Transportation

Two Drone Pilots Arrested Near Boston, and Drones Cause One-Hour Runway Closure at North New York Airport (go.com) 89

Saturday night two men were arrested near Boston "following a hazardous drone operation near Logan Airport's airspace," according to a police statement. They credit an officer "leveraging advanced UAS monitoring technology" who "identified the drone's location, altitude, flight history, and the operators' position." Recognizing the serious risks posed by the drone's proximity to Logan's airspace, additional resources were mobilized. The Boston Police Department coordinated with Homeland Security, the Massachusetts State Police, the Joint Terrorism Task Force, the Federal Communications Commission (FCC), and Logan Airport Air Traffic Control to address the situation.
"Both suspects face charges of trespassing, with additional fines or charges potentially forthcoming."

Meanwhile on Friday night "Officials at Stewart International Airport, located roughly 60 miles north of New York City, said they shut down their runways for an hour," reports ABC News, after America's Federal Aviation Administration "alerted them that a drone was spotted in the area around 9:30 p.m." Though officials say flight operations weren't impacted during the closure, the article notes that New York's governor is now calling for federal assistance, including more federal law enforcement officers, saying "This has gone too far." [Governor Hochul] called on Congress to pass the Counter-UAS Authority Security, Safety, and Reauthorization Act, which would strengthen the FAA's oversight of drones and give more authority to state and local law enforcement agencies to investigate the activity.
The article explores the larger problem of Americans reporting drone sightings: Officials from a wide range of federal agencies spoke with reporters Saturday on a phone call and emphasized that the federal investigation into drone sightings in New Jersey is ongoing. One FBI official said that out of the nearly 5,000 tips they have received, less than 100 have generated credible leads for further investigation. A Department of Homeland Security official said that they are "confident that many of the reported drone sightings are, in fact, manned aircraft being misidentified as drones." The FBI official also talked about how investigators overlaid the locations of the reported drone sightings and found that "the density of reported sightings matches the approach pattern" of the New York area's busy airports including Newark-Liberty, JFK, and LaGuardia.

But, an FAA official says that there have "without a doubt" been drones flying over New Jersey, pointing to the fact that there are nearly a million drones registered in the U.S. "With nearly a million registered [unmanned aircraft systems] in the United States, there's no doubt many of them are owned and operated here within the state," the FAA official said... A Joint Chiefs of Staff official said that there have been visual sightings of drones reported by "highly trained security personnel" near Picatinny Arsenal and Naval Weapons Station Earle in New Jersey. The official said that they do not believe the sightings "were aligned with a foreign actor, or that they had malicious intent."

"We don't know what activity is. We don't know if it is criminal, but I will tell you that it is irresponsible," the official said. "Here on the military side, we are just as frustrated with the irresponsible nature of this activity."

Later ABC News reported that the FAA had imposed temporary drone flight restrictions in New Jersey over the Picatinny Arsenal military base. And they added that America's Homeland Security Secretary Alejandro Mayorkas "said the federal government is taking action to address the aerial drones that have prompted concern among New Jersey residents. "I want to assure the American public that we in the federal government have deployed additional resources, personnel, technology to assist the New Jersey State Police in addressing the drone sightings...." There have been numerous reports of drone activity along the East Coast since November. Mayorkas cited the 2023 change of a Federal Aviation Administration rule that allows drones to fly at night as to why there might be an uptick in sightings. "I want to assure the American public that we are on it," he said, before calling on Congress to expand local and state authority to help address the issue.

"It is critical, as we all have said for a number of years, that we need from Congress additional authorities to address the drone situation," Mayorkas said. "Our authorities currently are limited and they are set to expire. We need them extended and expanded... We want state and local authorities to also have the ability to counter growing activity under federal supervision," he added, echoing sentiments from local officials...

Addressing national security concerns the sightings have prompted, Mayorkas said the U.S. knows of no foreign involvement and that it remains "vigilant" in investigating the drone sightings. [ABC News anchor George] Stephanopoulos pressed Mayorkas about past security threats drones have caused, including the arrest of a Chinese national last week who allegedly flew a drone over an Air Force base in California. "When a drone is flown over restricted airspace, we act very, very swiftly," the homeland security secretary said. "In fact, when an individual in California flew a drone over restricted airspace, that individual was identified, apprehended and is being charged by federal authorities."

Medicine

Amazon Shuts Down Secret Project To Develop Fertility Tracker 96

Amazon has discontinued its secretive "Encore" project to develop an at-home fertility tracker, resulting in layoffs for around 100 employees. The project, part of Amazon's Grand Challenge division, aimed to launch a device and app that would predict fertility through saliva testing but was ultimately terminated to control costs. CNBC reports: The project was born out of the company's 2020 acquisition of Wisconsin-based startup bluDiagnostics, the sources said. BluDiagnostics was founded in 2015 by Weibel, Katie Brenner and Jodi Schroll, all of whom joined Grand Challenge. The startup had developed a thermometer-like device, called FertilityFinder, to help women track their fertility from home by testing their saliva and measuring two key hormones, estradiol and progesterone. The results of the test were viewable through a corresponding app. Business Insider reported on aspects of the fertility device in 2022, when its codename was Project Tiberius.

The team was working to develop its own saliva collection device and mobile app, which could predict when a user might be in the fertile window. Users could also log their period symptoms, sexual activity and other data to assist with tracking their fertility. There are similar offerings on the market from companies including Inne, Oova, Ava and Mira, along with fertility and ovulation tracking apps such as Flo, Clue and Max Levchin's Glow. Amazon initially aimed to release the product this year, but the timing was pushed out after the team encountered technical issues with the device, one of the people said. It was a costly endeavor and required significant upfront investments for lab research and development, in addition to the high salaries for scientists and engineers, the sources said, adding that the team's weekly overhead was roughly $1.5 million. Amazon didn't comment on the figure. Only one project now remains active within Grand Challenge. Its focus is on health tech, the people said.
"We regularly review our businesses to ensure we focus on areas where we can make the biggest difference for customers," said Amazon spokesperson Margaret Callahan. "Following a recent review, we've decided to discontinue this project within Grand Challenge, and we're working directly with employees whose roles are impacted to support them through the transition and help them find other opportunities within Amazon."
Power

Wind Turbine Blade Breaks, Washes Ashore. Power Production Shut Down as Company Faces Investigation and Litigation (cnn.com) 138

"More pieces of a broken wind turbine off the coast of Massachusetts are falling into the Atlantic Ocean," reports CBS News on Thursday. "The CEO of Vineyard Wind was at Nantucket's Select Board meeting Wednesday evening, apologizing and answering questions about the initial break when he suddenly had to leave because the situation is getting worse."

CNN reports the debris has been "prompting beach closures and frustrating locals at the peak of the summer season" since the blade broke a week ago, and then folded over: Since then, foam debris and fiberglass — including some large and dangerously sharp pieces — have washed onto beaches. A "significant part" of the remaining damaged blade detached from the turbine early Thursday morning, Vineyard Wind said in a news release. The US Coast Guard confirmed to CNN it has located a 300-foot piece of the blade.

There are few answers to what caused the turbine to fail, and the incident has prompted questions and anger from city officials and Nantucket residents... The shards of turbine forced officials to close beaches earlier this week, though they have since reopened. [Nantucket select board chair Brooke Mohr] said the town would monitor for additional debris and adjust schedules accordingly. "Public safety is our most immediate concern, these fiberglass pieces are quite sharp," Mohr said, making swimming unsafe...

The federal government is conducting its own investigation and has ordered Vineyard Wind to stop all its wind turbines producing electricity until it can be determined whether any other blades were impacted, a Bureau of Safety and Environmental Enforcement spokesperson said in a statement. The federal government has also ordered the companies to preserve any equipment that could help determine the cause of the failure. The federal suspension order effectively halts further construction on Vineyard Wind, the first large-scale wind farm being installed in the US. The wind farm, a joint venture of Avangrid and Copenhagen Infrastructure Partners, has 10 turbines up and running so far with plans to install 62 total...

The project was set to double the number of turbines spinning off the East Coast, and state leaders in Massachusetts have viewed it as a big boost to the state's ability to generate electricity. Now the project is in limbo, and could remain so until the investigation is complete.

The article quotes the head of government affairs at wind blade manufacturer GE Vernova as saying a breaking wind turbine is "highly unusual and rare." But Vineyard Wind CEO Klaus Skoust Møller called it a "very serious situation" and apologized to local residents.

Meanwhile, the Boston Herald reported Friday that the Nantucket Select Board "is set to pursue litigation against the wind energy company in connection to the blade failure..." Town officials, residents and local mariners have all said they didn't learn of the incident until Monday evening, roughly 48 hours after the fact and just hours before debris started to wash ashore, prompting beaches to close Tuesday...

The "significant portion" of the 107-meter blade that detached from the turbine Thursday morning sunk to the ocean floor. Crews were slated to recover the fiberglass "in due course," town officials wrote in a Friday update... Residents are not taking kindly to Vineyard Wind's assertion that the debris — fiberglass fragments ranging in size from small pieces to larger sections, typically green or white — is not toxic. Vineyard Wind has deployed a crew of 56 contractors to assist in the cleanup of the island's beaches, and town officials said Friday that no town staff are actively engaged in removing the debris. The wind energy company reported Wednesday that crews had removed 17 cubic yards of debris, enough to fill more than six truckloads.

"The joint venture of Connecticut-based Avangrid and Denmark-based Copenhagen Infrastructure Partners is developing a plan to test water quality around the island while working on a process for financial claims."
Bitcoin

Crypto Bank Silvergate Capital To Shut Down (axios.com) 13

Silvergate Capital, the publicly-traded parent of Silvergate Bank, said Wednesday that it would liquidate the bank, just days after saying future operations would be uncertain. Axios reports: "In light of recent industry and regulatory developments, Silvergate believes that an orderly wind down of Bank operations and a voluntary liquidation of the Bank is the best path forward," a press statement reads. While the bank's demise had everything to do with its choice of industry -- FTX's collapse sent the entire crypto world in hunt of liquidity, causing a run on deposits at Silvergate -- balance-sheet problems in today's high-rate environment is not a crypto bank-specific stumbling block. Silvergate's troubles were in plain sight in that respect.

When customers pulled more than $8 billion from its platform late last year, the bank got a $4.3 billion assist in home loan advances from the Federal Home Loan Bank (FHLB). It effectively benefited from an implicit government backstop. But between having to pay those loans back right away and other investment losses, its outlook was grim, even before the company filed a registration statement saying so.

The overwhelming majority of bank liquidations are announced on a Friday afternoon, to give the FDIC a full weekend to shore up the institution and reassure depositors before the next business day. The fact this happened on a Wednesday is an indication of just how quickly Silvergate imploded. "Crypto exchanges, platforms and stablecoin issuers at least have the excuse that they don't have direct access to central bank liquidity," Frances Coppola, an economist and writer of blog Coppola Comment, said in a recent post about the bank. "But Silvergate does -- and yet it didn't use it." That would appear to be an oversight for the bank, but also its regulator.

Security

White House Joins OpenSSF, Linux Foundation In Securing Open-Source Software (zdnet.com) 46

An anonymous reader quotes a report from ZDNet: Securing the open-source software supply chain is a huge deal. Last year, the Biden administration issued an executive order to improve software supply chain security. This came after the Colonial Pipeline ransomware attack shut down gas and oil deliveries throughout the southeast and the SolarWinds software supply chain attack. Securing software became a top priority. In response, The Open Source Security Foundation (OpenSSF) and Linux Foundation rose to this security challenge. Now, they're calling for $150 million in funding over two years to fix ten major open-source security problems.

The government will not be paying the freight for these changes. $30 million has already been pledged by Amazon, Ericsson, Google, Intel, Microsoft, and VMWare. More is already on the way. Amazon Web Services (AWS) has already pledged an additional $10 million. At the White House press conference, OpenSSF general manager Brian Behlendorf said, "I want to be clear: We're not here to fundraise from the government. We did not anticipate needing to go directly to the government to get funding for anyone to be successful."

Here are the ten goals the open-source industry is committed to meeting:

1. Security Education: Deliver baseline secure software development education and certification to all.
2. Risk Assessment: Establish a public, vendor-neutral, objective-metrics-based risk assessment dashboard for the top 10,000 (or more) OSS components.
3. Digital Signatures: Accelerate the adoption of digital signatures on software releases.
4. Memory Safety: Eliminate root causes of many vulnerabilities through the replacement of non-memory-safe languages.
5. Incident Response: Establish the OpenSSF Open Source Security Incident Response Team, security experts who can step in to assist open source projects during critical times when responding to a vulnerability.
6. Better Scanning: Accelerate the discovery of new vulnerabilities by maintainers and experts through advanced security tools and expert guidance.
7. Code Audits: Conduct third-party code reviews (and any necessary remediation work) of up to 200 of the most-critical OSS components once per year.
8. Data Sharing: Coordinate industry-wide data sharing to improve the research that helps determine the most critical OSS components.
9. Software Bill of Materials (SBOMs): Everywhere Improve SBOM tooling and training to drive adoption.
10. Improved Supply Chains: Enhance the 10 most critical open-source software build systems, package managers, and distribution systems with better supply chain security tools and best practices.

Google

Google Sets Timeline For Deprecating 'Classic' Google Sites (9to5google.com) 7

Google has announced that its structured wiki- and webpage-creation tool "Google Sites," which it launched in 2008 after acquiring JotSpot, will be shutting down in 2021. 9to5Google reports: This morning an email was dispatched to "active" users of classic Sites detailing its retirement, which will take place over the next year. The email, which had the subject line "Migrate your classic sites to new Google Sites," headlined that the service will be fully shut down on September 1, 2021. To begin this transition, classic Sites creation will be disabled on November 1, 2020, after which point users will have a little under a year to move to the new Google Sites. Alongside this announcement was the launch of the Classic Sites Manager, which aims to assist in the conversion of classic Sites to new Sites. [A new Google Sites was introduced to the masses to replace the withering shell of classic Sites and become a part of G Suite -- allowing for easy integration with Docs, Sheets, and Slides.] It allows you to convert, archive, or delete any classic Sites on your account, as well as export a spreadsheet of all your sites to Google Sheets. Users are encouraged to begin their transition today to avoid disruptions in the future.

Additionally, G Suite admins are given a different timeline to transition, according to the G Suite Updates Blog. This modified schedule sees website creation being disabled in May of 2021, followed by the loss of editing capabilities in October, and the complete shutdown of classic Sites in December, at which point you can no longer view any sites that have not transitioned. This transition was originally delayed due to a number of features from classic Sites not being available in the revamped version, which has since been remedied. Any classic Sites that do not transition before the deadline will automatically be archived and saved to the owner's Google Drive. A draft will be created in the new Google Sites to replace it if needed.

Transportation

New Questions Raised about Tesla's 'Autopilot' Safety After Three Fatalities This Week (startribune.com) 162

The Associated Press looks at three new fatalities involving Teslas this week, saying the crashes have "increased scrutiny of the company's Autopilot driving system just months before CEO Elon Musk has planned to put fully self-driving cars on the streets." Last Sunday, a Tesla Model S sedan left a freeway in Gardena, California, at a high speed, ran a red light and struck a Honda Civic, killing two people inside, police said.... Raj Rajkumar, an electrical and computer engineering professor at Carnegie Mellon University, said it's likely that the Tesla in Sunday's California crash was operating on Autopilot, which has become confused in the past by lane lines. He speculated that the lane line was more visible for the exit ramp, so the car took the ramp because it looked like a freeway lane. He also suggested that the driver might not have been paying close attention. "No normal human being would not slow down in an exit lane," he said...

On the same day, a Tesla Model 3 hit a parked firetruck on an Indiana freeway, killing a passenger in the Tesla... In both cases, authorities have yet to determine whether Tesla's Autopilot system was being used... Many experts say they're not aware of fatal crashes involving similar driver-assist systems from General Motors, Mercedes and other automakers. GM monitors drivers with cameras and will shut down the driving system if they don't watch the road. "Tesla is nowhere close to that standard," Rajkumar said. He predicted more deaths involving Teslas if the National Highway Traffic Safety Administration fails to take action...

And on Dec. 7, yet another Model 3 struck a police cruiser on a Connecticut highway, though no one was hurt... [T]he driver told police that the car was operating on Autopilot, a Tesla system designed to keep a car in its lane and a safe distance from other vehicles.

IBM

IBM Halting Sales of Watson AI Tool For Drug Discovery Amid Sluggish Growth (statnews.com) 29

Citing lackluster financial performance, IBM is halting development and sales of a product that uses its Watson AI software to help pharmaceutical companies discover new drugs, news outlet Stat reported on Thursday, citing a person familiar with the company's internal decision-making. From the report: The decision to shut down sales of Watson for Drug Discovery marks the highest-profile retreat in the company's effort to apply artificial intelligence to various areas of health care. Last year, the company scaled back on the hospital side of its business, and it's struggled to develop a reliable tool to assist doctors in treating cancer patients. In a statement, an IBM spokesperson said, "We are focusing our resources within Watson Health to double down on the adjacent field of clinical development where we see an even greater market need for our data and AI capabilities."

Further reading: IBM Pitched Its Watson Supercomputer as a Revolution in Cancer Care. It's Nowhere Close (September 2017); IBM Watson Reportedly Recommended Cancer Treatments That Were 'Unsafe and Incorrect' (July 2018).
Encryption

ACLU: Lavabit Was 'Fatally Undermined' By Demands For Encryption Keys 230

An anonymous reader writes "When encrypted email provider Lavabit shut down in August, it was because U.S. authorities demanded the company release encryption keys to get access to certain accounts. Lavabit's founder, Ladar Levison, is facing contempt of court charges for his refusal to acquiesce to their demands. But now the ACLU has filed a 'friend of the court' brief (PDF) in support of Levison, saying that the government's demand 'fatally undermined' the secure email service. 'Lavabit's business was predicated on offering a secure email service, and no company could possible tell its clients that it offers a secure service if its keys have been handed over to the government.' The ACLU added, 'The district court's contempt holding should be reversed, because the underlying orders requiring Lavabit to disclose its private keys imposed an unreasonable burden on the company. Although innocent third parties have a duty to assist law enforcement agents in their investigations, they also have a right not to be compelled "to render assistance without limitation regardless of the burden involved."' Lavabit is also defending itself by claiming a violation of the 4th amendment has occurred."
Image

Book Review: Digital Evidence and Computer Crime Screenshot-sm 49

brothke writes "When it comes to a physical crime scene and the resulting forensics, investigators can ascertain that a crime took place and gather the necessary evidence. When it comes to digital crime, the evidence is often at the byte level, deep in the magnetics of digital media, initially invisible from the human eye. That is just one of the challenges of digital forensics, where it is easy to destroy crucial evidence, and often difficult to preserve correctly." Read on for the rest of Ben's review.
Music

Wal-Mart Ends DRM Support 231

An anonymous reader writes "So, you thought you did well to support the fledgling music industry by purchasing your tracks legally from the Wal-Mart store? Well, forget about moving these tracks to a new PC! Since they started selling DRM-free tracks last year, there's no money to be made in maintaining the DRM support systems, and in fact, support is being shut down. Make sure you circumvent the restrictions by burning the tracks to an old-fashioned CD before Wal-mart 'will no longer be able to assist with digital rights management issues for protected WMA files purchased from Walmart.com.' Support ends October 9th."
The Courts

Questions for DoJ IP Attorneys Asked and Answered 641

These answers are from the lawyers in the U.S. DoJ's Computer Crime and Intellectual Property Section (CCIPS) -- the people who prosecute criminal file-sharing cases. Michael O'Leary, Deputy Chief for Intellectual Property at the DoJ, submitted the answers, but other lawyers in the section worked with him to write them, all under the ground rules laid out in our 'Meet the DoJ's 'Anti-Piracy' Lawyers post last week.
News

H2K2 Wrapup 138

Your intrepid reporter took a jaunt down to the H2K2 conference this past weekend, held in the lovely Hotel Pennsylvania. The conference had much more floor space than they had two years ago, and it seemed like more attendance as well. Wireless networks were available, though overcrowded, and if you didn't encrypt your communications, well, you've probably already paid the price. My notes on the conference and the sessions I attended are below, followed by a couple of reader submissions.
The Courts

Report From The 2600 Appeal Hearing 630

Yesterday in a toasty courtroom in lower Manhattan, Stanford Law School dean Kathleen Sullivan faced off against lawyers for the world's biggest movie companies and a lawyer for the U.S. Justice Department with oral arguments in the appeal of the 2600 case. One of the three judges hearing the case -- Jon Newman -- appeared to be the designated questioner. He asked nearly all of the questions in both this case and the ones heard earlier in the day. He probed both sides about equally, trying to find flaws in the arguments of whoever was speaking at the time. I'll cover the hearing below, and there's possibly a few areas where the Slashdot crowd could assist in the case.
News

Answers From Sealand: CTO Ryan Lackey Responds 151

A few weeks ago, you asked questions of Ryan Lackey, CTO for HavenCo, a company dedicated to providing secure off-shore data hosting from Sealand, a principality off the coast of England. Ryan has lately survived dental emergencies, the loss of a laptop (it dropped into the North Sea -- how many people can say that?) and other stresses, but he's followed through with some interesting answers. He even has some ideas for how you can make a lot of money, and lists the tools you need to start your own data haven. Kudos to Ryan for taking the time to answer so thoroughly.

Slashdot Top Deals