China Rebrands Proposal on Internet Governance, Targeting Developing Countries (euractiv.com) 41
Beijing's new proposal took the form of a modification of a resolution set to be adopted at the World Telecommunication Development Conference, the ITU's conference dedicated to telecom development that takes place in Rwanda from 6 to 16 June. Two weeks ago, the Chinese government circulated a modification of a resolution that in a footnote introduced the concept of IPv6+, presented as an enhanced version of the latest version of the internet protocol, known as IPv6. At around the same time, IPv6+ was promoted by Huawei. "IPv6+ can realize more open and active technology and service innovation, more efficient and flexible networking and service provision, more excellent performance and user experience," the footnote reads. According to the document, seen by EURACTIV, IPv6+ would have three crucial advantages. A more efficient allocation of information across the network; integration of other technologies that allow for an organisation of network resources; integration of innovative solutions.
Older iPads May Soon Be Able To Run Linux (arstechnica.com) 47
Development work on this latest Linux-on-iDevices effort is still in its early days. The photos that the developers shared both show a basic boot process that fails because it can't mount a filesystem, and Dybcio notes that basic things like USB and Bluetooth support aren't working. Getting networking, audio, and graphics acceleration all working properly will also be a tall order. But being able to boot Linux at all could draw the attention of other developers who want to help the project.
Compared to modern hardware with an Apple M1 chip, A7 and A8-powered devices wouldn't be great as general-purpose Linux machines. While impressive at the time, their CPUs and GPUs are considerably slower than modern Apple devices, and they all shipped with either 1GB or 2GB of RAM. But their performance still stacks up well next to the slow processors in devices like the Raspberry Pi 4, and most (though not all) A7 and A8 hardware has stopped getting new iOS and iPadOS updates from Apple at this point; Linux support could give some of these devices a second life as retro game consoles, simple home servers, or other things that low-power Arm hardware is good for. Further reading: Linux For M1 Macs? First Alpha Release Announced for Asahi Linux
25 Gigabit Per Second Fiber Retail Broadband Service Demoed in New Zealand (www.crn.nz) 69
Currently, Chorus has no wholesale 25 GPON product, with its fastest offering topping out at 8/8 Gbps HyperFibre. The wholesaler expects to develop a 25 GPON based services within the next two to three years, with a Nokia optical network termination unit that supports either 25/25 Gbps or 25/10 Gbps options. Kurt Rodgers, network strategy manager at Chorus, said the faster broadband service would come into its own for industrial metaverse applications, the Internet of Things, and low-latency cloud connectivity....
Chorus chief technology officer Ewen Powell said the 25 GPON service demonstrated "a future-proofed technology." Although two-wavelength 50 Gbps service is appearing as a choice for providers, with 100 GPON on the horizon, Chorus is betting that the 25 Gbps variant will offer the best cost benefit overall for providers, as it can use existing optics equipment.
Thanks to long-time Slashdot reader Bismillah for submitting the article.
Omnipotent BMCs From Quanta Remain Vulnerable To Critical Pantsdown Threat (arstechnica.com) 14
Over the next few months, multiple BMC vendors issued patches and advisories that told customers why patching the vulnerability was critical. Now, researchers from security firm Eclypsium reported a disturbing finding: for reasons that remain unanswered, a widely used BMC from data center solutions provider Quanta Cloud Technology, better known as QCT, remained unpatched against the vulnerability as recently as last month. As if QCT's inaction wasn't enough, the company's current posture also remains baffling. After Eclypsium privately reported its findings to QCT, the solutions company responded that it had finally fixed the vulnerability. But rather than publish an advisory and make a patch public -- as just about every company does when fixing a critical vulnerability -- it told Eclypsium it was providing updates privately on a customer-by-customer basis. As this post was about to go live, "CVE-2019-6260," the industry's designation to track the vulnerability, didn't appear on QCT's website. [...] "[T]hese types of attacks have remained possible on BMCs that were using firmware QCT provided as recently as last month," writes Ars' Dan Goodin in closing. "QCT's decision not to publish a patched version of its firmware or even an advisory, coupled with the radio silence with reporters asking legitimate questions, should be a red flag. Data centers or data center customers working with this company's BMCs should verify their firmware's integrity or contact QCT's support team for more information."
China Launches an Autonomous Mothership Full of Autonomous Drones (newatlas.com) 84
It's kitted out with everything it needs to deploy its own boats, subs and aircraft, communicate with them, and run co-ordinated missions, including conducting "task-oriented adaptive networking to achieve three-dimensional views of specific targets," according to the shipbuilding company. The aerial drones can land back on its deck, and it stands ready to retrieve the boats and subs once they've made their rounds. While it's mainly pitched as an ocean research platform, the SCMP also reports that it has "military capability to intercept and expel invasive targets," a capability at the forefront of many autonomous marine projects. "Please note that Beijing went from laying down a new class of ship to christening in less than a year," adds the reader.
Microsoft's Windows Subsystem For Android Just Got a Big Update (zdnet.com) 37
Android-Windows integration has also been improved. Windows taskbar icons now show which Android apps are currently using hardware features like the mic and location in the system tray. The taskbar now also correctly appears or disappears when apps are running or stopped. Android notifications also show as Windows notifications and the Windows title of an Android app now reflects the Android activity title. Android apps won't restart afresh after exiting connected standby mode, but instead will recommence where the app was paused.
Of the "many camera updates" in this release, Microsoft highlights that camera orientation is fixed to natural orientation, and that it's fixed incorrect camera previews, letterboxing (where the app window is wider than it is high, or horizontally longer), and a "squishing of the camera feed." Mouse and keyboard inputs in Windows Subsystem for Android have been improved. Microsoft also improved scroll-wheel support, fixed the onscreen keyboard focus, and ensured the Android soft keyboard displays correctly. The updated Windows Subsystem for Android Settings app gained redesigned UX and diagnostics data viewer. As of this update, telemetry collection is off by default. However, Microsoft is encouraging users to enable the setting, so it can collect data about Android app usage. "Other important updates include reduced flicker when apps are restored from a minimized state, the addition of VP8 and VP9 video hardware decoding, and the addition of Chromium WebView 100 to the Windows Subsystem for Android," adds ZDNet.
Knoxville Researcher Wins A.M. Turing Award (knoxnews.com) 18
A local computer scientist and professor at the University of Tennessee at Knoxville has been named an A.M. Turing Award winner by the Association for Computing Machinery. The Turing Award is often referred to as the "Nobel Prize of computer science." It carries a million dollar prize.
"Oh, it was a complete shock. I'm still recovering from it," Jack Dongarra told Knox News with a warm laugh. "It's nice to see the work being recognized in this way but it couldn't have happened without the support and contribution of many people over time." Chances are Dongarra's work has touched your life, even if you don't know it. If you've ever used a speech recognition program or looked at a weather forecast, you're using technology that relies on Dongarra's software libraries. Dongarra has held a joint appointment at the University of Tennessee and Oak Ridge National Laboratory since 1989. While he doesn't have a household name, his foundational work in computer science has undergirded the development of high-performance computers over the course of his 40-year career...
Dongarra developed software to allow computers to use multiple processors simultaneously, and this is basically how all computer systems work today. Your laptop has multiple processing cores and might have an additional graphics processing core. Many phones have multiple processing cores. "He's continually rethought how to exploit today's computer architectures and done so very effectively," said Nicholas Higham a Royal Society research professor of applied mathematics at the University of Manchester. "He's come up with ideas so that we can get the very best out of these machines." Dongarra also developed software that allowed computers with different hardware and operating systems to run in parallel, networking distant machines as a single computation device. This lets people make more powerful computers out of many smaller devices which helped develop cloud computing, running high-end applications over the internet. Most of Dongarra's work was published open-source through a project called Netlib.
Congratulations!
EU Governments, Lawmakers Agree on Tougher Cybersecurity Rules for Key Sectors (reuters.com) 14
The new rules cover all medium and large companies in essential sectors - energy, transport, banking, financial market infrastructure, health, vaccines and medical devices, drinking water, waste water, digital infrastructure, public administration and space. All medium and large firms in postal and courier services, waste management, chemicals, food manufacturing, medical devices, computers and electronics, machinery equipment, motor vehicles, and digital providers such as online market places, online search engines, and social networking service platforms will also fall under the rules.
Microsoft Recommends People Uninstall Optional Windows 11 Update KB5012643 (extremetech.com) 75
"Affected apps are using certain optional components in .NET Framework 3.5, such as Windows Communication Foundation (WCF) and Windows Workflow (WWF) components." This update also broke Safe Mode. Microsoft says when users booted into 'Safe Mode without networking' users might see the screen flicker. Per MS, "Components that rely on explorer.exe, such as File Explorer, the Start menu, and the taskbar, can be affected and appear unstable." Microsoft issued a Known Issue Rollback (KiR) for this already so it should be fixed. If you encounter it, you should be able to resolve it by enabling network support in Safe Mode.
After Microsoft Releases Patch for RPC Exploit: What the Honeypot Saw (sans.edu) 9
But still, attackers are heavily hitting other vulnerabilities like of course still ETERNALBLUE
From the article: Should you stop rushing out the April patch? Absolutely not. I hope you are already done applying the patch. But the April Windows patch had several additional gems, not just patches for RPC. Chatter about CVE-2022-26809 has died down, but as they say: Sometimes the quiet ones are the dangerous ones, and people able to exploit this vulnerability may not broadcast what they are doing on social media.
The article is credited to Johannes B. Ullrich, Ph.D. , Dean of Research at the security site SANS.edu.
Interestingly, Ullrich's byline is hyperlinked to a Google+ profile which has been unavailable for nearly three years.
Insteon Looks Dead, Just Like Its Users' Smart Homes (arstechnica.com) 133
Insteon is (or, more likely, "was") a smart home company that produced a variety of Internet-connected lights, thermostats, plugs, sensors, and of course, the Insteon Hub. At the core of the company was Insteon's proprietary networking protocol, which was a competitor to more popular and licensable alternatives like Z-Wave and Zigbee. Insteon's "unique and patented dual-mesh technology" used both a 900 MHz wireless protocol and powerline networking, which the company said created a more reliable network than wireless alone. The Insteon Hub would bridge all your gear to the Internet and enable use of the Insteon app.
WhatsApp To Launch 'Communities' (techcrunch.com) 5
The feature has been under development for some time as the next big iteration for the WhatsApp platform, meant to capitalize on the app's existing end-to-end encryption as well as users' growing desire to join private communities outside of larger social platforms, like Facebook. In particular, Communities could present a challenge to other messaging apps like Telegram -- which has recently become a prominent player in communications related to the Russia-Ukraine war -- in addition to other private messaging platforms, like iMessage or Signal, as well as apps like GroupMe, Band, Remind and others used to communicate with groups.
Meta Plans To Take Nearly 50% of Creator's Earnings In 'Horizon Worlds' (roadtovr.com) 79
That's a pretty hefty take, but not entirely out of line with contemporaries. Roblox, for instance, takes between 30% and 70% of the revenue generated by creators depending upon whether the creator sold the item directly to customers or if the item was sold on the Roblox marketplace or by another party. These are big fees, no doubt, but creators are getting something in return. Horizon Worlds, for instance, offers up its self-contained collaborative building tools, access to an audience, and handles all hosting and networking costs associated with the things creators build. Whether that's worth 47.5% of what someone manages to sell on the platform is going to be up to the creator.
AMD To Acquire Pensando in a $1.9 Billion Bid for Networking Tech (protocol.com) 12
Nokia Disputes Report of Work on Russian Surveillance System as 'Misleading' (itwire.com) 14
Slashdot reader juul_advocate shares ITWire's report, which labels the Times' story "a rehashing of a story published by the American tech website TechCrunch back in 2019."
A Nokia spokesperson said, in a detailed rebuttal, that the Times had confirmed that the documents used as source material for the story were the same as those used by TechCrunch....
The Russian lawful intercept system is known as System for Operative Investigative Activities, or SORM. Nokia said the Times had suggested that its networks play an active part in enabling equipment used for SORM. "This is incorrect. Like any other network infrastructure supplier, Nokia is required to ensure that the networking products we sell have passive capability to interface with lawful intercept equipment of law enforcement agencies," the company said.
"This is governed by internationally recognised standards, as well as local regulations. All Nokia deals go through a strict human rights due diligence process that has been externally assessed and vetted by the Global Network Initiative. We are the first and only telecommunications equipment vendor to have this external assessment in place...."
[I]t is a third party which converts the standards-based interface in Nokia's products to fit with the legal intercept requirements — a fact which is also reflected in the 2019 documents." The Finnish company, one of four that is able to supply end-to-end 5G networks, added: "As Nokia has made clear to The New York Times, Nokia does not manufacture, install or service SORM equipment or systems. Any suggestions that we do, are incorrect.
"Lawful intercept is a standard capability that exists in every network in almost every nation. It provides properly authorised law enforcement agencies with the ability to track and view certain data and communications passing through an operator's network for purposes of combatting crime."
In short, Nokia's rebuttal argues, "The information that was already published by TechCrunch in 2019 does not show anything more than Nokia's product interfaces meeting the standards-based, legal requirements related to lawful intercept."
Crypto Platforms Ask for Rules But Have a Favorite Watchdog (bloomberg.com) 20
He's arguing for a bigger role for the U.S. Commodity Futures Trading Commission. The relatively small agency monitors futures contracts in basic goods such as crude oil, corn, and pork, as well as financial derivatives such as interest-rate swaps. It also oversees U.S. futures and options contracts on the popular cryptocurrencies Bitcoin and Ether. A U.S. affiliate of the Bahamas-based FTX offers such crypto derivatives, so part of its business is already under the CFTC's purview. Bankman-Fried wants Congress to expand the CFTC's authority to cover trading in the coins themselves. Currently, the CFTC only claims jurisdiction over cash token markets in cases of suspected fraud or manipulation that could affect the performance of crypto derivatives. In February testimony to the Senate, he said this lack of clarity is bad for investors and the industry. Other trading platforms are also starting to see the merits of being overseen primarily by the CFTC, say industry leaders who asked not to be named talking about private discussions.
The Untold Story of the Creation of GIF At CompuServe In 1987 (fastcompany.com) 43
GIF came to be because online services such as CompuServe were getting more graphical, but the computer makers of the time — such as Apple, Commodore, and IBM — all had their own proprietary image types. "We didn't want to have to put up images in 79 different formats," explains Trevor. CompuServe needed one universal graphics format.
Even though the World Wide Web and digital cameras were still in the future, work was already underway on the image format that came to be known as JPEG. But it wasn't optimized for CompuServe's needs: For example, stock charts and weather graphics didn't render crisply. So Trevor asked Wilhite to create an image file type that looked good and downloaded quickly at a time when a 2,400 bits-per-second dial-up modem was considered torrid. Reading a technical journal, Wilhite came across a discussion of an efficient compression technique known as LZW for its creators — Abraham Limpel, Jacob Ziv, and Terry Welch. It turned out to be an ideal foundation for what CompuServe was trying to build, and allowed GIF to pack a lot of image information into as few bytes as possible. (Much later, computing giant Unisys, which gained a patent for LZW, threatened companies that used it with lawsuits, leading to a licensing agreement with CompuServe and the creation of the patent-free PNG image format.)
GIF officially debuted on June 15, 1987. "It met my requirements, and it was extremely useful for CompuServe," says Trevor....
GIF was also versatile, offering the ability to store the multiple pictures that made it handy for creating mini-movies as well as static images. And it spread beyond CompuServe, showing up in Mosaic, the first graphical web browser, and then in Netscape Navigator. The latter browser gave GIFs the ability to run in an infinite loop, a crucial feature that only added to their hypnotic quality. Seeing cartoon hamsters dance for a split second is no big whoop, but watching them shake their booties endlessly was just one of many cultural moments that GIFs have given us.
Two Python Core Developers Remain in Ukraine (businessinsider.com) 72
Storchaka lives outside of Konotop, a city in northeastern Ukraine which is occupied by Russian forces. He tweeted on February 26, "Russian tanks were on the road 2km from my house, and Russian armored vehicles were passing by my windows. Most likely, I will find myself in the occupied zone, where the law does not apply...."
Insider was unable to contact Storchaka, but spoke with Langa... [A]s the military crisis worsened on Friday and over the weekend, the Python developer community rallied to help Storchaka's younger family members. Communicating with Storchaka's family through Google Translate, Langa managed to secure temporary housing for Storchaka's niece and best friend, aged 11. They crossed the border to Poland via bus with their mother, and met Langa, who drove over 300km to Warsaw to pick up keys and secure basic necessities for the family.
"Two little 11-year-old girls (my niece and her best friend) are now safe thanks to @llanga," Storchaka tweeted last Monday, adding "My sister and I are immensely grateful." (He'd been especially worried because their town was near one of Ukraine's nuclear power plants, "a strategic target".)
Business Insider points out Storchaka is just one of many Python core developers from Ukraine, and one of many Ukrainians working in its tech sector. Andrew Svetlov, another influential Python developer who specializes in asynchronous networking support, also remains in Ukraine.... Svetlov is in Kyiv, where Russian troops have surrounded the city....
"Neither of them wanted to leave their country, even in the face of the great risk this poses for them," Langa told Insider.
David Boggs, Co-Inventor of Ethernet, Dies at 71 (nytimes.com) 69
The researcher, another new hire named Bob Metcalfe, was exploring ways of sending information to and from the lab's new computer, the Alto. Mr. Metcalfe was trying to send electrical pulses down the cable, and he was struggling to make it work. So Mr. Boggs offered to help. Over the next two years, they designed the first version of Ethernet. "He was the perfect partner for me," Mr. Metcalfe said in an interview. "I was more of a concept artist, and he was a build-the-hardware-in-the-back-room engineer." Many of the key technologies that would be developed over the next two decades as part of the Alto project would come to define the modern computer, including the mouse, the graphical user interface, the word processor and the laser printer, as well as Ethernet.