Peloton’s leaky API let anyone grab riders’ private account data – and only fixed the issue after repeated prodding

[…] Peloton, the at-home fitness brand synonymous with its indoor stationary bike and beleaguered treadmills, has more than three million subscribers. Even President Biden is said to own one. The exercise bike alone costs upwards of $1,800, but anyone can sign up for a monthly subscription to join a broad variety of classes. As Biden Read more about Peloton’s leaky API let anyone grab riders’ private account data – and only fixed the issue after repeated prodding[…]

Amazon knew seller data was used to boost company sales

Amazon CEO Jeff Bezos told U.S. lawmakers last year that the company has a policy prohibiting employees from using data on specific sellers to help boost its own sales. “I can’t guarantee you that that policy has never been violated,” he added. Now it’s clear why he chose his words so carefully. An internal audit Read more about Amazon knew seller data was used to boost company sales[…]

What3Words sent a legal threat to a security researcher for sharing a better open-source alternative, turns into a Striesand

A U.K. company behind digital addressing system What3Words has sent a legal threat to a security researcher for offering to share an open-source software project with other researchers, which What3Words claims violate its copyright. Aaron Toponce, a systems administrator at XMission, received a letter on Thursday from London-based law firm JA Kemp representing What3Words, requesting Read more about What3Words sent a legal threat to a security researcher for sharing a better open-source alternative, turns into a Striesand[…]

Tesla Cars Hacked Remotely From Drone via Zero-Click Exploit

[…] The attack, dubbed TBONE, involves exploitation of two vulnerabilities affecting ConnMan, an internet connection manager for embedded devices. An attacker can exploit these flaws to take full control of the infotainment system of a Tesla without any user interaction. A hacker who exploits the vulnerabilities can perform any task that a regular user could Read more about Tesla Cars Hacked Remotely From Drone via Zero-Click Exploit[…]

Amazon had sales income of €44bn in Europe in 2020 but paid no corporation tax

Fresh questions have been raised over Amazon’s tax planning after its latest corporate filings in Luxembourg revealed that the company collected record sales income of €44bn (£38bn) in Europe last year but did not have to pay any corporation tax to the Grand Duchy. Accounts for Amazon EU Sarl, through which it sells products to Read more about Amazon had sales income of €44bn in Europe in 2020 but paid no corporation tax[…]

TV maker Skyworth under fire for excessive data collection that users call spying whilst China clamps down on user tracking

Chinese television maker Skyworth has issued an apology after a consumer found that his set was quietly collecting a wide range of private data and sending it to a Beijing-based analytics company without his consent. A network traffic analysis revealed that a Skyworth smart TV scanned for other devices connected to the same local network Read more about TV maker Skyworth under fire for excessive data collection that users call spying whilst China clamps down on user tracking[…]

What To Expect From 3D Scanning, And How To Work With It

3D scanning and 3D printing may sound like a natural match for one another, but they don’t always play together as easily and nicely as one would hope. I’ll explain what one can expect by highlighting three use cases the average hacker encounters, and how well they do (or don’t) work. With this, you’ll have Read more about What To Expect From 3D Scanning, And How To Work With It[…]

Lamps Double As Secret Surround Sound Speakers

Combined with today’s massive flat panel displays, a nice surround sound system can provide an extremely immersive environment for watching movies or gaming. But a stumbling block many run into is speaker placement. The front speakers generally just go on either side of the TV, but finding a spot for the rear speakers that’s both Read more about Lamps Double As Secret Surround Sound Speakers[…]

Mice Develop halfway to gestation Inside An Artificial Womb

Although people-growing is probably a long way off, mice can now mostly develop inside an artificial uterus (try private window if you hit a paywall) thanks to a breakthrough in developmental biology. So far, the mice can only be kept alive halfway through gestation. There’s a point at which the nutrient formula provided to them Read more about Mice Develop halfway to gestation Inside An Artificial Womb[…]

Modding A Casio W800-H With A Countdown Timer – it’s a jumper setting

Stock, the Casio W800-H wristwatch ships with dual time modes, multiple alarms, and a stopwatch – useful features for some. However, more is possible if you just know where to look. [Ian] decided to dive under the hood and enable a countdown timer feature hidden from the factory. The hack involves popping open the case Read more about Modding A Casio W800-H With A Countdown Timer – it’s a jumper setting[…]

The world’s ‘most powerful’ tidal turbine is nearly ready to power on | Engadget

Earlier this week, a company Orbital Marine Power successfully launched its latest tidal turbine. Once it’s connected to the European Marine Energy Centre off the Orkney Islands, the two megawatt O2 will have the capacity to generate enough energy to power 2,000 UK households annually, making it one of the world’s most powerful tidal turbines Read more about The world’s ‘most powerful’ tidal turbine is nearly ready to power on | Engadget[…]

Dutch foreign affairs committee politicians were tricked into participating in a deepfake video chat w Russian opposition leaders’ chief of staff

Netherlands politicians (Geert Wilders (PVV), Kati Piri (PvdA), Sjoerd Sjoerdsma (D66), Ruben Brekelmans (VVD), Tunahan Kuzu (Denk), Agnes Mulder (CDA), Tom van der Lee (GroenLinks), Gert-Jan Segers (ChristenUnie) en Raymond de Roon (PVV).) just got a first-hand lesson about the dangers of deepfake videos. According to NL Times and De Volkskrant, the Dutch parliament’s foreign Read more about Dutch foreign affairs committee politicians were tricked into participating in a deepfake video chat w Russian opposition leaders’ chief of staff[…]

Epic witness claims Apple’s App Store profit reaches 78%. Apple disagrees as their overall profit is “only” 42.5%

Epic Games is using its lawsuit against Apple to accuse the iPhone maker of being particularly greedy. As The Verge reports, expert witness Eric Barns testified that Apple supposedly had an App Store operating margin of 77.8 percent in 2019, itself a hike from 74.9 percent in 2018. He also rejected Apple witness’ claims that Read more about Epic witness claims Apple’s App Store profit reaches 78%. Apple disagrees as their overall profit is “only” 42.5%[…]

Appeals Court says Amazon is responsible for the safety of third-party products

ROBYN BECK/AFP via Getty Images Amazon may soon be more accountable for more products than the ones it directly sells. According to the LA Times, a California state appeals court has ruled that Amazon is responsible for the safety of third-party products available through its marketplace following a 2015 hoverboard fire. While the internet giant Read more about Appeals Court says Amazon is responsible for the safety of third-party products[…]

Three ways to improve scholarly writing to get more citations

Researchers from University of Arizona and University of Utah published a new paper in the Journal of Marketing that examines why most scholarly research is misinterpreted by the public or never escapes the ivory tower and suggests that such research gets lost in abstract, technical, and passive prose. The study, forthcoming in the Journal of Read more about Three ways to improve scholarly writing to get more citations[…]

Activision Blizzard CEO Bobby Kotick takes 50% voluntary pay cut

Bobby Kotick, the longtime CEO of “Call of Duty” and “Candy Crush” game maker Activision Blizzard, will see his base salary reduced by 50% and bonus potential slashed as part of a 15-month contract extension, the company reported Thursday in an SEC filing. Why it matters: The cut isn’t a sign that the company is Read more about Activision Blizzard CEO Bobby Kotick takes 50% voluntary pay cut[…]

Experian API Exposed Credit Scores of Most Americans

Big-three consumer credit bureau Experian just fixed a weakness with a partner website that let anyone look up the credit score of tens of millions of Americans just by supplying their name and mailing address, KrebsOnSecurity has learned. Experian says it has plugged the data leak, but the researcher who reported the finding says he Read more about Experian API Exposed Credit Scores of Most Americans[…]

BadAlloc: Microsoft looked at memory allocation code in tons of devices and found this one common security flaw

Microsoft has taken a look at memory management code used in a wide range of equipment, from industrial control systems to healthcare gear, and found it can be potentially exploited to hijack devices. […] Drilling down to the nitty-gritty: Microsoft’s Azure Defender for IoT security research group looked at memory allocation functions, such as malloc(), Read more about BadAlloc: Microsoft looked at memory allocation code in tons of devices and found this one common security flaw[…]

People rebel against WiFi Tracking in Maassluis with Robin Hood action

A resident of Maassluis registered the Mac addresses of 54,000 smartphones and passed them on to an opt-out register. The action of the “Robin 2.4Ghz Hood” keeps all these phone owners out of the municipality’s Wi-Fi tracking. The promotion is intended to protect the privacy of the residents of Maassluis. The man behind the initiative, Read more about People rebel against WiFi Tracking in Maassluis with Robin Hood action[…]

AI Dungeon text adventure generator’s sessions generate NSFW + violence (turns out people like porn), but some involved sex with children. So they put a filter on.

AI Dungeon, which uses OpenAI’s GPT-3 to create online text adventures with players, has a habit of acting out sexual encounters with not just fictional adults but also children, prompting the developer to add a content filter. AI Dungeon is straightforward: imagine an online improvised Zork with an AI generating the story with you as Read more about AI Dungeon text adventure generator’s sessions generate NSFW + violence (turns out people like porn), but some involved sex with children. So they put a filter on.[…]

EU Charges Apple With Antitrust Violations in Spotify Case

the European Union has charged Apple with allegedly “abus[ing] its dominant position” in the music streaming market. The charges stem from an initial complaint filed by Spotify in 2019. At the time, Spotify accused Apple of having “an unfair advantage at every turn” by imposing a series of obstacles that favored its own services at Read more about EU Charges Apple With Antitrust Violations in Spotify Case[…]

ENVG-B – latest iteration of night vision goggles offer augmented reality, stereo vision, white lines

The ENVG-B is a helmet-mounted, dual-waveband goggle with industry-leading, fused white phosphor and thermal technologies. […] Flexible 40 Field-Of-View with options of white-hot, black-hot and outline modes […] Augmented Reality Soldiers keep eyes on target without having to look down to read maps or check radios for critical information. High-resolution goggle display Data display includes Read more about ENVG-B – latest iteration of night vision goggles offer augmented reality, stereo vision, white lines[…]

Covid-19 Vaccine Crisis Shows Intellectual Property Dangers

Virologist and medical researcher Jonas Salk developed a successful polio vaccine that was approved in 1955, helping the world all but eradicate the disease. When the late journalist Edward Murrow asked Salk who owned that vaccine’s patent, he famously responded, “Could you patent the sun?” It was in large part his commitment to keeping the Read more about Covid-19 Vaccine Crisis Shows Intellectual Property Dangers[…]

Florida Keys Mosquito Control District and Oxitec Announce Site Participation for Florida Keys Pilot Project to Combat Disease Transmitting Mosquito Type

The Florida Keys Mosquito Control District and Oxitec Ltd today announced location participation plans for its landmark Florida Keys pilot project. Project managers anticipate that during the last week of April and first week of May release boxes, non-release boxes and netted quality control boxes will be placed in six locations: two on Cudjoe Key, Read more about Florida Keys Mosquito Control District and Oxitec Announce Site Participation for Florida Keys Pilot Project to Combat Disease Transmitting Mosquito Type[…]