Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror

Comment NLRB whistleblower interview (Score 2) 93

A whistleblower complaint filed by an IT staffer claims Elon Musk and his DOGE team gained access to sensitive data that could have led directly to a “significant cybersecurity breach.” Amna Nawaz discussed more with NLRB whistleblower Daniel Berulis and attorney Andrew Bakaj. Watch the fascinating interview of this technical person and whistleblower, with good technical details shared directly from him.

We're not talking about any single agency here, we're talking about many multiple agencies 30-something Kyle Schutt infiltrated and extracted data from his insecure and seemingly personal devices/accounts.

http://www.youtube.com/watch?...

= = =

NLRB employee Daniel Berulis reports on CNN that within 15 minutes of DOGE staff receiving new accounts with access to highly sensitive Department of Labor (DoL) data, someone within Russia logged in with the correct username and password over 20 times, but were rejected by location-related conditional access policies. Additionally a traffic spike of 10Gb of data exiting DoL was witnessed which is highly unusual activity at anytime.

Also, DOGE is using Starlink to exfiltrate data, and Starlink is known to be hacked by Russia.

He also reports this activity is not limited to the DoL, it has been witnessed across the government I.T. infrastructure, and that sensitive databases have recently been exposed to the open internet.

Daniel Berulis also received a clear message to stop looking. Part of the package he received included drone footage of him walking his dog.

Fast forward to 4min 15seconds if you're in a hurry.

Comment Re:Why this is news. (Score 1) 93

Agree or disagree, this is what the story is all about.

With all due respect I disagree only slightly, because the problem is much, much more extensive.

Citation:

http://www.youtube.com/watch?...

More citations:

http://slashdot.org/submissio...

http://slashdot.org/submissio...

Comment "Only the best people" (Score 4, Insightful) 93

Having worked for the feds as a developer I can tell you emphatically, I am never allowed to administer anything, period. There's no user account giving me permissions to change ANYTHING on any system, period. The most I can do is push code to the GIT server. Okay sure, I can try to be influential by setting up at prototype of something, somewhere else, but that's about it.

Yet young Big Balls has God Level rights against the most vociferous resistance of various agencies heads, (following the illegal dismissal of the attorneys general), before those agency protestors have been removed, one way or the other. How and why did that happen?

We know who allowed it, no secret there.

In a word: corruption.

There's a price to be paid to keep the criminal in chief out of jail and serving his people. Fellow criminals can rejoice now -- the list of fellow criminals is long.

The entire list is extremely disgusting although I have a favorite candidate for most evil scumbag: "libertarian" Ross Ulbricht who couldn't be happier with his connection to DJ Trump.

Criminals seem to respect and look out for each other. The people are fucked. We're all gonna pay for this.

Comment Re:HarmonyOS distributed architecture (Score 1) 43

“Unlike a legacy operating system that runs on a standalone device, HarmonyOS is built with a distributed architecture that uses a same set of system capabilities to adapt to a wide array of device forms, ranging from phones and tablets to wearables, smart TVs, and head units as well as PCs, smart speakers, headsets, and AR/VR glasses. It is adaptable to, among other things, the mobile office, fitness and health, social communication, and media entertainment.”

Sounds a lot like Apple's walled garden.

Comment Re:He's completely alien and incompetent (Score 1) 129

In zuckerberg's case he blundered into it. He created Facebook to harass a girl that turned him down for a date and it grew out of that into the monster it is today.

  His parents were well off so he had the money and contacts and resources to develop it into a business and he could afford to take the risk of dropping out of college to do it too because he knew that his parents could send him right back if it didn't work out.

Just like Elon musk Zuckerberg is a hybrid of nepo baby and lottery winner. Virtually all the billionaires are.

If I am understanding correctly, this is your 'trickle-up' theory, is that right?

Just to change the subject a little, who was it that once said, "it takes a village"?

Submission + - 50+ House Democrats demand answers after whistleblower report on DOGE (npr.org) 2

echo123 writes: Over fifty Democratic lawmakers have signed a letter demanding answers from senior U.S. government officials about a recent potential exposure of sensitive data about American workers.

The letter is addressed to the acting General Counsel of the National Labor Relations Board, William Cowen. The independent agency is in charge of investigating and adjudicating complaints about unfair labor practices and protecting U.S. workers' rights to form unions.

The lawmakers, who are part of the Congressional Labor Caucus, wrote the letter in light of news first reported by NPR, that a whistleblower inside the IT Department of the NLRB says DOGE may have removed sensitive labor data and exposed NLRB systems to being compromised.

"These revelations from the whistleblower report are highly concerning for a number of reasons," the lawmakers wrote in the letter to Cowen. "If true, these revelations describe a reckless approach to the handling of sensitive personal information of workers, which could leave these workers exposed to retaliation for engaging in legally protected union activity."

The letter refers to an official whistleblower disclosure made by Daniel Berulis, a cloud administrator in the IT department of the NLRB, who also spoke to NPR in multiple interviews.

In his disclosure, Berulis shared that he initially became concerned in March when members of President Donald Trump's Department of Government Efficiency initiative arrived at the agency and demanded high-level access to the systems without their activities being logged. Those fears escalated after he tracked a large chunk of data leaving the agency at the same time as many security controls and auditing tools were turned off, the disclosure continues.

Ultimately, Berulis became concerned that DOGE, which is effectively led by Trump adviser and billionaire CEO Elon Musk, could have accessed sensitive internal information about ongoing investigations into U.S. companies, witness affidavits and even corporate secrets. The alleged insecure practices and removal of data could also create vulnerabilities for criminal hackers or foreign adversaries to exploit, Berulis explained in his official disclosure.

Comment Re:nuclear power requirement (Score 1) 10

That's an interesting point. It likely was to curry favor with trump. They must have known back then that AI is going nowhere: that demand is nowhere nearly as big as they thought. Microsoft is doing exactly the same thing.

Three Mile Island nuclear plant to help power Microsoft's data-center needs

Sept. 20, 2024, 4:26 PM GMT+2
By Rob Wile

A unit of Pennsylvania's Three Mile Island nuclear plant will be restarted as part of a new energy-sharing agreement with Microsoft, which plans to use it to power the data centers it operates as part of its push into artificial intelligence.

In a joint release, Microsoft and Constellation Energy, Pennsylvania's main utility, said Three Mile Island Unit 1, a unit separate from the one that sparked the infamous shutdown nearly five decades ago, will be used to provide clean energy to the tech giant as the artificial intelligence arms race heats up.

the article continues

Comment nuclear power requirement (Score 2) 10

It will be nice when we have those million square foot Spirit Halloween stores in a few months.

I don't understand. It wasn't that long ago Amazon was pushing for nuclear power to meet its insatiable requirements. Given the waste, nuclear is a very long term commitment.

Does it matter that story posted just before the election?

In other news, Amazon was a sponsor of today's 147th White House Easter egg roll.

Comment That's how Reality Winner was caught (Score 1) 37

Watermarking is damn near ancient technology. They're not even using well-hidden watermarks. At a minimum they could require you to do an FFT or something to produce something readable.

It's amazing to me that any journalist would directly publish any leaked data. That's incredibly stupid. Even leaking the plain text is risky, as you can "watermark" any document by subtly re-ordering words and sentences, inserting typos, etc. which would tell you at least what office the document was leaked from. I'm tempted to blame the collapse of journalism as a profession, because they should have been told this at some point in their career.

The Intercept published the single page classified document Reality Winner leaked to them. Because of printer tracking dots and other evidence, the Feds were able to prove Ms. Winner leaked the classified document.

Its worth pointing out in 2018 Ms. Winner was given the longest prison sentence ever imposed for an unauthorized release of government information to the media.

You know who stole boxes and boxes of highly classified documents and stored them in spare bathrooms and ballrooms at his club/house staffed with a great many foreign workers? The criminal got a sweetheart judge and his life seems pretty good, all things considered.

= = = = =

FWIW, AI can be moderately useful for removing watermarks.

Slashdot Top Deals

"The eleventh commandment was `Thou Shalt Compute' or `Thou Shalt Not Compute' -- I forget which." -- Epigrams in Programming, ACM SIGPLAN Sept. 1982

Working...