By msmash from Slashdot's shape-of-things-to-come department
An anonymous reader shares a report on NASA's ongoing work on a manned trip to the moon. From the report: Without a new administrator even nominated yet, NASA's acting head Robert Lightfoot on Wednesday requested a study of whether next year's first flight of the Space Launch System rocket, billed as the most powerful NASA has built, could have a crew of astronauts. "I know the challenges associated with such a proposition," Lightfoot said in a letter to his agency, citing costs, extra work, and "a different launch date" for the planned 2018 Exploration Mission-1 (EM-1). The mission would be launched by the massive SLS, which is still in development, then boosted by a European service module to put three astronauts inside the new Orion space capsule on a three-week trip around the moon. NASA first sent three astronauts around the moon in 1968 in the Apollo 8 mission. The last astronaut to stand on the moon, the late Gene Cernan returned to Earth in 1972. The new talk of a repeat moon-circling mission, aboard an untested spacecraft, has space policy experts variously thrilled, dismissive, and puzzled. "I frankly don't quite know what to say about it," space policy expert John Logsdon of George Washington University said. Writing on NASAWatch, Keith Cowing called the study request a "Hail Mary" pass to save the life of the SLS ahead of Trump installing a budget cutter to head the space agency. The Government Accountability Office estimates the costs of SLS and its two planned launches (a second, crewed mission is planned for 2023) at $23 billion.Read Replies (0)
By msmash from Slashdot's what-in-the-world department
An anonymous reader shares a report on The Verge: A former Uber engineer has published an explosive account of sexism and power struggles in the workplace, with allegations beginning from her very first official day with the company. The engineer, Susan Fowler (who left Uber in December and now works for Stripe), posted the account to her blog on Sunday, calling it a "strange, fascinating, and slightly horrifying story." It is indeed horrifying. Sexism is a well-documented problem in Silicon Valley, but the particulars of Fowler's account are astounding. She says problems began on day one, when her manager accosted her with details of his sex life: "In my first official day rotating on the team, my new manager sent me a string of messages over company chat. He was in an open relationship, he said, and his girlfriend was having an easy time finding new partners but he wasn't. He was trying to stay out of trouble at work, he said, but he couldn't help getting in trouble, because he was looking for women to have sex with. It was clear that he was trying to get me to have sex with him, and it was so clearly out of line that I immediately took screenshots of these chat messages and reported him to HR. When I reported the situation, I was told by both HR and upper management that even though this was clearly sexual harassment and he was propositioning me, it was this man's first offense, and that they wouldn't feel comfortable giving him anything other than a warning and a stern talking-to. Upper management told me that he "was a high performer" (i.e. had stellar performance reviews from his superiors) and they wouldn't feel comfortable punishing him for what was probably just an innocent mistake on his part. The things only get worse for Fowler. Read the full account of her story here. In the meanwhile, Uber CEO Travis Kalanick said the company would "conduct an urgent investigation" into the allegations, and promised to fire anyone who "behaves this way or thinks this is OK." Journalist Paul Carr summing up the situation, says, "Uber's ability to be on the wrong side of every moral and ethical issue is bordering on magical."Read Replies (0)
By EditorDavid from Slashdot's bacteria-to-the-future department
"Scientists have extracted long-dormant microbes from inside the famous giant crystals of the Naica mountain caves in Mexico -- and revived them," reports the BBC. An anonymous reader writes:
"The organisms were likely to have been encased in the striking shafts of gypsum at least 10,000 years ago, and possibly up to 50,000 years ago," according to the BBC, which calls the strange lifeforms "another demonstration of the ability of life to adapt and cope in the most hostile of environments." With no light, extremophile species must "chemosynthesise," deriving all their energy by extracting minerals from rocks. These ancient microbes "are not very closely related to anything in the known genetic databases," according to the new director of NASA's Astrobiology Institute, who helped conduct the research, and believes that the microbes could help suggest what life might look like on other planets. The BBC adds that many other scientists "suspect that if life does exist elsewhere in the Solar System, it is most likely to be underground, chemosynthesising like the microbes of Naica."Read Replies (0)
By EditorDavid from Slashdot's residency-shmesidency department
Kim Dotcom -- and Megaupload's programmers Mathias Ortmann and Bram van der Kolk, as well as its advertising manager Finn Batato -- could soon be in a U.S. courtroom. A New Zealand judge just ruled they can all be extradited to the U.S. An anonymous reader quotes Reuters:
The Auckland High Court upheld the decision by a lower court in 2015 on 13 counts, including allegations of conspiracy to commit racketeering, copyright infringement, money laundering and wire fraud, although it described that decision as "flawed" in several areas. Dotcom's lawyer Ron Mansfield said in a statement the decision was "extremely disappointing" and that Dotcom would appeal to New Zealand's Court of Appeal.
U.S. authorities say Dotcom and three co-accused Megaupload executives cost film studios and record companies more than $500 million and generated more than $175 million by encouraging paying users to store and share copyrighted material. High Court judge Murray Gilbert said that there was no crime for copyright in New Zealand law that would justify extradition but that the Megaupload-founder could be sent to the United States to face allegations of fraud.
"I'm no longer getting extradited for copyright," Dotcom commented on Twitter. "We won on that. I'm now getting extradited for a law that doesn't even apply.Read Replies (0)
By EditorDavid from Slashdot's tarballs-from-Torvalds department
"Linus Torvalds announced today the general availability of the Linux 4.10 kernel series, which add a great number of improvements, new security features, and support for the newest hardware components," writes Softpedia. prisoninmate quotes their report:
Linux kernel 4.10 has been in development for the past seven weeks, during which it received a total of seven Release Candidate snapshots that implemented all the changes that you'll soon be able to enjoy on your favorite Linux-based operating system... Prominent new features include virtual GPU (Graphics Processing Unit) support, new "perf c2c" tool that can be used for analysis of cacheline contention on NUMA systems, support for the L2/L3 caches of Intel processors (Intel Cache Allocation Technology), eBPF hooks for cgroups, hybrid block polling, and better writeback management. A new "perf sched timehist" feature has been added in Linux kernel 4.10 to provide detailed history of task scheduling, and there's experimental writeback cache and FAILFAST support for MD RAID5... Ubuntu 17.04 (Zesty Zapus) could be the first stable OS to ship with Linux 4.10.
It required 13,000 commits, plus over 1,200 merges, Linus wrote in the announcement, adding "On the whole, 4.10 didn't end up as small as it initially looked."Read Replies (0)
By EditorDavid from Slashdot's it-came-from-outer-space department
The Los Alamos National Lab wrote in 2012 that "For over 20 years the military, the commercial aerospace industry, and the computer industry have known that high-energy neutrons streaming through our atmosphere can cause computer errors." Now an anonymous reader quotes Computerworld:
When your computer crashes or phone freezes, don't be so quick to blame the manufacturer. Cosmic rays -- or rather the electrically charged particles they generate -- may be your real foe. While harmless to living organisms, a small number of these particles have enough energy to interfere with the operation of the microelectronic circuitry in our personal devices... particles alter an individual bit of data stored in a chip's memory. Consequences can be as trivial as altering a single pixel in a photograph or as serious as bringing down a passenger jet. A "single-event upset" was also blamed for an electronic voting error in Schaerbeekm, Belgium, back in 2003. A bit flip in the electronic voting machine added 4,096 extra votes to one candidate. The issue was noticed only because the machine gave the candidate more votes than were possible. "This is a really big problem, but it is mostly invisible to the public," said Bharat Bhuva. Bhuva is a member of Vanderbilt University's Radiation Effects Research Group, established in 1987 to study the effects of radiation on electronic systems.
Cisco has been researching cosmic radiation since 2001, and in September briefly cited cosmic rays as a possible explanation for partial data losses that customer's were experiencing with their ASR 9000 routers.Read Replies (0)
By EditorDavid from Slashdot's presents-from-Project-Zero department
An anonymous reader writes: "For the second time in three months, Google engineers have disclosed a bug in the Windows OS without Microsoft having released a fix before Google's announcement," reports BleepingComputer. "The bug in question affects the Windows GDI (Graphics Device Interface) (gdi32.dll)..." According to Google, the issue allows an attacker to read the content of the user's memory using malicious EMF files. The bad news is that the EMF file can be hidden in other documents, such as DOCX, and can be exploited via Office, IE, or Office Online, among many.
"According to a bug report filed by Google's Project Zero team, the bug was initially part of a larger collection of issues discovered in March 2016, and fixed in June 2016, via Microsoft's security bulletin MS16-074. Mateusz Jurczyk, the Google engineer who found the first bugs, says the MS16-074 patches were insufficient, and some of the issues he reported continued to remain vulnerable." He later resubmitted the bugs in November 2016. The 90-days deadline for fixing the bugs expired last week, and the Google researcher disclosed the bug to the public after Microsoft delayed February's security updates to next month's Patch Tuesday, for March 15.
Microsoft has described Google's announcements of unpatched Windows bugs as "disappointing".Read Replies (0)
By EditorDavid from Slashdot's electronic-wastelands department
An anonymous reader writes:
"In many cases, your old TV isn't recycled at all and is instead abandoned in a warehouse somewhere, left for society to deal with sometime in the future," reports Motherboard, describing the problem of old cathode-ray televisions and computer monitors with "a net negative recycling value" (since their component parts don't cover the cost of dismantling them). An estimated 705 million CRT TVs were sold in the U.S. since 1980, and many now sit in television graveyards, "an environmental and economic disaster with no clear solution." As much as 100,000 tons of potentially hazardous waste are stockpiled in two Ohio warehouses of the now-insolvent recycler Closed Loop, plus "at least 25,000 tons of glass and unprocessed CRTs in Arizona...much of it is sitting in a mountainous pile outside one of the warehouses."
One EPA report found 23,000 tons of lead-containing CRT glass abandoned in four different states just in 2013.Read Replies (0)
By EditorDavid from Slashdot's consequences department
An anonymous reader quotes KrebsOnSecurity:
On Thursday, a Ukrainian man who hatched a plan in 2013 to send heroin to my home and then call the cops when the drugs arrived was sentenced to 41 months in prison for unrelated cybercrime charges. Separately, a 19-year-old American who admitted to being part of a hacker group that sent a heavily-armed police force to my home in 2013 was sentenced to three years probation.
Sergey Vovnenko, a.k.a. "Fly," "Flycracker" and "MUXACC1," pleaded guilty last year to aggravated identity theft and conspiracy to commit wire fraud. Prosecutors said Vovnenko operated a network of more than 13,000 hacked computers, using them to harvest credit card numbers and other sensitive information... A judge in New Jersey sentenced Vovnenko to 41 months in prison, three years of supervised released and ordered him to pay restitution of $83,368.
Separately, a judge in Washington, D.C. handed down a sentence of three year's probation to Eric Taylor, a hacker probably better known by his handle "Cosmo the God." Taylor was among several men involved in making a false report to my local police department at the time about a supposed hostage situation at our Virginia home. In response, a heavily-armed police force surrounded my home and put me in handcuffs at gunpoint before the police realized it was all a dangerous hoax known as "swatting"... Taylor and his co-conspirators were able to dox so many celebrities and public officials because they hacked a Russian identity theft service called ssndob[dot]ru. That service in turn relied upon compromised user accounts at data broker giant LexisNexis to pull personal and financial data on millions of Americans.Read Replies (0)
By EditorDavid from Slashdot's tooting-your-own-horn department
An IBM security researcher recently discovered something interesting about smart cars. An anonymous reader quotes CNN:
Charles Henderson sold his car several years ago, but he still knows exactly where it is, and can control it from his phone... "The car is really smart, but it's not smart enough to know who its owner is, so it's not smart enough to know it's been resold," Henderson told CNNTech. "There's nothing on the dashboard that tells you 'the following people have access to the car.'" This isn't an isolated problem. Henderson tested four major auto manufacturers, and found they all have apps that allow previous owners to access them from a mobile device. At the RSA security conference in San Francisco on Friday, Henderson explained how people can still retain control of connected cars even after they resell them.
Manufacturers create apps to control smart cars -- you can use your phone to unlock the car, honk the horn and find out the exact location of your vehicle. Henderson removed his personal information from services in the car before selling it back to the dealership, but he was still able to control the car through a mobile app for years. That's because only the dealership that originally sold the car can see who has access and manually remove someone from the app.
It's also something to consider when buying used IoT devices -- or a smart home equipped with internet-enabled devices.Read Replies (0)
By EditorDavid from Slashdot's big-bug-bounties department
An anonymous reader writes: "A typo in the Zerocoin source code allowed an attacker to steal 370,000 Zerocoin, which is about $592,000 at today's price," reports BleepingComputer. According to the Zcoin team, one extra character left inside Zerocoin's source code was the cause of the bug. The hacker exploited the bugs for weeks, by initiating a transaction and receiving the money many times over.
"According to the Zcoin team, the attacker (or attackers) was very sophisticated and took great care to hide his tracks," reports the site. "They say the attacker created numerous accounts at Zerocoin exchanges and spread transactions across several weeks so that traders wouldn't notice the uneven transactions volume... The Zcoin team says they worked with various exchanges to attempt and identify the attacker but to no avail.
Out of the 370,000 Zerocoin he stole, the attacker has already sold 350,000. The Zcoin team estimates the attacker made a net profit of 410 Bitcoin ($437,000)."Read Replies (0)
By EditorDavid from Slashdot's quarterback-apps department
A new arena-league football team plays on a 50-yard field and uses a mobile app that allows fans to vote on the team's next play. An anonymous reader writes:
Slate describes a receiver tackled for a short gain after the audience instructed the quarterback to throw a quick pass -- as "shouts and cheers exploded from the stands, with phones raised triumphantly in the air." The quarterback is informed of the chosen plays through an earphone in his helmet, and after one touchdown, one of the players even thanked a fan in the seats for picking a good play. "Then noses immediately returned to screens...the coach and QB were antsy, peering upward, waiting for the fans' next call as the play clock ticked down again..." The team eventually lost 78-47, but to at least make things more interactive, the players all have their Twitter handles sewn on the backs of their jerseys.
Fans can also be "virtual general managers" for a small fee, dialing in to a weekly phone call to give feedback to the team's president, and fans also selected the team's head coach from online resumes and some YouTube videos of interviews. In fact, the article says the fans even picked the team's name, with the name "Screaming Eagles" finally winning out over "Teamy McTeamface" and "Spaghetti Monsters."Read Replies (0)