Posts Tagged ‘technology’

Getting Out The Ten Foot Pole To Talk About UFOs

Thursday, October 10th, 2024

If the Jeopardy category is “Topics Seldom Covered At BattleSwarm,” “What are UFOs?” is a pretty good answer. While I’ve occasionally done a post, for the most part those waters are too polluted by cranks, grifters and true believers (to the extent those categories are distinguishable) to give much credence to the idea that alien spacecraft regularly visit earth.

But since Michael Shellenberger just dropped a piece on a whistleblower saying the federal government has a secret UFO program, and since Shellenberger did such important work on the Twitter files, I am reluctantly getting out my ten foot pole* and covering the piece.

But first some background.

Back in the 1970s, a whole lot of otherwise rational people believed not only in the existence of UFOs, but in alien abductions, ancient astronauts, and a whole host of crackpot pseudoscience beliefs. Belief in UFOs as extraterrestrials visiting earth probably peaked then, reflected in popular media from Close Encounters of the Third Kind to Project Bluebook. There was also a steady stream of UFO true believers on TV, making fairly outrageous claims on actual news programs or “true story” TV shows, be it Barney Hill getting butt-probed in a saucer or Bob Lazar’s stories of alien technology at Area 51 and how Grays will use humans as “containers for souls.”

In terms of government UFO projects, the Advanced Aerospace Threat Identification Program was a real (though unpublicized) Defense Department program that evidently ran from 2007 to 2012.

Now back to Shellenberger:

There is no evidence that any non-human or extra-terrestrial intelligence has visited Earth, according to a May 2024 report by the office the Pentagon created in 2022 to study unidentified anomalous phenomena (UAP), formerly called UFOs.

The Pentagon’s All-domain Anomaly Resolution Office (AARO) “assesses that the inaccurate claim that the USG is reverse-engineering extraterrestrial technology and is hiding it from Congress is, in large part,” the report concluded, “the result of circular reporting from a group of individuals who believe this to be the case, despite the lack of any evidence.”

The former Director of AARO has since resigned his position and has repeatedly dismissed and ridiculed the topic, claiming that talk of the phenomenon is due mainly to a small group of individuals in the grip of a rumor-based religion.

But critics say that AARO’s 63-page history of the US government’s investigation into UAPs since the end of World War II was riddled with factual errors and poor referencing, including to Wikipedia. And the document was missing historical information that appeared in the 117-page “UAP Timeline” document created by a former or existing US government intelligence officer that Public published last year.

Christopher Mellon, a former Deputy Assistant Secretary of Defense, wrote a lengthy rebuttal, concluding, “this is the most error-ridden and unsatisfactory government report I can recall reading during or after decades of government service.”

And major political figures, including Republican Presidential candidate Donald Trump, Senator Marco Rubio, Senator Kirsten Gillibrand, and both Democrats and Republicans in Congress, have vouched for the credibility of UAP witnesses and whistleblowers.

“I’ve interviewed solid people,” said former president Donald Trump in September, “great pilots for the US Air Force, et cetera, they’ve seen things that they cannot explain.”

Trump has said repeatedly that the government has information about UAPs that it has not released. In 2020, during a podcast with his son, Donald Trump, Jr., Trump said, “I won’t talk to you about what I know about it, but it’s very interesting.”

In June of this year, Trump said that the government has information about UAPs that it has not released. “I have access,” he said, “and I speak to people about it. I’ve had actually meetings on it. And they will tell you there’s something going on.”

In 2021, former CIA Director John Brennan said, “I think some of the phenomena we may be seeing continue to be unexplained and might be some type of phenomenon that results from something that we don’t yet understand and could involve some type of activity that some might say constitutes a different form of life.”

The same year, the current Director of National Intelligence, Avril Haines, said UAPs could constitute non-human intelligence (NHI).

In 2023, a high-ranking former intelligence officer named David Grusch testified to Congress that the US government had retrieved spacecraft of nonhuman origin and bodies, which US government insiders told Public was accurate.

In July 2022, the Intelligence Community Inspector General concluded that Grusch’s complaint that “elements” of the IC had withheld or hidden UAP-related information from Congress “to purposely and intentionally thwart legitimate Congressional oversight of the UAP Program” was both “credible” and “urgent.”

At the time, Charles McCullough III, the first Inspector General of the Intelligence Community, who the US Senate had confirmed for his job in 2011, represented Grusch.

That does not mean that extraterrestrial beings occupy or are operating the UAPs, nor that the US government and military contractors are hiding crashed alien spacecraft or bodies, as some former astronauts, former IC officers, and former military leaders claim.

There are other explanations for UAPs. Current dominant alternative theories, including those put forward by AARO, are that UAPs are some kind of natural phenomenon we don’t yet understand, like ball lighting or plasma. They could also be part of some new US or foreign government weapons program, such as drones, aircraft, balloons, CGI hoaxes, or birds.

Elon Musk thinks UFO sightings are probably experimental U.S. miltech. Let’s hope so.

Other UAP skeptics say that some combination of government disinformation and social contagion, like the Satanic panic of the 1980s or the Salem witch trials, among UAP believers in the US military are driving the phenomenon.

Is it possible that the Pentagon and CIA are still playing disinformation games with the American people to cover up unacknowledged programs? Or that intelligence and security agencies, as well as politicians, are creating a UAP hoax to frighten the public? And is it possible that whistleblowers are fabricating parts or all of their testimony?

The US Air Force allegedly used disinformation against a UFO buff in the past to cover up a weapons program. Something similar could be happening today.

However, no available evidence supports that theory. And so, while this possibility should not be ignored, for it to be true, it would require a complicated conspiracy with unclear motivations.

As Senator Rubio noted last year, “Most of [the UAP whistleblowers] have held very high clearances and high positions within our government. So, you do ask yourself: What incentive would so many people with that kind of qualification – these are serious people – have to come forward and make something up?”

Rubio also said that individuals in “high clearances and high positions within our government” with “firsthand knowledge” of UAPs were “fearful of harm coming to them.”

Grusch and other UAP whistleblowers say the government retaliated against them and tried to stop them from going public.

Snip.

Existing and former US government officials have told members of Congress that AARO and the Pentagon have broken the law by not revealing a significant body of information about UAPs, including military intelligence databases that have evidence of their existence as physical craft.

One of these individuals is a current or former US government official acting as a UAP whistleblower. The person has written a report that says “the Executive Branch has been managing UAP/NHI issues without Congressional knowledge, oversight, or authorization for some time, quite possibly decades.”

Furthermore, these individuals have revealed the name of an active and highly secretive DOD “Unacknowledged Special Access Program,” or USAP. The source of the document told Public that the USAP is a “strategic intelligence program” that is part of the US military’s family of long-standing, highly-sensitive programs dealing with various aspects of the UAP ‘problem.’”

(Hat tip: Director Blue.)

Supposedly the name of this secret UFO program is Immaculate Constellation.

All this adds up to something that congress should probably look into…but far short of actual proof that extraterrestrial vehicles are visiting earth. Just because a “whistleblower” says something doesn’t make it true.

Extraordinary claims still require extraordinary evidence…


*Do I actually have a 10 foot pole? Actually I have a 16′ extending pole (similar to this one, though with a different brand name), which I’ve found useful for things like knocking dead branches out of a tree, or getting a Frisbee off a neighbor’s roof. Back when Dwight worked in an office, he used to borrow it to use as a Festavus pole…

Sexbots? In My Cloud Stack? It’s More Likely Than You Think

Monday, October 7th, 2024

I’ve long been amazed at the hyperparasitism of the hacker exploit ecosystem, where hackers penetrate systems not to steal credit card numbers, but just to steal the resources to run bot farms. And now hackers are stealing cloud resources to run AI sexbots.

Organizations that get relieved of credentials to their cloud environments can quickly find themselves part of a disturbing new trend: Cybercriminals using stolen cloud credentials to operate and resell sexualized AI-powered chat services. Researchers say these illicit chat bots, which use custom jailbreaks to bypass content filtering, often veer into darker role-playing scenarios, including child sexual exploitation and rape.

Researchers at security firm Permiso Security say attacks against generative artificial intelligence (AI) infrastructure like Bedrock from Amazon Web Services (AWS) have increased markedly over the last six months, particularly when someone in the organization accidentally exposes their cloud credentials or key online, such as in a code repository like GitHub.

You might wonder how a company could be so stupid as to include their cloud access credentials in their GitHub repository. Having worked for a long time in the cloud/SaaS space, I can tell you: It’s easier than you think. Developers probably included it so they could do rapid testing during the development cycle (and nobody wants to go through the pain of setting up another cryptokey through two-factor authentication every damn time they want to run a test), then overlooked changing it when they rolled to production. It’s the sort of thing dev should be looking for, but there are a lot of ways (personnel change, version rollback, etc.) something like that can slip through.

Investigating the abuse of AWS accounts for several organizations, Permiso found attackers had seized on stolen AWS credentials to interact with the large language models (LLMs) available on Bedrock. But they also soon discovered none of these AWS users had enabled full logging of LLM activity (by default, logs don’t include model prompts and outputs), and thus they lacked any visibility into what attackers were doing with that access.

So Permiso researchers decided to leak their own test AWS key on GitHub, while turning on logging so that they could see exactly what an attacker might ask for, and what the responses might be.

Within minutes, their bait key was scooped up and used in a service that offers AI-powered sex chats online.

Long gone are the days when boys were initiated into onanistic pursuits by the time-honored method of finding an old issue of Penthouse under a tree in the woods, but having to use AI chatbots when there’s a veritable ocean of pornography rolling around the Internet bespeaks of a lack of imagination in today’s large cohorts of lonely men.

“After reviewing the prompts and responses it became clear that the attacker was hosting an AI roleplaying service that leverages common jailbreak techniques to get the models to accept and respond with content that would normally be blocked,” Permiso researchers wrote in a report released today.

“Almost all of the roleplaying was of a sexual nature, with some of the content straying into darker topics such as child sexual abuse,” they continued. “Over the course of two days we saw over 75,000 successful model invocations, almost all of a sexual nature.”

Ian Ahl, senior vice president of threat research at Permiso, said attackers in possession of a working cloud account traditionally have used that access for run-of-the-mill financial cybercrime, such as cryptocurrency mining or spam. But over the past six months, Ahl said, Bedrock has emerged as one of the top targeted cloud services.

Stealing computer resources to run bots for cryptocurrency mining or spam is now evidentially one of those traditional criminal enterprises like running a numbers racket or selling swampland in Florida. Perhaps this strikes you with the same “get off my lawn” unease that I felt upon first reading the phrase “90s Music Nostalgia Tour.”

“Bad guy hosts a chat service, and subscribers pay them money,” Ahl said of the business model for commandeering Bedrock access to power sex chat bots. “They don’t want to pay for all the prompting that their subscribers are doing, so instead they hijack someone else’s infrastructure.”

Ahl said much of the AI-powered chat conversations initiated by the users of their honeypot AWS key were harmless roleplaying of sexual behavior.

“But a percentage of it is also geared toward very illegal stuff, like child sexual assault fantasies and rapes being played out,” Ahl said. “And these are typically things the large language models won’t be able to talk about.”

AWS’s Bedrock uses large language models from Anthropic, which incorporates a number of technical restrictions aimed at placing certain ethical guardrails on the use of their LLMs. But attackers can evade or “jailbreak” their way out of these restricted settings, usually by asking the AI to imagine itself in an elaborate hypothetical situation under which its normal restrictions might be relaxed or discarded altogether.

“A typical jailbreak will pose a very specific scenario, like you’re a writer who’s doing research for a book, and everyone involved is a consenting adult, even though they often end up chatting about nonconsensual things,” Ahl said.

In June 2024, security experts at Sysdig documented a new attack that leveraged stolen cloud credentials to target ten cloud-hosted LLMs. The attackers Sysdig wrote about gathered cloud credentials through a known security vulnerability, but the researchers also found the attackers sold LLM access to other cybercriminals while sticking the cloud account owner with an astronomical bill.

“Once initial access was obtained, they exfiltrated cloud credentials and gained access to the cloud environment, where they attempted to access local LLM models hosted by cloud providers: in this instance, a local Claude (v2/v3) LLM model from Anthropic was targeted,” Sysdig researchers wrote. “If undiscovered, this type of attack could result in over $46,000 of LLM consumption costs per day for the victim.”

Stolen credentials paid for with stolen credit cards running stolen AI access on stolen cloud platforms to run illegal sex chatbots. It’s a veritable ecology of cybercriminality…

LinkSwarm For September 27, 2024

Friday, September 27th, 2024

Democrats refuse to let rapists be deported, the apple doesn’t fall far from the Democratic assassin’s tree, Israel decapitates Hamas, more illegal alien voting schemes exposed, the boom falls on Eric Adams, Goines goes down, another Russian ammo dump goes boom, a commie sub sinks, Raptor 1 Cylon 0, and 50 Cent throws down some Diddy dirt for your amusement.

It’s the Friday LinkSwarm!

  • Man, Democrats sure love illegal alien rapists. “158 Democrats voted against a bill that would ensure ‘aliens who have been convicted of or who have committed sex offenses or domestic violence are inadmissible and deportable.’ The Violence Against Women by Illegal Aliens Act (H.R.7909) bill was introduced by Republican Representative Nancy Mace.”
  • No, they really, really do. “ICE Detains Illegal Migrant Accused Of Raping Pre-Teen In Nantucket…More Than A Month After He Walked On Bail.” “After being charged with one count of rape of a child with a 10-year age difference and two counts of indecent assault and battery on a child under 14, [Bryan Daniel Aldana-Arevalo] was allowed to ‘walk free on bail’ and immigration authorities were never called, according to a report from the New York Post.”
  • “Ryan Wesley Routh Wrote of ‘Failed’ Assassination Attempt in Letter to ‘World’ Months Ago; Offered $150,000 Bounty to ‘Complete the Job.’” Plus a refresher to the would-be assassin the media already seems to be trying to memory hole: “While Trump was golfing at his International Golf Club in West Palm Beach, Florida on September 15, a Secret Service agent spotted a rifle barrel with a scope sticking out of the fence and ‘engaged’ with the person, who was later identified as Routh, a Biden-Harris supporter and Democrat donor with an extensive criminal background.”
  • “Son of would-be Trump assassin arrested for child porn.” “Investigators say they discovered ‘hundreds’ of files with child pornography during a search of Oran Routh’s residence in Guilford County, North Carolina, on Saturday conducted ‘in connection with an investigation unrelated to child exploitation.’ The two charges he faces include receipt of child pornography and possession of child pornography.”
  • Former Border Official Accuses Biden-Harris Administration of Covering up Border Crisis. Retired San Diego Sector Chief Agent Aaron Heitke says the administration provided two flights a week to take illegal aliens from San Diego to Texas.”
  • The Biden Magic continues. “US Manufacturing PMI Plunges To 15-Month Lows; Prices Are Soaring Again.”
  • No wonder “Consumer Confidence Plunges Most In 3 Years As Labor Market Weakens Significantly.”
  • “How bloodthirsty Venezuelan gang Tren de Aragua used NYC migrant shelters to build a criminal empire: ‘Hiding in plain sight.’”

    In little more than a year, a once-obscure South American street gang has taken hold in the Big Apple, exploiting the migrant crisis to build a violent criminal enterprise from within the walls of city shelters.

    Tren de Aragua, a Venezuela-bred crew of thugs, now terrorize Gotham with gun-toting, moped-riding hoods, sell illegal guns under the very noses of private shelter security guards, and run sleazy prostitution rings in neighborhoods suddenly besieged by the marauding migrants.

    The gang, which also peddles a lethal fentanyl mix called Tussi or “pink cocaine,” has grown so fast that it has so far overwhelmed both average New Yorkers and the city’s elite police force.

    Given how many FBI arrests have been sprung on NYPD brass over the last few months, I’m not sure how well that “elite” appellation still applies.

    “Not every migrant is here to commit crimes, not every migrant is a gang member,” said NYPD Chief of Detectives Joseph Kenny. “But these TDA guys hide very well in plain sight in the migrant community.

    “We aren’t looking to grab the food delivery guy, but these guys go so far as to wear Uber Eats clothing, [use] the delivery bags while they’re out there committing their crimes,” the chief told The Post. “When we do arrest them, they are very eager to talk about the crime they have committed.

    “They are unwilling to talk about TDA itself.”

    The gang, whose name means “train from Aragua” (a state in north-central Venezuela) in Spanish, now runs citywide theft and robbery crews that have terrorized neighborhoods.

    In Jackson Heights, a stretch of Roosevelt Avenue dubbed the “Market of Sweethearts” has become a testament to TDA’s muscle and influence, with vendors peddling stolen items and an open-air red light district that has migrant hookers walking the streets day and night.

    Plus a feud between Tren de Aragua and rival illegal alien gang El Carro De Lost Caragijos 666, as well as a guide to gang tattoos. (Hat tip: TPPF.)

  • “Harris Honeymoon Fizzles Out As Trump Leads In Sun Belt Battlegrounds.”

    Former President Donald Trump has gained ground and is leading Vice President Kamala Harris in key Sun Belt states, according to a New York Times/Siena poll from Monday.

    Trump gained in Arizona and is now leading Harris by five points with the two candidates polling at 50% and 45% among likely voters respectively, according to the poll. At the same time, Trump has also held onto his lead over Harris in Georgia by four points and in North Carolina by two points. (RELATED: Experts Say Major Swing State Is Once Again ‘Pivotal’ To Trump’s Chances Of Retaking White House)

    While the Republican candidate is leading, a significant portion of likely voters across all three states are independents, according to the poll. On average, 31% of likely voters in the Sun Belt consider themselves Democrats, 33% identify as Republicans and 31% say they are independents.

  • But Democrats have a plan to steal the election in Arizona.

    The Heritage Foundation’s Oversight Project and the guerilla journalists at Muckraker have teamed up to unearth a little scheme down in Arizona — registering illegal aliens to vote. And shocker, I wonder which political party those new “voters” might be supporting? I’ll give you one guess, and I bet you’ll get it right.

    The illegals Muckraker interviewed said they were registered to vote at grocery stores, while others reported activists visiting their apartment complex and encouraging them to register to vote. Why does this matter? In 2020, fewer than 11,000 votes tipped Arizona’s electoral votes to Biden.

    Fast forward to today, and recent polling shows former President Donald Trump holding a narrow lead over Vice President Kamala Harris in Arizona, a critical swing state. With the race shaping up to be just as tight in 2024, the integrity of voter registration efforts takes on even greater significance — as does the lack of concern from the left.

    It gets worse. The Oversight Project tried to track these individuals on the voter rolls but came up empty-handed — they were nowhere to be found.

    This development comes just days after the Arizona Supreme Court unanimously ruled that nearly 98,000 people with unverified citizenship documents are still eligible to vote in state and local elections.

    (Hat tip: Stephen Green at Instapundit.)

  • Trump-Hating Colorado Secretary Of State Loses Another Election Integrity Battle.”

    Jena Griswold, Colorado’s rabidly leftist Secretary of State who will forever be known for her anti-democratic drive to knock former President Donald Trump off the ballot, has suffered another election law loss in federal court.

    The U.S. District Court for the Colorado District last week issued an order demanding the Democrat secretary of state release Electronic Registration Information Center (ERIC) reports suspected of containing dead registrants on the state’s voter rolls. The reports, according to a settlement, include individuals who may have died within the past three years.

    It’s another significant election integrity victory for the Public Interest Legal Foundation (PILF), and another stunning loss for election transparency-stifling Griswold and ERIC.

    “PILF has knocked down ERIC’s wall of secrecy in the voter list maintenance process,” J. Christian Adams, president of the election integrity watchdog organization, said in a press release. “States cannot use third parties to hide election records that the public has a right to see.”

    Griswold ultimately signed the stipulation after the court denied her original request to dismiss the case. Judge Philip Brimmer ordered the secretary of state’s office to disclose the requested 2021 ERIC Reports by Nov. 1. Brimmer did allow minimal redactions to the ERIC Report Key. With the agreement reached, the judge dismissed PILF’s claim that Griswold violated the National Voter Registration Act (NVRA) of 1993.

  • More on what’s actually going on in Springfield, OH. Including names and amounts for the NGOs involved. (Hat tip: BattleSwarm reader Malthus.)
  • The long awaited indictments of New York City Democratic Mayor Eric Adams finally comes down.

    New York City mayor Eric Adams engaged in a nearly decade-long conspiracy that included accepting bribes and illegal campaign contributions from foreign sources to benefit his political career, according to the federal indictment unsealed Thursday morning.

    Adams is accused of accepting free airline flights and staying in luxurious hotels on behalf of Turkish business and government officials who sought to influence him.

    He sought foreign money in part to benefit his 2021 mayoral campaign, according to the indictment. But some of the criminal conduct Adams is accused of dates as far back as 2015 when he was the Brooklyn borough president.

    Adams had been charged with five counts: conspiracy to commit wire fraud, federal program bribery, and to receive campaign contributions by foreign nationals; wire fraud; solicitation of a contribution by a foreign national in two instances; and bribery.

    He is the first sitting New York mayor to face criminal charges.

    The 57-page indictment accuses Adams of funneling illegal foreign money through U.S.-based straw donors, including at least two New York construction companies, to reap over $10 million in public-matching funds based on false certifications that his campaign complied with finance regulations. The funds provide “eligible candidates with public funds to match small-dollar contributions from New York City residents,” the charging document says.

    Adams also received free or discounted travel benefits on Turkey’s national airline from a Turkish official, who facilitated the funneling of the straw donations to Adams. These overseas trips included flights from New York to Turkey, India, France, Sri Lanka, China and Hungary from 2015 to 2019. These trips are valued at more than $100,000.

    Other luxurious benefits included “free rooms at opulent hotels, free meals at high-end restaurants, and free luxurious entertainment while in Turkey,” the indictment states.

    In January 2022, when Adams was inaugurated as mayor, Adams agreed to accept foreign contributions intended for his 2025 campaign while meeting with a Turkish entrepreneur whom the indictment dubs the “Promoter.”

    The Turkish government sought influence over Adams, in part, to get his help to open a new consulate building in the city before the country’s president visited in 2021, prosecutors say. The 36-story skyscraper would have failed a fire inspection at the time.

    Prosecutors say Turkish officials cashed in on their influence with Adams and he pressured the fire officials to open the building, which they did because they “were convinced that they would lose their jobs if they didn’t back down.”

    The question, of course, is how the boom fell on Adams, but Bill de Blasio’s wife “mishandled” hundreds of millions in homeless funds and never received an investigation…

  • “Ukraine Destroys ANOTHER Ammo Dump! In Kammenyi, Krasnodar Krai.” Here’s my quick, handy description of the different between an “oblast” and a “krai’: I have no frigging clue.
  • “House Foreign Affairs Committee Holds Secretary of State Antony Blinken in Contempt of Congress.”

    The House Foreign Affairs Committee narrowly voted 26–25 to recommend Antony Blinken be held in contempt of Congress following the diplomat’s failure to appear for Tuesday’s hearing.

    “Secretary Blinken’s refusal to comply with the Committee’s subpoena — despite months of notice and offers of accommodations — warrants contempt,” the resolution read.

    The Republican-led committee has long sought to host the secretary of state as it investigates the botched U.S. withdrawal from Afghanistan over three years ago that left 13 U.S. service members dead.

  • Russia likes to claim they have all the manpower in the world for Vlad’s big Ukraine Adventure, but they just formed a mechanized battalion from the crew of the Admiral Kuznetsov aircraft carrier.
  • China shows sub, sinks same.
  • Israel took out Hezbollah headquarters in Beirut. You would think Hezbollah honchos wouldn’t be hanging around their headquarters in the current conflict, but Israel reportedly took out five senior Hezbollah officials. Not sure if this is the strike or not, but it’s pretty shock-and-awe:

    (Hat tip: Stephen Green at Instapundit.)

  • Here’s what operations in Gaza look like today:

    The blue is Israel. The lack of counter-activity (which would be in red) suggests Israel may have already crushed Hamas in Gaza.

    Here’s a very long range look at Lebanon and northern Israel, showing that while Hezbollah is still launching a few rocket attacks at Israel, Israeli air power is bombing the absolute snot out of Hezbollah, not only with strikes in southern Lebanon, but even all the way up near the northern border in the Bekaa Valley.

    Israel is obviously able to hit targets in Lebanon with impunity.

    You feel sorry for Lebanese civilians caught in the crossfire, but pity is tempered by the fact that Hezbollah is part of the ruling March 8 coalition.

  • International law expert covers Operation Grim Beeper. “In the context of distinction, necessity, proportionality these principles of the laws of armed conflict being adhered to in an exemplary fashion.”
  • Bill to strip the tax-exempt status of terrorist supporting organizations (like the Council on American-Islamic Relations) moves forward in the house.
  • Pentagon to Send Additional U.S. Troops to Middle East as Regional Tensions Boil Over.” “The U.S. maintains about 2,500 troops in Iraq and 900 in Syria, primarily tasked with counterterrorism operations. U.S.-controlled military bases also exist in Turkey, Kuwait, Bahrain, Qatar, and the United Arab Emirates, with a total count of U.S. military personnel in the region numbering around 40,000, up from the 34,000 troops stationed in the Middle East before the October 7 massacre.” But wait! Kamala Harris said we had no troops in a war zone!
  • Reporting a Rape in the UK Is a Crime.”

    A woman from Warrington, Cheshire, has revealed how her attempt to report a sexual attack led to her own arrest while the perpetrator remained free to assault others for nearly two years.

    Helen Ingham, 48, recently waived her right to anonymity in order to share her harrowing experience with law enforcement after reporting an assault by Ahmed Fahmy, 45, a hotel manager whose reign of terror against women spanned more than 15 years.

    There, as here, the left doesn’t want foreign rapists deported…

  • Democrats chances to take the senate this year appear to be dim. Good.
  • How Facebook lets the U.S. government censor you.
  • U.S. House Passes ‘Kelly-Cruz Amendment’ to CHIPS Act, Sent to Biden’s Desk.

    The U.S. House of Representatives approved a bill on Monday aimed at streamlining permitting laws to facilitate the domestic construction of semiconductor factories.

    The bipartisan legislation passed by a vote of 257 to 125, with 49 members not voting, and now moves to the president’s desk for approval.

    The bill passed the Senate last year, and was passed in the House of Representatives this week as the “Kelly-Cruz substitute amendment.”

    Sens. Ted Cruz (R-TX) and Mark Kelly (D-AZ) submitted the amended text of their Senate bill in December 2023.

    When a bill passes as a “substitute amendment” in Congress, the original text is entirely replaced with new content. This new version of the bill, offered as an amendment, becomes the text that is voted on and passed.

    It aims to accelerate the construction of U.S. semiconductor facilities, as the Creating Helpful Incentives to Produce Semiconductors (CHIPS) and Science Act of 2022 has made over $50 billion available to promote domestic production and innovation.

    It will also streamline federal permitting by designating the Department of Commerce as the lead agency for National Environmental Policy Act (NEPA) reviews, exempting certain projects from NEPA, providing the Secretary of Commerce with greater authority to expedite reviews in coordination with state and local governments, and limiting court challenge timelines.

    Snip.

    Cruz supported one portion of the CHIPS Act but disagreed with another.

    Cruz explained in 2023 that the CHIPS Act consisted of two key parts: the Facilitating American-Built Semiconductors (FABS) Act, offering a tax credit to boost domestic semiconductor manufacturing investment, and the CHIPS Act itself, providing billions in direct subsidies to companies. While Cruz co-sponsored the FABS Act, he voted against the CHIPS Act due to his opposition to direct subsidies, favoring the more indirect incentive of the tax credit.

  • “Many companies have fired Gen Z workers just months after hiring them and several business owners said they are hesitant to bring on recent college graduates due to concerns about their work ethic, communication skills and readiness to do the job, according to a new survey. Six in 10 employers said they have already let go recent college graduates this year, while one in seven said they are inclined to refrain from hiring new graduates next year, according to a survey conducted by Intelligent.com.” Also: “Although they may have some theoretical knowledge from college, they often lack the practical, real-world experience and soft skills required to succeed in the work environment.” Also: “75% of companies reported that some or all of their recent college graduates were unsatisfactory.” There may be a bit of truth to this, but a lot of companies seem to be laying off and firing people of whatever age right now…
  • Rep. David Cook Chosen as House Reform Group’s Challenger to Speaker Dade Phelan.” “The unanimous selection occurred after state Rep. John Smithee (R-Amarillo) dropped out of the race when neither candidate could meet the threshold needed head-to-head five hours after the meeting first convened.”
  • Texas State Rifle Association’s Voter’s Guide. I think all of two Democrats managed to earn as high as a B…
  • Remember Gerald Goines, the ex-HPD cop whose lies led to a drug raid based on false information that killed two people? Finally, five years after first being charged, he was found guilty of felony murder. (Hat tip: Dwight.)
  • “Dear Fifth Circuit Judge David Ezra: Which part of Judge Willett’s majority opinion in the border buoy case was unclear to you? Reverse your opinion and drop your stay you feeble-minded git.” The last part is only implied… (Hat tip: Instapundit.)
  • Boise State University shuts down coffee shot on campus for being pro-police. Coffee shop owner sues and wins a $4 million settlement.
  • Bjorn Lomborg schools Bill Maher on environmental panic.
  • Seems like an Air Force F-22 Raptor shot down a UFO over Canada in 2023. This was during the Red Balloon Menace, but it sort of looks like a Cylon Raider from the BattleStar Galactica reboot.

    And now, with the thinnest of justifications:

  • How string theorists destroyed the careers of non-string theorists for 40 years. Plus: “Science is fine, it’s THE Science that needs to die.”
  • Has Zuckerbot been redpilled? Like Rubin and company, I’m quite skeptical.
  • Lacrosse is evidently really hard on the pecs.

  • Critical Drinker gives thumbs up on The Penguin. “Just the right balance between grounded realism and industrial gothic. It’s obviously still based on New York, but rundown, neglected, stricken by crime, corruption and decay. So basically just actual New York, then.”
  • 100 year old American sledgehammer survives 100 tons pressure in a hydraulic press with no significant changes. Modern Chinese sledgehammer starts deforming at 40 tons.
  • Via Not the Bee, here’s a pretty good Kamala Harris impression.

  • In a follow-up to yesterday’s Diddy story, 50 Cent’s timeline is fire.
  • “Democrats Warn That If Public Libraries Are Defunded Homeless People Will Have Nowhere To Watch Porn.”
  • “First Baptist Church Softball Team Defeats Chicago White Sox 7-2.”
  • I am in this picture, and I don’t like it: “After 20 Years, Man Makes Tearful, Difficult Decision To Change Wallets.”
  • I’ve never seen anyone as happy learning English as this young Japanese girl.
  • I’ve been unemployed for one year now, so feel free to hit the tip jar.





    Also, a hearty thanks to everyone who has already donated.

    A Few More Thoughts On Operation Grim Beeper

    Sunday, September 22nd, 2024

    A third but brief post on Israel’s exploding pager attack against Hezbollah. Several people have expressed incredulity that Israel would go to the trouble of setting up “their own factory” to manufacture the exploding pages against Hezbollah. I suspect people are envisioning something the size of a Foxconn iPhone line, but for smaller runs of less cutting-edge products, modern contract manufacturing can usually do things in much smaller footprints. Pagers are old 1980s tech, most probably use off-the-shelf commodity parts you can find anywhere, and I suspect Israel set up something much smaller.

    You don’t need a line of assembly workers, you need a pick-and-place machine to attach the surface-mount components to your circuit board. Pick-and-place machines are also old technology that have gone through many iterations, but you can literally run a circuit board a assembly line in your garage. Here’s a guy that uses a very old pick-and-place machine to make amusement park controllers using equipment in his own shed.

    Note that his boards are roughly the same size as a pager (probably slightly bigger). His is a low-tech approach that allows him to do all the steps himself and requires hand-soldering for some components. With a few more machines and a few more people, I suspect Israel could easily have run their exploding pager line out of a space of 1,000 square feet or less. Everything save the explosive batteries probably used commodity pager parts, and even the special command sequence to trigger the explosion was probably programmed into a commodity controller chip.

    Israel also has a modern, sophisticated electronics sector, so it’s possible they contract with one of their existing military electronics contractors to do a run, but I’m not sure anyone had an assembly line suitable for turning out old-tech pagers, as you wouldn’t want to alert Hezbollah agents with a circuit board that looked too modern.

    There were a lot of sophisticated aspects to Israel’s supply chain attack, especially how they used human intelligence to insinuate themselves into Hezbollah’s procurement system to be in a position to provide the pagers. And producing batteries that actually held explosives was not a trivial task. But setting up an assembly line for the pagers once they had done all the upfront espionage work to get in a position to provide them was probably among the least difficult aspects of the operation.

    Israel’s Supply Chain Hack: Manufactured, Not Altered

    Thursday, September 19th, 2024

    More information about Israel’s pager etc. attack against Hezbollah has come to light, and it appears Israel didn’t intercept and adulterate the supply chain, it was the supply chain.

    Israel has injured thousands across Lebanon, with hundreds in critical condition and dozens more dead, this week in two waves of simultaneous explosions of electronic communications equipment targeting Iranian-backed Hezbollah terrorists.

    The blasts — which may have killed 19 and wounded 150 of Iran’s Islamic Revolutionary Guard Corps (IRGC) members — started on Tuesday afternoon around 3:30 p.m. local time when pagers used by Hezbollah started beeping with a message from their leadership.

    After a few beeps, the pagers simultaneously exploded across the country, blinding hundreds, tearing off limbs, and leaving gaping holes in bodies.

    The messages that the devices received were not from Hezbollah leadership; they were from Israel’s intelligence and military apparatus, and they were part of a multi-year plan.

    There was initial confusion as to what happened when the explosions were reported. Various news reports said that malware had potentially been uploaded to the devices, causing the batteries to overheat and explode. Then reports surfaced claiming a small amount of highly explosive material had been placed into each device after Israel intercepted the devices after they were manufactured by a Taiwanese company.

    However, none of those reports were accurate, according to a New York Times report that revealed that Israel never intercepted the pagers — it made them.

    Hezbollah has forced tens of thousands of Israelis to evacuate their homes in northern Israel since October 7 as the terrorist group fires drones, rockets, and missiles on a regular basis — having fired many thousands in nearly 12 months.

    Israel has responded with precision strikes, killing more than 300 top Hezbollah commanders and numerous lower-level terrorists.

    Hezbollah Secretary General Hassan Nasrallah pushed for the terrorists to abandon their phones and switch to low-tech pagers to avoid being tracked by Israel. Nasrallah had bragged that his strategy would “blind” Israel.

    However, unbeknownst to Hezbollah, Israel had been secretly manufacturing the pagers that Hezbollah was buying for years.

    The Taiwanese company Gold Apollo had contracted with a company called B.A.C. Consulting in Hungary to manufacture the pagers. B.A.C. Consulting was one of three shell companies that Israel created to mask the true manufacturer of the communications equipment: Israeli intelligence.

    B.A.C. Consulting created real pagers for numerous customers to create the perception of a legitimate company in order to get picked up for the contract to produce the pagers for Hezbollah.

    The pagers manufactured for Hezbollah were separate from those made for other clients, the report said. The pagers that Hezbollah received “contained batteries laced with the explosive PETN” and began shipping in 2022, the report said.

    One of my objections to the “planted explosives” idea was that there was no way for explosives in the battery compartment to access the antenna circuitry to receive the detonation signal, but if Israel designed the pagers from the ground up to go boom then obviously that’s not a problem.

    After the first round of explosions on Tuesday, Israel struck again on Wednesday, detonating Hezbollah’s backup communications equipment: walkie-talkies.

    The explosions from the walkie-talkies were significantly larger than the explosions from the pagers because the devices were larger, meaning they could be packed with more explosive material. Videos posted online showed entire apartment units blown out and numerous cars engulfed in flames.

    My other objection was that Israel would be better off gathering intel from the pagers than making them go boom, but if they manufactured them, they probably have all the intel they need on locations of leadership, warehouses, weapons, etc. It looks like Israel was the one that blinded Hezbollah, not the reverse.

    It may also explain why Israel hasn’t assassinated Nasrallah yet: Because he’s evidently an idiot.

    There’s been much speculation that with Hezbollah’s communications so compromised, Israel will now move decisively against them. And indeed, right now Israel is pounding the snot out of locations in southern Lebanon.

    Plus Israeli F-15s are evidently flying over Beirut with evident impunity. (Lebanon couldn’t take down Israeli aircraft during the Lebanon War in 2006 either, mainly because they’re using old Soviet crap.)

    A lot of MSM commentators have shrieked over and over again during the Israel-Hamas War that Israel was in trouble because they would face a two-front war when Hezbollah really got involved. That didn’t happen. Instead, Israel settled Hamas’ hash in Gaza (where it’s now mopping up), then hit a whole lot of militant factions on the West Bank (an under-reported story), all the while withstanding pinprick strikes from the Mullahs and their proxies while carrying out varied strikes in Syria and Iran.

    Having accomplished all that, Israel seems to be moving decisively against Hezbollah. Now Israel is poised to enter a two-front war, but only on its own terms, not Hezbollah’s. It’s almost like Israel had its own Schlieffen Plan to defeat each of its enemies in turn before turning to the next, only competently executed. But with Hezbollah so disorganized, it may not even feel the need to launch a ground incursion into Lebanon.

    The end result of the war Hamas’ terrorist atrocity started will be that Israel will be stronger and its borders more secure, all Israel’s terrorist enemies will be destroyed or weaker, and Iran will be shown, yet again, as a very weak horse using incompetent proxies.

    Now, as a bonus, here’s a Habitual Linecrosser video on the subject.

    Edited to add: “Hezbollah Starting To Think They Shouldn’t Have Gotten Pagers From Levi Goldbraumstein’s Pager Emporium.”

    The Hezbollah Pager Attack: How?

    Wednesday, September 18th, 2024

    By now I’m sure you’ve heard about the epic, ingenious pager attack that Israel carried out against Hezbollah:

    At least nine people were killed and about 2,750 people were injured in Lebanon on Tuesday during the mass explosion of pagers belonging to members of Hezbollah, according to the country’s health ministry.

    A Hezbollah official described the event as the “biggest security breach” the group has suffered since the start of the Israel-Gaza war nearly one year ago, according to a Reuters report. The Shiite terror group claimed that lithium batteries inside the pagers apparently detonated.

    Some members allegedly felt the pagers “heating up” before abandoning them, according to an unnamed Hezbollah official speaking to the Wall Street Journal. Hezbollah officials have speculated that Israeli malware could be behind the infiltration.

    Sky News Arabia, however, quoted sources insisting that Mossad, Israel’s primary intelligence agency, physically planted explosive materials inside the pagers before they were delivered to Lebanon.

    According to the Times of Israel, Hezbollah Secretary-General Hassan Nasrallah turned to pagers after he directed members to stop using cell phones in February, fearing they could be tracked by Israeli intelligence. A Lebanese security source claimed the devices were imported five months ago, according to Al Jazeera.

    Seven individuals were similarly killed in Syria around Damascus, according to Iran’s IRGC-affiliated Saberin News. This signals a coordinated effort to reach the group in multiple locations across different countries.

    Everyone and their dog has posted this story, so I wasn’t going to note it outside the LinkSwarm, except I think some commenters are making erroneous assumptions about how the attack was carried out. I see three possibilities:

    1. The Sky News Arabia suggestion (also floated in this Washington Post article) that the attack was carried out via a supply chain attack planting explosive in each pager, seems clever and has a certain surface plausibility. But I think it very unlikely, mainly because, if you already have that level of access to their communication network hardware, planting explosives is probably the least rewarding attack you could carry out. No, the real play for a supply chain attack is to compromise the security of the devices themselves so you can use Hezbollah’s own devices to spy on their entire communications network. That’s a whole lot more valuable than a handful of deaths and a larger number of maimings. I also find the idea that they intercepted the batteries and loaded them with Pentaerythritol tetranitrate (PETN) even less likely. Just how would these batteries receive the detonate signal if they’re not directly in the circuit to access the antenna to receive the signal?
    2. My guess is that Israel discovered the type of battery and charging firmware Hezbollah’s pagers used, and used a remote exploit to trigger overcharging in the batteries. This also aligns with reports that several Hezbollah terrorists felt the pager getting hot before they exploded. That isn’t the way explosives work, but it is the way Lithium Ion batteries respond to overcharging. Further supporting this hypothesis is that Israel’s previous Stuxnet worm targeting Iran’s nuclear program used a broadly similar attack (a combination software/firmware exploit that caused physical destruction of the targeted system). Such attacks are by no means easy, but dozens of broadly similar hardware hacking exploits are revealed at DEFCON every year.
    3. A third theory I’ve seen proposed by various commenters: Israel was able to explode the pagers because Hezbollah equipped all of them with explosives from the git-go, either to use as improvised explosives or for data security if captured. The first is unlikely because we all know Hezbollah has access to a wide range of explosives to build bombs and IEDs with, and it doesn’t make sense to use something as small as a pager for any significant target. The second strikes me as deeply unlikely from a cost/benefit analysis.

    (If someone can think of another theory than those three, let me know in the comments below.)

    The heady onrush of the technological revolution has allowed non-state actors like Hezbollah to punch well above their weight by using commercial off-the-shelf technology to strike vulnerable targets (civilians and infrastructure) of larger state actors like Israel. But the downside of not controlling your own supply chain is that a technologically sophisticated state actor like Israel has the knowledge and resources to hack your consumer-grade equipment.

    I just read that Hezbollah radios are now exploding as well, so I’m going to go ahead and post this before Israel manages to remote detonate still more of Hezbollah’s tech.

    Hezbollah, of course, is talking about launching a full-scale war against Israel. Given the destruction of their communication networks, one wonders how long it will take them to learn semaphore to coordinate attacks…

    Ukraine Rolls Out More Drone Innovations

    Wednesday, September 4th, 2024

    I wasn’t planning on doing another Ukraine drone piece so soon after my Martian war machine post, but these new Ukrainian ground drones are pretty interesting.

    The video covers three new remote platforms:

  • “The Termite, or termit, which stands for Track Modular Infantry Transporter, has a 300kg payload. It can carry a single casualty, or be sent with a controller so a casualty can self steer him or herself, and a more seriously injured colleague away from danger. Its modular design means it can also deliver military kit and carry offensive weapons. With a 20-hour power pack, it has front and rear cameras and night vision.”
  • Next: The Shablya combat platform, which is a remote control turret. “Its 7.62mm machine gun can destroy enemy armored vehicles and UAVS.” UAVS, sure, but it would have to be a very lightly armored vehicle for 7.62 to penetrate. “Easily hidden, it can also be attached to the Termite. It can be controlled from a shelter or via Wi-Fi, and it can store targets and reposition at the push of a button. It needs three boxes of 200 rounds but the barrel needs changing every 600.” The form factor is pretty striking, looking like something out of a video game. Or maybe a Vektor CR-21. And indeed, automatic versions of turrets like this have been a staple of various video games for some time.
  • Last is the Lyut or Fury, a four-wheeled remote-operated 7.62mm machine gun platform.
  • All these are interesting bits of kit that are probably well-suited to the Ukrainian battlefield, but all probably superfluous to, say, U.S. military needs. The Termite is probably 1/50th the cost (or less) than the army’s robotic mule, but its slow speed means it’s probably unsuited for evacuating wounded troops or near-front logistics resupply for an army as focused on maneuver warfare as the U.S., and unlike the robotic mule is probably unsuited to rough terrain. U.S. forces would probably use helicopters or any number of IFVs for those roles. Likewise, I don’t see much of a role for the wheeled gun platform for much the same reasons (though from time to time you read about Uncle Sam testing broadly similar remote vehicles for roles like remote demolition).

    I can see more uses for the remote turrets as an area-denial weapon for certain situations, such setting up a dozen or so around bivouac perimeters with one guy monitoring the video feed. Knowing America’s modern weapon procurement trends, they would probably try to include an autonomous mode, which would do great right up until it fragged friendly troops or some kid tending sheep…

    LinkSwarm For August 23, 2024

    Friday, August 23rd, 2024

    Both unemployment and inflation numbers in the Biden Recession are lies, the DNC finishes up as bad as everyone thought it would be, why supporting Russia’s illegal war of territorial aggression in Ukraine is not a conservative position, Canada goes on strike, crappy modern art prices collapse, and Disney ships The Acolyte to a farm in the country where it can run around all day.

    It’s the Friday LinkSwarm!

  • Biden’s Labor Department admits that it overcounted new jobs created by 818,000.

    For the past few days, rumors and reports have indicated that the U.S. Bureau of Labor Statistics was going to downwardly revise their assessment of the number of jobs created from April 2023 to March 2024 “by up to 1 million. This means that all ‘beats’ recorded in the past year will have been misses and the US job market is in far worse shape than the admin[istration] would admit.”

    The revision is out, and while it’s not quite a million, it’s still really darn high — 818,000 fewer jobs were created in that yearlong period than were initially reported.

    In a normal presidential campaign, where the nominee and her running mate did interviews and press conferences, this would be a major headache. Luckily, Kamala Harris and her campaign have more or less unilaterally decided she doesn’t have to do them anymore, and figures like Michael Steele, Rick Wilson, and Leslie Gray Streeter have concurred that presidential candidates answering questions in interviews are an unneeded relic of a bygone era. The candidate will tell us all we need to know or deserve to know in her stump speech.

    The president and his team want to communicate the story of successful economic management. The vice president running for her own term doesn’t have the luxury of insisting the economy is doing gangbusters and that inflation is defeated when so many Americans, looking at empty storefronts and office spaces, are concluding otherwise.

  • The other half of the Misery index, inflation, is up higher than the official rate as well:

    (Hat tip: ZeroHedge.)

  • This is going to have a lot of Democrats going to Brown Alert: “Robert F. Kennedy Jr. Suspends Presidential Campaign, Endorses Trump.”

    Robert F. Kennedy Jr. “suspended” his presidential campaign Friday afternoon, explaining that he would remain on the ballot in many states to give his supporters a protest-vote option but that he would remove his name from the ballot in battleground states, where his presence might help Kamala Harris, the candidate he views as the most significant threat to his populist political project.

    Kennedy launched his quixotic run for America’s highest office after boosting his national profile during the Covid pandemic. Already a prominent vaccine skeptic and a scion of America’s most famous political dynasty, Kennedy emerged as a leader of the populist backlash against pandemic lockdowns and vaccine mandates, writing a bestselling book, The Real Anthony Fauci, which cast the face of the federal government’s Covid response as a power-hungry bureaucrat intent on using health emergencies as a pretext to control the public.

    After making a splash through his appearances in independent media and building a following among well-heeled Silicon Valley donors, Kennedy abandoned his effort to get on the Democratic primary ballot, accusing the party of sabotaging him. Having failed to gain traction as an independent candidate and with his campaign coffers near empty, Kennedy finally announced the suspension of his campaign in an upbeat speech from Phoenix, Arizona, in which he argued that he and his supporters succeeded in shaking up America’s political establishment.

    “We proved them wrong,” Kennedy said of the those who doubted his ability to mount a campaign as an independent. “We did it because, beneath the radar of mainstream media organs, we inspired a massive political movement.”

    Kennedy went on to attack Democrats for “disenfranchising American voters” by swapping in Kamala Harris for Joe Biden at the top of the ticket, casting the party he called home for decades as a corrupt cabal of elites who carefully stage manage the political process through their influence over the media.

    “The mainstream media was once the guardian of the First Amendment and democratic principles, and it’s joined this systemic attack on democracy,” Kennedy said. “The media justifies their censorship on the grounds of combatting misinformation, but governments and oppressors don’t censor lies, they don’t fear lies, they fear the truth and that’s what they censor.”

  • The DNC just finished up and it was “a parade of horribles“:

    The DNC was a parade of horribles, displaying every form of sin, debauchery, and malign political philosophy invented by mankind—all in one room. We’ve spent the last four days being hectored by screeching harridans who demand that we reject the values that made the United States the greatest country in history and replace them with a feminist nightmare.

    • We learned that a Harris-Walz administration would put abortion on demand, for any and every reason, at the top of its priority list because, in the Democrats’ view, we are not killing enough babies in this country. They’re going to squeeze every dead baby they can out of their four years in office if they make it to the White House.
    • We also learned that they’re going to drag us into more wars and conflicts and encourage more terror attacks with their flaccid foreign policy—as they hobnob with All the Right Globalists in Davos.
    • We’ll be looking at Soviet-style price controls, unbridled socialism, and more regulations on businesses.
    • Kamala and Co. believe that the economy is just humming along, choosing to ignore runaway inflation, rampant joblessness, and the inability of many people to purchase homes, so they’ll double down on the Biden-Harris economic policies.
    • They’ll destroy children and families by encouraging mental illnesses like transgenderism, using the schools as a vehicle to spread their destructive lies about gender.
    • And speaking of schools, never forget that Kamala wants to bring back school busing in the name of equity while destroying school choice, which actually results in equity by putting educational decisions in parents’ hands. In June 2019, busing was discussed in a Democratic debate when Harris was still in the race. Afterward, her campaign confirmed that she “supported busing as a method for school integration.” And God only knows what they’ll do to homeschooling if they win in November.
    • And, of course, the border will remain wide open, with rapists, child traffickers, fentanyl pushers, and drug cartels at liberty to walk into the United States almost unimpeded.
    • Pro-lifers and peaceful protesters will continue to be locked up while violent felons roam free under a Harris-Walz administration.

    (Hat tip: Stephen Green at Instapundit.)

  • Man who says he went with Tim Walz to China says he’s Maoist to the core.

    A man who says he joined Tim Walz on a trip to communist China is speaking out about his experience of traveling to the country with the future vice-presidential candidate.

    “It was almost a daily revelation of how much he adores the communist regime,” the former student told Alpha News.

    For over a decade, Tim Walz traveled to and from China. First arriving in the country in 1989, Walz taught at a high school in partnership with a nonprofit program affiliated with Harvard University. During this first trip, Walz was visiting Hong Kong when the Tiananmen Square protests began in April. Those protests ended in June when the communist government massacred protestors on June 3-4, 1989.

    After the massacre, Walz later took a train to Beijing to visit the square, according to the New York Times.

    Upon returning to the United States after that first trip, Walz told local newspapers how much he enjoyed his time in China. On June 4, 1994, Walz married Gwen Whipple on the fifth anniversary of the Tiananmen Square massacre. Gwen told a local newspaper that Walz “wanted to have a date he’ll always remember,” the Wall Street Journal reported. The couple spent their honeymoon in China, according to local reports from the time.
    The Star Herald/Newspapers.com

    After this first trip to China, Walz founded a company that took students on summer trips to China. Walz said in a 2016 interview that he has traveled to China “about 30 times” as a teacher and member of Congress. The New York Post recently reported that Walz was a visiting fellow at a state-run university in China as recently as 2007.

    Now, a former student who says he joined Walz on a 1995 trip to China is speaking to Alpha News about the experience. That student, Shad, asked that we not use his last name.

    For several weeks, Walz and his group of students explored China together in the summer of 1995, Shad said. They saw Tiananmen Square, walked along the Great Wall of China, and traversed the country. However, the former student says he was struck by Walz’s adoration for China and its communist ideology.

    “There was no doubt he was a true believer,” Shad said. “I’ve been trying to tell people this for 30 years. Nobody wanted to listen.

    “At night, we’d go out, we’d walk the street fairs. We’d be buying souvenirs and Tim was always buying the little red book. He said he gave them as gifts … I saw him buy at least a dozen on the trip,” he said.

    (Hat tip: Ed Driscoll at Instapundit.)

  • Democrats admit what Republicans have known all along: they want to amnesty all the illegal aliens they’ve let in the country.
  • “Congressional Democrats in tight reelection bids skip Harris, party’s nominating convention.”

    Several congressional Democrats facing tight reelection bids, particularly those in tossup or GOP-leaning states or House districts, are skipping the party’s nominating convention in Chicago this week.

    Montana Sen. Jon Tester has not yet endorsed Vice President and Democratic nominee Kamala Harris, and he was the red state’s only delegate to withhold a vote backing Harris, according to Montana Public Radio.

    Instead of attending the Democratic National Convention, Tester will hold a fundraiser, farm and campaign for his reelection, according to the Montana Free Press.

    Nevada Sen. Jacky Rosen told The New York Times that she would be campaigning for her reelection this week and needed to be close to her home state.

    Tester, Brown and Rosen are three of the six Senate Democrats most vulnerable to losing reelection, according the the news outlet Roll Call.

    Rep. Jared Golden, D-Maine, declined to join the virtual vote to nominate Harris, the Bangor Daily News reported. He also wouldn’t say who he’s voting for in November.

    Sen. Sherrod Brown, D-Ohio, told CNN he rarely attends conventions, but he has attended each convention during his time in Congress, according to The Hill newspaper.

    New Mexico Sen. Martin Heinrich told Scripps News he has commitments that conflict with the convention.

    Plus Rep Yadira Caraveo (D-CO), Rep. Val Hoyle (D-OR), Rep. Mary Peltola (D-AK), and Rep. Marie Gluesenkamp Perez (D-WA) also skipped the convention.

  • Don Lemon asks random about the 2024 election and finds out a lot are supporting Trump.

  • Van Jones admits that anti-Jewish bigotry is “marbled” into the Democratic Party.
  • So just where is ActBlue getting all their money?

    Paging Dr. Adrienne Young, M.D.

    The good doctor is listed online as an “internist” in McKees Rocks, a borough in western Pennsylvania’s Allegheny County, known locally as “the Rocks.”

    Campaign finance filings report Young’s practice is located on Heckel Road in McKees and list a 412 area code phone number. But her office does not appear to exist at this address and the number is not in service. Moreover, none of the receptionists attached to doctors’ offices located in close proximity to Young’s office address in McKees have ever heard of her. That’s peculiar in and of itself. But a search of campaign finance records only adds to the intrigue.

    Someone identified as Adrienne Young has been making substantial contributions to a left-of-center political action committee known as ActBlue, according to Federal Election Commission records.

    ActBlue was founded in 2009 to help Democratic Party candidates and allied “progressive” groups raise funds through a multiheaded hydra serving as a conduit for left-wing donors, with two more arms—ActBlue Charities and ActBlue Civics—funneling money to 501(c)(3) and (c)(4) clients, respectively.

    Restoration News is still attempting to contact the individual listed in campaign finance documents as Adrienne Young. Records list her residing on Leet Road in Sewickley, Pennsylvania. These records show that since 2017, Young has made 17,342 in contributions to ActBlue totaling $209,670.06—which averages seven contributions per day.

    However, there is no one named Adrienne Young residing at that or any other Leet Road address. Moreover, there is no one named Adrienne Young who could be described as a “mega-donor” in the same vein as say a George Soros, the source of the Open Society Foundations’ billions, or former New York City Mayor Michael Bloomberg. Moreover, mega-donors do not typically make multiple transactions over an extended period of time, but instead make lump sum donations.

    To add to the confusion, one online search for Young does suggest she has more than 44 years of experience in the medical field and graduated from the University of Miami Miller School of Medicine in 1979. It raises a key question: Such a credentialed person should not be so difficult to find. If she’s out there, Young could be the victim of identity theft. If she’s not, then she might be a fictitious person used to pump funds into ActBlue.

    “Smurfing” involves repackaging large sums of money into smaller, individual transactions to appear less suspicious and avoid scrutiny from law enforcement officials. Is “Adrienne Young” a cover for such an operation, benefiting Democrats?

    While it is indisputably the case that ActBlue is ringing the bell with hundreds of thousands of dollars in contributions, it’s not evident the smaller contributions that translate over time into larger sums are coming from an individual donor.

    One of the more recent contributions to ActBlue leading back to the donor identified as Young came on March 16, 2023, in the amount of $1196.50. That’s not an unusual amount for an individual, but what is unusual is folding that amount into more than 17,000 contributions made over the span of several years. The donor identified as Young was actively contributing to ActBlue at least through part of this year with a donation of $429.00 made on April 30, 2024. If a smurfing operation is underway, it may not be limited to what’s flowing into ActBlue.

    There were also 991 donations made in Young’s name totaling $26,481 to the Democratic Congressional Campaign Committee, 904 donations totaling $22,881.72 to the Democratic Senate Campaign Committee, and $16,190.56 to the Progressive Turnout Project, a left-of-center PAC based in Chicago.

    Once again, multiple small donations add up to large donations over time. Young is listed, for example, as making a $869 donation to the Democratic Congressional Campaign Committee on May 12, 2019, $1,776 to the Democratic Senate Campaign Committee on May 23, 2024, and $800.00 to the Progressive Turnout Project on April 12, 2024. Apparently, Young has been an active donor, at least up until a few months ago.

    Allegations involving multiple donations to ActBlue that might possibly involve identify and credit card theft have caught the attention of Virginia Attorney General Jason Miyares who is conducting his own investigation. The attorney general has sent a letter to ActBlue that is available on X. For its part, ActBlue has pushed back against Miyares in a statement describing the Republican attorney general’s actions as a partisan exercise.

    How expansive smurfing might be across the country isn’t certain. But the common denominator in these questionable transactions—ActBlue—certainly is.

    Restoration News has identified another potential fictional donor, Wendy Urbanowicz, residing in Vancouver, Washington. Campaign finance records show that since 2020 she has made 28,659 donations to ActBlue totaling $260,196—averaging 17 contributions per day.

    Urbanowicz supposedly made another 720 donations totaling $12,099 to the Democratic Congressional Committee; 609 donations totaling $12,365 to the Democratic Senate Campaign Committee; and 259 donations totaling $11,421 to Sen. Mark Kelly, D-Ariz.

    But an online search for Urbanowicz is every bit as fruitless as a search for Adrienne Young. She’s listed in FEC filings as a 73-year-old residing in Vancouver, Washington, with a 360 area code phone number. Once again, there is no record of Urbanowicz in Vancouver and the number is not active.

    It’s always possible someone is deceased or moved away. But some of the contributions listed by the FEC for Urbanowicz are as recent as May 2024. Just to cite a few examples, a donation from Urbanowicz in the amount of $2,955 was made on March 22 and a $193 donation was made on May 12.

    Not all of the FEC records pop up in an online search. This one, for instance, for ActBlue produces an error message.

    But Urbanowicz and Young are both listed as donors to the far-left PAC EMILY’s List, which backs Democrats. In these filings, Urbanowicz is listed at a P.O. Box in Vancouver with the ZIP code 98668. We’re still attempting to track down Urbanowicz, but early indications are that no one with her name resides in Vancouver or nearby.

    (Hat tip: Director Blue.)

  • Chicago is living down to its reputation. “Texas Delegate Robbed at Gunpoint Near Democratic Convention in Downtown Chicago.”

    A member of the Texas Democratic delegation, who arrived in Chicago for the Democratic National Convention this week, was robbed at gunpoint while walking with a friend in the city early Wednesday morning.

    The delegate’s name is unknown at this time, CWBChicago reported. The outlet said it is “not identifying him by name because he is a crime victim.” No one is in custody and detectives are still investigating the crime, the Chicago Police Department confirmed in a statement obtained by National Review.

    The victim and his friend were walking near Allegro Royal Sonesta Hotel Chicago when a gunman in a ski mask pulled up in a black Range Rover and robbed them around 2 a.m. The robber stole a 25-year-old man’s wallet and hotel-room key in the same vicinity before turning his attention to the delegate and his associate. No injuries were reported in either incident.

    The prime suspects are described as two black men wearing all black clothing and ski masks. They are still believed to be at large.

    The Chicago police issued an alert warning the community about the robbers Thursday morning, saying they were linked to another robbery around the same time that the delegate and the two other victims were mugged. The pair are also responsible for two more robberies early Tuesday and Monday morning.

    Sounds like the sorts of career criminals that Democrats go out of their way to make sure remains on the streets to victimize people…

  • “D.C. Councilman Known for Antisemitic Conspiracy Theory Arrested on Bribery Charge.”

    Washington, D.C., councilman Trayon White (D.) was arrested Sunday on a bribery charge, the United States Attorney for the District of Columbia announced, over allegations that he agreed to take cash payments in exchange for pressuring government employees to extend public-safety contracts with two firms.

    White, who chairs the D.C. Council’s Committee on Recreation, Libraries, and Youth Affairs and oversees the D.C. Department of Youth Rehabilitation Services, allegedly sought a sum of $156,000 — three percent of total contract value — for his work. In its press release, the office of U.S. Attorney for the District of Columbia Matthew Graves noted that White’s alleged corruption was caught on film.

    “According to the complaint, White’s agreement with a confidential human source (the owner of the companies) — including the source’s payments to White of $35,000 in cash on four separate occasions (June 26, July 17, July 25, and August 9, 2024_ and the source showing White a document reflecting how White’s three-percent cut was calculated based on those contracts — was captured on video,” the release reads.

    Graves wrote in a statement that the time-sensitive nature of the case led his office to act quickly.

    “Because the investigation into the alleged bribery scheme involved contracts that could soon be awarded and other potential official acts that could be taken, our Office took swift steps to address the alleged crimes we were investigating,” Graves said.

    White is perhaps best known for a 2018 video he published in which he accused Jewish financiers of controlling the weather.

    “Man, it just started snowing out of nowhere this morning, man,” White said. “Y’all better pay attention to this climate control, man, this climate manipulation. And D.C. keep talking about ‘we a resilient city.’ And that’s a model based off the Rothschilds controlling the climate to create natural disasters they can pay for to own the cities, man. Be careful.”

  • Another day, another potential assassination attempt against Trump.
  • Here’s a good essay on why conservatives should be on Ukraine’s side in the Russo-Ukrainian War.

    It’s time to talk to some of the bizarrely non-conservative conservatives, who for unfathomable reasons are fans of Putin’s Russia. We call these people “Brosheviks.”

    The simple background is that Kiev is far older than Moscow, and various groups controlled both territories. Ukraine was independent as a nation, then captured by the USSR. The USSR spent seventy plus years abusing and starving Ukraine to the tune of more than 30 million people. After the USSR collapsed it became independent, and the poorest country in Europe, looted and raped by its occupiers.

    Ukraine had a lot of corruption because it was a former Soviet state. They all do. It has far less corruption than Russia. Remember the Clinton Foundation washing $650 mil through Russia? And Uranium deals? Etc? That’s just the stuff we know about large scale.
    ~~
    The USSR, though, and now Russia has the greatest propaganda organ the world has ever seen. Witness:

    Literally every Russian military development—tank, aircraft, everything, led to wails of, “Oooh! The Russians have got us this time! ZOMG! State of the art! We’ll be catching up for generations! Panic! Gloom, despair, and agony on me!”

    Then we’d capture or acquire one and it would be shit tier garbage. Every fucking time. The MiG25: Shit that couldn’t dogfight or maneuver and had no loiter time. The T72: Shit armor, shit fire control, overall shit. The T90: Such shit a Bradley can take it out with 25mm. The vaunted AK47: If you’ve ever shot one you understand it’s a weapon for illiterate peasants and yes, jams like you wouldn’t believe if you haven’t handled one. That long stroke gas piston loves corrosion, debris, and mud and turns into an unergonomic club.

    The USSR persuaded the Western world, especially the left, that they were some sort of victims, not a larger, less-effective murder machine as the Nazis, but still a mass murder machine with a higher body count. Hanging a Swastika banner will get you excoriated (and should), but hang up the Hammer and Sickle, and well, we have to be tolerant of divergent viewpoints.

    We really fucking don’t. Commies are just as much subhuman shit as the Nazis. But that propaganda.

    Snip.

    “Ukraine has corruption! Vlad is saving us from the New World Order!”

    Name a single nation we’ve ever assisted in war that wasn’t corrupt. Including our own.

    Also, if you’ve paid attention the last decade (you obviously haven’t paid attention the last decade), Ukraine was in the process of flushing the corrupt leaders, most of whom were…friends of Vladimir Sputum.
    ~~
    “Ukraine has Nazis!”

    Probably a few. So does the US. So does Russia, since the head of Wagner Group, named after Hitler’s favorite composer, LITERALLY HAS SS INSIGNIA TATTOOED ON HIS CHEST, COLLARS AND SHOULDERS. Are you that fucking gullible and retarded? Apparently.

    Also, the POWs from the alleged Nazi Azov Battalion were exchanged for Russian POWs, no issue. So no (alleged) Nazis were actually stopped or tried.

    Also, those “Nazis” are taking orders from a Jewish comedian. Vlad explains this as “They’re a special kind of Nazi that isn’t necessarily anti-semitic, but still Nazis.” So, National Socialists…like yourself, Vlad?

    Snip.

    “Russia warned Ukraine not to join NATO! They can’t be aggressive like that.”

    Ukraine has not joined NATO, and your ex doesn’t get to tell you who to date.
    ~~
    “Russia is rightfully afraid of NATO aggression!”

    THIS Cold War bullshit again? Are you liberal, or retarded?
    ~~
    “Why won’t anyone stand with Russia against the New World Order? Vlad is a hero!”

    Such a hero his allies are Lil Kim in North Korea, and the Assahola in Iran. That’s who you’re supporting here, dipshit.
    ~~
    “You’re going to find out that Ukraine is carefully making it look like they’re winning! There’s this huge push in March/April 2023/2024 that’s going to end it. After Ukraine is worn out fighting Russian garbage, the A-team is going to wreck them!”

    It’s been 2.5 years. The Russian Airborne died the first day. The vaunted Spaznutz met Ukrainian reservists and got slaughtered like the shit tier, third world, all-show-and-no-dick bitches they actually are. It’s getting worse. Russians have been seen on scooters (the step on kind that populate cities like cockroaches) and Chinese golf carts. They’re losing T54s on a recurring basis, having run out of modern (1960s) tanks. It’s become a joke at this point.

    Snip.

    FACT: Russia invaded Ukraine because it wanted to seize territory it’s not entitled to, and is getting its incompetent shit tier military ass kicked by a third world nation. Even if they “win” a few counties of utter wasteland that are wrecked more than No Man’s Land in WWI, they’ve lost their credibility and military footprint for decades to come.

    Now stop being their propaganda bitch.

    Much more at the link. (Hat tip: Sarah Hoyt at Instapundit.)

  • Ukraine hit the only ferry working across the Kerch strait when it was loaded with fuel tanks.
  • Ukraine also hit Marinovka airbase in Volgograd, some 500km from the front lines, with drones using ball bearing warheads like on HIMARS tungsten rounds, hitting number of hangers and destroying at least three Su-34 and one Su-24 aircraft.
  • “Texas Children’s Whistleblower Fired After Alleging Child Gender Modification Medicaid Fraud.”

    Texas Children’s Hospital (TCH) has fired a whistleblower following allegations that it was “unlawfully billing the state Medicaid program” for the purposes of child gender modification.

    The whistleblower, Vanessa Sivadge, provided a statement to the Manhattan Institute’s Christopher Rufo with details about how she was fired after revealing the “sex-change procedures ongoing at the hospital, but also the fraud and deception related to the illegal billing practices to Medicaid in having these procedures covered by taxpayers.”

    Sivadge stated that after her initial story went public, TCH put her “on leave.” She was then fired on Friday, August 16.

    Prior to Sivadge blowing the whistle, she stated that she submitted a religious accommodation request to transfer to another department. She said her role in the endocrinology clinic “was devastating” because her role as a nurse “primarily involved providing medication refills and working with physicians to answer questions from parents about treatment plans.”

    Sivadge added that she “would like to challenge this in court” and asked for donations for her legal defense.

    “No regrets,” wrote Sivadge on social media.

    Her story first became public back in June, following a previous TCH whistleblower, Eithan Haim, alleging that TCH had continued to provide “gender-affirming care” to minor children even after stating that it would stop doing so.

    Following Sivadge talking with Rufo, the Federal Bureau of Investigation (FBI) sent agents to her home to “intimidate and threaten her,” in Rufo’s words.

    Haim has been visited by agents of the U.S. Department of Justice (DOJ) and has been indicted on four felony counts of violating the Health Insurance Portability and Accountability Act, or HIPAA.

  • Harris County’s Lina Hidalgo still hasn’t given up on her socialist guaranteed income program, despite the Texas Supreme Court ruling it unconstitutional.

    The Harris County Commissioners Court voted along partisan lines last week to revive a guaranteed basic income (GBI) program for select residents with more restrictions and higher costs, although a previous version was halted by state courts earlier this year.

    Under the original version of the program, named Uplift Harris, the county planned to send “no-strings-attached” $500 monthly stipends to 1,928 recipients for 18 months, but Texas Attorney General Ken Paxton filed suit challenging the constitutionality of the program last April. Earlier this year, the Supreme Court of Texas (SCOTX) halted the plan indefinitely.

    Now Harris County Judge Lina Hidalgo says the revised program, Uplift Harris 2.0, will provide preloaded cards with restrictions on how the funds may be spent.

    “That’s not the spirit of a guaranteed income program,” said Hidalgo. “If the state gets in the way of this and the program becomes stuck in court again then the funds will be reallocated to programs that already exist to support people living in poverty.”

    Hidalgo did not specify the restrictions on how recipients could spend funds but said the debit cards could be used for “medicine, groceries, et cetera.” The county has not yet published details of the revised GBI.

    Commissioners will cover the costs of Uplift Harris with nearly $21 million in federal American Rescue Plan Act funds, of which $17,350,000 will be distributed to selected residents and $1 million will fund a study of the program’s effectiveness.

    Administrative costs charged by nonprofit GiveDirectly were originally $1,740,500, but under the revised GBI will rise another $400,000.

    All the better to rake off more social justice graft…

  • Both Canadian freight rail networks are hit by strikes.

  • If someone contacts you claiming to be a U.S. Marshall, but claims you need to pay your failure to appear fine in cash, then it’s a scam.

  • “Russian businesses are locked out of billions as payment issues reportedly pile up abroad.” The sanctions are leaky, but not entirely useless.
  • Why Japanese software lags so far behind western software.
  • The Baltics switch over to European electrical standards.
  • There can be only one.
  • Google to Invest $1 Billion in Texas Data, Cloud Center Infrastructure. Google plans to make another billion-dollar investment in Texas to support data center infrastructure.” I have no respect for woke Google, but better they spend money in Texas rather than California.
  • “Warner Bros Discovery pledges $8.5 billion on Nevada Studios pending tax credit approval.” Moving production out of California makes a lot of sense, though $8.5 billion is a lot of money for a company with a market cap of $19.5 billion.
  • Follow-up: Disney backtracks on forced arbitration for wrongful death lawsuit.
  • Critical Drinker watches the new Snow White trailer. “As for the dwarfs, [these] things are absolute nightmare fuel.” And it’s amusing to see Rachel Zegler go from calling the original “dated” to calling it “beloved” is an amusing turnabout.
  • And speaking of the Drinker, he gets to dance on The Acolyte grave.

    In life you reap what you sow, and if what you sow happens to be a $180 million vanity project made by a feminist activist promoted way beyond her abilities with practically no experience, only a vague understanding of the subject matter, and even less talent for actual storytelling, starring a blank-faced charisma-vacuum with all the acting talent of a comatose Steven Seagal, and incorporating some of the most cringe-inducing scenes ever committed to film, then, well, what you reap will be a big old dose of cancel.

    More: “Man, it’s got to be a bitter pill for Kathleen Kennedy to swallow. [The Acolyte] represented her ultimate vision for Star Wars: Female focused, female led, and female directed. And, funnily enough, it was rejected by absolutely everyone.” And: “The cold, harsh truth is that the mythical ‘modern audience’ that Lucasfilm have been chasing for 10 years now simply doesn’t exist, never has existed, and never will exist.”

  • Just a bit more on The Acolyte from How it Should have Ended:

  • This just in: Crappy modern art is now bringing in 1/10th of what it was. Still outperforming NFTs, though…
  • John Richardson of the No Lawyers – Only Guns And Money blog is running for the NRA Board of Directors. Since he has done such and admirable job of covering every twist and turn of the organization’s dysfunction during the terminal years of the LaPierre regime, I can only imagine that he’ll be an excellent addition to the board.
  • Rotten Tomatoes drops the audience score to hide how much viewers actually hate woke films. Sounds like they just made their site entirely useless.
  • Kotaku social justice warrior Alyssa Mercante threatens to sue the Internet. I’m sure that will work out well for her…
  • Jeremy Clarkson bans Labour PM Keir Starmer from Clarkson’s newly opened pub.
  • Hoovie spent more than three times as much renovating his farmhouse as I spent on my entire house in 2004.
  • Woman runs over her boyfriend on the way the couples therapy.
  • The vicious claw shrimp strikes again. (Hat tip: Dwight.)
  • I am proud to announced that I am the Grand Prize winner in this year’s Bulwer-Lytton contest.

  • “Kamala Harris Unveils New Economic Platform ‘We Must Seize The Means Of Production And Execute The Bourgeoisie.'”
  • David French Founds New Group ‘Evangelicals For Satan.'”
  • I’ve featured a dog bus video before, but not this particular one:

  • Still between jobs, so hit the tip jar if you’re so inclined.





    Latest Microsoft Patch Fixes TEN Zero Day Exploits

    Wednesday, August 21st, 2024

    “Patch Tuesday” is when Microsoft (and other software companies) regularly release patches for their software on the second Tuesday of a month. A “zero day exploit” is a serious, previously undisclosed security flaw in a shipping piece of software. Not every Patch Tuesday includes a zero day fix, and sometimes the release only fixes one or two.

    The latest Microsoft Patch Tuesday fix, released last Tuesday, fixes ten zero day vulnerabilities, six of which were already being exploited in the wild.

    Attackers are actively exploiting as many as six of the 90 vulnerabilities that Microsoft disclosed in its security update for August, making them a top priority for administrators this Patch Tuesday.

    Another four CVEs in Microsoft’s update were publicly known before the Aug. 13 disclosure, which also make them zero-days of a sort, even though attackers have not yet begun exploiting them. Among them, an elevation of privilege (EoP) bug in Windows Update Stack, tracked as CVE-2024-38202, is particularly troubling because Microsoft does not yet have a patch for it.

    The unpatched flaw allows an attacker with “basic user privileges to reintroduce previously mitigated vulnerabilities or circumvent some features of Virtualization Based Security (VBS),” according to Microsoft. The company has assessed the bug as being only of moderate severity because an attacker would need to trick an administrator or user with delegated permissions into performing a system restore.

    However, Scott Caveza, staff research engineer at Tenable, says that if an attacker were to chain CVE-2024-38202 with CVE-2024-21302 (an EoP flaw in the current update that affects Windows Secure Kernel), they would be able to roll back software updates without the need for any interaction with a privileged user. “CVE-2024-38202 does require ‘additional interaction by a privileged user,’ according to Microsoft,” he says. “However, the chaining of CVE-2024-21302 allows an attacker to downgrade or roll back software versions without the need for interaction from a victim with elevated privileges.”

    Caveza says each vulnerability can be exploited separately, but when combined, they could potentially have a more significant impact.

    In all, seven of the bugs that Microsoft disclosed this week are rated as critical. The company rated 79 CVEs — including the zero-days that attackers are actively exploiting — as “Important,” or of medium severity, because they involve some level of user interaction or other requirement for an attacker to exploit. “While this isn’t the biggest release, it is unusual to see so many bugs listed as public or under active attack in a single release,” said Dustin Childs, head of threat awareness at Trend Micro’s Zero Day Initiative (ZDI), in a blog post.

    This is, to use a technical term, “bad.”

    I’m not an expert in Windows security, but ten zero day exploits sounds like a new record.

    And just who is exploiting this vulnerability in the wild? Well, in one case, North Korea.

    A Windows zero-day vulnerability recently patched by Microsoft was exploited by hackers working on behalf of the North Korean government so they could install custom malware that’s exceptionally stealthy and advanced, researchers reported Monday.

    Getting pwned by North Korea is like getting arrested for knocking over a liquor store because you posted a picture of yourself in front of the store holding up the stolen cash on Facebook.

    The vulnerability, tracked as CVE-2024-38193, was one of six zero-days—meaning vulnerabilities known or actively exploited before the vendor has a patch—fixed in Microsoft’s monthly update release last Tuesday. Microsoft said the vulnerability—in a class known as a “use after free”—was located in AFD.sys, the binary file for what’s known as the ancillary function driver and the kernel entry point for the Winsock API. Microsoft warned that the zero-day could be exploited to give attackers system privileges, the maximum system rights available in Windows and a required status for executing untrusted code.

    Microsoft warned at the time that the vulnerability was being actively exploited but provided no details about who was behind the attacks or what their ultimate objective was. On Monday, researchers with Gen—the security firm that discovered the attacks and reported them privately to Microsoft—said the threat actors were part of Lazarus, the name researchers use to track a hacking outfit backed by the North Korean government.

    “The vulnerability allowed attackers to bypass normal security restrictions and access sensitive system areas that most users and administrators can’t reach,” Gen researchers reported. “This type of attack is both sophisticated and resourceful, potentially costing several hundred thousand dollars on the black market. This is concerning because it targets individuals in sensitive fields, such as those working in cryptocurrency engineering or aerospace to get access to their employer’s networks and steal cryptocurrencies to fund attackers’ operations.”

    Monday’s blog post said that Lazarus was using the exploit to install FudModule, a sophisticated piece of malware discovered and analyzed in 2022 by researchers from two separate security firms: AhnLab and ESET. Named after the FudModule.dll file that once was present in its export table, FudModule is a type of malware known as a rootkit. It stood out for its ability to operate robustly in the deep in the innermost recess of Windows, a realm that wasn’t widely understood then or now. That capability allowed FudModule to disable monitoring by both internal and external security defenses.

    Rootkits are pieces of malware that have the ability to hide their files, processes, and other inner workings from the operating system itself and, at the same time, control the deepest levels of the operating system. To work, rootkits must first gain system privileges and go on to directly interact with the kernel, the area of an operating system reserved for the most sensitive functions. The FudModule variants discovered by AhnLabs and ESET were installed using a technique called “bring your own vulnerable driver,” which involves installing a legitimate driver with known vulnerabilities to gain access to the kernel.

    Earlier this year, researchers from security firm Avast spotted a newer FudModule variant that bypassed key Windows defenses such as Endpoint Detection and Response, and Protected Process Light. Microsoft took six months after Avast privately reported the vulnerability to fix it, a delay that allowed Lazarus to continue exploiting it.

    Whereas Lazarus used “bring your own vulnerable driver” to install earlier versions of FudModule, group members installed the variant discovered by Avast by exploiting a bug in appid.sys, a driver enabling the Windows AppLocker service, which comes preinstalled in Windows. Avast researchers said at the time the Windows vulnerability exploited in those attacks represented a holy grail for hackers because it was baked directly into the OS rather than having to be installed from third-party sources.

    As I’ve noted before, Internet security is hard. Neither Mac nor Linux are entirely free of such exploits, but they seem to be a lot less frequent. Log4J wasn’t a Linux kernel exploit, but everyone (rightly) freaked out over it because Log4j was used everywhere and it let attackers install malicious code on your server.

    Microsoft patching ten zero day exploits suggests that there’s a big problem up in Redmond. You would think the zero day vulnerability numbers would be going down, not up. I wonder if we might be seeing that start of widespread AI use to find vulnerabilities in software.

    California As Saudi Arabia

    Tuesday, August 20th, 2024

    On Joe Rogan, Peter Thiel has an interesting answer to conservatives wondering why California hasn’t collapsed already: California is essentially Saudi Arabia.

  • Joe Rogan: “California just jacked their taxes up to 14[% at the highest marginal rate], what was it, 14.4[%]?”
  • Peter Thiel: Something like that, yeah. 14.3[%] I think.”
  • JR: “You want more money for doing a terrible job, and having more people leave for the first time ever.”
  • PT: “But it gets away with it.”
  • JR: “I know! People are forced with no choice. What are you going to do?”
  • PT: “There are people at the margins who leave, but the state government still collects more and more in revenues. You get 10% more revenues and 5% of the people leave you still increase the amount of revenues you’re getting. It’s inelastic enough that you’re actually able to increase the revenues.”
  • PT: “This is sort of the the crazy thing about California. There’s always sort of a right-wing or libertarian critique of California that it’s such a ridiculous place, it should just collapse under its own ridiculousness and it doesn’t quite happen.”
  • PT: “The macroeconomics in it are are pretty good. 40 million people, the GDP is around 4 trillion. It’s about the same as Germany with 80 million, or Japan with 125 million. Japan has three times the population of California same GDP means one-third the per capita GDP, so there’s some level on which California as a whole is working, even though it doesn’t work from a governance point of view.”
  • PT: “The rough model I have for how to think of California is that it’s kind of like Saudi Arabia. They have a crazy religion, wokeism in California, Wahhabism in Saudi Arabia. You know not that many people believe it, but it it distorts everything.”
  • PT: “Then you have like oil fields in Saudi Arabia and you have the big tech companies in California, and the oil pays for everything.”
  • PT: “Then you have a completely bloated, inefficient government sector, and you have sort of all sorts of distortions in the real estate market where people also make lots of money, and sort of the government and real estate are ways you redistribute the oil wealth. And that’s the big tech money in California.”
  • PT: “It’s not the way you might want to design a system from scratch, but it’s pretty stable. People have been saying Saudi Arabia is ridiculous, it’s going to collapse any year now. They’ve been saying that for 40 or 50 years. But you know, if you have a giant oil field you can pay for a lot of ridiculousness.”
  • PT: “I think that’s the way you have to think of California. There’s things about it that are ridiculous, but there’s something about it. It doesn’t naturally self-destruct overnight.”
  • JR: “There’s a lot of people that are still generating enormous amounts of wealth there, and it’s too difficult to just pack up and leave.”
  • PT: “I think it’s something like four of the eight or nine companies with market capitalizations over a trillion dollars are based in California: Google, Apple, now Nvidia, Meta…I think Broadcom is close to that.”
  • Thiel also points out the great weather, and notes that there’s no large enough city in a zero income tax state tempting enough (at least for him) to move to. Austin he dismisses because “Austin’s a government town and a college town and a wannabe hipster San Francisco town, so in my books, three and you’re kind of out.”
  • Of course, the big difference between Apple, Nvidia, etc., and Saudi Aramco, is that all those tech companies could still move to another state, as Elon Musk proved by moving much of Tesla and SpaceX to Texas. But that oil isn’t going anywhere until the Saudis (or the western companies they hire) pump it out.

    Also, under Crown Prince Mohammed bin Salman, the Saudis have sidelined the Wahhabist clerics, so that the state religion is moving (if slowly) in a more modern direction.

    Alas, since the pact between Muhammad bin Saud and Muhammad bin Abdul Wahhab dates back to about 1745, this metaphor suggests that wokeism still has a quarter millennium to run.

    Let’s hope that the poisoned cult of social justice has a much shorter stretch until its richly deserved demise.