An anonymous reader writes "The High Court — England's highest civil court — has temporarily banned the publication of a scientific paper that would reveal the details of a zero day vulnerability in vehicle immobilisers and, crucially, give details of how to crack the system. Motor manufacturers argued that revealing the details of the crack would allow criminals to steal cars. Could this presage the courts getting involved in what gets posted on your local Bugzilla? It certainly means that software giants who dislike security researchers publishing the full facts on vulnerabilities might want to consider a full legal route."
Catch up on stories from the past week (and beyond) at the Slashdot story archive
Velcroman1 writes "Retailers are experimenting with a variety of new ways to track you, so that when you pick up a shirt, you might get a message about the matching shorts. Or pick up golf shoes at a sports store and you see a discount for a new set of clubs. New technologies like magnetic field detection, Bluetooth Low Energy, sonic pulses, and even transmissions from the in-store lights can tell when you enter a store, where you go, and how you shop. Just last year, tracking was only accurate within 100 feet. Starting this year, they can track within a few feet. ByteLight makes the lighting tech, which transmits a unique signal that the camera in your phone can read. The store can then track your location within about 3 feet — and it's already in use at the Museum of Science in Boston."
First time accepted submitter pocock writes "Motivated by reports of Matthew Weaver's twelve month jail sentence for rigging CalState student elections, a comprehensive blog describes in detail how a generation of student ballot riggers from the late 1990s have graduated unhindered into federal politics, playing a pivotal role in Australia's upcoming federal election. One can only wonder if Weaver had not been caught, would he too have eventually swiped a million dollars and put the SRC into liquidation?"
Jeremiah Cornelius writes "After signing a $30 million iPad deal with Apple in June, the Los Angeles School Board of Education has revealed the full extent of the program that will provide tablets to all students in the district. CiteWorld reports that the first phase of the program will see pupils receive 31,000 iPads this school year, rising to 640,000 Apple tablets by the end of 2014. Apple previously announced that the initiative would include 47 campuses and commence in the fall." Certain companies (not just Apple) stand to benefit from this kind of outlay.
An anonymous reader writes "The United States Postal Service is seeking to implement a special postage rate for companies such as Netflix, GameFly and Blockbuster (PDF), which send DVDs to their customers and then receive them back. This proposal for special rates for two-way mailers of optical disks follows a protracted legal complaint from GameFly, which argued that Netflix was receiving special handling by the Postal Service while paying a cheaper postage rate."
rysiek writes "When a politician starts talking about defending the innocence of children, there's bound to be a great policy initiative ahead. That's how British PM David Cameron introduced the British porn block. That's also how the Polish Minister of Justice started his remarks yesterday morning on how good an idea it is and that it should be introduced in Poland. This started the shortest Internet censorship debate ever, as in the evening of the same day the Polish Prime Minister and the Minister of Administration and Digitization denounced any such ideas: 'We shall not block access to legal content regardless of whether or not it appeases us aesthetically or ethically.' There had been several full-blown Internet censorship debates in Poland during the last four years. Apparently the arguments against it were not lost on at least some of Polish politicians."
Hugh Pickens DOT Com writes "The WSJ reports that Attorney General Eric Holder promises Edward Snowden won't be tortured or face the death penalty in a new letter hoping to persuade Russia not to grant him asylum or refugee status. Holder's letter, dated Tuesday, notes that press reports from Russia indicated Snowden sought asylum in part based on claims he could be tortured or killed by the US government. It is common for the US to promise not to seek the death penalty against individuals being sought in other countries, because even America's closest allies won't turn over suspects if they believe that person might be executed. The United Nations special rapporteur on torture found Bradley Manning's detention was 'cruel and inhuman'." Update: 07/27 13:15 GMT by T : Several readers have noted that change.gov, established by the Obama transition team in 2008, has recently (last month) gone offline; among other things, it contained language specifically addressing the protection of whistleblowers.
The UK's on-by-default censorship, as you might expect, presses with a heavy thumb: coolnumbr12 writes "The Open Rights Group spoke with several ISPs and found that in addition to pornography, users will also be required to opt in for any content tagged as violent material, extremist and terrorist related content, anorexia and eating disorder websites, suicide related websites, alcohol, smoking, web forums, esoteric material and web blocking circumvention tools. These will all be filtered by default, and the majority of users never change default settings with online services."
alphadogg writes "Oracle is continuing to crack down on companies it claims are providing support services for its products in an illegal fashion. Last week, Oracle sued IT services providers Terix and Maintech, alleging they have 'engaged in a deliberate scheme to misappropriate and distribute copyrighted, proprietary Oracle software code' in the course of providing support for customers using Oracle's Solaris OS. Oracle's allegations are similar to ones it has made in lawsuits against other Solaris service providers, such as ServiceKey, as well as Rimini Street, which provides third-party support for Oracle and SAP applications."
First time accepted submitter MrClappy writes "I manage the network for a defense contractor that needs a cloud-based storage service and am having a lot of trouble finding an appropriate solution that meets our requirements. We are currently using DropBox and I am terrified of seeing another data leak like last year. Some of our data is classified under International Traffic in Arms Regulations (ITAR) which requires that all data to remain inside the US, including any cloud storage or redundant backups. We tried using Box as a more secure replacement but ended up canceling the service due to lack of functionality; 40,000 file sync limit, Linux-based domain controller compatibility issues and the fact that the sync application does not work while our computers are locked (which is an explicit policy for my users). I've been calling different companies and just can't seem to find a decent solution. Unless I'm severely missing something, I'm just blown away that no one offers this functionality with today's tech capabilities. Am I wrong?"
sl4shd0rk writes "Federal Judge William Pauley has dismissed an Obama Administration request to delay a hearing on Verizon/NSA data sifting. The ACLU has argued that the sifting is not authorized by statute and even if it were it would still be unconstitutional. The Obama Administration requested the delay on the grounds it needed more time to search through its classified material to determine what was suitable for disclosure." See also the case docket. Motions must be filed by August 26th, and oral arguments begin on November 1st.
sciencehabit writes "For Ved Chirayath, a graduate student and amateur fashion photographer, a photo project that involved NASA researchers dressed as Vikings was just a creative way to promote space science. 'I started this project hoping maybe one day some kid will look at it and say, 'I want to work for NASA,' ' says Chirayath, a student at Stanford University in Palo Alto, California, who also works nearby at NASA's Ames Research Center. He never suspected that his fanciful image would put him in the crosshairs of a government waste investigation triggered by a senior U.S. senator." The project was funded by an outside art grant. The best part: the investigation into the non-existent waste probably cost more than the "waste" would have were it funded by NASA in the first place.
An anonymous reader writes "Following the /. story on the Feds demanding SSL keys, now comes news that the feds are demanding user passwords, and in some cases, the encryption algorithm and salt used. From the article: 'A second person who has worked at a large Silicon Valley company confirmed that it received legal requests from the federal government for stored passwords. Companies "really heavily scrutinize" these requests, the person said. "There's a lot of 'over my dead body.'" ... Some of the government orders demand not only a user's password but also the encryption algorithm and the so-called salt, according to a person familiar with the requests. ... Other orders demand the secret question codes often associated with user accounts.' I'm next expecting to see the regulation or law demanding that all users use plain text for all web transactions, to catch terrorists and for the children."
Barence writes "Mozilla is proposing that the Firefox browser collects data on users' interests to pass on to websites. The proposal is designed to allow websites to personalize content to visitors' tastes, without sites having to suck up a user's browsing history, as they do currently. 'Let's say Firefox recognizes within the browser client, without any browsing history leaving my computer, that I'm interested in gadgets, comedy films, hockey and cooking,' says Justin Scott, a product manager from Mozilla Labs. 'Those websites could then prioritize articles on the latest gadgets and make hockey scores more visible. And, as a user, I would have complete control over which of my interests are shared, and with which websites.'" This is the result of an extended experiment. The idea is that your history is used to generate a set of interests which you can then share voluntarily with websites, hopefully discouraging the blanket tracking advertising systems love to do now.
AmiMoJo writes "The BBC reports that Huawei, one of the world's largest manufacturers of telecoms equipment, is controlling popular ISP TalkTalk's web censorship system. The system, known as Homesafe, was praised by Prime Minister David Cameron. Customers who do not want filtering still have their traffic routed through the system, but matches to Huawei's database are dismissed rather than acted upon. In other words there is no opt-out. Mr Cameron has demanded similar measures be adopted by all internet service providers (ISPs) in the UK, to 'protect our children and their innocence.'"
An anonymous reader writes "Oilfield services giant Halliburton will plead guilty to destroying computer test results that had been sought as evidence in the Deepwater Horizon disaster, the Justice Department announced Thursday. Company officials threw out test results that showed 'little difference' between the number of devices Halliburton said was needed to center the cement casing in the well at the heart of the disaster and the number well owner BP installed, according to court papers. The issue has been key point of contention between the two companies in hearings and litigation ever since the April 2010 blowout. BP and Halliburton are still battling over responsibility for the disaster in a New Orleans federal courtroom. BP had no comment on the plea agreement Thursday evening."
wiredmikey writes "US authorities have charged four Russians and a Ukrainian five on charges of running a global hacking operation that targeted major payment processors, retailers and financial institutions. The charges stem from hacking attacks dating back to 2005 against several global brands, including the NASDAQ exchange, 7-Eleven, JC Penney, Hannaford, Heartland, JetBlue, Dow Jones, Euronet, Visa Jordan, Global Payment, Diners Singapore and Ingenicard. The men allegedly used SQL injection attacks as the initial entry point into the computer systems of global corporations. Once networks were breached, the defendants allegedly placed malware on the systems. According to the indictment (PDF), the malware used created a "back door," leaving the system vulnerable and helping the defendants maintain access to the network. The men face five years in prison for conspiracy to gain unauthorized access to computers; 30 years in prison for conspiracy to commit wire fraud; five years in prison for unauthorized access to computers; and 30 years in prison for wire fraud."
An anonymous reader points out this story about the latest effort by the U.S. to get Edward Snowden back in the country. "A U.S. Senate panel voted unanimously on Thursday to seek trade or other sanctions against Russia or any other country that offers asylum to former spy agency contractor Edward Snowden, who has been holed up for weeks at a Moscow airport. The 30-member Senate Appropriations Committee adopted by consensus an amendment to a spending bill that would direct Secretary of State John Kerry to meet with congressional committees to come up with sanctions against any country that takes Snowden in."
v3rgEz writes "After the ACLU's Christopher Soghoian highlighted NSA programs listed on LinkedIn, Jason Gulledge filed a request for details about the program — and turned up lucky. The NSA released 7 pages of database descriptions of its ANCHORY program, an open-source intelligence data gathering effort. The NSA's FOIA office said it would pony up more, but only if Gulledge could prove he was requesting the documents as part of a news gathering effort or if he would agree to pay associated fees."
steveb3210 writes "EQ2Wire.com is a fan site for the MMO Everquest 2. One feature of their site is a searchable portal for all game-related stats such as characters, equipment, items, and mobs which they generate from an XML feed provided by the game's publisher. Recently, the owner of a trademark has been threatening them over the name of a character and in the face of possible legal bills, they were forced to remove the character's profile from their site. Adding further insult to injury, the character seems to have been created prior to the trademark in question."