Crime

Seven Russian Hackers Charged With Hacking Anti-Doping Organizations (theverge.com) 115

Seven Russian intelligence officers have been indicted by the Justice Department for computing hacking, wire fraud, money laundering, and identity theft -- all as part of an effort to distract from Russia's state-sponsored doping program. The defendants reportedly stole and disseminated the personal information of several prominent anti-doping officials and 250 athletes following the 2014 Sochi Olympics. The Verge reports: The indictment names all seven of the accused as members of the Russian Federation intelligence agency (or GRU) housed within the intelligence directorate of the Russian military. Three of the defendants were also charged as part of the Mueller investigation regarding hacking the Democratic National Convention in an attempt to compromise U.S. election infrastructure in 2016. The Justice Department claimed in its indictment that the GRU officials were working to undermine the advocacy of anti-doping organizations, officials, and athletes following the exposure of a Russian state-sponsored doping campaign in 2015. Login credentials were stolen through classic phishing techniques, which, in some cases, gave the hackers access to the medical profiles of some athletes. This information was then disseminated over social media by the hackers who disguised themselves as a hacktivist group called the Fancy Bears' Hack Team.

In the case of four-time Olympic gold medalist runner Mo Farah, the Fancy Bears' Hack Team had gained access to his "biological passport." This set of information tracks the blood data of athletes in order to monitor the potentiality of doping. The group then posted the contents of Farah's profile over social media, pointing to results that claimed he was "likely doping." By use of this method, the hackers were able to subvert media attention away from Russia's doping accusations and point the finger at other countries as well. The indictment claims that the hackers spoke to 186 different reporters in order to "amplify the exposure" of their message.

Government

US Department of Transportation Updates Autonomous Car Rules (engadget.com) 35

The U.S. Department of Transportation (DOT) has released a report called "Preparing for the Future of Transportation: Automated Vehicles 3.0," which includes a new set of voluntary guidelines for automated driving systems. According to Engadget, the report "outlines additional safety principles, updates policy and offers guidance to state and local governments." From the report: The report notes that it's meant to be an update to, but not a replacement of, last year's guidance, and it encourages those developing automated driving systems to make public their Voluntary Safety Self-Assessments, which were introduced in last year's report. It also updates the list of best practices for state and local governments considering automated vehicle testing and operation. The agency also takes measures to clarify its policies and roles in regards to autonomous technology implementation. First, it's doing away with the Automated Vehicle Proving Grounds announced last year -- a list of 10 self-driving test sites that were eligible for federal funding. The DOT said that due to the "rapid increase in automated vehicle testing activities in many locations, there is no need for U.S. DOT to favor particular locations."

Additionally, the agency is working on updating language and regulations that it said unintentionally hamper automated vehicle progress. It will adapt its definitions of "driver" and "operator" to reflect that they no longer always refer to humans and can encompass automated systems. The DOT also announced a future notice of proposed rulemaking that will suggest exceptions to certain safety standards that apply only to human drivers -- such as pedals, brakes, mirrors and steering wheels -- for automated systems.

Blackberry

BlackBerry Races Ahead of Security Curve With Quantum-Resistant Solution (techcrunch.com) 39

An anonymous reader quotes a report from TechCrunch: Quantum computing represents tremendous promise to completely alter technology as we've known it, allowing operations that weren't previously possible with traditional computing. The downside of these powerful machines is that they could be strong enough to break conventional cryptography schemes. Today, BlackBerry announced a new quantum-resistant code signing service to help battle that possibility. The solution, which will be available next month, is actually the product of a partnership between BlackBerry and Isara Corporation, a company whose mission is to build quantum-safe security solutions. BlackBerry is using Isara's cryptographic libraries to help sign and protect code as security evolves.

"By adding the quantum-resistant code signing server to our cybersecurity tools, we will be able to address a major security concern for industries that rely on assets that will be in use for a long time. If your product, whether it's a car or critical piece of infrastructure, needs to be functional 10-15 years from now, you need to be concerned about quantum computing attacks," Charles Eagan, BlackBerry's chief technology officer, said in a statement.
Some of the long-lived assets include aerospace equipment, connected cars, or transportation infrastructure -- basically anything that will still be in use several years from now when quantum computing attacks are expected to emerge.
Businesses

Apple CEO Tim Cook Says Giving Up Your Data For Better Services is 'a Bunch of Bunk' (washingtonpost.com) 118

Apple chief executive Tim Cook urged consumers not to believe the dominant tech industry narrative that the data collected about them will lead to better services. From a report: In an interview with "Vice News Tonight" that aired Tuesday, Cook highlighted his company's commitment to user privacy, positioning Apple's business as one that stands apart from tech giants that compile massive amounts of personal data and sell the ability to target users through advertising [The link may be paywalled; alternative source]. "The narrative that some companies will try to get you to believe is: I've got to take all of our data to make my service better," he said. "Well, don't believe them. Whoever's telling you that, it's a bunch of bunk." [...] Cook said in the interview that he is "exceedingly optimistic" that the topic of data privacy has reached an elevated level of public debate. "When the free market doesn't produce a result that's great for society you have to ask yourself what do we need to do. And I think some level of government regulation is important to come out on that."
Censorship

Vice President Mike Pence Says Google Should Halt Dragonfly App Development (reuters.com) 120

On Thursday, the U.S. Vice President Mike Pence weighed in on Dragonfly, a project run by Google to build a censored search engine app for China. He said Dragonfly app would make it easier to track someone's internet searches. From a report: Pence said in a speech that business leaders are now thinking twice before entering the Chinese market "if it means turning over their intellectual property or abetting Beijing's oppression." He added, "More must follow suit. For example, Google should immediately end development of the 'Dragonfly' app that will strengthen Communist Party censorship and compromise the privacy of Chinese customers."
Crime

Police Use Fitbit Data To Charge 90-Year-Old Man In Stepdaughter's Killing (nytimes.com) 108

An anonymous reader quotes a report from The New York Times: The last time Anthony Aiello spoke to his stepdaughter, he took homemade pizza and biscotti to her house in San Jose, Calif., for a brief visit. Mr. Aiello, 90, told investigators that she then walked him to the door and handed him two roses in gratitude. But an unnoticed observer in the house later revealed that their encounter ended in murder, a police report said. Five days afterward, Mr. Aiello's stepdaughter, Karen Navarra, 67, was discovered by a co-worker in her house with fatal lacerations on her head and neck. She had been wearing a Fitbit fitness tracker, which investigators said showed that her heart rate had spiked significantly around 3:20 p.m. on Sept. 8 (Warning: source may be paywalled; alternative source), when Mr. Aiello was there. Then it recorded her heart rate slowing rapidly, and stopping at 3:28 p.m., about five minutes before Mr. Aiello left the house, the report said. Mr. Aiello was arrested last week on murder charges and booked into the Santa Clara County Jail, the San Jose Police Department said. On Thursday, he will appear in court in the Hall of Justice in San Jose, according to the Santa Clara County district attorney's office. "[T]he police said their investigation used a combination of video surveillance and data from Ms. Navarra's Fitbit, an Alta HR device, which she wore on her left wrist and synchronized with a computer in her home, where she lived alone," reports NYT. When asked for comment, Fitbit shared a copy of its privacy policy, stating in part that they comply with legal processes, including search warrants and court orders, when it shares data.
Transportation

Fully Driverless Waymo Taxis Are Due Out This Year, Alarming Critics (arstechnica.com) 256

Alphabet's Waymo is launching a driverless taxi service in Phoenix in the next three months -- and it's open to the public. But due to the limited regulations surrounding self-driving cars, many critics argue that more regulations are needed to ensure the safety of these vehicles before they roll out for public and commercial use. Ars Technica reports: If a company wants to sell a new airplane or medical device, it must undergo an extensive process to prove to federal regulators that it's safe. Currently, there's no comparable requirement for self-driving cars. Federal and state laws allow Waymo to introduce fully self-driving cars onto public streets in Arizona without any formal approval process. That's not an oversight. It represents a bipartisan consensus in Washington that strict regulation of self-driving cars would do more harm than good.

Mary "Missy" Cummings, an engineering professor at Duke, agrees. "I don't think there should be any driverless cars on the road," she tells Ars. "I think it's unconscionable that no one is stipulating that testing needs to be done before they're put on the road." But so far these advocates' demands have fallen on deaf ears. Partly that's because federal regulators don't want to slow the introduction of a technology that could save a lot of lives in the long run. Partly it's because they believe that liability concerns give companies a strong enough incentive to behave responsibly. And partly it's because no one is sure how to regulate self-driving cars effectively. When it comes to driverless cars, "there's no consensus on what it means to be safe or how we go about proving that," says Bryant Walker Smith, a legal scholar at the University of South Carolina.

Slashdot Top Deals