Microsoft

Leaked Microsoft Memo Tells Managers Not To Use Budget Cuts as Explainer for Lack of Pay Rises (yahoo.com) 73

An anonymous reader shares a report: Microsoft employees were already expecting lackluster pay rises. In a company-wide email sent earlier this year, the tech company's CEO Satya Nadella warned staff of salary freezes and cuts to the bonusbudget. But despite previous transparency around the cost-cutting measures, employees enquiring about how the budget cuts have impacted their performance review will now be fobbed off. According to leaked guidance, managers are being ordered to dodge such questions in the name of company culture. "It's natural for employees to ask questions about budget given the decisions shared in Satya's email," the guidance reportedly states. "However, it's most important to focus discussions with direct reports on their impact for the past fiscal year and directly tie it to their rewards."

Managers should not use the budget cuts as an "explanation" for compensation decisions for individual employees and instead should emphasize that the employee's own "impact" determines "rewards." "Using budgets or factors besides the employee's impact as an explanation for an employee's rewards will erode trust and confidence within your team," the guide cautions. "Reinforce that every year offers unique opportunity for impact, and we increase our high expectations, regardless of our budget."

Chrome

Microsoft is Using Malware-like Pop-Ups in Windows 11 To Get People To Ditch Google (theverge.com) 106

An anonymous reader writes: I thought I had malware on my main Windows 11 machine this weekend. There I was minding my own business in Chrome before tabbing back to a game and wham a pop-up appeared asking me to switch my default search engine to Microsoft Bing in Chrome. Stunningly, Microsoft now thinks it's ok to shove a pop-up in my face above my apps and games just because I dare to use Chrome instead of Microsoft Edge. This isn't a normal notification, either. It didn't appear in the notification center in Windows 11, nor is it connected to the part of Windows 11 that suggests new features to you. It's quite literally a rogue executable file that has somehow appeared in c:\windows\temp\mubstemp and is digitally signed by Microsoft.

"We are aware of these reports and have paused this notification while we investigate and take appropriate action to address this unintended behavior," says Caitlin Roulston, director of communications, in a statement to The Verge. [...] This isn't Microsoft's first rodeo, either. I'm growing increasingly frustrated by the company's methods of getting people to switch from Google and Chrome to Bing and Edge. Microsoft has been using a variety of prompts for years now, with pop-ups appearing inside Chrome, on the Windows taskbar, and elsewhere. Microsoft has even forced people into Edge after a Windows Update, and regularly presents a full-screen message to switch to Bing and Edge after updates.

Operating Systems

FreeBSD Can Now Boot in 25 Milliseconds (theregister.com) 77

Replacing a sort algorithm in the FreeBSD kernel has improved its boot speed by a factor of 100 or more... and although it's aimed at a micro-VM, the gains should benefit everyone. From a report: MicroVMs are a hot area of technology R&D in the last half decade or so. The core idea is a re-invention of some of concepts and technology that IBM invented along with the hypervisor in the 1960s: designing OSes specifically to run as guests under another OS. This means building the OS specifically to run inside a VM, and to talk to resources provided by a specific hypervisor rather than to fake hardware.

This means that the guest OS needs next to no support for real hardware, just VirtIO drivers which talk directly to facilities provided by the host hypervisor. In turn, the hypervisor doesn't have to provide an emulated PCI bus, emulated power management, emulated graphics card, emulated network interface cards, and so on. The result is that the hypervisor itself can be much smaller and simpler. The result of ruthlessly chopping down both the hypervisor, and the OS that runs inside it, is that both ends can be much smaller and simpler. That means that VMs can use much fewer resources, and start up much quicker.

Medicine

Woman's Mystery Illness Turns Out To Be 3-Inch Snake Parasite In Her Brain 103

An anonymous reader quotes a report from Ars Technica: A neurosurgeon in Australia pulled a wriggling 3-inch roundworm from the brain of a 64-year-old woman last year -- which was quite the surprise to the woman's team of doctors and infectious disease experts, who had spent over a year trying to identify the cause of her recurring and varied symptoms. A close study of the extracted worm made clear why the diagnosis was so hard to pin down: the roundworm was one known to infect snakes -- specifically carpet pythons endemic to the area where the woman lived -- as well as the pythons' mammalian prey. The woman is thought to be the first reported human to ever have an infection with this snake-adapted worm, and it is the first time the worm has been found burrowing through a mammalian brain. [...]

Subsequent examination determined the roundworm was Ophidascaris robertsi based on its red color and morphological features. Genetic testing confirmed the identification. The woman went on ivermectin again and another anti-parasitic drug, albendazole. Months later, her lung and liver lesions improved, and her neuropsychiatric symptoms persisted but were improved. The doctors believe the woman became infected after foraging for warrigal greens (aka New Zealand spinach) around a lake near her home that was inhabited by carpet pythons. Usually, O. robertsi adults inhabit the snakes' esophagus and stomach and release their eggs in the snakes' feces. From there, the eggs are picked up by small mammals that the snakes feed upon. The larvae develop and establish in the small mammals, growing quite long despite the small size of the animals, and the worm's life cycle is complete when the snake eats the infected prey.

Doctors hypothesize the woman picked up the eggs meant for small mammals as she foraged, ingesting them either by not fully washing or cooking the greens or by not properly washing her hands or kitchen equipment. In retrospect, the progression of her symptoms suggests an initial foodborne infection, followed by worm larva migrating from her gastrointestinal tract to multiple organs. The prednisolone, an immunosuppressive drug, may have inadvertently helped the worm migrate and get into the central nervous system. Kennedy, a co-author of the report on the woman's case, stressed the importance of washing any foods foraged or taken from a garden. She also emphasized proper kitchen safety and hand washing.
Security

Benevolent Hackers Clear Stalking Spyware From 75,000 Phones (engadget.com) 21

According to TechCrunch, unnamed hackers reportedly breached the spyware firm WebDetetive, deleting device information to protect surveillance victims and denying spyware users new data. Engadget reports: Users of the spyware won't get any new data from their targets. "Because #fuckstalkerware," the hackers wrote in a note obtained by TechCrunch. The WebDetetive breach compromised more than 76,000 devices belonging to customers of the stalkerware, and more than 1.5 gigabytes of data freed from app's servers, according to the hackers.

While TechCrunch did not independently confirm the deletion of victim's data from the WebDetetive server, a cache of data shared by the hackers provided a look at what they were able to accomplish. TechCrunch also worked with a nonprofit that logs exposed datasets, DDoSecrets, to verify and analyze the information. Hackers obtained information on customers like IP addresses and devices that they targeted.

Security

FBI Dismantles a Malware System That Took Millions in Ransom (bloomberg.com) 19

The FBI said Tuesday that it has taken down a network of hacked devices responsible for extorting tens of millions of dollars from victims around the world. From a report: US officials described the network known as Qakbot as one of the most notorious "botnets" in the world, referring to computer networks that have been infected with malicious software so that they can be controlled remotely without the owner's knowledge -- often to send phishing emails. These emails can in turn be used to hack into victims' computer systems, which attackers will hold for ransom.

Qakbot was instrumental in enabling cyberattacks against businesses and critical services around the world, according to US officials, including hits on the San Bernardino County Sheriff's Department and hospitals run by Prospect Medical Group. The latter resulted in the closure of emergency rooms and medical facilities across the US. US officials estimated that, since its creation in 2008, Qakbot had infected around 200,000 computers in the US and 700,000 globally.

United Kingdom

UK Air Travel Will Be Disrupted for 'Some Days' After Traffic Control Glitch (nytimes.com) 16

Flights in and out of Britain will be disrupted for days, the U.K. government said on Tuesday, after a technical issue with the country's air traffic control system left thousands of passengers stranded abroad or facing severe delays. From a report: Around 280 flights were canceled on Tuesday, about 5 percent of the total scheduled to leave or arrive in Britain, according to Cirium, an aviation analytics company, compounding travel woes for British holidaymakers after more than a thousand flights were canceled the day before. The trouble came at a particularly busy time for travelers in Britain, many of whom were returning home from summer vacation or long weekends because Monday was a public holiday in the country.

"The timing was not at all helpful for people," Mark Harper, the government minister responsible for transport policy, told the BBC on Tuesday morning. "It's disrupted thousands of people. Lots of flights were canceled yesterday because of the imperative to keep the system working safely, and it is going to take some days to get completely everybody back to where they should be." He added that the government's technical experts had concluded that the episode was not a cyberattack. Britain's National Air Traffic Service, which runs air traffic control, said on Monday that a failure of the automatic system that processes plane routes meant that, for several hours, flight plans had to be entered manually.

The Internet

WordPress Now Has a 100-Year Domain Registration Option (siliconrepublic.com) 69

Hosting platform WordPress has announced a new century-long domain registration plan for users who want to ensure a lifelong digital legacy. From a report: Its new 100-year plan is designed to give users "the ultimate security and longevity for their digital presence" at a cost of $38,000 -- working out at $380 per year of the plan. While average domain registrations range from one year to a maximum of 10 years, WordPress's new plan allows users to secure their domain for 100 years.

The plan comes with other features as well, such as multiple backups of content across geographically distributed data centres, unmetered bandwidth and "personalised" 24/7 support. The company also claims the plan comes with "enhanced ownership protocols" and "top-tier" managed hosting. In a statement, the company said the offering could be used by families who wish to preserve their digital assets such as stories, photos, sounds and videos or by founders who want to protect and document their company's history.

IT

Amazon Linux 2023 Virtual Machine Images Still MIA (theregister.com) 24

When Amazon Linux 2023 was released on March 15, it was supposed to be offered as a virtual machine image that organizations could run on their own servers. From a report: "When Amazon Linux 2023 becomes generally available, it will be provided as a virtual machine image for on-premises use, enabling you to easily develop, test, and certify applications from a local development environment," the web titan's FAQs stated at the time. "This option is not available during the preview." But that commitment has since vanished from the FAQ: it's not there right now nor in this capture of the page on June 2. And it's not clear whether Amazon intends to enable on-premises usage of its Linux distribution.

Those who use Linux in their businesses have been asking Amazon to clarify the situation for eighteen months, starting with a GitHub Issues feature request opened on March 15, 2022, and a similar inquiry posted a year later. In late June, Rotan Hanrahan, a technology consultant based in Dublin, Ireland, chided Amazon for failing to explain what's going on. "I see no evidence of any outreach to the community to explain this, nor any requests for technical assistance (assuming the issue is technical)," he wrote. "If the issue is bureaucratic in nature, we might never see the promised VM image. Some clarification from Amazon is overdue."

Microsoft

Microsoft Makes Some Certification Exams Open Book (theregister.com) 37

Microsoft has made some of its certification exams open book affairs, allowing access to its learning portal while candidates sit tests. From a report: "On August 22, we will begin updating our exams so that you will be able to access Microsoft Learn as you complete your exam," wrote Liberty Munson, director of psychometrics at Microsoft's Worldwide Learning organization. Microsoft Learn is a portal that links to product documentation, tutorials, code fragments, and other technical material.

Much of that content will be available during exams, although a technical Q&A service will remain hidden. The open book exams will be offered to candidates sitting exams for the role-based certifications Microsoft offers for job titles including Azure Administrator, Developer, Solutions Architect, DevOps Engineer; Microsoft 365 Modern Desktop Administrator, and Enterprise Administrator. Exams at Associate, Expert, and Specialty levels of competency will all offer access to the Learn portal. The material will become available for all role-based and specialty exams, in all languages, by mid-September 2023. Looking up material on Learn won't stop the clock during an exam, and the experience of taking the test will remain unchanged -- other than allowing candidates to open a window in which to view the educational portal.

Security

Poland's Railways Halted by Radio Hack (gizmodo.com) 58

The Polish Railway's radio system was hacked on Friday and Saturday, bringing 20 freight and passenger trains to an unprecedented standstill. The hack, believed to be carried out by Russia, took advantage of a critical flaw in the railway's radio security system, with the issue reportedly restored within hours. From a report: An investigation into the cyberattack is underway, and the Polish Press Agency (PAP) reported that the radio signals sent to stop the trains were interspersed with a recording of Russia's national anthem and a speech by Russian President Vladimir Putin.

Poland is an important transportation hub that brings much-needed weapons supplied by Western countries and other aid to Ukraine amid the Russian invasion, and Senior Security Official Stanislaw Zaryn told PAP: "For the moment, we are ruling nothing out." He continued: "We know that for some months there have been attempts to destabilize the Polish state. Such attempts have been undertaken by the Russian Federation in conjunction with Belarus." Train services were reportedly restored within hours and the Polish State Railways said in a statement that "there is no threat to rail passengers" and the cyberattack only caused "difficulties in the running of trains."

Privacy

Hackers Can Silently Grab Your IP Through Skype (404media.co) 56

Slash_Account_Dot writes: Hackers are able to grab a target's IP address, potentially revealing their general physical location, by simply sending a link over the Skype mobile app. The target does not need to click the link or otherwise interact with the hacker beyond opening the message, according to a security researcher who demonstrated the issue and successfully discovered my IP address by using it. Yossi, the independent security researcher who uncovered the vulnerability, reported the issue to Microsoft earlier this month, according to Yossi and a cache of emails and bug reports he shared with 404 Media. In those emails Microsoft said the issue does not require immediate servicing, and gave no indication that it plans to fix the security hole. Only after 404 Media contacted Microsoft for comment did the company say it would patch the issue in an upcoming update.
Programming

72-Year-Old C++ Creator Bjarne Stroustrup Shares Life Advice (youtube.com) 47

72-year-old Bjarne Stroustrup invented C++ (first released in 1985). 38 years later, he gave a short interview for Honeypot.io (which calls itself "Europe's largest tech-focused job platform") offering his own advice for life: Don't overspecialize. Don't be too sure that you know the future. Be flexible, and remember that careers and jobs are a long-term thing. Too many young people think they can optimize something, and then they find they've spent a couple of years or more specializing in something that may not have been the right thing. And in the process they burn out, because they haven't spent enough time building up friendships and having a life outside computing.

I meet a lot of sort of — I don't know what you call them, "junior geeks"? — that just think that the only thing that matters is the speciality of computing — programming or AI or graphics or something like that. And — well, it isn't... And if they do nothing else, well — if you don't communicate your ideas, you can just as well do Sudoku... You have to communicate. And a lot of sort of caricature nerds forget that. They think that if they can just write the best code, they'll change the world. But you have to be able to listen. You have to be able to communicate with your would-be users and learn from them. And you have to be able to communicate your ideas to them.

So you can't just do code. You have to do something about culture and how to express ideas. I mean, I never regretted the time I spent on history and on math. Math sharpens your mind, history gives you some idea of your limitations and what's going on in the world. And so don't be too sure. Take time to have a balanced life.

And be ready for the opportunity. I mean, a broad-based education, a broad-based skill set — which is what you build up when you educate, you're basically building a portfolio of skills — means that you can take advantage of an opportunity when it comes along. You can recognize it sometimes. We have lots of opportunities. But a lot of them, we either can't take advantage of, or we don't notice. It was my fairly broad education — I've done standard computer science, I've done compilers, I've done multiple languages... I think I knew two dozen at the time. And I have done machine architecture, I've done operating systems. And that skill set turned out to be useful.

At the beginning of the video, Stroustrup jokes that it's hard to give advice — and that it's at least as difficult as it is to take advice.

Earlier this year, Bjarne also told the same site the story of how he became a programmer by mistake — misreading a word when choosing what to study afer his high school exams. Stroustrup had thought he was signing up for an applied mathematics course, which instead turned to be a class in computer science...
Chrome

Google Chrome's Useless Reading Mode To Get a Useful Audio Upgrade (androidpolice.com) 13

Google Chrome is adding a read-aloud option to its reading mode, allowing users to have articles read to them like an audiobook. Android Police reports: Google is actively working to bring additional features to its reading mode, and a handy read-aloud option is already on the way for the Chrome browser. As the name suggests, read aloud basically reads out the entire article, as if you're listening to an audiobook, with text-to-speech (TTS) capabilities. Again, a few mainstream browsers and apps like Pocket already have the feature, but Google Chrome is only now rolling it out through the Canary channel.

When you open an article in Chrome Canary's reading mode on the desktop, you will see a new option, as spotted by browser expert Leopeva64. You can use this tiny play button to get the browser to read the article aloud for you. In the video sample shared by the user, you can hear what the narration sounds like -- and it isn't very pleasing. The voice output sounds pretty robotic as it used to be in the early days of TTS conversions, which is especially ironic coming from Google, which has some of the most natural-sounding voice models at its disposal. This clearly indicates that the read-aloud feature is in its early stages of development and will take some time before it becomes ready for prime time.

Republicans

Judge Tears Apart Republican Lawsuit Alleging Bias In Gmail Spam Filter (arstechnica.com) 184

An anonymous reader quotes a report from Ars Technica: A federal judge yesterday granted Google's motion to dismiss a lawsuit filed by the Republican National Committee (RNC), which claims that Google intentionally used Gmail's spam filter to suppress Republicans' fundraising emails. An order (PDF) dismissing the lawsuit was issued yesterday by US District Judge Daniel Calabretta. The RNC is seeking "recovery for donations it allegedly lost as a result of its emails not being delivered to its supporters' inboxes," Calabretta noted. But Google correctly argued that the lawsuit claims are barred by Section 230 of the Communications Decency Act, the judge wrote. The RNC lawsuit was filed in October 2022 in US District Court for the Eastern District of California.

"While it is a close case, the Court concludes that... the RNC has not sufficiently pled that Google acted in bad faith in filtering the RNC's messages into Gmail users' spam folders, and that doing so was protected by Section 230. On the merits, the Court concludes that each of the RNC's claims fail as a matter of law for the reasons described below," he wrote. Calabretta, a Biden appointee, called it "concerning that Gmail's spam filter has a disparate impact on the emails of one political party, and that Google is aware of and has not yet been able to correct this bias." But he noted that "other large email providers have exhibited some sort of political bias" and that if Google did not filter spam, it would harm its users by subjecting them "to harmful malware or harassing messages. On the whole, Google's spam filter, though in this instance imperfect, is not morally blameworthy."

The RNC was given leave to amend another claim that alleged intentional interference with prospective economic relations under California law. The judge dismissed the claim as follows: "The RNC argues that Google's conduct was independently wrongful because '(1) it is political discrimination against the RNC, (2) it is dishonest to Google's users and the public, and (3) Google repeatedly lied about it.' As established above, political discrimination is not prohibited by California anti-discrimination laws and so Google's alleged discrimination would not be unlawful. The latter two reasons do not provide a 'determinable legal standard' under which the Court could find the conduct wrongful; they rest on a 'nebulous' theory of wrongfulness which other courts have rejected." The RNC "has failed to establish that Defendant's alleged interference constituted a separate, independently 'wrongful act' that would be an appropriate predicate offense" but "will be granted leave to amend this claim to establish that Defendant's conduct was unlawful by some legal measure," Calabretta wrote.
Google said in a statement: "We welcome the Court's finding that there are no plausible allegations that Gmail's spam filters discriminate for political purposes. We will continue investing in spam-filtering technologies that protect people from unwanted emails while still allowing senders to reach the inboxes of users who want their messages."
Privacy

Taliban Says Huawei to Install Cameras to Locate Militants (bloomberg.com) 71

Afghanistan's Taliban-led government is working with Huawei to install a wide-ranging surveillance system across the country in an effort to identify and target insurgents or terrorism activities, Bloomberg News reported Friday, citing a person familiar with the discussions. From the report: Representatives of the Shenzhen-headquartered tech company met with Interior Ministry officials on Aug. 14, the person said, and a verbal agreement was reached regarding the contract. The Interior Ministry initially posted images and details of the meeting on X, the social media platform formerly known as Twitter. In one post, spokesman Mufti Abdul Mateen Qani said the advanced camera system was being considered "in every province of Afghanistan."

The posts, which were later deleted, included comments from Abdullah Mukhtar, the deputy minister of the ministry. "We are willing to accept projects that are better in terms of quality and price," he said. "Reports on this meeting are factually incorrect. No plans or agreements were discussed," Huawei said in an emailed statement.

IT

Citizen Suspends Sales of Its Latest Smartwatch (theverge.com) 18

Citizen is temporarily suspending sales of its second-gen CZ Smart watch due to a "technical issue." From a report: The Wear OS watch, which launched in May, had a feature based on tech from IBM's Watson and NASA to track a person's alertness. It appears the decision stems from negative experiences from reviewers. Michael Fisher -- better known as MrMobile on YouTube -- noted that Citizen said it would suspend sales after he had reached out to the company about the watch's many issues. That was corroborated by a Wired story, in which reviewer Julian Chokkattu also detailed several bugs, like laggy screens, bad battery life, inaccurate tracking, and watchfaces that can't even tell the correct time.
Security

Gmail To Start Issuing 2FA Challenges To Change 'Sensitive' Settings (arstechnica.com) 89

Gmail only asks for your user credentials during the initial login, and that login session can last for weeks at a time. That's not as secure as it could be, so soon Gmail will start posting 2FA challenges if you try to access any "sensitive" settings, even when you're already logged in. From a report: The newly protected settings are for filters, account forwarding, and IMAP. Soon, poking around in any of these options will boot you into a "Verify it's you" 2FA prompt, and you'll have to pass the challenge on your phone (these settings are only available on the web). If this 2FA challenge is failed or not answered, you'll get a bright red "Critical security alert" pop-up alerting you to the attempt on all your trusted devices.
Data Storage

Dropbox Ends Unlimited Cloud Storage Following Google Change 46

Dropbox, a provider of online data storage, is ending its unlimited option, saying a small handful of customers were using massive amounts of resources that had the potential to degrade the cloud service for the rest of its clients. From a report: The company's highest-tier "all the space you need" storage plan will be capped at about 5 terabytes per user for new customers, the company said in a blog post.

While the plan was designed for businesses, some clients were instead using it for cryptocurrency mining, pooling storage with strangers, or re-selling the cloud service, Dropbox said. These uses "frequently consume thousands of times more storage than our genuine business customers, which risks creating an unreliable experience for all of our customers," the company said. [...] The change follows Alphabet's Google removing "as much storage as you need" product branding for its highest-tier Workspace plan in May, according to copies of its website hosted on the Wayback Machine.
The Internet

Repair Ship Bound for Cut Cables Off Africa's West Coast as Internet Interrupted (bloomberg.com) 28

Fiber-optic cables that were damaged by a rockfall in an undersea canyon, resulting in slow internet connections in some parts of Africa, should be repaired next month by a specialized vessel, according to telecommunication companies. From a report: The West Africa Cable System that runs about 16,000 kilometers (9,950 miles) along the sea floor from Europe to southern Africa was damaged with other lines earlier this month. The 40-year-old cable-layer vessel Leon Thevenin, named after a French telegraph engineer, was moored in Cape Town this week, according to tracking data compiled by Bloomberg. It's capable of working in extreme conditions and in shallow or deep water, according to owner Orange Marine, a submarine telecommunications company. All South African networks are currently experiencing disruptions due to the damaged lines, said Anne-Caroline Tanguy, a spokeswoman at Cloudflare, a company that provides load balancing and analysis. The repairs are expected to be finished in September.

Slashdot Top Deals