Slashdot

News for nerds, stuff that matters

California Ghost-Gun Bill Wants 3D Printers To Play Cop, EFF Says

A proposed California bill would require 3D printer makers to use state-certified software to detect and block files for gun parts, but advocates at the Electronic Frontier Foundation (EFF) say it would be easy to evade and could lead to widespread surveillance of users' printing activity. The Register reports: The bill in question is AB 2047, the scope of which, on paper, appears strict. The primary goal is clear and simple: to require 3D printer manufacturers to use a state-certified algorithm that checks digital design files for firearm components and blocks print jobs that would produce prohibited parts. [...] Cliff Braun and Rory Mir, who respectively work in policy and tech community engagement at the EFF, claim that the proposals in California are technically infeasible and in practice will lead to consumer surveillance.

In a series of blog posts published this month, the pair argued that print-blocking technology -- proposals for which have also surfaced in states including New York and Washington - cannot work for a range of technical reasons. They argued that because 3D printers and other types of computer numerical control (CNC) machines are fairly simple, with much of their brains coming from the computer-aided manufacturing (CAM) software -- or slicer software -- to which they are linked, the bill would establish legal and illegal software. Proprietary software will likely become the de facto option, leaving open source alternatives to rot.

"Under these proposed laws, manufacturers of consumer 3D printers must ensure their printers only work with their software, and implement firearm detection algorithms on either the printer itself or in a slicer software," wrote Braun earlier this month. "These algorithms must detect firearm files using a maintained database of existing models. Vendors of printers must then verify that printers are on the allow-list maintained by the state before they can offer them for sale. Owners of printers will be guilty of a crime if they circumvent these intrusive scanning procedures or load alternative software, which they might do because their printer manufacturer ends support."

Braun also argued that it would be trivial for anyone who uses 3D printers to make small tweaks to either the visual models of firearms parts, or the machine instructions (G-code) generated from those models, to evade detection. Mir further argued that the bill offers no guardrails to keep this "constantly expanding blacklist" limited to firearm-related designs. In his view, there is a clear risk that this approach will creep into other forms of alleged unlawful activity, such as copyright infringement. [...] Braun and Mir have a list of other arguments against the bill. They say the algorithms are more than likely to lead to false positives, which will prevent good-faith users from using their hardware. Many 3D printer owners also have no interest in printing firearm components. Most simply want the freedom to print trinkets and spare parts while others use them to print various items and sell them as an income stream.

Read more of this story at Slashdot.

Audit Finds Google, Microsoft, and Meta Still Tracking Users After Opt-Out

alternative_right shares a report from 404 Media: An independent privacy audit of Microsoft, Meta, and Google web traffic in California found that the companies may be violating state regulations and racking up billions in fines. According to the audit from privacy search engine webXray, 55 percent of the sites it checked set ad cookies in a user's browser even if they opted out of tracking. Each company disputed or took issue with the research, with Google saying it was based on a "fundamental misunderstanding" of how its product works.

The webXray California Privacy Audit viewed web traffic on more than 7,000 popular websites in California in the month of March and found that most tech companies ignore when a user asks to opt-out of cookie tracking. California has stringent and well defined privacy legislation thanks to its California Consumer Privacy Act (CCPA) which allows users to, among other things, opt out of the sale of their personal information. There's a system called Global Privacy Control (GPC), which includes a browser extension that indicates to a website when a user wants to opt out of tracking.

According to the webXray audit, Google failed to let users opt out 87 percent of the time. "Google's failure to honor the GPC opt-out signal is easy to find in network traffic. When a browser using GPC connects to Google's servers it encodes the opt-out signal by sending the code 'sec-gpc: 1.' This means Google should not return cookies," the audit said. "However, when Google's server responds to the network request with the opt-out it explicitly responds with a command to create an advertising cookie named IDE using the 'set-cookie' command. This non-compliance is easy to spot, hiding in plain sight."

The audit said that Microsoft fails to opt out users in the same way and has a failure rate of 50 percent in the web traffic webXray viewed. Meta's failure rate was 69 percent and a bit more comprehensive. "Meta instructs publishers to install the following tracking code on their websites. The code contains no check for globally standard opt-out signals -- it loads unconditionally, fires a tracking event, and sets a cookie regardless of the consumer's privacy preferences," the audit said. It showed a copy of Meta's tracking data which contains no GPC check at all.

Read more of this story at Slashdot.

Chrome Now Lets You Turn AI Prompts Into Repeatable 'Skills'

Google is rolling out a Chrome feature called "Skills" that lets users save Gemini prompts as reusable one-click workflows they can run across multiple tabs. The feature also includes preset Skills from Google. It's launching first for Chrome desktop users set to US English. The Verge reports: Once you have access to the feature, it can be managed by typing a forward slash ( / ) in Gemini and clicking the compass icon. AI prompts can be saved as Skills directly from your Gemini chat history on desktop, where they'll then be available to reuse on any other desktop devices that are signed into the same Google account on Chrome.

The aim is to spare Chrome users from having to manually retype frequently used Gemini prompts or having to copy and paste them over from a saved list. Some of the Skills made by early testers include commands for calculating the nutritional information of online recipes and creating a side-by-side comparison of product specifications while shopping across multiple tabs, according to Google.

The company is also launching a library of preset Skills that you can save and use instead of making your own. These ready-to-use Skills can also be customized to better suit your needs, providing a starting point without requiring you to create your own from scratch.

Read more of this story at Slashdot.

Bourke's Parrot

BertvB posted a photo:

Bourke's Parrot

Japan - Nagoya

SergioQ79 - Osanpo Photographer - posted a photo:

Japan - Nagoya

Nagoya, sera.
Un’insegna, una porta, qualche foglio appeso.
Ali di pollo, birra e poco altro.
Niente cerca di attirarti, devi voler entrare.
Ed è proprio per questo che funziona.

名古屋、夜。
看板ひとつ、扉ひとつ、貼られた紙が少し。
手羽先とビール、それだけ。
引き込もうとはしない、自分で選ぶ場所。
だからこそ、こういう店はいい。

Nagoya, evening.
One sign, one door, a few papers on the wall.
Chicken wings, beer, not much else.
Nothing tries to pull you in — you have to choose it.
That’s exactly why it works.

kottke.org

Jason Kottke's weblog, home of fine hypertext products

If Every Congressman Facing Credible Rape Allegations...

If Every Congressman Facing Credible Rape Allegations Resigned, We’d Have No One Left to Govern the Country. “It’s naïve to imagine the government can continue to function without the tireless dedication of our best and brightest rapists.”

Authoritarian Megalomaniacs Love Gaudy Buildings

You know who else wanted to construct gaudy buildings in his own image? Here’s Timothy Ryback on Adolf Hitler’s obsession “with adding an expensive new wing to the Reich chancellery”.

The new annex, connected to the chancellery by a marble corridor hung with crystal chandeliers, was part of Hitler’s ambitious plans to align the Berlin cityscape with his vision for the future of the country. Hitler wanted a Triumphbogen, a triumphal arch, twice the size of the Arc de Triomphe in Paris. He wanted an “Avenue of Splendor” for military parades. “The Champs-Élysées is a hundred meters wide,” Hitler told Speer. “We will make our avenue twenty meters wider.” A planned Volkshalle was to accommodate 180,000. The Eiffel Tower could fit beneath its cupola. This “Hall of the People” was to be topped by the largest swastika on Earth. Berlin itself was to be rechristened as Weltstadt Germania, “Capital of the World.”

Ryback is the author of several books on Hitler and the Nazis, including his forthcoming 53 Days: How Hitler Dismantled a Democracy, which sounds like a must-read to me.

I’ve been enjoying the series of articles he’s been doing at The Atlantic about the parallels between Hitler and the dangers of Trump’s authoritarianism without ever explicitly mentioning Trump. In addition to the above piece about architecture, he’s written about Hitler’s Greenland Obsession, What Happened When Hitler Took On Germany’s Central Banker, Hitler Used a Bogus Crisis of ‘Public Order’ to Make Himself Dictator, Hitler’s Terrible Tariffs, and The Oligarchs Who Came to Regret Supporting Hitler. If it looks like a duck…

Tags: Adolf Hitler · architecture · Donald Trump · politics · Timothy Ryback

The Guardian

Latest news, sport, business, comment, analysis and reviews from the Guardian, the world's leading liberal voice

Dembélé delivers knockout double as PSG end Liverpool’s European dream

It will be of little consolation to Arne Slot and Liverpool that, for the second season in succession, they went toe-to-toe with Paris Saint-Germain at Anfield and had nothing to show for their endeavours. Having exited the FA Cup quarter-final with a whimper, Liverpool exited the Champions League quarter-final with a fight. The damage done in Paris proved irretrievable.

Ousmane Dembélé, so wasteful in the first leg at Parc des Princes, put the quarter-final beyond any doubt with a clinical late finish to ensure there would be no famous European comeback from Liverpool on this occasion. Slot’s team at least performed with belief, and for 72 minutes they had hope, but the European champions held their nerve to advance into the semi-finals. Dembélé inflicted further punishment with a second goal from Bradley Barcola’s second assist in stoppage time.

Continue reading...

Eric Swalwell and Tony Gonzales resign from Congress amid sexual misconduct allegations

Departures came after lawmakers from both parties threatened to introduce resolutions expelling the two men

The Democratic congressman Eric Swalwell and Republican congressman Tony Gonzales submitted their resignations to the House of Representatives on Tuesday, abruptly ending their political careers amid bipartisan furor over allegations of sexual misconduct against both.

Swalwell resigned at 2pm ET, while Gonazales’s resignation will take effect at 11.59pm on Tuesday evening, according to the House clerk.

Continue reading...

Architect Cees Dam overleden, ontwierp onder meer de Stopera in Amsterdam

Architect Cees Dam was een postmodernist, „een van de weinige Nederlandse architecten die zo durfden te bouwen”, schreef NRC eerder. Hij ontwierp ook het gebouw in Amsterdam waar, na een renovatie, de NRC-redactie zit.

The Register

Biting the hand that feeds IT — Enterprise Technology News and Analysis

Commvault has a Ctrl+Z for rogue AI agents

The company's new software keeps an eye on your agents and backs up data.

Keep your agents close and your agent-monitoring software closer. Commvault’s new AI Protect can discover and monitor AI agents running inside AWS, Azure, and GCP environments and even roll back their actions when something goes wrong.…

Microsoft's massive Patch Tuesday: It's raining bugs

One CVE under attack, one already disclosed by angry bug hunter, and 163 more

Attackers exploited a spoofing vulnerability in Microsoft SharePoint Server before Redmond issued a fix as part of April's mega Patch Tuesday.…

VK: Voorpagina

Volkskrant.nl biedt het laatste nieuws, opinie en achtergronden

Piepjong Oranje countert zich naar knappe 2-1-winst tegen Frankrijk

VS versoepelen sancties tegen centrale bank Venezuela

Meerdere schepen zouden Straat van Hormuz zijn doorgevaren, Amerikanen ontkennen

thexiffy

Last.fm last recent tracks from thexiffy.

Cabaret Voltaire - Ghostalk (extended)

Cabaret Voltaire

Wel.nl

Minder lezen, Meer weten.

Politie vermoedt 'onderling conflict' bij in brand steken man

UTRECHT (ANP) - De politie gaat er niet van uit dat de man die dinsdagmiddag in Utrecht in brand werd gestoken een willekeurig slachtoffer is. Dat bevestigt een woordvoerder na berichtgeving van regionale media. Vermoedelijk is er sprake geweest van een "onderling conflict".

"Onder sommigen leeft het idee dat het slachtoffer willekeurig zou zijn. Daar lijkt het in het onderzoek dat wij momenteel uitvoeren niet op", zegt de woordvoerder. De man was volgens hem niet "op de verkeerde plek op het verkeerde moment". Rond 16.30 uur werd op het Smaragdplein de man die in een elektrische rolstoel zat in brand gestoken. Hij raakte hierbij zwaargewond.

De politie heeft een persoon aangehouden die ervan wordt verdacht betrokken te zijn. De politie zegt niets over zijn identiteit en sluit meer aanhoudingen niet uit.


Berendsen bespreekt missie in Straat van Hormuz met Rubio

WASHINGTON (ANP) - Minister Tom Berendsen (Buitenlandse Zaken, CDA) heeft dinsdag met zijn Amerikaanse collega Marco Rubio gesproken over de inzet van een aantal Europese en Aziatische landen om de Straat van Hormuz te beschermen. Daarbij is wel benadrukt dat er eerst een einde aan de vijandelijkheden moet komen, zei Berendsen na afloop van het gesprek tegen media.

Onder leiding van het Verenigd Koninkrijk en Frankrijk werkt een groep landen aan zo'n militaire inzet. De Amerikanen dringen aan snel met concrete toezeggingen te komen, zei NAVO-secretaris-generaal Mark Rutte vorige week. Aan de internationale coalitie nemen inmiddels zo'n veertig landen deel.

Of Rubio begrip heeft voor de positie van Nederland en de andere betrokken landen om pas tot inzet over te gaan als er niet meer wordt gevochten, wilde Berendsen niet zeggen. De Amerikaanse president Donald Trump heeft herhaaldelijk uitgehaald naar zijn bondgenoten, omdat ze de Amerikanen niet helpen in hun oorlog met Iran die eind februari begon.


VS versoepelen sancties tegen centrale bank Venezuela

WASHINGTON (ANP/BLOOMBERG) - De Verenigde Staten hebben de sancties tegen de centrale bank van Venezuela versoepeld. Het wordt partijen toegestaan om transacties uit te voeren met de centrale bank in het Zuid-Amerikaanse land.

Het Amerikaanse ministerie van Financiën meldt dat financiële instellingen en andere entiteiten zaken mogen doen met de centrale bank van Venezuela, evenals een klein aantal andere instellingen in het land. Persbureau Bloomberg meldde vorige week dat de regering-Trump overwoog om de sancties tegen Venezuela's centrale bank op te heffen.

De VS willen Venezuela geleidelijk toelaten tot de wereldwijde energiemarkt en de economie van dat land stimuleren, nadat Amerikaanse troepen de Venezolaanse president Nicolás Maduro in januari oppakten. Begin maart gaven de VS Venezuela al toestemming om meststoffen en olie aan Amerikaanse bedrijven te verkopen.


Japan - Nagoya

SergioQ79 - Osanpo Photographer - has added a photo to the pool:

Japan - Nagoya

Nagoya, sera.
Un’insegna, una porta, qualche foglio appeso.
Ali di pollo, birra e poco altro.
Niente cerca di attirarti, devi voler entrare.
Ed è proprio per questo che funziona.

名古屋、夜。
看板ひとつ、扉ひとつ、貼られた紙が少し。
手羽先とビール、それだけ。
引き込もうとはしない、自分で選ぶ場所。
だからこそ、こういう店はいい。

Nagoya, evening.
One sign, one door, a few papers on the wall.
Chicken wings, beer, not much else.
Nothing tries to pull you in — you have to choose it.
That’s exactly why it works.