of less than 1000 fingerprints, so accuracy with a much larger training set, like the size of the EFF's Panopticlick database should give even better results; you can help prove this, and see what their site thinks your browser family and OS is, by submitting your fingerprint to their site.
Government

The FBI Defends Deploying Malware From A Tor Child Porn Site (gizmodo.com) 244

An anonymous reader writes: The FBI issued a press release about the 30-year prison sentence for a 58-year-old Florida man running "the world's largest child pornography website, with more than 150,000 users around the world." But their investigation involved what Gizmodo describes as "a decision controversial to this day" -- taking over the child pornography site and running it "for almost two weeks while distributing malware designed to unmask its visitors." Thursday the FBI described it as "a court-approved network investigative technique" which led to more than 1,000 leads in the U.S. and "thousands more" for law enforcement partners in other countries, leading to arrests in the EU, Israel, Turkey, Peru, Malaysia, Chile, and the Ukraine. Those 1,000 U.S. leads led to "at least 350 U.S-based individuals arrested", as well as actual prosecutions of 25 producers of child pornography and 51 hands-on abusers, while 55 children were "identified or rescued" in America, and another 296 internationally who were sexually abused.

Though Motherboard describes it as hacking "over 8,000 computers in 120 countries based on one warrant," the FBI calls it their "most successful effort to date against users of Tor's hidden service sites," adding that the agency "has numerous investigations involving the dark web." Though they'd soon became aware of the site's existence, "given the nature of how Tor hidden services work, there was not much we could do about it" -- until a foreign law enforcement agency discovered the site had "slipped up" by revealing its actual IP address, and notified the U.S. investigators. The FBI also says the investigation "has opened new avenues for international cooperation in efforts to prosecute child abusers around the world."

The site's two other administrators -- both men in their 40s -- were also given 20-year prison sentences earlier this year.
Operating Systems

Ask Slashdot: Is ReactOS A Serious Alternative To Windows? (reactos.org) 236

dryriver writes: So I just discovered the ReactOS 0.4.4 Alpha... It seems like this is basically a free, open source Windows replacement in the making. Does anyone have serious experience with ReactOS?

Do you think that ReactOS will ever reach the point where you can basically say "bye bye" to Microsoft Windows, but keep using all your favorite Windows software under ReactOS? Will this be able to run Windows Games and DCC software that taps into the processing power of the GPU? Or will ReactOS wind up being "mildly compatible" with Windows software -- e.g. basic Office productivity type software works, but professional-grade 3D software like Maya/CATIA does not?

Security

HandBrake Urges Mac Users To Verify Recent Download, Says Mirror Server Was Compromised (handbrake.fr) 22

HandBrake team, writing on their forum: Anyone who has downloaded HandBrake on Mac between [02/May/2017 14:30 UTC] and [06/May/2017 11:00 UTC] needs to verify the SHA1 / 256 sum of the file before running it. Anyone who has installed HandBrake for Mac needs to verify their system is not infected with a Trojan. You have 50/50 chance if you've downloaded HandBrake during this period. If you see a process called "Activity_agent" in the OSX Activity Monitor application. You are infected. HandBrake is a popular, open-source video conversion tool. The team hasn't issued any advisory for Windows users.
AI

Swarm AI Spectacularly Fails To Predict Kentucky Derby Winners A Second Time (techrepublic.com) 83

Thursday TechRepublic described the big prediction: In May 2016, a relatively unknown startup called Unanimous A.I. made big headlines when its AI-based platform used collective intelligence to create a prediction for the Kentucky Derby superfecta -- the top four horses, in order of finish. It made exactly the right pick, which returned $541.10 on a $1 bet... Churchill Downs took notice last year and decided to collaborate with Unanimous A.I. to create an official AI swarm made up of handicappers and racing analysts to predict the top finishers for this year's Derby. The track is calling this the "super-expert" Derby pick. On Wednesday, the handicappers logged into Unanimous A.I.'s UNU platform from across the US, and answered a series of questions that gradually narrowed down their picks from the field of 20 horses until they created consensus on the top four picks and the order of finish.
Here's my report on the results...
Debian

Debian 8.8 Released (debian.org) 65

prisoninmate quotes Softpedia: The Debian Project announced today Debian GNU/Linux 8.8, the most advanced stable version of the Jessie series, which brings corrections for numerous packages and various security flaws discovered and patched since the release of the Debian GNU/Linux 8.7 maintenance update back in mid-January 2017... "This update mainly adds corrections for security problems to the stable release, along with a few adjustments for serious problems. Security advisories were already published separately and are referenced where available," reads today's announcement.

"Please note that this update does not constitute a new version of Debian 8 but only updates some of the packages included. There is no need to throw away old 'jessie' CDs or DVDs but only to update via an up-to-date Debian mirror after an installation, to cause any out of date packages to be updated."

Debian 8.8 contains more than 150 bug fixes and security updates.
Input Devices

Facebook Closes Its Oculus VR Studio (bbc.com) 72

puddingebola writes: Facebook has closed Oculus VR Studio. The studio was a maker of original VR films, but now will only assist other studios. This makes it official, as the studio had been shuttered since the departure of Palmer Luckey.
In a blog post the company emphasized that "We're still absolutely committed to growing the VR film and creative content ecosystem."
EU

'Weaponized' Twitter Bots Spread Info From French Campaign Hack (recode.net) 255

"The French media and public have been warned not to spread details about a hacking attack on presidential candidate Emmanuel Macron," writes Slashdot reader schwit1, with the election commission threatening criminal charges. But meanwhile, "the leaked documents have since spread like wildfire across social media, particularly on Twitter," reports Recode. Nicole Perlroth, a cybersecurity reporter with the New York Times, pointed out that an overwhelming amount of the tweets shared about the Macron campaign hack appear to come from automated accounts, commonly referred to as bots. About 40% of the tweets using the hashtag #MacronGate, Perlroth noted, are actually coming from only 5% of accounts using the hashtag. One account tweeted 1,668 times in 24 hours, which is more than one tweet per minute with no sleep... Twitter appears not to have done anything to combat what is obviously a bot attack, despite the fact the social media company is well aware of the problem of bot accounts being used to falsely popularize political issues during high-profile campaigns to give the impression of a groundswell of grassroots support.
The Times reporter later tweeted "This could be @twitter's death knell. Algorithms exist to deal with this. Why aren't you using them?" And one Sunlight Foundation official called the discovery "statistics from the front lines of the disinformation wars," cc-ing both Twitter CEO Jack Dorsey and Mark Zuckerberg. In other news, the BBC reports France's president has promised to "respond" to the hacking incident, giving no further details, but saying he was aware of the risks because they'd "happened elsewhere"."
Businesses

Startup Offers A Chip Based On The Open Source RISC-V Architecture (computerworld.com.au) 73

angry tapir shared this news from Computerworld: An open-source chip project is out to break the dominance of proprietary chips offered by Intel, AMD, and ARM... A startup called SiFive is the first to make a business out of the [open source] RISC-V architecture. The company is also the first to convert the RISC-V instruction set architecture into actual silicon. The company on Thursday announced it has created two new chip designs that can be licensed... but the company will not charge royalties. That makes it attractive alternative compared to chip designs from ARM and Imagination Technologies, which charge licensing fees and royalties.
One of RISC-V's inventors co-founded the company, and he says that support is growing -- pointing out that there's already a fork of Linux for RISC-V.
Communications

After 19 Years CMU Discontinues Cyrus IMAP In Favor Of Microsoft Exchange And Gmail (cmu.edu) 72

Long-time Slashdot reader Hobart writes: The Cyrus IMAP server, created by and for Carnegie Mellon University, has lost support of its founding institution. As of last fall, they announced that student and faculty email will be run on Microsoft Exchange, or Google's Gmail suite of apps. The company FastMail seems to be the primary driver of Cyrus IMAPd software now, per their December blog post. Are any Slashdot readers migrating their Cyrus-based services, or are there compelling reasons to chose it over the competition?

Slashdot Top Deals