Posts with «language|en-us» label

Defense Department alerts over 20,000 employees about email data breach

The Department of Defense sent a data breach notification letter to thousands of current and former employees alerting that their personal information had been leaked, DefenseScoop reported on Tuesday. While the department first detected the incident in early 2023, the notifications didn't begin to go out until earlier this month. More than 20,000 individuals appear to be affected by the breach. 

The letter explains that emails messages were "inadvertently exposed to the internet" by a Defense Department "service provider." The emails contained personally identifiable information. While the agency doesn't clarify what type of information, PII generally ranges from information like social security numbers, home address or other sensitive details. "While there is no evidence to suggest that your PII was misused, the department is notifying those individuals whose PII may have been breached as a result of this unfortunate situation," the letter says. It urges affected parties to sign up for identity theft protection.

According to TechCrunch, the breach stems from an unsecured cloud email server that leaked sensitive emails onto the web. The Microsoft server, which was likely misconfigured, could be accessed from the internet without so much as a password. 

"As a matter of practice and operations security, we do not comment on the status of our networks and systems. The affected server was identified and removed from public access on February 20, 2023, and the vendor has resolved the issues that resulted in the exposure," the Department of Defense said in a statement. "DOD continues to engage with the service provider on improving cyber event prevention and detection. Notification to affected individuals is ongoing."

This article originally appeared on Engadget at https://www.engadget.com/defense-department-alerts-over-20000-employees-about-email-data-breach-164528056.html?src=rss

Get a two-pack of Sonos Era 100 smart speakers for $88 off

We named the Sonos Era 100 the best midrange option in our guide to smart speakers and right now, Woot is selling a two-pack for $410. That amounts to an 18 percent discount or $88 less than buying them at full price from Sonos. This isn't the lowest price we've seen — that happened during Black Friday last year, when a single unit sold for $199 directly from Sonos. Still, if you want a smart speaker capable of delivering good audio, the deal is worth considering as Sonos speakers aren't often on sale. 

The Sonos Era 100 earned an 88 in our review, with Engadget's Nathan Ingraham calling it "affordable multi-room audio that actually sounds good." This is the replacement for the popular Sonos One and improves upon its predecessor in both sound quality and features. It has a new speaker array with two tweeters and a larger woofer. Combined, the improvements add up to better clarity and impressive bass. 

The Era 100 can now tune itself based on where you put the speaker thanks to the built-in mics (previously you had to manually optimize it using your phone). Unlike the Sonos One, this generation does have line-in capabilities, but you'll need an adapter to hook up a turntable. The multi-room audio feature is simple to set up, as is pairing the speakers to work in stereo — that means if you go for this offer, it'll be easy to get the most out of the set.  

As a smart speaker, Alexa comes standard so you can get help with questions, smart home control and other tasks like setting reminders or managing your smart home devices. There's also the Sonos assistant, which lets you control your music just by asking. Unfortunately, the Google Assistant is no longer supported through Sonos speakers. The Era 100 does support Apple AirPlay 2, but you'll need to access Siri through your phone, not the speaker. 

Follow @EngadgetDeals on Twitter and subscribe to the Engadget Deals newsletter for the latest tech deals and buying advice.

This article originally appeared on Engadget at https://www.engadget.com/get-a-two-pack-of-sonos-era-100-smart-speakers-for-88-off-162558229.html?src=rss

Meta takes down Chinese Facebook accounts posing as US military families

Meta has taken down a network of fake accounts that posed as US military families and anti-war activists. The fake accounts on Facebook and Instagram originated in China and targeted US audiences, according to the company’s security researchers.

Meta detailed the takedowns in its latest report on coordinated inauthentic behavior (CIB). The cluster of fake accounts was relatively small — 33 Facebook accounts, four Instagram profiles, six pages and six groups on Facebook. The accounts posted about US aircraft carriers and other “military themes,” as well as “criticism of US foreign policy towards Taiwan and Israel and its support of Ukraine,” Meta wrote in its report.

The group also ran accounts on YouTube and Medium and shared an online petition “claiming to have been written by Americans to criticize US support for Taiwan.” The company’s researchers said the fake accounts originated in China, but didn’t attribute the effort to a specific entity or group. During a call with reporters, Meta’s global threat intelligence lead Ben Nimmo said that there has been a rise in China-based influence operations over the last year.

“The greatest change in the threat landscape,” Nimmo said, “has been this emergence of Chinese influence operations.” Nimmo said. He noted that Meta has taken down 10 CIB networks originating in China since 2017, but that six of those takedowns came in the last year. Last summer, Meta discovered and removed an especially large network of thousands of fake accounts that attempted to spread pro-China propaganda messages on the platform.

In both cases, the fake accounts were apparently unsuccessful at spreading their message. The latest network only managed to reach about 3,000 Facebook accounts, according to Meta, and the two Instagram pages had no followers at the time they were discovered.

Still, Meta’s researchers note that attempts like this will likely continue ahead of the 2024 election and that people with large audiences should be wary of resharing unverified information. “Our threat research shows that, historically, the main way that CIB networks get through to authentic communities is when they manage to co-opt real people — politicians, journalists or influencers — and tap into their audiences,” the report says. “Reputable opinion-makers represent an attractive target and should exercise caution before amplifying information from unverified sources, particularly ahead of major elections.”

This article originally appeared on Engadget at https://www.engadget.com/meta-takes-down-chinese-facebook-accounts-posing-as-us-military-families-160059602.html?src=rss

Russian and North Korean hackers used OpenAI tools to hone cyberattacks

Microsoft and OpenAI say that several state-backed hacking groups are using the latter’s generative AI (GAI) tools to bolster cyberattacks. The pair suggests that new research details for the first time how hackers linked to foreign governments are making use of GAI. The groups in question have ties to China, Russia, North Korea and Iran.

According to the companies, the state actors are using GAI for code debugging, looking up open-source information to research targets, developing social engineering techniques, drafting phishing emails and translating text. OpenAI (which powers Microsoft GAI products such as Copilot) says it shut down the groups’ access to its GAI systems after finding out they were using its tools.

Notorious Russian group Forest Blizzard (better known as Fancy Bear or APT 12) was one of the state actors said to have used OpenAI's platform. The hackers used OpenAI tools "primarily for open-source research into satellite communication protocols and radar imaging technology, as well as for support with scripting tasks," the company said.

As part of its cybersecurity efforts, Microsoft says it tracks north of 300 hacking groups, including 160 nation-state actors. It shared its knowledge of them with OpenAI to help detect the hackers and shut down their accounts.

OpenAI says it invests in resources to pinpoint and disrupt threat actors' activities on its platforms. Its staff uses a number of methods to look into hackers' use of its systems, such as employing its own models to follow leads, analyzing how they interact with OpenAI tools and determining their broader objectives. Once it detects such illicit users, OpenAI says it disrupts their use of the platform through the likes of shutting down their accounts, terminating services or minimizing their access to resources.

This article originally appeared on Engadget at https://www.engadget.com/russian-and-north-korean-hackers-used-openai-tools-to-hone-cyberattacks-152424393.html?src=rss

The ice caps are melting. Is geoengineering the solution?

Since 1979, Arctic ice has shrunk by 1.35 million square miles, a new JPL study found ice loss in Greenland is far worse than previously thought and Antarctic ice is now at the lowest level since records began. The more they melt, the faster the rate of decline for the ice that remains until we’re faced with a series of catastrophes. The most immediate of which is sea level rise which threatens to eradicate whole nations that are situated on low-lying islands. How do we stop such a problem? While we remedy the longer-term issues around fossil fuel consumption, we might have to buy ourselves more time with geoengineering.

The severity of this situation can’t be stressed enough. Professor John Moore of the Arctic Center, University of Lapland, says that we’re long past the point where emissions reductions alone will be effective. “We are faced with this situation where there’s no pathway to 1.5 [degrees] available through mitigation,” he said. “Things like the ice sheets [melting] and other tipping points will happen regardless,” adding that the Earth’s present situation is akin to a patient bleeding out on the operating table, “we are in this situation where we cannot mitigate ourselves out of the shit.”

Moore is one of the figures behind Frozen Arctic, a report produced by the universities of the Arctic and Lapland alongside UN-backed thinktank GRID-Arendal. It’s a rundown of sixty geoengineering projects that could slow down or reverse polar melting. A team of researchers opted to examine every idea, from those already in place to the ones at the fringes of science. “We wanted to be thorough,” said Moore, “because even the craziest idea might have a nugget of gold in there.” Each approach has been given a brief analysis, examining if it’s feasible on a scientific or practical basis, if it would be potentially helpful and how much it would cost. The report even went so far as to look at pykrete, a wacky World War Two initiative to create artificial glaciers for strategic use by mixing sawdust or paper products into ice.

If you’re curious and don’t have a day or two to read the report yourself, you can boil down the approaches to a handful of categories. The first is Solar Radiation Management, i.e. making the polar regions more reflective to bounce away more of the sun’s heat. Second, there’s artificial ice generation to compensate for what has already been lost. Third, enormous engineering work to buttress, isolate and protect the remaining ice — like massive undersea walls that act as a barrier against the seas as they get warmer. Finally, there are measures that nibble at the edges of the problem in terms of effect, but have more viable long-term success, like preventing flora and fauna (and the warmth they radiate) from encroaching on regions meant to remain frozen.

If you’re a climate scientist, the likely most obvious approach is the first, because we’ve seen the positive effects of it before. Albedo is the climate science term to describe how white ice acts as an enormous reflector, bouncing away a lot of the sun’s heat. Ice ages dramatically increase albedo, but there are more recent examples in living memory: In 1991 Mount Pinatubo, a volcano in the Philippines, erupted, spewing an enormous amount of volcanic ash into the atmosphere. (The event also caused a large amount of damage, displaced 200,000 people and claimed the lives of at least 722.) According to NOAA, the ash dumped into the atmosphere helped reflect a lot of solar heat away from the Earth, causing a temporary global cooling effect of roughly 1.5 degrees celsius. The devastation of Pinatubo isn’t desirable, nor was the ozone depletion that it caused, but that cooling effect could be vital to slowing global warming and polar melting.

It’s possible to do this artificially by seeding the clouds with chemicals deposited by an airplane or with ground-based smoke generators, which can also be used to promote rain clouds. This is a tactic already used in China to help make rain for agriculture and to alleviate drought-like conditions. In this context, the clouds would act as a barrier between the sun and the ice caps, bouncing more of that solar radiation away from the Earth’s surface. Unfortunately, there’s a problem with this approach, which is that it’s incredibly expensive and incredibly fussy. The report says it’s only viable when the right clouds are overhead, and the work would require enormous infrastructure to be built nearby. Not to mention that while we have some small shreds of evidence to suggest it might be useful, there’s nothing proven as yet.

And then there are the second order effects when these approaches then spill over into the rest of the global ecosystem. “If you do sunlight reflection methods and you put anything up in the atmosphere, it doesn’t stay where you put it.” That’s the big issue identified by Dr. Phil Williamson, honorary associate professor at the University of East Anglia and a former contributor to the UN’s keystone Intergovernmental Panel on Climate Change reports. His concern is that regional, targeted climate solutions “don’t solve the problem for the whole world,” and that if you’re not tackling climate change on a global scale, then you’re “just accentuating the difference.” With a cold arctic, but rising temperatures elsewhere, you’re climbing aboard a “climate rollercoaster.”

Second in the ranking of hail-mary climate approaches is to build a freezer to both cool down the existing ice and make more. Sadly, many ideas in this area forget that ice sheets are not just big blocks of immovable ice and are, in fact, liable to move. Take the idea of drilling down two miles or so into the ice sheet and pumping out the warm water to cool it down: Thanks to the constantly shifting ice and water, a new site would need to be drilled fairly regularly.

There’s another problem: The report says one project to bore a hole down 2.5km (1.5 miles) burned 450,000 liters of fuel. Not to mention how much energy it would consume to run the heat exchangers or freezers to create fresh ice on such a scale. That's a considerable amount of greenhouse gas pollution for a project meant to undo that exact type of damage. Dumping a layer of artificially-made snow on a mountain may work fine for a ski resort when the powder’s a little thin, but not the whole planet.

As hard as the scientific and engineering battles will be, there’s also the political one that will need addressing. “A lot of people get quasi-religiously upset about putting stuff into the stratosphere,” said Professor John Moore, “you’d think they’d get similarly upset about greenhouse gasses.” One strategy under consideration is to inject sulfur into the atmosphere to replicate the cooling effects observed after major volcanic eruptions. The sulfur would form SO2, creating thick layers of dense cloud to block more heat from reaching the ice. But if you, like me, have a high school-level knowledge of science, that’s a scary prospect given that sulfur dioxide would resolve to sulfuric acid. Given the microscopic quantities involved, there would be little-to-no impact on the natural world. But the image of acid rain pouring down from the clouds means it’d be a hard sell to an uninformed population.

But if there is a reason for concern, it’s that any unintended consequences could pose a problem in the global political space. “It’s almost like declaring war on the rest of the world if [a nation] goes it alone,” says Phil Williamson, “because any damage or alteration to the global climate system, the country that did it is responsible for all future climatic disasters because the weather isn’t the same.”

Of course, Moore knows that the Frozen Arctic report’s conclusions aren’t too optimistic about a quick fix. He feels its conclusions should serve as a wake-up call for the planet. “Nobody is going to scale up something for the entire arctic ocean overnight,” he said, but that this is the time to “find ideas that might be valuable [...] and then put resources into finding out if [those ideas] really are useful.” He added that the short turnaround time before a total climate disaster isn’t much of an issue, saying “engineers can pretty much do anything you ask them to if you put enough resources into it.” Because the alternative is to do nothing, and “every day that we choose to do nothing, we accept more of the damages that are coming.”

This article originally appeared on Engadget at https://www.engadget.com/the-ice-caps-are-melting-is-geoengineering-the-solution-150004916.html?src=rss

Slack’s new generative AI features include thread summaries and conversational search

Slack has finally unleashed its generative AI toolset on the world, after teasing it last year. The vast majority of these features look to simplify your day-to-day life when using the work-focused chat platform.

First up, the AI will auto-generate channel recaps to give you key highlights of anything you missed while away from the keyboard or smartphone. Slack says the algorithm that generates these recaps is smart enough to separate the content from the various topics discussed. In other words, if your co-workers launched into a debate about coffee beans and also talked about third-quarter earnings or whatever, you should get a paragraph on both.

There’s a similar tool available for threads, which are basically just one-on-one or group conversations that don’t occupy an entire channel. This lets users “get up to speed on any thread in just one click.” Now you can safely ignore that one colleague who messages you eight times in a row when one short paragraph would absolutely suffice.

Another cool feature here is conversational search. This allows you to ask a question using natural language instead of using Slack’s pre-existing search bar to slowly crawl through previous chats. The algorithm does the crawling for you, providing you with a “clear, concise answer based on relevant conversational data.”

It remains to be seen just how much time these tools will save the average user throughout the workday, but Slack says it remains committed to artificial intelligence. To that end, the company is prepping more native AI features, including the ability to generate personalized summaries of channels that users don’t check daily but want to keep an eye on. Additionally, Slack says it’ll soon integrate some of its most-used third-party apps into the AI ecosystem.

This article originally appeared on Engadget at https://www.engadget.com/slacks-new-generative-ai-features-include-thread-summaries-and-conversational-search-140059238.html?src=rss

A piracy app outranked Netflix on the App Store before Apple pulled it

Over the past week, there was an app called Kimi that curiously outranked well-known streaming services, such as Netflix and Prime Video, in the list of top free entertainment apps for iOS. Now, Apple has pulled down the application... most likely because it gave users access to pirated movies. As Wired reports, Kimi was disguised as an app that tests your eyesight by making you play spot the difference in similar photos. In reality, it was nothing of the sort and instead contained bootlegged shows and movies, including recent blockbusters and award-winning films. 

Its offerings, however, varied in quality in a way that's familiar to those who used to look for shows and movies online before the advent of streaming services. Kimi's copy of the Emma Stone-starrer Poor Things was apparently grainy and pixelated, while other movies available in high-quality copies had ads blocking the view across the top of the screen. The app was so easy to use: Viewers simply had to download it and fire it up to start watching. It was similar to the now-defunct service Popcorn Time, in that it made pirating movies as easy as watching Netflix. Popcorn Time shut down for good in 2022. 

Apple prides itself on privacy and safety and on making sure the apps it makes available for download are on the up and up. When it revealed how it would comply with the European Union's Digital Markets Act (DMA), for instance, it said any alternative app store that makes its way to the company's platforms will need to have stringent rules and moderation tools comparable to its own. Apple itself may have to start keeping a close eye on its App Store, though. Viewers have been expressing their discontent online on having to pay for too many streaming services to be able to watch what they want to, and it seems like more and more people are turning to piracy again. 

This article originally appeared on Engadget at https://www.engadget.com/a-piracy-app-outranked-netflix-on-the-app-store-before-apple-pulled-it-132013246.html?src=rss

Google will use AI and satellite imagery to monitor methane leaks

While carbon dioxide gets the lion's share of attention when it comes to global warming, there are other factors at play. Methane is responsible for about 30 percent of the rise in global temperatures since the Industrial Revolution, according to the International Energy Agency. About 40 percent of methane emissions from human activity stem from the energy sector. Identifying and mitigating these emissions is said to be one of the most critical actions we can take in the short term to combat climate change.

To that end, Google and the Environmental Defense Fund (EDF) have once again teamed up to tackle the issue. The pair previously mapped methane leaks in major cities using sensors on Street View cars. This time they're using a blend of satellite imagery and AI.

The EDF and its partners have developed a satellite that's set to launch on a SpaceX Falcon 9 rocket in early March. While there have been other satellite-based monitoring efforts, MethaneSAT is slated to provide the most comprehensive picture yet of methane emissions across the planet.

The satellite will orbit the Earth 15 times a day at an altitude of over 350 miles, and focus on measuring methane levels in the top oil- and gas-producing regions. It will be capable of imaging large emissions from a single source as well as smaller sources of methane spread across wider areas.

EDF and its partners developed Google Cloud-powered algorithms to calculate emissions in certain places and to track them over time. Artificial intelligence will also be employed to pinpoint oil and gas infrastructure such as storage containers and pump jacks, much like Google uses AI to detect sidewalks, street signs and road names in satellite images for Maps.

Combining the methane map with one showing oil and gas infrastructure is expected to provide a clearer picture of where emissions are stemming from. That should give energy companies actionable information to help them stop leaks.

Insights from the project will be publicly available on the satellite's website and Google Earth Engine later this year. "By making MethaneSAT datasets available on Earth Engine, which has over 100,000 monthly active users, it’s easier for users to detect trends and understand correlations between human activities and environmental impact," Yael Maguire, Google's vice president and general manager of Geo Developer and Sustainability, wrote in a blog post. Earth Engine users will be able to match the methane data against other maps, such as those showing forests, regional borders and water. They'll also be able to view methane emissions over time.

This article originally appeared on Engadget at https://www.engadget.com/google-will-use-ai-and-satellite-imagery-to-monitor-methane-leaks-130051724.html?src=rss

DuckDuckGo's privacy-focused browser gets cross-device syncing and backups

It's no secret that using the internet usually means handing over most of your personal information – consciously or not. DuckDuckGo bills itself as an alternative to this, protecting its users' privacy, and now it’s providing users an easier way to access their information from multiple places. The browser has announced a new sync and backup feature that shares bookmarks, email protection settings and passwords across devices.

Basically, DuckDuckGo users who choose it for its lack of data sharing can still get the advantages of using the same browser on multiple devices without wondering who gets access to their searches. The entire process is end-to-end encrypted, with DuckDuckGo never receiving any information as the key for decryption is stored on the individual's devices.

The update means that individuals can share information, for example, from their DuckDuckGo browser on their PC or Mac to their Android or iPhone and vice versa. Mobile phones and tablets can link with a QR code, while computers require users to enter a code. There's no need to sign in, but users will want to download a Recovery PDF. It allows people to access synced data if a device breaks, including Email Protection, which removes hidden trackers and creates unique and private email addresses. 

This article originally appeared on Engadget at https://www.engadget.com/duckduckgos-privacy-focused-browser-gets-cross-device-syncing-and-backups-130017599.html?src=rss

Instacart cuts 250 jobs after reporting increased revenue

Another day, another layoff occuring in the tech world. Instacart, the popular grocery delivery and pick-up service has announced the termination of 250 employees — about seven percent of its workforce. The layoffs are primarily individuals from middle management or who work on advertising through platforms like Google Ads and Roku. Most of the layoffs will go into effect by March 31 with Instacart estimating that the process will cost the company between $19 million and $24 million due to factors like severance pay and employee benefits.

Instacart released the news along with its fourth-quarter earnings. Despite choosing to layoff employees, the company reported a six percent increase in revenue, jumping from $803 million to $804 million, year-over-year. At the same time, Instacart is seeing the voluntary departure of three of its executives: the chief operating officer, chief technology officer and chief architect.

The layoffs follow only a short time after Instacart's September 2023 IPO. Unlike many companies that barely (or didn't) survive the COVID-19 pandemic, Instacart thrived. It allowed people to stay and still receive their groceries and other necessary items. Now, it exists in 5,500 cities and, like most companies of the past year, is focusing on building its AI capabilities. But, despite its increased revenue, the company's layoffs signal that not everything is going as planned over at Instacart

This article originally appeared on Engadget at https://www.engadget.com/instacart-cuts-250-jobs-after-reporting-increased-revenue-112503431.html?src=rss