9288 stories
·
96 followers

Apple Removes Cloud Encryption Feature From UK After Backdoor Order

1 Share
Apple is removing its most advanced, end-to-end encrypted security feature for cloud data in the United Kingdom [alternative source], in a stunning development after the government ordered the company to build a backdoor for accessing user data. From a report: The company said Friday that Advanced Data Protection, an optional feature that adds end-to-end encryption to a wide assortment of user data is no longer available in the UK for new users. This layer of security covers iCloud data storage, device backups, web bookmarks, voice memos, notes, photos, reminders and text message backups. "We are gravely disappointed that the protections provided by ADP will not be available to our customers in the UK given the continuing rise of data breaches and other threats to customer privacy," the company said in a statement. "ADP protects iCloud data with end-to-end encryption, which means the data can only be decrypted by the user who owns it, and only on their trusted devices."

Read more of this story at Slashdot.

Read the whole story
InShaneee
14 hours ago
reply
Chicago, IL
Share this story
Delete

Twitch is Limiting Streamers To 100 hours of Highlights and Uploads

1 Share
Twitch is planning to cull some of the content archived by streamers to save on storage costs. From a report: On Wednesday the streaming platform announced that it will introduce a 100-hour storage cap for Highlights and Uploads starting April 19th, warning that users will have their content automatically deleted until it falls below the limit. Twitch says it's doing this because "Highlights haven't been very effective in driving discovery or engagement," and it isn't worth the cost of storing thousands of hours of such content. Twitch is owned by Amazon, a market-leading cloud storage provider -- a detail that hasn't gone unnoticed by streamers criticizing the decision.

Read more of this story at Slashdot.

Read the whole story
InShaneee
1 day ago
reply
Chicago, IL
Share this story
Delete

HP Deliberately Adds 15 Minutes Waiting Time For Telephone Support Calls

1 Share
HP will impose a minimum 15-minute wait time for consumer PC and printer support calls in five European countries, seeking to push customers toward digital channels, according to internal documents seen by The Register. The policy, implemented February 18, affects retail customers in Britain, Ireland, France, Germany and Italy. The outlet added that it anticipates "more countries could be added."

Read more of this story at Slashdot.

Read the whole story
InShaneee
1 day ago
reply
Chicago, IL
Share this story
Delete

Ziff Davis, Owner of Sites Including IGN and CNET, Quietly Removed DEI Language From Its Website

2 Shares
Ziff Davis, Owner of Sites Including IGN and CNET, Quietly Removed DEI Language From Its Website

Ziff Davis, the $2 billion media conglomerate that owns dozens of sites including PCMag, Lifehacker, IGN and CNET, is quietly taking diversity, equity, and inclusion information off of its website, 404 Media has learned. 

In the past month, the company removed information about diversity-focused employee resource groups, inclusion-based hiring goals, and diversity training for its workers and managers from its corporate website. 

The changes were first spotted by a Ziff Davis employee. 404 Media granted the employee anonymity to speak candidly. 

An archived version of Ziff Davis’s DEI webpage saved on January 19 states, “Ziff Davis is proud to offer Employee Resource Groups (ERGs), voluntary employee-led groups mentored by executive sponsors and overseen by our Global DEI and HR Programs team. They represent s​even identity groups​: Asian, Black, 2SLGBTQIA+, Latinx/Hispanic, family of all kinds, women and gender minorities​, and interfaith.”

Read the whole story
InShaneee
1 day ago
reply
Chicago, IL
Share this story
Delete

Nvidia Ends 32-Bit CUDA App Support For GeForce RTX 50 Series

1 Share
Nvidia has confirmed on its forums that the RTX 50 series GPUs no longer support 32-bit PhysX. Tom's Hardware reports: As far as we know, there are no 64-bit games with integrated PhysX technology, thus terminating the tech entirely on RTX 50 series GPUs and newer. RTX 40 series and older will still be able to run 32-bit CUDA applications and thus PhysX, but regardless, the technology is now officially retired, starting with Blackwell. [...] The only way now to run PhysX on RTX 50 series GPUs (or newer) is to install a secondary RTX 40 series or older graphics card and slave it to PhysX duty in the Nvidia control panel. As far as we are aware, Nvidia has not disabled this sort of functionality. But the writing is on the wall for PhysX, and we doubt there will be any future games that attempt to use the API.

Read more of this story at Slashdot.

Read the whole story
InShaneee
2 days ago
reply
Chicago, IL
Share this story
Delete

Musk Ally Demands Admin Access to System That Lets Government Text the Public

2 Shares
Musk Ally Demands Admin Access to System That Lets Government Text the Public

A worker at the General Services Administration told colleagues in a Slack message Tuesday that they have resigned in protest after Elon Musk ally Thomas Shedd requested “admin/root access to all components of the Notify.gov system,” which is a government system used to send mass text messages to the public that contains information the worker said is highly sensitive and would give Shedd unilateral, private access to the personal data of members of the public.

Shedd is a former Tesla engineer who now runs Technology Transformation Services (TTS), a group of coders and software engineers within the GSA, who is closely allied with Elon Musk and DOGE. Notify.gov contains not just the phone numbers of everyday people but also information about whether they participate in government programs such as Medicaid, which is based on a person's financial situation.

“The TTS commissioner, Thomas Shedd, has required us to provide admin/root access to all components of the Notify.gov system,” the Slack message, seen by 404 Media starts. It then says this would allow Shedd to “view all personally identifiable information (PII) moving through the Notify system, including phone numbers and variable data for members of the public.” It says Shedd “would be able to download and store this data without anybody else receiving a notification.”

“I don’t believe that I can operate a program and system without the ability to manage access to PII,” they added. “As a result, I have submitted my resignation to GSA. Today will be my last day.” 

404 Media previously obtained leaked audio from a meeting Shedd had with TTS employees in which he suggested that a tool called login.gov could be turned into an information sharing platform across government agencies that could be used to identify people doing fraud. He also suggested that many government employees could be replaced with “AI coding agents” that would be created by his team.

Notify.gov is a platform that allows government agencies to text people. Examples shown in a demo include, for example, telling someone that their Medicaid coverage is expiring and must be renewed alongside instructions to renew it.  

Musk Ally Demands Admin Access to System That Lets Government Text the Public
The resignation note. Full text below

Sources at TTS told 404 Media that the fact Shedd wants access to Notify.gov is “scary news.” 

“Someone at TTS resigned rather than surrender a vast trove of data to Thomas Shedd,” one employee said. “I’m scared that we’ll run out of people who will tell him no.” 

The employee told 404 Media that "Notify contains PII, including at least: names, phone numbers, and the status of participating in public benefit programs which are based on financial status."

Another employee also told 404 Media that the development was concerning, and that granting Shedd admin access to the system outside of established protocols would be dangerous for the resigning worker to do. 

“The Federal Information Security Management Act of 2002 (FISMA) requires creating these policies for every information system,” the second employee told 404 Media. “They are a legal requirement. The policies spell out who can have access and under what circumstances. An authorizing official must accept the policy by formally signing it and personally accepting the risk.” 

FISMA says that to provide someone access to a system they must go through an Authorization to Operate (ATO) process that determines who should have access to what systems, and for what reasons. The resigning worker said in their Slack message that they had been “instructed to skip that process and place the system in non-compliance.”

The worker who resigned said in their resignation note that Shedd would have unfettered, private access to the information of anyone who has interacted with the Notify system. 

Here is the full message: 

“The TTS commissioner, Thomas Shedd, has required us to provide admin/root access to all components of the Notify.gov system. With this access:

• Thomas would be able to view all personally identifiable information (PIl) moving through the Notify system, including phone numbers and variable data for members of the public. This information exists in our Ul, cloud.gov-managed resources, and AWS resources. Thomas would be able to download and store this data without anybody else receiving a notification.

• Thomas would be able to fully manage the access of others, including granting the same access to others or removing it from existing team members. Granting the same access would, of course, grant the same ability to view and download PII.

We have not received a justification for this request, which makes it difficult to suggest alternative approaches that would accomplish Thomas's goals while still being protective of PlI for members of the public. We have made clear to Thomas that this level of permission would allow access to PII. While we have suggested alternatives, such as read-only access, Thomas has continued to request full admin/root access.

We also believe that this level of access for somebody outside of the product team is not contemplated by the system's authority to operate. While it's entirely possible to properly update the SSPP [System Security and Privacy Plan] to add this sort of access using our established ATO [Authorization to Operate] processes, we have been instructed to skip that process and place the system in non-compliance until the access is remediated.

I don't believe that I can operate a program and system without the ability to manage access to PII. As a result, I have submitted my resignation to GSA. Today will be my last day.

It has truly been a pleasure to work with each and every one of you. I have valued your individual and collective contributions toward building a new-to-government shared system that has already had an impact. I have valued your care, commitment, and diligence. We have built a program together on a stable foundation, which can allow it to survive even beyond our time on this team. I am proud of that, and l am proud of you.”

The GSA did not immediately respond to a request for comment.

Read the whole story
InShaneee
3 days ago
reply
Chicago, IL
Share this story
Delete
Next Page of Stories