Ars Technica //www.calpashop.com 为技术专家服务了十多年。IT新闻、评论和分析。 太阳,2021年4月25日13:00:24 +0000 en - us 每小时 1 https://wordpress.org/?v=4.9.16 https://cdn.arstechnica.net/wp-content/uploads/2016/10/cropped-ars-logo-512_480-32x32.png Ars Technica //www.calpashop.com 32 32 切尔诺贝利清洁人员的孩子没有多余的突变 //www.calpashop.com/?p=1759928 太阳,2021年4月25日13:00:24 +0000 约翰•蒂莫 科学 生物学 切尔诺贝利核事故 核事故 辐射 //www.calpashop.com/?p=1759928 深入研究这场灾难留下的遗传损伤。
大自然慢慢地回收了一座低矮的混凝土瓦片建筑。

放大 /在切尔诺贝利灾难后被废弃的小镇上,一所旧医院附近生长着树木。(credit: Canvan Images / Getty Images)

Chernobyl is generally recognized as the worst nuclear accident on record, directly killing 31 people and causing widespread contamination in Eurasia. It's estimated that thousands of people will eventually die earlier than they would have due to the cancers caused by their exposure.

Now, international teams of researchers have looked at the genetic damage that's the legacy of Chernobyl exposures. One group looked at the genetic changes found in thyroid tumors that have been linked to exposure to the radioactive iodine spewed out during the disaster. And another team looked at the children of people assigned to the Chernobyl cleanup and found that the damage seems to be limited to those exposed rather than being passed down.

Radiation and DNA

Radiation causes long-term problems because it can cause damage to our DNA. The precise nature of the damage, however, is complicated. The radiation can damage individual bases of DNA, leading to minor mutations. But it can also make breaks in both of the strands of DNA's double helix (which biologists creatively call "double-stranded breaks").

Read 11 remaining paragraphs | Comments

为什么立法者对苹果和谷歌的“租金”如此感兴趣 //www.calpashop.com/?p=1759817 太阳,2021年4月25日11:15:36 +0000 《连线》杂志 政策 科技 反垄断 应用程序商店 苹果 国会 谷歌 //www.calpashop.com/?p=1759817 如果不了解反垄断术语,你就无法理解应用商店之争。
也许这本教科书是马贝尔时代的?# thanksgiving stockgettyimages

Enlarge /也许这本教科书是马贝尔时代的?#ThanksStockGettyImages (credit: designer491 / Getty Images)

Josh Hawley had some questions about how Apple came up with the money to buy back $58 billion in stock over the past year.

“I just want to focus on one major source of that income,” the Republican senator said to Apple’s lawyer. “It’s not innovation, it’s not research and development. It’s the monopoly rents that you collect out of your app store.”

Read 5 remaining paragraphs | Comments

苹果的AirDrop会泄露用户的PII信息,对此他们也无能为力 //www.calpashop.com/?p=1759947 2021年4月24日星期六15:21:02 +0000 丹Goodin 商业和它 政策 科技 空投 苹果 个人身份信息 PII //www.calpashop.com/?p=1759947 苹果公司自2019年就知道这个漏洞,但迄今尚未承认或修复它。
平板电脑与智能手机同步的宣传图片。

放大Apple)

AirDrop, the feature that allows Mac and iPhone users to wirelessly transfer files between devices, is leaking user emails and phone numbers, and there's not much anyone can do to stop it other than to turn it off, researchers said.

AirDrop uses Wi-Fi and Bluetooth Low Energy to establish direct connections with nearby devices so they can beam pictures, documents, and other things from one iOS or macOS device to another. One mode allows only contacts to connect, a second allows anyone to connect, and the last allows no connections at all.

A matter of milliseconds

To determine if the device of a would-be sender should connect with other nearby devices, AirDrop broadcasts Bluetooth advertisements that contain a partial cryptographic hash of the sender's phone number and email address. If any of the truncated hashes matches any phone number or email address in the address book of the receiving device or the device is set to receive from everyone, the two devices will engage in a mutual authentication handshake over Wi-Fi. During the handshake, the devices exchange the full SHA-256 hashes of the owners' phone numbers and email addresses.

Read 13 remaining paragraphs | Comments

共和党和民主党越来越一致地认为:大型科技公司太强大了 //www.calpashop.com/?p=1759536 2021年4月24日星期六13:00:20 +0000 蒂莫西·b·李 政策 反垄断 联邦贸易委员会 莉娜汗 //www.calpashop.com/?p=1759536 拜登为联邦贸易委员会选择了一个批评大型科技公司的人——共和党参议员似乎对此很满意。
Sen。罗杰·威克(共和党- ms)和参议员特德·克鲁兹(共和党- tx)在2019年的听证会上。在2021年确认莉娜·汗在联邦贸易委员会任职的听证会上,两位参议员都严厉批评了大型科技公司。><p class=Enlarge /参议员罗杰·威克(R-MS)和参议员特德·克鲁兹(R-TX)在2019年的听证会上。在2021年确认莉娜·汗在联邦贸易委员会任职的听证会上,两位参议员都严厉批评了大型科技公司。(credit: Drew Angerer/Getty Images)

When President Joe Biden chose Lina Khan for one of the Federal Trade Commission's five seats, it was an ominous sign for the nation's largest technology companies. While still a law student, Khan made her academic career penning "Amazon's Antitrust Paradox," a scholarly 2017 treatise arguing for a tougher approach to regulating the Seattle behemoth.

Prior to law school, Khan worked for Barry Lynn, a scholar who was fired from the centrist New America Foundation over his aggressive criticism of Google, a major New America funder. After law school, Khan worked as the legal director of Lynn's new organization, the Open Markets Institute.

So if we can expect anyone to push the Federal Trade Commission to enforce antitrust laws more aggressively against big technology companies, it would be Khan. The choice of Khan could also signal that the Biden administration more broadly will take a confrontational posture toward Big Tech.

Read 18 remaining paragraphs | Comments

保守派对自由派:一场激烈而持久的气候政策之战 //www.calpashop.com/?p=1759825 2021年4月24日星期六12:10:31 +0000 Ars贡献者 政策 科学 碳排放税 气候变化 气候政策 //www.calpashop.com/?p=1759825 专家们对加拿大保守党提出的碳税进行了权衡。 < span class=" font- family:宋体"font- family:宋体"font- family:宋体"font- family:宋体"font- family:宋体" < span class=" font-size:0.8em" < span class=" font-size:0.8em"tanith k / Flickr)

While the United States debates whether or not to put a price on carbon emissions, Canada is getting into the nitty-gritty of how best to do it. The country's ruling Liberal Party enacted its carbon tax back in 2016 to much controversy. Former Conservative Party of Canada (CPC) leader Andrew Scheer decried the tax and suggested it was a blow to national unity within Canada. A few provinces with conservative governments—notably Ontario and oil-rich Alberta—took legal action against the tax, claiming that it wasn't constitutional.

Recently, the Supreme Court of Canada decided that the tax was constitutional.

The CPC—which still retains ties with its provincial counterparts despite having a different name—has now proposed its own carbon-pricing scheme. Its strategy is a different beast from the Liberals' existing policy. This is likely in no small part because the CPC's relationship with the climate has long (but not always) been strained.

Read 20 remaining paragraphs | Comments

苹果勒索软件的混乱局面是网络勒索的未来 //www.calpashop.com/?p=1759821 2021年4月24日星期六11:01:50 +0000 Eric Bangeman 商业和它 科技 苹果 商业间谍活动 黑客 iphone ransomware //www.calpashop.com/?p=1759821 黑客要求5000万美元的赔偿,不要公布他们从苹果供应商那里窃取的原理图。
Apple 's ransomware mess is the future of online勒索

放大Aurich Lawson)

On the day Apple was set to announce a slew of new products at its Spring Loaded event, a leak appeared from an unexpected quarter. The notorious ransomware gang REvil said they had stolen data and schematics from Apple supplier Quanta Computer about unreleased products and that they would sell the data to the highest bidder if they didn’t get a $50 million payment. As proof, they released a cache of documents about upcoming, unreleased MacBook Pros. They've since added iMac schematics to the pile.

The connection to Apple and dramatic timing generated buzz about the attack. But it also reflects the confluence of a number of disturbing trends in ransomware. After years of refining their mass data encryption techniques to lock victims out of their own systems, criminal gangs are increasingly focusing on data theft and extortion as the centerpiece of their attacks—and making eye-popping demands in the process.

Read 12 remaining paragraphs | Comments

在顾问投票支持使用强生疫苗后,疾控中心和FDA解除了强生疫苗的暂停[更新] //www.calpashop.com/?p=1759864 2021年4月23日星期五22:10:00 +0000 贝斯摩尔 科学 ACIP 疾病预防控制中心 新型冠状病毒肺炎 强生公司 疫苗 //www.calpashop.com/?p=1759864 美国疾病控制与预防中心的顾问以10比4的投票结果取消了J&J的暂停,并对血栓提出了新的警告
Boxes of Johnson &在佛罗里达州的一个疫苗接种地点,约翰逊的詹森COVID-19疫苗。

放大 / Boxes of Johnson &在佛罗里达州的一个疫苗接种地点,约翰逊的詹森COVID-19疫苗。(credit: Getty | Paul Hennessy)

Update 7:00 pm EDT: The Centers for Disease Control and Prevention and the Food and Drug Administration announced late Friday that the pause on the use of Johnson & Johnson's one-shot COVID-19 vaccine is now lifted.

The announcement comes just hours after a panel of CDC advisors voted largely in favor of resuming use, reaffirming its recommendation that it be used in all adults.

The two agencies paused use on April 13 after six women developed dangerous blood clots after receiving the vaccine. Though the CDC confirmed nine additional cases during the 11-day pause, the agencies and their advisors determined that the benefits of the vaccine greatly outweigh risks of the extremely rare condition.

Read 17 remaining paragraphs | Comments

后门密码管理器窃取了多达29K家企业的数据 //www.calpashop.com/?p=1759877 2021年4月23日星期五21:55:48 +0000 丹Goodin 商业和它 科技 后门 密码管理 密码状态 供应链的攻击 //www.calpashop.com/?p=1759877 破解的Passwordstate更新机制会推送窃取数据的恶意软件。
 backdoor password manager偷走数据from as many as 29K enterprises

放大Getty Images)

As many as 29,000 users of the Passwordstate password manager downloaded a malicious update that extracted data from the app and sent it to an attacker-controlled server, the app maker told customers.

In an email, Passwordstate creator Click Studios told customers that bad actors compromised its upgrade mechanism and used it to install a malicious file on user computers. The file, named “moserware.secretsplitter.dll,” contained a legitimate copy of an app called SecretSplitter, along with malicious code named "Loader," according to a brief writeup from security firm CSIS Group.

(credit: CSIS Group)

The Loader code attempts to retrieve the file archive at https://passwordstate-18ed2.kxcdn[.]com/upgrade_service_upgrade.zip so it can retrieve an encrypted second-stage payload. Once decrypted, the code is executed directly in memory. The email from Click Studios said that the code “extracts information about the computer system, and select Passwordstate data, which is then posted to the bad actors’ CDN Network.”

Read 8 remaining paragraphs | Comments

新的12.9英寸iPad Pro不支持之前的Magic Keyboard //www.calpashop.com/?p=1759826 2021年4月23日星期五21:19:58 +0000 撒母耳轴突 科技 12.9英寸iPad职业 苹果 苹果商场 苹果电视4 k ipad ipad职业 神奇的键盘 iPad的神奇键盘 Siri远程 //www.calpashop.com/?p=1759826 新的Apple TV 4K遥控器也不适用于某些Apple TV游戏。

Despite its apparently unwavering commitment to using the Lightning port in iPhones, Apple is not usually squeamish about ending support for old accessories and products when it heralds the latest, greatest version of something.

That's especially apparent this week, as it's been revealed that the new 12.9-inch iPad Pro won't work with the Magic Keyboard Apple made for its predecessor just one year ago.

French website iGeneration was the first to cover the news, explaining that although the 2020 and 2021 12.9-inch iPad Pro are mostly similar, the new one is 0.5 mm thicker. The site claimed to have seen Apple documentation saying that the older Magic Keyboard would not be supported. AppleInsider later claimed to receive confirmation directly from Apple that this is the case.

Read 3 remaining paragraphs | Comments

AirTags的订单今天开始,但供应已经在减少 //www.calpashop.com/?p=1759787 2021年4月23日星期五18:31:34 +0000 撒母耳轴突 科技 AirTag AirTags 苹果 苹果商店 iphone iPhone 12 //www.calpashop.com/?p=1759787 iPhone有货,但AirTags在某些情况下会备份到6月份。

Apple began taking orders Friday for its new AirTags location-tracking product and the new purple color for the iPhone 12, but AirTag supply is already falling behind demand.

Announced earlier this week, AirTags are Apple's answer to the already established and relatively popular Tile product. Each AirTag is a small disc that can be attached to a valuable possession so you can track it with your iPhone if you lose it.

Each AirTag sends out a Bluetooth signal that nearby compatible devices in the "Find My" network detect. When a device detects the AirTag, it reports its location, and you can use the newly rebranded "Find My" app to locate it; Apple claims the process is anonymous, secure, and encrypted.

Read 5 remaining paragraphs | Comments

今天,让我们来观看索尼PS5独家回归游戏的开幕 //www.calpashop.com/?p=1759734 2021年4月23日星期五17:10:04 +0000 山姆Machkovech 188bet亚洲滚球与投注 housemarque playstation 5 ps5 returnal 索尼互动娱乐 //www.calpashop.com/?p=1759734 更新:《Housemarque》这款野心勃勃的roguelike射击游戏的Twitch视频现在作为VOD发布了。

Ahead of next week's launch of the PlayStation 5 exclusive Returnal, Sony has given me an opportunity to show exactly how the game looks and plays via stream before I start writing a review.

For some video games, this kind of "Twitch it early" opportunity is a no-brainer, like when I got to test Diablo II: Resurrected ahead of its closed beta earlier this month. Returnal is a trickier one, since it's for a console that a lot of readers say they've struggled to buy. And it's a brand-new IP, so you may look at the headline and ask what the heck a Returnawhatzit is.

But after playing a few hours of the game already, I'm compelled to connect my PS5 to my streaming rig and show you what Returnal is all about. This is partially because I've watched the game's official, weirdly edited video previews since its announcement last year and not understood what is going on in this procedurally generated sci-fi shooter. Seeing the game in action helps a lot. Its earliest moments feel like a refined Housemarque classic—this studio has previously impressed with games like Resogun and Nex Machina—but Returnal is supercharged with the exploration, production values, and dark mystery of Metroid Prime. Some good chocolate-and-peanut-butter right there.

Read 2 remaining paragraphs | Comments

新冠肺炎紧急情况导致日本超级任天堂世界在开业一个月后关闭 //www.calpashop.com/?p=1759790 2021年4月23日星期五17:08:45 +0000 凯尔·奥兰 188bet亚洲滚球与投注 Covid 日本 任天堂 超级任天堂世界 环球影城 //www.calpashop.com/?p=1759790 美国版任天堂主题公园的建设仍在继续。

The highly anticipated Super Nintendo World section of Universal Studios Japan will be temporarily closing a little more than a month after its delayed opening, along with the rest of the park, due to the increased spread of COVID-19 in Osaka.

"Today, Universal Studios Japan has decided to temporarily close our park due to the substantial business shutdown request to operate with no spectators which was issued under the state of emergency for Osaka prefecture," reads a note on the Universal Studios Japan website.

The closure comes just weeks after Universal Studios Japan was forced to limit visitor numbers amid rising case rates in Osaka. Universal Studios Japan was previously closed for COVID from February 29 through June 7 of last year. The latest closure will be effective April 25 and will last "until the request has been lifted."

Read 5 remaining paragraphs | Comments

最高法院否决了联邦贸易委员会为诈骗受害者获得退款的“最强工具” //www.calpashop.com/?p=1759776 2021年4月23日星期五16:48:23 +0000 Jon Brodkin 政策 联邦贸易委员会 最高法院 //www.calpashop.com/?p=1759776 一致裁决限制了联邦贸易委员会获得退款的权力;要靠国会来解决这个问题。
最高法院大法官约翰·罗伯茨、斯蒂芬·布雷耶和埃琳娜·卡根在国会坐着听国情咨文演讲。 < p类=“标题”样式=“字体大小:0.8 em > < a href = " https://cdn.arstechnica.net/wp-content/uploads/2021/04/getty-supreme-court-roberts-breyer-kagan.jpg " class = " enlarge-link data-height = " 2085 " data-width = " 3128 " >扩大< / > <跨类=“9”> / < / span >最高法院大法官,从左,首席大法官约翰·罗伯茨,斯蒂芬•布雷耶和埃琳娜•卡根听当时的特朗普的国情咨文国会联席会议在华盛顿美国国会大厦,周二,1月30日,2018.(credit: Getty Images | Bloomberg)

A Supreme Court ruling yesterday killed the Federal Trade Commission's "strongest tool" for fighting scam artists and securing refunds for wronged consumers, the FTC's acting chairwoman said.

"The Supreme Court ruled in favor of scam artists and dishonest corporations, leaving average Americans to pay for illegal behavior," FTC Acting Chairwoman Rebecca Kelly Slaughter said in a statement after the ruling. "With this ruling, the Court has deprived the FTC of the strongest tool we had to help consumers when they need it most. We urge Congress to act swiftly to restore and strengthen the powers of the agency so we can make wronged consumers whole."

Though it was criticized by Slaughter and consumer advocates, the Supreme Court's ruling in a case involving deceptive payday lending practices was unanimous. In AMG Capital Management v. Federal Trade Commission, the court ruled that Section 13(b) of the Federal Trade Commission Act "does not authorize the Commission to seek, or a court to award, equitable monetary relief such as restitution or disgorgement" for consumers.

Read 15 remaining paragraphs | Comments

4chan创始人Chris Poole离开谷歌 //www.calpashop.com/?p=1759713 2021年4月23日星期五16:13:18 +0000 罗恩王维 科技 //www.calpashop.com/?p=1759713 普尔是谷歌+备受争议的雇佣,他在5年后离开了。
Christopher Poole, 4chan的创始人,2010年5月25日星期二在纽约TechCrunch Disrupt大会上发言。

Enlarge / Christopher Poole, founder of 4chan, speaks during the TechCrunch Disrupt conference in New York on Tuesday, May 25, 2010. (credit: Getty Images / Ramin Talaie)

CNBC reports that 4chan founder Chris Poole no longer works at Google. Google hired Poole in 2016 to work on the company's doomed social media project, Google+. Poole lasted just five years at Google, which CNBC notes is usually just long enough for any employee's shares attached to hiring to vest. It sounds like Poole never found a solid landing spot at Google, as he had three different positions during his five years.

Poole's 4chan is an anonymous, ephemeral imageboard that is often given the title "cesspool of the Internet." The site is broken up into boards of various topics, and some of the more lawless boards are home to all of the worst characters on the Internet, like school shooters, child pornographers, and racists. It's also the birthplace of a lot of Internet culture, like Rickrolling, lolcats, and, more recently, Pepe the frog memes and the alt-right. The site gave rise to the Internet hacktivist group Anonymous and is often used as a dumping ground for various hacks like the Nintendo Gigaleak. Poole sold 4chan back in 2015, a year before joining Google.

Back when Poole was hired, Google's fear of Facebook gave it an unhinged obsession with social media, but nobody at Google really understood how social media worked. Poole's hiring at the company was controversial, but high-ranking Google+ execs defended the move. 4chan is a social site with millions of monthly visitors, and that made Poole one of the company's few experienced social experts when he arrived.

Read 1 remaining paragraphs | Comments

明尼苏达州人愤怒地认为他们必须为德克萨斯州的冷冻问题买单 //www.calpashop.com/?p=1759766 2021年4月23日星期五16:08:55 +0000 蒂姆·德·唱 政策 能源 天然气 德州 实用程序规定 //www.calpashop.com/?p=1759766 在德克萨斯州2月份冻结期间,全国各地的天然气价格飙升。
residential natural gas meters

放大Photo by Robert Nickelsberg/Getty Images)

Texas’ deep freeze didn’t just disrupt natural gas supplies throughout Lone Star country—its effects rippled across the country, extending as far north as Minnesota. There, gas utilities had to pay $800 million more than they anticipated during the event, and Minnesota regulators are furious.

“The ineptness and disregard for common-sense utility regulation in Texas makes my blood boil and keeps me up at night,” Katie Sieben, chairwoman of the Minnesota Public Utility Commission, told The Washington Post. “It is maddening and outrageous and completely inexcusable that Texas’s lack of sound utility regulation is having this impact on the rest of the country.”

The gas and electric markets in Texas are lightly regulated and highly competitive, which has pushed companies to deliver energy at the lowest possible cost. But it also means that many companies were ill-prepared when the mercury dropped. To save money, they had skimped on winterizing their equipment. As a result, gas lines across the state—which has about 23 percent of the country’s reserves—quite literally froze. The spot price of natural gas soared to 70-times what it would normally be in Minnesota, and gas utilities paid a hefty premium when they used the daily market to match demand.

Read 5 remaining paragraphs | Comments

苹果公司起诉该用户终止了价值2.5万美元的应用程序和视频 //www.calpashop.com/?p=1759745 2021年4月23日星期五15:27:28 +0000 蒂姆·德·唱 政策 amazon prime的视频 苹果 集体诉讼 iTunes //www.calpashop.com/?p=1759745 诉讼声称人们并不真正拥有他们在数字平台上购买的内容。
Your library in the Apple TV app

放大撒母耳轴突)

Apple is facing two class-action lawsuits over the meaning of the words “rent” and “buy.”

In the first suit, lead plaintiff David Andino argues that Apple’s definition of the two words is deceptive since the company can terminate people’s Apple IDs and, along with them, access to content they purchased using the “buy” button. Thus, Andino is arguing that Apple allows consumers to rent content rather than purchase it outright. If he had known that his access could be cut off at any time, he says he would have not spent as much on iTunes content.

“Just like Best Buy cannot come into a person’s home to repossess the movie DVD that such person purchased from it, [Apple] should not be able to remove digital content from its customers’ Purchased folders,” the suit says.

Read 7 remaining paragraphs | Comments

今天最好的科技交易:M1 MacBook Air, PS5控制器等等 //www.calpashop.com/?p=1759288 2021年4月23日星期五15:07:53 +0000 农业研究所的工作人员 工作人员 dealmaster //www.calpashop.com/?p=1759288 Dealmaster也有降噪耳机、网络摄像头和USB-C充电器。
Today 's best tech deals: M1 MacBook Air, PS5控制器,以及更多

放大Ars Technica)

Today's Dealmaster includes a solid deal on Apple's latest MacBook Air, as the entry-level model is currently down to $899 at various retailers. That's $100 off its typical going rate and tied for the lowest price we've tracked. While this model only comes with 8GB of RAM and 256GB of SSD storage, making it better suited for more casual usage, it's also equipped with Apple's new M1 silicon, which our review found to provide supremely impressive value in terms of both speed and battery life. That's on top of the typically sturdy hardware we've come to expect from non-butterfly-keyboard MacBooks.

Elsewhere, our deals roundup has a rare $10 discount on Sony's DualSense wireless controller for the PlayStation 5, good prices on wireless noise-canceling headphones and USB-C chargers we like, and much more. You can peruse the full selection below.

Note: Ars Technica may earn compensation for sales from links on this post through affiliate programs.

Read 1 remaining paragraphs | Comments

NASA得到了它想要的:独立、可靠的太空通道 //www.calpashop.com/?p=1759680 2021年4月23日星期五15:00:20 +0000 埃里克·伯杰 科学 猎鹰9号 美国国家航空航天局 spacex公司 //www.calpashop.com/?p=1759680 “该飞行器的可重用性似乎没有任何明显的限制。”

In three months, NASA will come upon the 10th anniversary of the final space shuttle flight, a period that was surely melancholy for the space agency.

When the big, white, winged vehicles touched down for the final time in July 2011, NASA surrendered its ability to get humans into space. It had to rely on Russia for access to the International Space Station. And the space agency had to fight the public perception that NASA was somehow a fading force, heading into the sunset.

Now we know that will not be the case, and the future appears bright for the space agency and its international partners. On Friday morning, NASA and SpaceX launched the third mission of Crew Dragon that has carried astronauts into space. After nearly a decade with no human orbital launches from the United States, there have been three in less than 11 months. Another successful mission further confirmed that the combination of Falcon 9 rocket and Crew Dragon spacecraft is a reliable means of getting crews to the International Space Station.

Read 10 remaining paragraphs | Comments

“俱乐部会所”的窃听器可以让人们隐形地潜伏在房间里 //www.calpashop.com/?p=1759717 2021年4月23日星期五14:26:11 +0000 《连线》杂志 商业和它 会所 安全 社交媒体 创业公司 白色的帽子 //www.calpashop.com/?p=1759717 版主将无法静音“幽灵”隐藏在和扰乱房间。
A Clubhouse bug让人隐身在房间里

< A href="https://cdn.arstechnica.net/wp-content/uploads/2021/04/clubhouse-list.jpg" class=" Enlarge -link" data-height="675" data-width="1200">放大Sam Whitney | Wired | Getty Images)

“Basically, I'm going to keep talking to you, but I’m going to disappear," longtime security researcher Katie Moussouris told me in a private Clubhouse room in February. “We'll still be talking, but I'll be gone.” And then her avatar vanished. I was alone, or at least that's how it seemed. “That’s it," she said from the digital beyond. "That's the bug. I am a fucking ghost.”

It's been more than a year since the audio social network Clubhouse debuted. In that time, its explosive growth has come with a panoply of security, privacy, and abuse issues. That includes a newly disclosed pair of vulnerabilities, discovered by Moussouris and now fixed, that could have allowed an attacker to lurk and listen in a Clubhouse room undetected or verbally disrupt a discussion beyond a moderator's control.

The vulnerability could also be exploited with virtually no technical knowledge. All you needed was two iPhones that had Clubhouse installed and a Clubhouse account. (Clubhouse is still only available on iOS.) To launch the attack, you would first log in to your Clubhouse account on Phone A and then join or start a room. Then you'd log in to your Clubhouse account on Phone B—which would automatically log you out on Phone A—and join the same room. That's where the problems started. Phone A would show a login screen but wouldn't fully log you out. You'd still have a live connection to the room you were in. Once you “left” that same room on Phone B, you would disappear but could maintain your ghost connection on Phone A.

Read 10 remaining paragraphs | Comments

美国宇航局在“星际飞船”登月计划上的大胆押注可能会永远改变太空飞行 //www.calpashop.com/?p=1757643 2021年4月23日星期五11:30:28 +0000 埃里克·伯杰 特性 科学 hls 美国国家航空航天局 spacex公司 星际飞船 //www.calpashop.com/?p=1757643 “这是一种转变,达到今天没有人能理解的程度。”
<图class="intro-image intro-left">未来,如果NASA每年都能向月球发射多艘星际飞船,月球探索将会是什么样子?SpaceX的这张效果图展示了这样一个未来。><p class=Enlarge /未来,如果NASA每年都能向月球发射多艘星际飞船,月球探索将会是什么样子?SpaceX的这张效果图展示了这样一个未来。(credit: SpaceX)

When NASA astronauts return to the Moon in a few years, they will do so inside a lander that dwarfs that of the Apollo era. SpaceX's Starship vehicle measures 50 meters from its nose cone to landing legs. By contrast, the cramped Lunar Module that carried Neil Armstrong and Buzz Aldrin down to the Moon in 1969 stood just 7 meters tall.

This is but one of many genuinely shocking aspects of NASA's decision a week ago to award SpaceX—and only SpaceX—a contract to develop, test, and fly two missions to the lunar surface. The second flight, which will carry astronauts to the Moon, could launch as early as 2024.

NASA awarded SpaceX $2.89 billion for these two missions. But this contract would balloon in amount should NASA select SpaceX to fly recurring lunar missions later in the 2020s. And it has value to SpaceX and NASA in myriad other ways. Perhaps most significantly, with this contract NASA has bet on a bold future of exploration. Until now, the plans NASA had contemplated for human exploration in deep space all had echoes of the Apollo program. NASA talked about "sustainable" missions and plans in terms of cost, but they were sustainable in name only.

Read 42 remaining paragraphs | Comments