T-Mobile’s 5G is still the fastest in the US, Ookla says

0
[ad_1]

Internet research firm Ookla’s latest test report reveals that T-Mobile’s 5G services are still the fastest in the US. Thanks to the additional 2.5GHz spectrum, the telco’s median download performance on 5G networks has increased by nearly 30Mbps. The most noticeable change in T-Mobile’s 5G services after the allocation of the new spectrum is seen in the rural areas of the nation.

T-Mobile’s 5G services were fastest in March at 287.14Mbps

According to Ookla’s latest intelligence report, T-Mobile’s 5G services were the fastest in the US in March 2024. The carrier managed to achieve a median download speed of 287.14Mbps on its 5G networks. The company’s download speeds increased by 29.64Mbps within a month after the deployment of the additional 2.5GHz 5G spectrum. While the telco’s download speeds dropped to 275.50Mbps in May, it’s still the fastest 5G provider in the US.

Furthermore, the report suggests that 5G services of all telecom operators, especially T-Mobile, have seen a boost in rural areas. As per the data, the company added more download speeds in these regions thanks to the recent mid-band spectrum deployments. T-Mobile put the 2.5GHz mid-band spectrum to good use. It finally received the additional spectrum from the FCC after the 5G SALE Act was signed by President Biden in December 2023.

Verizon and AT&T’s 5G download speeds were 224.67Mbps and 145.36Mbps, respectively

Verizon took second spot on Ookla’s test results by offering a maximum download speed of 224.67Mbps in March. The company provided 22 percent slower 5G services than the market leader T-Mobile. As for AT&T, it lagged far behind in March with the median 5G download speeds of 145.36Mbps.

Verizon was also able to put its C-band mid-range 5G spectrum to good use which it purchased a few years ago. The additional spectrum allowed the company to play catch-up with T-Mobile in Q4 2023. Verizon was also able to boost its 5G performance in rural areas. AT&T unfortunately only saw a minor boost in median 5G download speeds in rural regions across the nation.

The report indicates that all telecom carriers in the US are prioritizing improvements in the 5G download performance. It will likely continue throughout the year. After stabilizing their download speeds, the telcos are expected to focus on maintaining latency and offering higher upload speeds as well.


[ad_2]
Source link

LG to bring Google Cast to more hotel rooms this fall

0
[ad_1]

Image credit — SONIFI Solutions

The ability to seamlessly stream content from your personal devices to hotel TVs is about to get a whole lot easier. LG, in partnership with SONIFI, a leading provider of hospitality technology, is set to roll out Google Cast support to over half a million hotel rooms by this fall. This means that guests can easily cast their favorite shows, movies, and music from their phones, tablets, or laptops directly to their in-room LG TV, regardless of whether they use Android, iOS, Windows, ChromeOS, or macOS.Google Cast, previously known as Chromecast, has long been a popular way to connect devices to TVs at home. However, its availability in hotel rooms has been limited. This new initiative aims to change that by making it a standard feature in LG-equipped hotel rooms worldwide. The technology works by allowing users to “cast” or mirror the content from compatible apps and websites directly onto the TV screen.The implementation will be integrated with SONIFI’s existing STAYCAST platform, which already allows guests to sign in to their streaming accounts on the TV and automatically logs them out at the end of their stay. This ensures a secure and convenient experience for guests while also maintaining privacy. To this, Michael Kosla, Senior Vice President at LG Business Solutions USA, said:


The partnership between LG and SONIFI is a significant step towards making hotel rooms more user-friendly and personalized. By allowing guests to access their preferred content on the big screen, it enhances the overall entertainment experience during their stay. Kara Heermans, SONIFI’s Senior Vice President of User Experience and Product Management, said the below regarding this collaboration:

With the rollout planned for this fall, travelers can soon expect to find Google Cast readily available in a wide range of hotels. This move by LG and SONIFI is not only a win for guests but also for hotels, as it provides a valuable amenity that can attract and retain customers. I know as a traveler, I’ll be really thankful to be able to stream my favorite shows and movies and not beholden to whatever is currently playing on cable TV.

[ad_2]
Source link

Hackers Use Windows XSS Flaw To Execute Arbitrary Command

0
[ad_1]

Attackers are leveraging a new infection technique called GrimResource that exploits MSC files.

By crafting malicious MSC files, they can achieve full code execution within the context of mmc.exe (Microsoft Management Console) upon a user click. 

It offers several advantages for attackers by bypassing the need for macros (disabled by default) and providing low-security warnings, making it ideal for gaining initial access while evading detection.

The first GrimResource sample was uploaded to VirusTotal in early June, highlighting a potentially emerging threat

Reference to apds.dll redirect in StringTable

A novel attack technique, GrimResource, exploits an unpatched XSS vulnerability in apds.dll to achieve initial access and code execution on Windows systems, where attackers craft malicious MMC files containing references to the vulnerable APDS resource in the StringTable. 

Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan

Obfuscated VBScript
Obfuscated VBScript

This triggers arbitrary JavaScript execution within the context of mmc.xe, and by abusing DotNetToJScript functionality, attackers further escalate privileges to arbitrary code execution. 

The attack chain uses a transformNode obfuscation technique to circumvent ActiveX security warnings, followed by an obfuscated VBScript that sets the target payload in environment variables. 

A custom.NET loader named PASTALOADER leverages these variables to inject the final payload (e.g., Cobalt Strike) into a newly spawned dllhost.exe process using a combination of DirtyCLR, function unhooking, and indirect syscalls for stealth.  

Payload injected into dllhost.exe
Payload injected into dllhost.exe

An existing detection for suspicious execution via Microsoft Common Console (MSC) files was designed to catch a different technique involving the Console Taskpads attribute. 

It looks for a specific pattern in process creation: a child process spawned by a parent mmc.exe process that launched an MSC file with a wildcard argument but didn’t match known legitimate MMC file locations or whitelisted executables. 

GrimResource detected
GrimResource detected

An attacker can exploit the.NET COM object functionality through a non-standard Windows Script Interpreter (WSH) script engine called DotNetToJScript, which utilizes a trusted process to allocate executable memory (RWX) on behalf of a malicious VBScript or JScript script. 

The detection relies on identifying this abnormal memory allocation pattern along with the call stack involving specific DLLs (mscoree.dll, combase.dll, jscript.dll, vbscript.dll, jscript9.dll, and chakra.dll) that link the.NET process to the WSH script engine. 

Monitoring for suspicious file open events (apds.dll) by mmc.exe can expose attempts to execute scripts through the MMC console. 

apds.dll being invoked in the MSC StringTable
apds.dll being invoked in the MSC StringTable

They can leverage MMC console files (MSC files) to execute malicious scripts by exploiting a vulnerability in APDS (Advanced Protocol Detection Service) to redirect the user to a malicious webpage, which creates a temporary HTML file (redirect.html) in the user’s INetCache folder. 

The Elastic security team can spot this attack by connecting events like the MMC process beginning with an MSC file and creating a redirect.html file.

YARA rules can be used to find the specific features of the malicious MMC console file. 

Free Webinar! 3 Security Trends to Maximize MSP Growth -> Register For Free


[ad_2]
Source link

OnePlus Watch 2R tipped to launch, not OnePlus Watch 3

0
[ad_1]

As many of you know by now, OnePlus is hosting a press event in China on June 27. The company will launch a handful of products, including a smartwatch. That smartwatch may not be called the OnePlus Watch 3, as some sources guessed, though. The OnePlus Watch 2R could launch instead, so it could basically have a different name. It also got certified by the FCC, but the name was not mentioned.

The OnePlus Watch 2R could launch in a couple of days

This information comes from Max Jambor, a well-known tipster. He’s almost never wrong when it comes to OnePlus information, so we have no reason to doubt this either. Just to be clear, the OnePlus Watch 2R name could be used outside of China only. The watch could have a different name in China when it arrived in a couple of days.

The OnePlus Watch 2R, based on its name, could be a cheaper variant of the OnePlus Watch 2. The tipster only said the name of the watch, nothing in addition to that. So keep that in mind.

What will its name in China be? Well, the OnePlus Watch 2 is mentioned. This may confuse many of you, but the OnePlus Watch 2 only launched outside of China, never in OnePlus’ homeland. So, from that point of view, this does make sense. You can check out our OnePlus Watch 2 review if you’re interested.

The new watch will likely have a round display

What we know about this watch is that it will have a circular display and that its body will be made out of metal. That’s basically everything we know about the OnePlus Watch 2R. Its price tag will also be lower than that of the OnePlus Watch 2, though, of course.

In addition to this smartwatch, OnePlus will announce the OnePlus Ace 3 Pro smartphone. A very powerful handset. The OnePlus Pad Pro will also arrive, as will the OnePlus Buds Pro 3 earbuds.


[ad_2]
Source link

Google Podcasts fades globally, but YouTube steps up with new “Your podcasts” page

0
[ad_1]

Last year, Google officially announced the shift from Google Podcasts to YouTube Music, and back in April, it shut down its podcasts app in the US. Since then, the YouTube Music podcast experience has been gradually improving, but there is still room for growth. However, in the meantime, YouTube has introduced a “Your Podcasts” page.

YouTube debuts “Your podcasts” page as Google Podcasts shuts down globally


YouTube is enhancing the podcasting experience beyond its Music app by introducing a dedicated “Your podcasts” page. On Android and iOS, you can find “Your podcasts” in the You tab, alongside “Your videos,” “Your movies & TV,” “Downloads,” and the newly added “Playables.” Only podcasts uploaded to YouTube will show up in this section.The page features a simple list with large cover art, placing your “New Episodes” playlist at the top. At the bottom, there is a shortcut to “Explore more podcasts.”

The new “Your podcasts” page aims to make it easier for users to navigate and manage their podcasts by gathering everything in one place. This feature is rolling out gradually, so it might not be available on your account just yet.

Meanwhile, following the US shutdown in early April, June 23 was the last day for international Google Podcasts users. The service is set to shut down soon, but you can still use the migration tool to switch to YouTube Music or a third-party service until July 29.

Speaking of podcasts, we have just launched our new weekly tech podcast! Each episode of the PhoneArena Show dives into the hottest topics and the latest news in mobile technology, covering everything from phones and tablets to wearables and the increasingly complex AI-driven software they use.

You can subscribe to the PhoneArena Show YouTube channel here, and in the meantime, see if the “Your podcasts” page has been rolled out to you yet.


[ad_2]
Source link

Tor Browser 13.5 Released With Feature Upgrades

0
[ad_1]

The latest Tor browser 13.5 release brings in numerous feature upgrades for desktop and Android users. Moreover, the new browser version also supports better bridges and connection improvements. Users must update their devices with the latest browser release to experience the new features.

Tor Browser 13.5 Arrives With Feature Upgrades

As elaborated in a recent post, the latest Tor Browser version 13.5 has arrived for both desktop and Android users. The latest update brings in feature upgrades and new options for the users.

Tor browser has long served users as a private web browser, even allowing them access to the dark web. While the browser provides privacy, navigating is often difficult due to feature complexity. Nonetheless, Tor developers keep improving the browser’s user experience, which the latest update demonstrates too.

Tor For Desktop Upgrades

  • Betterboxing: An improvement to the previous “Letterboxing” feature, Betterboxing provides users with an improved visual appeal and more control over window settings. Users can even find more Letterboxing settings within the General Settings menu.
  • Improved Bridge settings: With the latest Tor update, users can experience Bridge enhancements. First launched with Tor 11.5, Bridge Cards now appear in a more compact design instead of the stack of cards. Besides, the new Bridge Cards will also display the details about the Bridge’s source, and the browser will let users share three or fewer bridge cards at once, ditching the previous one-by-one process.
  • Better onion site errors: The latest Tor update also improves the design for onion site error messages.

Upgrades For Tor Android

  • Enhanced connection experience: Following its success with Tor’s desktop version, the developers have planned to introduce the Connection Assist feature with Tor for Android. But before its stable release, Tor brings in other feature improvements, including the launch of an auto-connect function and a readily accessible “Configure Connection” button.
  • Tor logs: The latest Tor update relocates Tor logs within the “Connection Settings” menu, making it easily accessible at any point while using Tor. Users can also copy all Tor logs with a handy button.

Tor developers urge users to update their devices with the latest browser releases to receive all feature upgrades.

Let us know your thoughts in the comments.


[ad_2]
Source link

New Tecno Phantom V2 Fold details have just landed

0
[ad_1]

Tecno is planning to launch the Phantom V2 Fold this year, and new details have just landed. This is the second-gen book-style foldable from the company. The first one was solid considering its price tag, so it’ll be interesting to see what will Tecno do this time around.

Some new details regarding the Tecno Phantom V2 Fold have just surfaced

Now, in regards to its details. The device surfaced on Bluetooth SIG. That certification confirmed that the device will support Bluetooth 5.3. It’s not the latest iteration, but it’s good enough.

This may be the latest information regarding the device, but certainly not the latest one. The Tecno Phantom V2 Fold surfaced on Geekbench back in January. That listing did reveal more details than Bluetooth SIG, that’s for sure.

The second-gen model will be fueled by the MediaTek Dimensity 9000+ processor. At least one of its variants will include 12GB of RAM, though that could be the only RAM variant. Android 14 will come pre-installed on the device.

This model will retain the same processor as last year’s unit

So, it seems like Tecno won’t change the processor it included in the first-gen model. The new phone will also have the same RAM count. Considering that Tecno used LPDDR5X RAM the first time around, we won’t see any change in that area either.

What about the rest of the specs? Well, we’re unsure at this point. We’re expecting to see more details to appear, but they’re under wraps at the moment. Both displays will be of the OLED variety, though, and likely 120Hz panels, as they were the first time around.

We’re expecting to see a major improvement in the camera department. The first-gen model was good enough considering the price tag, but Tecno will certainly be looking to improve in that regard. The design of the phone is also under wraps.


[ad_2]
Source link

How does AI work for the environment?

0
[ad_1]
Nature image 893498348943

The world is evolving every day, and this includes the use of technology. As environmental challenges become more pressing, people are beginning to see how technology can help. One technology that is garnering a lot of attention is artificial intelligence (AI).

AI enhances efficiency, reduces waste, and drives innovation, making it essential for addressing some of the environmental challenges we face today. Its application has the potential to yield promising results. in this article, we’ll explore the role of AI in environmental protection and its future impact on our planet.

AI in Natural Resource Management

Some of these include the following:

Water Resource Management

One of our most valuable resources is water, and sustainability depends on how it is managed. Artificial Intelligence that ensures you use water effectively by tracking and forecasting usage. For example, AI-driven systems examine sensor data in irrigation systems to maximize the distribution of water in farming. This increases agricultural output while conserving water at the same time. AI can forecast water demand and identify leaks in cities in real time, reducing waste and guaranteeing a consistent supply.

Forestry Management

Forests are critical to preserving biodiversity, and artificial intelligence is playing an important role in their maintenance. AI can track deforestation and the condition of forests using satellite photos and machine learning techniques. These tools can detect illicit logging and anticipate areas prone to forest fires, allowing for prompt actions. AI is also useful for estimating the impact of climate change on forests and guiding replanting and conservation activities.

Fisheries Management

AI is assisting in the sustainable management of fisheries, which is crucial for the health of oceans. Fish population and ocean health are tracked by AI systems, which provide information to help control fishing methods. AI algorithms use sonar and satellite photos to predict fish populations and ensure sustainable harvesting. This sustains the livelihoods of populations that depend on fishing and helps preserve wildlife.

AI in Weather and Disaster Forecasting

These include the following:

Weather Prediction

To prepare for and minimize the effects of extreme weather events, an accurate weather forecast is crucial. AI improves the accuracy of weather forecasts by evaluating massive amounts of information from satellites, weather stations, and climate models. Machine learning algorithms can find trends in meteorological data, allowing for more accurate predictions of storms, heat waves, and heavy rainfall. Farmers, urban planners, and emergency services can all benefit greatly from this information.

Disaster Preparedness and Response

Life and property are at risk of natural calamities, including floods, hurricanes, and earthquakes. However, with AI, planning and anticipating these situations will be much easier. For example, AI models can use seismic data to forecast earthquakes and their potential consequences. In hurricane-prone areas, AI predicts storm trajectories and strength, assisting with evacuation and resource allocation. During disasters, AI-powered drones and robots help in search and rescue operations, delivering real-time data to responders.

AI in Carbon Emissions Capture

They include:

Smart Carbon Footprint Calculators

AI is a big part of the effort to reduce carbon emissions, which is vital for fighting climate change. Artificial intelligence uses smart algorithms for carbon footprint calculation of individuals and organizations. These technologies provide individualized recommendations for lowering emissions by processing data from multiple sources. AI recommends energy-efficient appliances, ideal travel routes, and long-term improvements to reduce carbon impact for individuals and enterprises.

Carbon Capture Technologies

Artificial Intelligence (AI) improves the effectiveness of carbon capture and storage (CCS) technologies, which are critical to reducing global warming. To remove as much CO2 as possible from industrial emissions, AI algorithms optimize the capture process. AI-powered predictive maintenance makes sure CCS infrastructure runs well, thereby cutting expenses and downtime. AI contributes to a healthy planet by drastically lowering atmospheric carbon emissions through technological advancements.

AI in Energy Consumption Optimization

These include:

Energy Management in Buildings

Buildings use a large amount of the world’s energy, and artificial intelligence (AI) helps to make them more energy-efficient. Artificial intelligence (AI) technologies track energy usage in real time and find locations where usage can be cut. Smart thermostats and lighting systems employ artificial intelligence to modify settings based on occupancy and environmental circumstances, hence optimizing energy use. This not only decreases energy bills but also lowers carbon emissions, which helps to promote sustainability.

Renewable Energy Integration

When it comes to integrating renewable energy sources like solar and wind power, Artificial Intelligence is essential. AI algorithms optimize renewable energy installations by monitoring weather patterns and energy use data. For example, AI can forecast solar panel performance based on weather predictions, guaranteeing optimal energy absorption. AI-powered predictive maintenance also helps in the efficient operation of renewable energy systems, lowering downtime and maintenance costs.

Conclusion

AI is an effective weapon in the struggle to stop ecological damage. AI offers innovative solutions for managing resources, predicting weather, capturing carbon, and optimizing energy use to tackle environmental challenges. AI’s involvement in environmental preservation will only expand as technology advances, bringing promise for a better planet.

Featured image source

The post How does AI work for the environment? appeared first on Android Headlines.


[ad_2]
Source link

TikTok’s AI video generator made to recite Hitler, quickly pulled after that

0
[ad_1]
Generative AI is all the hype nowadays, but its rapid adoption can cause problems. In a dramatic and somewhat comic string of events, TikTok’s Symphony Assistant was used to create AI avatars, reciting problematic scripts such as Hitler’s Mein Kampf and Osama Bin Laden’s “Letter to America.”

TikTok announced Symphony Avatars last month as part of its “Creative AI Suite,” aimed at helping create personalized videos without the need to hire real actors. The feature has been rolling out for the past week to TikTok Ads Manager accounts, or it was supposed to be limited to those accounts.

CNN producer and digital content creator Jon Sarlin gained access to the AI tool using his personal account and found that there are no safeguards when it comes to sensitive content.

Generative AI is in extensive use across the tech world, and TikTok is no exception. The platform first announced Symphony Avatars last month as part of its “Creative AI Suite,” enabling businesses, brands, and creators to create fully customized ads using generative AI and the likenesses of paid actors (avatars).

This feature was then rolled out earlier this week, but only for people with a TikTok Ads Manager account. However, it seems like this limitation was briefly not in place, with a CNN reporter gaining access to one of the Symphony AI tools using their personal account. This led to the reporter finding practically no guardrails or safeguards in this AI tool.

In a post on X (formerly Twitter), Sarlin showed some examples of videos, created with Symphony Assistant, including avatars, reciting the aforementioned problematic scripts. What’s even worse is that there were no watermarks or any indications on the videos to show that they were AI-generated.

Unsurprisingly, CNN reached out to TikTok for comment and received the following statement: “A technical error, which has now been resolved, allowed an extremely small number of users to create content using an internal testing version of the tool for a few days. If CNN had attempted to upload the harmful content it created, this content would have been rejected for violating our policies. TikTok is an industry leader in responsible AIGC creation, and we will continue to test and build in the safety mitigations we apply to all TikTok products before public launch.”

It’s unclear whether TikTok accidentally rolled out an “internal testing version” of the AI tool or just missed placing the appropriate filters and safeguard mechanisms, but now the issue has been remedied, according to TikTok (we understand that Symphony Assistant has been pulled off, at least for the moment).
ByteDance, the company behind TikTok, has an ultimatum until the end of the year to sell TikTok or have the app banned in the U.S. after the Senate voted to send a bill to the White House, and it was subsequently signed by President Biden. Legislators in the United States are concerned that ByteDance may be coerced by the Chinese Communist Party (CCP) to give up user personal information and spy on Americans.

AI isn’t going anywhere anytime soon, so expect more stories like this one to pop up. What do you think about it? AI is just a tool, and it’s us humans who ultimately use it unethically. But there should be mechanisms in place to prevent such mishaps, right?


[ad_2]
Source link

Hackers Exploit Multiple WordPress Plugins to Hack Websites & Create Rogue Admin Accounts

0
[ad_1]

Wordfence Threat Intelligence team identified a significant security breach involving multiple WordPress plugins.

 The initial discovery was made when the team found that the Social Warfare plugin had been injected with malicious code on June 22nd, 2024.

This discovery was based on a forum post by the WordPress.org Plugin Review team.

Upon further investigation, Wordfence identified four additional plugins that were similarly compromised.

Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan

The affected plugins include:

  • Social Warfare (versions 4.4.6.4 – 4.4.7.1)
  • Blaze Widget (versions 2.2.5 – 2.5.2)
  • Wrapper Link Element (versions 1.0.2 – 1.0.3)
  • Contact Form 7 Multi-Step Addon (versions 1.0.4 – 1.0.5)
  • Simply Show Hooks (version 1.2.1)

Wordfence has contacted the WordPress plugins team to alert them about the compromised plugins.

Although there has been no official response, the affected plugins have been delisted.

Users are advised to update the patched versions where available or remove the plugins entirely if no patch exists.

The injected malware attempts to create a new administrative user account and sends the details to an attacker-controlled server.

Additionally, malicious JavaScript is injected into the website’s footer, adding SEO spam.

The malware is not heavily obfuscated, making it easy to follow and remove.

Indicators of Compromise and Next Steps

The Wordfence team is conducting a deeper analysis and developing malware signatures to detect these compromised plugins.

The Wordfence Vulnerability Scanner will notify users running the affected versions.

Immediate steps include checking for unauthorized administrative accounts and running a complete malware scan using the Wordfence plugin or CLI.

Indicators of Compromise:

  • Server IP Address: 94.156.79.8
  • Generated Admin Usernames: Options, PluginAuth

If you have any of these plugins installed, consider your site compromised and take immediate action.

For detailed guidance on cleaning your WordPress site, visit the Wordfence website or sign up for their incident response services.

Stay vigilant and ensure your WordPress installations are secure to prevent further exploitation.

Free Webinar! 3 Security Trends to Maximize MSP Growth -> Register For Free


[ad_2]
Source link