×
Data Storage

US Voting Server At Heart of Russian Hack Probe Mysteriously Wiped (theregister.co.uk) 431

A computer at the center of a lawsuit digging into Russian interference in the U.S. presidential election has been wiped. "The server in question is based in Georgia -- a state that narrowly backed Donald Trump, giving him 16 electoral votes -- and stored the results of the state's vote-management system," reports The Register. "The deletion of its filesystem data makes analysis of whether the system was compromised impossible to ascertain." From the report: There is good reason to believe that the computer may have been tampered with: it is 15 years old, and could be harboring all sorts of exploitable software and hardware vulnerabilities. No hard copies of the votes are kept, making the electronic copy the only official record. While investigating the Kennesaw State University's Center for Election Systems, which oversees Georgia's voting system, last year, security researcher Logan Lamb found its system was misconfigured, exposing the state's entire voter registration records, multiple PDFs with instructions and passwords for election workers, and the software systems used to tally votes cast. Despite Lamb letting the election center knows of his findings, the security holes were left unpatched for seven months. He later went public after the U.S. security services announced there had been a determined effort by the Russian government to sway the presidential elections, including looking at compromising electronic voting machines.

In an effort to force the state to scrap the system, a number of Georgia voters bandied together and sued. They asked for an independent security review of the server, expecting to find flaws that would lend weight to their argument for investment in a more modern and secure system. But emails released this week following a Freedom of Information Act request reveal that technicians at the election center deleted the server's data on July 7 -- just days after the lawsuit was filed. The memos reveal multiple references to the data wipe, including a message sent just last week from an assistant state attorney general to the plaintiffs in the case. That same email also notes that backups of the server data were also deleted more than a month after the initial wipe -- just as the lawsuit moved to a federal court. It is unclear who ordered the destruction of the data, and why, but they have raised yet more suspicions of collusion between the Trump campaign team, the Republican Party, and the Russian government.

Businesses

McAfee Says It No Longer Will Permit Government Source Code Reviews (reuters.com) 79

Dustin Volz, Joel Schectman, and Jack Stubbs, reporting for Reuters: U.S.-based cyber firm McAfee said it will no longer permit foreign governments to scrutinize the source code of its products, halting a practice some security experts have warned could be leveraged by nation-states to carry out cyber attacks. Reuters reported in June that McAfee was among several Western technology companies that had acceded in recent years to greater demands by Moscow for access to source code, the instructions that control basic operations of computer equipment. The reviews, conducted in secure facilities known as "clean rooms" by Russian companies with expertise in technology testing, are required by Russian defense agencies for the stated purpose of ensuring no hidden "backdoors" exist in foreign-made software. But security experts and former U.S. officials have said those inspections provide Russia with opportunities to find vulnerabilities that could be exploited in offensive cyber operations. McAfee ended the reviews earlier this year after spinning off from Intel in April as an independent company, a McAfee spokeswoman said in an email to Reuters last week.
Businesses

San Francisco Just Took a Huge Step Toward Internet Utopia (wired.com) 226

Susan Crawford, writing for Backchannel: Last week, San Francisco became the first major city in America to pledge to connect all of its homes and businesses to a fiber optic network. I urge you to read that sentence again. It's a ray of light. In an era of short-term, deeply partisan do-nothing-ism, the city's straightforward, deeply practical determination shines. Americans, it turns out, are capable of great things -- even if only at the city level these days. [...] San Francisco's dilemma is a compact form of the crisis in communications facing the rest of the country: Although fiber is the necessary infrastructure for every policy goal we have -- advanced healthcare, the emergence of new forms of industries, a chance for every child to get an education, managed use of energy, and on and on -- the private sector, left to its own devices, has no particular incentive to ensure a widespread upgrade to fiber optic connections. Comcast dominates access in the city, but has no plans to replace its cable lines -- great at downloads, not so great at uploads, no opportunity to scale to the capacity of fiber thanks to the laws of physics, and expensive to subscribe to -- with fiber. And its planned enhancements to its cable lines have, in other cities, resulted in a product costing $150 per month. AT&T will say it's upgrading to fiber in San Francisco, but so far its work in many other US cities has been incremental, confined to areas where it has existing business customers to serve or where it already has fiber in place. Other, smaller providers similarly have no plans to do a city-wide upgrade, leaving San Francisco with a deeply uneven patchwork of connectivity. Just as in the rest of the country, poorer and less-well-educated San Franciscans tend not to subscribe to a wire at home, but instead rely wholly on smartphone data plans -- no substitutes, given their expense and throttled capacity, for what's possible using a wired connection.
Businesses

Oracle, Apple, Google, Amazon, Facebook Blow Even More Cash on Lobbying (theregister.co.uk) 73

An anonymous reader shares a report: American tech giants have ramped up the amount of cash they spend on lobbying US lawmakers to get their own way, yet again. As congressmen consider regulating organizations from Facebook to Google, and mull antitrust crackdowns against Amazon, said corporations have responded by flinging more dosh at the problem. The money is spent on, ahem, holding meetings between company execs and politicians so that businesses can push their agenda and swing decisions in their favor, which may not be in the interests of the people who elected said politicians. Facebook's $2.85m for the third quarter of the year -- disclosed this week as required by law -- is beaten only by the amount it spent in the first quarter: $3.21m. In its second quarter, it blew $2.38m. Overall, Facebook's lobbying bills for 2017 looks set to smash the $9.85m it spent in 2015 and the $8.7m in 2016. The social network is being investigated by both halves of Congress for its role in the Russian propaganda campaign during the US presidential election, and this month has been on a huge PR campaign in the capital. Likewise Amazon spent its highest ever amount on professional lobbyists -- both individuals and companies that book face time with lawmakers and their staff where they press the company's viewpoints. Amazon spent $3.41m in the third quarter, up from $3.21m for the second quarter -- which was also a record spend for the company. Apple has already blown past the $4.67m in spent in 2016 -- which was then its highest-ever spending. So far in 2017, the iPhone maker has spent $5.46m bending lawmakers' ears. Google spent less in the third quarter of the year to the wallet-busting Q2 spend of $5.93m, but it still spent $4.17m -- higher than its average spend of $4.0m per quarter over the past five years. But perhaps the most notable increase in spending has come from Oracle, which spent a whopping $3.82m on lobbying in the third quarter: double what it normally spends.
Government

Congress Opens Probe Into FBI's Handling of Clinton Email Investigation (arstechnica.com) 390

An anonymous reader quotes a report from Ars Technica: Two House committees announced Tuesday that they would conduct a joint probe into the FBI's handling of the Clinton e-mail investigation. The Clinton investigation concluded with no charges being levied against the former secretary of state who was running for president under the Democratic ticket. House Oversight and Government Reform Committee Chairman Trey Gowdy (R-S.C.) and House Judiciary Committee Chairman Bob Goodlatte (R-Va.) said in a joint statement that they are unsatisfied with how the probe into Clinton's private e-mail server concluded. Among other things, the chairmen want to know why the bureau publicly said it was investigating Clinton while keeping silent that it was looking into President Donald Trump's campaign associates and their connections to Russia.

"Our justice system is represented by a blind-folded woman holding a set of scales. Those scales do not tip to the right or the left; they do not recognize wealth, power, or social status," Goodlatte and Gowdy said in a joint statement. "The impartiality of our justice system is the bedrock of our republic, and our fellow citizens must have confidence in its objectivity, independence, and evenhandedness. The law is the most equalizing force in this country. No entity or individual is exempt from oversight."

Facebook

Tech Firms Seek Washington's Prized Asset: Top-Secret Clearances (bloomberg.com) 147

Major tech companies such as Facebook and Twitter are interested in hiring workers with top-secret security clearances as they deal with foreign meddling on their platforms and come under increased risk of hacks, reports Bloomberg. From the article: In doing so, companies such as Facebook are competing with defense contractors, financial firms and the U.S. government itself. Security clearances are a rare and valued commodity, whether at a bank trying to prevent hackers from stealing credit-card data and emptying accounts or at a manufacturer building parts for a stealth fighter or missile-defense radar system. Bringing former government cyber warriors on board at companies can facilitate interactions with U.S. agencies like the NSA or CIA as well as help the firms understand how to build stronger systems on their own. "They have the tradecraft," said Ronald Sanders, a former associate director of the Office of the Director of National Intelligence and now director of the school of public affairs at the University of South Florida. "And the trade craft is some of the best in the world."
Social Networks

Silicon Valley 'Divided Society and Made Everyone Raging Mad', Argues Newsweek (newsweek.com) 320

"Anyone who is pissed off can now automatically find other people that are similarly pissed off," argues author Jamie Bartlett, in a new essay shared by Slashdot reader schwit1 which calls the internet "a bottomless well of available grievance." Here's an excerpt from Newsweek: Silicon Valley's utopians genuinely but mistakenly believe that more information and connection makes us more analytical and informed. But when faced with quinzigabytes of data, the human tendency is to simplify things. Information overload forces us to rely on simple algorithms to make sense of the overwhelming noise. This is why, just like the advertising industry that increasingly drives it, the internet is fundamentally an emotional medium that plays to our base instinct to reduce problems and take sides, whether like or don't like, my guy/not my guy, or simply good versus evil. It is no longer enough to disagree with someone, they must also be evil or stupid...

Nothing holds a tribe together like a dangerous enemy. That is the essence of identity politics gone bad: a universe of unbridgeable opinion between opposing tribes, whose differences are always highlighted, exaggerated, retweeted and shared. In the end, this leads us to ever more distinct and fragmented identities, all of us armed with solid data, righteous anger, a gutful of anger and a digital network of likeminded people. This is not total connectivity; it is total division.

Advertising

Senators Announce New Bill That Would Regulate Online Political Ads (theverge.com) 232

An anonymous reader quotes a report from The Verge: As tech companies face continued scrutiny over Russian activity on their ad platforms, Senators today announced legislation meant to regulate political ads on the internet. The new bill, called the Honest Ads Act, would require companies like Facebook and Google to keep copies of political ads and make them publicly available. Under the act, the companies would also be required to release information on who those ads were targeted to, as well as information on the buyer and the rates charged for the ads. The new rules would bring disclosure rules more in line with how political ads are regulated in mediums like print and TV, and apply to any platform with more than 50 million monthly viewers. The companies would be required to keep and release data on anyone spending more than $500 on political ads in a year. It's unclear how well the bill will fare. Companies like Facebook have been successfully fighting regulations for years. But this latest attempt has some bipartisan support: the act, sponsored by Sen. Amy Klobuchar (D-MN) and Sen. Mark Warner (D-VA) is also co-sponsored by Sen. John McCain (R-AZ). "Americans deserve to know who's paying for the online ads," Klobuchar said at a press conference announcing the legislation.
The Almighty Buck

Amazon Spends $350K On Seattle Mayor's Race (jeffreifman.com) 62

reifman writes: Until this summer, Amazon had never contributed more than $15,000 to a city political campaign in Seattle, but this year's different. The company is a lead funder in the Seattle Chamber of Commerce's PAC which dropped $525,000 Monday on Jenny Durkan's PAC, the centrist business candidate. Her opponent Cary Moon is an advocate for affordable housing, which complicates Amazon's growth, and city-owned community broadband. Comcast and Century Link joined Amazon contributing $25,000 and $82,500 respectively to the Chamber's PAC. Amazon's $350,000 contribution represents .00014 of its CY 2016 net profit.
Patents

Tribal 'Sovereign Immunity' Patent Protection Could Be Outlawed (arstechnica.com) 92

AnalogDiehard writes: The recent -- and questionable -- practice of technological and pharmaceutical companies selling their patents to U.S. native Indian tribes (where they enjoy "sovereign immunity" from the inter partes review (IPR) process of the PTO) and then the tribes licensing them back to the companies is drawing scrutiny from a federal court and has inspired a new U.S. bill outlawing the practice. The IPR process is a "fast track" (read: much less expensive) process through the PTO to review the validity of challenged patents -- it is loved by defendants and hated by patent holders. Not only has U.S. Circuit Judge William Bryson invalidated Allergan's pharmaceutical patents due to "obviousness," he is questioning the legitimacy of the sovereign immunity tactic. The judge was well aware that the tactic could endanger the IPR process, which was a central component of the America Invents Act of 2011, and writes that sovereign immunity "should not be treated as a monetizable commodity that can be purchased by private entities as part of a scheme to evade their legal responsibility." U.S. Senator Claire McCaskill (D-Mo.) -- no stranger to abuses of the patent system -- has introduced a bill that would outlaw the practice she describes as "one of the most brazen and absurd loopholes I've ever seen and it should be illegal." Sovereign immunity is not absolute and has been limited by Congress and the courts in the past. The bill would apply only to the IPR proceedings and not to patent disputes in federal courts.
The Internet

Russian Troll Factory Paid US Activists To Fund Protests During Election (theguardian.com) 665

bestweasel writes: The Guardian reports on another story about Russian meddling, but interestingly, this one comes from a respected Russian news source, the RBC. From the report: "Russian trolls posing as Americans made payments to genuine activists in the U.S. to help fund protest movements on socially divisive issues. On Tuesday, the newspaper RBC published a major investigation into the work of a so-called Russian 'troll factory' since 2015, including during the period of the U.S. election campaign, disclosures that are likely to put further spotlight on alleged Russian meddling in the election. RBC said it had identified 118 accounts or groups in Facebook, Instagram and Twitter that were linked to the troll factory, all of which had been blocked in August and September this year as part of the U.S. investigation into Russian electoral meddling. Perhaps the most alarming element of the article was the claim that employees of the troll factory had contacted about 100 real U.S.-based activists to help with the organization of protests and events. RBC claimed the activists were contacted by Facebook group administrators hiding their Russian origin and were offered financial help to pay for transport or printing costs. About $80,000 was spent during a two-year period, according to the report."
Government

'Significant' Number of Equifax Victims Already Had Info Stolen, Says IRS (thehill.com) 105

An anonymous reader quotes a report from The Hill: The IRS does not expect the Equifax data breach to have a major effect on the upcoming tax filing season, Commissioner John Koskinen said Tuesday, adding that the agency believes a "significant" number of the victims already had their information stolen by cyber criminals. "We actually think that it won't make any significantly or noticeable difference," Koskinen told reporters during a briefing on the agency's data security efforts. "Our estimate is a significant percent of those taxpayers already had their information in the hands of criminals." The IRS estimates that more than 100 million Americans have had their personally identifiable information stolen by criminal hackers, he said.

The Equifax breach disclosed in early September is estimated to have affected more than 145 million U.S. consumers. "It's an important reminder to the public that everyone can take any actions that they can ... to make sure we can do everything we can to protect personal information," Koskinen said of the breach on Tuesday, in response to a reporter's question. The IRS commissioner advised Americans to "assume" their data is already in the hands of criminals and "act accordingly."

Twitter

Twitter Is Crawling With Bots and Lacks Incentive To Expel Them (bloomberg.com) 95

An anonymous reader shares a report: On Wednesday, the exterior of Twitter's San Francisco headquarters bore an eerie message: "Ban Russian Bots." Someone -- the company doesn't know who -- projected the demand onto the side of its building. Bots, or automated software programs, can be programmed to periodically send out messages on the internet. Now Twitter is scrambling to explain how bots controlled by Russian meddlers may have been used to impact the 2016 president election. Twitter was designed to be friendly to bots. They can help advertisers quickly spread their messages and respond to customer service complaints. Research from the University of Southern California and Indiana University shows that 9 to 15 percent of active Twitter accounts are bots. Many innocuously tweet headlines, the weather or Netflix releases. After the election, there was little discussion inside the company about whether the platform may have been misused, according to people familiar with the matter who asked not to be identified because it is private. But the ubiquity and usefulness of bots did come up. At one point, there were talks about whether Twitter should put a marking on bot accounts, so that users would know they were automated, one of the people said. Yet most of the conversation after the election focused on whether Trump's tweets violated Twitter's policies, the person said.
Businesses

Despite Sanctions, Russian Organisations Acquire Microsoft Software (reuters.com) 44

An anonymous reader shares a report: Software produced by Microsoft has been acquired by state organizations and firms in Russia and Crimea despite sanctions barring U.S-based companies from doing business with them, official documents show. The acquisitions, registered on the Russian state procurement database, show the limitations in the way foreign governments and firms enforce the U.S. sanctions, imposed on Russia over its annexation of the Crimea peninsula from Ukraine in 2014. Some of the users gave Microsoft fictitious data about their identity, people involved in the transactions told Reuters, exploiting a gap in the U.S. company's ability to keep its products out of their hands. The products in each case were sold via third parties and Reuters has no evidence that Microsoft sold products directly to entities hit by the sanctions. "Microsoft has a strong commitment to complying with legal requirements and we have been looking into this matter in recent weeks," a Microsoft representative said in an emailed response to questions from Reuters.
Businesses

Israeli Spies 'Watched Russian Agents Breach Kaspersky Software' (bbc.com) 194

Israeli spies looked on as Russian hackers breached Kaspersky cyber-security software two years ago, according to reports. From a report: The Russians were allegedly attempting to gather data on US intelligence programs, according to the New York Times and Washington Post. Israeli agents made the discovery after breaching the software themselves. Kaspersky has said it was neither involved in nor aware of the situation and denies collusion with authorities. Last month, the US government decided to stop using the Russian firm's software on its computers. The Israelis are said to have notified the US, which led to the ban on Kaspersky programs. The New York Times said that the situation had been described by "multiple people who have been briefed on the matter."
Government

North Korean Hackers Stole U.S.-South Korean Military Plans, Lawmaker Says (nytimes.com) 110

North Korean hackers stole a vast cache of data, including classified wartime contingency plans jointly drawn by the United States and South Korea, when they breached the computer network of the South Korean military last year, a South Korean lawmaker said Tuesday (alternative source). From a report: One of the plans included the South Korean military's plan to remove the North Korean leader, Kim Jong-un, referred to as a "decapitation" plan, should war break out on the Korean Peninsula, the lawmaker, Rhee Cheol-hee, told reporters. Mr. Rhee, a member of the governing Democratic Party who serves on the defense committee of the National Assembly, said he only recently learned of the scale of the North Korean hacking attack, which was first discovered in September last year. It was not known whether any of the military's top secrets were leaked, although Mr. Rhee said that nearly 300 lower-classification confidential documents were stolen. The military has not yet identified nearly 80 percent of the 235 gigabytes of leaked data, he said.
Advertising

Google Uncovers Russia-Bought Ads On YouTube, Gmail and Other Platforms (reuters.com) 345

An anonymous reader quotes a report from Reuters: Google has discovered Russian operatives spent tens of thousands of dollars on ads on its YouTube, Gmail and Google Search products in an effort to meddle in the 2016 U.S. presidential election, a person briefed on the company's probe told Reuters on Monday. The ads do not appear to be from the same Kremlin-affiliated entity that bought ads on Facebook, but may indicate a broader Russian online disinformation effort, according to the source, who was not authorized to discuss details of Google's confidential investigation. The revelation is likely to fuel further scrutiny of the role that Silicon Valley technology giants may have unwittingly played during last year's election. U.S. intelligence agencies have concluded that Moscow's goal was to help elect Donald Trump. Google has uncovered less than $100,000 in ad spending potentially linked to Russian actors, the source said.
Businesses

Office Depot, Best Buy Pull Kaspersky Products From Shelves (bleepingcomputer.com) 155

Catalin Cimpanu, reporting for BleepingComputer: Both Office Depot and Best Buy have removed Kaspersky Lab products from shelves. The ban has been in effect since mid-September, and the two chains are offering existing Kaspersky customers replacement security software. The first store to remove Kaspersky products from shelves was Best Buy, on around September 8. At the time, the FBI was pressuring the private sector to cut ties with the Russian antivirus maker, which was the subject of a Senate Intelligence Committee on the suspicion it may be collaborating with Russian intelligence agencies. Kaspersky vehemently denied all accusations. A week after Best Buy removed Kaspersky products from shelves, the Department of Homeland Security (DHS) issued a Binding Operational Directive published ordering the removal of Kaspersky Lab products off government computers. A day later, Office Depot announced a similar decision to ban the sale of Kaspersky products in its stores. Additionally, Office Depot is letting customers exchange their Kaspersky copy with a one-year license for McAfee LiveSafe.
Mars

SpaceX's Mars Vision Puts Pressure on NASA's Manned Exploration Programs (marketwatch.com) 142

An anonymous reader shares a report: Entrepreneur Elon Musk's announcement late last month accelerating plans for manned flights to Mars ratchets up political and public relations pressure on NASA's efforts to reach the same goal. With Musk publicly laying out a much faster schedule than NASA -- while contending his vision is less expensive and could be financed primarily with private funds -- a debate unlike any before is shaping up over the direction of U.S. space policy. Industry officials and space experts consider the proposal by Musk's Space Exploration to land people on the red planet around the middle of the next decade extremely optimistic. Some supporters concede the deadline appears ambitious even for reaching the moon, while Musk himself acknowledged some of his projected dates are merely "aspirational." But the National Aeronautics and Space Administration doesn't envision getting astronauts to Mars until at least a decade later, a timeline NASA is finding increasingly hard to defend in the face of criticism that it is too slow.
Government

US Senate Panel Approves Self-Driving Car Legislation (reuters.com) 123

An anonymous reader quotes a report from Reuters: The U.S. Senate Commerce Committee on Wednesday unanimously approved a bill to speed self-driving cars to market without human controls and bar states from imposing regulatory road blocks. The bill still must be approved by the full Senate. The U.S. House passed a similar version last month unanimously. General Motors Co, Alphabet Inc, Ford Motor Co and others have lobbied for the landmark legislation. Despite some complaints from Republicans, the Senate bill does not speed approval of self-driving technology for large commercial trucks after labor unions raised safety and employment concerns. The measure, the first significant federal legislation aimed at speeding self-driving cars to market, would allow automakers to win exemptions from current safety rules that prohibit vehicles without human controls. States could still set rules on registration, licensing, liability, insurance and safety inspections, but not performance standards.

Slashdot Top Deals