buc.ci is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
The crypto industry's bet on Trump is collapsing in real time.
Charles Hoskinson—Ethereum co-founder and Cardano creator who vocally supported Trump in 2024—now says Trump made US crypto "worse than under Biden." He's demanding Trump's crypto czar resign and claims he personally lost $2.5B.
What happened?
• Trump's $TRUMP memecoin crashed 80%, destroying bipartisan support for legislation
• The CLARITY Act (crypto's key regulatory bill) is stalled in Senate
• Most crypto tokens fell 40-50% since Trump took office
• Record government shutdown paralyzed Congressional work
The irony: crypto leaders courted Trump expecting a boom. Instead they got memecoins, political toxicity, and legislative gridlock.
Hoskinson's assessment is devastating: "We thought the government would pump our bags. Instead they pulled a rugpull scam on us."
@molly0xfff has been tracking crypto's Trump pivot—and now the retreat: https://hachyderm.io/@molly0xfff/113816642891387994
📰 https://www.livebitcoinnews.com/cardano-founder-slams-trump-over-u-s-crypto-policy-shift/
#crypto #cryptocurrency #Trump #CLARITY #regulation #Ethereum #Cardano
@adr Granted, just by the hardware parts they'd loose out if they were to sell at €749 (you can thank the #AIbubble as well as #RAM & #NAND - #Tripol #Cartel and lack of #regulation for that).
Everyone who expects this a €499 box is fucking dellusional at this point, because with the current memory prices and expected developments people would just buy truckloads of them to harvest the #GabeCube for it's #RAM, #SSD & #VRAM and scrap the rest.
If the #GabeCube is competitive priced if not cheaper than equivalent #Desktops and #Servers then we'd see every #business with "strategic procurement" just buy literal truckloads expecting #DRAM & #Flash prices to not come down this upgrade cycle (aka. within 5 years) but still needing some machines to work with as the heightened prices - like the #ChipShortage before - will strangulate the #UsedMarket.
So do expect the #Gabecube to cost way more than €749 + VAT and closer to €999 than €749 since #Poland has a low #VAT / #GST rate and is a 'low income' place (compared to the EU-Average)...
#ElonMusk's #Grok faces global scrutiny for sexualised #AI #deepfakes
Governments & regulators from Europe to Asia are cracking down on sexually explicit content generated by #Musk's #xAI chatbot Grok on #X, launching probes, imposing bans & demanding safeguards, in a growing global push to curb illegal material.
#tech #law #regulation #moderation #ChildSexCrimes #pedophilia #ChildPornography
https://www.reuters.com/legal/litigation/elon-musks-grok-faces-global-scrutiny-sexualised-ai-photos-2026-01-09/?utm_source=braze&utm_medium=notifications&utm_campaign=2025_engagement
It's been a bit light on news over the last 24 hours, but we've got a couple of noteworthy updates for you, including a significant data leak denial from Instagram and a strong move by California against rogue data brokers. Let's dive in:
Instagram Denies Breach Amidst 17 Million Account Data Leak ⚠️
- Instagram has denied a system breach, stating that a fixed bug allowed mass password reset email requests, which led to data appearing on hacking forums.
- Data from over 17 million accounts, including usernames, phone numbers, and email addresses, was leaked, but Meta suggests this is likely a compilation from older scraping incidents, not a new compromise.
- No passwords were leaked, but users should remain vigilant against targeted phishing and smishing attacks, and are strongly advised to enable two-factor authentication (2FA).
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/instagram-denies-breach-amid-claims-of-17-million-account-data-leak/
California Cracks Down on Unregistered Data Brokers 🔒
- California's Privacy Protection Agency (CalPrivacy) has banned Datamasters from reselling health and personal data, fining the firm $45,000 for failing to register as a data broker.
- Datamasters illegally sold sensitive information, including medical conditions, perceived race, political views, and financial activity, for millions of Californians.
- This enforcement action highlights the California Delete Act, which mandates data broker registration and will soon enable consumers to request data deletion via the new DROP platform.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/legal/california-bans-data-broker-reselling-health-data-of-millions/
#CyberSecurity #DataLeak #Privacy #Regulation #DataBroker #InfoSec #CyberAttack #Phishing #2FA
It's been a pretty packed 24 hours in the cyber world, with some critical RCE vulnerabilities under active exploitation, a string of significant breaches impacting UK public sector and a major car manufacturer, and important reminders about MFA. Let's dive in:
Critical RCEs Under Active Exploitation & Patches ⚠️
- Legacy D-Link DSL Routers (CVE-2026-0625): A critical command injection flaw (CVSS 9.3) in the "dnscfg.cgi" endpoint of legacy D-Link DSL gateway routers is being actively exploited. This allows unauthenticated remote attackers to execute arbitrary shell commands, leading to RCE and potential DNS hijacking. Many affected models (DSL-2640B, DSL-2740R, DSL-2780B, DSL-526B) are End-of-Life, meaning no patches are coming – upgrade immediately!
- Veeam Backup & Replication (CVE-2025-59470): Veeam has patched a critical RCE vulnerability (CVSS 9.0, rated high by Veeam due to privilege requirements) in Backup & Replication 13.0.1.180 and earlier. This flaw allows Backup or Tape Operators to achieve RCE as the postgres user. Given VBR's popularity and past targeting by ransomware gangs (Cuba, FIN7, Frag, Akira, Fog), patching is crucial.
- n8n Workflow Automation (CVE-2026-21858): A maximum severity (CVSS 10.0) "Ni8mare" vulnerability in n8n, an open-source workflow automation tool, allows remote, unauthenticated attackers to hijack instances. The flaw is a content-type confusion in how n8n parses data, enabling arbitrary file reading and potential secret exposure or command execution. Over 100,000 vulnerable servers are estimated; update to n8n version 1.121.0 or newer, and restrict public webhook/form endpoints.
📰 The Hacker News | https://thehackernews.com/2026/01/active-exploitation-hits-legacy-d-link.html
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/new-veeam-vulnerabilities-expose-backup-servers-to-rce-attacks/
🤫 CyberScoop | https://cyberscoop.com/veeam-backup-replication-security-flaw-remote-code-execution-fix/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/max-severity-ni8mare-flaw-lets-hackers-hijack-n8n-servers/
Major Cyber Incidents and Breaches 🚨
- Jaguar Land Rover (JLR): A September cyberattack, claimed by Scattered Lapsus$ Hunters, severely impacted JLR's Q3 fiscal 2026 results, causing wholesale volumes to plummet by 43.3% and retail sales by 25.1%. The incident halted production for weeks, disrupted global supply chains, and cost the UK economy an estimated £2.1 billion.
- UK Ministry of Justice (MoJ) / Legal Aid Agency (LAA): Despite spending £50 million on cybersecurity, the LAA suffered a "highly sensitive" cyberattack in December 2024 that went undetected until April 2025. The breach compromised legal aid applicant data, causing significant operational disruption and financial overpayments to providers, with recovery expected to take years.
- European Space Agency (ESA): ESA has confirmed another significant security breach, with Scattered Lapsus$ Hunters claiming to have stolen 500 GB of sensitive data, including operational procedures, spacecraft details, and proprietary contractor data (from partners like SpaceX, Airbus). The group alleges the vulnerability remains open, giving them continued access. This follows a December incident where 200 GB of ESA data was listed for sale.
- Higham Lane School: A cyberattack over the Christmas holiday has forced a British high school to delay its reopening, with its entire IT system, including phones, emails, and management systems, taken offline. This follows over 80 ransomware attacks on the UK education sector in 2024.
- Illinois Department of Human Services (IDHS): The IDHS inadvertently exposed personal data of over 700,000 state residents for up to four years by posting it on public mapping websites. The exposed data, including names, addresses, and public benefits status, is protected health information under HIPAA.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2026/01/07/jlr_wholesale_volumes/
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2026/01/07/legal_aid_agency_attack/
🗞️ The Record | https://therecord.media/cyberattack-forces-british-high-school-to-delay-opening
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2026/01/07/european_space_agency_breach_criminal_probe/
🗞️ The Record | https://therecord.media/illinois-agency-exposed-data
Threat Actor Activity & Nation-State Operations ⚔️
- DDoSia Hacktivist Tool: Pro-Russian hacktivist group NoName057(16) is leveraging its custom DDoS tool, DDoSia, to conduct sustained, politically motivated attacks against Ukrainian and Western interests. The tool allows volunteers with minimal technical skill to participate in coordinated application-layer and multi-vector DDoS campaigns, often coinciding with geopolitical events.
- China's Cyber Offensive on Taiwan: Taiwan's National Security Bureau reported a 6% increase in Chinese cyberattacks in 2025, with 2.63 million intrusion attempts daily targeting government and critical infrastructure, particularly energy and hospitals. These attacks, often exploiting software/hardware vulnerabilities, are linked to China's political and military coercive actions.
⚫ Dark Reading | https://www.darkreading.com/cyberattacks-data-breaches/ddosia-powers-volunteer-driven-hacktivist-attacks
🤫 CyberScoop | https://cyberscoop.com/taiwan-china-cyberattacks-2025-energy-hospitals-nsb-report/
The Critical Need for MFA 🔒
- ownCloud Credential Theft: File-sharing platform ownCloud is urging its 200 million users to enable Multi-Factor Authentication (MFA) after reports of credential theft. Threat actors, like "Zestix" or "Sentap," are using infostealer malware (RedLine, Lumma, Vidar) to compromise employee devices, then leveraging stolen credentials to access ownCloud, ShareFile, and Nextcloud instances that lack MFA.
- Widespread Cloud Credential Heist: A report by Hudson Rock highlights a "pervasive failure in credential hygiene," where a single threat actor has breached dozens of global organisations by using infostealer-harvested credentials against cloud collaboration platforms without MFA. This underscores that simple security failures, not zero-days, are often the root cause of significant breaches.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/owncloud-urges-users-to-enable-mfa-after-credential-theft-reports/
⚫ Dark Reading | https://www.darkreading.com/cloud-security/lack-mfa-common-thread-vast-cloud-credential-heist
Regulatory Actions & Legal Outcomes ⚖️
- FCC Robocall Penalties: The US Federal Communications Commission (FCC) has finalised new financial penalties for telecoms that submit false, inaccurate, or late reporting to its Robocall Mitigation Database (RMD). Fines include $10,000 for false information and $1,000 for late updates, aiming to combat call spoofing and illegal robocalls. Two-factor authentication has also been added to the RMD.
- Stalkerware Prosecution: Bryan Fleming, creator of the pcTattletale stalkerware, has pleaded guilty in US federal court to selling software designed to intercept communications. This marks only the second successful prosecution of a stalkerware operator since 2014, highlighting a rare but significant legal victory against consumer spyware.
🤫 CyberScoop | https://cyberscoop.com/fcc-finalizes-new-penalties-for-robocall-violators/
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2026/01/07/stalkerware_slinger_pleads_guilty/
🗞️ The Record | https://therecord.media/stalkerware-guilty-plea-fleming
UK Public Sector Cyber Defence Boost 🛡️
- The UK government has unveiled a new £210 million ($283 million) "Government Cyber Action Plan" to bolster cyber defences across its departments and the wider public sector. The plan includes establishing a dedicated Government Cyber Unit, setting minimum security standards, improving risk visibility, and promoting best practices through a new Software Security Ambassador Scheme. This follows recent legislation to protect critical infrastructure and a ban on ransomware payments for public sector organisations.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/uk-announces-plan-to-strengthen-public-sector-cyber-defenses/
Cyber Landscape Commentary 💭
- AI and the Cybersecurity Workforce: Qualys CEO Sumedh Thakar argues that the cybersecurity industry cannot simply hire its way out of the talent shortage in the AI era. Instead, organisations must leverage AI to automate repetitive tasks and shift towards a proactive Risk Operations Center (ROC) model. He also warns that AI-generated code often contains security flaws, necessitating embedded security in development pipelines.
- Cyber in Military Operations: Speculation surrounds the role of US Cyber Command in a recent military operation in Venezuela that led to the capture of President Nicolás Maduro. While President Trump hinted at "certain expertise" causing power outages, NetBlocks data suggests kinetic attacks could also be responsible. Experts note Venezuela's network infrastructure is a "soft target" for cyber operations.
🤫 CyberScoop | https://cyberscoop.com/cybersecurity-talent-shortage-ai-risk-operations-center-2026-op-ed/
⚫ Dark Reading | https://www.darkreading.com/cybersecurity-operations/cyberattacks-part-military-operation-venezuela/
Other Noteworthy Developments 💡
- HackerOne Bug Bounty Delays: A security researcher, Jakub Ciolek, reported being "ghosted" by HackerOne for months over an $8,500 bug bounty for two high-severity DoS flaws (CVE-2025-59538, CVE-2025-59531) in Argo CD. HackerOne attributed the delay to an "operational backlog," raising concerns about trust and communication in bug bounty programs, especially with increasing AI-generated submissions.
- Microsoft Exchange Online Spam Clamp Scrapped: Microsoft has reversed its controversial plan to impose a 2,000 external recipient rate limit on Exchange Online mailboxes, following significant customer backlash. While the aim was to curb spam and abuse, the limits created operational challenges for legitimate bulk sending. Microsoft plans to develop "smarter, more adaptive approaches."
- Cyber Scam Kingpin Arrested: Cambodian authorities have arrested and extradited to China Chen Zhi, head of the Prince Group conglomerate, who is alleged to be the mastermind behind a multi-billion dollar scam empire. Zhi and 128 entities linked to him were sanctioned by the US and UK for illegal online gambling, sextortion, money laundering, and the trafficking of enslaved workers.
- HSBC App Sideloading Issues: Some HSBC mobile banking customers in the UK are being locked out of the bank's app if they have the Bitwarden password manager installed via an open-source app catalog like F-Droid. HSBC's app security controls appear to flag sideloaded apps as a risk, preventing coexistence with its banking app.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2026/01/07/hackerone_ghosted_researcher/
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2026/01/07/exchange_online_recipient_rate/
🗞️ The Record | https://therecord.media/alleged-cyber-scam-kingpin-cambodia-arrested-extradited
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2026/01/07/hsbc_bitwarden_sideloaded/
#CyberSecurity #ThreatIntelligence #Vulnerability #RCE #ActiveExploitation #ZeroDay #CyberAttack #Breach #Ransomware #DDoS #NationState #APT #MFA #CredentialTheft #DataPrivacy #Regulation #UKGov #AI #CyberWarfare #InfoSec
In government records that have flown under the radar, President Trump’s EPA said it’s reconsidering whether the agency has the legal authority to update air pollution rules based on new scientific knowledge.
#News #Trump #Environment #Pollution #Government #Regulation #EPA
This is such a dangerous document: conflating trillion-dollar centralised platforms with federated and, possibly in the future, peer-to/peer platforms or even personal web sites is one of most braindead policy suggestions I’ve ever read (and I’ve read quite a few).
#EU #DSA #fediverse #regulation https://mstdn.social/@shadowdancer/115802791790546876 https://mstdn.social/@shadowdancer/115802791790546876
Here’s my relevant talk at the European Parliament from 2019: Dear regulators, please don’t throw the baby out with the bathwater.
https://ar.al/2019/11/29/the-future-of-internet-regulation-at-the-european-parliament/
I think there is something fundamentally wrong with Big Tech playing the nationalism card and I think regulation is more important than ever before.
Most Americans also want Big Tech to be regulated.
#Apple #Facebook #Meta #Google #Microsoft #Technology #EU #Regulation #Politics
It's been a busy 24 hours in the cyber world with significant updates on recent breaches, new malware techniques, a critical RCE, and important regulatory shifts. Let's dive in:
Recent Cyber Attacks & Breaches ⚠️
- The US Justice Department, with Estonian authorities, seized web3adspanels[.]org, a domain used to host and manage stolen bank login credentials. This operation disrupted a scheme that defrauded 19 victims of approximately $14.6 million by using fake search engine ads to redirect users to fraudulent bank websites.
- Baker University disclosed a data breach from December 2024, where attackers accessed its network and stole personal, health, and financial information of over 53,000 individuals, including names, dates of birth, driver's license numbers, and Social Security numbers.
- La Poste, France's national postal service, confirmed a "major network incident" that took all its information systems offline, disrupting digital banking and online services, with French media reporting a distributed denial-of-service (DDoS) attack as the cause.
- Insurance giant Aflac confirmed a June data breach exposed information for over 22 million customers, beneficiaries, employees, and agents, with stolen documents containing sensitive details like insurance claims, health data, and Social Security numbers.
- Nissan Motor Co. confirmed that personal information for approximately 21,000 customers in Fukuoka, Japan, was compromised due to a security breach at its vendor, Red Hat, with leaked data including names, addresses, phone numbers, and email addresses.
- The SEC has filed charges against multiple cryptocurrency companies for an alleged investment scam that defrauded retail investors of over $14 million, using deepfake videos and AI-generated tips in WhatsApp "investment clubs" to lure victims.
📰 The Hacker News | https://thehackernews.com/2025/12/us-doj-seizes-fraud-domain-behind-146.html
🗞️ The Record | https://therecord.media/us-disrupts-bank-account-takeover-operation-web3adspanels
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/baker-university-data-breach-impacts-over-53-000-individuals/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/cyberattack-knocks-offline-frances-postal-banking-services/
🗞️ The Record | https://therecord.media/22-million-impacted-aflac-breach
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/nissan-says-thousands-of-customers-exposed-in-red-hat-breach/
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/12/23/21k_nissan_customers_data_stolen/
🗞️ The Record | https://therecord.media/sec-sues-crypto-firms-defrauding-investors-14-million
New Malware & Techniques 🦠
- A malicious npm package, 'lotusbail', with over 56,000 downloads, masqueraded as a WhatsApp Web API library to steal messages, credentials, contacts, and hijack WhatsApp accounts, maintaining access even after uninstallation.
- Two malicious Chrome extensions named 'Phantom Shuttle' are actively stealing user credentials and sensitive data by posing as proxy service plugins, routing all user web traffic through attacker-controlled proxies.
- The WebRAT malware is now being distributed through fake GitHub repositories that claim to host proof-of-concept exploits for recently disclosed vulnerabilities, luring users into downloading a dropper that disables Windows Defender and executes WebRAT.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/12/22/whatsapp_npm_package_message_steal/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/malicious-extensions-in-chrome-web-store-steal-user-credentials/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/webrat-malware-spread-via-fake-vulnerability-exploits-on-github/
Vulnerabilities 🚨
- A critical vulnerability, CVE-2025-68613 (CVSS 9.9), has been disclosed in the n8n workflow automation platform, allowing arbitrary code execution under specific conditions by authenticated attackers.
- The flaw affects versions 0.211.0 and higher, below 1.120.4, with patches available in 1.120.4, 1.121.1, and 1.122.0. Over 103,000 instances are potentially vulnerable.
- Users are advised to apply updates immediately or limit workflow creation/editing permissions to trusted users and deploy n8n in a hardened environment.
📰 The Hacker News | https://thehackernews.com/2025/12/critical-n8n-flaw-cvss-99-enables.html
Threat Landscape & AI Security 🤖
- Agentic AI browsers, like OpenAI’s Atlas, automate web browsing but significantly expand the enterprise attack surface by acting autonomously on users' behalf.
- New attack vectors include indirect prompt injection, clipboard/credential artifacts, opaque execution flows, and over-privileged automation, which conventional browser security measures are not designed to handle.
- Enterprises should implement strict controls such as requiring approval for actions, using role-based access, keeping critical systems out of scope, insisting on transparent logs, and providing user training.
🤫 CyberScoop | https://cyberscoop.com/agentic-ai-browsers-security-enterprise-risk/
Regulatory & Data Privacy ⚖️
- The US FCC has banned all drones and critical components made in foreign countries, adding them to its Covered List due to national security concerns, aiming to keep China-made drones out of the US market.
- Italy's competition authority (AGCM) has fined Apple €98.6 million ($116 million) for abusing its dominant market position in mobile app advertising through its App Tracking Transparency (ATT) framework.
- The AGCM argues that Apple's ATT policy forces third-party apps to request consent twice, while Apple's own apps are exempt, a stance disputed by Apple who plans to appeal.
📰 The Hacker News | https://thehackernews.com/2025/12/fcc-bans-foreign-made-drones-and-key.html
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/italy-fines-apple-116-million-over-app-store-tracking-privacy-practices/
Law Enforcement Actions 👮
- INTERPOL's Operation Sentinel in Africa led to 574 arrests, recovery of $3 million, and takedown of over 6,000 malicious links, focusing on business email compromise (BEC), digital extortion, and ransomware.
- Separately, a 35-year-old Ukrainian national, Artem Aleksandrovych Stryzhak, pleaded guilty in the US to conspiracy to use Nefilim ransomware, operating as an affiliate and targeting companies for double extortion.
- Stryzhak was encouraged to target companies with over $200 million in annual revenue in the US, Canada, and Australia, highlighting the financial motivations and global reach of ransomware affiliates.
📰 The Hacker News | https://thehackernews.com/2025/12/interpol-arrests-574-in-africa.html
Industry News & Product Reviews 💼
- Palo Alto Networks is significantly expanding its partnership with Google Cloud, migrating "key internal workloads" and deepening integrations between its security tools and Google Cloud's AI infrastructure. This multi-billion-dollar agreement is expected to lead to "cloud cost efficiencies" for Palo Alto.
- ServiceNow has agreed to acquire cybersecurity firm Armis for $7.75 billion in cash, aiming to expand its cyber exposure and security capabilities across IT, OT, and medical devices. This acquisition reflects a broader industry trend towards continuous, integrated security functions and a focus on AI-native capabilities.
- Passwd is a password manager designed specifically for Google Workspace organisations, offering secure credential storage, controlled sharing, and seamless Workspace integration with AES-256 encryption, a zero-knowledge architecture, and audit logs.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/12/22/palo_alto_google_cloud_ai_integration/
🤫 CyberScoop | https://cyberscoop.com/servicenow-armis-acquisition-ai-cybersecurity/
📰 The Hacker News | https://thehackernews.com/2025/12/passwd-walkthrough-of-google-workspace.html
Product Security Updates 🛡️
- Microsoft Teams will automatically enable messaging safety features by default starting January 12, 2026, for tenants using default configurations, to strengthen defenses against malicious content.
- This update activates weaponizable file type protection, malicious URL detection (with warning labels), and a system for reporting false positives.
- The move is part of Microsoft's broader response to increased scrutiny of security vulnerabilities and cybercriminal targeting of Teams users.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/microsoft/microsoft-teams-strengthens-messaging-security-by-default-in-january/
Other Noteworthy Incidents 🎵
- Spotify disabled user accounts after Anna's Archive, an open-source group, published a database of 86 million tracks scraped from the music streaming platform.
- Anna's Archive systematically violated Spotify’s terms by "stream-ripping" music over months, creating a 300 terabyte archive for preservation.
- Spotify clarified this was not a "hack" of its business systems but a terms-of-service violation, and has implemented new safeguards.
🗞️ The Record | https://therecord.media/spotify-disables-scraping-annas
#CyberSecurity #ThreatIntelligence #DataBreach #Malware #Ransomware #Vulnerability #RCE #AI #Privacy #Regulation #LawEnforcement #InfoSec #CyberAttack #IncidentResponse #SupplyChainSecurity #DDoS
What was and still is at stake is the balance between technology and humanity struck by the US federal government. The same incoherence that led us to where we are with crypto is almost surely also at play with the apparent lack of movement around generative AI.
#USPol #democrats #DemocraticParty #crypto #cryptocurrency #StableCoins #ShadowBanking #regulation #AI #GenAI
The British are trying to make coding new chat apps equivalent to espionage.
#TechnologyNews #VPN #Regulation #Britain #Chat #SocialMedia
More US political hypocrisy?
The Tangerine Tyrant (and others) have been loudly condemning the EU's fine of X for breaches of digital transparency rules...
Yet, the US has been fining major European financial institutions (many of which have few operations in the US) for a range of infractions over the last decade.
The EU has remained quiescent on the banking fines, but perhaps it should pick up on Trump's playbook & start pushing back?
#regulation #politics #EU #Trump
h/t Richard Milne/FT
We found that 11 of Trump’s DOT appointees disclosed between $12 million and $52 million in stock holdings and other financial interests in airlines, railroads, oil and gas corporations, transportation technology firms and other related businesses.
Read our original investigation: https://www.propublica.org/article/trump-dot-regulation-safety-rollback-sean-duffy?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon-post
#News #Trump #Transportation #Business #Industry #Regulation #Safety #Government
After reporting by ProPublica revealed industry connections among Transportation Department regulators and showed how they are seeking to loosen oil and gas pipeline safety regulations, Sen. Maria Cantwell is demanding answers.
https://www.propublica.org/article/trump-dot-oil-gas-pipeline-ethics-questions-senator-cantwell?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon-post
#News #Transportation #Industry #Business #Government #Regulation #Senate
Chemical industry lobbyists have long pushed the government to adopt a less stringent approach to gauging the cancer risk from chemicals, one that would help ease regulations on companies that make or use them.
They finally got their wish.
https://www.propublica.org/article/epa-formaldehyde-risk-assessment?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon-post
#News #Environment #PublicHealth #Health #Cancer #Government #Regulation
So much for #StatesRights
#Trump signs #ExecutiveOrder to neuter #State #AI laws, a win for #tech companies & #billionaires that have #lobbied against #regulation of the #technology.
The order would create one federal regulatory framework for #ArtificialIntelligence, Trump told reporters.
#law #regulations #safety #labor #DataCenters #energy #climate #PublicHealth
https://www.nytimes.com/2025/12/11/technology/ai-trump-executive-order.html?smid=nytcore-ios-share
#Trump — Making #Corruption Great Again
The #US #banking “regulator” overseeing large national #banks said the nation's 9 largest firms had in the past placed restrictions on providing financial services to some controversial industries in a practice commonly described as "debanking."
#law #finance #regulation #sustainability
https://www.reuters.com/sustainability/boards-policy-regulation/us-bank-regulator-says-large-banks-engaged-debanking-disfavored-industries-2025-12-10/?utm_source=braze&utm_medium=notifications&utm_campaign=2025_engagement
"Unfortunately, this presidency is run on tyrannical vibes and Diet Coke, so one can safely assume that while whatever emerges from the White House won’t pass legal scrutiny, Trump sure as hell will push his people to do whatever he wants them to[.]"
https://www.theverge.com/column/841161/ai-moratorium-midterm-elections-republicans
Trump’s Own Mortgages Match His Description of Mortgage Fraud, Records Reveal
The Trump administration has argued that Fed board member Lisa Cook may have committed mortgage fraud by declaring more than one primary residence on her loans. We foun...
https://www.propublica.org/article/trump-mortgage-fraud-florida-principal-residences#real-estate #regulation #trump-administration
Under Former Chemical Industry Insiders, Trump EPA Nearly Doubles Amount of Formaldehyde Considered Safe to Inhale
Chemical industry lobbyists have long pushed the government to adopt a less stringent approach to gauging the cancer risk from chem...
https://www.propublica.org/article/epa-formaldehyde-risk-assessment#environment #regulation
The FCC wants to roll back steps meant to stop a repeat of a massive telecom hack https://thever.ge/tCJe #Regulation #Politics #Security #Policy #Report #Tech
Restaurants and plumbers are more heavily regulated than AI companies. Yet, the tech giants still fall short of the demands of that light-touch regulation.
#AI #regulation
https://www.reuters.com/business/ai-companies-safety-practices-fail-meet-global-standards-study-shows-2025-12-03/
For years, social platforms have happily rented out attention while quietly outsourcing the consequences of fraud to banks and users. The new EU rules flip that approach: if a scam runs on your platform and you ignore the warning signs, you help pay the bill. It is a simple idea with significant implications: the business model that monetizes virality now has to price in liability, increasing the risk and having skin in the game.
What I like about this law is that it finally treats scams as a systems problem, not a string of unlucky individuals. Banks still reimburse victims when money moves without consent or when a fake bank impersonates them, but platforms are now on the hook when they leave a reported scam up. In other words, the cost of looking the other way just became a line item on the balance sheet. When risk stops being abstract and becomes payable, product roadmaps and moderation priorities suddenly become very practical.
The more profound lesson is that digital trust cannot be rebuilt through awareness campaigns alone. It will come from aligning incentives so that the cheapest option is also the safest one: remove the scam quickly, verify the advertiser, invest in detection, or pay for the damage later. Regulation is not a silver bullet, but it does change who reaches for the broom when the mess hits the floor.
TL;DR
🧠 Social platforms can now be liable for financial scams they host
⚡ Banks reimburse victims, but platforms must compensate banks when they ignore reported fraud
🎓 Liability moves from vague responsibility to real cost on tech balance sheets
🔍 Trust online will follow the money, not the mission statements
https://mashable.com/article/social-media-companies-held-liable-for-finance-scams-in-new-eu-rules
#EU #fintech #regulation #BigTech #security #privacy #cloud #infosec #cybersecurity
WASHINGTON, D.C. - The federal Secretary of Transportation, Sean Duffy, accompanied by the Secretary of Health and Human Services, Robert F. Kennedy Jr., today held a press conference at which they announced a new federal regulation that purports to pre-empt all federal and state law that make use of seatbelts mandatory on trains, planes, buses, and private vehicles, on the grounds of YOU'RE NOT MY REAL MOM! Spokespersons for the two agencies hid under their desks while yelling "No obbla inglays!".
#USPol #USA #USAnian #freedumb #idiot #BobbyBrainworm #JFK #SeanDuffy #Trump #moron #regulation #law #YoureNotMyRealMom
For one glorious moment, we generated significant shareholder profit.
#AI #regulation
https://www.theguardian.com/technology/2025/nov/24/us-europe-artificial-intelligence-ai
Lawmakers Want to Ban VPNs—And They Have No Idea What They're Doing
@vfrmedia @tikibunnyimports nodds in agreement
To me EVERY SINGLE #BEV seems like a severe #regression in terms of #repairability and #serviceability compared to my #CorsaD with it's I-3 GM ECOTEC engine...
#Regulation is overdue!
AodeRelay boosted@vfrmedia @tikibunnyimports Obviously @EUCommission needs to enact #RightToRepair #legislation to enshure the long-term #serviceability of #EVs - espechally #BEVs - to curb this problem with mandated access to #tools, #software, #documentation and #parts on a #FRAND (fair, reasonable and non-discriminatory) basis...
here in UK many aftermarket mechanics are shit-scared of working with EVs for fear of ending up on the wrong side of strong voltage. This is understandable to an extent, but made worse by garages being run so lean the mechanics don't have time to invest in training (and any return on investment will be slow at present)
This is slowly changing as Renault Zoe/Nissan Leaf and similar older EVs are now well out of the dealer servicing network and even becoming popular first cars for those in suburbs and cities, but realistically wider EV uptake will take a lot longer, the richer middle class customers have already been cherrypicked and everyone else is staying with petrol and diesel..
@raganwald @AnnieBuddy @rozeboosje @CStamp @Pineywoozle
i like to use a sports analogy with the "free market" lies that end in "therefore, we must get rid of #regulations" conclusion by malicious and stupid #libertarian assholes
a football game with no referees becomes players punching other players, deploying handguns, and driving tanks
a truly #freeMarket consists of *heavy* #regulation pointed at abuse
(then we get to talk about how regulations are corrupted by the malicious 😩)
"Mark Zuckerberg has always been an awful person, but – as Sarah Wynn-Williams demonstrates in her book – he was once careful, worried about the harms he would suffer if he harmed us. Once we took those consequences away, Zuck did exactly what his nature dictated he must: destroyed our lives to increase his own fortune." - @pluralistic
https://pluralistic.net/2025/11/08/faecebook/#too-big-to-care
Alright team, it's been a pretty packed 24 hours in the cyber world, with some serious incidents, new malware threats, and a continued focus on accountability and data privacy. Let's dive into the details:
Government & Critical Infrastructure Under Attack 🚨
- The US Congressional Budget Office (CBO) confirmed a cybersecurity incident, suspected to be from a foreign actor, potentially exposing sensitive communications between lawmakers and researchers. This follows a trend of attacks on US government agencies, including the Treasury Department by China's Silk Typhoon.
- The Bank of England has explicitly cited the cyberattack on Jaguar Land Rover (JLR) as a contributing factor to the UK's slower-than-expected GDP growth, marking a significant, and perhaps first, instance of a cyberattack having a material economic impact at a national level.
- An educational technology company, Illuminate Education, was fined $5.1 million for poor security practices that led to a 2021 data breach, exposing student names, medical conditions, and special education accommodations for millions across 49 states.
🗞️ The Record | https://therecord.media/ed-tech-company-fined-5-million-data-breach-security-practices
🤫 CyberScoop | https://cyberscoop.com/congressional-budget-office-cybersecurity-incident/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/us-congressional-budget-office-hit-by-suspected-foreign-cyberattack/
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/11/07/bank_of_england_says_jlrs/
🗞️ The Record | https://therecord.media/cbo-implements-controls-following-cyberattack-reports
New Malware & Threat Actor Activity ⚠️
- Gootloader JavaScript malware is back in full swing, using SEO poisoning and custom WOFF2 fonts for obfuscation, and has been observed leading to domain controller compromise by the Vanilla Tempest (aka Rhysida) ransomware gang in as little as 17 hours.
- Researchers uncovered malicious NuGet packages, published by 'shanhai666', containing "time bomb" payloads set to trigger between 2027 and 2028, targeting major databases and Siemens S7 PLCs in manufacturing environments with destructive code.
- A "vibe-coded" malicious VS Code extension, 'susvsex', likely created with AI, was found on Microsoft's marketplace, openly advertising ransomware capabilities including file exfiltration and encryption, using GitHub for command and control.
- China-linked APTs are leveraging legacy vulnerabilities like Log4j and IIS misconfigurations, alongside tool-sharing, to establish long-term persistence and conduct espionage against US non-profit organisations involved in policy issues.
- A new "commercial-grade" Android spyware, dubbed "Landfall," has been discovered targeting Samsung Galaxy phones (S22, S23, S24, Fold/Flip) in the Middle East, exploiting a zero-click zero-day (CVE-2025-21042) via WhatsApp DNG image files to enable extensive surveillance.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/11/06/gootloader_back_ransomware/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/ai-slop-ransomware-test-sneaks-on-to-vs-code-marketplace/
🌐 The Hacker News | https://thehackernews.com/2025/11/vibe-coded-malicious-vs-code-extension.html
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/11/07/cybercriminals_plant_destructive_time_bomb/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/malicious-nuget-packages-drop-disruptive-time-bombs/
🌐 The Hacker News | https://thehackernews.com/2025/11/from-log4j-to-iis-chinas-hackers-turn.html
🤫 CyberScoop | https://cyberscoop.com/landfall-spyware-samsung-phones-palo-alto-networks-unit-42/
🗞️ The Record | https://therecord.media/landfall-spyware-middle-east-appears-commercial-grade
🌐 The Hacker News | https://thehackernews.com/2025/11/samsung-zero-click-flaw-exploited-to.html
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/new-landfall-spyware-exploited-samsung-zero-day-via-whatsapp-messages/
Actively Exploited Vulnerabilities 🛡️
- Cisco has warned that two previously disclosed zero-day vulnerabilities (CVE-2025-20362, CVE-2025-20333) in ASA and FTD firewalls, linked to the state-sponsored ArcaneDoor campaign, are now being actively exploited to trigger denial-of-service (DoS) attacks by forcing devices into reboot loops.
- QNAP has released patches for seven zero-day vulnerabilities in its QTS/QuTS hero operating systems and various applications (Hyper Data Protector, Malware Remover, HBS 3), all of which were successfully exploited by researchers at the Pwn2Own Ireland 2025 competition.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/cisco-actively-exploited-firewall-flaws-now-abused-for-dos-attacks/
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/qnap-fixes-seven-nas-zero-day-vulnerabilities-exploited-at-pwn2own/
Threat Landscape: Credential Compromise 🔒
- Enterprise credentials remain a high-value target for cybercriminals, with common compromise methods including sophisticated phishing, credential stuffing, third-party breaches, and leaked API keys. The article highlights how various threat actors, from opportunistic fraudsters to organised crime groups, leverage these credentials for account takeover, lateral movement, data theft, and ransomware deployment, often with significant financial and reputational consequences.
🌐 The Hacker News | https://thehackernews.com/2025/11/enterprise-credentials-at-risk-same-old.html
Data Privacy & Regulatory Shift ⚖️
- A new whitepaper from the Electronic Privacy Information Center (EPIC) argues that government data mining on Americans has become excessively invasive, with AI poised to amplify these privacy risks by making unreliable and potentially biased inferences. It calls for comprehensive legislative reform beyond the current ineffective Federal Agency Data Mining Reporting Act.
- New global regulations like the EU's DORA and the US's Secure-by-Design Principles are fundamentally shifting cybersecurity accountability from a mere aspiration to a firm expectation, demanding greater transparency, architectural rigor, and cross-team communication regarding risk.
- Microsoft is continuing its push for "data sovereignty" in Europe, introducing new features for its EU Data Boundary and in-country AI processing, and expanding Azure Local capabilities, in an effort to address European customers' concerns about the US CLOUD Act and the jurisdiction over their data.
🤫 CyberScoop | https://cyberscoop.com/government-data-mining-has-gone-too-far-ai-will-make-it-worse/
🤫 CyberScoop | https://cyberscoop.com/how-cybersecurity-regulation-is-driving-accountability/
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/11/07/microsoft_announces_strengthening_of_sovereignty/
#CyberSecurity #ThreatIntelligence #Ransomware #Malware #ZeroDay #Vulnerability #APT #DataPrivacy #Regulation #SupplyChainAttack #ICS #OTSecurity #IncidentResponse #InfoSec
Regulating Big Tech is like regulating a malignant tumour. You don’t regulate a malignant tumour. You cut it out, with enough of a surgical margin to ensure you get every last putrid bit to avoid regrowth.
(This is moot, of course, as we’re not even regulating Big Tech, we’re feeding it with subsidies, government contracts, and access to national healthcare and other sensitive data while the folks who should be regulating them eye their next lucrative gig beyond the revolving doors of their lobbies.)
#BigTech #capitalism #cancer #regulation #institutionalCorruption #lobbying #revolvingDoors #extinctionStageCapitalism
Apple fined $261,000 for poisoning people.
(Apple made that money back in about 21.5 seconds.)
#BigTech #Apple #poisoning #fines #bullshit #regulation https://mastodon.social/@ashleygjovik/115505358966262169
Meta earns $16B a year from targeted scam ads.
This is fine and normal.
#BigTech #Facebook #Instagram #WhatsApp #Meta #shutItDown #regulation
The tragedy of tech regulation:
Politicians, who usually know little about tech, make their decisions based on the advice of lobbyists and marketers, who are selling tech, while ignoring experts, who are devoting their lives to knowing as much as possible about tech.
What could possibly go wrong? Well, everything!
Dear politicians, it's okay that you don't know everything. But please start listening to those who know better instead of those who are just selling!
--
#tech #politics #regulation
Salt water laced with cancer-causing chemicals, a byproduct of oil and gas drilling, keeps shooting out of the ground in Oklahoma.
Experts say it means even more wastewater is spreading underground, poisoning the state’s water supply.
https://www.propublica.org/article/oklahoma-oil-gas-wastewater-pollution?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon-post
#News #Oklahoma #Oil #Gas #Environment #Pollution #Regulation
We're told the Labour Govt. wants to (re)align with the EU to (re)build our economic relationship with our largest neighbouring market...
However, the Financial Conduct Authority looks to be moving to stop the publicising of the names of short-sellers in the stock market, to just provided aggregated data on short selling positions.
This is an explicit rejection of EU rules/approaches & essentially a realignment with US practice.
Deeds, not words are important!
#regulation #politics
h/t FT
So there’s a new Guardian interview with Jimmy Wales out (to promote his new book, with an affiliate link for the Guardian in it) titled “‘People thought I was a communist doing this as a non-profit’: is Wikipedia’s Jimmy Wales the last decent tech baron?”* that’s making the rounds here.
For those who only read the headlines, here’s a TL;DR: No. There is no such thing as decent tech baron, that’s an oxymoron.
From the article itself:
“‘I’m actually quite in favour of business and capitalism and all that.’ (He’s currently president of Fandom, an ad-funded entertainment site that hosts user-edited pages, owned by private equity firm TPG Capital).”
And:
“Does he still regard Musk, the world’s richest man, as a friend? ‘Friends is probably a little strong. I mean, not, not that –‘ he sputters, editing himself in real time. ‘I want to be careful how I say that, only because I’ve met him maybe five or six times, so that I would be overstating to say friends. We’ve been friendly, and even now he’s much nicer to me in private than you might think. I mean, he’s got a big public persona, and that’s a little bit different from the private Elon, who I think is more thoughtful.’”
Also, some more background:
https://mastodon.ar.al/@aral/115445244962527420
#JimmyWales #wikipedia #theGuardian #bookPromotion #capitalism #ElonMusk #adTech #zeroRating #Facebook #Meta #surveillanceCapitalism #regulation
"Dynamic” - "Demand based" pricing needs to be outlawed.
Ticketmaster
VIA Rail
Hotels/Accomodations
Airlines
Restaurants
They have all started using this model and it's contributing hugely to unaffordability of life.
This is my TED Talk
#Rant #Affordability #cost #regulation #capitalism
🚨 California enacts new age verification & chatbot safety laws:
• Apps & OS must verify users’ ages
• Chatbots to prevent suicidal ideation
• Companies could face fines of $7,500 per affected child
💬 How will these regulations impact digital safety and privacy for kids? Comment & follow @technadu for real cybersecurity updates.
#CyberSecurity #OnlineSafety #DigitalSafety #ChildProtection #AgeVerification #ChatbotSafety #AI #SocialMediaSafety #TechPolicy #TechNadu #Regulation
Does anyone have a link to the original "Clean Network Initiative" the US Gov spun up a while back? Basically the document on telco's and entities minimising CCP interference in their networks? Last link I found points to a gov 404 https://www.state.gov/the-clean-network-safeguards-americas-assets/
#cybersecurity #regulation
Jokes aside, the #Enshittification and #Enfattening of #Cars as well as spread of #CarCentrism #Propaganda from the #USA is a massive issue.
#Greedflation needs to be actively combatted by #regulation and that also means setting the right #incentives...
For example, keeping Public Transport affordable and thus induce demand (See #Deutschlandticket) is one way.
Another Option is to prioritize #PersonalLightVehicles over #SuperUselessVehicles in terms of #RoadTax, #Parking and #regulation.
The #Netherlands were once almost as #CarCentric as the #USA [ @notjustbikes can propably vouch for that looking into the History, digging up 1960s & 1970s Amsterdam as example.] but they chose to do something about it with the fact that as a #German I can vouch for the fact that the Netherlands have excellent roads and far less traffic due to viable alternatives.
#JPMorgan is making a move currently illegal in some states, and recognized by a federal circuit as impractical due to religious objections. The move? Forcing all their staff to use #Biometric scanners to enter the building where they work.
Google, Meta and Microsoft to stop showing political ads in the EU
https://www.politico.eu/article/eu-political-ad-rules-google-meta-microsoft-big-tech-kick-in/
#ycombinator #Advocacy #Alexandra_Geese #Algorithms #Big_Tech #Climate_change #Companies #Data_protection #Democracy #Digital_Services_Act #Elections #European_politics #Human_rights #Media #Migration #NGOs #Online_advertising #Online_safety #Platforms #Privacy #Referendum #Regulation #Rights #Safety #Social_Media #Transparency
Google, Meta and Microsoft opts to stop showing political ads in EU
https://www.politico.eu/article/eu-political-ad-rules-google-meta-microsoft-big-tech-kick-in/
#ycombinator #Advocacy #Alexandra_Geese #Algorithms #Big_Tech #Climate_change #Companies #Data_protection #Democracy #Digital_Services_Act #Elections #European_politics #Human_rights #Media #Migration #NGOs #Online_advertising #Online_safety #Platforms #Privacy #Referendum #Regulation #Rights #Safety #Social_Media #Transparency
Given the prevalence of fake news, AI in fraud, and AI's discriminatory biases, it seems that global banking regulators have a lot of catching up to do. So far, it looks like the motto is "Too little, Too Late."
#AI #banking #regulation
https://www.reuters.com/business/finance/global-financial-watchdogs-ramp-up-monitoring-ai-2025-10-10/
#USCongress tried to hand out #Spying authority to practically anyone who was asking. Now they're complaining about being spied on.
Elon Musk’s Boring Co. Accused of Nearly 800 Environmental Violations on Las Vegas Project
---
Nevada could’ve fined the company more than $3 million, but regulators are seeking a reduced penalty of $242,800, citing an “extraordinary number of violations.”
https://www.propublica.org/article/elon-musk-boring-company-violations-fines-vegas-loop?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon-post
#News #ElonMusk #LasVegas #Environment #Regulation #Musk #Nevada #Vegas
Everytime an exploitation industry rep claims "the burden of regulation" remember that the regulations are utterly failing already because they are too weak. The industry is pushing fascism when they war against regulation.
Many thanks to this green politician for calling it out.
Another one out of #Ohio today. Last week I mentioned a bathroom bill was just empty grandstansing, and a new "anti-porn" bill is also so business-friendly as to lack teeth. There's a carve-out for literally any site that allows you to sign up for your own login credentials or that allows you to post things anonymously. Who is this law serving?
The fight in D.C. over who, if anyone, has existing authority to regulate small hobby #Drones, took a strange turn. Since they've existed the #FAA has built a bad reputation, with overreach that is notorious in Washington. Throughout the arguing the #USCongress has passed laws clarifying that the F.A.A. never had authority over hobby drones and never will, since they're not interstate passenger aircraft, don't commonly fly high enough to get in the way, and are less dangerous than an average bird. In Congress' eyes #Drone laws are a petty local/state thing. Now someone's called in a bunch of fake threats around a #Chicago airport, and the arguing has started again.
#News #Regulation #CensoredNews #FederalAviationAdministration
#HFCs, which are commonly referred to as #SuperPollutants, are thousands of times more potent than carbon dioxide at warming the planet.
But Lee Zeldin, the #EPA administrator, said the #Biden admin’s plan for cutting the production & consumption of the #chemicals, which aimed for an 85% reduction by 2036, did not give companies enough time to meet their deadlines.
Phasing out #HFCs worldwide could avert up to 0.5°C of #GlobalWarming by the end of the century, which would go a long way toward averting the worst consequences of #ClimateChange. In fact, it was #Trump, during his first term, who signed into #law a measure directing the #EPA to ratchet down the #climate pollutant. The provision was tucked into a sweeping Covid relief bill that passed Congress at the tail end of his presidency.
#law #regulation #GreenhouseGases #SuperPollutants #ClimateCrisis
The #Biden admin, which wrote the #HFC #regulations to enact that law, hoped to eliminate the equivalent of 4.5 billion metric tons of #CO2 by 2050, or about 3 years’ worth of #climate #pollution from the #electricity sector.
Unlike efforts to curb #FossilFuels, plans to reduce #HFCs have won broad support from both #Democrats & #Republicans, as well as industry groups & environmental organizations.
#law #regulation #GreenhouseGases #SuperPollutants #ClimateCrisis #Trump
In this episode, cybersecurity expert Matthew Rosenquist delves into the contrasting approaches of China and the United States in handling severe cybersecurity incidents. Discover how China’s one-hour reporting regulation for critical infrastructure attacks showcases its proactive stance, while the U.S. grapples with disorganized requirements and corporate pushback.
For more cybersecurity insights, follow me:
LinkedIn: https://www.linkedin.com/in/matthewrosenquist/
YouTube: https://www.youtube.com/CybersecurityInsights
Substack: https://substack.com/@matthewrosenquist
Cybersecurity Insights: https://www.cybersecurityinsights.us/
@hanspetermeyer And I do endorce #boycotting garbage companies.
I mean, good luck trying to find a job as an accountant in the USA when you want to boycott Microsoft [Excel] & Intuit [Quickbooks].
The FT reports:
'The head of the UK financial regulator has written to the chancellor outlining plans to change its flagship consumer protection rules after companies complained they were too heavy-handed & risked driving activity overseas'!
Does anyone think the financial services sector can be trusted when scandal after scandal suggests given the option they'll scam you? Have they already forgotten the car loans scam?
Is the FCA on your side?
Very much not!
"But the laws, all passed this year, don’t fully address the fast-changing landscape of AI software development. And app developers, policymakers and mental health advocates say the resulting patchwork of state laws isn’t enough to protect users or hold the creators of harmful technology accountable."
https://apnews.com/article/ai-therapy-ban-illinois-therabot-dfc5906b36fdd1fe8e8dbdb4970a45a7
#PublicHealth #AI #therapy #app #MentalHealth #laws #regulation
It should be noted that while, as @pluralistic points out, the #AI bubble does this worse than ever, they didn't invent these bullshit accounting tricks.
Particularly since the 80's, financial sector regulation has been almost entirely absent, leading it to create deals & instruments amounting to nothing more than "this equals billions of $$$ because we say so", repeatedly derailing the world economy with rickety cobwebs of nonsense...
Given that most of the world is governed by some form of strong man, it might not be so bad that the UN isn't regulating the next generation of powerful espionage and suppression tools.
#AI #regulation #UN
https://www.nbcnews.com/tech/tech-news/us-rejects-international-ai-oversight-un-general-assembly-rcna233478
China implemented regulations for 1-hr reporting of severe cybersecurity incidents, including disruptions that impact over 50% of the people in a province or 10 million people, such as critical infrastructure attacks.
Full article: https://open.substack.com/pub/matthewrosenquist/p/china-prepares-for-cyberattacks
#cybersecurity #china #cyberattack #regulation #CriticalInfrastructure
"FAA to let Boeing sign off on 737 MAXes, 787s after years of restrictions" by CNBC / Leslie Josephs - FAA inspectors will continue to handle airworthiness certification of new 737MAX & 787 Dreamliner airplanes on alternate weeks while re-approving Boeing to resume normal manufacturer certifications the other weeks. https://www.cnbc.com/2025/09/26/faa-boeing-737-max-787.html #aviation #travel #business #regulation #avgeek
Root canals gone wrong. A dental implant lost inside a sinus cavity. Months of antibiotics for infections.
Utah dentist Nicholas LaFeber, his colleagues warned, was harming his patients. The state has allowed him to continue practicing anyway.
https://www.propublica.org/article/utah-dentist-license-nicholas-lafeber?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon-post
“Our communities remain dedicated to responsible #firearm use, and we seek partnerships with government agencies to ensure our traditional practices are preserved and supported with #regulation that is respectful of #FirstNation Section 35 rights.”
#Indigenous #rights #hunting #cdnpoli
#Petition #UK #Press #Regulation
To: Prime Minister, Keir Starmer
A Free Press, Not a Free Pass – It's Time for Fair Regulation
For too long, the UK press have bullied people, harassed grieving families & destroyed lives, all to sell papers
We’ve all seen the heartbreaking consequences.
They’ve hacked phones, listened to private messages, & published people's personal information for profit
Time & again, parts of the UK press have shown that they can't be trusted
https://you.38degrees.org.uk/petitions/a-free-press-not-a-free-pass-it-s-time-for-fair-regulation
While we might not be able to stop AI, that doesn't mean that we need to leave the damage it causes up to its inventors.
#AI #regulation
https://www.livescience.com/technology/artificial-intelligence/theres-no-shoving-that-genie-back-in-the-bottle-readers-believe-its-too-late-to-stop-the-progression-of-ai