Censorship

1.4 Million Cubans Bypass Censorship Using US Government-Funded Software Psiphon (reuters.com) 50

"Cuban officials rallied tens of thousands of supporters in the streets on Saturday — nearly a week after they were stunned by the most widespread protests in decades," the Associated Press reports.

President Miguel Díaz-Canel — accompanied by 90-year-old former President Raul Castro — "made an impassioned speech blaming unrest on the U.S. and its economic embargo, 'the blockade, aggression and terror... The enemy has returned to throw all it has at destroying the sacred unity and tranquility of the citizens.'" "I think the government is just trying to signal to people that it understands their desperation and that it's going to try to alleviate some of the misery that they're experiencing. The problem is that the government just doesn't have much in the way of resources that it can devote to doing that," said William LeoGrande, an expert on Cuba at the American University in the United States.
Meanwhile, Reuters reports: Psiphon Inc's freely available internet censorship circumvention tool has helped nearly 1.4 million Cubans this week gain access to websites, the company said on Friday, after Cuba's government curbed access to popular social media and messaging platforms... Thousands of Cubans joined nationwide protests over shortages of basic goods, limits on civil liberties and the government's handling of a surge in COVID-19 infections on Sunday, the most significant unrest in decades in the communist-run country.

Psiphon said 1.389 million users accessed the open web from Cuba through its network on Thursday, as well as 1.238 million as noon EDT (1600 GMT) on Friday.

"Internet is ON; circumvention tools ARE working," Psiphon said in a statement.

Psiphon said the roughly 1.4 million represents about 20% of Cuban internet users. Its open source circumvention tool can be downloaded from app stores like Google Play or Apple to "maximize your chances of bypassing censorship," according to the company. Canadian university researchers developed the software in 2007 to let users evade governmental internet firewalls.

The censorship-circumvention tool — which combines VPN, SSH, and HTTP Proxy tools — has also been used in Iran, China, Belarus, Myanmar, according to recent news reports. Bloomberg notes that the Toronto-based nonprofit Psiphon "has received funding from the Open Technology Fund, a U.S. government nonprofit that aims to support global internet freedom technologies...

"On Thursday, President Biden said the U.S. is examining whether it's able to restore internet access shut down by the Cuban government."
Medicine

About 24 US Govt Officials in Vienna, Austria Report 'Havana Syndrome' Symptoms (newyorker.com) 82

"Since Joe Biden took office [in January], about two dozen U.S. intelligence officers, diplomats, and other government officials in Vienna have reported experiencing mysterious afflictions similar to the Havana Syndrome," reports the New Yorker: U.S. officials say the number of possible new cases in the Austrian capital — long a nexus of U.S. and Russian espionage — is now greater than the number reported by officials in any city except for Havana itself, where the first cases were reported...

The exact cause of the ailments in Vienna, which U.S. government agencies formally refer to as "anomalous health incidents" or "unexplained health incidents," remains unknown, but in response to the surge the C.I.A., the State Department, and other agencies are redoubling their efforts to determine the cause, and to identify the culprit or culprits...

The Havana Syndrome derives its name from the Cuban capital, where C.I.A. officers and State Department employees first reported experiencing strange sensations of sound and pressure in their heads in 2016 and 2017. Some of the patients said the sensations seemed to follow them around their homes, apartments, and hotel rooms in the Cuban capital. Some of the patients described feeling as though they were standing in an invisible beam of energy. Many of them suffered debilitating symptoms, from headaches and vertigo to vision problems. Specialists at the University of Pennsylvania's Center for Brain Injury and Repair used advanced MRIs to study the brains of forty of the original patients from Havana. They found no signs of physical impact to the patients' skulls — it was as if they had "a concussion without a concussion," one specialist told me — and the team detected signs of damage to their brains.

Senior officials in the Trump and Biden Administrations suspect that the Russians are responsible for the syndrome. Their working hypothesis is that operatives working for the G.R.U., the Russian military-intelligence service, have been aiming microwave-radiation devices at U.S. officials, possibly to steal data from their computers or smartphones, which inflicted serious harm on the people they targeted. But American intelligence analysts and operatives have so far been unable to find concrete evidence that would allow them to declare that either microwave radiation or the Russians were to blame.

The article also points out that the CIA's director has privately called the incidents "attacks" rather than incidents or illnesses.
The Military

America Honors Its Atomic Veterans (whitehouse.gov) 18

America detonated the world's first nuclear device in Alamogordo, New Mexico on July 16, 1945.

On its 76th anniversary, U.S. president Biden issued a proclamation: Many brave men and women have risked their lives in service to our Nation, but few know the story of our "Atomic Veterans" — American military service members who participated in nuclear tests between 1945 and 1962, served with United States military forces in or around Hiroshima and Nagasaki through mid-1946, or were held as prisoners of war in or near Hiroshima or Nagasaki. These veterans served at testing sites like the Bikini Atoll and witnessed the destructive power of nuclear weapons firsthand.

On National Atomic Veterans Day, we recognize and honor the contributions of America's Atomic Veterans for their sacrifice and dedication to our Nation's security, and recommit to supporting our Atomic Veterans and educating ourselves on the role these patriots played in our national story.

Atomic Veterans served our Nation with distinction, but their service came at a great cost. Many developed health conditions due to radiation exposure, yet because they were not able to discuss the nature of their service, they were unable to seek medical care or disability compensation from the Department of Veterans Affairs for their illnesses. Decades later in 1996, the United States Congress repealed the Nuclear Radiation and Secrecy Agreements Act, allowing Atomic Veterans to tell their stories and file for benefits. By then, thousands of Atomic Veterans had died without their families knowing the true extent of their service.

Our Nation has one truly sacred obligation: to properly prepare and equip our troops when we send them into harm's way, and to care for them and their families when they return from service. As Commander in Chief, I am committed to fulfilling our obligation to the Atomic Veterans and their families, and ensuring that all of our Nation's veterans have timely access to needed services, medical care, and benefits. On this National Atomic Veterans Day, our country remembers the service and sacrifices of Atomic Veterans. Their heroism and patriotism will never be forgotten and we always honor their bravery and devotion to duty.

July 16, 2021 was named "National Atomic Veterans Day."

The proclamation ended with a call on all Americans "to observe this day with appropriate ceremonies and activities that honor our Nation's Atomic Veterans whose brave service and sacrifice played an important role in the defense of our Nation."
The Military

Fifteen Percent of US Air Force F-35s Don't Have Working Engines (thedrive.com) 163

Areyoukiddingme shares a report from The Drive: Atotal of 46 F-35 stealth fighters are currently without functioning engines due to an ongoing problem with the heat-protective coating on their turbine rotor blades becoming worn out faster than was expected. With the engine maintenance center now facing a backlog on repair work, frontline F-35 fleets have been hit, with the U.S. Air Force's fleet facing the most significant availability shortfall. At a hearing before the U.S. House Committee on Armed Services' Subcommittee on Tactical Air and Land Forces yesterday, Air Force Lieutenant General Eric T. Fick, director of the F-35 Joint Program Office, confirmed that 41 U.S. Air Force F-35s, as well as one Joint Strike Fighter belonging to the U.S. Marine Corps, another from the U.S. Navy, and three that had been delivered to foreign air forces were grounded without engines. Those figures were as of July 8. The exact breakdown of how many of each F-35 variant lack engines is unclear. The Air Force and the Navy only fly the F-35A and F-35C, respectively, but the Marines operate both F-35Bs and F-35Cs and various models are in service with other military forces around the world. With regards to the Air Force specifically, as of May 8 this year, the service had received 283 F-35As, which means that around a little under 15 percent of the service's Joint Strike Fighters can't be flown due to this engine shortage.
Facebook

Facebook Engineer Abused Access To User Data To Track Woman That Left Him After a Fight, New Book Says (yahoo.com) 78

A Facebook engineer abused employee access to user data to track down a woman who had left him after they fought, a new book said. Business Insider reports: Between January 2014 and August 2015, the company fired 52 employees over exploiting user data for personal means, said an advance copy of "An Ugly Truth: Inside Facebook's Battle for Domination" that Insider obtained. The engineer, who is unnamed, tapped into the data to "confront" a woman with whom he had been vacationing in Europe after she left the hotel room they had been sharing, the book said. He was able to figure out her location at a different hotel.

Another Facebook engineer used his employee access to dig up information on a woman with whom he had gone on a date after she stopped responding to his messages. In the company's systems, he had access to "years of private conversations with friends over Facebook messenger, events attended, photographs uploaded (including those she had deleted), and posts she had commented or clicked on," the book said. Through the Facebook app the woman had installed on her phone, the book said, the engineer was also able to see her location in real time. Facebook employees were granted user data access in order to "cut away the red tape that slowed down engineers," the book said.

"There was nothing but the goodwill of the employees themselves to stop them from abusing their access to users' private information," wrote Sheera Frenkel and Cecilia Kang, the book's authors. They added that most of the employees who abused their employee privileges to access user data only looked up information, although a few didn't stop there. Most of the engineers who took advantage of access to user data were "men who looked up the Facebook profiles of women they were interested in," the book said. Facebook told Insider it fired employees found to have accessed user data for nonbusiness purposes.

The Courts

US Cracks Down On 'Fulfilled By Amazon,' Citing Sale of 400K Hazardous Items (arstechnica.com) 55

An anonymous reader quotes a report from Ars Technica: The US Consumer Product Safety Commission (CPSC) yesterday filed a complaint against Amazon over the sale of hundreds of thousands of hazardous products, including carbon monoxide detectors that fail to detect carbon monoxide, hair dryers without required protection from shock and electrocution, and flammable sleepwear meant for children. The CPSC said it sued Amazon to "force [the] recall" of the dangerous products. While Amazon has halted sales of most of them already and issued refunds, the CPSC said it isn't satisfied with how Amazon notified customers and said the industry giant must do more to ensure that the faulty products are destroyed. The dangerous products were offered by third parties using the "Fulfilled by Amazon" (FBA) program, in which Amazon stores products in its warehouses, ships them to customers, and takes a sizable cut from the proceeds. The CPSC's administrative complaint alleges that Amazon hasn't taken enough responsibility for dangerous third-party products that it ships via FBA.

The complaint didn't mention any specific incidents of injury but said the evidence supporting the charges includes "lawsuits concerning incidents or injuries involving various consumer products identified in the Complaint." It also said that CPSC staff tested the products and found that they don't meet safety requirements. Products that don't meet these requirements pose a substantial risk of injury or death to consumers, the agency said. The CPSC said its complaint "seeks to force Amazon, as a distributor of the products, to stop selling these products, work with CPSC staff on a recall of the products, and to directly notify consumers who purchased them about the recall and offer them a full refund." In a statement provided to Ars, Amazon said it has already removed the "vast majority" of the products from its online store, notified customers, and provided refunds. Amazon alleged that the CPSC hasn't provided enough information about the remaining products.
Amazon's full statement reads: "Customer safety is a top priority and we take prompt action to protect customers when we are aware of a safety concern. As the CPSC's own complaint acknowledges, for the vast majority of the products in question, Amazon already immediately removed the products from our store, notified customers about potential safety concerns, advised customers to destroy the products, and provided customers with full refunds. For the remaining few products in question, the CPSC did not provide Amazon with enough information for us to take action and despite our requests, CPSC has remained unresponsive. Amazon has an industry-leading recalls program and we have further offered to expand our capabilities to handle recalls for all products sold in our store, regardless of whether those products were sold or fulfilled by Amazon or third-party sellers. We are unclear as to why the CPSC has rejected that offer or why they have filed a complaint seeking to force us to take actions almost entirely duplicative of those we've already taken."
Your Rights Online

Soldiers Angrily Speak Out about Being Blocked from Repairing Equipment by Contractors (substack.com) 146

Matt Stoller: Louis Rossmann is an important YouTube personality who talks about, among other things, the fact that big firms block their customers from repairing equipment so they can extract after-market profits with replacement parts. And he's very much noticed the Biden executive order, which calls for agencies to curtail this practice (as well as the FTC report on it). Rossmann did a series of videos on this order, one of which focused on the order calling for the Pentagon to stop contracting with firms that block soldiers from being able to repair equipment. He cited Elle Ekman's New York Times piece from 2019 on the problem. What's even more interesting than the video are the comments on it, from soldiers angry that they keep encountering this problem in the field. I pulled some of them and published them here.
The Courts

Sega Sued For 'Rigged' Arcade Machine (polygon.com) 102

An anonymous reader quotes a report from Polygon: Sega's Key Master arcade game is causing problems for the company once again. A new lawsuit alleges that Key Master is intentionally rigged against players. It's marketed as a game of skill, but players claim machines bar against awarding successful runs, making Key Master more of a chance-based game. Marcelo Muto filed the lawsuit on Monday in a California court. It's a proposed class action lawsuit looking for $5 million in damages to be distributed amongst wronged consumers. With Sega, Play It! Amusements (which is owned by Sega and now called Sega Amusements) and Komuse America (which co-manufactures Key Master) are named in the suit.

Key Master has been the target of multiple court cases in the past, dating back to at least 2013. This 2021 lawsuit, as well as the others, claims these machines are rigged only to allow players to win prizes at certain times -- specifically, at intervals determined by player losses. You've probably seen Key Master machines in malls or arcades, touting prizes like iPads, earbuds, and other pricey electronics. To play, you must navigate a key towards a specific keyhole by stopping the automatic movement by hitting a button. If the key goes in, you win the prize. The problem, according to the lawsuit, is that these machines are programmed to only allow players the ability to win after a certain number of player failures. If the machine is not ready to award a prize, it's allegedly programmed to overshoot the keyhole -- even if the player hit the button at the correct time -- and force the player to lose.

The problem here is that Key Master isn't marketed as a game of chance. It's portrayed as "a simple game of pure skill with a straight-forward directive," lawyers said. However, lawyers said that the deception behind the machine -- that it won't award players until certain settings are met -- is laid out in the game's manual, which was provided alongside the lawsuit as evidence. In the manual, according to screenshots, the Key Master machine "will not reward a prize until the number of player attempts reaches the threshold of attempts set by [the] operator." Lawyers for Muto said the default setting is 700, but that each machine can be programmed by individual operators.
"Key Master is no longer listed on the Sega Amusements website; instead, it's been re-named Prize Locker," adds Polygon. "It's the same design, but it's 100% skill-based, Sega said on the website."

"In the lawsuit, Muto's lawyers said Prize Locker and the conversion kit (which 'allows an operator of a Key Master game to convert the game' to a skill-based one) are offered because Sega itself has realized that 'many areas of the world aren't able to benefit from this outstanding category [of arcade game] due to local or state regulations prohibiting their operation.' Lawyers alleged that this is Sega 'tacitly conced[ing] that Key Master is rigged.'"
Privacy

Apple's IDFA Change Has Triggered 15% To 20% Revenue Drops For iOS Developers (venturebeat.com) 120

AmiMoJo shares a report from VentureBeat: Apple critics such as Epic Games CEO Tim Sweeney have complained about Apple's alleged anticompetitive behavior with the App Store. But Consumer Acquisition's Brian Bowman has frequently sounded the alarm on Apple's decision to favor user privacy over targeted ads by changing access to its Identifier for Advertisers (IDFA). Based on Consumer Acquisition's analysis of $300 million in paid social ad spending, IDFA has had a devastating impact, Bowman said in an interview with GamesBeat. In a report issued today, Bowman said that iOS advertisers are experiencing a 15% to 20% revenue drop and inflation in unattributed organic traffic.

Starting in April, Apple began releasing iOS 14.5, which prompted users to answer whether they would allow their data to be tracked for advertising purposes. Apple believes this puts privacy front and center. But Consumer Acquisition and many of its game developer advertisers worry it will break personalized advertising. Only 20% of consumers are saying yes to Apple's App Tracking Transparency prompt, which means they will enable apps to personalize ads by tracking their personal data. For the traffic Bowman's company evaluated, performance has faded. Across paid social platforms, downstream event optimization and "lookalike audience performance" is also eroding. [...] Bowman believes -- or at least holds out hope -- that Apple will roll back or soften the IDFA changes by Black Friday.

Government

White House May Work With Carriers To Screen Anti-Vax Messages (tmonews.com) 267

According to Politico, "Biden allied groups, including the Democratic National Committee, are [...] planning to engage fact-checkers more aggressively and work with SMS carriers to dispel misinformation about vaccines that is sent over social media and text messages." The White House is also planning to work with social media platforms and traditional media outlets to combat misinformation and ultimately improve vaccination rates. TmoNews reports: The White House could ask carriers like T-Mobile, Verizon, and AT&T to step in and stop the spread of these text messages. This is one way they hope they will be able to get their vaccination message across better and eliminate misinterpretation. There is no word yet on whether or not the White House has reached out to these carriers to help them screen anti-vax messages. But if it does, it will be interesting to see how this will be acted upon and which tools would be used. Then again, it could open a can of worms with potential issues that would violate customer privacy and an individual's right to free speech. "We are steadfastly committed to keeping politics out of the effort to get every American vaccinated so that we can save lives and help our economy further recover," White House spokesperson Kevin Munoz said. "When we see deliberate efforts to spread misinformation, we view that as an impediment to the country's public health and will not shy away from calling that out."
Twitter

Twitter Sees Jump In Government Demands To Remove Content of Reporters, News Outlets (reuters.com) 17

An anonymous reader quotes a report from Reuters: Twitter saw a surge in government demands worldwide in 2020 to take down content posted by journalists and news outlets, according to data released by the social media platform. In its transparency report published on Wednesday, Twitter said verified accounts of 199 journalists and news outlets on its platform faced 361 legal demands from governments to remove content in the second half of 2020, up 26% from the first half of the year. Twitter ultimately removed five tweets from journalists and news publishers, the report said. India submitted most of the removal requests, followed by Turkey, Pakistan and Russia. India topped the list for information requests by governments in the second half of 2020, overtaking the United States for the first time, the report said.

The company said globally it received over 14,500 requests for information from July 1 to Dec. 31, and it produced some or all of the information in response to 30% of the requests. Such requests can include governments or other entities asking for the identities of people tweeting under pseudonyms. Twitter also received more than 38,500 legal demands to take down various content, down 9% from the first half of 2020, It complied with 29% of the demands. In the updated transparency report, Twitter said the number of impressions, or views of a tweet, that violated Twitter's rules accounted for less than 0.1% of the total global views in the second half of 2020, the first time the platform has released such data.

Twitter

Twitter Sees Jump in Govt Demands To Remove Content of Reporters, News Outlets (reuters.com) 17

Twitter saw a surge in government demands worldwide in 2020 to take down content posted by journalists and news outlets, according to data released by the social media platform. From a report: In its transparency report published on Wednesday, Twitter said verified accounts of 199 journalists and news outlets on its platform faced 361 legal demands from governments to remove content in the second half of 2020, up 26% from the first half of the year. The biannual report on Twitter's enforcement of policy rules and the information and removal requests it receives comes as social media companies including Facebook and Alphabet's YouTube face government scrutiny worldwide over the content allowed on their platforms. Twitter ultimately removed five tweets from journalists and news publishers, the report said. India submitted most of the removal requests, followed by Turkey, Pakistan and Russia.
Censorship

As Cubans Protest, Government Cracks Down On Internet Access and Messaging Apps (nbcnews.com) 239

As Cubans take to the streets to protest against the government's mishandling of the economy and coronavirus health crisis, the country's government is turning to censorship to crack down on dissent. According to NBC News, the government "has taken steps to block citizens' use of the encrypted chat apps WhatsApp, Signal and Telegram." They've also shut off the internet. According to a case study from Top10VPN, Cuba went offline for 32 hours, which affected 7 millions users and cost the country more than $13 million. NBC News reports: Widespread internet use in Cuba is still relatively new, and Cubans mostly reach the web through their smartphones. The country only has a single major internet provider, the national telecommunications company ETECSA. That means most Cubans have to rely on a single, centralized, government-affiliated hub, making government censorship substantially easier. NetBlocks, an internet monitoring nonprofit, said Monday that it had detected disruptions to multiple messaging apps through ETECSA's service. A number of messaging apps, including WhatsApp, Signal and Telegram, are all blocked in Cuba, said Arturo Filasto, the project lead at the Open Observatory of Network Interference (OONI).

OONI, an international nonprofit, relies on volunteers around the world to install a program that probes for which types of internet use are being censored and how. Its data showed that ETECSA began blocking WhatsApp on Sunday night, then Signal and Telegram on Monday. All three were still blocked on Tuesday, Filasto said. "We have never seen instant messaging apps being blocked in the country," he said. "It's sort of unprecedented that we would see such a heavy crackdown on the internet in Cuba." Marianne Diaz Hernandez, a fellow at the digital rights nonprofit Access Now, said some Cubans have reported that their specific SIM cards for their phones have been rendered useless, keeping them offline. And some virtual private networks have themselves been blocked, she said. Two major VPNs, Tor and Psiphon, appear to still work. While Cuba has deployed various censorship techniques in the past, this is the first time they have all been deployed at the same time, Hernandez said. "Since they have had internet, this is the largest blackout in history," she said.
On Tuesday, Gov. Ron DeSantis said he wants Florida companies to provide internet connection to residents in Cuba.

"What does the regime do when you start to see these images? They shut down the internet. They don't want the truth to be out, they don't want people to be able to communicate," said DeSantis during a roundtable with Republican lawmakers and members of the Cuban exile community in Miami. "And so one of the things I think we should be able to do with our private companies or with the United States is to provide some of that internet via satellite. We have companies on the Space Coast that launch these things," he added. DeSantis said he would make some calls to "see what are the options" to make it happen.
Republicans

Republicans Call For Amazon To Testify On Pentagon Relationship (theverge.com) 40

Republicans are questioning Amazon's relationship with the Pentagon after newly released emails show that defense officials praised tech executives vying for a $10 billion contract during the Trump administration. The Verge reports: On Tuesday, The New York Times reported on previously unreleased emails that show Pentagon officials applauding Amazon executives while the company sought out a lucrative defense contract between 2017 and 2018. The Joint Enterprise Defense Infrastructure project, or JEDI, set out to find a tech company that would move the Defense Department's computer networks over to the cloud. In one instance, the Times reports that former Trump Defense Secretary Jim Mattis traveled to Silicon Valley to meet with executives from companies like Apple, Amazon, and Google in 2017. During this trip, Mattis was made "uncomfortable" while Amazon representatives aggressively pitched their cloud-computing products to him. A former Mattis adviser, Sally Donnelly, also referred to Bezos as "the genius of our age." Donnelly, who later sent Mattis a list of reasons he should meet with Bezos, had previously worked at a consulting firm where her clients included Amazon.

"This is exactly what we were concerned about, and it contradicts Amazon's insistence that there is nothing to see here," Rep. Ken Buck (R-CO) and Sen. Mike Lee (R-UT) said in a joint statement Tuesday. "It's become more and more clear that Amazon used its market power and paid-for connections to circumvent ethical boundaries and avoid competition in an attempt to win this contract." Microsoft won the multibillion-dollar contract in 2019 after a closely watched bidding fight between Amazon. But earlier this month, the Defense Department announced that it would cancel its contract amid an ongoing legal battle alleging that Trump wrongfully interfered in the bidding process. In canceling the prior contract, Amazon is given a second chance to win the $10 billion deal. But Republicans in Washington are calling for the company to testify regarding its Pentagon relationships in light of the newly released emails.

The Courts

Reddit Orders 'SaveVideo' Bot To Shut Down Or Face Lawsuit (torrentfreak.com) 44

An anonymous reader quotes a report from TorrentFreak: u/SaveVideo was a Reddit video downloader bot that helped users download and save videos from Reddit. The service was used by millions of people but according to its operator has now shut down following an ultimatum from Reddit. "The gods of Reddit have decided and I am obliged to obey or risk a lawsuit," SaveVideo announced yesterday. 'SaveVideo' (which operates from the RedditSave.com domain) is a decently sized operation by any standards. SimilarWeb stats indicate that since the start of the year, RedditSave.com has attracted a steady 10 million visitors per month. But now, however, the show is over. "It has been a great pleasure to serve you all in the past few months. However, as they say, All good things must come to an end," its operator writes. "The gods of reddit have reached out to us. They do not want us to continue this service any longer."

The operator of the bot service says they have complied and as a result, the SaveVideo and RedditSave bots have been shut down. What is more surprising is that this doesn't appear to have been a simple request from Reddit but one that was supported by the threat of legal action. "The gods of reddit have decided and I am obliged to obey or risk a lawsuit," the bots' operator explains. Most Reddit users commenting on the shutdown are taking the stance that it is Reddit's admins who have threatened legal action but the announcement certainly leaves room for other scenarios too, including repeated complaints from copyright holders. [...] Reddit has no official comment at this stage but has informed TorrentFreak that it was "not responsible for whatever notice or litigation threat" received by SaveVideo.
Update: SaveVideo's operator says the downloader bot is back. "Reddit has confirmed to me that the notice did not originate from them," they added. "With that being said, I have restored all the bot/website's services back to normal." We'll see how long this lasts...
Encryption

Amazon Rolls Out Encryption For Ring Doorbells (zdnet.com) 53

Starting today in the U.S. (and other countries in the not too distant future), you'll be able to encrypt the video footage captured via your Ring devices. ZDNet reports: This is done with Amazon's Video End-to-End Encryption (E2EE). If you decide to install this optional privacy feature, you'll need to install a new version of the Ring application on your smartphone. Once installed, it uses a Public Key Infrastructure (PKI) security system based on an RSA 2048-bit asymmetric account signing key pair. In English, the foundation is pretty darn secure.

Earlier, Ring already encrypted videos when they are uploaded to the cloud (in transit) and stored on Ring's servers (at rest). Law enforcement doesn't have automatic access to customer devices or videos. You choose whether or not to share footage with law enforcement. With E2EE, customer videos are further secured with an additional lock, which can only be unlocked by a key that is stored on the customer's enrolled mobile device, designed so that only the customer can decrypt and view recordings on their enrolled device. In addition, you'll need to opt into using E2EE. It doesn't turn on automatically with the software update. You'll also need to set a passphrase, which you must remember. AWS doesn't keep a copy. If you lose it, you're out of luck. [Just know that if you use E2EE, various features will be missing, such as sharing your videos, being able to view encrypted videos on Ring.com, the Windows desktop app, the Mac desktop app, or the Rapid Ring app, and the Event Timeline. E2EE also won't work with many Ring devices.]
ZDNet notes that while police can still ask for or demand your video and audio content, they won't be able to decrypt your E2EE end-to-end encrypted video "because the private keys required to decrypt the videos are only stored on customer's enrolled mobile devices."
Government

Man Wrongfully Arrested By Facial Recognition Tells Congress His Story (vice.com) 94

An anonymous reader quotes a report from Motherboard: Michigan resident Robert Williams testified about being wrongfully arrested by Detroit Police in an effort to urge Congress to pass legislation against the use of facial recognition technology. Williams' testimony was part of a hearing held by the House of Representatives' subcommittee on crime, terrorism, and homeland security, which dealt with how law enforcement uses the highly controversial surveillance technology. Congress recently introduced the Facial Recognition and Biometric Technology Moratorium, which would indefinitely ban its use by law enforcement. Williams was wrongfully arrested in 2020 for federal larceny after he was misidentified by the Detroit Police Department's facial recognition software after they used a grainy image from the surveillance footage. He was then picked from a photo lineup by the store security guard who wasn't actually present for the incident. According to his testimony, Williams was detained for thirty hours and was not given any food or water. [...]

Research has repeatedly shown that facial recognition technology is fundamentally biased against women and people of color, leading to errors like this. Even when working properly, privacy advocates have argued facial recognition systems disproportionately target communities of color, creating further pretext for police intervention. [...] "Large scale adoption of this technology would inject further inequity into a system at a time when we should be moving to make the criminal justice system more equitable," Representative Sheila Jackson Lee (TX-18) said during the hearing. The subcommittee also referenced a recent study from the U.S. Government Accountability Office that reported that 20 federal agencies used facial recognition software last year. Six federal agencies, including the FBI and the U.S. Postal Service, reported using it during the 2020 Black Lives Matter protests that followed the police murder of George Floyd.

Robert Williams is just one of many people impacted by this technology's errors and biases. Williams is now represented by the ACLU and is suing the Detroit Police Department for damages and policy changes to prohibit the use of facial recognition technology. So far, the technology has been banned statewide in Vermont and Virginia, as well as in 20 cities across the US. "Mr. Williams deserved better from the law enforcement agencies entrusted to use a technology that we all know is less accurate when applied to citizens who look like him," House Judiciary Committee Chairman Jerrold Nadler (D-NY) said in his testimony.

Government

EPA Approved Toxic Chemicals For Fracking a Decade Ago, New Files Show (nytimes.com) 137

An anonymous reader quotes a report from The New York Times: For much of the past decade, oil companies engaged in drilling and fracking have been allowed to pump into the ground chemicals that, over time, can break down into toxic substances known as PFAS -- a class of long-lasting compounds known to pose a threat to people and wildlife -- according to internal documents from the Environmental Protection Agency. The E.P.A. in 2011 approved the use of these chemicals, used to ease the flow of oil from the ground, despite the agency's own grave concerns about their toxicity, according to the documents, which were reviewed by The New York Times. The E.P.A.'s approval of the three chemicals wasn't previously publicly known. The records, obtained under the Freedom of Information Act by a nonprofit group, Physicians for Social Responsibility, are among the first public indications that PFAS, long-lasting compounds also known as "forever chemicals," may be present in the fluids used during drilling and hydraulic fracturing, or fracking.

In a consent order issued for the three chemicals on Oct. 26, 2011, E.P.A. scientists pointed to preliminary evidence that, under some conditions, the chemicals could "degrade in the environment" into substances akin to PFOA, a kind of PFAS chemical, and could "persist in the environment" and "be toxic to people, wild mammals, and birds." The E.P.A. scientists recommended additional testing. Those tests were not mandatory and there is no indication that they were carried out. "The E.P.A. identified serious health risks associated with chemicals proposed for use in oil and gas extraction, and yet allowed those chemicals to be used commercially with very lax regulation," said Dusty Horwitt, researcher at Physicians for Social Responsibility. [...] There is no public data that details where the E.P.A.-approved chemicals have been used. But the FracFocus database, which tracks chemicals used in fracking, shows that about 120 companies used PFAS -- or chemicals that can break down into PFAS; the most common of which was "nonionic fluorosurfactant" and various misspellings -- in more than 1,000 wells between 2012 and 2020 in Texas, Arkansas, Louisiana, Oklahoma, New Mexico, and Wyoming. Because not all states require companies to report chemicals to the database, the number of wells could be higher. Nine of those wells were in Carter County, Okla., within the boundaries of Chickasaw Nation. "This isn't something I was aware of," said Tony Choate, a Chickasaw Nation spokesman. [...] The findings underscore how, for decades, the nation's laws governing various chemicals have allowed thousands of substances to go into commercial use with relatively little testing. The E.P.A.'s assessment was carried out under the 1976 Toxic Substances Control Act, which authorizes the agency to review and regulate new chemicals before they are manufactured or distributed.
"[T]he Toxic Substances Control Act grandfathered in thousands of chemicals already in commercial use, including many PFAS chemicals," the report says. "In 2016, Congress strengthened the law, bolstering the E.P.A.'s authority to order health testing, among other measures. The Government Accountability Office, the watchdog arm of Congress, still identifies the Toxic Substances Control Act as a program with one of the highest risks of abuse and mismanagement." According to a recent report from the Intercept, "the E.P.A. office in charge of reviewing toxic chemicals tampered with the assessments of dozens of chemicals to make them appear safer."
Piracy

Stream-Ripping Can Be Perfectly Legal, French Ministry of Culture Says (torrentfreak.com) 28

An anonymous reader quotes a report from TorrentFreak: Downloading music via stream-ripping tools can be perfectly legal, the French Ministry of Culture has confirmed. The resulting copies fall under the private copying exemption. However, this only applies if the stream-ripping service doesn't circumvent technical protection measures, which is a widely contested issue. [...] Copyright holders are convinced that stream-ripping sites break the law but, in most countries, legal uncertainties remain. In the US, for example, popular stream-ripper Yout.com has sued the RIAA in an effort to have its site declared legal. This case, which remains ongoing, could set an important precedent.

In France, the Ministry of Culture was recently questioned on the stream-ripping issue. Philippe Latombe, a member of the MoDem party, asked the Government whether copies downloaded through these services are considered illegal. The question was part of a broader inquiry into the private copying rules and regulations. These allow people to copy music and movies in exchange for a tax that's paid on storage media and devices including blank CDs, hard disks, and smartphones. Responding to the question, the Ministry of Culture confirmed that, under the right conditions, it's perfectly legal to use stream-ripping services to download music and other media. "[Stream-ripping] is legal and the resulting copy falls under the exception for private copying as provided by law, if several conditions are met: it must be made from a lawful source at the request of the user, without being stored by the converter, and no circumvention of technical protection measures must be carried out." If these three boxes are ticked, stream-ripping is in the same league as ripping or copying an old-fashioned CD or DVD.

The big question, however, is in what situation all these conditions would apply? With regard to YouTube ripping, the "source" could be considered legal, as artists and labels often upload the videos themselves. The second box is also ticked by many stream-rippers as they don't permanently store music. The operator of the stream-rippers FLVto and 2Conv recently said that his site doesn't even store basic logs as that would involve significant costs. This brings us to the third and final condition; whether the stream-ripper circumvents technical protection measures. This is a crucial question and the answer largely depends on who you ask.

Social Networks

Jordan's Government Used Secretly Recorded Clubhouse Audio To Spread Disinformation (restofworld.org) 13

In a new report released last week by The Stanford Internet Observatory, researchers analyzed a Jordanian disinformation network that pushed pro-monarchy and pro-military narratives on Facebook, Twitter, and TikTok. The campaign, which Facebook said in a separate report had links to the Jordanian military, also republished audio that had been secretly recorded on Clubhouse. Rest of World reports: Researchers said this is the first time they have identified a disinformation operation that relied on Clubhouse and TikTok, indicating that some states are taking advantage of newer platforms to spread propaganda. The Jordanian campaign cobbled together audio and screen recordings from Clubhouse into at least one video that was then shared on Facebook. According to the report, the audio was taken from a conversation in which Jordanians outside the country and other Arab voices discussed Prince Hamzah, the half-brother of Jordan's leader, King Abdullah II, who was taken into custody in early April, along with over a dozen other prominent figures. Jordanian authorities accused Hamzah of plotting to destabilize the government, and while the prince later publicly pledged his loyalty to the king, he currently remains on house arrest.

People who saw the video "didn't know that it was linked to individuals in the Jordanian military," said Shelby Grossman, a research scholar at the Internet Observatory and a co-author of the report. "But at the same time, you could imagine that if someone watched this video, they might think to themselves, "Oh, people are listening when you have these Clubhouse conversations.'" While Clubhouse has not been officially banned by the Jordanian government, the nonprofit Jordan Open Source Association found that the app can currently only be accessed using a VPN. Recording is against Clubhouse's Terms of Service, which prohibits users from capturing "any portion of a conversation without the expressed consent of all of the speakers involved."

The most extensive portion of the Jordanian disinformation network was on Facebook. The social network said in its report that it had removed over 100 Facebook and Instagram accounts, three groups, and 35 pages connected to the campaign, four of which had more than 80,000 followers. The effort also included around $26,000 worth of Facebook ads, but it's unclear exactly whom they may have targeted. A spokesperson for Facebook said that the company's Ad Library transparency tool doesn't currently include data on ads that were run previously in Jordan.
The reports says that the researchers "also identified a handful of sock puppet accounts on TikTok that appeared to have ties to the same network." They didn't put a lot of effort into it though. "[T]he fake personalities didn't post original content, instead sharing videos from established accounts associated with the Jordanian military."

Slashdot Top Deals