Author Archives: pappp

Counterfeit Cisco gear ended up in US military bases, used in combat operations

Source: Ars Technica

Article note: ...I was talking to a buddy in the Navy about how they're one of the last places with genuinely traceable, trustworthy supply lines. Apparently only in specific niches.
Cisco Systems headquarters in San Jose, California, US, on Monday, Aug. 14, 2023.

Enlarge / Cisco Systems headquarters in San Jose, California. (credit: Getty)

A Florida resident was sentenced to 78 months for running a counterfeit scam that generated $100 million in revenue from fake networking gear and put the US military's security at risk, the US Department of Justice (DOJ) announced Thursday.

Onur Aksoy, aka Ron Aksoy and Dave Durden, pleaded guilty on June 5, 2023, to two counts of an indictment charging him with conspiring with others to traffic in counterfeit goods, to commit mail fraud, and to commit wire fraud. His sentence, handed down on May 1, also includes an order to pay $100 million in restitution to Cisco, a $40,000 fine, and three years of supervised release. Aksoy will also have to pay his victims a sum that a court will determine at an unspecified future date, the DOJ said.

According to the indictment [PDF], Aksoy began plotting the scam around August 2013, and the operation ran until at least April 2022. Aksoy used at least 19 companies and about 15 Amazon storefronts, 10 eBay ones, and direct sales—known collectively as Pro Network Entities—to sell tens of thousands of computer networking devices. He imported the products from China and Hong Kong and used fake Cisco packaging, labels, and documents to sell them as new and real. Legitimate versions of the products would've sold for over $1 billion, per the indictment.

Read 16 remaining paragraphs | Comments

Posted in News | Leave a comment

The Adwaita Icon Theme no longer follows the FDO spec, breaking e.g. KDE apps

Source: Hacker News

Article note: The Gnome folk's "Let's break the ecosystem to support oUr ViSiOn, then act condescending to anyone who complains" behavior has been going on for over a decade. I essentially stopped using xfce as my daily driver because of trickle-down brain damage, and they just keep breaking more things. At least KDE has been generally good lately.
Comments
Posted in News | Leave a comment

Dune 3D 1.1.0 Released

Source: Hacker News

Article note: Interesting. OpenCASCADE geometry with SolveSpace's constraint solver, glued together by the HorizonEDA guy. FreeCAD >0.19 isn't _as_ horrible as people like to act, but I always like to see reasonable options in the FOSS CAD space. I compiled and made a quick NEMA17 mount plate just to jam a dimensioned thing in to it, it has some quirks about commit vs. cancel and not entering input fields when I expect, but the basic experience seems pretty decent.
Comments
Posted in News | Leave a comment

Roku plans to start showing video ads on your homescreen

Source: The Verge - All Posts

Article note: Enshittification, full speed ahead...
Vector collage of the Roku logo.
Illustration: The Verge

Roku has a plan to boost ad revenue. The company will start showing video ads on your homescreen at some point. Roku CEO Anthony Wood told investors during the company’s earnings call last week that the company will put the video ads in the “premier video app we called the Marquee” where static image ads live now.

It sounds like Wood is referring to the box on the homescreen that sits to the right of your Roku apps, which hopefully means the video ads won’t be full-screened. He said the company is also testing out “other types of video ad units” and looking into other ways to “innovate more video advertising” on the homescreen. The company’s push comes after it performed its third layoff in less than a year last September amid a slower...

Continue reading…

Posted in News | Leave a comment

Reddit is full of bots: thread reposted comment by comment, 10 months later

Source: Hacker News

Article note: The web is dying under botspam and directed manipulation. This is a particularly egregious example.
Comments
Posted in News | Leave a comment

FCC fines largest wireless carriers for sharing location data

Source: Hacker News

Article note: That fine is small enough to be minor cost-of-doing business. Intentionally mishandling sensitive user data should come with existential-threat fines.
Comments
Posted in News | Leave a comment

9FRONT (Plan 9) “Do Not Install” Released

Source: Hacker News

Article note: I'm extremely tickled that they used a unix_surrealism bit as their release name.
Comments
Posted in News | Leave a comment

UK votes to dissolve university senate, strips role of helping set school policies

Source: Latest News

Article note: We knew the board was going to rubber stamp it, but it's still repugnant. As best I can make out, the entire premise is "We can't squeeze any more money to support administrative bloat and monument-building construction projects out of the pool of qualified students, so we need to start admitting more unqualified students to pump those numbers." This power grab apparently kicked off because the faculty senate wanted to reinstate test requirements for admission (which our vast pandemic-era forced experiment has demonstrated generally improves the diversity of admitted students, because standardized tests are one of the few good way for students from disadvantage backgrounds to distinguish themselves in a portable way), and the administration didn't want that getting in the way of expanding enrollment into taking a couple semesters of tuition from more students who are grossly unprepared for college.

University of Kentucky faculty and staff attend the board of trustees meeting on April 26, 2024. The board heard from nine people opposed to a proposed change to the university’s governance structure, which would move the university senate to an advisory role.

Posted in News | Leave a comment

Corporate greed from Apple and Google have destroyed the passkey future

Source: OSNews

Article note: This was the only possible outcome in the current environment, and why I've been totally disinterested in passkeys.

William Brown, developer of webauthn-rs, has written a scathing blog post detailing how corporate interests – namely, Apple and Google – have completely and utterly destroyed the concept of passkeys. The basic gist is that Apple and Google were more interested in control and locking in users than in providing a user-friendly passwordless future, and in doing so have made passkeys effectively a worse user experience than just using passwords in a password manager.

Since then Passkeys are now seen as a way to capture users and audiences into a platform. What better way to encourage long term entrapment of users then by locking all their credentials into your platform, and even better, credentials that can’t be extracted or exported in any capacity.

Both Chrome and Safari will try to force you into using either hybrid (caBLE) where you scan a QR code with your phone to authenticate – you have to click through menus to use a security key. caBLE is not even a good experience, taking more than 60 seconds work in most cases. The UI is beyond obnoxious at this point. Sometimes I think the password game has a better ux.

The more egregious offender is Android, which won’t even activate your security key if the website sends the set of options that are needed for Passkeys. This means the IDP gets to choose what device you enroll without your input. And of course, all the developer examples only show you the options to activate “Google Passkeys stored in Google Password Manager”. After all, why would you want to use anything else?

↫ William Brown

The whole post is a sobering read of how a dream of passwordless, and even usernameless, authentication was right within our grasp, usable by everyone, until Apple and Google got involved and enshittified the standards and tools to promote lock-in and their own interests above the user experience. If even someone as knowledgeable about this subject as Brown, who writes actual software to make these things work, is advising against using passkeys, you know something’s gone horribly wrong.

I also looked into possibly using passkeys, including using things like a Yubikey, but the process seems so complex and unpleasant that I, too, concluded just sticking to Bitwarden and my favourite open source TFA application was a far superior user experience.

Posted in News | Leave a comment

FCC restores net neutrality rules that ban blocking and throttling in 3-2 vote

Source: Ars Technica

Article note: Well, that's encouraging news. It's been a ridiculous regulatory ping-pong and I don't know how long it will persist, but ... encouraging.
FCC Commissioner Jessica Rosenworcel speaks outside in front of a sign that says

Enlarge / Federal Communication Commission Chairwoman Jessica Rosenworcel, then a commissioner, rallies against repeal of net neutrality rules in December 2017. (credit: Getty Images | Chip Somodevilla)

The Federal Communications Commission voted 3–2 to impose net neutrality rules today, restoring the common-carrier regulatory framework enforced during the Obama era and then abandoned while Trump was president.

The rules prohibit Internet service providers from blocking and throttling lawful content and ban paid prioritization. Cable and telecom companies plan to fight the rules in court, but they lost a similar battle during the Obama era when judges upheld the FCC's ability to regulate ISPs as common carriers under Title II of the Communications Act.

"Consumers have made clear to us they do not want their broadband provider cutting sweetheart deals, with fast lanes for some services and slow lanes for others," FCC Chairwoman Jessica Rosenworcel said at today's meeting. "They do not want their providers engaging in blocking, throttling, and paid prioritization. And if they have problems, they expect the nation's expert authority on communications to be able to respond. Because we put national net neutrality rules back on the books, we fix that today."

Read 15 remaining paragraphs | Comments

Posted in News | Leave a comment