Slashdot: Hardware's Journal
 
[Most Recent Entries] [Calendar View]

Friday, March 8th, 2019

    Time Event
    9:30p
    US Tech Firms Fear China Could Be Spying On Them Using Power Cords, Report Says
    An anonymous reader quotes a report from CNBC: Fearing that China could be spying on them using power cords and plugs, several U.S. technology companies have asked their Taiwanese suppliers to shift production of some components out of the mainland, Nikkei Asian Review reported on Friday. The report cited unnamed executives from two Taiwanese companies: Lite-On Technology, a manufacturer of electronic parts, and Quanta Computer, a supplier of servers and data centers. Lite-On's clients include Dell EMC, Hewlett-Packard and IBM, while Quanta counts Google and Facebook among its customers, according to Nikkei. The executives told Nikkei that some of their American clients -- without specifying which companies -- asked them to move out of China partly because of cyberespionage and cybersecurity risks. The U.S. tech firms were worried that even mundane components such as power plugs could be tapped by Beijing to access sensitive data, according to the report. According to the report, Lite-On Technology is building a new factory in Taiwan to manufacture power components for servers due to China's cybersecurity concerns. Quanta has also shifted production out of mainland China to Taiwan due to similar concerns, as well as additional tariffs imposed by Washington as a result of the U.S.-China trade war.

    Read more of this story at Slashdot.

    Image
    10:10p
    MGM Considers Replacing Workers With Robots In Its Las Vegas Strip Properties
    MGM, one of the largest global casino companies in the world, is considering replacing some workers with robots. The company's 2020 plan calls for reducing its workforce by about 2,100 people to save roughly $300 million in the coming years. Vegas Slots Online reports: Among those who could be replaced are cashiers and bartenders. Automatic technology that can make drinks would replace the bartenders and monetary transactions could be done through standard payment technology. There would also be mobile payment processors going around the floor with the wait staff, eliminating the need for cashiers. There is no indication as to how many such jobs would be replaced at the MGM properties. The unions and workers will not be happy with this news. Jobs will be lost and it may also violate the labor agreement that MGM struck with the unions last summer. The Las Vegas Culinary Union (LVCU), which represents bartenders, kitchen staff, and wait staff, reached a five-year deal in June 2018 with the MGM. The agreement guarantees that MGM will not implement any technology that would have a negative impact on employment. However, the news that the MGM is considering replacing some workers with robots could mean that the company is not willing to fulfill this agreement. MGM CEO Jim Murren unveiled the new "MGM 2020" plan earlier this year, describing it as a "company-wide, business-optimization initiative aimed to leverage a more centralized organization to maximize profitability and, through key investments in technology, lay the groundwork for the company's digital transformation to drive revenue growth."

    Read more of this story at Slashdot.

    Image
    11:30p
    Hard Disks Can Be Turned Into Listening Devices, Researchers Find
    Researchers from the University of Michigan and Zhejiang Univeristy in China have found that hard disk drives can be turned into listening devices, using malicious firmware and signal processing calculations. The Register reports: For a study titled "Hard Drive of Hearing: Disks that Eavesdrop with a Synthesized Microphone," computer scientists Andrew Kwong, Wenyuan Xu, and Kevin Fu describe an acoustic side-channel that can be accessed by measuring how sound waves make hard disk parts vibrate. "Our research demonstrates that the mechanical components in magnetic hard disk drives behave as microphones with sufficient precision to extract and parse human speech," their paper, obtained by The Register ahead of its formal publication, stated. "These unintentional microphones sense speech with high enough fidelity for the Shazam service to recognize a song recorded through the hard drive." The team's research work, scheduled to be presented in May at the 2019 IEEE Symposium on Security and Privacy, explores how it's possible to alter HDD firmware to measure the offset of a disk drive's read/write head from the center of the track it's seeking. The offset is referred to as the Positional Error Signal (PES) and hard drives monitor this signal to keep the read/write head in the optimal position for reading and writing data. PES measurements must be very fine because drive heads can only be off by a few nanometers before data errors arise. The sensitivity of the gear, however, means human speech is sufficient to move the needle, so to speak. Vibrations from HDD parts don't yield particularly good sound, but with digital filtering techniques, human speech can be discerned, given the right conditions. "Flashing HDD firmware is a prerequisite for the snooping [...] because the ATA protocol does not expose the PES," The Register reports. "To exfiltrate captured data, the three boffins suggest transmitting it over the internet by modifying Linux operating system files to create a reverse shell with root privileges or storing it to disk for physical recovery at a later date." The researchers note that this technique does require a fairly loud conversation to take place near the eavesdropping hard drive. "To record comprehensible speech, the conversation had to reach 85 dBA, with 75 dBA being the low threshold for capturing muffled sound," the report says. "To get Shazam to identify recordings captured through a hard drive, the source file had to be played at 90 dBA. Which is pretty loud. Like lawn mower or food blender loud."

    Read more of this story at Slashdot.

    Image

    << Previous Day 2019/03/08
    [Calendar]
    Next Day >>

Slashdot: Hardware   About LJ.Rossia.org