❌

Reading view

There are new articles available, click to refresh the page.

Cities Across US Oppose Trump FCC Plan to Preempt Local Broadband Rules

Ars Technica reports: Cities and counties around the U.S. are angry at the Trump administration over a proposal to override local rules that govern the deployment of wired broadband networks... The Federal Communications Commission [FCC] argues that too many local governments "excessively delay approvals and seek to extract exorbitant sums from providers, resulting in costs that render some deployments infeasible." The FCC plan is supported by broadband providers, but local governments told the FCC that it would override rules that protect public safety. Local governments say the plan is illegal and that the FCC should instead focus on how Internet providers thwart competition with permit-hoarding and other tactics that prevent competitors from deploying networks... They object to FCC plans to impose a 120-day deadline for processing permits and to proposed limits on fees and compensation that local governments can require from providers... Another filing submitted by the League of California Cities said the FCC has no authority to adopt the proposal. "Federal preemption of traditional state and local authority over public property, construction, public safety, permitting, and rights-of-way management should rest on clear congressional authorization," the filing said. "The commission should not infer broad preemptive authority where Congress did not expressly provide it...." A filing by Minnesota cities said the current FCC is making the same mistake it made during the first Trump administration, when its attempt to preempt state net neutrality laws was blocked in court... If the FCC finalizes its new preemption plan, city and state governments could sue and ask a court to rule that the agency exceeded its authority... Democratic Commissioner Anna Gomez approved the step of asking the public for input but signaled she would vote against the final proposal. "I am dubious about the commission's authority under Section 253 to use rulemaking to preempt states and localities when it comes to their management of rights of way and fees charged to providers," she said.

Read more of this story at Slashdot.

US Air Force F-16 Crashes in Michigan After Pentagon Orders More Flyovers

The F-16 "experienced an incident," the Texas Military Department said in a statement, adding that "The pilot successfully ejected the aircraft and is receiving care at a nearby hospital." ABC News reports: A Texas Air National Guard F-16 crashed in Michigan during a training mission on Thursday afternoon, sparking an hourslong evacuation near the crash site, according to officials. The incident prompted the evacuation of homes and businesses within 1 mile of the crash site due to a "hazardous chemical spill related to the plane crash," Michigan State Police said... All of the Texas Air National Guard aircraft that were in Michigan for the training were immediately grounded, and will likely remain so for the next 24 hours, according to a U.S. official. America's War Department has said it wanted to see more military flyovers writes The Daily Beast, adding that the F-16 "was due to perform a flyover at a high-school football game on Friday night, the Alpena News reported." The military said it was still investigating the cause of the crash, but one pilot told air traffic controllers that he believes his wingman hit a bird before the crash.... The accident followed a Pentagon X post on Thursday after widespread criticism of low-altitude flyovers and maneuvers. "The flyovers will continue until morale improves," it said.

Read more of this story at Slashdot.

America Acknowledges for the First Time: It Has Deployed Weapons In Space

Tuesday U.S. Space Force chief Douglas Schiess said his branch of the U.S. military operates "on-orbit weapons," reports Reuters, to defend "against space-enabled attacks." He promised "disciplined and responsible choices" when scaling America's orbital defense arsenal in the coming years. NPR calls this week's reveleations "remarkable... after previous warnings about countries such as Russia possibly weaponizing a global frontier long agreed in treaties to be used for only peaceful purposes." The revelation comes as the Trump administration puts a growing focus on space. In 2019, during his first term, Trump created the Space Force as a separate military branch. In his second term, he has announced the "Golden Dome" missile defense system, which includes plans to put U.S. weapons in space. Trump said last year that he expected the system would be "fully operational before the end of my term," which ends in January 2029, and have the capability of intercepting missiles "even if they are launched from space." Trump also has directed the Pentagon to pursue the space-based interceptors, in an executive order during the first week of his presidency. The Congressional Budget Office estimated that just the space-based components of the Golden Dome could cost as much as $542 billion over the next 20 years. The Biden administration announced in 2024 that Russia was developing a space-based nuclear weapon that could loiter in space for long durations, then release a burst that would take out satellites around it. That kicked off a renewed debate on the idea of weapons in space at the United Nations. In April 2024, Russia vetoed a joint U.S.-Japanese resolution that would have called on all countries not to develop or deploy nuclear arms or other weapons of mass destruction in space, as banned under a 1967 international treaty that included the U.S. and Russia... The Russian delegation called the resolution hypocritical and a double standard and instead proposed a rival resolution to ban all weapons in space "for all time." It ultimately failed. Russia had argued that the United States and its allies opposed a ban on all weapons in outer space because they planned to deploy weapons there. Reuters calls this "a landmark moment in space militarization," while noting that it's "aimed at deterring what U.S. officials describe as aggressive orbital activities from China and Russia, officials and analysts said." The remarks this week by Washington's top military-space officials are part of "the increasing comfort level of the U.S. government to speak about aggressive actions in space" that has been building up in recent years, said Victoria Samson, chief director of space security and stability at the nonprofit Secure World Foundation. "We've gone from not talking about counter-space capabilities... to now saying flat-out we have weapons in space," Samson said. "The pendulum keeps on shifting over that way..." "The acknowledgment of these space-control capabilities is fundamental to ensuring that we prevent deterrence from failing, and that we are postured and ready should deterrence fail to employ them effectively," Richard Palmer, the director of the Capability and Resource Integration Directorate at U.S. Space Command, said on Tuesday.... "The bottom line is that our joint force and our allied forces require space. Our economies require space," added Palmer. "We are ready in the U.S. to preserve that." Reuters adds that Russia's Foreign Ministry issued criticism of America's move, saying "In pursuit of its narrow self-interests, Washington is ready to completely ignore the catastrophic consequences for humanity of any armed conflict in orbit."

Read more of this story at Slashdot.

US Legislators Complain About Secretive British Court and Apple Encryption

Bruce66423 shares a report from The Guardian: A bipartisan pair of American politicians is telling Britain's most secretive court to stop hiding its handling of Apple's legal fight against a government demand to break into its customers' encrypted data, warning that Whitehall's taste for secrecy is 'needlessly' straining relations between the two allies. The letter (PDF), shared with the Guardian ahead of being sent to the investigatory powers tribunal (IPT) on Friday, is signed by the Democratic senator Ron Wyden of Oregon and the Republican congressman Warren Davidson of Ohio. The row dates back to January 2025, when the Home Office served Apple with a technical capability notice under the Investigatory Powers Act, which requires companies to assist law enforcement in providing evidence. The UK government demanded that Apple provide a mechanism to access encrypted iCloud backups worldwide, a call the company met by withdrawing its Advanced Data Protection encryption feature from UK users the following month. Apple's challenge to that order at the IPT was later thrown out after the Home Office withdrew the original notice and issued a narrower one targeting only British users' data. "It is wholly inappropriate for a foreign executive body to attempt to dictate the distribution of powers within the US government, nor should it be permitted to use secrecy directives under the Investigatory Powers Act to frustrate Article I powers under the US Constitution," the pair wrote. Wyden and Davidson write that Congress "is not only a co-equal branch of government, it is the First Branch," and argue that no government can be allowed to place "its demands beyond the reach of legislative inquiry." "The UK government," they write, "cannot champion legislative oversight at home while using administrative gag orders to kneecap the constitutional authority of the US Congress."

Read more of this story at Slashdot.

Secretive DHS 'Predictive Policing' Unit Is Analyzing Americans' Financial Habits, Pulling Them Over

An anonymous reader quotes a report from 404 Media: Border Patrol is running secretive predictive policing units that analyze Americans' financial activity and other data, then feed that intelligence to local police who pull people over who are not suspected of any specific crime, but which the government thinks may be worth searching, 404 Media has found. The units, the name of which 404 Media is revealing here for the first time, are called Predictive Intelligence Targeting Teams (PITT). In one case, a PITT analyzed the financial activity of a man who was driving across Montana, and local authorities stopped him under the pretense of an obstructed license plate and charged him with a DUI. 404 Media identified one PITT in the Spokane Sector, Washington, which polices the U.S. border with Canada, and another in the Laredo Sector, Texas, which polices the border with Mexico. The findings add to an Associated Press investigation from last year which found Border Patrol was using automatic license plate readers (ALPRs) as part of the same wide-spanning predictive policing program. "The bottom line is genuine probable cause cannot be synthetically generated," Jake Laperruque, deputy director of the Security and Surveillance Project at the Center For Democracy & Technology, told 404 Media in an email. Here Border Patrol seems to be "using parallel construction to cloak the reason behind its car stops in secrecy. If we can't meaningfully review and evaluate these systems, we can't trust them," he added. [...] The DHS document obtained by 404 Media shows that Border Patrol is analyzing the financial activity of Americans to find people to pull over. The Associated Press's investigation found the predictive policing program is also heavily using ALPRs to track potential targets' movements. It is not clear how exactly Border Patrol is monitoring Americans' financial activity. Customs and Border Protection (CBP) declined to answer what financial activity the agency was monitoring, and whether it obtained a warrant or not. A CBP spokesperson told 404 Media in an email: "U.S. Border Patrol uses intelligence-informed analysis and planning to support national security operations, allocate resources, and help identify potential threats and bad actors to public safety. These efforts are conducted consistent with applicable law, policy, privacy protections, and oversight requirements." The statement continued: "For operational security reasons, we do not discuss specific analytical methods, data sources, targeting criteria, investigative techniques, system capabilities, or deployment details. Public disclosure of such information could compromise law enforcement operations and investigations as well as creating safety risks for agents and the public." Rob Frommer, senior attorney at the Institute for Justice, told 404 Media: "The government's increasing use of mass surveillance -- whether that surveillance comes via ALPRs, financial records, or the like -- coupled with predictive policing is a recipe for tyranny. We fought a revolution for the idea that we are citizens, not subjects. Yet schemes like CBP's Predictive Intelligence Targeting Team treat all Americans as if they are potential suspects. This is not just wrong, it's unconstitutional, and IJ will keep pushing courts and Congress to end this attack on Americans' security."

Read more of this story at Slashdot.

Florida Bans Flock Cameras From State Highways

schwit1 shares a report from WCTV: Florida Governor Ron DeSantis said he's removing Flock camera from state roadways. The announcement comes amid a growing concern over the misuse of automated license plate readers. On Monday, DeSantis ordered all Flock cameras removed from what he calls the 'state highway system' within the next 30 days, which would include interstates like I-10 and I-75. That order led to several sheriff's departments like in Franklin, Liberty and Putnam Counties to announce they're ending their own license plate reader programs. According to the Florida Department of Transportation memo, if the cameras aren't removed from the state right-of-ways within 30 days, then the state government will take them down on their own. The memo also says FDOT will deny any other permits for cameras in the future.

Read more of this story at Slashdot.

MapQuest's App Surges to No. 1 In Navigation After Refusing to Rename Lake Ontario

MapQuest's refusal to rename Lake Ontario as "Lake America" has sent its app surging up the charts, making it the No. 1 navigation app in the U.S. and driving "hundreds of thousands" of new downloads. In contrast, Google Maps announced on Saturday that it was complying with the Trump administration's name change. TechCrunch reports: The "OG of online mapping," as the company calls itself, announced on Thursday that it would not change the name of Lake Ontario on its maps to Lake America, despite Trump's executive order directing the U.S. Department of the Interior to update the lake's name in the U.S. geographic naming service. As a result, MapQuest's mobile app downloads soared, sending the iOS app to the No. 4 position on the U.S. App Store's Top Charts for apps (not including games) as of Monday morning on the U.S. east coast. MapQuest also reached the No. 8 position overall in the U.S. App Store across both apps and games, and it became the No. 1 Navigation app in the United States. In Canada's App Store, the app reached No. 2 overall as of Sunday evening. The 30-year-old company remarked that it received "hundreds of thousands" of new downloads since its decision to keep the name Lake Ontario in place, and saw its app's usage climb to 50 times above its normal levels. "We took the same approach we did with the Gulf of Mexico: be part of the conversation, and give people an app that keeps the names they're familiar with," said Doug Berger, general manager of MapQuest, in a statement. "Hundreds of thousands of people signaled to us this weekend that we got it right by downloading our app."

Read more of this story at Slashdot.

Trump Declares National Emergency to Ban Some Foreign Grid Equipment

Longtime Slashdot reader dhartshorn writes: Foreign-produced "bulk power" equipment is now effectively banned, and the list of what constitutes such equipment is essentially everything used to make up the grid... much of which we are heavily dependent on foreign sources to supply. In a Wednesday executive order, President Trump said foreign supply of electric equipment "constitutes an unusual and extraordinary threat" to national security. The Hill reports: Under the order, it will be up to Energy Secretary Chris Wright, in coordination with other officials, to determine whether a piece of equipment poses an issue. The order could impact a wide range of equipment, including substations, transformers, batteries used for energy storage, generators, turbines, software and more. It does not lay out specific threats or single out any country by name. [...] Under the last Trump administration, the president put a similar order in place. The new order comes amid several reported cyberattacks on U.S. water systems, which officials suspect have links to Iran, according to The New York Times.

Read more of this story at Slashdot.

New York Dethrones San Francisco Bay Area As Largest Tech Talent Market

fjo3 shares a report from SFGATE: The San Francisco Bay Area, epicenter of the artificial intelligence boom, is home to a massive amount of tech workers employed by some of the world's most valuable companies, from Apple to Nvidia. But for the first time, New York has eclipsed the Bay Area as the home of the largest "tech talent workforce," a report by real estate and investment firm CBRE shows. The firm has published the annual report for 13 years. Last year, the New York Metro Area's tech talent workforce reached 394,300, surpassing the Bay Area's 375,730, according to the report. Fueled by mass layoffs, the Bay Area's tech talent workforce dropped by 6% from 2022 to 2025. New York's tech talent workforce, on the other hand, grew by more than 8% during that period "The Bay Area is likely to remain ... the central location for the AI industry and for innovation. But as we've seen during past cycles, as it tends to grow, that spreads out to all the key markets," Colin Yasukochi, executive director of CBRE's Tech Insights Center, said during a news conference Tuesday.

Read more of this story at Slashdot.

Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics

The ransomware-as-a-service group Medusa has adopted fresh tactics to gain access and added hundreds of victims in a little more than a year, according to an updated U.S. government advisory published Tuesday.

The gang is relying on access brokers,compensating them anywhere from $100 to $1 million, with higher prices going to those who work exclusively with Medusa. However, most of the brokers work simultaneously for β€œmultiple variants at the same time,” the advisory from the Cybersecurity and Infrastructure Security Agency, FBI and Health and Human Services Department states in one of the updated portions of the advisory.

Tuesday’s update advisory expands upon aMarch 2025 advisory, drawing on ongoing FBI investigations.nIt includes information on the kinds of software vulnerabilities Medusa has exploited, such as Fortra GoAnywhere and BeyondTrust flaws.

β€œMedusa actors operate opportunistically by targeting victims with unpatched software rather than focusing on specific organizations or sectors; however, the Healthcare and Public Health (HPH) Sector has been a frequent victim of Medusa operations,” according to the advisory. β€œMedusa actors leverage newly announced exploits within 24 hours and have been observed to use exploits up to a week before public vulnerability disclosure.’

β€œHowever, there is no indication Medusa actors develop their own zero-day or N-day vulnerabilities, preferring instead to obtain advanced access to exploits from unknown sources or to quickly leverage newly announced exploits before potential victims can mitigate vulnerabilities through patching,” the advisory continues.

The approach appears to be netting gains: From March 2025 to April of this year, the victim tally in the advisory jumped from more than 300 to more than 500. The group was first identified in 2021.

β€œMedusa actors often use legitimate tools and living off the land techniques to evade detection. They may also leverage remote monitoring and management software and remote access services, including Remote Desktop Protocol, for lateral movement,” as updated sections of the advisory detail. β€œOnce inside a network, they use common utilities and tools to support credential access, data exfiltration, and ransomware deployment.”

Earlier this year, Microsoft detailed how a group it dubbed Storm-1175 was making use of Medusa ransomware in speedy operations. Symantec and Carbon Black also detailed earlier this year how North Korean hackers were leaning on Medusa to target the health care sector.

The post Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics appeared first on CyberScoop.

Flock's 'Creepy Cameras' Remain Major Threat to Privacy Despite Small Recent Changes, Warns ACLU

While Flock announced changes for its AI-powered traffic cameras, "Several of the proposed changes Flock is touting are merely retreads of previous ," complains the American Civil Liberties Union. "Flock's latest announcement still appears more focused on addressing a perceived PR problem than the significant harms its products create... [T]his is hardly the step forward Flock wants us to think it is " The ACLU continues to urge that default retention periods be shortened to 48 hours β€” not one week. And they warn Flock allows longer retention to any police department that asks for it, or when police officers activate "Evidence Mode" (the scope of which is not yet clear): Even if "Evidence Mode's" data retention hold only applies to hits returned on a given search, it would still retain significant amounts of location data on persons and vehicles who law enforcement do not suspect have engaged in any wrongdoing... Flock claims that its changes will provide "more local control," meaning local police can decide what types of offenses other Flock customers can search their data for... This is not new. Flock has attempted this before, and the security measure failed because users were easily able to circumvent the system's requirement that police input the purpose of their search. For example, on June 12, 2025 Flock started claiming its new "Proactive Search Term Tool" would block any "impermissible" searches, such as abortion-related searches in states like Illinois that prohibit sharing reproductive healthcare data. But police officers quickly realized they could just input "investigation" or even "hehehe" as a search reason and it would be approved. Flock later switched from an open text box to a drop-down menu of reasons, but that just offered police a list of acceptable purposes they could choose from, whether it was accurate or not. Until Flock demonstrates they can develop a reliable, workable system to prevent improper searches, this promise of local control provides nothing more than a false sense of security... While providing "Audit Assistance" to all departments makes sense, there is no evidence that the tool works consistently to address what the Washington Post observed is a growing pattern of police officers turning Flock into a personal stalking tool. While dozens of officers have recently been arrested, fired, or otherwise disciplined for misusing Flock for personal reasons, Flock claims these arrests are proof its auditing tool works. However, unless we know the number of officers misusing the system, we cannot conclude if Flock and its auditing tools are catching 95 percent of violators or 5 percent. Flock needs to have its auditing tool analyzed by an independent evaluator to determine its actual effectiveness. Until then, we don't know if the tool is a real security measure or just window dressing. Perhaps the oddest part of Flock's announcement is its claims that "now every search will require" police to input a case code... While claiming that a "search without a reason is a search that shouldn't happen in the first place," Flock's announcement fails to note how easily users have circumvented "search reason" security measures in the past... This leaves the public wondering how making an ineffective voluntary security measure mandatory will improve its functionality. Flock's "nearly $1 billion in venture capitalist funding has locked it into an operational model that seeks to trade our privacy for massive profits," concludes the ACLU's statement, as they promise to continue "The ACLU is fighting alongside communities to cancel local ALPR contracts and push lawmakers to protect our rights from this surveillance nightmare..."

Read more of this story at Slashdot.

Trump Administration Enlists Private Companies To Hack Foreign Cybercrime Groups

The Trump administration today unveiled a new program that will allow vetted U.S. companies to conduct cyber surveillance and offensive cyber operations against foreign transnational criminal organizations. A presidential memorandum signed August 12 directs the National Coordination Center to establish and manage the program, expanding the government's fight against cybercrime by tapping the technical capabilities of the private sector. It builds on a March executive order that called for greater private-sector involvement, but goes significantly further by establishing a formal operational framework for the initiative. The White House argues that American companies possess a "critical offensive cyber advantage" whose capabilities have "historically been underutilized" in efforts to identify and disrupt criminal networks operating online. There are two broad categories of authorized activity. "Cyber Surveillance Operations" can involve secretly accessing foreign information systems without authorization to gather intelligence, including information that could later be used for offensive operations. "Cyber Effects Operations," meanwhile, can result in the "manipulation, disruption, denial, degradation, or destruction" of information systems, networks, or infrastructure. It's worth noting that companies will not be free to launch their own operations. The memorandum requires program officials to "review every cyber operations package and provide written approval and direction" before a participating company can act. Operations that could cause death or serious injury, or "rise to the level of use of force or armed attack under international law," are classified as "Critical Outcomes" and cannot be approved through the standard process. The program includes safeguards requiring companies to halt and report operations that unintentionally affect U.S. persons or systems, as well as any imminent threats to critical infrastructure.

Read more of this story at Slashdot.

Toxic Underground Fires Are Spreading at California Landfills

Three years ago environmental regulators discovered garbage burning deep inside California's Chiquita Canyon Landfill, reports the Los Angeles Times. [Alternate URL here.] "Few imagined the calamity that would follow. "Somehow the landfill's pollution control system introduced oxygen below, causing decades-old waste to rapidly decompose, generating intense heat and eventually widespread smoldering, federal and state environmental agencies say." The broiling temperatures released toxic gases and hazardous liquid waste that bubbled up to the surface. Residents living in the nearby communities of Val Verde and Castaic have phoned in thousands of complaints about stench and lived with nausea, dizziness and trouble breathing. The underground fire has tripled in size since first confirmed in 2023. Recently a towering mound of landfill garbage perched on the hillside has warped and threatens to trigger an avalanche of garbage and chemical-filled liquid, or leachate, according to the California water board... At first, local officials described the problem in Los Angeles County at Chiquita Canyon landfill as a rare, even unprecedented disaster. But since then, California regulators have learned that at least two other landfills are wrestling with high temperatures and similar conditions. Scorching temperatures have overtaken at least 30 acres of El Sobrante landfill near Corona in Riverside County. Excessive heat and emissions have also been detected at Avenal landfill in the San Joaquin Valley. The discoveries raise an unsettling question: How many landfills are dealing with these disasters? Are they a broader problem in California...? Chiquita Canyon closed at the end of the 2024 and stopped accepting new garbage. But the fire is expected to last for years as it continues to consume decades-old trash. "Underground landfill fires are complex, nearly impossible to extinguish once they break out," according to the article. "As regulators search for a solution, residents find themselves struggling with the wait." Some residents have worn gas masks β€” or sold their homes.

Read more of this story at Slashdot.

Virginia Governor To Intervene In Dominion-NextEra Merger

Longtime Slashdot reader schwit1 shares an opinion piece from the Washington Post, written by Virginia Governor Abigail Spanberger: NextEra Energy, a Florida-based utility company, has filed paperwork to buy Dominion Energy for about $67 billion, creating the largest regulated electric utility in the world. Virginia's State Corporation Commission is the regulatory body tasked with reviewing the application, and the SCC's commissioners will ultimately decide whether to approve, deny or impose new conditions on any potential merger. As a Virginian, I am deeply skeptical about whether selling our primary state-regulated utility to an out-of-state company is good for the commonwealth. I have serious questions about what this deal would mean for us. And as governor, I intend to get answers and be a voice for Virginians in the process. That is why I will be taking the legal step of "intervening" in this proposed merger, which means that as governor, I will formally request to be a party to the case. I know this action is unprecedented by a Virginia governor -- but so, too, is the size of this proposed merger and its potential impact on the commonwealth. Virginians deserve to know that their leaders are laser-focused on ensuring that their needs are part of the SCC review. "If two large corporations stand to benefit financially from this merger, so, too, should the Virginians who pay the bills," said Spanberger. "That is why any potential deal must deliver a more affordable energy bill with sustained, long-term energy cost savings." By formally intervening in the merger review, Spanberger's administration would gain legal standing to participate directly in the case, request detailed information, raise concerns, and advocate for conditions that benefit people in the state. She says the goal is to push for lower long-term energy costs, protect utility jobs, and ensure any new owner continues investing in reliable, affordable and cleaner power.

Read more of this story at Slashdot.

MS-DEFCON 2: Is Search going to get better?

ISSUE 23.31.1 β€’ 2026-08-06 By Susan Bradley The upcoming August updates include several promised fixes for Windows Search. The August updates will include several fixes, a few of which specifically target Search. I anticipate that the August updates will also bring a bumper crop of other vulnerabilities being patched, so I’m raising the MS-DEFCON level […]

Hackers Targeted Municipal Water Systems In 7 States This Week, FBI Says

An anonymous reader quotes a report from NBC News: Cyberattacks targeting municipal water systems have been reported in at least seven states this week, prompting the FBI and the Environmental Protection Agency to warn utilities nationwide that hackers are trying to disrupt critical water infrastructure. In a public service announcement Thursday, the agencies said water and wastewater utilities have reported incidents to the FBI, with some malicious activity degrading water operations. The announcement does not name the states. The warning comes after hackers targeted more than 30 municipal water facilities in Minnesota in an attack that had hallmarks of Iranian meddling, according to a law enforcement official. It is still under investigation. A spokesperson for Minnesota's information technology services agency said Thursday there was no indication the breaches contaminated any municipal water supplies. The federal Cybersecurity and Infrastructure Security Agency said in a separate alert that some larger attacks on water infrastructure had "resulted in boil water notices and sustained manual operations," though it did not say where. [...] The federal advisory said the malicious cyber actors, or MCAs, targeted specific brands of control systems used by municipal water utilities, though the FBI and the EPA urged operators of all systems to take precautions. [...] The agencies said the hackers remotely accessed internet-facing devices, changed IP addresses and passwords, and caused utilities to lose monitoring and control capabilities. The federal advisory calls on system operators to remove programmable logical controllers, or PLCs, from direct internet exposure by putting them behind secure gateways and firewalls; use strong passwords; and limit communications between authorized control system devices through access control lists.

Read more of this story at Slashdot.

Flock Cameras Are Being Destroyed Across the US

An anonymous Slashdot reader writes: Surveillance cameras owned by Flock Safety have been cut down with electric saws in New York State, vandalized with paint in Oakland, California, and rammed with a truck in Idaho. Flock claims its services fight crime, but law enforcement agencies also use their services to track vehicles based on license plate numbers and reconstruct the their movements, even when the drivers and owners of these vehicles have never been accused or convicted of any crime. (Flock states it has 120,000 automated cameras that record license plate data, as well as pan-tilt-zoom cameras, across the United States.) A guerilla mindset among average citizens have seen these cameras forcibly disabled within recent weeks with sympathy directed toward the vigilantes. In June, a West Virginia man accused of destroying several Flock cameras was arrested. Under a Facebook post from the local NBC affiliate announcing his arrest are dozens of people volunteering to provide alibis. "He was out fishing with me that day, you got the wrong guy," one man wrote.

Read more of this story at Slashdot.

AI Companies Are Recruiting Electricians and Carpenters By the Thousands

An anonymous reader quotes a New York Times report on how AI companies are pouring money into training and recruiting electricians, carpenters, and other skilled tradespeople to build data centers: There is no parallel in American history for the boom underway in the construction of data centers, fueled by companies with functionally unlimited cash that are racing to supply skyrocketing demand for their A.I. models. The explosion has offset flagging activity in other sectors, like office construction, which never recovered after the pandemic. Housing has been depressed by high interest rates, and offshore wind felled by political opposition. Still, competition for labor -- never mind land and materials -- is starting to weigh on other parts of the industry. "There's no question the resources are very limited, so decisions to build one thing kind of drag from another," said Mario Iacobacci, who runs the construction and infrastructure advisory practice at Oxford Economics. Developers are paying a premium for workers, especially in the rural areas where they are building data centers. According to an analysis by Indeed, the job listings website, hourly installation and maintenance jobs at data centers pay 42 percent more than similar jobs in other fields. Behind that inflated pay is a bidding war. In markets with a lot of data center construction, like Dallas and Northern Virginia, workers can jump ship for bonuses or higher per diem rates. The competition has driven contractors to staffing services like Aerotek. "It is creating a labor tension that is really delicate," said Marty Schager, Aerotek's director of data center market development. "You've got a passive job-seeker community out there right now that I think is looking to potentially capture opportunity with this once-in-a-generation data center gold rush." [...] The question looms over the apprentices who will become journeymen as the build-out reaches fever pitch. Fully trained electricians could shift to nuclear plants, apartment buildings or pharmaceutical factories. But it's hard to imagine anything on the scale of what's underway. "The best-case scenario would be you train all these skilled workers up and right when the data centers start to become less popular is we'd have a housing boom," said Jeff Strohl, director of Georgetown University's Center on Education and the Workforce. "That's probably not likely." "If we have an influx of workers at this point with the data centers being built, what happens when they're done? Where do those workers go?" he said. "How many people does it take to run a data center after taking up all this property and all this land that could have been used for something else?"

Read more of this story at Slashdot.

LG to Ban Residential Proxies from Smart TV Apps

The home appliance giant LG Electronics USA said this week it plans to suspend any apps built for its smart TVs that turn one’s television into an always-on residential proxy node. The move comes less than a month after researchers found that more than 42 percent of games and other apps available for download on LG’s webOS store allow unknown third-parties to route their Internet traffic through a user’s TV.

Proxy SDK prevalence among smart TV apps for LG (webOS) and Samsung (Tizen OS) televisions. Image: Spur.us.

On July 2, we featured research by the security firm SpurΒ that examined the prevalence of residential proxy software development kits (SDKs) in smart TV apps. Spur found more than 42 percent of apps available for download on LG smart TVs include SDKs that turn one’s television in a proxy node indefinitely, and that more than a quarter of the apps made for Samsung’s Tizen operating system had similar residential proxy components.

Responding to questions about Spur’s research, LG Senior Vice President John Taylor told KrebsOnSecurity the company was working with app developers to remove the residential proxy option from their apps on the webOS platform. Developers that fail to comply, he said, will find their apps suspended.

β€œA residential proxy network is not an intended use for LG smart TVs, and LG Electronics is working with developers to remove the residential proxy option from their apps on the webOS platform,” Taylor said. β€œIf this option is not removed, these apps will be suspended.”

Taylor said LG is committed to keeping residential proxy networks out of its smart TV apps going forward, and that the company’s review of those apps is β€œwell underway now.”

β€œAs part of our ongoing efforts to enhance platform quality and the user experience, LG will continue to strengthen our evaluation process for developer-submitted apps, including those that incorporate residential proxy SDKs,” Taylor wrote in an emailed statement.

App makers looking for ways to monetize their creations can turn to residential proxy providers, which pay developers to include SDKs that turn the user’s device into a residential proxy node that is rented to paying customers. In the case of LG and Samsung smart TVs, Spur found residential proxy SDKs bundled with everything from simple games like Pac-Man to screensavers and file utilities.

A Pac-Man smart TV app from Bright Data offers users the choice between viewing ads in the game or agreeing to allow their TV to serve as a residential proxy node. Image: Spur.us.

Spur’s report found the residential proxy network Bright Data accounted for a majority of proxy SDKs across both Samsung and LG smart TVs. In a statement shared with KrebsOnSecurity, Bright Data said its network is built on consent and responsibility and operates by LG and Samsung terms.

β€œEvery peer opts in through a dedicated screen and receives value in return; every customer is vetted, and our practices have now undergone a second independent audit by PwC,” the statement reads. β€œWe remain committed to an open, transparent internet where legitimate businesses, researchers, and institutions can responsibly access data that lives in the public domain.”

Bright Data and other proxy providers named in Spur’s report all say they follow rigorous know-your-customer processes to validate legitimate uses of their services, which is often heavily tied to content-scraping activities by said customers. The proxy companies also say they incorporate technological countermeasures to prevent proxy service customers from being able to interact with and control other devices on the proxy user’s local network.

Spur argues the problem is not that residential proxy networks exist, but rather that they are being embedded at scale in devices that most consumers do not think of as computers and are not equipped to audit.

β€œA one-time consent prompt buried in a TV app is not a substitute for meaningful transparency, ongoing control, and platform oversight,” Spur’s Trevor Sutter wrote. β€œThe risk is amplified when consent comes from individuals within the household who use the device but shouldn’t give consent, such as minors.”

LG’s announcement that it is culling residential proxy SDKs from its app store is welcome news, but the company recently came under fire for another questionable partnership: Pimping McAfee security products via software drivers included in its high-end LCD monitors.

Earlier this week, the Youtube channel Gamers Nexus showed that certain LG LCD monitors will automatically install an app that promotes paid McAfee antivirus subscriptions, and that the app arrives through Windows Update without an approval prompt.

Update, July 22, 1:06 p.m. ET: Added statement from Bright Data.

Wrangling Windows Event Logs with Hayabusa & SOF-ELK (Part 2)

But what if we need to wrangle Windows Event Logs for more than one system? In part 2, we’ll wrangle EVTX logs at scale by incorporating Hayabusa and SOF-ELK into my rapid endpoint investigation workflow (β€œREIW”)!Β 

The post Wrangling Windows Event Logs with Hayabusa & SOF-ELK (Part 2) appeared first on Black Hills Information Security, Inc..

❌