Google's 2019 'Code Yellow' Blurred Line Between Search, Ads

An anonymous reader shares a report: The former head of search at Alphabet’s Google told colleagues in February 2019 that his team was “getting too involved with ads for the good of the product and company,” according to emails shown at the Justice Department’s landmark antitrust trial against the search giant. Google maintains a firewall between its ads and search teams so that its engineers can innovate on Google’s search engine, unsullied by the influence of the team whose goal is to maximize advertising revenue. But in February 2019, testimony at the antitrust trial revealed Tuesday, Google internally declared a “Code Yellow” amid concerns the company might not meet its goals for search revenue for the quarter.

As part of the emergency, which lasted for seven weeks, engineers from Google’s search and Chrome browser teams were reassigned to figure out why user queries had slowed, according to the documents. Ben Gomes, Google’s former head of search, was called by the company in its defense to show that it had made various advancements in search, particularly in mobile. However, cross examination by Justice Department lawyer David Dahlquist revealed the tensions between Gomes’ search team and its advertising counterparts. The questioning sought to undermine Google’s contentions that its search team focuses solely on improving the user experience and has sometimes been pulled into the advertising side, where the Justice Department alleges Google has been able to raise prices without pushback.

Read more of this story at Slashdot.



Source: Slashdot – Google’s 2019 ‘Code Yellow’ Blurred Line Between Search, Ads

Microsoft Calls Time on Windows Insider MVP Program

Microsoft has decided to axe the Windows Insider MVP program, which is now scheduled to be discontinued at the end of the year. From a report: A Microsoft spokesperson told The Register: “In an effort to consolidate MVP-style programs across Microsoft, we have decided to retire the Windows Insider MVP Program effective December 31, 2023. All our existing Windows Insider MVPs will be nominated to participate in the Microsoft MVP Program which has similar benefits and opportunities to continue networking with us and interacting with many other Microsoft MVPs globally.”

The Windows Insider MVPs are usually enthusiasts of Microsoft’s wares who are rewarded for their loyalty with access to the engineering teams, complimentary subscriptions to products such as Visual Studio Enterprise and Office 365, as well as the odd paperweight or two. A nomination must come from another MVP or a Microsoft employee to achieve this coveted status. An application is then scrutinized, and if one has demonstrated sufficient passion for all things Microsoft, the nod is given. Microsoft has plenty of Insider programs where users can play with pre-release versions of the company’s software.

Read more of this story at Slashdot.



Source: Slashdot – Microsoft Calls Time on Windows Insider MVP Program

HSBC Takes Stab at Using Blockchain To Modernize London's Antiquated Gold Market

One of the world’s top bullion banks is bringing blockchain to the antiquated London gold market. From a report: HSBC has launched a platform that uses distributed ledger technology to tokenize ownership of physical gold held in its London vault, Mark Williamson, global head of FX and commodities partnerships and propositions, said in an interview. The new system creates digital tokens that represent gold bars, which can then be traded through the bank’s single-dealer platform. […] What sets HSBC apart is its clout in the bullion market. It is one of the world’s largest custodians of precious metals and one of four clearers on the London gold market, where over $30 billion of the metal changes hands every day.

Around 698,000 gold bars are stored in vaults in the Greater London area, valued at around $525 billion, according to the London Bullion Market Association. Despite its vast size, London’s gold market still relies heavily on manual record keeping and trades entirely over-the-counter. Using blockchain technology makes the process “quicker and less cumbersome” as clients can more easily track the gold they own through the platform, down to the serial number of each bar, Williamson said. HSBC plans to eventually expand its system to include other precious metals, he added.

Read more of this story at Slashdot.



Source: Slashdot – HSBC Takes Stab at Using Blockchain To Modernize London’s Antiquated Gold Market

A Rare Look at Google's Most Lucrative Search Queries

An anonymous reader shares a report: Not all Google searches make Google money. Google often says that it only shows ads on about 20 percent of queries, the ones it calls “commercial queries.” This week, during the US v. Google antitrust trial, we got a rare glimpse at a closely guarded secret: which search terms make the most money. The list is only for the week of September 22nd, 2018, and it is the list of top queries ordered by revenue and nothing else. Still, we’ve never seen anything quite like this before, and the list was only made public after long deliberations from Judge Amit Mehta, who has, over the course of the trial, begun to push both sides to be more public with information and data like this.

Okay, here are the top 20 queries for that week ordered by revenue: iphone 8, iphone 8 plus, auto insurance, car insurance, cheap flights, car insurance quotes, direct tv, online colleges, at&t, hulu, iphone, uber, spectrum, comcast, xfinity, insurance quotes, free credit report, cheap car insurance, aarp, and lifelock.

Read more of this story at Slashdot.



Source: Slashdot – A Rare Look at Google’s Most Lucrative Search Queries

US, China and 26 Other Nations Agree To Co-operate Over AI Development

Twenty-eight countries including the US, UK and China have agreed to work together to ensure artificial intelligence is used in a “human-centric, trustworthy and responsible” way, in the first global commitment of its kind. From a report: The pledge forms part of a communique signed by major powers including Brazil, India and Saudi Arabia, at the inaugural AI Safety Summit. The two-day event, hosted and convened by British prime minister Rishi Sunak at Bletchley Park, started on Wednesday. Called the Bletchley Declaration, the document recognises the “potential for serious, even catastrophic, harm” to be caused by advanced AI models, but adds such risks are “best addressed through international co-operation.” Other signatories include the EU, France, Germany, Japan, Kenya and Nigeria.

The communique represents the first global statement on the need to regulate the development of AI, but at the summit there are expected to be disagreements about how far such controls should go. Country representatives attending the event include Hadassa Getzstain, Israeli chief of staff at the ministry of innovation, science and technology, and Wu Zhaohui, Chinese vice minister for technology. Gina Raimondo, US commerce secretary, gave an opening speech at the summit and announced a US safety institute to evaluate the risks of AI. This comes on the heels of a sweeping executive order by President Joe Biden, announced on Monday, and intended to curb the risks posed by the technology.

Read more of this story at Slashdot.



Source: Slashdot – US, China and 26 Other Nations Agree To Co-operate Over AI Development

LinkedIn Hits 1 Billion Users, Adds AI Features for Job Seekers

LinkedIn, the business-focused social network owned by Microsoft, on Wednesday said it now has more than 1 billion members and is adding more AI features for paying users. From a report: Crossing the billion-users mark puts LinkedIn — where members maintain a resume-like profile of their education, work experience and professional skills — in the top-tier of social media networks that include rivals such as Meta Platforms. About 80% of recent members are signing up from outside of the United States, the company has said.

LinkedIn has a free tier of membership but also offers subscriptions. Members of its $39.99-a-month tier will get new AI features that can tell a user, who may be plowing through dozens of job postings, whether they’re a good candidate based on the information in their profile. The system can also recommend profile changes to make the user more competitive for a job.

Read more of this story at Slashdot.



Source: Slashdot – LinkedIn Hits 1 Billion Users, Adds AI Features for Job Seekers

WeWork Plans To File For Bankruptcy as Early as Next Week

WeWork plans to file for bankruptcy as early as next week, Reuters reported Tuesday, citing a source familiar with the matter, as the SoftBank Group-backed company struggles with a massive debt pile and hefty losses. From the report: Shares of the flexible workspace provider fell 32% in extended trading after the Wall Street Journal first reported the news. They have fallen roughly 96% this year. […] The company had net long-term debt of $2.9 billion as of June end and more than $13 billion in long-term leases, at a time when rising borrowing costs are hurting the commercial real estate sector. WeWork’s filing for bankruptcy would mark a stunning reversal of fortune for the company that was privately valued at $47 billion in 2019 and a black spot for investor SoftBank that sunk billions.

Read more of this story at Slashdot.



Source: Slashdot – WeWork Plans To File For Bankruptcy as Early as Next Week

A World Record In Race Walking Is Erased After the Course Was Measured Wrong

An anonymous reader quotes a report from NPR: Peru’s Kimberly Garcia set a world record in her gold-medal winning turn at the women’s 20 kilometer race walk event at the Pan American Games this weekend. Until she didn’t. Once the race was over, organizers determined there was a serious “measuring problem” with the track, making the race times of Garcia, fellow medal winners Glenda Morejon of Ecuador and Peru’s Evelyn Inga, and their competitors null and void. The athletes guessed the track had been drawn up roughly 3 kilometers (about 1.9 miles) shorter than it was supposed to be. Garcia crossed the finish line in 1 hour, 12 minutes and 26 seconds. The world record of 1 hour, 23 minutes and 49 seconds is held by China’s Jiayu Yang. The athletes suspected something was amiss mid-race, according to the Associated Press.

The Santiago 2023 Corporation, the group in charge of the 2023 Pan American Games, placed the blame on the Pan American Athletics Association, which reportedly chose the person who measured the race course. In a statement following the race, Santiago 2023 said the official who measured the course “did not take accurate measurements of the route the athletes took during the race.” The group continued, “We deeply regret the inconvenience for the athletes, their coaches, the public and the attending press, but this situation cannot be attributed to the Organizing Committee.”

Read more of this story at Slashdot.



Source: Slashdot – A World Record In Race Walking Is Erased After the Course Was Measured Wrong

Microsoft Accused of Damaging The Guardian's Reputation With AI-Generated Poll

Dan Milmo reports via The Guardian: The Guardian has accused Microsoft of damaging its journalistic reputation by publishing an AI-generated poll speculating on the cause of a woman’s death next to an article by the news publisher. Microsoft’s news aggregation service published the automated poll next to a Guardian story about the death of Lilie James, a 21-year-old water polo coach who was found dead with serious head injuries at a school in Sydney last week.

The poll, created by an AI program, asked: “What do you think is the reason behind the woman’s death?” Readers were then asked to choose from three options: murder, accident or suicide. Readers reacted angrily to the poll, which has subsequently been taken down — although highly critical reader comments on the deleted survey were still online as of Tuesday morning. A reader said one of the Guardian reporters bylined on the adjacent story, who had nothing to do with the poll, should be sacked. Another wrote: “This has to be the most pathetic, disgusting poll I’ve ever seen.”

The chief executive of the Guardian Media Group, Anna Bateson, outlined her concerns about the AI-generated poll in a letter to Microsoft’s president, Brad Smith. She said the incident was potentially distressing for James’s family and had caused “significant reputational damage” to the organization as well as damaging the reputation of the journalists who wrote the story. “This is clearly an inappropriate use of genAI [generative AI] by Microsoft on a potentially distressing public interest story, originally written and published by Guardian journalists,” she wrote. Bateson added that it had demonstrated “the important role that a strong copyright framework plays in enabling publishers to be able to negotiate the terms on which our journalism is used.”
A Microsoft spokesperson said: “We have deactivated Microsoft-generated polls for all news articles and we are investigating the cause of the inappropriate content. A poll should not have appeared alongside an article of this nature, and we are taking steps to help prevent this kind of error from reoccurring in the future.”

Read more of this story at Slashdot.



Source: Slashdot – Microsoft Accused of Damaging The Guardian’s Reputation With AI-Generated Poll

Raspberry Pi Smart Vertical Farming Takes Veggies To New Heights

Tanay Tanay has developed a smart vertical farming system using a Raspberry Pi 4 as the central controller, with features such as Bluetooth and Wi-Fi support for remote plant monitoring, precise automated watering based on moisture levels, and environmental factor tracking. Tom’s Hardware reports: The end result is a Pi-powered system with tons of cool goodies to take your plant care to the next level. Tanay is able to monitor all sorts of environmental factors like how much light is available, how moist the air is, how much water is in the soil, what the temperature is and much more. The icing on the cake is a user-friendly interface that can be used to manually water the plants.

The main board for this project is a Raspberry Pi 4 B. It’s connected to an Arduino Nano R3 which is assigned to a specific plant. Some of the sensors confirmed in the design are a soil moisture sensor, an ambient light sensor as well as a water level depth detection sensor. You could always add more or take away modules depending on what you want to do with your vertical farm. For example, a camera could be used to log plant growth progress over time. Tanay explains that ThingSpeak, an IoT platform, was used in the project design. You can learn more about this Raspberry Pi project at Hackster.

Read more of this story at Slashdot.



Source: Slashdot – Raspberry Pi Smart Vertical Farming Takes Veggies To New Heights

Anger Can Lead To Better Results When Tackling Tricky Tasks, Study Finds

An anonymous reader quotes a report from The Guardian: They say you catch more flies with honey than vinegar. But when it comes to tackling a tricky task, researchers have found that getting angry can also be a powerful motivator. The experiments suggest people who are angry perform better on a set of challenging tasks than those who are emotionally neutral. “These findings demonstrate that anger increases effort toward attaining a desired goal, frequently resulting in greater success,” said Dr Heather Lench, the first author of the study.

The study, published in the Journal of Personality and Social Psychology (PDF), details how researchers at Texas A&M University conducted experiments involving more than 1,000 people, and analyzed survey data from more than 1,400 people, to explore the possible impact of anger on people in various circumstances. In one experiment, students were shown images previously found to elicit anger, desire, amusement, sadness or no particular emotion at all. Participants were subsequently asked to solve a series of anagrams. The results reveal that for a challenging set of anagrams, those who were angry did better than those in the other possible emotional states — although no difference was seen for easy anagrams.

The researchers say one explanation could be down to a link between anger and greater persistence, with the team finding those who were angry spent more time on the difficult set of anagrams. In another experiment, participants who were angry did better at dodging flags in a skiing video game than those who were neutral or sad, and were on a par with those who felt amusement or desire. “This pattern could indicate that general physical arousal had a benefit for game scores, as this would be greater in anger, amused, and desire conditions compared to the sad and neutral conditions,” the researchers write. However, no such differences in performance was found when it came to an easier video game.

Read more of this story at Slashdot.



Source: Slashdot – Anger Can Lead To Better Results When Tackling Tricky Tasks, Study Finds

Two Russian Nationals Charged For Hacking Taxi System At JFK Airport

Thomas Claburn reports via The Register: For a period of two years between September 2019 and September 2021, two Americans and two Russians allegedly compromised the taxi dispatch system at John F. Kennedy International Airport in New York to sell cabbies a place at the front of the dispatch line. The two Russian nationals, Aleksandr Derebenetc and Kirill Shipulin, were indicted by a grand jury for conspiring to commit computer intrusions, the US Justice Department said on Tuesday. They remain at large. In early October, the two American nationals, Daniel Abayev and Peter Leyman, who were indicted last year, pleaded guilty, each to one count of conspiring to commit computer intrusions.

The scheme represented an attempt to monetize the demand among taxi drivers for lucrative airport fares — the current flat rate for JFK to Manhattan is $70 plus additional charges. As described in the indictment (PDF), taxi drivers are required to wait in a holding lot at JFK, often for several hours, before being dispatched in the order of their arrival to airport terminals. And because time spent waiting in line is not paid, drivers have a financial incentive to avoid waiting in line. The conspirators allegedly developed a plan to hack the dispatch system around September 2019. The indictment describes several approaches that were tried, “including bribing someone to insert a flash drive containing malware into computers connected to the dispatch system, obtaining unauthorized access to the dispatch system via a Wi-Fi connect, and stealing computer tablets connected to the dispatch system.”

The government’s filing suggests that the group gained and lost access to the dispatch system several times. When they did have access, the alleged conspirators offered to move drivers to the front of the dispatch queue for a $10 fee, and waived the fee for those who found other drivers willing to pay to play. Many drivers took advantage of the service. According to the Justice Department, the group booked 2,463 queue cuts in a single week around December 2019. The scheme allegedly enabled as many as 1,000 trips per day that skipped the queue at JFK. The American conspirators are said to have collected the money from participating drivers and to have sent payments to the alleged Russian conspirators, describing the money transfers as “payment for software development” or “payment for services rendered.” The indictment indicates that the Russians received more than $100,000 for their work. If apprehended — which appears unlikely given current US relations with Russia — the Russians face charges that carry a maximum sentence of ten years in prison. Abayev and Leyman each face up to five years in prison. They’re scheduled to be sentenced early next year.

Read more of this story at Slashdot.



Source: Slashdot – Two Russian Nationals Charged For Hacking Taxi System At JFK Airport

Google Registry Launches<nobr> <wbr></nobr>.ing Domains, Begg.ing For Wordplay

Google Registry has added domains ending in “.ing” — “a situation seem/ing ripe for exceed.ing amounts of wordplay,” reports 9to5Google. From the report: Google Registry — which is different from Google Domains, the service Google is sell.ing off to SquareSpace — tries to push the boundaries of domain names by launch.ing options like “.dev,” “.app,” and “.meme” (soon). After first be.ing announced in August, Google Registry is officially open.ing registration of .ing domains through partner companies like GoDaddy and 101Domain. As you might expect, the new domain end.ing is meant to inspire a sense of action, as exemplified by the first wave of companies debut.ing new domain names:

If you want a .ing domain of your own, you can do so from the official “.ing” site, but you’ll be pay.ing an extra one-time fee dur.ing the Early Access Period, which runs until December 5, 2023, with fees decreas.ing on a “daily schedule.” Register.ing during “Phase 1” will set you back over $1 million — quite a lot of cha-ch.ing — while “Phase 9” drops down as low as $144.99.

Read more of this story at Slashdot.



Source: Slashdot – Google Registry Launches<nobr> <wbr></nobr>.ing Domains, Begg.ing For Wordplay

YouTube Is Getting Serious About Blocking Ad Blockers

Emma Roth reports via The Verge: YouTube is broadening its efforts to crack down on ad blockers. The platform has “launched a global effort” to encourage users to allow ads or try YouTube Premium, YouTube communications manager Christopher Lawton says in a statement provided to The Verge. If you run into YouTube’s block, you may see a notice that says “video playback is blocked unless YouTube is allowlisted or the ad blocker is disabled.” It also includes a prompt to allow ads or try YouTube Premium. You may get prompts about YouTube’s stance on ad blockers but still be able to watch a video, though, for one Verge staffer, YouTube now fully blocks them nearly every time.

YouTube confirmed that it was disabling videos for users with ad blockers in June, but Lawton described it as only a “small experiment globally” at the time. Now, YouTube has expanded this effort. Over the past several weeks, more users with ad blockers installed have found themselves unable to watch YouTube videos, with a post from Android Authority highlighting the increase in reports. Lawton maintains that the “use of ad blockers” violates the platform’s terms of service, adding that “ads support a diverse ecosystem of creators globally and allow billions to access their favorite content on YouTube.”

Read more of this story at Slashdot.



Source: Slashdot – YouTube Is Getting Serious About Blocking Ad Blockers

Russia Blocks 167 VPNs, Steps Up OpenVPN and WireGuard Disruption

An anonymous reader quotes a report from TorrentFreak: The head of the Russian department responsible for identifying threats to the “stability, security and integrity” of the internet, has revealed the extent of the Kremlin’s VPN crackdown. Former FSO officer Sergei Khutortsev, a central figure in Russia’s ‘sovereign internet’ project, confirmed that 167 VPN services are now blocked along with over 200 email services. Russia is also reported as stepping up measures against protocols such as OpenVPN, IKEv2 and WireGuard. […]

An in-depth report published by TheIns.ru has details of the monitoring/blocking system reportedly deployed in Russia, how much it costs (4.3 billion rubles/$43 million in 2020, 24.7 billion rubles/$247 million for 2022-2024), and the names of the companies supplying the components. The publication also obtained original documents that apparently show some of the protocols Russia initially intended to block. They include older VPN protocols IPSec, L2TP, and PPTP, plus the BitTorrent protocol still widely used today. The full report on the system, which reveals the use of Intel chips/chipsets in 965 servers manufactured by Huawei and already purchased by Russia, plus another 2400+ servers for 2023/24, is available here.

Read more of this story at Slashdot.



Source: Slashdot – Russia Blocks 167 VPNs, Steps Up OpenVPN and WireGuard Disruption

China Removes Anonymity of Bloggers' Accounts With More Than 500,000 Followers

China’s popular social media platforms are requiring “self-media” accounts with over 500,000 followers to disclose real-name information, prompting concerns over increased doxxing and privacy among some users. Reuters reports: China’s most popular social media platforms on Tuesday announced that “self-media” accounts with more than 500,000 followers will be asked to display real-name information, a controversial measure that has prompted concerns over doxxing and privacy among some users. “Self-media” includes news and information not necessarily approved by the government, a genre of online content regulators have cracked down on in recent years to “purify” China’s cyberspace. […]

Rumors of the new policy had prompted lively debate among users. Some, like former state media editor Hu Xijin, have defended the measure as necessary in order to force influential accounts to use more responsible speech. Others, however, have expressed concerns that the measure would make doxxing easier and platforms would further remove online users’ anonymity in the future.

The new measures will remove the anonymity of thousands of influencers on social media platforms that are used daily by hundreds of millions of Chinese. Several of the platforms said that accounts with over 1 million followers would be affected first and those that do not comply would face restrictions in their online traffic and income as a consequence.

Read more of this story at Slashdot.



Source: Slashdot – China Removes Anonymity of Bloggers’ Accounts With More Than 500,000 Followers

Google Plans RISC-V Android Tools In 2024, Wants Developers To 'Be Ready'

An anonymous reader quotes a report from Ars Technica: Android is slowly entering the RISC-V era. So far we’ve seen Google say it wants to give the up-and-coming CPU architecture “tier-1” support in Android, putting RISC-V on equal footing with Arm. Qualcomm has announced the first mass-market RISC-V Android chip, a still-untitled Snapdragon Wear chip for smartwatches. Now Google has announced a timeline for developer tools via the Google Open Source Blog. The last post is titled “Android and RISC-V: What you need to know to be ready.”

Getting the Android OS and app ecosystem to support a new architecture is going to take an incredible amount of work from Google and developers, and these tools are laying the foundation for that work. First up, Google already has the “Cuttlefish” virtual device emulator running, including a gif of it booting up. This isn’t the official “Android Emulator” — which is targeted at app developers doing app development — Cuttlefish is a hardware emulator for Android OS development. It’s the same idea as the Android Emulator but for the bottom half of the tech stack — the kernel, framework, and hardware bits. Cuttlefish lets Google and other Android OS contributors work on a RISC-V Android build without messing with an individual RISC-V device. Google says it’s working well enough now that you can download and emulate a RISC-V device today, though the company warns that nothing is optimized yet.

The next step is getting the Android Emulator (for app developers) up and running, and Google says: “By 2024, the plan is to have emulators available publicly, with a full feature set to test applications for various device form factors!” The nice thing about Android is that most app code is written with no architecture in mind — it’s all just Java/Kotlin. So once the Android RunTime starts spitting out RISC-V code, a lot of app code should Just Work. That means most of the porting work will need to go into things written in the NDK, the native developer kit, like libraries and games. The emulator will still be great for testing, though.

Read more of this story at Slashdot.



Source: Slashdot – Google Plans RISC-V Android Tools In 2024, Wants Developers To ‘Be Ready’

Apple's App Charges Violate EU Antitrust Law, Dutch Agency Says

Apple could be forced to scale back its App Store fees for developers after one of the European Union’s antitrust watchdogs said its commissions violate the bloc’s rules. From a report: In the latest twist in a long-running clash between the Dutch Authority for Consumers & Markets and the US tech giant, officials ruled that Apple’s commission on certain app subscriptions are an abuse of the company’s market power. In a confidential decision seen by Bloomberg, the Dutch regulator said Apple’s rules unfairly target companies that offer subscription services, such as Match Group’s dating app Tinder, which has to pay high commission rates on app sales, unlike ones that don’t have paid digital content.

Apple harms such companies “by charging them an additional and inexplicably higher fee,” according to the Dutch decision, which was sent in July. Apple had earlier offered to reduce app sale commission in the Netherlands from 30% to 27%, but the ACM’s confidential findings state this offer doesn’t go far enough. The decision could pave the wave for greater antitrust scrutiny across the 27-nation EU on the fairness of Apple’s fee structure for different apps. The European Commission in Brussels is already investigating how Apple restricts apps from informing users of cheaper subscriptions outside the app store.

Read more of this story at Slashdot.



Source: Slashdot – Apple’s App Charges Violate EU Antitrust Law, Dutch Agency Says

Nokia Sues Amazon From US To India Over Streaming-Tech Patents

Nokia sued Amazon in courts across three continents, alleging the e-commerce giant uses its technologies in streaming services and devices without authorization. From a report: The suits were filed in the US, Germany, India, the UK, and the European Unified Patent Court, Arvin Patel, Nokia’s Chief Licensing Officer said in a statement on the company’s website. Separately, a suit was also filed against HP in the US over video-related technologies, he said.

Read more of this story at Slashdot.



Source: Slashdot – Nokia Sues Amazon From US To India Over Streaming-Tech Patents

[Dot]US Harbors Prolific Malicious Link Shortening Service

Security reporter Brian Krebs: The top-level domain for the United States — .US — is home to thousands of newly-registered domains tied to a malicious link shortening service that facilitates malware and phishing scams, new research suggests. The findings come close on the heels of a report that identified .US domains as among the most prevalent in phishing attacks over the past year. Researchers at Infoblox say they’ve been tracking what appears to be a three-year-old link shortening service that is catering to phishers and malware purveyors. Infoblox found the domains involved are typically three to seven characters long, and hosted on bulletproof hosting providers that charge a premium to ignore any abuse or legal complaints. The short domains don’t host any content themselves, but are used to obfuscate the real address of landing pages that try to phish users or install malware.

Infoblox says it’s unclear how the phishing and malware landing pages tied to this service are being initially promoted, although they suspect it is mainly through scams targeting people on their phones via SMS. A new report says the company mapped the contours of this link shortening service thanks in part to pseudo-random patterns in the short domains, which all appear on the surface to be a meaningless jumble of letters and numbers. “This came to our attention because we have systems that detect registrations that use domain name generation algorithms,” said Renee Burton, head of threat intelligence at Infoblox. “We have not found any legitimate content served through their shorteners.”

Read more of this story at Slashdot.



Source: Slashdot – [Dot]US Harbors Prolific Malicious Link Shortening Service