Friday Squid Blogging: A Penguin Named “Squid”

Amusing story about a penguin named “Squid.”

As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered.

Read my blog posting guidelines here.

Posted on February 9, 2024 at 5:09 PM69 Comments

Comments

Anonymous February 9, 2024 8:39 PM

“Philadelphia sheriff caught posting over 30 fake news stories generated by ChatGPT to her website”

httpx: fortune.com/2024/02/06/philadelphia-sheriff-fake-news-chatgpt-30-articles-removed/

Hiren's BootCD PE x64 (v1.0.4) (6 February 2024) released! February 9, 2024 8:46 PM

Hiren’s BootCD PE x64 (v1.0.4) (6 February 2024) released!

“Hiren’s BootCD PE (Preinstallation Environment) is a restored edition of Hiren’s BootCD based on Windows 11 PE x64. Given the absence of official updates after November 2012, the PE version is currently under development by the fans of Hiren’s BootCD. It features a curated selection of the best free tools while being tailored for new-age computers, supporting UEFI booting and requiring a minimum of 4 GB RAM.”

for the lulz February 9, 2024 11:24 PM

Raspberry Pi Pico cracks BitLocker in under a minute

Windows encryption feature defeated by $10 and a YouTube tutorial

https://www.theregister.com/2024/02/07/breaking_bitlocker_pi_pico/

“A Lenovo laptop was used in the video, posted by user stacksmashing, although other hardware will also be vulnerable. The technique also relies on having a Trusted Platform Module (TPM) separate from the CPU. In many cases, the two will be combined, in which case the technique shown cannot be used.

However, if you get your hands on a similarly vulnerable device secured with BitLocker, gaining access to the encrypted storage appears embarrassingly simple. The crux of it is sniffing out the key to the device as it is passed from TPM to CPU. The key is helpfully not encrypted.

This particular laptop had connections that could be put to use alongside a custom connector to access the signals between chips. Stir in an analyzer running on the Raspberry Pi Pico and for less than $10 in components, you can get hold of the master key for the laptop hardware.”

ResearcherZero February 10, 2024 12:13 AM

A visual demonstration for politicians of why rain has become heavier.

As air warms, it can “hold” more water vapor than air at cooler temperatures.

‘https://www.scientificamerican.com/article/what-are-atmospheric-rivers-and-how-are-they-changing/

Clive Robinson February 10, 2024 2:26 AM

@ for the lulz, ALL,

Re : failure to protect root of trust.

“The crux of it is sniffing out the key to the device as it is passed from TPM to CPU. The key is helpfully not encrypted.”

This is possible so often it is realy embarrassing to talk about because it appears,

“Nobody in the ICT industry learns from history!..”

This sort of thing was happening with passwords over first serial lines in the 1950/60’s and later 1980/90’s over LAN’s and WAN’s and especially the Internet.

But IoT and embedded systems like network appliances has brought it back again with hard coded passwords and the like.

I could go on at considerable length as I have done in the past.

But I know people are going to turn a blind eye, make excuses and do nothing from the lessons…

Because “cost and convenience” always “trump security” even if you draconianly sack people who do it, they won’t stop. In fact they counter argue “your paranoid”…

I’ve just had this nonsense from a friend who should know better, because I refuse to load shit loads of apps that I know to be not just insecure but actively spying on my phone, i’m in the wrong because it inconveniences him and others who want to send puerile cartoons and the like…

Pointing out why the EncroChat and similar phones caused thousands of defendants and why secure message apps are now pulling in politicians and others by the boat load into judicial issues/proceadings is apparently “being paranoid” and gets the “You’ve got nothing to worry about” nonsense. Even pointing out why their mother got her pension stolen because of the apps installed, apparently just more of my paranoia…

JonKnowsNothing February 10, 2024 2:39 AM

All

re: HAIL subliminal bias

One of the common tasks that HAIL developers work on is to reduced known bias’ in the LLM and training sets. They haven’t been all that successful because much of the bias is hidden or goes unrecognized until the output starts laying HAIL sized goose eggs.(1)

The problem is you don’t know there’s a problem until something twigs you to that.

An important SCOTUS case this week had many MSM articles show an image of the official court photo of the 9 justices in their robes. They are seated or standing in specific protocol order according to rank on the court.

I noticed that in this particular image an interesting but not unknown aspect of how they are posed:

  • The Men sit with feet apart
  • The Women sit with feet together

Can you imagine some AI image identification system deciding that

  • If feet apart == male person

There would be a lot of male criminals learning to sit with feet together…

===

1) to lay an egg: (idiomatic) To produce a failure or flop; to do something which is unsuccessful.

Clive Robinson February 10, 2024 8:05 AM

@ JonKnowsNothing,

Re : Societal Identity flags.

“Can you imagine some AI image identification system deciding that”

Life is full of “gender flags”.

For instance think of how you fasten your clothes. With left over right or right over left. We are “told” by some this comes from the fact of “right handed dressers”. That is servants who did up buckles, buttons and bows for others facing the person with their dominant hand on the person being dressed non dominenent side. Personally I’m doubtful, for a whole variety of reasons, but we still have this prefrence after so long the real reason is probably long forgorton.

Then there are indicators of “handedness” in the way you part your hair and the way you sit if on your own or in company. Think of the high leg broad cross where you raise the ankle of one leg onto the knee of the support leg. Then use the raised knee as a work surface or something to bang your dominant fist on.

It actually goes further with the angle you sit towards your non dominant side leg. If you are sitting and need it as a work surface you tend to place it in front of you with your dominant side out.

Now consider the lean in position where both feet are flat on the floor and your thighs parallel to it. You place your non dominant are wrist side up and your dominant hand palm side down, the non dominant side leg straight or slightly outwards such that most of the non dominant fore arm rests along it for strength and support. The dominant leg outwards so that the middle of the dominant hand forearm uses just behind the knee as a pivit point.

Strangely this pattern has a habbit of going through to the way people want to fold their sunglasses or specs…

Even the foot you lead off with when climbing stairs apparently has several biases built in.

Some of these biases become “built in” such as in bone and muscle structure the work hand generally being more developed and stronger, and the coresponding shoulder lifted higher. Unless you are a crafts man where the non dominant arm tends to have more muscle but the dominant shoulder is still lifted. Thus you can tell in times past what type of work is done. As well as observing the hands where the dominant hand is less scared or caloused.

Certain proffessions use these “tells” as a form of secret identifier that is if you are trying to hide your handedness.

But it also even in living memory terms has quite a bit of real evil attached.

My father had a ruined left hand courtisy of his teachers and their superstitions. His teachers used to quite litterly smash down on his left hand with an ebony rod every time he tried to use his left hand… Why well because,

1, Being left handed is “sinister” from the French for left but having a whole different meaning in English.

2, The left hand was the dirty hand you used for cleaning your backside etc.

Hence we have “cack handed” for left handed people.

Like always “I’m annoying” 😉 in this respect, people who see me using tools to work with often think I’m right handed or ambidextrous. The actual reason is some tools are designed handed and some are not. My father taught me to use many “handed tools” when I was very young such as hand drills and it was only later that files and chisels and similar less handed tools came into it when I was around six or seven.

Fun fact, do you know why door hinges are on the side they are? Well it goes back to the use of stabbing weapons such as daggers and swords. When you are inside your dominant hand is on the opening side and your shoving shoulder behind the door thus giving you a small but often important advantage.

But beware, of “forensics” and handedness by the way people do their shoe laces up. I can and do do it both ways to ease the wear on not just the laces but the holes they go through.

So how do you think this “lack of handness with laces etc because I think” going to work out with an AI?

Maybe it will conclude as they have in Yorkshire,

“There’s now’t as queer as folks”.

JonKnowsNothing February 10, 2024 11:07 AM

@All

re: ROBODead meets ROBOSex

A MSM report on a curious aspect of UK Teacher Pensions for surviving spouses. (1,2)

If the teacher retired after Jan 1 2007, then after death the surviving spouses are entitled to pension payments for life, regardless of their domestic circumstances.

If the teacher retired before 2007, then after death, the surviving spouses must attest annually to their Relationship Status.

  • 28 days to declare whether they remain single

The Teachers’ Pensions, which administers the scheme for the Department for Education (DfE), does a number of computer cross matching to see if someone is having some nookie on the side. If they find a matching reference the pension is stopped.

The problem is the criteria for matching, which is used to stop payments. Clearly if you are “officially unofficially declared dead” you can be de-listed.

  • matched to the death register based on shared first name and date of birth

The DfE insisted:

the system does not allow names to be decoupled once a potential match between a beneficiary and a death register entry has been identified, even if it has been disproved.

Methinks UK and AU are using the same POSTOFFICE method of validation.

===

1)
HAIL Warning

ht tps ://www.t heguardian.com/money/2024/feb/10/humiliating-pension-process-upsets-partners-of-retired-uk-teachers-who-have-died

  • ‘Humiliating’ pension process upsets partners of retired UK teachers who have died
  • Annual letter from Teachers’ Pensions, which administers scheme for DfE, asks about new relationships

2)
HAIL Warning

ht tps:/ /www.t heguardian.com/australia-news/2023/dec/22/you-are-deceased-services-australia-bungle-results-in-woman-losing-bank-accounts-and-pension-twice

  • You are deceased’: Services Australia bungle results in woman losing bank accounts and pension
  • A 74-year-old carer was mistakenly declared dead by Centrelink two times in a case advocates describe as illustrating the ‘devastating consequences of automation’

JonKnowsNothing February 10, 2024 11:57 AM

@All

re: UlezGate meets License Plate Cloning

UlezGate: The Transport for London (TfL) sent fines to EU Citizens for legal operation in London Ulez zones claiming the tagged vehicles were illegally in the zone and issued large fines accordingly. TfL illegally obtained the license information for EU visitors by bribing insiders with access to EU license plate information in Belgium and Italy.

Continuing this trend is the practice of “bad guys” obtaining an illegal copy of a legally registered vehicle plate and using the illegal plate all the while collecting fines and violations. It’s the theme in many a James Bond movie where he flips the license plate on his very identifiable sports car to throw off the chasing bad guys. The problem is well known to LEAs and insurance companies. (1)

It appears that while it is known to TfL-Ulez, they refuse to accept proofs that the car on their AI Identification Image is not the same car. TfL can seize the good car and sell it at auction to pay for the fines and tickets even when provided with proof they have the wrong car.

  • using copies of his car’s registration plates and had driven in London’s ultra-low emission zone (Ulez) 12 times, resulting in him being sent a series of penalty fines
  • grainy black and white images of “his” car being driven in the zone was wrong car
  • the number plates looked different, and there were other small differences to the bodywork

From the TfL

Although the evidence which confirmed the vehicle wasn’t registered to him [it] was
submitted after the statutory deadline

Same problem from different London councils

The legal car is a five-door Audi A3

the photo appeared to be a three-door Audi A1

the council concerned rejected his appeal.

It’s not a one-off incident

latest data from TfL shows that more than 12,762 Ulez charges were cancelled because of cars being cloned in 2022

the growth of camera enforcement – from speeding and parking to bus lanes and yellow
box junctions and from the congestion charge to low-emission zones (2)

The AI identifier is not doing well and HAIL is raining on 13,000 in the UK.

===

1)
HAIL Warning

htt ps:/ /w ww.thegua rdian.com/money/2024/feb/10/car-cloning-drivers-fines-scams-number-plates

  • Car cloning: innocent UK motorists get fines as scams accelerate

2) RL tl;dr

In a number of US cities, before heavy automation, it was not uncommon for people to get tickets when they haven’t been in the city or in the city at the date and time stated on the ticket.

There was only one way a ticket got entered into the city system at that time:

  • a police person or parking authority person entered the information

If people did not have proof it was not their vehicle or correct time, and did not go to court to challenge the ticket, the city earned extra $$$. The policing agency got a portion of those funds.

If someone did challenge the ticket, the designated police department officer would fail to show up and the violation would be canceled.

Since not many could challenge the tickets, the city earned far more money than the few cases it lost by no-show. The city never had to admit how the ticket got generated.

Clive Robinson February 10, 2024 9:52 PM

@ ALL,

It is that time again when the luna calender[1] calls the passing of one year into the next and the beginning of the over two week Spring Festival so,

Welcome to the “Year of the Dragon”.

Dragon’s are the only mythical beast on the 12year Zodiac and they are considered to be very powerful creatures that are,

“Believed to have control of the seas and water”

Which might account for the mess the US West Coast is having with “sky rivers” from the pacific currently[2] as well as increasing tropical storms we are having from the Atlantic in Europe as well.

The Year of the Dragon is also considered an epoch of change, children born in the year are considered to gain power and strength and become great leaders and the like (this of course would have nothing to do with flattering the Emperor 😉

Anyway I wish all a better year than last, and hope it brings peace not further unrest and conflict.

[1] The lunar new year supposadly starts with the second new moon. However it varies across a time period based on where you are in the world. Technically on Greenwich East London on the Greenwich Meridian it happened yesterday a little before 11PM (22:59GMT). The Spring Festival continues untill the end of the first lunar quater and thus is about 15 or so days in duration and in Asia is a time of being with family etc. Thus a time where houses are packed full and also a time when a great many people travel at the same time. Which means packing them together in trains and planes and so it becomes a time for advantageous airborne pathogens to find new hosts…

[2] Sky or “Atmospheric rivers” are meteorological phenomenon where warm tropical air moves in a narrow stream towards the poles. Being saturated with water vapour when the air meets a cause to release the trapped humidity it falls as heavy to torential rain or snow. Sometimes they are benificial, sometimes not. It’s not unknown for two years rainfall to fall in a month, with land quickly saturating and the excessive run off causing significant soil erosion if not held in place by sufficient close rooted vegative cover,

https://www.usgs.gov/news/featured-story/rivers-sky-6-facts-you-should-know-about-atmospheric-rivers

Clive Robinson February 11, 2024 7:28 AM

@ Winter, ALL,

Re : Atlantic article

“Not so long ago, many Americans—and especially most Republicans—would have considered anyone supporting such a view to be little more than a deranged and hateful anti-American fanatic.”

Hmm,

Kind of says it all in way more ways than many, and those “fiddlers on the hill” with their “Strong-man” nonsense more and more strongly support such nonsense as though it is the only way they are going to keep doing their grubby dirty work of fiddling.

They say that Nero stood on a hill and fiddled whilst the heart of their Empire burned to the ground.

Is history repeating in some two thousand year slow revolution of the “breaking wheel” in a rut of predictable path unless it’s jumped out of the grove.

Clive Robinson February 11, 2024 8:34 AM

@ ALL,

Potential GPS and magnetometer anomalies

It appears that the Sun is having a bit of a strop and throwing more than just the toys out the pram currently and more likely in the next few days.

From a security aspect GPS abd radio systems will be effected thus keep an eye on SysTime etc as it’s going to have issues depending on your setup.

Likewise navigation systems and specially any microcontroller system with physical agency using GPS and magnetometers for location, velocity and direction, and in UAV’s worst of all ASL hight is going to be flaky.

So if you drive a car by GPS you might want to consider the old fashioned way of getting from A to B. And if you are yomping or goating into areas where mist, fog or other weather can reduce visibility you might want to keep your maps in hand and plot your course and check compass direction readings via solar position via clock (ie basic astronavigation).

Which brings in intercontinental flights at high altitudes especially near or across the poles. Radiation levels will be way higher than normal so if you are at risk or a frequent flyer changing your plans might be a consideration.

Also flights will have the same problems with GPS as will UAV’s and in addition HF radio is going to get crapped upon. Potentially with black outs at the poles and high background noise at most latitudes.

But there is an upside… For those at higher latitudes getting those extra doses of high energy particles heading your way, you should get sone good “Northern Lights” to see and photograph starting late on the 12th and going through to the 14th. So romantic but wrap up warm.

https://m.youtube.com/watch?v=pWfnozrR79c

Now for the longterm bad news, coronal ejections consist of a lot of matter moving at significant fractions of the speed of light some of it is very high energy and hits us over a short period of time thus really quite high in power.

Such high levels have to go somewhere which is either to be stored in chemical bonds or back into space, otherwise by the logic of radiation transport it ends up as the worst form of pollution “heat”.

This means the Earth’s ordinary weather systems are going to get a fairly large kick in the pants so some of the recent weather anomalies will continue and even get worse with potentially some new activities popping up.

So keep your eyes and ears open and stay alert and above all err on the side of caution and stay safe.

Hopefully this will go quietly and almost unnoticed by most, but there is the potential for some less than fun CME type events including loss of electrical and communications infrastructure on which most other infrastructure including supply chains are now overly reliant on.

Winter February 11, 2024 9:55 AM

@Clive

“… would have considered anyone supporting such a view to be little more than a deranged and hateful anti-American fanatic.”

But he is just that, a deranged and hateful anti-American fanatic.

A man who tried to get the vice-president murdered.

MDK February 11, 2024 12:48 PM

@Clive

re: Potential GPS and magnetometer anomalies.

Solarflare was X3.3 long duration event. Shortly after the flare Hawaii Big Island had a magnitude 6.x earthquake. Also, the Icelandic people are having heating challenges with a recent Volcano eruption and magma flow.

ResearcherZero February 11, 2024 6:08 PM

@Clive, @winter, @ALL

The media headline for that story should of read “Man Lays Egg”.

At least he finally admitted he is absolutely terrified of Russia.

VexTrio collaborates with dozens of associates to spread malicious content through a sophisticated TDS.

‘https://blog.checkpoint.com/research/january-2024s-most-wanted-malware-major-vextrio-broker-operation-uncovered-and-lockbit3-tops-the-ransomware-threats/

“We have seen actors, like VexTrio, who appear to manage their own system, while others take advantage of established cloud-based TDS offerings.”

‘https://blogs.infoblox.com/cyber-threat-intelligence/cybercrime-central-vextrio-operates-massive-criminal-affiliate-program/

ResearcherZero February 11, 2024 7:34 PM

@winter, @Clive, @MDK

Figures like Nero were also notorious cowards, hiding their fear with trumpet blasts. It’s sad and pathetic to see grown adults accepting such behaviour, nominating them to join the party, which increasingly has become a parade of fools. Horns, hats, streamers and all.

This anime scene comes to mind again – dreaming while awake

‘https://www.youtube.com/watch?v=2j3mtYRXV7c

  • Malware used by cybercrime groups, YoroTrooper and other advanced Russian threats.

‘https://www.justice.gov/opa/pr/international-cybercrime-malware-service-dismantled-federal-authorities-key-malware-sales

“Regarding YoroTrooper’s toolset, the actor uses several commodity remote access trojans (RAT) and credential stealers. For RATs, we have seen the usage of AveMaria/Warzone RAT, LodaRAT, and a custom-built implant based on Python.”

‘https://blog.talosintelligence.com/yorotrooper-espionage-campaign-cis-turkey-europe/

“the formation of a negative attitude towards NATO”

The document sets out a 10-year strategy for bringing Moldova within Russia’s sphere of influence.
https://edition.cnn.com/2023/03/16/europe/russia-moldova-secret-document-intl-cmd/index.html

“a framework used to control the online information environment and manipulate public opinion, enhance psychological operations, and store and organize data for upstream communication of efforts.”

‘https://www.mandiant.com/resources/blog/cyber-operations-russian-vulkan

“The thing about these projects contracted by NTC Vulkan is that they all seem to support the broader strategic goals of information confrontation.”

https://www.theregister.com/2023/03/31/vulkan_files_russia/

Deliberate cooperation between Tomiris and Turla.

‘https://securelist.com/tomiris-called-they-want-their-turla-malware-back/109552/

ResearcherZero February 11, 2024 8:50 PM

When you begin to believe that terrible things will somehow lead to a better outcome, at that point you have become irrational. If you continue to encourage others to engage in terrible behaviour — to advance your own agenda, then you have become completely delusional.

“This is for Trump,” announced one man in Florida as he punched a Latino gas station attendant in the head.

“I think my rhetoric brings people together,” Trump said last year. (Perhaps, in hospitals, courts and morgues.)

‘https://abcnews.go.com/Politics/blame-abc-news-finds-17-cases-invoking-trump/story?id=58912889

“When there’s a crash, I hope it’s going to be during this next 12 months because I don’t want to be Herbert Hoover.”
https://edition.cnn.com/2024/01/08/politics/trump-economy-crash/index.html

“What’s going on in the country that a single person thinks this guy would still be a good president when he’s said the things he’s said and done the things he’s done?” Kelly said in a recent interview. “It’s beyond my comprehension he has the support he has.”

‘https://www.washingtonpost.com/nation/2023/11/20/trump-aides-cabinet-critics-election/

“Did the January 6th insurrectionists display patriotism as some of them claim they did?”

“No. Of course not,” DeSantis replied. “I mean, that was not a good day for the country.”

https://www.washingtonpost.com/politics/2024/01/05/trump-desantis-jan6-patriotism/

Clive Robinson February 11, 2024 9:28 PM

@ Research Zero, Winter,

Re : Man lays Egg and wees the bed?

“At least he finally admitted he is absolutely terrified of Russia.”

And much else besides.

The pathology of the personality suggests many things that are neither desirable in a leader or in an adult human.

As for scared of you have to ask why he would be in effect “terrified of Russia” and the answer is not for what the state is or it’s ability to create war etc…

No it’s in his past, it’s something he’s done that is either craven, criminal or both. And he’s been recorded doing it in some way.

Something that he could not bluster through, that would destroy not just his political and business life but even his personal life.

In part it accounts for his pathological desire to find the same in others, and where it can not be found create it. Because at heart he believes that all people in his position have similar personal failings and that they can be controlled by such as he can be.

But what would a man apparently without shame, actually be that shameful of?

And at the end of the day that was what the Steel Dossier was all about. Trying to find a pressure point to apply leverage, and that obviously scared the man and I guess that it still hangs over him in his head. Which suggests that he believes there may be evidence of such shame that could or has been found.

So is he in the panty poisonors pocket? or just believes he is? And given his basic pathology what would scare him the most?

Just something for people to speculate on.

But the fact is we know one thing from it, he will in all probability fold like a wet cardboard box if push comes with even a breath of chill wind from the East.

Is that desirable in someone who believes he’s going to be leader of the free world? Especially in times of considerably rising tension on the world stage?

I suspect some will speculate what I think as to a short answer to that question. Even though what they think, may say more about them and their outlook on life, than it does about me.

Winy February 12, 2024 2:33 AM

@Clive

Something that he could not bluster through, that would destroy not just his political and business life but even his personal life.

Let’s assume he is a narcissist. Then his biggest fear is falling of the pedestalhe build for himself. That he is shown to be a coward fool.[1]

If there was undeniable footage where he is seen, eg, cowering at the feet of someone begging for something. Or being made fun off big time.

[1] The person he knows he is. People that keep talking about how great they are 24/7 have something to hide.

Winter February 12, 2024 3:51 AM

@Clive
Re: compromising material

PS:
Some old news about the Russian interference with Trump:
‘https://www.businessinsider.com/leaked-russia-docs-refer-to-compromising-material-on-trump-guardian-2021-7

Robin February 12, 2024 4:09 AM

@Winy: “People that keep talking about how great they are 24/7 have something to hide.”

This is absolutely true. Trump is Exhibit #1, Johnson in the UK is Exhibit #2.

However, we are deep down the rabbit hole, because neither of these people attempt to hide behaviour that most people consider to be so outrageous and so shameful that it would be grist for blackmailers. To paraphrase @Clive above: “men apparently without shame”.

Are they truly without shame or have they cynically reckoned that they can terminally offend the majority, knowing that they can still win in systems that depend on narrow margins, by manipulating the hard of thinking? Johnson appears to have gambled and lost – although there are deranged voices calling on Sunak to bring him back; but Trump looks as if he has at least a sporting chance of coming back.

Robin February 12, 2024 4:34 AM

Meanwhile, in France a massive cyberattack has resulted in the data of about 33 million residents being stolen, about 1 in 2 of the population.

Background: for any healthcare treatment in France, the state pays a fraction of the cost and most people also have health insurance to cover the rest. There are businesses that act as the intermediaries between the state administration services and the insurers and it’s these “middlemen” who have been attacked.

The official line is that the data itself is not very sensitive – name, marital status, date of birth, and social security number* – but could lead to phishing attacks, or be used in direct attacks on individuals if combined with other (unspecified) data stolen elsewhere. “Be careful”, says the official spokesperson.

The attack is not well described: it ” … was carried out by usurping the IDs and passwords of healthcare professionals.”

Article (in French):
h xx ps://www.lemonde.fr/pixels/article/2024/02/07/piratage-de-viamedis-et-almerys-les-donnees-de-plus-de-33-millions-de-personnes-concernees-selon-la-cnil_6215292_4408996.html

*which already look quite sensitive to me, but there were no contact details or health status data

Winter February 12, 2024 6:21 AM

@Clive, Robin

Re: compromising material

There has been a lot of speculation about the type of material the Kremlin might have on Trump. Let’s do our own speculation. Just for fun.

The original rumors were about a movie with female workers peeing on a matras (see link above). Given their profesion, I assume the video would also show him unclothed.

Now, there have been several such stories, involving eg, Stormy Daniels, minors, and violent abuse. They made Zero impression on The Donald.

The one thing that ever touched a nerve of The Donald was the small hands joke.

What if, the alledged video shows it was true? 😉

What would The Donald all do to suppress it if it did show it to be true?

Clive Robinson February 12, 2024 7:33 AM

@ Winter, ResearcherZero, Robin, Winy,

Re : compromising material

“The one thing that ever touched a nerve of The Donald was the small hands joke.”

What is it about Republican Presidents the century and little hands… GWB had that “walk like a cowboy” thing…

In the UK we have a couple of expressions that are shorthand for an observation about phallic compensation by physical status symbol. With the observation being “Big car little ….” And you have,

“Big car syndrome”

As the euphemism for the physical short coming compensation.

So “smaller than a sub compact?” Less than a Smartie EV, perhaps less than an electric unicycle?

It would be embarrassing but I suspect not enough on it’s own. Thus maybe he has some other compensation going such as cross dressing or strapping / caging / binding. Then there is that “golden rain” stuff, maybe he was actually the recipient…

Personally I care not what kinks and swerves that might be involved providing people are not being hurt. Heck we know from history many leaders had them and whilst some were truly appalling others like an ancient Greek having a stable for “Pony Play” were just quirky hobbies in comparison. But then I don’t have any time for “Strong man posing” or “Macho posturing” or any other of that form of compensatory stupidity like having excessive numbers of children. But in certain cultures you find the dumb,

“A man is a man and stands alone at the head of his house”

It’s what some incorrectly call Caveman Culture, it’s actually just an excuse for self entitled effectively unlawful, antisocial, often criminal behaviour.

As the sinister side of,

“Individual Rights v Social Responsibility”

But it’s noticeable that Religion often features strongly for the “deities command” excuses for such unacceptable behaviour. Which brings us back to the “King Game” and the nonsense behind “The Estates of man” that some oh so desperately want to drag us back to. One sign of which is the glorification of the past, and the pretence it gave certainty and predictability to people which an honest appraisal of history indicates was either false or worse than slavery. A major warning sign of such people is their affected status and signs of supposed superiority. Often it’s clothing, that you can or can not wear due to your inherited cast status but there are many other signs that lower casts should grovel on their knees in the dirt before them.

The fact such people hold back mankind and its development and condemn all including themselves to a short brutish life full of pain and little else and will desperately fight to keep it that way, tells you most of what you need to know.

Worse though is that the cast system is a “closed stud breeding” system based around “Strong blood” and “not diluting the blood” notions. Well it gives rise to significant inbreeding and all sorts of genetic problems including whole varieties of madness, as the European Royal Houses and Aristocracy show. And in the case of the Spanish Hapsburgs that truly awful facial deformation and increasing lunacy infertility, and sterility thus cessation of the entire family line…

Do ordinary people want to feel subservient to such aberrations especially give that they are self inflicted by idiocy?

AL February 12, 2024 12:13 PM

““What’s going on in the country that a single person thinks this guy would still be a good president when he’s said the things he’s said and done the things he’s done?” Kelly said in a recent interview”

I hate to be caption obvious here, but it is the two party system that relegates 3rd parties into being spoilers only that has a lot of people disillusioned. The elites have figured out how to work this 18th century “democracy”.

What would fix it? Ranked voting, instant runoff, any kind of runoff system. But right now, Trump can win with a plurality.

JonKnowsNothing February 12, 2024 12:16 PM

@All

re: Unblockable Phone Numbers

There are no shortages of things in telephony and smartphones that go wrong or can be exploited but there appears to be a new by-pass exploit or new to me.

I heard about this some weeks ago and recently got several of these unblockable number calls.

In the USA, it is illegal not to show Caller ID and Phone Number. Nearly every device will show this, even old POTS handsets with minimal LCD will show the name and number, and if they have the “announcement” feature will audio the name w odd pronunciations of course.

In this case

  • the caller is UNKNOWN
  • the number is UNKNOWN

Yep, the phone number is not recognized as a phone number. (first hint)

If you do not answer, normally on a smartphone (iPhone), all you get is a Missed Recent Call notice. However, in this case the UNKNOWN caller sends a text msg which is accepted by the phone.

The text message is name UNKNOWN phone UNKNOWN and contains (in my case) what looks like Thai Font Characters, perhaps a word or too in English (eg YES or YEAH), and link to a phone or website; hard to tell which because it is mostly in Thai Font Characters. (second hint)

If you try to use the Block This Caller option on the phone, the phone does not recognize the phone number so the Block Number feature will not work. (third hint)

I contacted the service provider and they told me they cannot block it from their end. (Oh??). They said that anyone who has the smartphone number can sent a text msg and they cannot block that aspect either (Oh???). Their suggestion was to download their “official security app” and use that to block the UNKNOWN from the phone (Really??). They mentioned that their official security app would require access to almost all aspects of the phone (Hmmm??). (fourth hint)

SWAG
This is font-spoofing method that targets the CDR (call detail record) which tracks all calls across the telephony system. CDRs have origination, destination and call duration information. CDRs used to be a common source for the phone call list on bills but as more bills are e-bills and services is all-included, fewer CDRs are consumer printed.

They are used by LEAs and inter-service provider exchanges. They are still used in back end systems.

First, this exploit method allows the exploiter to “make a connection” to a phone. The CDR would record that as source and destination. The next part is the CDR accepts the spoofed info as “blank” or invalid.

The CDR is recording what is supposed to happen in the switch but in this case, the exploiter gets access to the switch while disabling the CDR record of it.

There are a lot of switches on the backbone and a lot of manufacturers. Which ones are susceptible to the exploit is TBD. However this exploit technique is the type that the 3Ls and similar would use discreetly. It seems that 3d party exploiters have it now.

vas pup February 12, 2024 5:48 PM

@Jon’s post https://www.schneier.com/blog/archives/2024/02/friday-squid-blogging-a-penguin-named-squid.html/#comment-432270

Major provider of landline and wireless service in US – AT@T – did not provide reliable meaning informative service for caller id name in particular even they do know the owner of the incoming phone call.
There is ANI – automatic number identifier with is used by 800 and similar numbers so even *67 will not prevent identification because it is sending verifying ‘ping’ to caller. Many years ago Bruce objected that will all have such feature to protect victims of home abused hiding from their violent spouse. Sorry, I don’t buy this argument. Moreover, I still can’t get technical problem when voice mail on your cell phone is not stored on your phone as text message not on provider server and you need call them to listen to it.

I guess such app will be in demand if some shadow forces behind will prevent its development and implementation.

vas pup February 12, 2024 5:49 PM

Cybersecurity unicorn Wiz eyes major expansion, public stock offering
https://www.timesofisrael.com/cybersecurity-unicorn-wiz-eyes-major-expansion-public-stock-offering/

“US-Israeli cloud security unicorn Wiz on Monday announced a hiring plan, as the startup embarks on a revenue growth path and eyes a public stock offering.

Wiz said it is planning to add another 400 employees over the coming year, and increase its headcount in Israel, the US, Europe, and Asia-Pacific. Headquartered in New York, the Israeli-founded software startup employs 900 people, out of which at least 150 currently work in Israel.

Considered one of the fastest-growing software startups, Wiz said it has reached $350 million in annual recurring revenue (ARR) in 2023 in less than four years and had set itself a goal to get to $1 billion.

For its growth plan, Wiz said it hired Dali Rajic as president and chief operating officer to help the startup prepare for an IPO. Rajic, an industry veteran last served as chief operating officer and president of Nasdaq-listed cyber security firm Zscaler.”

ResearcherZero February 12, 2024 11:25 PM

@ALL

Physical fear is also common among people who pretend they are not cowards, and the fear of people finding out that they in fact are. The obsession with the control of public perception of one’s own public image, is often a more powerful force than reality itself.

Compromising material revealing the true nature of an individual might invoke similar fear.

Plus all that kompromat in their dosier… 😉

“specific informational triggers to create the emotions necessary to think, and act, in a desired way”

The mere idea of it’s existence, and the resulting invocation of self doubt might suffice.

‘https://www.news.com.au/technology/online/internet/us-texit-war-threat-being-stoked-by-russia/news-story/f7b01575b7a75d9831a21af8f753c89b

The campaign led to sanctions by the EU last summer on two Russian IT companies, Structura National Technologies and Social Design Agency, over their involvement in it. According to US authorities, the two companies are believed to be responsible for a similar Russian disinformation campaign in Latin America.
https://www.theguardian.com/world/2024/jan/26/germany-unearths-pro-russia-disinformation-campaign-on-x

A leaked Kremlin memo told Russian media that it is “essential” to use more Carlson segments in their coverage. 😉

‘https://www.mediamatters.org/tucker-carlson/tucker-carlsons-upcoming-interview-putin-tracks-his-long-history-pro-kremlin

It disqualifies anyone who took an oath and then “engaged in insurrection or rebellion against the same, or given aid or comfort to the enemies thereof.”

‘https://hls.harvard.edu/today/does-the-14th-amendment-bar-donald-trump-from-running-for-president/

The briefs underscore the impression that this will be a case for the ages and one of the toughest in the court’s history.
https://www.latimes.com/opinion/story/2024-01-25/donald-trump-supreme-court-14th-amendment-section-3-amicus-briefs-harry-litman

ResearcherZero February 12, 2024 11:35 PM

@Clive

It’s essentially what you were commenting on. Pressure points, and triggering them. The closer to home the better. They are very good at it. I’ve seen it in action. Impressive.

“After 400 computers and servers were shut down, we worked mostly on paper.”

‘https://www.bleepingcomputer.com/news/security/ransomware-attack-forces-21-romanian-hospitals-to-go-offline/

Cyberattacks on hospitals and health care organizations more than doubled in 2023, impacting over 39 million people in the first half of 2023.

‘https://www.wired.com/story/cybersecurity-marginalized-communities-problem/

“This evidence supports calls for more protection of medical care and civilians and highlights the need for further investigation of damage to protected civilian infrastructure.”

‘https://gh.bmj.com/content/9/2/e014768

A Florida man threatened election workers by asking at a polling place: “should I kill them one by one or should I blow the place up?”

Harassment includes ‘swatting’ calls to falsely report emergencies. (One in six election workers have experienced threats because of their job)

‘https://eu.usatoday.com/story/news/politics/2024/02/03/threats-against-election-workers/72328609007/

The officials at the conference never blamed either political party for the problems they’re facing, and they frequently couched their comments with emphatic statements about their commitment to nonpartisanship.

https://www.politico.com/news/2024/01/16/election-officials-fears-2024-00135378

“The partiality of our consciences, our inability to care about all who have a proper claim upon our care, is not the result of a constraint upon our budgets, or more generally upon our institutions of politics and government. It is the result of a constraint upon our imaginations.”

“Ethical principles are most commonly ascribed to the operations of reason, but we need to remind ourselves of the role of the imagination in moral action. Without the imagination, we would act only against wrongs that we ourselves have endured. We would be prisoners of our experience—which is to say, the experience of people less lucky than ourselves would be incomprehensible to us.”

‘https://www.brookings.edu/articles/how-voters-personal-suffering-overtook-reason-and-brought-us-donald-trump/

ResearcherZero February 13, 2024 12:02 AM

@Clive

Keywords dropped in an interview to trigger the target, keep the pressure on.

We don’t do ‘outcomes’ over here, so the snake continually eats it’s own tail. There is an old joke, if the police discover a murder during an investigation, they often drop it. 🙂

JonKnowsNothing February 13, 2024 12:36 AM

@vas pup, All

re: I don’t buy it – either

It’s been a while so please ignore any inconsistencies…

Consider how telephony path works in modern equipment

Handset –> Router/Switch/Gateway …. gateway/switch/router <– handset

However, in modern systems, what is transmitted is not a single threaded link conversation Handset-handset, but a mix of many conversations sliced and diced and bundled up and transmitted at high speed through the bulk of equipment in the middle. On the far end the destination packets are sifted out and passed on to the receiving handset.

All along the pathway, the originator and receiver have to be known in order to get to the destination. Any errors in the packet will be kicked with a retry response.

Along the pathway various parts of a CDR are pulled by the owners of the middle equipment. This is for FTC network neutrality reports. They know which carriers are sending stuff into their systems and where the stuff is going. Any errors would be kicked with a retry response.

As the data is moving back and forth with ACK and NAK responses and various metrics as required in the USA for the performance of this equipment, the packets are inspected for segment validations. This is VOIP, Voice over IP, which dices up audio of the voice into a binary data packet. As the packets transit the system, the sender’s system gets data ACK and NAK as to how the connection is working. At any point the connection can be shifted to a different middle configuration by traffic analysis systems.

  • you cannot get there from here, unless you know where here is, and know where there is.

If someone has found a way to exploit the entire chain of router/switch/gateway to remove the required source and destination information from the data packet and transit sequence, that would be new news indeed.

The arcane aspects of switches and gateways are so complex that even bonafide experts do not know all the interactions.

ResearcherZero February 13, 2024 4:29 AM

@JonKnowsNothing

“But that is impossible Sonny! They’d need some type of additional physical cable…”

Like in the days of vaporous exhalation formerly believed to cause disease. It’s pretty surprising who isn’t paying attention to those kinds of details either, or the equipment.

ResearcherZero February 13, 2024 4:52 AM

collection efficiencies of ∼70% at NAs as low as 0.5

“an important step toward on-chip integration of single-photon sources at room temperature. Excellent photon directionality is achieved with a hybrid metal–dielectric bullseye antenna, while back-excitation is permitted by placement of the emitter in a subwavelength hole positioned at its center. The unique design enables a direct back-excitation and very efficient front coupling of emission either to a low numerical aperture (NA) optics or directly to an optical fiber.”

‘https://pubs.acs.org/doi/10.1021/acs.nanolett.3c03672

‘https://medicalxpress.com/news/2024-02-older-adults-decision-scams.html

“Young adults, who see their lives stretching ahead of them, tend to prioritise future-oriented goals such as gaining knowledge. Older adults with shorter time horizons are motivated to prioritise present-focused goals such as emotional satisfaction and positivity.”

‘https://theconversation.com/the-trust-trap-why-older-australians-are-more-trusting-and-what-that-means-for-them-119092

AL February 13, 2024 2:15 PM

@ResearcherZero
“It disqualifies anyone who took an oath …”

The one problem I see is, in addition to the amendment, there is also a law that covers the same thing. That would be this law.
https://www.law.cornell.edu/uscode/text/18/2383

Now there is a prosecution against Trump related to Jan 6th, but I’m hearing that there is no charge under 18 U.S. Code § 2383 – Rebellion or insurrection.

So, if we’re leaving a jury out of this, who has the standing to decide whether Trump is disqualified? Trump’s lawyers is using the lack of a prosecution under this statute as a reason why he shouldn’t be deemed ineligible to hold office.

fib February 13, 2024 8:49 PM

@Clive Robinson

Re: EMP’s

Overwhelmed by the the non-sense of life under social media, I sometimes think a few months without electricity could reset the course of mankind. Ah, it would be a breath of fresh air. It would be a definitive lesson on humility.

Hard it would be, but net positive in the long run.

Winter February 13, 2024 11:16 PM

@fib

I sometimes think a few months without electricity could reset the course of mankind.

For many people in the world, most people in the developed world, this would be a few months without food, water, and transportation.

Yes, that would indeed reset the course of mankind.

ResearcherZero February 13, 2024 11:58 PM

@AL

Any decision that is made can be appealed to the highest court, given it’s significance.

The conditions were already set by decades of self-interest, selective hearing and willful ignorance. Decades of ignoring fraud by the likes of Trump helped set the jam.

There are all those old tales of the dangers of hubris and examples of it from history.

Politics. Hence why you don’t play a Joker for the House. It’s a face card. If you want to get a bill passed there is a system designed for that. Congress is far from perfect, but it’s a far wiser decision than dropping a hand grenade from the speaker’s podium. Mitch wanted to overturn Roe vs Wade so badly that he was willing to hire a clueless clown to do it. One who was involved in some 4000 civil suits to avoid his financial liabilities.

Not any clown either, closely trailed by Russian intelligence since the 1980’s, spit-balling ideas on how to shatter the drive shaft by thoroughly jamming the gearbox. Trump was so utterly clueless he saw Russian surveillance and influence actions as business opportunities.

Why intelligence agencies warn about the dangers of having US$1b+ in personal debt.

Trump is not the first mug to ignore intelligence briefings, but he is the first to ignore reality first-hand while reality is taking place right in front of him, repeatedly.

Anyone outside of politics who invited insurrection or gave aid and comfort to the enemy would be on the hook. To avoid being labeled politically biased they put on the Kid Gloves.

The average punter has no legal understanding. They couldn’t spot the King for the Fool.
Blend that all up in a cooked information environment and it’s all “cool-aid” to them.

The worse thing is that the politicians were long warned this is exactly what would happen. Mitch included. The rest who initially backed Trump including John Bolton, and others too.

New attack chain basically hides a shortcut within a shortcut, which is used to bypass Defender SmartScreen…

“Windows automatically hides the .url extension, making it appear from the filename that the file is a JPEG image.”

Thinking that they have already downloaded the image file, the user unknowingly triggers the URL, downloading the payload when attempting to open the file.

The attack “used the imagress.dll (Windows Image Resource) icon library to change the default internet shortcut file to the image icon using the IconFile= and IconIndex= parameters to further deceive users and add legitimacy to the trojan horse internet shortcut.”

‘https://www.trendmicro.com/en_us/research/24/b/cve202421412-water-hydra-targets-traders-with-windows-defender-s.html

A walk through of the vulnerability by Trend researchers:

‘https://www.youtube.com/watch?v=U7R8YgZruEc&t=152

Emails with voicemail messages used as phishing lures. The invitation to “Listen to the voice message” links to a malicious word document on OneDrive.

‘https://www.proofpoint.com/us/blog/threat-insight/bumblebee-buzzes-back-black

Similarities with Qakbot, obfuscation, analysis and security evasion…

‘https://www.zscaler.com/blogs/security-research/d-evolution-pikabot

Info stealer patches the Windows kernel and Windows Boot Loader binaries to disable PatchGuard and Driver Signature Enforcement at boot.

‘https://unit42.paloaltonetworks.com/glupteba-malware-uefi-bootkit/

ResearcherZero February 14, 2024 12:17 AM

@AL

Congress could have impeached Trump for inciting insurrection, making it easier for a prosecutor to then take action. The politicians were more concerned with their own jobs.

They all knew the danger of their actions, they decided to pass up that responsibility. There was a long running precedent of avoiding responsibility leading up to that point, that stretches back decades. Eventually it caught up with all of them and everyone else.

‘https://www.cnn.com/2024/02/13/health/maternal-syphilis-rates-surge-infant-risk/index.html

JonKnowsNothing February 14, 2024 1:21 AM

@fbi, @Winter, All

re: few months without electricity could reset the course of mankind

There are a good number of places where utilities are scant or unreliable.

In California, after the 1989 Loma Prieta earthquake, small farming towns located 1-3 hours from San Francisco, waited 6 months or longer for basic services to be restored.

In places where the US electrical grid fails often, people may have to go 2-4 weeks without electricity. Which means:

  • BBQ the entire contents of the fridge and freezer; the dogs get all the meat they can eat

Places like Puerto Rico never recover from urban storm disasters and electricity is never restored outside the major urban centers. The reasons are Complex Relationship the the Mother Ship of USA Mainland, and a Political Shortage of Ready Cash to repair anything other than the basic damages.

Places in the USA that have experienced serious interruptions get NADA. Fires, hurricanes, tornadoes, rain bombs, all result in devastation and no repair of the infrastructure. The reasons are Complex Relationship between What Was There and What The Rules now say Can Be There. (aka building and zoning code updates)

There is a complex dance between the power provider PG&E and County and State Regulations.

Only recently have Off The Grid homes been approved.

Normally you must have electricity to have “a house”. The County will not grant “certificate of occupancy as a home” without certain building aspects to be in place.

PG&E, surprisingly does not provide electricity to just any location. The property must meet residential (home) requirements and have those in place BEFORE they will bring in power.

A parcel of land does not qualify to have electricity unless

* There is an official house

and/or

* There is a well with working pump installed

If you are wondering about businesses electrical connections those fall under different zoning laws.

It’s a Catch 22 for people who got burned out, flooded, earthquake flattened, and forgotten by Urban Councils.

There is also the teeny issue of how fast a connection can be re-established. If it was all burned to the ground, 6months-6years is the build out timetable. You must have all permits, plans, designs, architectural plans (10 sets), inspections, and electrical load calculations in place and submitted before PG&E will put your application In Queue.

In California our Public Utility Commission (PUC) which oversees PG&E should be renamed to

  • Please Use Candles

Winter February 14, 2024 2:13 AM

@JonKnowsNothing

There are a good number of places where utilities are scant or unreliable.

What do you think happens with Tokyo-Yokohama, New York, Paris, or London when there is no electricity for a few months? There are millions of people living very close together. The amount of water and food that has to shipped in, and waste to get out, on a daily basis is enormous.

Clive Robinson February 14, 2024 4:56 AM

@ fib, Winter,

Re : The leaves of autumn fall.

“I sometimes think a few months without electricity could reset the course of mankind.”

Depending on the time of year, which hemisphere and how high the latitude as little as 15days could kill between 1/3rd and 8/10ths of the population in the America’s where building codes are at best shoddy. By thirty days irespective of season or lattitude estimates are 80-95% dead or dying with less than three percent making it to or beyond ninety days…

Have a think on that, because what we spend our days thinking about in ICTsec is in effect at best the foam on an expensive coffee. Real security has it’s foundations way down, read on and be surprised 😉

Let’s start with an obvious one,

Ask people in California and Texas what a little “power outage” can do for you today…

In Cal you had PG&E deliberately turning power off for many hours at a time if it looked like the wind was going to blow at more than a restless breeze.

Why? Because PG&E’s managerial incompetence and desire to get bonuses for very short term shareholder advantage effectively caused the company to be bankrupted by legal action for civil damages near a 100billion all told. The action was from just some of those harmed by the damages from shoddy or non existant maintainence on shoddy or down right dangerous transmission cables causing fires… For the second time around…

https://www.cbc.ca/news/business/california-wildfire-pacific-gas-electric-bankruptcy-1.5620160

In short rather than “make good” after the first time PG&E managment significantly raised prices and did not do any of the work. Hundreds have died needlessly directly and indirectly and quality of life and duration significantly reduced for so many the word “countless” has real meaning.

More recently was the Texas energy outage where those managerialy responsible did next to nothing other than get on aircraft and fly to other places like “South of the boarder” out of jurisdiction just like bandits and criminals used to do.

In both cases the effect of managerial criminal greed, neglect and incompetence was the loss of electricity.

Less than a century ago, electricity was still a novelty. In way to many homes in the America’s it was used only for lighting and a little entertainment by the radio (both so inefficient they could warm a room). Thus it’s loss back then was not critical.

Now everything including your wrist watch runs on electricity and the loss of electricity effects everything. Mechanical clocks, control systems, thermostats, and much else swept away by microcontrollers. Leaving control systems that can not be over turned by hand, and in “the name of efficiency” made so complex it would be effectively impossible to try.

So your gas boiler won’t work without electricity likewise if you have one your gas cooker in many cases either. Back when I was very young our fridge had a “pilot light” because to the incredulity if not total disbelief of many these days it ran not off electricity but totally off of gas… Yes you can still get gas powered fridges for caravaning but it’s becoming almost impossible to find them and the multi power types all require electricity even when running on gas.

Supprisingly to many the main use for energy in homes is “moving heat” what few relise is that they have been conned. Much electricity is generated by gas these days if you start at the natural gas well head and measure things in terms of available energy (Kilowatt hours) you will be shocked by two things,

1, The transmission loss difference.
2, The consumer cost difference.

The loss of energy in a properly designed and implemented gas delivery network is a fraction of that of a typical electricity supply network in the America’s. The generation of electricity from gas is not exctly efficient even in well designed power stations, and heat is said to be the ultimate form of polution.

The result when you consider it from the generation of heat, in your home is that electricity is oh around six times more expensive… Worse the environmental impact of electrical energy distribution compared to gas even when done properly is way worse…

Yet now virtually everything runs on electricity… It stops and you freeze up in many ways, even in the heat of summer.

Because all other infrastructure runs on/by electricity, either directly or for communications, and I realy do mean all. The entire food production and delivery process. The entire water supply and sewerage take away. The control of vehicles on roads by traffic lights and delivery driver routes. Every where you look you will find that it all needs electricity and more recently computer communications.

Fun fact, all computer communications runs on electricity, the energy supply for which is 100% dependent on computer communications. If one stops the other stops, once both stop you can not bring it back again.

That is you get a “latch up failure” that in turn becomes a “cascade failure”. The only way out of this failure mode is the physical presence of “a man in a van” going from place to place manually overriding the switches, where it’s possible (often these days it’s not). But to do that first he or she needs to exist… Basically they don’t any longer the energy companies have replaced them with electrically powered computers 100% dependent on electrically powered communications. But even if he or she did exist, they are almost 100% dependent on electrically powered communications of data over electrically powered communications networks. But to know where to go and when and in what order to bring things up in to stop other issues such as startup surge trips, they would need information only kept or communicated by electricity…

By the time they even started sorting that out… He or she would be incapacitated or dead due to lack of water, food, health care and the rampant disease spread in the population in cities and urban areas. And that’s all before nut-bars with guns or other weapons try and stop them for various reasons from plain desperation through to religious nut-f4ck3ry…

You will hear about the rule of threes. Three minutes to die for lack of air, three days to die for lack of water, thirty days to die from lack of sanitation and about the same to die from starvation. If of course you don’t get wounded, murdered, or worse first by other desperate or deranged people.

But that’s all alright because a population so dumb it can not survive without electrcity or electronic communications are absolutly ideal for the self entitled to extort benifit from in ordinary times…

A lesson those in Texas who nearly froze to death or got bankrupted by energy costs going up by 8000% whilst those responsible went and lived it up “south of the boarder” will not forget over night.

But the Cal and Texas issues were in reality just “minor regional” issues… Think about the Colonial Pipeline issues, they were wider spread and effected about 1/3-1/2 the US population. More by luck than anything else it did not cascade as it could so easily have done.

But then think back a little what about the “meat packers” during C19 lockdown? Arguably the whole of the first world Americas were effected.

You notice how more and more such failures are via neo-con mantra pushed by self entitled people waving MBA’s etc becoming more and more fragile?

So far the America’s have been lucky, their breaks due to fragility whilst increasing in frequency have happened sufficiently seperately that things have so far had time to be sorted out before the next one happens.

But those “in between times” are getting shorter as the fragility due to stupidity worsens. So at some point in the not too distant future two or more breaks will happen sufficiently closely that they will overlap with a probability they become self reinforcing, thus potentially start a cascade, latch-up or both… What then? What use an MBA certificate or stock opptions? Or money in a bank where the computers don’t work?

Back in the 1930’s still just in living memory many people lived in an entirely different way. They usually had a year of food and water on hand that did not need electricity or communications and globe spanning supply chains just a “pantry and root store” and if a little wealthier a “feed store” for the four legged criters. They even had reliable sewerage and waste disposal “on the property” with a very high recycling rate. As for energy… Well the old saying “Wood warms you twice or thrice” is quite true think of it as “grow, chop and burn” phases. People get horrified when you talk of wood as fuel, because they think of mature woodland. That’s not how our ancesstors did it, look up “copicing” and “living fences” to see one way. But people also insulated their homes with “live stock feed” you would be surprised at the “R value” of a bale of straw.

My dad had a short run of “living fence” made of dwarf fruit trees effectively cross trellised. So fencing, and screening for privacy, fruit for preserving and materials for making baskets and hurdles or sticks for burning in a small stove to boil a kettle on for tea or fry up an egg or two for a sarnie.

The thing is a pint of boiling water if put in a hot water bottle will keep you warm in bed even if ice does form on the inside of the windows. Something that happened quite a bit when I was young due to power outages in the 1970’s two sometimes three nights a week.

They also knew that you did not need to wash the way we do today… Few realise that the amount we wash and the way we wash is bad not just for our mental health and bodies, but our clothes, and the environment, in terms of the staggering amounts of energy and polution and destruction of natural resources that are irreplaceable.

Making “Apple Vinegar” is something very small children can do, and did in times past and some still do,

https://www.theguardian.com/lifeandstyle/2020/nov/07/how-to-make-apple-cider-vinegar

One thing you can do is use it instead of detergent based chemical shampoo… Ever wonder why poetry and stories had the “love intrest of the swain” having hair that smelt of rosey apple blossom? Well it’s because she would wash her hair maybe once a week in apple vinegar.

OK maybe some people try to “over sell it” via the “No-poo” movment (serioisly no I did not make that up[1]) but articles like,

https://www.healthyandnaturalworld.com/wash-hair-with-apple-cider-vinegar/

Are what we used to do. And yes washing other parts of you with dilute vinegar has similar cleaning and microbial effects on pathogens.

Soap has always been a hard commodity to make. Basically you boil animal fats in a caustic solution and skim it off the top. Animal fats are hard to come by high energy foods essential for most forms of cooking, so not something you would want to waste. Making caustics is not exactly something you want to be doing either, the safest is generlly by using the ashes from burning certain woods (hence the term “potash”).

So clothes did not get washed much. It’s actually unnecessary. If you keep the essential parts of you clean and wear loose fitting wool underware that you “hang to air” you can rotate clothes around for six to nine months then make your soap in the fall at pig-kill time and let it cure and harden over the winter. Then have your “spring-clean” and hang cloaths up in the sun to “bleach”. Oh and bed atire with bedsocks and nightcaps were as much for cleanliness as they were for keeping warm. In London is the “V&A Museum” in south Kensington, that was once a swamp, thus available land for Prince Albert to put up his palaces to knowledge and learning. They have a very interesting library of information about what we might consider “low energy” or “environmentaly friendly” living. It sounds frugal but people lived well within sustainability and quite healthily (it was coal needed to power industry that together made people unhealthy and killed millions before their time well into the 1950’s and beyond).

To see the “cleaning power” of simple/sustainable, just using white vinegar on a lint free cloth will bring back the sparkle to much of your home where airborne muck such as oils from cooking and smell of food have deposied oils and VOC’s around the place gluing down dust and muck and taking the shine off. Now think how much better apple vinegar smells. It’s also an effective food preserver and it’s needed for making many preserves, especially those low in acidity thus energy intensive “freezing” is unnecessary. Oh and an apple tree is bee friendly something we need desperately if we want to survive as a species.

Security is a funny thing, we tend to worry about the wrong things, thus doing it wrong. If you do not have a solid foundation to build on everything else is for naught in the long run.

[1] If you search on hair washing and no poo method you will find the likes of,

‘https://therighthairstyles.com/no-poo-method/

JonKnowsNothing February 14, 2024 9:11 AM

@Clive, @ fib, Winter, All

re: Large scale power outages

For really large outages all you have to do is check out any war zone. UKR, Gaza, various locations in Afrika, South America and even into the snow regions of the Arctic.

It doesn’t all have to be gun driven, it can be economic warfare or political policies that initiate the event.

In urban areas people have no idea how sewer pumps work or that they are even there. You need a pump to get stuff up hill or to move it before it congeals into a fatberg.

RL tl;dr

In a medium size town in Central California, there was a long electrical interruption event. It shut down power to a good part of the city. When the power came back on line, everything seemed OK until the phone calls started coming in.

One of the sewage pumps was an older model and did not have an auto-restart. The switch needed to be manually activated. Someone forgot to drive out to the pump site location to do that.

As a result of the not-working-pump, raw sewage spurted up the manholes and covered a largish section of highway and contaminated land on both sides of the road.

Raw sewage requires a HazMat team to come clean up the mess. The contaminated areas are scraped below the seepage line and hauled in special HazMat trucks to a special HazMat processing facility.

It wasn’t a one-off event, it happened whenever a power outage was long enough that the pump kicked off and they forgot to reset the pump.

The reason the city didn’t fix it was that pumps of that size are expensive. They didn’t have the funds to buy a new pump and the city insurance paid for the hazmat clean up.

The homeowners that got the raw sewage fountain were not happy at all. The city wasn’t particularly worried about their ire, as they represented less than a bakers dozen of voters.

AL February 14, 2024 11:40 AM

@ResearcherZero “Congress could have impeached Trump for inciting insurrection”
Well, it was Jan 6th, and Trump was out of office on Jan 20th. So, that would be pretty quick. And an impeachment is like an indictement – he’d still have to be tried in the Senate.

It’s not clear to me that the impeachment process is applicable once he’s out of office. So, one has to wonder why the justice department (under Democratic control) passed on the insurrection statute, which would be applicable after he was out of office.

I think that with an ongoing Jan 6 trial, that there should have been a charge under the insurrection statute. It’s up to the courts now to wrangle out how has the standing to decide if Trump has violated the insurrection clause in the constitution.

To be truthful, I think this country (U.S.) has had it.

Clive Robinson February 14, 2024 2:44 PM

@ JonKnowsNothing, fib, Winter,

Re : Not all baskets are cases that are the same.

“For really large outages all you have to do is check out any war zone. UKR, Gaza, various locations in Afrika, South America and even into the snow regions of the Arctic.”

Whilst it gives an idea of the possible or potential carnage of an event, which lets be honest is usually pretty dire at best… what it does give is any indicator of possible or potential response, which for those around can range from minor inconvenience to life long or generational health issues and loss of utility of land indefinitely.

You mention “fatbergs” well the world’s largest when “found” and admitted to, was in London’s Thames Water region[1]. In a South West London very historic market town and once administrative center for the County of Surrey called “Kingston-upon-Thames”. Whilst not a scenic idle as other towns and cities in Surrey are, it is a major traditional shopping center and University town and more recently night-spot thus attracts people from much of London and the home counties to the South and West all the way out to the south coast and up to Oxford in the Thames valley so easily over a thousand square miles of city, urban, suburban and rural populations. The Uni students come from all over the world as the “aerospace”, “art” and “business” schools have international reputations and more recently the school of nursing is getting a similar wide spread reputation.

So it’s not surprising that there are a lot of restaurants and fast food joints ranging from almost “transport cafe” through Mucky-Donalds all the way up to full silver service. And there are several interconnected “food streets” to the east of the town center as well as rising numbers of restaurants along the River to the West of the town. So it’s safe to say there is “a 541tload of greasy fat and digested product” getting in the sewers some of which are pre-victorian (around the historic Catlan bridge and church).

Then one day very nearly a decade ago just outside Mucky-D’s this happened,

https://www.theguardian.com/environment/2013/aug/06/fatberg-london-sewer-grease-blockage

Not the breathless reporting about the event and the opportunity it was said to present…

Then look again, the sewer is eight foot in diameter and back fourty years ago before Thames Water, most such sewers were “walked” twice a year by people to inspect, clean and maintain and there were never any fatbergs or anything like them. Fatbergs do not spring up over night but take years sometimes decades to build up.

Thus the real story is no inspections, no maintainence, no cleaning, because it detracts from shareholder value and management bonuses, share options etc etc.

But just to confirm this London has an increasing epidemic of fatbergs some ten times or more bigger,

https://www.theguardian.com/environment/2017/sep/12/total-monster-concrete-fatberg-blocks-london-sewage-system

None of those opportunities have arisen and now Thames Water tries to keep news of them as “down-low” as they can, and the MSM “respect their wishes” as it were…

The fact is fatbergs are a sign of very very poor operating practice effectively so bad as to be boardering on criminal negligence.

Financially they cost a fortune to resolve not just to the operating company but businesses and homes that are upto several hundred meters away. Kingston town center was effectively closed for months not days or weeks and the economic knock-on lasted several years, and I’m told the Thames Water work was “bodged” and that Kingston Town center is now closed to traffic yet again public transport on diversion away from the businesses because of it…

It’s what some call very sarcastically,

“Capitalism at work in the public sector”…

As for Thames Water’s real management, who are they? It’s a good question, now that without a major bail-out they are within a month or two of full and absolutely unavoidable bankruptcy according to not just analysts but a wider circle of those with inside knowledge,

https://www.bbc.co.uk/news/business-66051555

These utility disasters are a major part of the Thatcher-Reagun legacy of “the free market knows best” neo-con mantra. The reality is the only thing they know how to do is fill their boots by asset striping and debt leveraging and blackmailing governments and extorting those who have no choice but to be their customers.

So it does not need a war or cyber attack to do serious and irreversible damage just the capricious behaviour of neo-con venture capitalists and sovereign funds and pension schemes (that as you noted a few days ago “don’t pay out” if they can robo-dead you).

[1] Thames Water I’ll be honest do not have a good reputation in London or much of the UK for much of anything other than maybe demanding money and failing to do what is paid for then demanding more then pleading bankruptcy etc in court. For example a number of previously navigable rivers for centuries, under their control silted up developed reed beds and now flood regularly. Their excuse is it’s “re naturing” or some similar nonsense. Likewise a centuries old and still very much in use water way the river Thames to the West of London regularly floods and raw sewage gets into the river and rises into peoples homes and gardens. Something that did not use to happen so would appear to be due to their action or inaction and wastage of resources on grand schemes and shareholder value.

vas pup February 14, 2024 4:17 PM

DNA testing: What happens if your genetic data is hacked?
https://www.bbc.com/future/article/20240212-dna-testing-what-happens-if-your-
genetic-data-is-hacked

“It seemed to be an ethnically targeted attack: Golem boasted about having
access to the accounts of people of >Ashkenazi Jewish heritage who had sent
their DNA to 23andMe, and offered to sell it to whoever was prepared to pay.

News began to circulate suggesting the data breach on Friday 6 October 2023 may
have even had antisemitic motivations.

A post purportedly from Golem offered for sale “tailored ethnic groupings,
individualized data sets, pinpointed origin estimations, haplogroup details,
phenotype information, photographs, links to hundreds of potential relatives, and, most crucially, raw data profiles”. There was a graduated pricing scale, ranging from 100 profiles for $1,000 (£790) to 100,000 profiles for $100,000 £79,000). “On offer are DNA profiles of millions, ranging from the world’s top
business magnates to dynasties often whispered about in conspiracies,” the post
continued. It has since been deleted.

Data breaches happen all the time, says Brett Callow, a threat analyst with
cybersecurity firm Emsisoft.

“These incidents are very common and no company is immune,” he says. But genetic information is a very special kind of data: while you can change your passwords, credit card number or bank details if they
fall into the hands of a hacker, you can’t change the sequence of your DNA.

“When your DNA data gets breached, there is absolutely nothing you can do about it,” says Callow.

The targeting of any group on the basis of what their DNA reveals about their ethnic heritage would be deeply worrying. The potential targeting of individuals with Jewish and Chinese heritage in the 23andMe breach has been raised by a number of leading figures in the US, including the attorney general in Connecticut and a member of the US Senate Committee on Health, Education, Labor and Pensions.

A data breach that included ethnicity estimates given in ancestry reports
could mean that Jewish people who had taken a DNA test could potentially have a
permanent digital yellow star next to their names, photographs and geographical
location.

Regardless of the motivation, any breach involving genetic data has potentially wide-ranging consequences. “There is no way of knowing who has access to it now, how many people have access to it, or what they may choose to do with it in the future,” Callow says. “Genetic data does imply health outcomes in a lot of cases, and that is something that may affect a person’s long-term employability or perhaps the likelihood of dying early or suffering a debilitating illness. Potentially, this data could be of interest to employers or insurers.”

Health insurance companies in the US are barred from using genetic information to calculate risk, but there is no federal law to prohibit its use by life insurance companies. It’s easy to imagine a scenario where leaked genetic data might lead to higher premiums or customers being denied cover entirely because of their genes, or being rejected for a long-term bank loan or mortgage because leaked data suggests a higher likelihood of the lender developing Alzheimer’s and passing away before it could be was repaid in full.

23andMe now faces several class action lawsuits in the US as a consequence of the data breach. In January, the company admitted that hackers began infiltrating its customers’ accounts in April 2023, and were able to continue for five months without detection.

Even if it were possible to keep data as sensitive as our genetic code safe from hackers, there is no guarantee that once we have consented to share it with a corporation it will remain in their possession. “These companies could be bought – the information could be acquired in that way,” says Callow. In December 2020, New York investment firm Blackstone bought Ancestry, one of 23andMe’s biggest competitors, for $4.7bn (£3.7bn). “Beyond the data, these companies really have very little value,” adds Callow. “They are entirely data driven. Genetic details can now be sold, traded, acquired, along with other corporate intellectual property and assets. The DNA has value, and that value
belongs to the company, not to you.”

JonKnowsNothing February 14, 2024 5:17 PM

@Clive, fib, Winter, All

re: poor operating practice effectively so bad as to be boardering on criminal negligence

A MSM report about the aftermath of a huge storm in Australia (1). Some of the photos show the huge power grid towers crushed to the ground.

  • [On Tuesday 02 13 2024] a deadly storm left hundreds of thousands across the state without power
  • crews were working to clear and repair damaged power lines and poles but given the extend of the damage it may take “days if not weeks” to restore power
  • [They have to] restart its huge … power station … after the generator “tripped” – automatically shutting down its four units, when six high-voltage towers on the … transmission line … were knocked down during the storm.
  • state government knew four years ago [2020] that those kinds of [high-intensity winds] downdrafts could knock out [a specific type of] towers. [Those towers needed to be replaced but where not replaced.]

“It’s time to hold Victoria’s big coal polluters to account. They caused this mess, now they can pay to clean it up.

There’s no better way to incentivise energy corporations to switch from coal to renewables than making them pay for the escalating climate damage.”

Australia Greens MP Tim Read

Nice PR thought, but everything has to to paid for. It all eventually falls on the people with the fewest resources, least access to alternatives, and no access to power, literally or figuratively.

Some folks think they can force wealthy oligarchs to pay out of their pockets. They will not. They will deflect any payments in a trickle-down format.

===

1)
HAIL Warning

ht tps:/ /www.thegua rdian.com/australia-news/2024/feb/15/victoria-power-outages-weatherproof-electricity-grid-australia-calls-lily-dambrosio

  • Push to weatherproof Australia’s electricity grid after storm leads to mass power outage

Clive Robinson February 14, 2024 7:46 PM

@ JonKnowsKnothing, fib, winter, ALL,

Re : He who pays the piper does not call the tune.

“It all eventually falls on the people with the fewest resources, least access to alternatives, and no access to power, literally or figuratively.”

As is so often the case,

“Those with the least, pay the most, as they can not afford to defend themselves.”

The way to be rich is to be totally self entitled, and never to spend anything or pay for anything. Further not to own anything so you have nothing that can be taken away.

The way to do the former is to get someone else to pay for you “as is your entitlement”.

The way to do the latter is to live behind a company and legal cut out.

I used to know someone who had a very small company they worked for and earned just enough to cross the “National Insurance” threshold that back then was something like sixty pounds a week. They fiddled the expenses system by working unsociable hours and having a company pool car held at the company office which was a room over a garage, just a few moments walk from where they actually lived.

In reality when I met him originally he kind of worked from home developing software for a well known mobile phone company through another small company that rented a space on a broom cupboard door in a then European Tax Haven as a side line to trading shares etc out of another tax haven in a warm place with nice beaches.

I never got to know all the details but at some point he upped sticks and moved home to Thailand and France / Germany / Holland where he owned but rented various places near a place called Maastricht where he spent about half the year. He’d fly back from a French or German or Dutch international airport to the UK or later come back on the Euro Tunnel. Always staying a few days short of the taxation times, except for Thailand where his girlfriend was from.

I’ve no idea how much tax he did or did not pay but his business interests earned quite a bit and he later moved into commercial property speculation which back then was definitely a rich mans game.

I once joked it was a waste of a good maths PhD to which he replied with a variation on an old adage of,

“The wages of sin are low, but so are the taxes, and the hours are real good.”

The last I heard he had settled down more or less permanently in Thailand after marrying his girlfriend in Europe and settled in to raising a family but ensuring the children were “British Born” and educated, thus technically able to hold dual passports.

Clive Robinson February 14, 2024 9:26 PM

@ Johknowsnothing,

Re : Goodby California.

I’ve been hearing news that homes in SoCal are,

“Hanging on the edge of an abyss.”

Due to lots of cliff face washout / erosion.

Only the videos all appear to be of just a couple of places…

All the news items are doing an,

“OMG this weekend the world will be washed away”

Shock horror, then going all numpty-brain the moment climate change or global warming is mentioned…

In the UK every year we loose a few homes over the edge and occasionally the odd lighthouse. But it’s kind of expected with the winter storms etc coming down the North Sea side of the UK eating out the “soft rock and soil”. It’s why I live many miles inland where even the flood rating is about as low as it can go 😉

JonKnowsNothing February 14, 2024 11:08 PM

@Clive, All

re: loose a few homes over the edge

The places referenced are in Los Angeles basin which covers a number of counties and many cities, aka metroplex.

The swank areas are built in steep canyons which caters to both the Art Set and the Rich Set.

The mountains around the LA basin are prone to huge fires and the canyons act like chimneys and fuel air-oxygen into the fires. The fires denude the hills of chaparral scrub. When the rains come, torrents of water scream down the canyons into the ocean. Water saturated dirt becomes mudslides the flow just as fast. Except LA has bottled up the canyons, built dams and retention blocks, placed housing and urban roads and infrastructure in the path of flowing water and mud.

Few have seen the LA River until recently. Some of us remember when the LA River flowed often. The size of the channel is a hint as to the power of the water scrubbing down the mountainsides.

The Rich Set does in California, the same as what the Rich Set does on the East Coast Hurricane Alley when their McD Mega Homes get washed out to sea: they pay fancy architects to rebuild them. They get a fancy house with extra bathrooms and they pay cash. Paying cash keeps the banks and the IRS out of their pockets and away from the books.

It’s the not-wealthy that have a problem.

In the USA the only Flood Insurance comes from the US Government. Who expects their house to be flooded and washed away in the dry desert? Very few will have flood insurance. Even if they have flood insurance, not all floods qualify for coverage payment.

There are all sorts of interesting aspects about the LA Basin. Many of the residential homes are built over landfills. Those landfills were not too well designed to start with and their “closure over layment” wasn’t done well either. In ground pools can cause problems because of that lies under just a few feet of soil.

The landfills themselves were situated in canyons. Canyons are considered prefect landfill spots because you can fill it from bottom to top with trash and when you are done, the top is flat and you can build houses on it. The canyons are still there and they operate the same way as all the other canyons in the basin; except now they no longer channel runoff water, they channel leachate. The rains seep under the bottom of the de-consecrated dump and the leachate flows into the ocean.

Then there is the tar… and the oil …

===

ht tps://en.wik ipedia.org/wiki/La_brea_tar_pits

  • The La Brea Tar Pits is an active paleontological research site in urban Los Angeles. Hancock Park was formed around a group of tar pits where natural asphalt (also called asphaltum, bitumen, or pitch; brea in Spanish) has seeped up from the ground for tens of thousands of years. Over many centuries, the bones of trapped animals have been preserved.
  • Tar pits are composed of heavy oil fractions called gilsonite, which seeps from the Earth as oil. Crude oil seeps up along the 6th Street Fault from the Salt Lake Oil Field, which underlies much of the Fairfax District north of Hancock Park.[2] The oil reaches the surface and forms pools, becoming asphalt as the lighter fractions of the petroleum biodegrade or evaporate.[3] The asphalt then normally hardens into stubby mounds.

h ttps:/ /e n.wikipedia.org/wiki/Salt_Lake_Oil_Field

  • The Salt Lake Oil Field is an oil field underneath the city of Los Angeles, California. Discovered in 1902, and developed quickly in the following years, the Salt Lake field was once the most productive in California;[1] over 50 million barrels of oil have been extracted from it, mostly in the first part of the twentieth century, although modest drilling and extraction from the field using an urban “drilling island” resumed in 1962.

h ttps:/ /en.w ikipedia.org/wiki/Beverly_Hills_Oil_Field

  • The Beverly Hills Oil Field is a large and currently active oil field underneath part of the US cities of Beverly Hills, California, and portions of the adjacent city of Los Angeles. Discovered in 1900, and with a cumulative production of over 150 million barrels of oil, it ranks 39th by size among California’s oil fields, and is unusual for being a large, continuously productive field in an entirely urban setting. All drilling, pumping, and processing operations for the 97[1] currently active wells are done from within four large “drilling islands”, visible on Pico and Olympic boulevards as large windowless buildings, from which wells slant diagonally into different parts of the producing formations, directly underneath the multimillion-dollar residences and commercial structures of one of the wealthiest cities in the United States.

ResearcherZero February 14, 2024 11:11 PM

@Clive,

I got washed out to sea sleeping in my tent. My brother-in-law found me and my two mates asleep, floating in the tent, about 1km off the shore while fishing in his boat. It was completely fine. Didn’t even notice. Ignore the high tide -and the Spring tide IMHO. 🙂

I do live about 100km from the coast. The fishing hut is also well back, up on a hill and protected by an estuary. Tents are for sleeping near the beach. Tents that float.

@ALL

Has anyone received a regular stream of bills through a wormhole for a few years?

The large freezer full of bait, and fish defrosted. They were sending the bill into a singularity I presume, for three years. Then switched the power off to the fishing hut when the bill was not paid, after three years. The address was correct but the bills never arrived. For three years according to the power company. It’s a bit odd. 🤔

Defrosted bait and fish, and whatever was in the fridge is pretty ripe after a week.

All our other power bills seem to arrive without any problems. We have generators for backup, but you actually have to know that the power is out to turn them on.

Let’s just hope in the future they can get the power bill into the mail box.

When all the power is out then it’s easier to notice a lack of power.

‘https://www.abc.net.au/news/2024-01-19/kalgoorlie-blackout-explainer/103365870

I’m a little wireless camera and I’m waiting to transmit…

‘https://www.kare11.com/article/news/local/edina-burglars-could-be-using-wifi-jammers/89-838f08f6-8e13-4577-8a88-628d757207a2

Fortigate firmware analysis by DIVD and Fox-It researchers.

…some of the large vendors do some odd stuff with their implementations, until someone finds it, and then they might fix it…

Rolling your own with a whole lot of null bytes.

There were a lot of vulnerable devices… in The US, and the Netherlands.

‘https://media.ccc.de/v/hackerhotel-2024-114-crypterella-stories-fortigate

lurker February 14, 2024 11:20 PM

Melon Rusk puts his mouth where his money is and moves SpaceX’ house out of Delaware to the Lone Star State.

‘https://www.bbc.com/news/business-68302228

lurker February 14, 2024 11:25 PM

If a terrorist organisation pays money for a blue tick, where does that leave Mr.Rusk?

‘https://www.bbc.com/news/business-68297121

lurker February 15, 2024 12:23 AM

Australian Parliament has voted 86-42 “urging the United States and the United Kingdom to end the prosecution of WikiLeaks founder Julian Assange and allow his return to Australia.”

‘https://www.abc.net.au/news/2024-02-14/house-representatives-julian-assange-extradition-us-wikileaks/103468048

ResearcherZero February 15, 2024 12:24 AM

Of the 24 satellites in orbit in 1962, Starfish Prime damaged at least one-third. The blast blew out a huge bubble of plasma, producing a giant, short-lived cavity in the Earth’s ionosphere. The planet’s magnetic field was completely expelled for nearly half a minute.

The results from the 1962 Starfish Prime test serve as a warning of what might happen if Earth’s magnetic field gets blasted again with high doses of radiation.

‘https://www.aps.org/publications/apsnews/202212/pulse.cfm

Collateral Damage to Satellites from an EMP Attack

‘https://apps.dtic.mil/sti/citations/ADA531197

The strength of the EMP was so huge that it affected the flow of electricity on the Earth hundreds of kilometers away!

‘https://www.youtube.com/watch?v=KFXlrn6-ypg

Starfish Prime Test Interim Report

‘https://www.youtube.com/watch?v=Fts8iIwn5HE

“So now, if you had a Starfish belt and you had the right technology in space,” Reeves says, “you could get rid of that belt in a couple of weeks.”

Geoff Reeves, a research fellow at Los Alamos National Laboratory in New Mexico, has been working on a quick way to get rid of radiation belts made from nuclear blasts. In his design, a transmitter mounted on a satellite hits the trapped radiation with specialised AM radio waves, which nudge the charged particles lower into the atmosphere, where they would be harmlessly absorbed.

‘https://www.nationalgeographic.co.uk/science-and-technology/2021/07/why-the-us-once-set-off-a-nuclear-bomb-in-space

“Such a satellite-killing weapon, if deployed, could destroy civilian communications, surveillance from space and military command-and control operations”

It is not clear what prompted Turner to issue the statement now, as the intelligence has been available to leaders of the House intelligence committee and their top aides in a secure room on Capitol Hill for more than a week.

‘https://www.nytimes.com/2024/02/14/us/politics/intelligence-russia-nuclear.html

And why we are on the subject of possibly burning sources…

type-squatting packages

‘https://www.bleepingcomputer.com/news/security/ubuntu-command-not-found-tool-can-be-abused-to-spread-malware/

ResearcherZero February 15, 2024 12:53 AM

A list of the bug fixes in the latest MS update, which include a couple of nasties.

‘https://isc.sans.edu/diary/Microsoft%20February%202024%20Patch%20Tuesday/30646

Microsoft has a guide here if you want to manually update DBX. If you want microsoft to manage this at a later date just install the update, then reboot. Back up first.

Before updating Secure Boot (DBX) yourself, check you have the latest BIOS firmware installed, and back up recovery keys for Bitlocker externally if you have that enabled. Back up. New systems with recent hardware should be fine. But read up on potential problems with any old hardware before manually applying the DBX update.

Afterwards, when you run the command to verify DBX updated, remember you must type the inverted commas (’) in PowerShell for the last part of the command – ‘Windows UEFI CA 2023’

‘https://techcommunity.microsoft.com/t5/windows-it-pro-blog/updating-microsoft-secure-boot-keys/ba-p/4055324

JonKnowsNothing February 15, 2024 12:55 AM

@ResearcherZero, @Clive, All

re: We have generators for backup, but you actually have to know that the power is out to turn them on.

You can connect a generator to auto-switch if the power drops. This usually requires an electrician to set it up correctly. Done incorrectly can lead to a fatal event.

There are several issues with generators and power switchover. They work as an Uninterruptible Power Supply (UPS) but on a larger scale.

They need to be sized for the amount of electrical load. Electrical load has two loads: Standard Running load and the Start Up Surge Load. The surge load is much higher than the running load, so your system has to be configured for the higher amount or it it will fail.

The sensor level has to be configured for the quickest response needed for the item(s) you will power. Refrigerators don’t require a quick response to a power drop; where computer systems are extremely sensitive. There are battery backup systems that will not cut over fast enough to maintain power to a computer but are fine to keep the lights on.

The run duration and power refuel source are key to long term power support. A battery might keep the lights on for an hour but powering a house for days or weeks will require a refuel source. Depending on where you live and zoning issues, depends on what you can do for long term power.

Solar Power as commonly sold in USA as roof top solar, and is woefully inadequate to do much of anything. These are often pair in an urban sales bundle with a battery backup. The quality of the battery system varies and you might still have to reset all the clocks because the switch over isn’t fast enough. These system are very under speced for the size of homes in the USA. They are popular as they come with government subsidized costs, a tax write off and a (bogus) promise of reverse utility bill payment (aka co-generation offset) and a “I AM GREEN” name tag. This only lasts until the government cancels the subsidy. The average cost is $30,000 USD and financed over 10-20yrs at high interest. Most homeowners do not know about replacement costs, maintenance and if the panels are dirty their efficiency drops. There’s also the flimflam in California of putting the panels on a north facing roof to get a signature on the contract.

So a long term refuel source is needed. Farmers that require constant power with or without a connection to the power grid, use large propane tanks for constant power. It’s not green-tag stuff. A 1,000 gallon propane tank can provide a lot of power for a long time.

In farm lands that have orchards, vineyards and crops that are damaged by sudden freezes, you can see the wind turbines and propane tanks that keep the air moving so the oranges don’t freeze. The number of turbines and tanks needed vary with the crop but SWAG at 2 per acre. It’s not a cheap installation. Losing the whole harvest to a freeze is much more costly for the farmer and the consumer.

ResearcherZero February 15, 2024 1:14 AM

@JohnKnowsNothing

We already have auto-switch for the farm. The fishing shack just has a little petrol portable generator, and it’s locked in the shed so it doesn’t get stolen when no one is there. It’s probably not worth the cost of a fall-over unless someone was permanently living at the shack. It’s a good excuse to clean the place, as most of the family don’t.

We have a large generator at the farm due to all the cool stores, pumps, climate control and other gizmos and controllers. And as the power occasionally goes out for a week or two.

No more kero lamps and roughing it these days, it’s all flash unfortunately.

ResearcherZero February 15, 2024 1:33 AM

@JohnKnowsNothing

Farmers are starting to put on a little too much weight. Everyone has a pot gut and lap-band surgery is becoming more common. I don’t know who to congratulate at parties anymore, so I ask all the men when they are due. If it gets anymore automated we”ll all die.

No one will even notice, except for a slight decline in moaning and more fish.

ResearcherZero February 15, 2024 2:26 AM

“Which means that, as often as not, the problem is to do with people rather than technology, even [if] it appears otherwise.”

‘https://blog.glyph.im/2024/02/let-me-tell-you-a-secret.html

The right tooling and knowledge for the job. (fill in the missing s**t)

‘https://media.ccc.de/v/hackerhotel-2024-86-unmasking-the-bullsh**t-in-cybersecurity

From 2003 to 2022, American men reduced their average hours of face-to-face socializing by about 30 percent. For unmarried Americans, the decline was even bigger—more than 35 percent. For teenagers, it was more than 45 percent. Boys and girls ages 15 to 19 reduced their weekly social hangouts by more than three hours a week.

‘https://www.theatlantic.com/ideas/archive/2024/02/america-decline-hanging-out/677451/

‘https://www.kiplinger.com/real-estate/605051/most-expensive-cities-in-the-us

“the phenomenon stems from a significant root cause: the cost of having a place to live in America’s most productive cities.”

‘https://www.theatlantic.com/business/archive/2016/05/how-america-lost-its-mojo/484655/

Prices have increased so fast that property taxes have not kept up. Zoning is also f’ed up.

Which is mostly great if you are rich, hooked-up, and own lots and lots of land…

‘https://www.brookings.edu/articles/to-improve-housing-affordability-we-need-better-alignment-of-zoning-taxes-and-subsidies/

NIMBY

‘https://www.brookings.edu/articles/four-reasons-why-more-public-housing-isnt-the-solution-to-affordability-concerns/

ResearcherZero February 15, 2024 5:15 AM

@JohnKnowsNothing

My father-in-law complains the sprinklers are not working, then demands to be shown that they are. After explaining that the sprinklers automatically start at night, he then requires a demonstration that the sprinklers do in fact work. Then he changes the time the sprinklers start, how long they run for, and which days they run.

After he leaves we change all the settings back to how they were originally.

The remotely controlled pumps at least are totally confusing. Solar power is also very helpful in that regard. My lawn has not been destroyed in a couple of months.

At least I do not have to explain how Print Screen works in the modern age of remoting 🙂

JonKnowsNothing February 15, 2024 9:41 AM

@ResearcherZero, All

re The “I’m smarter; I know more than You” is a techie problem

It’s not uncommon to run into situations as you describe, water timers are notoriously unfriendly and local watering laws are inconsistent.

The real problem behind the constant “I’m Smarter Than You”, is that you are NOT smarter than your in-law.

Your in-law knows how s/he left the timer setup. You sabotage that setup – deliberately. So you reinforce the perception that the water timer is FUBAR.

Must be great fun for you!

Clive Robinson February 15, 2024 1:38 PM

@ AL,

“I’m tired of getting gaslighted by this government.”

One of the joys of the current US two part two party system is that saying “this government” can mean one of several things about where the actual power exists.

Something at least one of those parties quite happily exploits. And at the very least uses to hide the fact they are the primary cause of problems and actually by head count of votes are usually the minority party…

As for reauthorizing Section 702 and,

“Turner, a strong proponent of the surveillance authority, appears to want to use the information about the adversary capability to persuade skeptical colleagues that 702 is an indispensable intelligence tool”

If I was a US citizen I would be asking who the real targets of section 702 are?

That is who the “enemy” who must be watched is?

The loudly claimed,

1, hostile agents of a foreign power

Or as is increasingly becoming evident those seen as the,

2, hostile citizens of the majority vote

Either way US citizens should know by now, lawful or not they are increasingly seen as more than “the enemy”. Who should be spied upon 24*365.25 with,

Every place they are,
Every look they give,
Every word they say,
Every character typed,
Every heart beat, or step made,

Recorded and stored in multiple forms indefinitely untill it can be brought forth and used against them directly or indirectly, by Government, Corporation, and their guard labour alike for the benefit if not profit of the few.

So section 702 is in reality just a fig leaf, to keep out of sight what “those few think” should not meet the public eye.

lurker February 15, 2024 3:26 PM

@AL

At least Gizmodo still retains a sense of humor about this; after the first two paras I get a teaser:

Related Content – Denis Villeneuve Had a Blast Building the Dune Lego

and don’t ask me how I fatfingered the first version …

JG5 February 15, 2024 4:30 PM

I hope that 2024 is treating everyone well. We are doing OK by doing good. I may not have released enough bile over the brainwashing that capitalism is good and communism is bad. They both are going to destroy the planet. What really pisses me off is that I am targeted because I believed them. You are the product that the liars, thieves and murderers trade amongst themselves.

2:00PM Water Cooler 2/15/2024
https://www.nakedcapitalism.com/2024/02/200pm-water-cooler-2-15-2024.html
Posted on February 15, 2024 by Lambert Strether

News of the Wired

“How Deceptive Design Is Used To Compromise Your Privacy And How To Fight Back” [Conscious Digital]. “In 2022, we embarked on an unconventional experiment. We sent a data deletion request to each of the 600 data brokers listed on DataBrokersWatch.org to observe their reactions. This experiment allowed us to uncover numerous deceptive patterns and formulate effective countermeasures – strategies to bypass these dark patterns. Often, our countermeasures persuaded the companies to honor our deletion requests. When they didn’t, we escalated the issue to a government regulator (a process YourDigitalRights.org can handle for you). Looking back, the effort was worthwhile. We’ve noticed a trend towards better compliance among data-centric businesses. We detailed our findings in a presentation at the 2022 Good Tech Fest for those interested in learning more.” • A link to the Guide.

Winter February 15, 2024 6:04 PM

@Clive

Faux piety

Re: americaneedsfatima, eight-false-types-of-piety-and-how-to-avoid-them [1]

I remember what unifies all these Catholic “piety” sermons:
There is never enough piety, never. You are sure to fail, always.

This piety are to your humanity what anorexia is to food. Any sign of having human feelings is too much. You are constantly urged to find new faults and shortcomings to purge from you mind and life.

In the view of such fanatics, true piety is having no friends, no family, no activities, no personality, and no interests outside the Church and the Scriptures.

I once read that Catholic priests end their days lonely as the Church does not wants them to have personal ties. True piety is being attracted only towards God.

[1] About the Fatima that Americans need:
‘https://en.wikipedia.org/wiki/Three_Secrets_of_F%C3%A1tima

‘https://en.wikipedia.org/wiki/America_Needs_Fatima

On these types of Maria devotion, women are not supposed to have a life, just chores.

Leave a comment

Login

Allowed HTML <a href="URL"> • <em> <cite> <i> • <strong> <b> • <sub> <sup> • <ul> <ol> <li> • <blockquote> <pre> Markdown Extra syntax via https://michelf.ca/projects/php-markdown/extra/

Sidebar photo of Bruce Schneier by Joe MacInnis.