Monday, January 16, 2017

Tesla driver is stranded in the desert after a spectacular technology fail

An enthusiastic Tesla driver last week decided to test out his vehicle's keyless driving feature. The system, which allows you to unlock the car and start its ignition using the Model S smartphone app, is designed to allow drivers to access their car and drive it away even if they don't have the key on hand.
The unfortunate driver, who lives near Las Vegas, took his wife and two dogs for a drive out into the desert toward Red Rock Canyon to test the feature, and about six miles from home decided it was time to turn the car around and head home.
However, during the turnaround, he made the mistake of getting out of the car to adjust his dogs' bed, killing the engine in the process. He soon realised his mistake, however, because his smartphone no longer had any signal, meaning that he couldn't start the car, or even unlock it.
The Tesla system which controls remote unlocking and keyless starting relies on the company's smartphone app. It connects back to Tesla's servers to issue commands, and likewise, the car needs data service itself to receive commands from those same servers to unlock or start, so needing to start the car with no phone signal, the driver really was up a creek (or a canyon in this case) without a paddle.
The driver posted the mishap on Instagram with the above image, explaining that eventually in order to get the car started, his wife had ran 2 miles to get phone signal:
@amymnegri, the hero she is, started running to reach cell service height. After about 2 miles she reached signal and called a friend for a ride to the house to grab the key fob.
He goes on to explain in the post that he won't be driving the car in the future without the key that in his own words "will always be with me (now) when I drive that car".
In more positive news for Tesla, one of its vehicles recently preempted a crash whilst driving in autopilot mode, attracting praise from both the technology and motoring communities.

Sunday, January 15, 2017

China's Latest Innovation? The Ballpoint Pen.

Last week, China announced that it had mastered the art of making ballpoint pens. Don't laugh: It was a years-long effort that cost millions of dollars and required the leadership of a state-run corporate colossus. It was front-page news, widely discussed on talk shows and celebrated on social media.
And it was no one-off stunt. China hopes such government-mandated "innovation" will finally revive its economy and catapult it into the front rank of technologically advanced nations. Unfortunately, such efforts are far more likely to worsen the inefficiencies already holding its economy back.
Ballpoint pens aren't actually new to China. Its 3,000 pen manufacturers make around 40 billion of them a year and fulfill 80 percent of the world's demand. There's just one problem: China doesn't possess the advanced alloys and machines necessary to make a high-quality pen ball and socket. As a result, 90 percent of China's pen tips are imported. Pens made from Chinese components are widely acknowledged to be inferior -- a point made by Premier Li Keqiang in a 2015 television appearance. "That's the real situation facing us," he said. "We cannot make ballpoint pens with a smooth writing function."
For the premier and others, the problem was about more than signing a smooth autograph. For years, it's been a popular symbol of all the perceived gaps and failings in China's vast industrial complex, from its reputation for poor quality to its inability to transition to making higher-value products. Amid an ailing economy, these failings started receiving attention at the highest levels of the government.
In 2011, China's Ministry of Science and Technology took the hint and launched a project called "Research and Development and Industrialization of Key Materials for the Pen Industry." It allocated nearly $9 million and conscripted the Taiyuan Iron & Steel Group Co., a giant state-owned stainless-steel manufacturer, known as TISCO, to lead the venture.
That was a fitting symbol in its own right. For decades, China's policy makers have favored inefficient but politically connected state-owned enterprises, with unfortunate results for the economy. During the first half of 2016, more than half of China's roughly 150,000 state enterprises recorded losses, despite accounting for nearly a quarter of the country's industrial income. Under President Xi Jinping, the sector has been strengthened and its role in economic reform has become even more central.
And that's where the problems really begin. Even if a private company wanted to invest in producing high-quality pen tips in China, concerns that the new technology would be stolen or hijacked would likely dissuade them. For pen manufacturers that means it's easier, and more profitable, to keep making lower quality pens. Rather than undertake the difficult process of intellectual-property reform, the government instead issues mandates for innovation, and invests in state-owned companies that think of politics first and profits later -- if at all.
TISCO is a good example. Objectively, there's no business case for the company to undertake pen tip manufacturing. In 2015, it churned out more than 10 million tons of steel. By comparison, total annual Chinese demand for stainless steel pen cases is about 1,000 tons. In a recent TV interview, an official with the Chinese Pen Association, a booster of the project, conceded that for TISCO, "it isn't very cost-effective." That's something of an understatement: The project took half a decade of painstaking R&D and may not turn a profit for years to come.
Worse, that profit will likely come at the expense of the pen industry the effort was supposed to be helping. In November, TISCO was allowed to write China's new industry standard for pen tips. The immediate effect will be to force all other manufacturers to conform to TISCO's technological specifications -- or be labeled out of compliance, with the risk of a shutdown. Long term, TISCO's standard will probably result in a de facto domestic monopoly on pen tips, thereby replacing the foreign monopoly that China was originally trying to break up.
That may satisfy some mercantilist policy makers, but it's a poor model for realizing China's innovation and manufacturing potential. A better path is to strengthen intellectual-property protections so that private enterprises can be confident that their innovations will belong to them. Meanwhile, overhauling or shutting down money-losing state-owned companies would make the economy more productive and ensure that resources flow to competitive companies with good ideas, rather than those with political connections.
For China, that might be the most important innovation of all.
To contact the author of this story:
Adam Minter at aminter@bloomberg.net

Latest iPhone 8 Leak Confirms 'Essential' Feature Upgrade

   
   You’ve heard the news, the ‘iPhone 8’ is meant to be revolutionary: an ‘All glass’ OLED display, a forged steel chassis and it is getting bigger. But Apple AAPL -0.18% is also addressing an important practical shortcoming of the iPhone 7…
According to a report from the usually reliable Korea Herald, “multiple sources” can “confirm” the 2017 iPhones (currently both iPhone 7S and iPhone 8 models are expected) will have upgraded IP68 water and dust resistance ratings. This means the phones could withstand full submersion in up to 1.5 metres of water for up to 30 minutes.

   This is a step up from the current IP67 rating on the iPhone 7 and iPhone 7 Plus which can survive for the same time but only in one metre of water. This change sounds useful, but I’d argue it is actually essential
Why? Because Apple’s big justification for removing the headphone jack is it freed up space for a larger battery and was “essential” to make the phones IP67 water resistant. Except this doesn’t (if you’ll pardon the pun) wash.
As it turned out, the iPhone 7 has a battery barely bigger than the iPhone 6 and the Galaxy S7 already has IP68 water resistance despite keeping the headphone jack.

   So no, this won’t stop me calling out Apple on what the “courageous” removal of the headphone jack really was “essential” for (self serving at best, deliberately misinformative at worst), but at least there is tangible progress now. 
Furthermore, given all the headline upgrades the iPhone 8 is expected to have (and it will need them with Samsung’s leaked Galaxy S8 reinvention) that’s a win. 

Microsoft Confirms Windows 10 Creators Update Game Mode



A few weeks ago, Windows Insiders noticed GameMode.dll was added to the Windows 10 preview builds. It was speculated by Windows Central, based on their anonymous sources, that it would allow the user to increase performance for games. Now, in an Xbox blog post, Mike Ybarra of Microsoft confirmed the existence of this feature. It will arrive with the Creators Update and, yes, it is intended to “optimize your Windows 10 PC for increased performance in gaming”.

That’s about all of the detail that is mentioned explicitly in the blog post. It does make a passing reference to “Windows Insiders will start seeing some of the visual elements for Game Mode this week, with the feature being fully operational in builds shortly thereafter”. While we don’t need to wait too longto actually find out, this snippet suggests that user involvement will be required. This might be a launcher or something else entirely.
On his Twitter, he also added that Game Mode will work for both Win32 and UWP games. Assuming this isn’t a mistake, and it’s stated quite bluntly albeit on Twitter, it looks likely that Game Mode’s UI won’t be an extension of Windows Store and it will work for any game. It will probably reside elsewhere, like an Xbox App or something, but we don’t really know yet.
The Windows 10 Creators Update arrives this spring. While its version number is 1703, rumors have it set for an April release date.

Reported “backdoor” in WhatsApp is in fact a feature, defenders say

The Guardian roiled security professionals everywhere on Friday when it published an article claiming a backdoor in Facebook's WhatsApp messaging service allows attackers to intercept and read encrypted messages. It's not a backdoor—at least as that term is defined by most security experts. Most would probably agree it's not even a vulnerability. Rather, it's a limitation in what cryptography can do in an app that caters to more than 1 billion users.
At issue is the way WhatsApp behaves when an end user's encryption key changes. By default, the app will use the new key to encrypt messages without ever informing the sender of the change. By enabling a security setting, users can configure WhatsApp to notify the sender that a recently transmitted message used a new key.
Critics of Friday's Guardian post, and most encryption practitioners, argue such behavior is common in encryption apps and often a necessary requirement. Among other things, it lets existing WhatsApp users who buy a new phone continue an ongoing conversation thread.
Tobias Boelter, a Ph.D. candidate researching cryptography and security at the University of California at Berkeley, told the Guardian that the failure to obtain a sender's explicit permission before using the new key challenged the often-repeated claim that not even WhatsApp or its owner Facebook can read encrypted messages sent through the service. He first reported the weakness to WhatsApp last April. In an interview on Friday, he stood by the backdoor characterization.
"At the time I discovered it, I thought it was not a big deal... and they will fix it," he told Ars. "The fact that they still haven't fixed it yet makes me wonder why."

A tale of two encrypted messaging apps

Boelter went on to contrast the way WhatsApp handles new keys with the procedure used by Signal, a competing messaging app that uses the same encryption protocol. Signal allows a sender to verify a new key before using it. WhatsApp, on the other hand, by default trusts the new key with no notification—and even when that default is changed, it notifies the sender of the change only after the message is sent.
Moxie Marlinspike, developer of the encryption protocol used by both Signal and WhatsApp, defended the way WhatsApp behaves.
"The fact that WhatsApp handles key changes is not a 'backdoor,'" he wrote in a blog post. "It is how cryptography works. Any attempt to intercept messages in transmit by the server is detectable by the sender, just like with Signal, PGP, or any other end-to-end encrypted communication system."
He went on to say that, while it's true that Signal, by default, requires a sender to manually verify keys and WhatsApp does not, both approaches have potential security and performance drawbacks. For instance, many users don't understand how to go about verifying a new key and may turn off encryption altogether if it prevents their messages from going through or generates error messages that aren't easy to understand. Security-conscious users, meanwhile, can enable security notifications and rely on a "safety number" to verify new keys. He continued:
Given the size and scope of WhatsApp's user base, we feel that their choice to display a non-blocking notification is appropriate. It provides transparent and cryptographically guaranteed confidence in the privacy of a user's communication, along with a simple user experience. The choice to make these notifications "blocking" would in some ways make things worse. That would leak information to the server about who has enabled safety number change notifications and who hasn't, effectively telling the server who it could MITM transparently and who it couldn't; something that WhatsApp considered very carefully.
Even if others disagree about the details of the UX, under no circumstances is it reasonable to call this a "backdoor," as key changes are immediately detected by the sender and can be verified.
In an interview, Marlinspike said Signal was in the process of moving away from strictly enforced blocking. He also said that WhatsApp takes strict precautions to prevent its servers from knowing which users have enabled security notifications, making it impossible for would-be attackers to target only those who have them turned off.
Boelter theorized that the lack of strict blocking could most easily be exploited by people who gain administrative control over WhatsApp servers, say by a government entity that obtains a court order. The attacker could then change the encryption key for a targeted phone number. By default, WhatsApp will use the imposter key to encrypt messages without ever warning the receiver of the crucial change. By making the targeted phone temporarily unavailable over the network for a period of hours or days, messages that were sent during that time will be stored in a queue. Once the phone became available again, the messages will be encrypted with the new attacker-controlled key.
Of course, there are some notable drawbacks that make such an attack scenario highly problematic from the standpoint of most attackers. For the attack to work well, it would require control of a WhatsApp server, which is something most people would consider extraordinarily difficult to do. Absent control over a WhatsApp server, an attack would require abusing something like the SS7 routing protocol for cellular networks to intercept SMS messages. But even then, the attacker who wanted to acquire more than a single message would have to figure out a way to make the targeted phone unavailable over the network before impersonating it. What's more, it wouldn't be hard for the sender to eventually learn of the interception, and that's often a deal-breaker in many government surveillance cases. Last, the attack wouldn't work against encrypted messages stored on a seized phone.
In a statement, WhatsApp officials wrote:
WhatsApp does not give governments a "backdoor" into its systems and would fight any government request to create a backdoor. The design decision referenced in the Guardian story prevents millions of messages from being lost, and WhatsApp offers people security notifications to alert them to potential security risks. WhatsApp published a technical white paper on its encryption design and has been transparent about the government requests it receives, publishing data about those requests in the Facebook Government Requests Report.

Samsung Suddenly Reveals Galaxy S8 In New Videos

The Galaxy S8 will launch soon, but until this week’s leaked images explosion Samsung had done a good job keeping its new flagship smartphone secret. Now, however, it appears the company wants to leak the phone itself…
In a pair of new promotional videos for display division, Samsung has shown off new AMOLED panels which are widely expected to be used in the Galaxy S8. But more than this, it ends both commercials by showing the panels morph into an unnamed smartphone with very slim top and bottom bezels:

Does this look familiar? It should because the proportions and missing physical home button line up exactly with the leaked renders of the Galaxy S8 which surfaced just a few days ago. 
Yes, there remains a chance that this is complete coincidence and Samsung made a random handset that just so happens to look like a trio of leaks which all also just so happen to be identical yet wrong. But the odds against this seem small.