news aggregator

Sting nails two front firms in Nork IT worker scam

TheRegister - Wed, 2025-08-27 20:27
There's also a rogue Russian on the list

The US Treasury Department has announced sanctions against two Asian companies and two individuals for allegedly helping North Korean IT workers fake their way into US jobs.…

Categories: Linux fréttir

A Proposal to Ban Ghost Jobs

Slashdot - Wed, 2025-08-27 20:02
After losing his job in 2024, Eric Thompson spearheaded a working group to push for federal legislation banning "ghost jobs" -- openings posted with no intent to hire. The proposed Truth in Job Advertising and Accountability Act would require transparency around job postings, set limits on how long ads can remain up, and fine companies that violate the rules. CNBC reports: "There's nothing illegal about posting a job, currently, and never filling it," says Thompson, a network engineering leader in Warrenton, Virginia. Not to mention, it's "really hard to prove, and so that's one of the reasons that legally, it's been kind of this gray area." As Thompson researched more into the phenomenon, he connected with former colleagues and professional connections across the country experiencing the same thing. Together, the eight of them decided to form the TJAAA working group to spearhead efforts for federal legislation to officially ban businesses from posting ghost jobs. In May, the group drafted its first proposal: The TJAAA aims to require that all public job listings include information such as: - The intended hire and start dates - Whether it's a new role or backfill - If it's being offered internally with preference to current employees - The number of times the position has been posted in the last two years, and other factors, according to the draft language. It also sets guidelines for how long a post is required to be up (no more than 90 calendar days) and how long the submission period can be (at least four calendar days) before applications can be reviewed. The proposed legislation applies to businesses with more than 50 employees, and violators can be fined a minimum of $2,500 for each infraction. The proposal provides a framework at the federal level, Thompson says, because state-level policies won't apply to employers who post listings across multiple states, or who use third-party platforms that operate beyond state borders.

Read more of this story at Slashdot.

Categories: Linux fréttir

Crims laud Claude to plant ransomware and fake IT expertise

TheRegister - Wed, 2025-08-27 19:53
AI lowers the bar for cybercrime, Anthropic admits

comment Anthropic, a maker of AI tools, says that AI tools are now commonly used to commit cybercrime and facilitate remote worker fraud.…

Categories: Linux fréttir

Windows Backup for Organizations doesn't actually save data files

TheRegister - Wed, 2025-08-27 19:29
Not a disaster recovery option, but good enough for a migration

Microsoft continues to take what's familiar to ordinary users and offer it to enterprises. The latest functionality is Windows Backup for Organizations.…

Categories: Linux fréttir

Republicans Investigate Wikipedia Over Allegations of Organized Bias

Slashdot - Wed, 2025-08-27 19:25
An anonymous reader quotes a report from The Hill: Republicans on the House Oversight and Government Reform Committee opened a probe into alleged organized efforts to inject bias into Wikipedia entries and the organization's responses. Chair James Comer (R-Ky.) and Rep. Nancy Mace (R-S.C.), chair of the panel's subcommittee on cybersecurity, information technology, and government innovation, on Wednesday sent an information request on the matter to Maryana Iskander, chief executive officer of the Wikimedia Foundation, the nonprofit that hosts Wikipedia. The request, the lawmakers said in the letter (PDF), is part of an investigation into "foreign operations and individuals at academic institutions subsidized by U.S. taxpayer dollars to influence U.S. public opinion." The panel is seeking documents and communications about Wikipedia volunteer editors who violated the platform's policies, as well as the Wikimedia Foundation's efforts to "thwart intentional, organized efforts to inject bias into important and sensitive topics." "Multiple studies and reports have highlighted efforts to manipulate information on the Wikipedia platform for propaganda aimed at Western audiences," Comer and Mace wrote in the letter. They referenced a report from the Anti-Defamation League about anti-Israel bias on Wikipedia that detailed a coordinated campaign to manipulate content related to the Israel-Palestine conflict and similar issues, as well as an Atlantic Council report on pro-Russia actors using Wikipedia to push pro-Kremlin and anti-Ukrainian messaging, which can influence how artificial intelligence chatbots are trained. "[The Wikimedia] foundation, which hosts the Wikipedia platform, has acknowledged taking actions responding to misconduct by volunteer editors who effectively create Wikipedia's encyclopedic articles. The Committee recognizes that virtually all web-based information platforms must contend with bad actors and their efforts to manipulate. Our inquiry seeks information to help our examination of how Wikipedia responds to such threats and how frequently it creates accountability when intentional, egregious, or highly suspicious patterns of conduct on topics of sensitive public interest are brought to attention," Comer and Mace wrote. The lawmakers requested information about "the tools and methods Wikipedia utilizes to identify and stop malicious conduct online that injects bias and undermines neutral points of view on its platform," including documents and records about possible coordination of state actors in editing, the kind of accounts that have been subject to review, and and of the panel's analysis of data manipulation or bias. "We welcome the opportunity to respond to the Committee's questions and to discuss the importance of safeguarding the integrity of information on our platform," a Wikimedia Foundation spokesperson said.

Read more of this story at Slashdot.

Categories: Linux fréttir

Putin on the code: DoD reportedly relies on utility written by Russian dev

TheRegister - Wed, 2025-08-27 18:53
Fast-glob is widely used in government, security lab says

A Node.js utility used by thousands of public projects - and more than 30 Department of Defense ones - appears to have a sole maintainer whose online profiles identify him as a Yandex employee living in Russia.…

Categories: Linux fréttir

Word to autosave new docs to the cloud before you can even hit Ctrl+S

TheRegister - Wed, 2025-08-27 18:25
Feature rolls out to Microsoft 365 Insiders, stashing unnamed files in OneDrive by default

Ever get that sinking feeling when Word crashes before you've made your first save? An application update is set to save the day by automatically enabling autosave to the cloud for new documents, before you've even given them a filename.…

Categories: Linux fréttir

One Long Sentence is All It Takes To Make LLMs Misbehave

Slashdot - Wed, 2025-08-27 18:05
An anonymous reader shares a report: Security researchers from Palo Alto Networks' Unit 42 have discovered the key to getting large language model (LLM) chatbots to ignore their guardrails, and it's quite simple. You just have to ensure that your prompt uses terrible grammar and is one massive run-on sentence like this one which includes all the information before any full stop which would give the guardrails a chance to kick in before the jailbreak can take effect and guide the model into providing a "toxic" or otherwise verboten response the developers had hoped would be filtered out. The paper also offers a "logit-gap" analysis approach as a potential benchmark for protecting models against such attacks. "Our research introduces a critical concept: the refusal-affirmation logit gap," researchers Tung-Ling "Tony" Li and Hongliang Liu explained in a Unit 42 blog post. "This refers to the idea that the training process isn't actually eliminating the potential for a harmful response -- it's just making it less likely. There remains potential for an attacker to 'close the gap,' and uncover a harmful response after all."

Read more of this story at Slashdot.

Categories: Linux fréttir

Bun JS toolkit adds MySQL driver, secrets API, YAML, and more

TheRegister - Wed, 2025-08-27 17:54
Feature bloat, or added value for this JavaScript toolkit?

The Bun team has released version 1.2.21 of its JavaScript bundler and runtime, written in Zig, adding features including built-in drivers for MySQL and SQLite, a YAML parser, and a secrets manager for tools and local development.…

Categories: Linux fréttir

Nx NPM packages poisoned in AI-assisted supply chain attack

TheRegister - Wed, 2025-08-27 17:34
Stolen dev credentials posted to GitHub as attackers abuse CLI tools for recon

Nx is the latest target of a software supply chain attack in the NPM ecosystem, with multiple malicious versions being uploaded to the NPM registry on Tuesday evening.…

Categories: Linux fréttir

Deforestation Has Killed Half a Million People in Past 20 Years, Study Finds

Slashdot - Wed, 2025-08-27 17:29
Deforestation has killed more than half a million people in the tropics over the past two decades as a result of heat-related illness, a study has found. The Guardian: Land clearance is raising the temperature in the rainforests of the Amazon, Congo and south-east Asia because it reduces shade, diminishes rainfall and increases the risk of fire, the authors of the paper found. Deforestation is responsible for more than a third of the warming experienced by people living in the affected regions, which is on top of the effect of global climate disruption. About 345 million people across the tropics suffered from this localised, deforestation-caused warming between 2001 and 2020. For 2.6 million of them, the additional heating added 3C to their heat exposure. In many cases, this was deadly. The researchers estimated that warming due to deforestation accounted for 28,330 annual deaths over that 20-year period.

Read more of this story at Slashdot.

Categories: Linux fréttir

Uncle Sam throws AI 'chili cook-off' to spice up healthcare fraud detection

TheRegister - Wed, 2025-08-27 17:03
No stew on the stove, but plenty of heat as devs compete to flag suspect Medicare data

Seeking to rein in healthcare fraud, the US Centers for Medicare & Medicaid Services (CMS) is seeking explainable AI models that can identify patterns suggestive of malfeasance.…

Categories: Linux fréttir

The intruder is in the house: Storm-0501 attacked Azure, stole data, demanded payment via Teams

TheRegister - Wed, 2025-08-27 16:51
Don't let it happen to you

Storm-0501, a financially motivated cybercrime crew, recently broke into a large enterprise's on-premises and cloud environments, ultimately exfiltrating and destroying data within the org's Azure environment. The criminals then contacted the victim via a Microsoft Teams account that they'd also compromised in the attack, demanding a ransom payment for the stolen files.…

Categories: Linux fréttir

FBI Warns Chinese Hacking Campaign Has Expanded, Reaching 80 Countries

Slashdot - Wed, 2025-08-27 16:44
The FBI and other law enforcement and intelligence agencies around the world warned Wednesday that a Chinese-government hacking campaign that previously penetrated nine U.S. telecommunications companies has expanded into other industries and regions, striking at least 200 American organizations and 80 countries. From a report: The joint advisory was issued with the close allies in the Five Eyes English-language intelligence-sharing arrangement and also agencies from Finland, Netherlands, Poland and the Czech Republic, an unusually broad array meant to demonstrate global resolve against what intelligence officials said is a pernicious campaign that exceeds accepted norms for snooping. "The expectation of privacy here was violated, not just in the U.S., but globally," FBI Assistant Director Brett Leatherman, who heads the bureau's cyber division, told The Washington Post in an interview. Chinese hackers won deep access to major communication carriers in the U.S. and elsewhere, then extracted call records and some law enforcement directives, which allowed them to build out a map of who was calling whom and whom the U.S. suspected of spying, Leatherman said. Prominent politicians in both major U.S. parties were among the ultimate victims.

Read more of this story at Slashdot.

Categories: Linux fréttir

Nothing Caught Using Stock Photos as Phone 3 Camera Samples

Slashdot - Wed, 2025-08-27 16:01
Phonemaker Nothing used professional stock photos to demonstrate its Phone 3's camera capabilities on retail demo units, according to The Verge. Five images the company presented as community-captured samples were licensed photographs from the Stills marketplace, taken with other cameras in 2023. The Verge verified EXIF data confirming one image predated the Phone 3's release. Co-founder Akis Evangelidis acknowledged the photos were placeholders intended for pre-production testing that weren't replaced before deployment to stores.

Read more of this story at Slashdot.

Categories: Linux fréttir

Taiwan indicts three over alleged theft of TSMC trade secrets

TheRegister - Wed, 2025-08-27 15:56
Chipmaker keen to protect assets as race for 2nm process heats up

Taiwanese prosecutors have charged three people over the alleged theft of TSMC's trade secrets.…

Categories: Linux fréttir

Classic Psion fan releases proof-of-concept language server for OPL

TheRegister - Wed, 2025-08-27 15:25
Vintage computing boffinry to please palmtop enthusiasts

Vintage computing enthusiast Colin Hoad has released a gift to anyone who fondly remembers Psion's classic EPOC-based palmtops and their Open Programming Language (OPL): a language server which brings modern quality-of-life features to the OPL programmer, regardless of their development environment.…

Categories: Linux fréttir

South Korea Bans Phones in School Classrooms Nationwide

Slashdot - Wed, 2025-08-27 15:21
South Korea has passed a bill banning the use of mobile phones and smart devices during class hours in schools -- becoming the latest country to restrict phone use among children and teens. From a report: The law, which comes into effect from the next school year in March 2026, is the result of a bi-partisan effort to curb smartphone addiction, as more research points to its harmful effects. Lawmakers, parents and teachers argue that smartphone use is affecting students' academic performance and takes away time they could have spent studying.

Read more of this story at Slashdot.

Categories: Linux fréttir

Microsoft can't guarantee data sovereignty – OVHcloud says 'We told you so'

TheRegister - Wed, 2025-08-27 14:44
French provider seizes on Redmond's admission that US law could override local protections

Interview European cloud provider OVHcloud has long warned about the risks of relying on foreign tech giants for critical infrastructure – especially when it comes to data sovereignty.…

Categories: Linux fréttir

Wikipedia Editors Reject Founder's AI Review Proposal After ChatGPT Fails Basic Policy Test

Slashdot - Wed, 2025-08-27 14:40
Wikipedia's volunteer editors have rejected founder Jimmy Wales' proposal to use ChatGPT for article review guidance after the AI tool produced error-filled feedback when Wales tested it on a draft submission. The ChatGPT response misidentified Wikipedia policies, suggested citing non-existent sources and recommended using press releases despite explicit policy prohibitions. Editors argued automated systems producing incorrect advice would undermine Wikipedia's human-centered model. The conflict follows earlier tensions over the Wikimedia Foundation's AI experiments, including a paused AI summary feature and new policies targeting AI-generated content.

Read more of this story at Slashdot.

Categories: Linux fréttir

Pages

Subscribe to www.netserv.is aggregator