link1s.site

Argentina's government reform bill officially takes effect: granting the president special powers in areas such as administration

On the 8th, the Argentine government promulgated the "Foundations and Starting Points for Argentine Freedom" comprehensive bill and a package of fiscal measures, marking the official entry into force of the government reform bill.

According to the official gazette of the Argentine government, Argentine President Milley, Chief Cabinet Minister Guillermo Francos and Economy Minister Luis Caputo jointly signed Decrees No. 592 and No. 593 to promulgate these two new reform measures.

The comprehensive bill declared Argentina to enter a one-year public emergency in the administrative, economic, financial and energy fields, and granted the president special powers in these fields. It also includes the relaxation of economic regulations, labor reforms and the implementation of a large-scale investment incentive system. The package of fiscal measures involves anti-money laundering, tax deferral, tariffs, re-imposition of high-salary income tax and reduction of personal property taxes.

On June 28, after six months of negotiations, the two reform bills were finally passed by the Argentine Congress.

The largest password leak in history exposes nearly 10 billion credentials
The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews. This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords. Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum. “In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.” Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems. Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said. This could affect online services, cameras and hardware This could affect various targets, from online services to internet-facing cameras and industrial hardware. “Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded. However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades. This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak. Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information. That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms. Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security. Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.
Poland and Ukraine sign bilateral security agreement
On July 8, Ukrainian President Zelensky, who was visiting Poland, and Polish Prime Minister Tusk signed a bilateral security agreement in Warsaw, the capital of Poland. The agreement clearly states that Poland will provide support to Ukraine in air defense, energy security and reconstruction. After signing the agreement, Tusk said that the agreement includes actual bilateral commitments, not "empty promises." Previously, the United States, Britain, France, Germany and other countries as well as the European Union signed similar agreements with Ukraine.
China proposes to establish BCI committee to strive for domestic innovation
China is mulling over establishing a Brain-Computer Interface (BCI) standardization technical committee under its Ministry of Industry and Information Technology (MIIT), aiming to guide enterprises to enhance industrial standards and boost domestic innovation. The proposed committee, revealed by the MIIT on Monday, will work on composing a BCI standards roadmap for the entire industry development as well as the standards for the research and development of the key technologies involved, according to the MIIT. China has taken strides in developing the BCI industry over the years, not only providing abundant policy support but also generous financial investment, Li Wenyu, secretary of the Brain-Computer Interface Industrial Alliance, told the Global Times. From last year to 2024, both the central and local governments have successively issued relevant policies to support industrial development. The MIIT in 2023 rolled out a plan selecting and promoting a group of units with strong innovation capabilities to break through landmark technological products and accelerate the application of new technologies and products. The Beijing local government also released an action plan to accelerate the industry in the capital (2024-2030) this year. In 2023, there were no fewer than 20 publicly disclosed financing events for BCI companies in China, with a total disclosed amount exceeding 150 million yuan ($20.6 million), Li said. “The strong support from the government has injected momentum into industrial innovation.” The fact that China's BCI industry started later than Western countries such as the US is a reality, leading to the gap in China regarding technological breakthroughs, industrial synergy, and talent development, according to Li. To further close gaps and solve bottlenecks in BCI industrial development, Li suggested that the industry explore various technological approaches to suit different application scenarios and encourage more medical facilities powered by BCI to initiate clinical trials by optimizing the development of BCI-related ethics. Additionally, he highlighted that standard development is one of the aspects to enhance the overall level and competitiveness of the industry chain, which could, in turn, empower domestic BCI innovation. While China's BCI technology generally lags behind leading countries like the US in terms of system integration and clinical application, this has not hindered the release of Neucyber, which stands as China's first "high-performance invasive BCI." Neucyber, an invasive implanted BCI technology, was independently developed by Chinese scientists from the Chinese Institute for Brain Research in Beijing. Li Yuan, Business Development Director of Beijing Xinzhida Neurotechnology, the company that co-developed this BCI system, told the Global Times that the breakthrough of Neucyber could not have been achieved without the efforts of the institute gathering superior resources from various teams in Beijing. A group of mature talents were gathered within the institute, from specific fields involving electrodes, chips, algorithms, software, and materials, Li Yuan said. Shrugging off the outside world's focus on China’s competition with the US in this regard, Li Yuan said her team doesn’t want to be imaginative and talk too much, but strives to produce a set of products step by step that can be useful in actual applications. In addition, Li Wenyu also attributed the emergence of Neucyber to the independent research atmosphere and the well-established talent nurturing mechanism in the Chinese Institute for Brain Research. He said that to advance China’s BCI industry, it is necessary not only to cultivate domestic talents but also to introduce foreign talents to enhance China's research and innovation capabilities. The proposed plan for establishing the BCI standardization technical committee under the MIIT will solicit public opinions until July 30, 2024.
Google extends Linux kernel support to 4 years
According to AndroidAuthority, the Linux kernel used by Android devices is mostly derived from Google's Android Universal Kernel (ACK) branch, which is created from the Android mainline kernel branch when new LTS versions are released upstream. For example, when kernel version 6.6 is announced as the latest LTS release, an ACK branch for Android15-6.6 appears shortly after, with the "android15" in the name referring to the Android version of the kernel (in this case, Android 15). Google maintains its own set of LTS kernel branches for three main reasons. First, Google can integrate upstream features that have not yet been released into the ACK branch by backporting or picking, so as to meet the specific needs of Android. Second, Google can include some features that are being developed upstream in the ACK branch ahead of time, making it available for Android devices as early as possible. Finally, Google can add some vendor or original equipment manufacturer (OEM) features for other Android partners to use. Once created, Google continues to update the ACK branch to include not only bug fixes for Android specific code, but also to integrate the LTS merge content of the upstream kernel branch. For example, the Linux kernel vulnerability disclosed in the July 2024 Android security bulletin will be fixed through these updates. However, it is not easy to distinguish a bug fix from other bug fixes, as a patch that fixes a bug may also accidentally plug a security vulnerability that the submitter did not know about or chose not to disclose. Google does its best to recognize this, but it inevitably misses the mark, resulting in bug fixes for the upstream Linux kernel being released months before Android devices. As a result, Google has been urging Android vendors to regularly update the LTS kernel to avoid being caught off guard by unexpectedly disclosed security vulnerabilities. Clearly, the LTS version of the Linux kernel is critical to the security of Android devices, helping Google and vendors deal with known and unknown security vulnerabilities. The longer the support period, the more timely security updates Google and vendors can provide to devices.
It may be getting harder to leave your smart wearable for the sake of your health
The world's first portable electrocardiograph was an 85-pound backpack, and now a 10-gram patch attached to your chest can transmit electrocardiograms uninterrupted for two weeks. The Apple Watch, which is worn by an estimated 100 million people, can send a text message to alert people when their heartbeat is irregular. Wearable sensors on the arms, wrists and fingers can now report arrhythmias, blood sugar levels, blood oxygen and other health indicators. Medical journals have also proposed a more ambitious vision - wearable devices can monitor patients with chronic diseases, eliminating the need for frequent hospital visits. They can spot potential health problems before a stroke or diabetes develops. The forces of health technology and wearables are converging. Tech giants like Apple (AAPL) and Alphabet's (GOOGL) Google are adding health features to their products. Medical technologists like electrocardiogram patch maker iRhythm Technologies or blood sugar monitor makers DexCom (DXCM) and Abbott Laboratories (ABT) are taking their devices beyond the clinic. "In the sensor world, people started on the consumer side and wanted to get into health care," said Kevin Sayer, chief executive of Decon Medical. "In health care, we're trying to be more consumer oriented, and I think all of those things are sort of colliding." Early bets favored the tech giants, with every health-related announcement from Apple, Google or Samsung Electronics hitting medical tech stocks. But changing doctors' practices will also require sustained investment in clinical trials. Big tech companies have cut back on investments in health care. Now it seems that medical technologists will be at the vanguard of the digital health revolution - with smartwatches and smart rings bringing them more customers who need to be diagnosed. Blake Goodner, co-founder of Bridger Management, a hedge fund focused on health care, said: "A group of medtech companies focused on digital health are maturing and reaching a scale where they can not only be profitable but also make investments to compete with larger tech companies." Tech giants aren't getting out of the health business. Apple's smartwatch has an electronic heart rate sensor that generates a single-point electrocardiogram, a wrist temperature sensor, and an accelerometer that can detect violent falls. Hundreds of millions of people are wearing smartwatches with health features from Apple or its rivals Samsung and Garmin.