ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

Will Charging Cables Ever Have a Single Standardzed Port? (msn.com)

(Monday November 04, 2024 @11:50AM (EditorDavid) from the ports-in-a-storm dept.)

[1]The Atlantic complains that our chaos of different plug types "was supposed to end, with [2]USB-C as our savior ." But part of the problem is what they call "the second circle of our cable hell: My USB-C may not be the same as yours. And the USB-C you bought two years ago may not be the same as the one you got today. And that means it might not do what you now assume it can."

> A lack of standardization is not the problem here. The industry has designed, named, and rolled out a parade of standards that pertain to USB and all its cousins. Some of those standards live inside other standards. For example, USB 3.2 Gen 1 is also known as USB 3.0, even though it's numbered 3.2. (What? Yes.) And both of these might be applied to cables with USB-A connectors, or USB-B, or USB-Micro B, or — why not? — USB-C. The variations stretch on and on toward the horizon.

>

> Hope persists that someday, eventually, this hell can be escaped — and that, given sufficient standardization, regulatory intervention, and consumer demand, a winner will emerge in the battle of the plugs. But the dream of having a universal cable is always and forever doomed, because cables, like humankind itself, are subject to the curse of time, the most brutal standard of them all. At any given moment, people use devices they bought last week alongside those they've owned for years; they use the old plugs in rental cars or airport-gate-lounge seats; they buy new gadgets with even better capabilities that demand new and different (if similar-looking) cables. Even if Apple puts a USB-C port in every new device, and so does every other manufacturer, that doesn't mean that they will do everything you will expect cables to do in the future. Inevitably, you will find yourself needing new ones.

>

> Back [3]in 1998 , the New York Times told me, "If you make your move to U.S.B. now, you can be sure that your new devices will have a port to plug into." I was ready! I'm still ready. But alas, a port to plug into has never been enough.

[4]Obligatory XKCD .



[1] https://www.msn.com/en-us/news/technology/the-broken-promise-of-usb-c/ar-AA1tqkZM

[2] https://www.theatlantic.com/technology/archive/2022/11/apple-usb-c-charging-cables-iphone-android/672119/

[3] https://www.nytimes.com/1998/09/17/technology/downtime-universal-serial-bus-is-finally-picking-up-some-passengers.html?searchResultPosition=1

[4] https://xkcd.com/927/



Researchers Develop New Method That Tricks Cancer Cells Into Killing Themselves (stanford.edu)

(Monday November 04, 2024 @11:50AM (EditorDavid) from the trick-or-treatment dept.)

Our bodies divest themselves of 60 billion cells every day through a natural process called "apoptosis". So Stanford medicine researchers are developing a new approach to cancer therapy that could " [1]trick cancer cells into disposing of themselves ," according to announcement from Stanford's medical school:

> Their method accomplishes this by artificially bringing together two proteins in such a way that the new compound [2]switches on a set of cell death genes ... One of these proteins, BCL6, when mutated, drives the blood cancer known as diffuse large cell B-cell lymphoma... [It] sits on DNA near apoptosis-promoting genes and keeps them switched off, helping the cancer cells retain their signature immortality.

>

> The researchers developed a molecule that tethers BCL6 to a protein known as CDK9, which acts as an enzyme that catalyzes gene activation, in this case, switching on the set of apoptosis genes that BCL6 normally keeps off. "The idea is, Can you turn a cancer dependency into a cancer-killing signal?" asked [3]Nathanael Gray , PhD, co-senior author with Crabtree, the Krishnan-Shah Family Professor and a chemical and systems biology professor. "You take something that the cancer is addicted to for its survival and you flip the script and make that be the very thing that kills it...."

>

> When the team tested the molecule in diffuse large cell B-cell lymphoma cells in the lab, they found that it indeed killed the cancer cells with high potency. They also tested the molecule in healthy mice and found no obvious toxic side effects, even though the molecule killed off a specific category of of the animals' healthy B cells, a kind of immune cell, which also depend on BCL6. They're now testing the compound in mice with diffuse large B-cell lymphoma to gauge its ability to kill cancer in a living animal. Because the technique relies on the cells' natural supply of BCL6 and CDK9 proteins, it seems to be very specific for the lymphoma cells — the BCL6 protein is found only in this kind of lymphoma cell and in one specific kind of B cell. The researchers tested the molecule in 859 different kinds of cancer cells in the lab; the chimeric compound killed only diffuse large cell B-cell lymphoma cells.

Scientists have been trying to shut down cancer-driving proteins, one of the researchers says, but instead, "we're trying to use them to turn signaling on that, we hope, will prove beneficial for treatment."

The two researchers have co-founded the biotech startup Shenandoah Therapeutics, which "aims to further test this molecule and a similar, previously developed molecule," according to the article, "in hopes of gathering enough pre-clinical data to support launching clinical trials of the compounds.

"They also plan to build similar molecules that could target other cancer-driving proteins..."



[1] https://med.stanford.edu/news/all-news/2024/10/protein-cancer.html

[2] https://www.science.org/doi/10.1126/science.adl5361?url_ver=Z39.88-2003&rfr_id=ori:rid:crossref.org&rfr_dat=cr_pub%20%200pubmed

[3] https://profiles.stanford.edu/nathanael-gray



How a Slice of Cheese Almost Derailed Europe's Most Important Rocket Test (interestingengineering.com)

(Monday November 04, 2024 @11:50AM (EditorDavid) from the milky-ways dept.)

Long-time Slashdot reader [1]schwit1 shared [2]this report from the blog Interesting Engineering :

> A team of students made history this month by performing Europe's first rocket hop test.

>

> Those who have followed SpaceX's trajectory will know hop tests are a vital stepping stone for a reusable rocket program, as they allow engineers to test their rocket's landing capabilities.

>

> Impressively, no private company or space agency in Europe had ever performed a rocket hop test before. Essentially, a group of students performed one of the most important rocket tests in the history of European rocketry.

>

> However, the remarkable nature of [3]this story doesn't end there. Amazingly, the whole thing was almost derailed by a piece of cheese. A slice of Gruyère the team strapped to their rocket's landing legs almost caused the rocket to spin out of control.

>

> Thankfully, disaster was averted, and the historic hopper didn't end up as rocket de-Brie.



[1] https://slashdot.org/~schwit1

[2] https://interestingengineering.com/innovation/how-cheese-slice-almost-derailed-rocket-test

[3] https://interestingengineering.com/innovation/student-group-aces-europes-first-rocket-landing-test



Leaked Training Shows Doctors In New York's Biggest Hospital System Using AI (404media.co)

(Monday November 04, 2024 @11:50AM (EditorDavid) from the what's-up-docs dept.)

Slashdot reader [1]samleecole shared [2]this report from 404 Media :

> Northwell Health, New York State's largest healthcare provider, recently launched a large language model tool that it is encouraging doctors and clinicians to use for translation, sensitive patient data, and has suggested it can be used for diagnostic purposes, 404 Media has learned. Northwell Health has more than 85,000 employees.

>

> An internal presentation and employee chats obtained by 404 Media shows how healthcare professionals are using LLMs and chatbots to edit writing, make hiring decisions, do administrative tasks, and handle patient data. In the presentation given in August, Rebecca Kaul, senior vice president and chief of digital innovation and transformation at Northwell, along with a senior engineer, discussed the launch of the tool, called AI Hub, and gave a demonstration of how clinicians and researchers—or anyone with a Northwell email address—can use it... AI Hub can be used for "clinical or clinical adjacent" tasks, as well as answering questions about hospital policies and billing, writing job descriptions and editing writing, and summarizing electronic medical record excerpts and inputting patients' personally identifying and protected health information.

>

> The demonstration also showed potential capabilities that included "detect pancreas cancer," and "parse HL7," a health data standard used to share electronic health records.

>

> The leaked presentation shows that hospitals are increasingly using AI and LLMs to streamlining administrative tasks, and shows that some are experimenting with or at least considering how LLMs would be used in clinical settings or in interactions with patients.



[1] https://slashdot.org/~samleecole

[2] https://www.404media.co/northwell-health-ai-hub-tool-chatgpt-doctors/



New Study Suggests Oceans Absorb More CO2 Than Previously Thought (scitechdaily.com)

(Monday November 04, 2024 @11:50AM (EditorDavid) from the carbon-captured dept.)

Long-time Slashdot reader [1]schwit1 shared [2]this story from SciTechDaily :

> New research confirms that subtle temperature differences at the ocean surface, known as the "ocean skin," increase carbon dioxide absorption. This discovery, based on precise measurements, suggests global oceans absorb 7% more CO2 than previously thought, aiding climate understanding and carbon assessments...

>

> Until now, global estimates of air-sea CO2 fluxes typically ignore the importance of temperature differences in the near-surface layer... Dr Gavin Tilstone, from Plymouth Marine Laboratory (PML), said: "This discovery highlights the intricacy of the ocean's water column structure and how it can influence CO2 draw-down from the atmosphere. Understanding these subtle mechanisms is crucial as we continue to refine our climate models and predictions. It underscores the ocean's vital role in regulating the planet's carbon cycle and climate."



[1] https://slashdot.org/~schwit1

[2] https://scitechdaily.com/new-study-reveals-oceans-absorb-more-co2-than-previously-thought/



After Silence, NASA's Voyager Finally Phones Home - With a Device Unused Since 1981 (mashable.com)

(Monday November 04, 2024 @11:50AM (EditorDavid) from the phoning-home dept.)

Somewhere off in interstellar space, 15.4 billion miles away from Earth, NASA's 47-year-old Voyager "recently went quiet," [1]reports Mashable .

The probe "shut off its main radio transmitter for communicating with mission control..."

> Voyager's problem began on October 16, when flight controllers sent the robotic explorer a somewhat routine command to turn on a heater. Two days later, when NASA expected to receive a response from the spacecraft, the team learned something tripped Voyager's fault protection system, which turned off its X-band transmitter. By October 19, communication had altogether stopped.

>

> The flight team was not optimistic. However, Voyager 1 was equipped with a backup that relies on a different, albeit significantly fainter, frequency. No one knew if the second radio transmitter could still work, given the aging spacecraft's extreme distance.

>

> Days later, engineers with the Deep Space Network, a system of three enormous radio dish arrays on Earth, found the signal whispering back over the S-band transmitter. The device hadn't been used since 1981, according to NASA.

>

> "The team is now working to gather information that will help them figure out what happened and return Voyager 1 to normal operations," NASA said in a recent [2]mission update .

It's been more than 12 years since Voyager entered interstellar space, the article points out. And interstellar space "is a high-radiation environment that nothing human-made has ever flown in before.

"That means the only thing the teams running the old probes can count on are surprises."



[1] https://mashable.com/article/nasa-voyager-1-spacecraft

[2] https://blogs.nasa.gov/voyager/2024/10/28/after-pause-nasas-voyager-1-communicating-with-mission-team/



Millions of U.S. Cellphones Could Be Vulnerable to Chinese Government Surveillance (washingtonpost.com)

(Monday November 04, 2024 @11:50AM (EditorDavid) from the three-body-problems dept.)

[1]Millions of U.S. cellphone users could be vulnerable to Chinese government surveillance , warns a Washington Post columnist, "on the networks of at least three major U.S. carriers."

They cite six current or former senior U.S. officials, all of whom were briefed about the attack by the U.S. intelligence community.

> The Chinese hackers, who the United States believes are linked to Beijing's Ministry of State Security, have burrowed inside the private wiretapping and surveillance system that American telecom companies built for the exclusive use of U.S. federal law enforcement agencies — and the U.S. government believes they likely continue to have access to the system .... The U.S. government and the telecom companies that are dealing with the breach have said very little publicly about it since it was first detected in August, leaving the public to rely on details trickling out through leaks...

>

> The so-called lawful-access system breached by the Salt Typhoon hackers was established by telecom carriers after the terrorist attacks of Sept. 11, 2001, to allow federal law enforcement officials to execute legal warrants for records of Americans' phone activity or to wiretap them in real time, depending on the warrant. Many of these cases are authorized under the Foreign Intelligence Surveillance Act (FISA), which is used to investigate foreign spying that involves contact with U.S. citizens. The system is also used for legal wiretaps related to domestic crimes.

>

> It is unknown whether hackers were able to access records about classified wiretapping operations, which could compromise federal criminal investigations and U.S. intelligence operations around the world, multiple officials told me. But they confirmed the [2]previous reporting that hackers were able to both listen in on phone calls and monitor text messages. "Right now, China has the ability to listen to any phone call in the United States, whether you are the president or a regular Joe, it makes no difference," one of the hack victims briefed by the FBI told me. "This has compromised the entire telecommunications infrastructure of this country."

>

> The Wall Street Journal first reported on Oct. 5 that China-based hackers had penetrated the networks of U.S. telecom providers and might have penetrated the system that telecom companies operate to allow lawful [3]access to wiretapping capabilities by federal agencies... [After [4]releasing a short statement ], the FBI notified 40 victims of Salt Typhoon, according to multiple officials. The FBI informed one person who had been compromised that the initial group of identified targets included six affiliated with the Trump campaign, this person said, and that the hackers had been monitoring them as recently as last week... "They had live audio from the president, from JD, from Jared," the person told me. "There were no device compromises, these were all real-time interceptions...." [T]he duration of the surveillance is believed to date back to last year.

Several officials told the columnist that the cyberattack also targetted senior U.S. government officials and top business leaders — and that even more compromised targets are being discovered. At this point, "Multiple officials briefed by the investigators told me the U.S. government does not know how many people were targeted, how many were actively surveilled, how long the Chinese hackers have been in the system, or how to get them out."

But the article does include this quote from U.S. Senate Intelligence Committee chairman Mark Warner. "It is much more serious and much worse than even what you all presume at this point."

One U.S. representative suggested Americans rely more on encrypted apps. The U.S. is already [5]investigating — but while researching the article, the columnist writes, "The National Security Council declined to comment, and the FBI did not respond to a request for comment..." They end with this recommendation.

"If millions of Americans are vulnerable to Chinese surveillance, they have a right to know now."



[1] https://www.washingtonpost.com/opinions/2024/11/02/china-spying-telecom-trump-harris-fbi-cell-phone/

[2] https://www.washingtonpost.com/national-security/2024/10/27/chinese-hackers-cellphones-trump/?itid=lk_inline_manual_13

[3] https://www.wsj.com/tech/cybersecurity/u-s-wiretap-systems-targeted-in-china-linked-hack-327fc63b?mod=article_inline

[4] https://www.cisa.gov/news-events/news/joint-statement-fbi-and-cisa-prc-activity-targeting-telecommunications

[5] https://news.slashdot.org/story/24/10/25/2055241/fbi-investigates-claims-china-tried-to-hack-donald-trumps-phone



What's Worse Than Setting Clocks Back an Hour? Permanent Daylight Savings Time (usatoday.com)

(Monday November 04, 2024 @03:34AM (EditorDavid) from the sprung-forward-forever dept.)

"It's that time again," [1]writes USA Today , noting that Sunday morning millions of Americans (along with millions more in [2]Canada, Europe, parts of Australia, and Chile ) "will set their clocks back an hour, and many will renew their twice-yearly calls to put an end to the practice altogether..."

> Experts say the time changes are detrimental to health and safety, but agree that the answer isn't permanent DST. "The medical and scientific communities are unified ... that permanent standard time is better for human health," said Erik Herzog, a professor of biology and neuroscience at Washington University in St. Louis and the former president of the Society for Research on Biological Rhythms...

>

> Springing forward an hour in March is harder on us than falling back in November. The shift in spring is associated with an increase in heart attacks, and car accident rates also go up for a few days after, he said. But the answer isn't permanent daylight saving time, according to Herzog, who said that could be even worse for human health than the twice-yearly changes. By looking at studies of people who live at the easternmost edge of time zones (whose experience is closest to standard time) and people who live at the westernmost edge (more like daylight saving time), scientists can tell that health impacts of earlier sunrises and sunsets are much better. Waking up naturally with the sun is far better for our bodies than having to rely on alarm clocks to wake up in the dark, he said.

>

> Herzog said Florida, where [Senator Marco] Rubio has championed the Sunlight Protection Act, is much less impacted by the negative impacts of daylight saving time because it's as far east and south as you can get in the U.S., while people in a state like Minnesota would have much more time in the dark in the morning.

The article also reminds U.S. readers that "No state can adopt permanent daylight saving time unless U.S. Congress passes a law to authorize it first." Nevertheless...

> Oklahoma became the most recent state to pass a measure authorizing permanent daylight saving time, pending Congressional approval, in April. Nineteen other states have passed laws or resolutions to move toward daylight saving time year-round, if Congress were ever to allow it, according to the National Conference of State Legislatures...

>

> Only two states and some territories never have to set their clocks forward or backward... [Hawaii and Arizona, except for the Navajo Nation.]



[1] https://www.usatoday.com/story/news/nation/2024/11/02/daylight-saving-time-state-laws/75914727007/

[2] https://en.wikipedia.org/wiki/File:DST_Countries_Map.png



New 'Open Source AI Definition' Criticized for Not Opening Training Data (slashdot.org)

(Monday November 04, 2024 @03:34AM (EditorDavid) from the data-debate dept.)

Long-time Slashdot reader [1]samj — also a [2]long-time Debian developer — [3]tells us there's some opposition to the [4]newly-released Open Source AI definition . He calls it a "fork" that undermines the original Open Source definition (which was originally derived from Debian's [5]Free Software Guidelines , written primarily by Bruce Perens), and points us to a new domain with [6]a petition declaring that instead Open Source shall be defined "solely by the Open Source Definition version 1.9. Any amendments or new definitions shall only be recognized with clear community consensus via an open and transparent process."

This move follows some [7]discussion on the Debian mailing list:

> Allowing "Open Source AI" to hide their training data is nothing but setting up a "data barrier" protecting the monopoly, disabling anybody other than the first party to reproduce or replicate an AI. Once passed, OSI is making a historical mistake towards the FOSS ecosystem.

They're not the only ones worried about data. This week [8] TechCrunch noted an [9]August study which "found that many 'open source' models are basically open source in name only. The data required to train the models is kept secret, the compute power needed to run them is beyond the reach of many developers, and the techniques to fine-tune them are intimidatingly complex. Instead of democratizing AI, these 'open source' projects tend to entrench and expand centralized power, the study's authors concluded."

[10]samj shares the concern about training data, arguing that training data is the source code and that this new definition [11]has real-world consequences . (On a personal note, he says it "poses an existential threat to our pAI-OS project at the non-profit Kwaai Open Source Lab I volunteer at, so we've been very active in pushing back past few weeks.")

And he also came up with a detailed response [12]by asking ChatGPT . What would be the implications of a Debian disavowing the OSI's Open Source AI definition? ChatGPT composed a 7-point, 14-paragraph response, concluding that this level of opposition would "create challenges for AI developers regarding licensing. It might also lead to a fragmentation of the open-source community into factions with differing views on how AI should be governed under open-source rules." But "Ultimately, it could spur the creation of alternative definitions or movements aimed at maintaining stricter adherence to the traditional tenets of software freedom in the AI age."

However the [13]official FAQ for the new Open Source AI definition argues that training data "does not equate to a software source code."

> Training data is important to study modern machine learning systems. But it is not what AI researchers and practitioners necessarily use as part of the preferred form for making modifications to a trained model.... [F]orks could include removing non-public or non-open data from the training dataset, in order to train a new Open Source AI system on fully public or open data...

>

> [W]e want Open Source AI to exist also in fields where data cannot be legally shared, for example medical AI. Laws that permit training on data often limit the resharing of that same data to protect copyright or other interests. Privacy rules also give a person the rightful ability to control their most sensitive information — like decisions about their health. Similarly, much of the world's Indigenous knowledge is protected through mechanisms that are not compatible with later-developed frameworks for rights exclusivity and sharing.

[14] Read on for the rest of their response...



[1] https://www.slashdot.org/~samj

[2] https://nm.debian.org/person/samj/

[3] https://slashdot.org/submission/17329255/community-commitment-to-open-source-definition

[4] https://news.slashdot.org/story/24/10/28/1811209/we-finally-have-an-official-definition-for-open-source-ai

[5] https://en.wikipedia.org/wiki/Debian_Free_Software_Guidelines

[6] https://opensourcedeclaration.org/

[7] https://lists.debian.org/debian-ai/2024/10/msg00149.html

[8] https://techcrunch.com/2024/10/28/we-finally-have-an-official-definition-for-open-source-ai/

[9] https://papers.ssrn.com/sol3/papers.cfm?abstract_id=4543807

[10] https://www.slashdot.org/~samj

[11] https://samjohnston.org/2024/10/22/debian-general-resolution-gr-drafted-opposing-osis-open-source-ai-definition-osaid/

[12] https://chatgpt.com/share/67175283-5b64-800f-8ba9-a2d883e26bc3

[13] https://hackmd.io/@opensourceinitiative/osaid-faq

[14] https://news.slashdot.org/story/24/11/03/0257241/new-open-source-ai-definition-criticized-for-not-opening-training-data#From_OSAID_FAQ



AI Bug Bounty Program Finds 34 Flaws in Open-Source Tools (scworld.com)

(Monday November 04, 2024 @03:34AM (EditorDavid) from the another-bug-hunt dept.)

Slashdot reader [1]spatwei shared [2]this report from SC World :

> Nearly three dozen flaws in open-source AI and machine learning (ML) tools [3]were disclosed Tuesday as part of [AI-security platform] Protect AI's [4] huntr bug bounty program .

>

> The discoveries include three critical vulnerabilities: two in the Lunary AI developer toolkit [both with a CVSS score of 9.1] and one in a graphical user interface for ChatGPT called Chuanhu Chat. The October vulnerability report also includes 18 high-severity flaws ranging from denial-of-service to remote code execution... Protect AI's report also highlights vulnerabilities in LocalAI, a platform for running AI models locally on consumer-grade hardware, LoLLMs, a web UI for various AI systems, LangChain.js, a framework for developing language model applications, and more.

In the article, Protect AI's security researchers point out that these open-source tools are "downloaded thousands of times a month to build enterprise AI Systems."

The three critical vulnerabilties have already been addressed by their respective companies, according to the article.



[1] https://www.slashdot.org/~spatwei

[2] https://www.scworld.com/news/ai-bug-bounty-program-yields-34-flaws-in-open-source-tools

[3] https://protectai.com/threat-research/2024-october-vulnerability-report

[4] https://huntr.com/



ASWF: the Open Source Foundation Run By the Folks Who Give Out Oscars (theregister.com)

(Monday November 04, 2024 @03:34AM (EditorDavid) from the pushing-the-envelope-please dept.)

This week's [1]Ubuntu Summit 2024 was attended by [2]Lproven (Slashdot reader #6,030). He's also a FOSS correspondent for the Register, where he's [3]filed this report :

> One of the first full-length sessions was presented by David Morin, executive director of the [4]Academy Software Foundation , introducing his organization in a talk about [5]Open Source Software for Motion Pictures . Morin linked to the Visual Effects Society's [6]VFX/Animation Studio Workstation Linux Report , highlighting the market share pie-chart, showing Rocky Linux 9 with at some 58 percent and the RHELatives in general at 90 percent of the market. Ubuntu 22 and 24 — the report's nomenclature, not this vulture's — got just 10.5 percent. We certainly didn't expect to see that at an Ubuntu event, with the latest two versions of Rocky Linux taking 80 percent of the studio workstation market...

>

> What also struck us over the next three quarters of an hour is that Linux and open source in general seem to be huge components of the movie special effects industry — to an extent that we had not previously realized.

There's a "sizzle reel" showing [7]examples of how major motion pictures used OpenColorIO, an open-source production tool for syncing color representations originally developed by Sony Pictures Imageworks. That tool is hosted by a collaboration between the Linux Foundation with the Science and Technology Council of the [8]Academy of Motion Picture Arts and Sciences (the "Academy" of the Academy Awards). The collaboration — which goes by the name of the [9]Academy Software Foundation — hosts [10]14 different projects

> The ASWF hasn't been around all that long — it was only founded in 2018. Despite the impact of the COVID pandemic, by 2022 it had achieved enough to fill a 45-page history called [11]Open Source in Entertainment [PDF]. Morin told the crowd that it runs events, provides project marketing and infrastructure, as well as funding, training and education, and legal assistance. It tries to facilitate industry standards and does open source evangelism in the industry. An impressive [12]list of members — with 17 Premier companies, 16 General ones, and another half a dozen Associate members — shows where some of the money comes from. It's a big list of big names. [Adobe, AMD, AWS, Autodesk...]

The presentation started with [13]OpenVBD , a C++ library developed and donated by Dreamworks for working with three-dimensional voxel-based shapes. (In 2020 they created [14]this sizzle reel , but this year they've unveiled [15]a theme song .) Also featured was [16]OpenEXR , originally developed at Industrial Light and Magic and sourced in 1999. (The article calls it "a specification and reference implementation of the EXR file format — a losslessly compressed image storage format for moving images at the highest possible dynamic range.")

"For an organization that is not one of the better-known ones in the FOSS space, we came away with the impression that the ASWF is busy, " the article concludes. (Besides running [17]Open Source Days and [18]ASWF Dev Days , it also hosts several working groups like the [19]Language Interop Project works on Rust bindings and the [20]Continuous Integration Working Group on CI tools,

> There's generally very little of the old razzle-dazzle in the Linux world, but with the demise of SGI as the primary maker of graphics workstations — its brand now [21]absorbed by Hewlett Packard Enterprise — the visual effects industry moved to Linux and it's doing amazing things with it. And Kubernetes wasn't even mentioned once.



[1] https://events.canonical.com/event/51/

[2] https://www.slashdot.org/~Lproven

[3] https://www.theregister.com/2024/11/01/aswf_foss_oscars/

[4] https://www.aswf.io/

[5] https://events.canonical.com/event/51/contributions/590/

[6] https://drive.google.com/file/d/1QWJS1PTvDGr6AliP4ejMzFTZ2WVEl0e-/view

[7] https://www.youtube.com/watch?v=sa7WqKxDRKY

[8] https://www.oscars.org/

[9] https://www.oscars.org/learn/science-technology

[10] https://www.aswf.io/projects/

[11] https://aswf.lfprojects.linuxfoundation.org/wp-content/uploads/sites/69/2022/03/LFResearch_ASWF_Report.pdf

[12] https://www.aswf.io/members/

[13] https://www.openvdb.org/

[14] https://youtu.be/GR2_8d9Bkc0

[15] https://www.youtube.com/watch?v=C1LP2gGSddA

[16] https://openexr.com/en/latest/

[17] https://events.linuxfoundation.org/open-source-days/

[18] https://www.aswf.io/dev-days-2024/

[19] https://github.com/vfx-rs

[20] https://lf-aswf.atlassian.net/wiki/spaces/CIWG/overview

[21] https://www.theregister.com/2016/08/11/hpe_buys_sgi/



Invisible, Super Stretchy Nanofibers Discovered In Natural Spider Silk (phys.org)

(Monday November 04, 2024 @03:34AM (EditorDavid) from the does-whatever-a-spider-can dept.)

Long-time Slashdot reader [1]yet-another-lobbyist writes:

> [2]Phys.org has an article on the recent discovery of super stretchy nanofibers in natural spider silk! The thinnest natural spider silk nanofibrils ever seen are only a few molecular layers thin, about 5 nm. They are too thin to be seen even with a very powerful optical microscope. Researchers used atomic force microscopy (AFM) not only to visualize them, but also to probe their stretchiness and strength.

>

> Even the [3]original article is available without a paywall. Mechanical tests of molecularly thin materials — pretty cool!

The doctoral candidate's advisor thought it would be impossible to perform the measurements, [4]according to the article , which quotes him as saying "It's actually kind of crazy to think that it's even possible.... We humans think we're so great and we can invent things, but if you just take a step outside, you find so many things that are more exciting."

That advisor — long term spider-silk researcher of Hannes Schniepp (also a co-author on the paper) — adds that the tip of the needle was so sharp, its end was only a few atoms thick. "You would not see the end of it in the best optical microscope. It will just disappear because it's so small that you can't even see it. It's probably one of the highest developed technologies on the planet."

> If humans find a way to replicate the structure of spider silk, it could be manufactured for use in practical applications. "You could make a super bungee cord from it," said Schniepp. "Or a shield around a structure where you have something incoming at high velocity and you need to absorb a lot of energy. Things like that."



[1] https://slashdot.org/~yet-another-lobbyist

[2] https://phys.org/news/2024-10-nanofibrils-successfully-strength-spider-web.html

[3] https://onlinelibrary.wiley.com/doi/10.1002/adfm.202408409

[4] https://phys.org/news/2024-10-nanofibrils-successfully-strength-spider-web.html



Don't Look Now, but GM's EV Sales Are on Fire (msn.com)

(Sunday November 03, 2024 @09:38PM (EditorDavid) from the powering-up dept.)

GM's president of global markets says their EV portfolio "is growing faster than the market," [1]according to Investopedia , "because we have an all-electric vehicle for just about everybody, no matter what they like to drive."

The headline at Barrons? " [2]Don't Look Now, but GM's EV Sales Are on Fire ."

> GM delivered almost 32,000 all-electric vehicles in the third quarter — a record — and up about 58% from a year earlier. The more affordable Chevy Equinox, which starts at about $35,000 before any federal tax credit, helped boost sales. GM delivered almost 10,000 of the new EVs, up from 1,013 in the second quarter, when they first went on sale.

>

> EV penetration of total GM car sales was about almost 5%, up almost two percentage points year over year. EVs accounted for 19.4% of Cadillac sales, up about 11 percentage points year over year. Year to date, GM has delivered just over 70,000 all-electric cars.

>

> GM originally planned to manufacture 200,000 EVs in 2024. That still looks aggressive, but the strong third-quarter showing makes 120,000 possible, which would be up almost 60% year over year — a respectable outcome. More important to investors than EV sales right now might be dealer inventories. GM said there were about 627,000 vehicles on dealer lots at the end of September. That's a little better than what Wolfe Research analyst Emmanuel Rosner expected. It indicates GM dealers have roughly 60 days worth of sales on their lots. That's a safe level. Lower dealer inventories reduce presure to reduce prices. They also reduce the need to cut production because dealer lots are full... GM expects to generate a full-year operating profit of about $14 billion.

Meanwhile, Stellantis "slashed its financial guidance recently, partly because it needs to dramatically reduce its U.S. inventories," according to the article. For example, its Jeep dealers [3]ended August with roughly 122 days worth of sales on their lots, while its Dodge dealers "had almost 150 days of inventory."

And Investopedia argues that while GM's EV sales growth is "soaring," Ford's [4]is showing "only modest gains ."

> [W]hile Ford's overall U.S. sales were 0.7% higher at 504,039, it had just [5]a 12% gain in EVs to 23,509.3 In the second quarter, Ford's EV sales had [6]soared 61% to 23,957 . Sales growth was more than three times higher for Ford's hybrid models, with President of Ford Blue and Ford Customer Service Division Andrew Frick arguing that the company has "listened to customers to offer them vehicles with powertrains to meet their specific needs."

>

> Ford is hoping to boost EV sales by offering buyers a free home charger and installation.



[1] https://www.investopedia.com/gm-ev-sales-growth-soars-while-ford-makes-only-modest-gain-8722061

[2] https://www.msn.com/en-us/money/companies/don-t-look-now-but-gm-s-ev-sales-are-on-fire-it-s-different-at-stellantis/ar-AA1rAzvo

[3] https://www.coxautoinc.com/market-insights/new-vehicle-inventory-august-2024/

[4] https://www.investopedia.com/gm-ev-sales-growth-soars-while-ford-makes-only-modest-gain-8722061

[5] https://s201.q4cdn.com/693218008/files/doc_news/2024/Oct/02/ford-u-s-q3-2024-sales-release.pdf

[6] https://www.investopedia.com/ford-is-the-latest-carmaker-to-report-solid-green-vehicle-sales-8673426



Is AI-Driven 0-Day Detection Here? (zeropath.com)

(Sunday November 03, 2024 @05:39PM (EditorDavid) from the rise-of-the-machines dept.)

"AI-driven 0-day detection is here," argues [1]a new blog post from ZeroPath , makers of [2]a GitHub app that "detects, verifies, and issues pull requests for security vulnerabilities in your code."

They write that AI-assisted security research "has been quietly advancing" since early 2023, when researchers at the DARPA and ARPA-H's [3]Artificial Intelligence Cyber Challenge demonstrated the first practical applications of LLM-powered vulnerability detection — with new advances continuing. "Since July 2024, ZeroPath's tool has uncovered critical zero-day vulnerabilities — including remote code execution, authentication bypasses, and insecure direct object references — in popular AI platforms and open-source projects." And they ultimately identified security flaws in projects owned by Netflix, Salesforce, and Hulu by "taking a novel approach combining deep program analysis with adversarial AI agents for validation. Our methodology has uncovered numerous critical vulnerabilities in production systems, including several that traditional Static Application Security Testing tools were ill-equipped to find..."

> TL;DR — most of these bugs are simple and could have been found with a code review from a security researcher or, in some cases, scanners. The historical issue, however, with automating the discovery of these bugs is that traditional SAST tools rely on pattern matching and predefined rules, and miss complex vulnerabilities that do not fit known patterns (i.e. business logic problems, broken authentication flaws, or non-traditional sinks such as from dependencies). They also generate a high rate of false positives.

>

> The beauty of LLMs is that they can reduce ambiguity in most of the situations that caused scanners to be either unusable or produce few findings when mass-scanning open source repositories... To do this well, you need to combine deep program analysis with an adversarial agents that test the plausibility of vulnerabilties at each step. The solution ends up mirroring the traditional phases of a pentest — recon, analysis, exploitation (and remediation which is not mentioned in this post)...

>

> AI-driven vulnerability detection is moving fast... What's intriguing is that many of these vulnerabilities are pretty straightforward — they could've been spotted with a solid code review or standard scanning tools. But conventional methods often miss them because they don't fit neatly into known patterns. That's where AI comes in, helping us catch issues that might slip through the cracks.

"Many vulnerabilities remain undisclosed due to ongoing remediation efforts or pending responsible disclosure processes," according to the blog post, which includes a pie chart showing the biggest categories of vulnerabilities found:

53%: Authorization flaws, including roken access control in API endpoints and unauthorized Redis access and configuration exposure. ("Impact: Unauthorized access, data leakage, and resource manipulation across tenant boundaries.")

26%: File operation issues, including directory traversal in configuration loading and unsafe file handling in upload features. ("Impact: Unauthorized file access, sensitive data exposure, and potential system compromise.")

16%: Code execution vulnerabilities, including command injection in file processing and unsanitized input in system commands. ("Impact: Remote code execution, system command execution, and potential full system compromise.")

The company's CIO/cofounder was "former Red Team at Tesla," according to the [4]startup's profile at YCombinator, and earned over $100,000 as a bug-bounty hunter. (And another co-founded is a former Google security engineer.)

Thanks to Slashdot reader [5]Mirnotoriety for sharing the article.



[1] https://zeropath.com/blog/0day-discoveries

[2] https://www.ycombinator.com/launches/LOk-zeropath-autonomous-vulnerability-patching

[3] https://aicyberchallenge.com/

[4] https://www.ycombinator.com/companies/zeropath

[5] https://www.slashdot.org/~Mirnotoriety



A Fourth FTX Executive Sentenced: Forfeits $11 Billion, But No Prison Time (apnews.com)

(Sunday November 03, 2024 @05:39PM (EditorDavid) from the crime-doesn't-pay dept.)

Former FTX executive Nishad Singh was ordered to forfeit $11 billion, [1]reports CNBC — and is subject to three years of supervised release, making him "the fourth ex-employee of the collapsed crypto exchange to be punished."

But while he'd faced a maximum sentence of 75 years, he'll serve no time, according to [2]this report from the Associated Press :

> Singh, the company's former engineering director, was sentenced in Manhattan by Judge Lewis A. Kaplan, who said his cooperation was "remarkable." The judge noted that Singh did not learn of the billions of dollars that were misappropriated from FTX customer accounts and investors until two months before the fraud unraveled... Singh, 29, testified a year ago at Bankman-Fried's trial, saying he was "blindsided and horrified" when he saw the extent of the fraud behind the once-celebrated and seemingly pioneering firm. At sentencing, Singh said he was "overwhelmed with remorse" for his role in the fraud. "I strayed so far from my values, and words can't express how sorry I am," he said....

>

> The sentencing came a month after Caroline Ellison, another key witness at Bankman-Fried's trial and a former top executive in his cryptocurrency empire, was sentenced to two years in prison. At the time, Kaplan praised her cooperation but said it wasn't a get-out-of-jail-free card. On Wednesday, Kaplan drew a distinction between the cooperation by Ellison and Singh's work with prosecutors, saying Ellison had participated in the fraud "from the beginning" and had been aware of all the wrongdoing for years... [Defense attorney Andrew Goldstein] said leniency would encourage future cooperators in other criminal cases to come forward.

>

> Assistant U.S. Attorney Nicolas Roos credited Singh with providing information within weeks of the fraud being publicly revealed, saying he helped prosecutors learn about crimes they might otherwise have never discovered, including his own. Roos said, for instance, that Singh told prosecutors about campaign finance violations that occurred as FTX executives made tens of millions of dollars in donations to political candidates. The prosecutor also said Singh revealed private conversations with Bankman-Fried that strengthened the government's case and enabled it to bring charges more quickly against multiple people. Singh gave prosecutors "documentary evidence the government did not have and likely never would have had," Roos said.

Bankman-Fried, of course, [3]began a 25-year sentence last November. And three weeks ago [4]FTX executive Ryan Salame made an update [5]on his LinkedIn profile . "I'm happy to share that I'm starting a new position as Inmate at FCI Cumberland!"

"His post quickly went viral," [6]notes CNN , "prompting Salame [7]to joke on X : "Today I learned people still use LinkedIn."



[1] https://www.cnbc.com/2024/10/30/ftxs-nishad-singh-gets-not-jail-time-3-years-supervised-release.html

[2] https://apnews.com/article/ftx-bankmanfried-crytocurrency-sentencing-fa898c3ff61d9a797d016a12c0862ca1

[3] https://apnews.com/article/sam-bankman-fried-ftx-crypto-bitcoin-baa4c94f2c4237c860475ff92e6bcf42

[4] https://yro.slashdot.org/story/23/09/07/2137237/ex-ftx-executive-ryan-salame-to-forfeit-15-billion-as-part-of-guilty-plea

[5] https://www.linkedin.com/in/ryansalame/recent-activity/all/

[6] https://www.cnn.com/2024/10/11/business/ryan-salame-ftx-linkedin-profile-prison-intl-scli/index.html

[7] https://x.com/rsalame7926/status/1844549963725873634



The 'Passive Housing' Trend is Booming (yahoo.com)

(Sunday November 03, 2024 @09:38PM (EditorDavid) from the home-passive-home dept.)

The [1]Washington Post reports that a former Etsy CEO remodeled their home into what's known as a passive house. It's "designed to be as energy efficient as possible, typically with top-notch insulation and a perfect seal that prevents outside air from penetrating the home; air flows in and out through filtration and exhaust systems only."

> Their benefits include protection from pollution and pollen, noise insulation and a stable indoor temperature that minimizes energy needs. That translates to long-term savings on heating and cooling.

>

> While the concept has been around for about 50 years, experts say that the United States is on the cusp of a passive house boom, driven by lowered costs, state-level energy code changes and a general greater awareness of — and desire for — [2]more sustainable housing ... Massachusetts — which alongside New York and Pennsylvania is one of the leading states in passive house adoption — has 272 passive house projects underway thanks to an incentive program, says Zack Semke [the director of the [3]Passive House Accelerator , a group of industry professionals who aim to spread lessons in passive house building]. Consumer demand for passive houses is also increasing, says Michael Ingui, an architect in New York City and the founder of the Passive House Accelerator... The need to lower our energy footprint is so much more top-of-mind today than it was 10 years ago, Ingui says, and covid taught us about the importance of good ventilation and filtered fresh air. "People are searching for the healthiest house," he says, "and that's a passive house...."

>

> These days, new passive houses are usually large, multifamily apartment buildings or high-end single-family homes. But that leaves out a large swath of homeowners in the middle. To widen passive house accessibility to include all types of people and their housing needs, we need better energy codes and even more policies and incentives, says In Cho, a sustainability architect, educator and a co-founder of the nonprofit [4]Passive House for Everyone ! Passive houses "can and should serve folks from all socioeconomic backgrounds," she says. Using a one-two punch of mandates for energy efficient buildings and greater awareness to the public, that increased demand for passive houses will lead to more supply, Cho says. And we're already seeing those changes in the market.

>

> Take triple-pane windows, for example, which are higher performing and more insulating than their double-pane counterparts. Even just 10 to 20 years ago, the difference in price between the two was high enough to make triple-pane windows cost-prohibitive for a lot of people, Cho says. Over the years, as the benefits of higher performing windows became more well-known, and as cities and states changed their energy codes, more companies began producing better windows. Now they're basically at price parity, she says. If we keep pushing for greater awareness and further policy changes, it's possible that all of the components of passive house buildings could follow that trend.

"For large multifamily projects, we're already seeing price parity [5]in some cases , Semke says...

"But as it stands, single-family passive houses are still likely to cost a margin more than non-passive houses, he says. This is because price parity is easier to achieve when working at larger scales, but also because many of the housing policies and incentives encouraging passive house buildings are geared toward these larger projects."



[1] https://www.yahoo.com/lifestyle/passive-house-trend-booming-185419884.html

[2] https://www.washingtonpost.com/home/2024/03/05/energy-efficient-net-zero-adu/

[3] https://passivehouseaccelerator.com/

[4] https://www.passivehouseforeveryone.org/

[5] https://www.post-gazette.com/business/development/2018/12/31/pa-affordable-housing-tax-credits-pennsylvania-housing-finance-agency-passive-house-design/stories/201812190012



Can Heat Pumps Still Save the Planet from Climate Change? (msn.com)

(Monday November 04, 2024 @03:34AM (EditorDavid) from the hot-air dept.)

"One technology critical to fighting climate change is lagging," [1]reports the Washington Post , "thanks to a combination of high interest rates, rising costs, misinformation and the cycle of home construction. Adoption of [2]heat pumps , one of the primary ways to cut emissions from buildings, has slowed in the United States and stalled in Europe, endangering the switch to clean energy.

"Heat pump investment in the United States has dropped by 4 percent in the past two years, even as sales of EVs have almost doubled, according to data from MIT and the Rhodium Group. In 13 European countries, heat pump sales dropped [3]nearly in half in the first half of 2024, putting the European Union off-track for its climate goals."

> "Many many markets are falling," said Paul Kenny, the director general of the European Heat Pump Association. "It takes time to change people's minds about a heating system." Heat pumps — essentially air conditioners that can also work in reverse, heating a space as well as cooling it — are crucial to making buildings more climate-friendly. Around [4]60 percent of American homes are still heated with furnaces running on oil, natural gas, or even propane; to cut emissions from homes, all American houses and apartments will need to be powered by electricity...

>

> In the United States, experts point to lags in construction, high interest rates, and general belt-tightening from inflation... [Cora Wyent, director of research for the electrification advocacy group Rewiring America] added, heat pumps are still growing as a share of overall heating systems, gaining ground on gas furnaces. In 2023, heat pumps made up 55 percent of all heating systems sold, while gas furnaces made up just 45 percent. "Heat pumps are continuing to increase their total market share," she said.

>

> Homeowners may also run into trouble when trying to [5]find contractors to install heat pumps. Barton James, the president and CEO of the Air Conditioning Contractors of America, says many contractors don't have training on how to properly install heat pumps; if they install them incorrectly, the ensuing problems can sour consumers on the technology... In the United States, low [6]gas prices also make the economics of heat pumps more challenging. Gas is around three times cheaper than electricity — while heat pumps make up most of that ground with efficiency, they aren't the most cost-effective option for every household.

The Post also spoke to the manager for the carbon-free buildings team at the clean energy think tank RMI. They pointed out that heating systems need to be replaced roughly every 15 years — and the next cycle doesn't start until 2035.

The article concludes that "even with government policies and subsidies, many parts of the move to clean energy will require individual people to make changes to their lives. According to the International Energy Agency, the number of heat pumps will have to triple by 2030 to stay on track with climate goals. The only way to do that, experts say, is if incentives, personal beliefs, and technology all align."



[1] https://www.msn.com/en-us/news/us/heat-pumps-were-supposed-to-transform-the-world-but-it-s-not-going-as-planned/ar-AA1sDozN

[2] https://www.washingtonpost.com/climate-environment/2023/02/28/how-to-get-heat-pump-home/

[3] https://www.ehpa.org/news-and-resources/news/europe-avoiding-5-5-billion-cubic-metres-of-gas-with-heat-pumps/

[4] https://www.washingtonpost.com/climate-environment/interactive/2023/home-electrification-heat-pumps-gas-furnace/

[5] https://www.washingtonpost.com/climate-environment/2024/05/07/hiring-electric-contractor-checklist/

[6] https://www.washingtonpost.com/business/interactive/2022/why-gas-prices-so-high/?itid=lk_inline_manual_26



US Government Considers Legal Action Over Meta's Use of Financial Data for Ads (msn.com)

(Sunday November 03, 2024 @05:39PM (EditorDavid) from the following-the-money dept.)

[1]The Washington Post reports that America's Consumer Financial Protection Bureau (or CFPB) "is considering legal action against Meta over allegations that it improperly used financial data obtained from third parties in its highly-lucrative advertising business..."

The article says a Meta securities filing Thursday revealed it had received a formal notification about the federal investigation last month.

> The filing said only that the inquiry relates to "advertising for financial products and services on our platform." A spokesperson for Meta declined to comment on the investigation. "We disagree with the claims," the company's filing said, "and believe an enforcement action is unwarranted...."

>

> The CFPB's probe underscores its aggressive recent focus on Big Tech. In recent years, major companies including Apple, Amazon, Facebook and Google have launched a wave of new financial services, including credit cards and apps that help users send money to friends... Under its current director, Rohit Chopra, the CFPB has also sought to ensure that tech giants adhere to the same safeguards that have long applied to their brick-and-mortar banking predecessors. The bureau formalized its tech crackdown in 2021, when Chopra [2]ordered companies including Facebook to turn over records related to their payment apps and other financial service offerings.

>

> At the time, he expressed fear that these giants already possessed troves of customer data and could solidify their dominance if they gained greater insight into users' purchasing and spending habits. "This data can be monetized by companies that seek to profit from behavioral targeting, particularly around advertising and e-commerce," [3]Chopra said in a statement announcing the review. "That many Big Tech companies aspire to grow in this space only heightens these concerns." Since then, the watchdog agency has proposed new rules that could treat Apple, Google and PayPal-owned Venmo more like banks, opening the door for federal regulators to inspect some of their operations in a bid to protect users' deposits.

>

> The rules, which have not been finalized, have sparked [4]fierce lobbying opposition from major tech companies.



[1] https://www.msn.com/en-us/money/companies/meta-discloses-federal-probe-into-its-use-of-financial-data-for-ads/ar-AA1tiirY

[2] https://www.consumerfinance.gov/about-us/newsroom/statement-regarding-the-cfpbs-inquiry-into-big-tech-payment-platforms/

[3] https://www.consumerfinance.gov/about-us/newsroom/cfpb-orders-tech-giants-to-turn-over-information-on-their-payment-system-plans/

[4] https://www.washingtonpost.com/business/2024/05/01/tech-banks-government-regulation/?itid=lk_inline_manual_15



How America's Export Controls Failed to Keep Cutting-Edge AI Chips from China's Huawei (stripes.com)

(Sunday November 03, 2024 @12:34PM (EditorDavid) from the chipping-away dept.)

An anonymous reader shared [1]this report from the Washington Post :

> A few weeks ago, analysts at a specialized technological lab put a microchip from China under a powerful microscope. Something didn't look right... The microscopic proof was there that a chunk of the electronic components from Chinese high-tech champion Huawei Technologies had been produced by the world's most advanced chipmaker, Taiwan Semiconductor Manufacturing Company.

>

> That was a problem because two U.S. administrations in succession had taken actions to assure that didn't happen. The news of the breach of U.S. export controls, first reported in October by the tech news site [2]the Information , has sent a wave of concern through Washington... The chips were routed to Huawei through Sophgo Technologies, the AI venture of a Chinese cryptocurrency billionaire, according to two people familiar with the matter, speaking on the condition of anonymity to discuss a sensitive topic... "It raises some fundamental questions about how well we can actually enforce these rules," said Emily Kilcrease, a senior fellow at the Center for a New American Security in Washington... Taiwan's Ministry of Economic Affairs confirmed that TSMC recently halted shipments to a "certain customer" and notified the United States after suspecting that customer might have directed its products to Huawei...

>

> There's been much intrigue in recent days in the industry over how the crypto billionaire's TSMC-made chips reportedly ended up at Huawei. Critics accuse Sophgo of working to help Huawei evade the export controls, but it is also possible that they were sold through an intermediary, which would align with Sophgo's denial of having any business relationship with Huawei... While export controls are often hard to enforce, semiconductors are especially hard to manage due to the large and open nature of the global chip trade. Since the Biden administration implemented sweeping controls in 2022, there have been reports of widespread chip smuggling and semiconductor black markets allowing Chinese companies to access necessary chips...

>

> Paul Triolo, technology policy lead at Albright Stonebridge Group, said companies were trying to figure out what lengths they had to go to for due diligence: "The guidelines are murky."



[1] https://www.stripes.com/theaters/asia_pacific/2024-11-01/china-huawei-ai-chip-export-control-failure-15703671.html

[2] https://www.theinformation.com/articles/u-s-probes-tsmcs-dealings-with-huawei



PimEyes 'Made a Public Rolodex of Our Faces'. Should You Opt Out? (msn.com)

(Sunday November 03, 2024 @12:34PM (EditorDavid) from the I'll-be-seeing-you dept.)

The free face-image search engine PimEyes " [1]scans through billions of images from the internet and finds matches of your photo that could have appeared in a church bulletin or a wedding photographer's website," -us/news/technology/they-made-a-public-rolodex-of-our-faces-here-s-how-i-tried-to-get-out/ar-AA1tlpPuwrites a Washington Post columnist.

So to find and delete themselves from "the PimEyes searchable Rolodex of faces," they "recently handed over a selfie and a digital copy of my driver's license to a company I don't trust."

> PimEyes says it empowers people to find their online images and try to get unwanted ones taken down. But PimEyes face searches are largely open to anyone with either good or malicious intent. People have used PimEyes to [2]identify participants in the Jan. 6, 2021, attack on the Capitol, and creeps have used it to publicize strangers' personal information [3]from just their image .

>

> The company offers [4]an opt-out form to remove your face from PimEyes searches. I did it and resented spending time and providing even more personal information to remove myself from the PimEyes repository, which we didn't consent to be part of in the first place. The increasing ease of potentially identifying your name, work history, children's school, home address and other sensitive information from one photo shows the absurdity of America's largely [5]unrestrained data-harvesting economy .

While PimEyes' CEO said they don't keep the information you provide to opt-out, "you give PimEyes at least one photo of yourself plus a digital copy of a passport or ID with personal details obscured..." according to the article. (PimEyes' confirmation email "said I might need to repeat the opt-out with more photos...")

> Some digital privacy experts said it's worth opting out of PimEyes, even if it's imperfect, and that PimEyes probably legitimately needs a personal photo and proof of identity for the process. Others found it "absurd" to provide more information to PimEyes... or they weren't sure opting out was the best choice... Experts said the fundamental problem is how much information is harvested and accessible without your knowledge or consent from [6]your phone , [7]home speakers , [8]your car and information-organizing middlemen like PimEyes and [9]data brokers .

>

> Nathan Freed Wessler, an American Civil Liberties Union attorney focused on privacy litigation, said laws need to change the assumption that companies can collect almost anything about you or your face unless you go through endless opt-outs. "These systems are scary and abusive," he said. "If they're going to exist, they should be based on an opt-in system."



[1] https://www.washingtonpost.com/technology/2021/05/14/pimeyes-facial-recognition-search-secrecy/

[2] https://www.vice.com/en/article/how-normal-people-deployed-facial-recognition-on-capitol-hill-protesters/

[3] https://www.404media.co/taylor-swift-facial-recognition-tiktok-removes-videos/

[4] https://pimeyes.com/en/opt-out-request-form

[5] https://www.washingtonpost.com/technology/2019/12/31/how-we-survive-surveillance-apocalypse/

[6] https://www.washingtonpost.com/technology/2023/10/24/google-privacy-police-geofence/?itid=lk_inline_manual_64

[7] https://www.washingtonpost.com/technology/2019/05/06/alexa-has-been-eavesdropping-you-this-whole-time/?itid=lk_inline_manual_5&itid=lk_inline_manual_64

[8] https://www.nytimes.com/2024/03/11/technology/carmakers-driver-tracking-insurance.html

[9] https://www.washingtonpost.com/business/2019/06/24/data-brokers-are-getting-rich-by-selling-your-secrets-how-states-are-trying-stop-them/?itid=lk_inline_manual_64



More

We don't know one millionth of one percent about anything.