Forgot your password?
typodupeerror

Comment Given that OpenAI has been compromised... (Score 2) 67

...this seems like a very bad no good awful idea. Any attacker that penetrates OpenAI will be one hop from every bank account connected to ChatGPT.

OpenAI admits compromise: OpenAI caught in TanStack npm supply chain chaos after employee devices compromised

Of course, OpenAI is minimizing the extent of that because that's what everyone always does: they lie, because it's profitable and there are no penalties for doing so. But I have no doubt whatsoever that (a) this breach is much worse than they're letting on (b) it's not the first breach (c) it's not even the only current breach and (d) it certainly won't be the last one. Those are easy bets because OpenAI is skimping on everything except hype, and their operational security is neither operational nor security.

TL;DR: if you hand over your bank account to ChatGPT, you're handing it over to everyone who hacks OpenAI -- and that won't be a short list.

Comment Re:US connected cars too? (Score 1) 106

Yes, but it is proven over and over that opt outs are completely and utterly useless because it is still trust based. Not a single company that has offered or responded to trust based opt outs has ever been 100% onboard. Every single case in history at some level is still being abused and justified as necessary by the company completely or partially ignoring the opt out. A no that means no with 100% verifiable cut off only comes when it happens forcefully.

Comment Re:So they want us to... (Score 0) 106

Yes, but that is only part of the picture. Despite their lead in technology implementation, it is all state controlled. Every vehicle that comes over is a potential spying device and even allowing access to source code does not stop it just having the information passes information that state level spying can use against the US. TikTok for example is one case where people never realize how it is used to spy. It has been proven that TikTok application, even when verified free of true malware allows information gathering by using negative data. For example, NDAA disallows TikTok on military bases and government facilities, some of which are secret and non-disclosed. But yet TikTok has access to GPS data even when not truly functioning as malware, the GPS data allows them to look for building or areas where the app just never shows anyone going. Those areas become spying interest. Imagine when cars do this? EV's are connected to the grid for Gods sake. If there are hundreds of thousands of cars connected to the grid at any given time. The system self throttles because not everyone charges at the same time and people drive different amounts, but imaging if even 30% of them are connected to the grid and all are told to start charging at the exact same time. Instant grid meltdown. Despite the leading technology, those vehicles should not be here.

Comment Re:US connected cars too? (Score 4, Insightful) 106

Opt outs are never good enough. That requires trust. They deserve none. There has to be government guaranteed ability for owners of connected things to institute industry standard zero trust configurations on connected things and if the owner chooses, force lock out manufacturers with guarantees that the manufacturer can't punitively brick basic features if they choose to do so.

Comment Re:US connected cars too? (Score 1) 106

Despite my gripes with the data collection that I have worked around as detailed above, my wifes Equinox EV is actually the best bang for the buck vehicle that we have ever owned and it really isn't even close. I think for the vehicle itself even the infotainment center once you have blocked their tracking, they hit it out of the park. We don't 3 second 0 to 60, so why would we pay for that? And despite the hype, the new guys like Rivian and Tesla are still playing catch up for just general fit and finish on the vehicle that that the traditional car makers have had that nailed down for decades. And Rivian and Tesla are even more pig headed about artificially crippling functionality if you even think about trying to bypass their built in cellular and the data collection. They punitively disable functionality if you disable the cellular and in Teslas case will attempt to void your warranty if they cant push updates to the vehicle within 4 days of release.

Comment Re:US connected cars too? (Score 5, Interesting) 106

GM sells our data, but at least you can do certain things to the current GM EV's like I have done to mine and it still functions. I have an Equinox EV and I have the cellular connection resistor terminated at the telematics module. I then use my own cellular setup which is a miniPC with sim card slot and wifi running PFsense to stand up my own mobile full UTM firewall that run in whitelist mode. I open communications to only bare minimum sites to keep nav and streaming audio/video so I can watch and listen to things while charging. All GM and onstar sites are blocked by default because it is in whitelist only mode. Yea Google still has my data by handling it this way, but it is much much much harder for them to correlate to the vehicle in any way that ties their data to a real humans name since I don't run the vehicle on my normal Google accounts. I also just periodically reset it and start a new one account as well.

Comment Re:US connected cars too? (Score 4, Interesting) 106

I have been arguing that on Rivian forums for months and fanboys have their heads up their asses. People have to realize that security should be in the hands of the owners. Privacy options should not be trust based on a slider to disable tracking in the infotainment system. It should be able to be verified secure with true zero trust configs available to owner in a way that DOESN'T brick the ability to use the car, nav etc.. There should be regulatory oversight that guarantees that manufacturers of connected things must provide a way for owners to audit communications in a way that does not allow the manufacturer to change the behavior because it knows its being watched. Such as the ability to load owner provided security certs for an authorized man in the middle audit. And for security, especially for EV's owners should have the ability to completely lock down communications unless there is a documented need. These things are connected to infrastructure for Gods sake. Having them full time connected to the internet is just one secuirty breach from state hackers having control of an entire companies fleet of EV's. Just simply commanding all of the ones currently connected to start charging at the same time would absolutely destroy the grid. We HAVE to allowed to use industry standard zero trust configurations on our things.

Comment Welcome to the Panopticon... (Score 4, Interesting) 67

...that you built. Pervasive surveillance looks and feels a bit different from the inside, doesn't it?

On the other hand: it's well past time for programmers, sysadmins, network engineers to unionize, so if this happens to kickstart such a movement, I'm certainly in favor of that.

Submission + - Telegram hosted an online "rape academy" (msn.com)

Arrogant-Bastard writes: "A Telegram group called 'ZZZ' has been exposed as a venue where men exchanged advice on how to sexually assault women. The group has since been deleted, and an investigation is currently underway.

According to reports, a former member of the group detailed what had been taking place for months. Members also exchanged videos of their assaults on women who were either drugged, intoxicated, or asleep."


This stems from a CNN investigation that's documented here: CNN uncovers hidden online network teaching sexual abuse. (Note: unfortunately, that article has been contaminated by CoPilot. But it's still worth reading.)

Comment Re:All according to plan. (Score 1) 214

I think you are wrong about this. 3/4 ton diesels are in this same price range now. The EV's have the weight to provide effective stopping power in the 3/4 to 1 ton truck range, and the power is WELL beyond most diesels and more on demand. Ford just screwed the pooch on 329 miles being the max range and for a truck that tows in all weather conditions, the towing when combined with cold weather is just not on par with EV truck offerings from GM and Rivian.

Comment Re:All according to plan. (Score 1) 214

As I said above, Rivian and GM EV trucks have enough range for my needs and meet my minimums of being able to go a minimum of 2 hours at 70MPH while towing in cold weather. I absolutely refuse to go back to ice in any form. I refuse to ever change engine oil in a car ever again and I also don't them problems and maintenance of both ICE and EV in the same vehicle.

Comment Re:All according to plan. (Score 1) 214

F-150 lightning in its form would have been my choice, but it just did not have enough range for my truck needs. It is also very slow charging for the battery size. Both Rivian and GM trucks outperform on those. For me, the absolute minimum range I would settle for is one that has enough base range that it can still go a minimum of 2 hours at 65-70MPH highway speeds while also in the worst conditions possible, namely both towing while also in cold weather. I don't need 400+ mile range when in the best conditions, but it takes that to keep the worst condition range above my minimums. And the Ford just never had it. 329 mile range in the BEST conditions would barely get out of my driveway before needing a charge in single digit temps while heavy towing. I'm exaggerating a bit of course, but still when you calc that the coldest weather can hit you to the point where you only get 60% percent, then lose another 50% on top of that when towing and it just isnt enough.

Slashdot Top Deals

In every hierarchy the cream rises until it sours. -- Dr. Laurence J. Peter

Working...