×
United States

Investigation Finds 'Little Oversight' Over Crucial Supply Chain for US Election Software (politico.com) 94

Politico reports U.S. states have no uniform way of policing the use of overseas subcontractors in election technology, "let alone to understand which individual software components make up a piece of code."

For example, to replace New Hampshire's old voter registration database, state election officials "turned to one of the best — and only — choices on the market," Politico: "a small, Connecticut-based IT firm that was just getting into election software." But last fall, as the new company, WSD Digital, raced to complete the project, New Hampshire officials made an unsettling discovery: The firm had offshored part of the work. That meant unknown coders outside the U.S. had access to the software that would determine which New Hampshirites would be welcome at the polls this November.

The revelation prompted the state to take a precaution that is rare among election officials: It hired a forensic firm to scour the technology for signs that hackers had hidden malware deep inside the coding supply chain. The probe unearthed some unwelcome surprises: software misconfigured to connect to servers in Russia ["probably by accident," they write later] and the use of open-source code — which is freely available online — overseen by a Russian computer engineer convicted of manslaughter, according to a person familiar with the examination and granted anonymity because they were not authorized to speak about it... New Hampshire officials say the scan revealed another issue: A programmer had hard-coded the Ukrainian national anthem into the database, in an apparent gesture of solidarity with Kyiv.

None of the findings amounted to evidence of wrongdoing, the officials said, and the company resolved the issues before the new database came into use ahead of the presidential vote this spring. This was "a disaster averted," said the person familiar with the probe, citing the risk that hackers could have exploited the first two issues to surreptitiously edit the state's voter rolls, or use them and the presence of the Ukrainian national anthem to stoke election conspiracies. [Though WSD only maintains one other state's voter registration database — Vermont] the supply-chain scare in New Hampshire — which has not been reported before — underscores a broader vulnerability in the U.S. election system, POLITICO found during a six-month-long investigation: There is little oversight of the supply chain that produces crucial election software, leaving financially strapped state and county offices to do the best they can with scant resources and expertise.

The technology vendors who build software used on Election Day face razor-thin profit margins in a market that is unforgiving commercially and toxic politically. That provides little room for needed investments in security, POLITICO found. It also leaves states with minimal leverage over underperforming vendors, who provide them with everything from software to check in Americans at their polling stations to voting machines and election night reporting systems. Many states lack a uniform or rigorous system to verify what goes into software used on Election Day and whether it is secure.

The article also points out that many state and federal election officials "insist there has been significant progress" since 2016, with more regular state-federal communication. "The Cybersecurity and Infrastructure Security Agency, now the lead federal agency on election security, didn't even exist back then.

"Perhaps most importantly, more than 95% of U.S. voters now vote by hand or on machines that leave some type of paper trail, which officials can audit after Election Day."
The Almighty Buck

Trump Sons Plan Crypto Startup (politico.com) 203

To make America the "crypto capital of the planet," former U.S. President Donald Trump promised crypto-friendly policies, writes Politico, which "could have a new beneficiary: his own family." Trump has vowed to enact an array of pro-crypto policies in a bid to win votes — and campaign cash — from digital asset enthusiasts in recent months. Now, he's weaving the overtures into his pitch for his sons' forthcoming startup... It remains unclear what the Trump sons' crypto venture will look like. They have been teasing their plans to launch it for weeks, in part by positioning it as an alternative to the use of big banks.... ["Be defiant," reads the tagline on their World Liberty Financial home page — with nothing more than its name and the words "Coming soon."]

Trump's sons took over control of their father's business, the Trump Organization, after he became president in 2017, but he retained ownership of the company... It is unclear whether the crypto startup would be launched as part of the Trump Organization or as a separate entity. Either way, ethics experts and watchdogs say the crypto business could create the appearance of a conflict of interest if Trump wins back the White House this fall... From an "optics perspective, it's terrible," said Richard Painter, who served as chief White House ethics lawyer under former President George W. Bush and later ran for Congress as a Democrat. But he said it wouldn't violate any ethics laws.

The family venture is the latest way Trump has embraced the digital asset industry, which is pouring more than $160 million into the 2024 elections as it seeks to help elect allies up and down the ballot. Trump has also marketed his own line of non-fungible tokens, or NFTs, which are digital images of the former president that fans can purchase for $99... Trump's NFT sales could also raise ethics concerns, said Jordan Libowitz, vice president for communications at the Citizens for Responsibility and Ethics in Washington....

"[P]rior conflicts and illegalities took advantage of preexisting loopholes," said Norman Eisen, an ethics lawyer who served in the Obama White House and later helped build the first impeachment case against Trump. "Here, Trump appears to be promising to create the loopholes while his family is simultaneously designing a business venture to exploit them."

The article notes that Trump promoted his son's crypto venture on X this week with audio from Trump's speech at a crypto conference in July. "He first revealed his pro-crypto leanings — after previously deriding digital currency — at a Mar-a-Lago event in May with supporters who bought his crypto-linked digital trading cards..."

"Trump is also facing new questions about what he would do with his stake in the parent company of the social media service Truth Social," the article adds. (Although this week the stock hit a new low. After losing 50% of its value in six weeks, it's dropped below $20 per share for the first time since it started publicly trading...)
Open Source

Open Source Redis Fork 'Valkey' Has Momentum, Improvements, and Speed, Says Dirk Hohndel (thenewstack.io) 16

"Dirk Hohndel, a Linux kernel developer and long-time open source leader, wanted his audience at KubeCon + CloudNativeCon + Open Source Summit China 2024 Summit China to know he's not a Valkey developer," writes Steven J. Vaughan-Nichols. "He's a Valkey user and fan." [Hohndel] opened his speech by recalling how the open source, high-performance key/value datastore Valkey had been forked from Redis... Hohndel emphasized that "forks are good. Forks are one of the key things that open source licenses are for. So, if the maintainer starts doing things you don't like, you can fork the code under the same license and do better..." In this case, though, Redis had done a "bait-and-switch" with the Redis code, Hohndale argued. This was because they had made an all-too-common business failure: They hadn't realized that "open source is not a business model...."

While the licensing change is what prompted the fork, Hohndel sees leadership and technical reasons why the Valkey fork is likely to succeed. First, two-thirds of the formerly top Redis maintainers and developers have switched to Valkey. In addition, AWS, Google Cloud, and Oracle, under the Linux Foundation's auspices, all support Valkey. When both the technical and money people agree, good things can happen.

The other reason is that Valkey already looks like it will be the better technical choice. That's because the recently announced Valkey 8.0, which builds upon the last open source version of Redis, 7.2.4, introduces serious speed improvements and new features that Redis users have wanted for some time. As [AWS principal engineer Madelyn] Olson said at Open Source Summit North America earlier this year, "Redis really didn't want to break anything." Valkey wants to move a bit faster. How much faster? A lot. Valkey 8.0 overhauls Redis's single-threaded event loop threading model with a more sophisticated multithreaded approach to I/O operations. Hohndel reported that on his small Valkey-powered aircraft tracking system, "I see roughly a threefold improvement in performance, and I stream a lot of data, 60 million data points a day."

The article notes that Valkey is already being supported by major Linux distros including AlmaLinux, Fedora, and Alpine.
Earth

'Is It Ethical to Have Children in the Face of Climate Change?' (latimes.com) 302

A climate newsletter from the Los Angeles Times asked the question: Is it ethical to have children in the face of climate change?

And they start by noting many people ask that question: A Pew Research Survey published in July found that among U.S. adults aged 18 to 49 who don't plan on having kids, more than a quarter — 26% — cited "concerns about the environment, including climate change," as a major factor. Of the people over 50 who did not have kids, 6% cited the same reason, pointing to a generational divide that may be fueled by growing awareness of the issue, as well as increasing exposure to worsening climate hazards...

I worry about the well-being of these kids: What kind of world will they live in? Will there be clean air and water? Will it be too hot or smoky to play outside? (To be blunt, the outlook on these matters doesn't look great under most emissions scenarios.) But the other side of the coin involves the well-being of the planet. Is it wrong to add more people at a moment when resources are so strained — when, say, the Colorado River is shrinking to record lows and the global average temperature is soaring to record highs? Each new child, after all, will bring not only a cute little footprint but a carbon footprint as well...

[T]he fact is that climate change is also affecting reproduction. Hotter temperatures and air pollution, for instance, have been linked to increased stillbirths, preterm births, lower birth weight and increased risk of hospitalization for newborns and infants, among other negative outcomes. Pregnant people are also especially vulnerable to climate hazards, which can trigger hypertension and other health issues and contribute to reduced fertility rates.

The newsletter makes many other points, but ultimately concludes that "children, after all, are one of the clearest symbols of how we, as a society, feel about the future." And it includes this quote from the book The Quickening, in which author Elizabeth Rush visits the melting Thwaites Glacier in Antarctic.

"I can celebrate the idea that to have a child means having faith that the world will change, and more importantly, committing to being a part of the change yourself."
Earth

Scientists Detect Invisible Electric Field Around Earth For First Time 21

Scientists have finally detected and measured the ambipolar field, a weak electric field surrounding Earth that was first theorized over 60 years ago. "Any planet with an atmosphere should have an ambipolar field," says astronomer Glyn Collinson of NASA's Goddard Space Flight Center. "Now that we've finally measured it, we can begin learning how it's shaped our planet as well as others over time." ScienceAlert reports: Here's how the ambipolar field was expected to work. Starting at an altitude of around 250 kilometers (155 miles), in a layer of the atmosphere called the ionosphere, extreme ultraviolet and solar radiation ionizes atmospheric atoms, breaking off negatively charged electrons and turning the atom into a positively charged ion. The lighter electrons will try to fly off into space, while the heavier ions will try to sink towards the ground. But the plasma environment will try to maintain charge neutrality, which results in the emergence of an electric field between the electrons and the ions to tether them together. This is called the ambipolar field because it works in both directions, with the ions supplying a downward pull and the electrons an upward one. The result is that the atmosphere is puffed up; the increased altitude allows some ions to escape into space, which is what we see in the polar wind.

This ambipolar field would be incredibly weak, which is why Collinson and his team designed instrumentation to detect it. The Endurance mission, carrying this experiment, was launched in May 2022, reaching an altitude of 768.03 kilometers (477.23 miles) before falling back to Earth with its precious, hard-won data. And it succeeded. It measured a change in electric potential of just 0.55 volts -- but that was all that was needed. "A half a volt is almost nothing -- it's only about as strong as a watch battery," Collinson says. "But that's just the right amount to explain the polar wind." That amount of charge is enough to tug on hydrogen ions with 10.6 times the strength of gravity, launching them into space at the supersonic speeds measured over Earth's poles. Oxygen ions, which are heavier than hydrogen ions, are also lofted higher, increasing the density of the ionosphere at high altitudes by 271 percent, compared to what its density would be without the ambipolar field.
The findings have been published in the journal Nature.
Power

US Government Opens Up 31 Million Acres of Federal Lands For Solar (electrek.co) 103

An anonymous reader quotes a report from Electrek: The Biden administration has finalized a plan to expand solar on 31 million acres of federal lands in 11 western states. The proposed updated Western Solar Plan is a roadmap for Bureau of Land Management's (BLM) governance of solar energy proposals and projects on public lands. It bumps up the acreage from the 22 million acres it recommended in January, and this plan adds five additional states -- Idaho, Montana, Oregon, Washington, and Wyoming -- to the six states -- Arizona, California, Colorado, Nevada, New Mexico, and Utah -- analyzed in the original plan.

It would make the public lands available for potential solar development, putting solar farms closer to transmission lines or on previously disturbed lands and avoiding protected lands, sensitive cultural resources, and important wildlife habitats. [...] BLM surpassed its goal of permitting more than 25 gigawatts (GW) of clean energy projects on public lands earlier in 2024. It's permitted 29 GW of projects on public lands -- enough to power over 12 million homes. The Biden administration set the goal to achieve 100% clean electricity on the US grid by 2035.

Medicine

FDA Wants Safer Cancer Drugs, But Some Startups Fear Unintended Consequences (wsj.com) 37

For decades drugmakers have taken a more-is-more model when dosing cancer drugs in clinical trials. U.S. regulators want them to reconsider that approach. From a report: Companies with cancer drugs in clinical trials must strike a balance between doses high enough to thwart tumors, but low enough to avoid intolerable side effects. For years, Food and Drug Administration officials have expressed concern that cancer drug doses are often too high, leading to unnecessary side effects.

An FDA program launched in 2021, Project Optimus, requires companies to re-examine how they set doses of cancer treatments. This typically involves larger clinical trials to test doses to find those that optimally balance safety and efficacy. Entrepreneurs support the aim, but some fear the initiative will add time and cost to drug development, putting startups at a further disadvantage to larger competitors. [...] The FDA says it encourages drugmakers to discuss dosing plans with the agency and that new medications can still be brought to patients quickly.

China

Space Command Chief Says Dialogue With China Too Often a One-Way Street (arstechnica.com) 57

U.S. Space Command chief Gen. Stephen Whiting called for greater transparency from China regarding space debris this week, citing concerns over the recent breakup of a Long March 6A rocket's upper stage. The incident, which occurred after an August 6 satellite launch, scattered over 300 pieces of debris in low-Earth orbit.

While acknowledging some improvement in U.S.-China military dialogue, Whiting stressed on the need for proactive communication about space junk, ArsTechnica reports. "I hope the next time there's a rocket like that, that leaves a lot of debris, that it's not our sensors that are the first to detect that, but we're getting communications to help us understand that," he said.
The Media

AnandTech Shuts Down After 27-Year Run (anandtech.com) 71

AnandTech, a pioneering technology news website, is shutting down after 27 years on August 30, 2024. Founded in 1997 by Anand Lal Shimpi, the site earned a reputation for its in-depth hardware reviews and technical analysis.

In a final post on the site, AnandTech Editor-in-Chief Ryan Smith cited changing market dynamics for written tech journalism as the primary reason for closure. The site's 21,500 articles will remain accessible indefinitely, hosted by publisher Future PLC. AnandTech's forums will continue operating under Future's management.
Earth

Lego Plans To Make Half the Plastic In Bricks From Renewable Materials By 2026 68

Lego plans to make half of its bricks from renewable or recycled materials by 2026, with a goal of fully transitioning by 2032. While the company cites higher production costs and challenges with existing materials, it says it's committed to not passing these costs onto consumers. The Guardian reports: The Danish company last year ditched efforts to make bricks entirely from recycled bottles because of cost and production issues. At the moment, 22% of the material in its colourful bricks is not made from fossil fuels. The toymaker hopes gradually to bring down the amount of oil-based plastic it uses by paying up to 70% more for certified renewable resin, the raw plastic used to manufacture the bricks, in an attempt to encourage manufacturers to increase production. [...] Lego has also expanded its brick takeback programme, Replay -- where consumers can donate old bricks to the company through free shipping -- into the UK and continued to test similar models in the US and Europe.
Youtube

Can a YouTube Video Really Fix Your Wet Phone? (theverge.com) 45

An anonymous reader shares a report: Every day for the last four years, dozens of people have shown up in the comments of one particular YouTube, declaring their love and appreciation for the content. The content: two minutes and six seconds of deep, low buzzing, the kind that makes your phone vibrate on the table, underscoring a vaguely trippy animation of swirled stained glass. It's not a good video. But it's not meant to be. The video is called "Sound To Remove Water From Phone Speaker ( GUARANTEED )." [...] If you believe the comments, about half the video's 45 million views come from people who bring their phone into the shower or bathtub and trust that they can play this video and everything will be fine.

The theory goes like this: all a speaker is really doing is pushing air around, and if you can get it to push enough air, with enough force, you might be able to push droplets of liquid out from where they came. "The lowest tone that that speaker can reproduce, at the loudest level that it can play," says Eric Freeman, a senior director of research at Bose. "That will create the most air motion, which will push on the water that's trapped inside the phone." Generally, the bigger the speaker, the louder and lower it can go. Phone speakers tend to be tiny. "So those YouTube videos," Freeman says, "it's not, like, really deep bass. But it's in the low range of where a phone is able to make sound."

The best real-world example of how this can work is probably the Apple Watch, which has a dedicated feature for ejecting water after you've gotten it wet. When I first reached out to iFixit to ask about my water-expulsion mystery, Carsten Frauenheim, a repairability engineer at the company, said the Watch works on the same theory as the videos. "It's just a specific oscillating tone that pushes the water out of the speaker grilles," he said. "Not sure how effective the third-party versions are for phones since they're probably not ideally tuned? We could test."

Earth

Who Wins From Nature's Genetic Bounty? (theguardian.com) 23

Scientists are harvesting genetic data from microorganisms in a North Yorkshire quarry, fueling a global debate over ownership and profit-sharing of natural genetic resources. Researchers from London-based startup Basecamp Research are collecting samples and digitizing genetic codes for sale to AI companies. This practice of trading digital sequencing information (DSI) has become central to biotechnology research and development. The issue will be a focal point at October's COP16 biodiversity summit in Cali, Colombia, The Guardian reports.

Developing nations, home to much of the world's biodiversity, are pushing for a global system requiring companies to pay for genetic data use. Past discoveries underscore the potential value: heat-resistant bacteria crucial for COVID-19 testing and marine organisms used in cancer treatments have generated significant profits. Critics accuse companies of "biopiracy" for commercializing genetic information without compensating source countries. Proposed solutions include a global fund for equitable benefit-sharing, though implementation details remain contentious.
Businesses

Apple Announces Rare Wave of Job Cuts (theverge.com) 26

Apple has laid off about 100 employees in its services group (source may be paywalled; alternative source), primarily affecting roles associated with the Apple Books app and Apple Bookstore. The San Francisco Chronicle reports: The impacted employees at the Cupertino-based tech giant were informed of the cuts on Tuesday, Bloomberg reported (paywalled). The layoffs spanned various teams under Senior Vice President Eddy Cue. The job cuts include roles primarily associated with the Apple Books app and Apple Bookstore, with the company shifting its focus to other divisions. Additionally, other services teams, such as the one managing Apple News, also experienced layoffs.

While Apple has largely avoided mass layoffs even as other major tech companies have downsized, it did lay off 614 employees in Santa Clara earlier this year. Those cuts marked Apple's first significant job reductions since the onset of the COVID-19 pandemic and coincided with the cancellation of its decade-long electric car project.

United States

Cable Providers Top Telecom Rivals for Internet Reliability 25

A new study of broadband reliability finds a top-two finish that you might not expect from recent surveys of ISP customer satisfaction: Charter's Spectrum and Comcast's Xfinity, the two largest cable operators in the US. From a report: Opensignal's report, published Thursday, draws on software telemetry collected from April 1 through June 29 of downtime, consistency of service, and how well a provider meets basic thresholds for speed, latency, and other core performance metrics. Spectrum comes in first with a "Reliability Experience" score of 741 out of 1,000, followed by Xfinity with 710, Verizon with 625, AT&T with 546, and T-Mobile with 525. Opensignal chose those five companies to study because each passes more than a third of US homes.

But while Comcast and Charter employ the same basic cable architecture except for a few fiber-to-the-home pockets, Verizon and AT&T have mixed networks. That includes extensive and growing fiber service but also fixed 4G and 5G wireless from Verizon and hybrid-fiber broadband from AT&T, both of which lack fiber's speed and capacity advantages, plus obsolete DSL connectivity. T-Mobile's home connectivity, meanwhile, is almost exclusively fixed wireless.
Education

Gen Z Students Show Declining School Engagement, Survey Finds 188

A new national survey reveals a concerning trend in school engagement among Gen Z students aged 12-18. The joint Gallup and Walton Family Foundation study [PDF] found that middle and high school students find classes less interesting than last year, with only half feeling positively challenged. Student engagement has dropped significantly since 2023, with 10% fewer respondents saying they learned something interesting at school in the past week.

Non-college-bound students report feeling particularly disconnected, with only 41% saying schoolwork challenges them positively compared to 55% of college-bound peers. Despite only half of students planning to attend four-year colleges, schools heavily emphasize higher education. 68% of high schoolers report hearing "a lot" about college, while only 23% hear as much about vocational alternatives.
The Courts

Appeals Court Questions TikTok's Section 230 Shield for Algorithm (reuters.com) 92

A U.S. appeals court has revived a lawsuit against TikTok over a child's death, potentially limiting tech companies' legal shield under Section 230. The 3rd U.S. Circuit Court of Appeals ruled that the law does not protect TikTok from claims that its algorithm recommended a deadly "blackout challenge" to a 10-year-old girl.

Judge Patty Shwartz wrote that Section 230 only immunizes third-party content, not recommendations made by TikTok's own algorithm. The decision marks a departure from previous rulings, citing a recent Supreme Court opinion that platform algorithms reflect "editorial judgments." This interpretation could significantly impact how courts apply Section 230 to social media companies' content curation practices.
AI

AI Giants Pledge To Share New Models With Feds 14

OpenAI and Anthropic will give a U.S. government agency early access to major new model releases under agreements announced on Thursday. From a report: Governments around the world have been pushing for measures -- both legislative and otherwise -- to evaluate the risks of powerful new AI algorithms. Anthropic and OpenAI have each signed a memorandum of understanding to allow formal collaboration with the U.S. Artificial Intelligence Safety Institute, a part of the Commerce Department's National Institute of Standards and Technology. In addition to early access to models, the agreements pave the way for collaborative research around how to evaluate models and their safety as well as methods for mitigating risk. The U.S. AI Safety Institute was set up as part of President Biden's AI executive order.
Earth

Canada Wildfires Last Year Released More Carbon Than Several Countries 85

A study found that Canada's 2023 wildfires released 647 megatons of carbon, surpassing the emissions of seven of the ten largest emitting countries, including Germany, Japan, and Russia. "Only China, India and the United States emitted more carbon emissions during that period, meaning that if Canada's wildfires were ranked alongside countries, they would have been the world's fourth largest emitter," adds Reuters. From the report: Typical emissions from Canadian forest fires over the last decade have ranged from 29 to 121 megatons. But climate change, driven by the burning of fossil fuels, is leading to drier and hotter conditions, driving extreme wildfires. The 2023 fires burned 15 million hectares (37 million acres) across Canada, or about 4% of its forests. The findings add to concerns about dependence on the world's forests to act as a long-term carbon sink for industrial emissions when instead they could be aggravating the problem as they catch fire.

The worry is that the global carbon budget, or the estimated amount of greenhouse gases the world can continue to emit while holding warming to 1.5 degrees Celsius (2.7 degrees Fahrenheit) above preindustrial levels, is based on inaccurate calculations. [...] The abnormally hot temperatures Canada experienced in 2023 are projected to be common by the 2050s, the study said. This is likely to lead to severe fires across the 347 million hectares (857 million acres) of woodlands that Canada depends on to store carbon.
The study has been published in the journal Nature.
Security

Cybercrime and Sabotage Cost German Firms $300 Billion In Past Year (reuters.com) 15

According to a new survey from Bitkom, cybercrime and other acts of sabotage have cost German companies around $298 billion in the past year, up 29% on the year before. Reuters reports: Bitkom surveyed around 1,000 companies from all sectors and found that 90% expect more cyberattacks in the next 12 months, with the remaining 10% expecting the same level of attacks. Some 70% of companies that were targeted attributed the attacks to organised crime, the survey found, adding 81% of companies reported data theft, including customer data, access data and passwords, as well as intellectual property such as patents. Around 45% of companies said they could attribute at least one attack to China, up from 42% in the previous year. Attacks blamed on Russia came in second place at 39%.

The increase in attacks has prompted companies to allocate 17% of their IT budget to digital security, up from 14% last year, but only 37% said they had an emergency plan to react to security incidents in their supply chain, the survey showed.

United States

Appliance and Tractor Companies Lobby Against Giving the Military the Right to Repair (404media.co) 142

Device manufacturers across multiple industries are lobbying against proposed legislation that would require military contractors to provide the U.S. military with easier access to repair materials and information, according to a document obtained by 404 Media.

The legislation, Section 828 of the Defense Reauthorization Act, aims to address the military's current inability to repair equipment ranging from fighter jets to Navy battleships without relying on contractors. Sen. Elizabeth Warren highlighted the issue in a May hearing, citing examples of how repair restrictions lead to increased costs and operational delays for the Department of Defense.

The lobbying effort extends beyond military contractors to include organizations representing industries such as irrigation equipment, motorcycles, tractors, plumbing, medical devices, and consumer technology. In a letter to lawmakers, these groups argue that the legislation would impose significant burdens on contractors and undermine existing technical data rights statutes.

Slashdot Top Deals