Author name: 9u50fv

certain-names-make-chatgpt-grind-to-a-halt,-and-we-know-why

Certain names make ChatGPT grind to a halt, and we know why

The “David Mayer” block in particular (now resolved) presents additional questions, first posed on Reddit on November 26, as multiple people share this name. Reddit users speculated about connections to David Mayer de Rothschild, though no evidence supports these theories.

The problems with hard-coded filters

Allowing a certain name or phrase to always break ChatGPT outputs could cause a lot of trouble down the line for certain ChatGPT users, opening them up for adversarial attacks and limiting the usefulness of the system.

Already, Scale AI prompt engineer Riley Goodside discovered how an attacker might interrupt a ChatGPT session using a visual prompt injection of the name “David Mayer” rendered in a light, barely legible font embedded in an image. When ChatGPT sees the image (in this case, a math equation), it stops, but the user might not understand why.

The filter also means that it’s likely that ChatGPT won’t be able to answer questions about this article when browsing the web, such as through ChatGPT with Search.  Someone could use that to potentially prevent ChatGPT from browsing and processing a website on purpose if they added a forbidden name to the site’s text.

And then there’s the inconvenience factor. Preventing ChatGPT from mentioning or processing certain names like “David Mayer,” which is likely a popular name shared by hundreds if not thousands of people, means that people who share that name will have a much tougher time using ChatGPT. Or, say, if you’re a teacher and you have a student named David Mayer and you want help sorting a class list, ChatGPT would refuse the task.

These are still very early days in AI assistants, LLMs, and chatbots. Their use has opened up numerous opportunities and vulnerabilities that people are still probing daily. How OpenAI might resolve these issues is still an open question.

Certain names make ChatGPT grind to a halt, and we know why Read More »

blizzard’s-pulling-of-warcraft-i-&-ii-tests-gog’s-new-preservation-program

Blizzard’s pulling of Warcraft I & II tests GOG’s new Preservation Program

GOG’s version goes a bit beyond the classic versions that were on sale on Blizzard.net. Beyond the broad promise that “this is the best version of this game you can buy on any PC platform,” GOG has made specific tweaks to the networking code for Warcraft I and fixed up the DirectX wrapper for Warcraft II to improve its scaling on modern monitor resolutions.

It’s quite a novel commitment, keeping non-revenue-generating games playable for buyers, even after a publisher no longer makes them available for sale. The Warcraft titles certainly won’t be the only games for which publisher enthusiasm lags behind GOG and its classic gamers.

As noted at the Preservation Program’s launch, for some titles, GOG does not have the rights to modify a game’s build, and only its original developers can do so. So if GOG can’t make it work in, say, DOSBox, extraordinary efforts may be required.

A screenshot from Blizzard's Warcraft II: Remastered release, showing brick keeps, archers, footsoldiers, dragons around a roost, and knights on horseback units.

Warcraft II: Remastered lets you switch back and forth between classic and remastered graphics and promises to offer better support for widescreen monitors and more units selected at once.

Credit: Blizzard

Warcraft II: Remastered lets you switch back and forth between classic and remastered graphics and promises to offer better support for widescreen monitors and more units selected at once. Credit: Blizzard

Beyond being tied to Blizzard’s Battle.net service in perpetuity, there are other reasons Warcraft fans might want to hold onto the originals. Blizzard’s 2020 release of Warcraft III Reforged was widely panned as uneven, unfinished, and in some ways unfair, as it, too, removed the original Warcraft III from stores. Reforged was still in rough shape a year later, leading Ars’ list of 2020’s most disappointing games. A 2.0 update promised a total reboot, but fans remain torn on the new art styles and are somewhat wary.

Then again, you can now select more units in the first two Warcraft games’ remasters, and you get “numerous visual updates for the UI.”

Blizzard’s pulling of Warcraft I & II tests GOG’s new Preservation Program Read More »

supermassive-black-hole-binary-emits-unexpected-flares

Supermassive black hole binary emits unexpected flares

“In addition to stars, gas clouds can also be disrupted by SMBHs and their binaries,” they said in the same study. “The key difference is that the clouds can be comparable to or even larger than the binary separation, unlike stars, which are always much smaller. “

Looking at the results of a previous study that numerically modeled this type of situation also suggested a gas cloud. Just like the hypothetical supermassive black hole binary in the model, AT 2021hdr would accrete large amounts of material every time the black holes were halfway through orbiting each other and had to cross the cloud to complete the orbit—their gravity tears away some of the cloud, which ends up in their accretion disks, every time they cross it. They are now thought to take in anywhere between three and 30 percent of the cloud every few cycles. From a cloud so huge, that’s a lot of gas.

The supermassive black holes in AT 2021hdr are predicted to crash into each other and merge in another 70,000 years. They are also part of another merger, in which their host galaxy is gradually merging with a nearby galaxy, which was first discovered by the same team (this has no effect on the BSMBH tidal disruption of the gas cloud).

How the behavior of AT 2021hdr develops could tell us more about its nature and uphold or disprove the idea that it is eating away at a gaseous cloud instead of a star or something else. For now, it seems these black holes don’t just get gas from what they eat—they eat the gas itself.

Astronomy & Astrophysics, 2024.  DOI:  10.1051/0004-6361/202451305

Supermassive black hole binary emits unexpected flares Read More »

code-found-online-exploits-logofail-to-install-bootkitty-linux-backdoor

Code found online exploits LogoFAIL to install Bootkitty Linux backdoor

Normally, Secure Boot prevents the UEFI from running all subsequent files unless they bear a digital signature certifying those files are trusted by the device maker. The exploit bypasses this protection by injecting shell code stashed in a malicious bitmap image displayed by the UEFI during the boot-up process. The injected code installs a cryptographic key that digitally signs a malicious GRUB file along with a backdoored image of the Linux kernel, both of which run during later stages of the boot process on Linux machines.

The silent installation of this key induces the UEFI to treat the malicious GRUB and kernel image as trusted components, and thereby bypass Secure Boot protections. The final result is a backdoor slipped into the Linux kernel before any other security defenses are loaded.

Diagram illustrating the execution flow of the LogoFAIL exploit Binarly found in the wild. Credit: Binarly

In an online interview, HD Moore, CTO and co-founder at runZero and an expert in firmware-based malware, explained the Binarly report this way:

The Binarly paper points to someone using the LogoFAIL bug to configure a UEFI payload that bypasses secure boot (firmware) by tricking the firmware into accepting their self-signed key (which is then stored in the firmware as the MOK variable). The evil code is still limited to the user-side of UEFI, but the LogoFAIL exploit does let them add their own signing key to the firmware’s allow list (but does not infect the firmware in any way otherwise).

It’s still effectively a GRUB-based kernel backdoor versus a firmware backdoor, but it does abuse a firmware bug (LogoFAIL) to allow installation without user interaction (enrolling, rebooting, then accepting the new MOK signing key).

In a normal secure boot setup, the admin generates a local key, uses this to sign their updated kernel/GRUB packages, tells the firmware to enroll the key they made, then after reboot, the admin has to accept this new key via the console (or remotely via bmc/ipmi/ilo/drac/etc bios console).

In this setup, the attacker can replace the known-good GRUB + kernel with a backdoored version by enrolling their own signing key without user interaction via the LogoFAIL exploit, but it’s still effectively a GRUB-based bootkit, and doesn’t get hardcoded into the BIOS firmware or anything.

Machines vulnerable to the exploit include some models sold by Acer, HP, Fujitsu, and Lenovo when they ship with a UEFI developed by manufacturer Insyde and run Linux. Evidence found in the exploit code indicates the exploit may be tailored for specific hardware configurations of such machines. Insyde issued a patch earlier this year that prevents the exploit from working. Unpatched devices remain vulnerable. Devices from these manufacturers that use non-Insyde UEFIs aren’t affected.

Code found online exploits LogoFAIL to install Bootkitty Linux backdoor Read More »

player-456-is-back-for-revenge-in-squid-game-s2-trailer

Player 456 is back for revenge in Squid Game S2 trailer

Lee Jung-Jae returns as Player 456 in the second season of Squid Game.

The 2021 Korean series Squid Game was a massive hit for Netflix, racking up 1.65 billion viewing hours in its first four weeks and snagging 14 Emmy nominations. Fans have been longing for a second season ever since, and we’re finally getting it this year for Christmas. Netflix just released the official trailer.

(Spoilers for S1 below.)

The first season followed Seong Gi-hun (Lee Jung-Jae, seen earlier this year in The Acolyte), a down-on-his-luck gambler who has little left to lose when he agrees to play children’s playground games against 455 other players for money. The twist? If you lose a game, you die. If you cheat, you die. And if you win, you might also die.

“The grotesque spectacle of Squid Game is where it gets most of its appeal, but it resonates because of how relatable Gi-hun and the rest of the game’s contestants are,” Ars Senior Technology Reporter Andrew Cunningham wrote in our 2021 year-end TV roundup. “Alienated from society and each other, driven by guilt or shame or pride or desperation, each of the players we get to know is inescapably human, which is why Squid Game is more than just a gory sideshow.

In the S1 finale, Gi-hun faced off against fellow finalist and childhood friend Cho Sang-woo (Park Hae-soo) in the titular “squid game.” He won their fight but refused to kill his friend, begging Sang-woo to stop the game by invoking a special clause in their contract whereby they get to live—but do not get the prize money. Sang-woo instead stabbed himself in the neck and asked Gi-hun to take care of his mother. Wracked with guilt, Gi-hun was about to fly to America to live with his daughter when he spotted the game recruiter trying to entice another desperate person. He didn’t get on the plane, deciding instead to try and re-enter the game and take it down from the inside.

Player 456 is back for revenge in Squid Game S2 trailer Read More »

openai-is-at-war-with-its-own-sora-video-testers-following-brief-public-leak

OpenAI is at war with its own Sora video testers following brief public leak

“We are not against the use of AI technology as a tool for the arts (if we were, we probably wouldn’t have been invited to this program),” PR Puppets writes. “What we don’t agree with is how this artist program has been rolled out and how the tool is shaping up ahead of a possible public release. We are sharing this to the world in the hopes that OpenAI becomes more open, more artist friendly and supports the arts beyond PR stunts.”

An excerpt from the PR Puppets open letter, as it appeared on Hugging Face Tuesday. Credit: PR Puppets / HuggingFace

In a statement provided to Ars Technica, an OpenAI spokesperson noted that “Sora is still in research preview, and we’re working to balance creativity with robust safety measures for broader use. Hundreds of artists in our alpha have shaped Sora’s development, helping prioritize new features and safeguards. Participation is voluntary, with no obligation to provide feedback or use the tool.”

Throughout the day Tuesday, PR Puppets updated its open letter with signatures from 16 people and groups listed as “sora-alpha-artists.” But a source with knowledge of OpenAI’s testing program told Ars that only a couple of those artists were actually part of the alpha testing group and that those artists were asked to refrain from sharing confidential details during Sora’s development.

PR Puppets also later linked to a public petition encouraging others to sign on to the same message shared in their open letter. Artists Memo Akten, Jake Elwes, and CROSSLUCID, who are also listed as “sora-alpha-artists,” were among the first to sign that public petition.

When can we get in?

Made with Sora (see above for more info): pic.twitter.com/VlveALuvYS

— Kol Tregaskes (@koltregaskes) November 26, 2024

Sora made a huge splash when OpenAI first teased its video-generation capabilities in February, before shopping the tech around Hollywood and using it in a public advertisement for Toys R Us. Since then, though, publicly accessible video generators like Minimax and announcements of in-development competitors from Google and Meta have stolen some of Sora’s initial thunder.

Previous OpenAI CTO Mira Murati told The Wall Street Journal in March that it planned to release Sora publicly by the end of the year. But CPO Kevin Weil said in a recent Reddit AMA that the platform’s deployment has been delayed by the “need to perfect the model, need to get safety/impersonation/other things right, and need to scale compute!”

OpenAI is at war with its own Sora video testers following brief public leak Read More »

licking-this-“lollipop”-will-let-you-taste-virtual-flavors

Licking this “lollipop” will let you taste virtual flavors

Demonstrating lollipop user interface to simulate taste in virtual and augmented reality environments. Credit: Lu et al, 2024/PNAS

Virtual reality (VR) technology has long sought to incorporate the human senses into virtual and mixed-reality environments. In addition to sight and sound, researchers have been trying to add the sensation of human touch and smell via various user interfaces, as well as taste. But the latter has proved to be quite challenging. A team of Hong Kong scientists has now developed a handheld user interface shaped like a lollipop capable of re-creating several different flavors in a virtual environment, according to a new paper published in the Proceedings of the National Academy of Sciences (PNAS).

It’s well established that human taste consists of sweet, salty, sour, bitter, and umami—five basic flavors induced by chemical stimulation of the tongue and, to a lesser extent, in parts of the pharynx, larynx, and epiglottis. Recreating those sensations in VR has resulted in a handful of attempts at a flavor user interface, relying on such mechanisms as chemical, thermal, and electrical stimulation, as well as iontophoresis.

The chemical approach usually involves applying flavoring chemicals directly onto the tongue, but this requires room for bulk storage of said chemicals, and there is a long delay time that is not ideal for VR applications. Thermal variations applied directly to the tongue can stimulate taste sensations but require a complicated system incorporating a cooling subsystem and temperature sensors, among other components.

The most mainstream method is electrical stimulation, in which the five basic flavors are simulated by varying the frequency, intensity, and direction of electrical signals on the tongue. But this method requires placing electrode patches on or near the tongue, which is awkward, and the method is prone to taste biases.

So Yiming Liu of City University of Hong Kong and co-authors opted to work with iontophoresis, in which stable taste feedback is achieved by using ions flowing through biologically safe hydrogels to transport flavor chemicals. This method is safe, requires low power consumption, allows for precise taste feedback, and offers a more natural human-machine interface. Liu et al. improved on recent advances in this area by developing their portable lollipop-shaped user interface device, which also improves flavor quality and consistency.

Licking this “lollipop” will let you taste virtual flavors Read More »

trump-targets-mexico-and-canada-with-tariffs,-plus-an-extra-10%-for-china

Trump targets Mexico and Canada with tariffs, plus an extra 10% for China

Trump had in particular targeted Mexico on the campaign trail, threatening to impose “whatever tariffs are required—100 percent, 200 percent, 1,000 percent” to stop Chinese cars from crossing the southern border.

He has also warned Mexico’s president, Claudia Sheinbaum, he would impose tariffs of 25 percent if she did not crack down on the “onslaught of criminals and drugs” crossing the border.

The levies could be imposed using executive powers that would override the USMCA, the free trade agreement Trump signed with Canada and Mexico during his first term as president.

“There’s a lot of integration of North American manufacturing in a lot of sectors, particularly autos, so this would be pretty disruptive for a lot of US companies and industries,” said Warren Maruyama, former general counsel at the Office of the US Trade Representative. “Tariffs are inflationary and will drive up prices,” he added.

Ricardo Monreal, leader of Mexico’s ruling party in the lower house of congress, said tariffs would “not solve the underlying issue” at the border. “Escalating trade retaliation would only hurt people’s pockets,” he wrote on X.

Diego Marroquín Bitar at the Wilson Center think tank warned that unilateral tariffs “would shatter confidence in USMCA and harm all three economies.”

In a joint statement, Canada’s deputy prime minister, Chrystia Freeland, and public safety minister Dominic LeBlanc hailed the bilateral relationship with the US as “one of the strongest and closest… particularly when it comes to trade and border security.”

They also noted that Canada “buys more from the United States than China, Japan, France, and the UK combined,” and last year supplied “60 percent of US crude oil imports.”

“Even if this is a negotiating strategy, I don’t see what Canada has to offer that Trump is not already getting,” said Carlo Dade at the Canada West Foundation.

While Trump put tariffs at the center of his economic pitch to voters, President Joe Biden has also increased levies on Chinese imports. In May, Biden’s administration sharply increased tariffs on a range of imported clean-energy technologies, including boosting tariffs on electric vehicles from China to 100 percent.

Biden’s administration has also pushed Beijing for several years to crack down on the production of ingredients for fentanyl, which it estimated claimed the lives of almost 75,000 Americans in 2023. Beijing this year agreed to impose controls on chemicals crucial to manufacturing fentanyl following meetings with senior US officials.

Additional reporting by William Sandlund and Haohsiang Ko in Hong Kong, Christine Murray in Mexico City, Ilya Gridneff in Toronto, Joe Leahy in Beijing, and Alex Rogers in Washington.

© 2024 The Financial Times Ltd. All rights reserved. Not to be redistributed, copied, or modified in any way.

Trump targets Mexico and Canada with tariffs, plus an extra 10% for China Read More »

doj-wraps-up-ad-tech-trial:-google-is-“three-times”-a-monopolist

DOJ wraps up ad tech trial: Google is “three times” a monopolist

One of the fastest monopoly trials on record wound down Monday, as US District Court Judge Leonie Brinkema heard closing arguments on Google’s alleged monopoly in a case over the company’s ad tech.

Department of Justice lawyer Aaron Teitelbaum kicked things off by telling Brinkema that Google “rigged” ad auctions, allegedly controlling “multiple parts” of services used to place ads all over the Internet, unfairly advantaging itself in three markets, The New York Times reported.

“Google is once, twice, three times a monopolist,” Teitelbaum said, while reinforcing that “these are the markets that make the free and open Internet possible.”

Teitelbaum likened Google to a “predator,” preying on publishers that allegedly had no viable other options for ad revenue but to stick with Google’s products. An executive for News Corp. testified that the news organization felt it was being held “hostage” because it risked losing $9 million in 2017 if it walked away from Google’s advertising platform.

Brinkema, who wasted no time and frequently urged lawyers to avoid repeating themselves or dragging out litigation with unnecessary testimony throughout the trial, reportedly pushed back.

In one instance she asked, “What would happen if a company had produced the best product,” but Teitelbaum rejected the idea that Google’s ad tech platform had competed on the merits.

“The problem is Google hasn’t done that,” Teitelbaum said, alleging that instead better emerging products “died out,” unable to compete on the merits.

According to Vidushi Dyall, the director of legal analysis for the Chamber of Progress (a trade group representing Google), this lack of advertiser testimony or evidence of better products could be key flaws in the DOJ’s argument. When Brinkema asked what better products Google had stamped out, the DOJ came up blank, Dyall posted in a thread on X (formerly Twitter).

Further, Dyall wrote, Brinkema “noted that the DOJ’s case was notably absent of direct testimony from advertisers.” The judge apparently criticized the DOJ for focusing too much on how publishers were harmed while providing “no direct evidence about advertisers and how satisfied/dissatisfied they are with the system,” Dyall wrote.

DOJ wraps up ad tech trial: Google is “three times” a monopolist Read More »

raw-milk-recalled-for-containing-bird-flu-virus,-california-reports

Raw milk recalled for containing bird flu virus, California reports

Pasteurization

The milk-related risk of H5N1 is only from raw milk; pasteurized milk does not contain live virus and is safe to drink. Pasteurization, which heats milk to a specific temperature for a specified amount of time, kills a variety of bacteria and viruses, including bird flu. Influenza viruses, generally, are considered susceptible to heat treatments because they have an outer layer called an envelope, which can be destabilized by heat. Studies that have specifically looked at the effectiveness of heat-killing treatments against H5N1 have repeatedly found that pasteurization effectively inactivates the virus.

The advent of pasteurization is considered a public health triumph. Its adoption of a safe milk supply contributed to a dramatic reduction in infant deaths in the early 20th century. Before that, milkborne infections—including human and bovine tuberculosis, brucellosis, salmonellosis, streptococcal infections, diphtheria, and “summer diarrhea”—were common killers of infants.

As such, public health officials have long advised people against consuming raw milk, which has no evidence-based health benefits. Raw milk consumption, meanwhile, is linked to higher rates of outbreaks from pathogens including Salmonella, Listeria monocytogenes, toxin-producing E. coli, Brucella, Campylobacter, and many other bacteria.

Risky drinking

Since H5N1 was found spreading among dairy cows in March, health experts have warned about the additional risk of consuming raw milk. Still, consumption of raw milk has continued, and surprisingly increased, as supporters of the dangerous practice have accused health officials of “fearmongering.”

When the retail sampling of Raw Farm’s milk came back positive, the California Department of Food and Agriculture (CDFA) conducted testing at the company’s locations, which were negative for the virus. The CDFA will now begin testing Raw Farm’s milk for bird flu twice a week.

The recalled milk has lot code 20241109 and a “best by” date of November 27, 2024, printed on the packaging.​

“Drinking or accidentally inhaling raw milk containing bird flu virus may lead to illness,” California’s public health department said. “In addition, touching your eyes, nose, or mouth with unwashed hands after touching raw milk with bird flu virus may also lead to infection.”

Some US dairy workers who contracted the virus from infected cows reported having had milk splash in their eyes and face. A common symptom of H5N1 infections in humans during the dairy outbreak has been conjunctivitis, aka eye inflammation.

Raw milk recalled for containing bird flu virus, California reports Read More »

nasa-is-stacking-the-artemis-ii-rocket,-implying-a-simple-heat-shield-fix

NASA is stacking the Artemis II rocket, implying a simple heat shield fix

A good sign

The readiness of the Orion crew capsule, where the four Artemis II astronauts will live during their voyage around the Moon, is driving NASA’s schedule for the mission. Officially, Artemis II is projected to launch in September of next year, but there’s little chance of meeting that schedule.

At the beginning of this year, NASA officials ruled out any opportunity to launch Artemis II in 2024 due to several technical issues with the Orion spacecraft. Several of these issues are now resolved, but NASA has not released any meaningful updates on the most significant problem.

This problem involves the Orion spacecraft’s heat shield. During atmospheric reentry at the end of the uncrewed Artemis I test flight in 2022, the Orion capsule’s heat shield eroded and cracked in unexpected ways, prompting investigations by NASA engineers and an independent panel.

NASA’s Orion heat shield inquiry ran for nearly two years. The investigation has wrapped up, two NASA officials said last month, but they declined to discuss any details of the root cause of the heat shield issue or the actions required to resolve the problem on Artemis II.

These corrective options ranged from doing nothing to changing the Orion spacecraft’s reentry angle to mitigate heating or physically modifying the Artemis II heat shield. In the latter scenario, NASA would have to disassemble the Orion spacecraft, which is already put together and is undergoing environmental testing at Kennedy Space Center. This would likely delay the Artemis II launch by a couple of years.

In August, NASA’s top human exploration official told Ars that the agency would hold off on stacking the SLS rocket until engineers had a good handle on the heat shield problem. There are limits to how long the solid rocket boosters can remain stacked vertically. The joints connecting each segment of the rocket motors are certified for one year. This clock doesn’t actually start ticking until NASA stacks the next booster segments on top of the lowermost segments.

However, NASA waived this rule on Artemis I when the boosters were stacked nearly two years before the successful launch.

A NASA spokesperson told Ars on Wednesday that the agency had nothing new to share on the Orion heat shield or what changes, if any, are required for the Artemis II mission. This information should be released before the end of the year, she said. At the same time, NASA could announce a new target launch date for Artemis II at the end of 2025, or more likely in 2026.

But because NASA gave the “go” for SLS stacking now, it seems safe to rule out any major hardware changes on the Orion heat shield for Artemis II.

NASA is stacking the Artemis II rocket, implying a simple heat shield fix Read More »

microsoft-pushes-full-screen-ads-for-copilot+-pcs-on-windows-10-users

Microsoft pushes full-screen ads for Copilot+ PCs on Windows 10 users

Windows 10’s free, guaranteed security updates stop in October 2025, less than a year from now. Windows 10 users with supported PCs have been offered the Windows 11 upgrade plenty of times before. But now Microsoft is apparently making a fresh push to get users to upgrade, sending them full-screen reminders recommending they buy new computers.

The reminders, which users have seen within the last few days, all mention the end of Windows 10 support but otherwise seem to differ from computer to computer. My Ars colleague Kyle Orland got one focused on Windows 11’s gaming features, while posters on X (formerly Twitter) got screens that emphasized the ease of migrating from old PCs to new ones and other Windows 11 features. One specifically recommended upgrading to a Copilot+ PC, which supports a handful of extra AI features that other Windows 11 PCs don’t, but other messages didn’t mention Copilot+ specifically.

None of the messages mention upgrading to Windows 11 directly, though Kyle said his PC meets Windows 11’s requirements. These messages may be intended mostly for people using older PCs that can’t officially install the Windows 11 update.

Microsoft pushes full-screen ads for Copilot+ PCs on Windows 10 users Read More »