FAA blamed after parachute show leads to Congress evacuation

US Congress was evacuated yesterday after Capitol Police said it was “tracking an aircraft that poses a possible threat to the Capitol Complex,” CBS News reported. Everyone stood down a short time later when it turned out to be a parachute demonstration, but the incident caused a lot of ire. “The Federal Aviation Administration’s apparent failure to notify Capitol Police of the pre-planned flyover [at] Nationals Stadium is outrageous and inexcusable,” wrote House Speaker Nancy Pelosi. 

The plane belonged to the Army Golden Knights parachuting team, dropping parachutists into the stadium for Military Appreciation Day. The pilot reportedly avoided flying over the restricted airspace over the Capitol Building and was coordinating with the control tower, but may not have had proper clearance, according to The Associated Press

FAA blamed after a planned parachute show led to the evacuation of Congress
FlightRadar24

The FAA acknowledged the incident and promised an “expeditious” review. “We know our actions affect others, especially in our nation’s capital region, and we must communicate early and often with our law enforcement partners,” it said in a statement. The plane’s entire voyage was tracked by FlightRadar24 (above).

The incident demonstrates the level of coordination needed between FAA, law enforcement and other interested parties, particularly near restricted areas. As such, it may be an example of why the agency has been so careful in permitting passenger or delivery drones to operate in populated or sensitive areas. Such incidents are rare nowadays, but things could get chaotic with thousands of new drones plying the skies if the government doesn’t have a comprehensive plan.

‘Buy with Prime’ lets third-party retailers use Amazon’s shipping service

Amazon has unveiled “Buy with Prime,” a service that let’s other online retailers use its vast delivery network to fulfill orders on their own websites. At the same time, it will be another Prime subscriber perk for goods they might not be able to find directly on Amazon.

Merchants using it will be able to put the Prime badge on their own websites beside eligible items available for free next-day or two-day delivery. Then, Prime members can purchase the product using the payment and shipping details already stored on their Amazon accounts. 

Sellers will pay for the service with fees depending on the card processor, fulfillment and more. To start with, it’s launching by invitation to Amazon sellers already using Fulfillment by Amazon (FBA), but will eventually expand to other merchants, even if they’re not on Amazon. 

FBA retailers currently pay to store inventory in Amazon’s warehouses and use its shipping services, and in return, get the valued Prime logo on Amazon-listed products. Amazon recently announced that it would charge them an additional 5 percent fuel and inflation surcharge on top of the FBA fees they’re already paying. It also has a program called Multi-Channel Fulfillment that allows retailers to store and ship goods using its logistics chain.

Using FBA may have been akin to a deal with the devil for some sellers, however. Amazon has been accused in the past of using seller data to create its own private label products like car trunk organizers and Peak Design bags, The Wall Street Journal reported back in 2020. Amazon denied this, but the SEC recently launched an investigation into the practice. 

Buy with Prime also means Amazon will be competing directly with shipping services like FedEx and UPS. The company recently said that it was about to become the largest delivery service in the US, according to CNBC. It also recently reported that its third-part seller services, including shipping, fulfillment and others, brought in $30.3 billion in the last quarter alone. 

UK regulators will allow drivers to watch TV in autonomous cars

With self-driving vehicles possibly arriving on UK roads later this year, the government is starting to put rules in place to accommodate them, the BBC has reported. As part of that, it will allow drivers in autonomous vehicles to watch TV from an infotainment screen in self-driving mode, as long as they’re ready to take back control. That’s a modification of a law that has been on the books since 1986 that prohibits drivers from viewing a “television-receiving apparatus” when behind the wheel.

It will still not allow the use of mobile phones, which were officially banned in the UK last year. That’s because automakers can implement technology to stop a car’s built-in screen from displaying content when the driver needs to take back control, but can’t do the same on a smartphone. The government also decided that insurance companies and not people will be liable for accident claims in a number of circumstances. The changes will be an “interim measure” until an all-new set of rules can be put in place by 2025.

Self-driving cars are not yet legal in the UK, but the Department for Transport (DfT) said they may be ready later in 2022. A year ago, the government announced that basic self-driving cars with automated lane-keeping systems could arrive on British roads by the end of last year. 

The UK government predicted that self-driving tech could “improve road safety across Britain by reducing human error, which is a contributory factor in 88 percent of all recorded road collisions.” In the meantime, though, self-driving tech has gone nowhere over the last few years, apart from a few exceptions like GM’s Cruise offering public driverless taxi rides in San Francisco. 

Okta says Lapsus$ breach affected only two customers

Following a breach of its systems in January, Okta has released a forensic report finding that the threat group Lapsus$ accessed just two active customers via a third-party company. Lapsus$ “actively controlled” a workstation belong to an engineer at support firm Sitel for 25 minutes on January 21st, the company said. 

“The threat actor actively controlled a single workstation, used by a Sitel support engineer, with access to Okta resources,” wrote Okta chief security officer David Bradbury. “During that limited window of time, the threat actor accessed two active customer tenants within the SuperUser application and viewed limited additional information in certain other applications like Slack and Jira that cannot be used to perform actions in Okta customer tenants.”

While just two customers were accessed, many more users might have been affected, as Otka has 15,000 customers but over 100 million individual users. Despite the access, though, Lapsus$ was not able to do any MFA or password resets, configuration changes or customer support impersonation, Okta said. “The threat actor was unable to authenticate directly to any Okta accounts.” 

It took Okta two months to notify customers of the Lapsus$ breach, and eventually released a statement saying it “made a mistake” in how it handled things. In a blog post last month, it revealed that 2.5 percent of its customers may have had their data viewed or acted upon during a five day window.

It now looks like the breach was far more limited in scope, but Okta said it took lessons from the situation. It terminated its relationship with the contractor in question and promised to strengthen audit procedures for others. It’s also going to directly manage the devices of third parties with access to customer support tools so it can respond more “effectively” to incidents. Finally, it’s adopting new systems to “help us communicate more rapidly with customers” on security issues. 

Brave’s browser can automatically bypass Google’s AMP pages

Brave is putting Google’s Accelerate Mobile Pages (AMP) on blast with a new feature called De-AMP, The Verge reported. It’s designed to bypass any pages rendered with AMP and take users directly to the original website. “Where possible, De-AMP will rewrite links and URLs to prevent users from visiting AMP pages altogether,” the company wrote in a blog post.

If that’s not possible, then “Brave will watch as pages are being fetched and redirect users away from AMP pages before the page is even rendered, preventing AMP/Google code from being loaded and executed,” it added. 

The new feature was implemented in the name of privacy, security and internet experience, according to Brave. “In practice, AMP is harmful to users and to the Web at large,” the article states. “Just as bad, AMP helps Google further monopolize and control the direction of the web.” It adds that the next iteration of AMP “will be even worse.” 

Google originally promoted AMP as a way to improve the mobile web experience by loading pages faster. However, it has recently been a target of critics who see it as a way for Google to increase its hegemony in the internet ad market by hosting content on its own servers. A group of publishers recently announced it was moving away from AMP, and a lawsuit filed by several US states accuses Google of running a monopoly that harmed ad-industry competitors and publishers.

Brave promises “the best privacy online” with its browser, so of course attacking Google is part of its business strategy. Despite its efforts, though, it lags well behind most other browsers in mobile market share, sitting in the “other” category behind Internet Explorer on Statcounter. De-AMP is now available in beta and “will be enabled by default in the upcoming 1.38 Desktop and Android versions, and will be released on iOS soon after,” Brave said.

Samsung’s Pokémon-themed Galaxy Z Flip 3 is a delight

Samsung has unveiled the Pokémon Edition of its Galaxy Z Flip 3 foldable smartphone that’s bound to be irresistible to collectors. It comes in a special box with a number of Pokémon-themed accessories, including a Pikachu picture case (with a Pokémon Custom Pack), a Pikachu Clear Cover Set, a Pokémon Pouch with a lanyard strap, a Pikachu keychain and a Poké Ball stand. It’ll also have some Pokémon-edition ringtones, themes and wallpapers. 

The model is coming along at a good time, as a Pokémon Bread craze has apparently taken South Korea by storm, according to Maekyung.com. Collectors are mostly buying them for the Pokémon stickers contained inside, which are reportedly selling for 10 times the price of the $1.20 bread. 

Samsung has released custom versions of its foldable phones before, including the Thom Browne Edition of the Galaxy Flip 3 and and Fold 3. Judging by the reaction of some of my Engadget colleagues, though, Samsung has nailed the Pokémon Edition’s design and accessories. It has yet to release the price and other details, but it’s likely to be sold only in Korea — we’ll learn all when it drops on April 25th. 

‘Love Death and Robots’ Season 3 comes to Netflix on May 20th

The third season of Netflix’s animation anthology Love, Death and Robots will bow on May 20th. The streamer teased the release with a short video showing the same adult-oriented themes and wide variety of animation styles as the previous volumes

The series is produced by Tim Miller and David Fincher, who has a four-year exclusivity deal with Netflix. In the trailer, Netflix showed short clips of The Crown, The Queen’s Gambit and other shows as a way to contrast them with the far more intense “problem child” animated show. “The threesome you’ve been waiting for,” the tagline states.

The styles run the gamut from hyper-realistic with a Gulliver-like character to 2D cel animation, with just about everything in between. The series has garnered solid critic reviews on Rotten Tomatoes, though audience scores dropped in volume 2 when it toned down the nudity and gore. The number of episodes also dropped in the second season with eight compared to 18 in volume 1. Netflix didn’t say how many episodes are coming with volume 3, but you’ll only have to wait a day to find out. 

Blackmagic launches DaVinci Resolve 18 with real-time cloud collaboration

Blackmagic Design has unveiled a raft of new products including the DaVinci Resolve 18 video editing/color correction app and Blackmagic Cloud, a cloud collaboration system designed for editors, VFX artists and others. It also launched the “Cloud Store” networked storage box that uses a familiar-looking enclosure. 

The key product is DaVinci Resolve 18 which now includes a feature called Blackmagic Cloud designed to help content creators work together. Multiple users around the world can instantly share projects, allowing editors, colorists, VFX artists and audio engineers to collaborate in real time on the same timeline. 

Blackmagic Design unveils 'Cloud Store' with the same enclosure as its eGPU
Blackmagic Design

A big part of that is the Blackmagic Proxy Generator App, which automatically generates smallish proxy video files (H.264, H.265 and Apple ProRes) that can be transferred quickly by internet. The idea is that remote editors can complete their work on proxies, then the colorist or VFX editor could automatically relink to the much larger original camera files. It also has new intelligent media location management, eliminating the need to manually relink or search for video, music and other assets.

Resolve 18 also introduces new creative features, with the biggest being a new object mask that can recognize and track thousands of types of objects. “The DaVinci Neural Engine intuitively isolates animals, vehicles, people and food, plus countless other elements for advanced secondary grading and effects application,” Blackmagic wrote in a press release. 

It also lets you create a 3D depth matte of a scene to quickly color grade the foreground separately from the background. Another cool feature it demonstrated was a warp tracker that lets you create a mesh over complex objects like the logo on someone’s T-shirt, then erase it or replace it with something else in a way that looks natural and realistic.

There are a host of other new features like “ultra beauty” for corrective beauty work, new transitions, improved subtitle support and more — check Blackmagic’s press release for a detailed list. DaVinci Resolve 18 beta is now available to download for free, or you can pay $295 for the Studio version. 

Blackmagic also announced Cloud Store, a networked storage box that uses the same enclosure as its eGPU for Intel Macs. The idea is that you can load it up with 20TB, 80TB or 320TB of storage built from high speed M.2 SSDs. It uses a RAID 5 configuration for fault tolerance and has enough speed to completely saturate the four 10G Ethernet connections. “It’s so fast, multicam editing is incredibly smooth, even if it’s used with massive digital film camera files,” the company said.

Blackmagic used the eGPU box as it has a reasonably professional look, and it’s also nearly silent so it can be placed right on a desktop. Each port can be plugged into a separate computer or used together for 40G Ethernet. It has a USB-C to Ethernet adapter built in so it can be plugged directly into the USB-C port on a laptop for location work, for example. It can sync footage with multiple editors using Dropbox files, which can automatically be moved to the Blackmagic Cloud for collaboration.

The Cloud Store is designed for professional installations, so it’s priced at $10,000 for the 20TB model and $30,000 for the 80TB model (that storage includes the extra RAID 5 parity drives required). There’s no pricing for the 320GB box, but it might be over $100K. If all that’s too much, Blackmagic Design also unveiled the Cloud Store Mini priced at $3,000 for 10TB with fewer ports and RAID 0 (no redundancy), along with the $395 Cloud Pod, a “bring your own disk” setup with 10G connectivity. 

Blackmagic Design unveils 'Cloud Store' with the same enclosure as its eGPU
Blackmagic Design

Finally, Blackmagic launched the HyperDeck Shuttle HD, a recorder/player designed to be used on the desktop with products like the Atem Mini switcher. You can playback media from USB-C disks or SD cards, or record an HDMI signal from a camera or other source. From there, you can scroll through footage using the jog dial and even use it as a teleprompter. The HyperDeck Shuttle HD is now available for $495.

Google lets you explore new heritage sites with help from the State Department

The US Department of State is making it easier for people to explore cultural heritage sites from around the world thanks to a partnership with Google Arts & Culture. Announced as part of World Heritage Day, the dedicated section will let people virtually explore heritage sites from 1,100 Ambassadors Fund projects in over 130 countries around the world.

“Cultural heritage sites, objects, and traditions are a point of pride for people the world over, but they also require care and vigilance,” wrote the US Department of State’s Lee Satterfield. “That’s why the State Department’s Cultural Heritage Center works with governments and organizations to preserve and protect cultural heritage from both natural and man-made threats through the U.S. Ambassadors Fund for Cultural Preservation (AFCP).”

Some of the sites on display include the Wat Chaiwatthanaram at Ayutthaya in Thailand, the al-Imam al-Shafi’i Mausoleum in Egypt and the Ancient Nabataean Flash Flood Protection System at Petra. All told, the Cultural Heritage Center added over 100 new images of sites. Along with those, there’s a story about cultural heritage preservation, complete with video and images, created by the US Department of State’s Cultural Heritage Center.

The Cultural Heritage Center promised to update the site with future stories down the road. And since the biggest threat to heritage sites is climate change, it also pointed folks to Google Arts & Culture’s Heritage on the Edge project. 

Researchers break world record for quantum-encrypted communications

Researchers in Beijing have set a new quantum secure direct communication (QSDC) world record of 102.2 km (64 miles), smashing the previous mark of 18 km (11 miles), The Eurasian Times reported. Transmission speeds were extremely slow at 0.54 bits per second, but still good enough for text message and phone call encryption over a distance of 30 km (19 miles), wrote research lead Long Guilu in Nature. The work could eventually lead to hack-proof communication, as any eavesdropping attempt on a quantum line can be instantly detected. 

QSDC uses the principal of entanglement to secure networks. Quantum physics dictates that entangled particles are linked, so that if you change the property of one by measuring it, the other will instantly change, too — effectively making hacking impossible. In theory, the particles stay linked even if they’re light-years apart, so such systems should work over great distances. 

The same research team set the previous fiber record, and devised a “novel design of physical system with a new protocol” to achieve the longer distance. They simplified it by eliminating the “complicated active compensation subsystem” used in the previous model. “This enables an ultra-low quantum bit error rate (QBER) and the long-term stability against environmental noises.” 

As a result, the system can withstand much more so-called channel loss that makes it impossible to decode encrypted messages. That in turn allowed them to extend the fiber from 28.3km to the record 102.2 km distance. “The experiment shows that intercity quantum secure direct communication through the fiber is feasible with present-day technology,” the team wrote in Nature

Researchers in China previously made a secure quantum-enabled video call by satellite, but fiber poses a different set of challenges. “If we replace parts of the internet today, where more eavesdropping attacks happen, with quantum channels, those parts will have the added ability to sense and prevent eavesdropping, making communication even safer,” said Long.