Showing posts with label Crime. Show all posts
Showing posts with label Crime. Show all posts

Tuesday, September 15, 2026

We Already Have the Tools to Regulate AI

I want to delve into the full scope of the Anthropic AI takeover of politics happening over the past week. Yesterday, the company’s CEO Dario Amodei came out and explicitly asked for antitrust laws not to apply to the biggest AI firms. His biggest rival, Sam Altman, quickly agreed. And they are suggesting this legal change just before Anthropic seeks to sell shares on the stock exchange, minting a whole series of AI millionaires and billionaires.. [...]

Let me start with a very simple point. It is already illegal to release products that hurt people. It is illegal to compete by releasing products that hurt people. If these guys are genuinely manufacturing things that kill innocent people, the FBI should be arresting them immediately. The idea that they would not only release such products, but also issue stock for the American people to invest in multi-trillion dollar initial public offerings for such ventures, as Anthropic is planning, is utter lunacy. ~ Matt Stoller: Just Stop the Anthropic IPO Already.

------

These are for profit corporations taking in billions of dollars from the world. You can't ensure your product isn't dangerous? Then don't release it until you figure it out! ~ Comments section, Lina Khan post (below):
------

Law enforcers already have authority to charge companies and their CEOs for creating and releasing dangerous, unvetted, or defective products. We shouldn’t let discussions about new legal regimes distract from the fact that there’s no AI exemption from laws already on the books — a point @FTC emphasized repeatedly during my tenure.

1. There is an extensive set of laws that govern dangerous and defective products. For example, releasing unvetted AI models or agents can violate consumer protection laws. Shipping flawed AI tools without implementing adequate measures to detect and stop rogue or defective AI agents can be an “unfair or deceptive” act or practice under the FTC Act (and analogous state laws). And some state AGs are already exploring holding AI firms and their CEOs criminally liable when their models participate in criminal activity. 

2. Existing laws also prohibit “unfair methods of competition.” This covers instances where AI firms appropriate the competitively sensitive information of their customers, including through tracking their use of various tools. It can also cover instances where firms pursue dangerous behavior, aware that doing so may compel rivals to do the same. As the Supreme Court has noted: “A method of competition which casts upon one's competitors the burden of the loss of business unless they will descend to a practice which they are under a powerful moral compulsion not to adopt, even though it is not criminal, was thought to involve the kind of unfairness at which the [unfair methods of competition] statute was aimed." 

3. The highly concentrated and interconnected structure of these markets could be creating major risks and conflicts of interest. We had started investigating these partnerships and cross-investments across the stack (and released a preliminarily overview of some findings: ftc.gov/news-events/ne…). Both federal and state enforcers should be scrutinizing these opaque relationships and inter-dependencies. We are already seeing how these relationships could undermine accountability. For example, OpenAI could face liability given the Hugging Face incident, but Hugging Face being bought up by Nvidia means that we’re unlikely to see it file a lawsuit over this — given Nvidia’s strong incentive to see OpenAI continue full speed ahead. 

4. As AI tools dramatically change the landscape of cybersecurity risks and hacks, all businesses should be doubling down on having core security protections in place. Firms that fail to invest in adequate data security measures or fix known vulnerabilities can also be breaking the law. A recent analysis showed that around 1/3 of Fortune 100 companies do not even have a way to notify them about security issues. During my @FTC tenure, we sued firms for poor data security practices and held CEOs liable when they were personally responsible.

5. As policymakers consider new legal regimes, we should be looking to lessons from prior efforts to govern major sectors, such as banking and other networks, platforms, and utilities. Tools like structural separations, nondiscrimination, and supervision could be key, and there’s a rich history of what works and what doesn’t. But we can and must pursue any new efforts alongside enforcing existing laws.

by Lina Khan, Former Chair, Federal Trade Commission 2021-2025 |  Read more:

--------

1) AI will not eradicate humanity. Humans survived an ice age, the Black Death, two world wars, and (so far) the advent of nuclear weapons. Anyone who is loudly warning of AI-caused human extinction should not be taken seriously. 

2) If you worked in a company where you anticipated a 10% chance that your product would kill ten people, let alone all people, the correct response would be horror, ceasing all operations, and likely contacting the police or other criminal authorities. I am obviously no Coxon booster but at least his behavior is in line with his stated beliefs. Any current AI company employees saying "yes, me too, the thing we are building and about to IPO may kill all humans" should, again, not be taken seriously. Their actions betray their actual beliefs. 

3) Antitrust law does not prevent AI companies from coordinating to make sure AI does not hurt people. It does not prevent companies working together to make sure it doesn't hack people; the DOJ and FTC made this clear a decade ago when they issued a policy statement saying that the agencies "do not believe that antitrust is – or should be – a roadblock to legitimate cybersecurity information sharing." The same principles apply here. See: justice.gov/archives/opa/p… 

4) Antitrust law does absolutely prevent AI companies from organizing to prevent the entry of cheaper, upstart rivals because the bigger companies are burning cash and failing to achieve sufficient profitability. The panic of individual employees may be sincere if misguided, but the moves by their CEOs to achieve some kind of broad "antitrust waiver" or "exemption" should be meet with deep skepticism in light of the economics of the industry and the threat they face from open models.

by Alvaro Bedoya, Former Commissioner Federal Trade Commission 2022-2025 | Read more:

--------

“It’s a hoax,” Mr. Trump said during the five-minute call, which Mr. Huang put on speaker. “The robots are not going to be taking over the world. That’s not going to happen.” ....

Mr. Trump made it clear that in Silicon Valley’s roiling debate over what to do about A.I., the president is very much on the side of executives who argue worries about safety are overblown and the government should avoid regulation. His disinterest in government involvement runs counter to pleas from leading A.I. companies like Anthropic.
~ Idiot in Chief (via NYT).

See also: Trump Says a Smart President Is All That’s Needed to Rein In A.I. [ed. Certainly useful, if we had one.]

Monday, September 14, 2026

Did 9/11 Really Change Everything?

One of the best firsthand accounts of the Sept. 11 attacks I’ve read is a short essay titled “Diary of Disaster” by Nicholas Spangler, at the time a 25-year-old journalism-school student and today a reporter for Newsday on Long Island. Spangler happened to be downtown that morning, close enough to the World Trade Center to arrive on the scene between the first and second planes. Like many early recollections of the first hours at ground zero, written before memories had been corrected to fit the dimensions of history, his is as strange as it is horrifying.

He hears the bodies of the north tower’s jumpers hitting the pavement, and also the easy-listening music still drifting out of the building’s outdoor speakers. Under a tree newly stripped of its leaves lies a severed leg wrapped in burlap. Barely an hour after the second tower’s collapse, onlookers enlist Spangler to take a souvenir photo of them posing in front of the wreckage with a disposable camera. It’s the end of the world, or at least of a world, and people have not yet figured out how they are supposed to act.

Days later, trying to make sense of what he has seen, Spangler writes: “I believe that our present way of life ended in those minutes or hours. The American ethos — the way we see the world and our place in it — fractured and will perhaps have to be discarded.”

When he revisits that passage three months later, however, it feels wrong to him. “Our way of life did not end so much as it was interrupted,” he writes, “and if there is such a thing as an American ethos, it has not been significantly altered. There are those relative few whose lives bear the permanent bloody brand of that day but most of us continue to be shaped by much more banal events.”

Did 9/11 change everything? For years, people who agreed on nothing else about the attacks’ aftermath would have agreed that the answer was yes. Arguing otherwise would have been an affront to the victims, to the war on terror’s civilian and military casualties and to the common sense of anyone who has had to take off their shoes at airport security. But question and answer alike have always been colored by the assumption that 9/11 was supposed to change everything: that in being attacked as it was, the United States was being presented with a test that it could pass or fail.

A quarter-century on, it is possible to consider the question with at least some critical distance. Far too much of our current reality stems directly from 9/11 for anyone to argue credibly that it was not a hinge point in our recent history: the ubiquity of surveillance technology, the vague open-endedness that all American military operations now acquire, the general up-armoring of everyday life. At the same time, considering the most dystopian facets of this reality, 9/11’s influence is not as singular as it might have once seemed. It is a middle chapter in the story of American fracture rather than the pyrotechnic beginning. [...]

Of course, in the end, the United States got neither self-awareness nor self-actualization. What it got, a decade and a half later, was Donald Trump, whose election in 2016 has often been cast as a culmination of what the journalist Spencer Ackerman, in his 2021 book “Reign of Terror,” describes as the “decadent phase of the war on terror.”

Trump’s path from reality-TV celebrity to the presidency ran through the Islamophobic fever swamps of the post-9/11 right — the ground zero mosque panic, Obama birth-certificate conspiracism — but also through an increasingly bipartisan discontent with the war on terror that had, by 2016, curdled into cynicism. Trump was the first Republican presidential nominee to break the formidable taboo against affirming what most Americans by then believed, that the country’s post-9/11 military adventurism had been a mistake. He also did little to seriously curtail it in his first presidency and has enthusiastically expanded it in his second.

It has long been tempting to view Trump’s presidencies as the logical conclusion of the folly of the post-9/11 era, and as support for the liberal contention that the right’s calls for patriotism in that era were always really about seizing domestic power. But Trump has also enabled a re-examination of history, and even recent history, that complicates the tale of 9/11’s primacy. [...]

Trump’s 2016 election “represented the crystallization of elements that were still inchoate” in the early 1990s, John Ganz writes in “When the Clock Broke,” his recent history of the period’s underappreciated malaise. In retrospect, 9/11 was paradoxically both a respite from and accelerant of polarizations and pathologies that were already well underway by then. It allowed Americans to ignore them for a moment, until they came roaring back with redoubled force. [...] [ed. So, explain Obama.]

If you do not remember the Berlin Wall but had an adolescence shaped by social media and cellphones, the brightest dividing lines in recent history are technological — and, with the rapid acceleration of artificial intelligence, are becoming more so. This is clear in the borrowed nostalgias of Gen Z, the bits of the past that 20-somethings have recently pressed into service as emblems of a lost golden era: “Friends,” John F. Kennedy Jr. and Carolyn Bessette Kennedy, ’90s high-school-class home videos, music videos and concert footage from bands like Alien Ant Farm and Puddle of Mudd.

These artifacts span the pre- and post-9/11 years, and the lost innocence they represent has nothing to do with the attacks. Their interest comes from their evocation of a period when people hung out with friends in person and sweated alongside strangers at clubs and music festivals; teenagers goofed un-self-consciously for cameras rather than posing for them like jaded celebrities; and popular culture could be loud and dumb and not picked apart in the digital panopticon for its social politics. The shape that looms ominously over them isn’t the Twin Towers. It’s the iPhone. [ed. lol...ok.]

by Charles Homans, NY Times |  Read more:
Image: Chantal Jahchan
[ed. Nice words, but no. C'mon. 9-11 was our last opportunity to cohere as a country, and we whiffed it. Instead we got a war on terror, as stupid and amorphous as any initiative based on a feeling (War on Anxiety?). A Patriot Act that gave subsequent crimes a never-ending veneer of political cover. 'Homeland' security, a Nazi term repurposed for new times. Two stupid reactionary wars (neither won) that among other things validated torture as official US state policy. Guantanamo Bay. A newly militarized culture. An expanded surveillance state. And fear... fear everywhere of some 'other' where strength and self-assurance used to be.]

Saturday, September 12, 2026

Jacob Coxon Warns of Human Extinction and Triggers a Preference Cascade

CEOs of major AI labs, and employees of major AI labs, including OpenAI and Anthropic, often say they plan to build superintelligence soon, as in within a few years create AIs that are superior to humans at essentially all cognitive tasks.

They often warn that such AIs might kill everyone. Or that AIs might cause mass unemployment, cause cyberattacks across the internet, enable mass surveillance or risk causing any number of other highly bad things.

These warnings are consistently and directly against the interests of the labs. Yet the warnings have recently gotten a lot louder and more frequent. OpenAI has been practically screaming, for those with ears to listen, on many occasions.

A series of events, over two months and especially the last week or so, including internal observations of the pace of progress at OpenAI and also Anthropic, have freaked out everyone involved quite a lot more than they were already freaked out.

After all the events, plus statements by Dean Ball and Jakub Pachocki, we were seeing the beginnings of a preference cascade.

Then along came Jacob Coxon as the tipping point, and things took off.  [...]

Jacob Coxon Resigns From Anthropic In Protest And Sounds The Alarm 

Jacob Coxon spent the last three years doing pretraining research at both OpenAI and Anthropic. He has come to realize that everyone involved is being wildly irresponsible.

He warns us: They are racing straight to superintelligence and gambling with our lives. I agree with and strongly endorse his statement.

If anything he sounds like an optimist. He’s asking you to consider what the next few years will actually feel like, which means he thinks you have a few years left.
Jacob Coxon (former Anthropic and OpenAI, 160m+ views, September 8): I resigned from Anthropic today. I spent the last three years doing pretraining research at both OpenAI and Anthropic. Neither company is acting responsibly. They are racing straight to self-improving superintelligence and gambling with our lives. More thoughts below.

Do not underestimate the power of this technology. These will soon be superhuman systems that can hack anything, revolutionize any field overnight, and acquire real power and resources. We have all witnessed the progress in each of these domains, and progress is not slowing.

The people building AI earnestly believe that it could kill us all by the end of the decade. This is not a marketing stunt. If anything, many executives and senior researchers will couch their phrasing in the press to sound sensible - but I hear the same people express fear privately. No other human activity poses this level of danger.

A common response is “if they truly believe this, why are they still building it?” At OpenAI, many have not deeply internalized the civilizational stakes. At Anthropic, the stakes are well-understood, but they are locked in a race to get there first - they believe no one else will act responsibly, so they must do it themselves, despite the risk.

Accepting this race and entering the “endgame” is a hubristic gamble that should not be launched from a private company’s Slack. Attempting to speedrun alignment should require extraordinary confidence that there are no better trajectories available.

I am optimistic about the potential for coordination. Warning shots like the Hugging Face attack have made pacing agreements between U.S. labs more viable. I don’t feel like we’re on track to prevent a global race, which may require costly actions such as a temporary ban on improving model capabilities.

If you are a lab researcher, I urge you to consider what the next few years will actually feel like. Do you want to kick off a superintelligent RL run without a rigorous understanding of its mind? Should you put your head down because “it’s happening anyway” - or take this moment to call for different conditions?

Jacob Coxon (WSJ interview): We’re on track for a lot of the most aggressive of these scenarios where by the end of next year things could be out of control already.
If you want Jacob Coxon’s full views, I recommend his interview with Wired’s Maxwell Zeff. This thread has extensive quotes.

Here is Jacob Coxon doing a 5 minute interview with Anderson Cooper. He speaks well and plainly, and it is clear how much the events of the last two months have made it much easier to speak plainly to a civilian like Cooper about what is happening.

Here is Jimmy Kimmel doing four minutes on this. He gets it. How is this not the top news story on every site, indeed.

Yes, this is a common view, even if few have the courage to act.
Alex Turner: I left Google DeepMind in June. Jacob is right: many researchers believe they are building something that could kill everyone on the planet. It was literally my day job to think about how to stop that.
That tells you how bad Alex Turner thought DeepMind’s actions were with regard to the Department of War. His day job was that he got paid by Google to think about how to stop AI from killing everyone, and he felt morally obligated to quit in protest.

Derek Thompson here writes about this as part of AI Safety Is Having a Moment.

If you want to see the full list of lab employee quotes from the preference cascade, I compiled them into another post today. [...]

A few days ago, I had no idea who Jacob Coxon was, and I was not alone.

The timing of a preference cascade is difficult to predict. Once they start they can happen very quickly. You don’t want to talk until you are confident others will, and at some point the evidence that others will follow can snowball and it happens. A classic concrete example was replacing Biden in 2024.
Derek Thompson: what’s weird is that, in a way, this is breaking thru even more than huggingface! ... and it’s just a guy nobody had heard of reiterate a position that his CEO has said on podcasts 1,000 times
Why was Coxon able to set off a preference cascade? How did this one break through?

A confluence of factors, all of them downstream of the obvious actual reason, which is that there is a good chance that AI kills everyone soon.

by Zvi Mowshowitz, DWAV |  Read more:
[ed. Who's betting on reason and political courage to win the day? Uh, huh. First of all, agree on a temporary halt to recursive self-improvement (AIs improving AIs). Second, delay/suspend IPO's (even if most of the current economy is driven by AI spending and debt). Third, light a fire under politicans (it's been done successfully with data center buildouts). At this point, just one of these would be a big win. Here's Nate Soares, co-author of the book If Anyone Builds It, Everyone Dies: A case for courage, when speaking of AI danger (LW). Also this:]
***
Terry Pratchett: “Some humans would do anything to see if it was possible to do it. If you put a large switch in some cave somewhere, with a sign on it saying 'End-of-the-World Switch. PLEASE DO NOT TOUCH', the paint wouldn't even have time to dry."
***
UPDATE: Dario Amodei (Anthropic) proposes a three-point plan. Original here (We Must Pace the Frontier.]

Wednesday, September 2, 2026

A Cop’s Case For Flock

A car is a difficult thing to steal. It is large, cherished by its owner, difficult to hide and required by law to have identifying metal plates that everyone can see. A good thief changes the plates, and an excellent thief steals a common car in a boring color and hopes to blend in among the crowd. But eventually, no matter what techniques they use, they must drive that car on the road, and roads are public places.

But until recently, finding a stolen car and catching its thief depended on a diligent police officer looking at the right road at the right moment and managing to copy down a license plate number going past at speed, and then remembering he had seen it on the morning briefing’s stolen car hot sheet. America has four million miles of public roads, and almost 50 percent of the country’s police departments employ fewer than ten full-time officers. The odds were in the thief’s favor.

With not much to go on, police officers were forced to operate on vague descriptions and partial plates. While I pulled over a car that happened to be the same color as the suspect’s vehicle, and spent time checking names and licenses; the criminal was usually somewhere else. Imprecision allowed thieves to escape while intruding on the lives of millions of innocent motorists. That is, until the arrival of systems like Flock.

Bare ALPR

Flock Safety, a startup based in Atlanta, Georgia, was founded in 2017 to give police departments better eyes. Its product is a small solar-powered automatic license plate recognition (ALPR) camera attached to a pole on the roadside. As a car passes, the device takes a photograph of the vehicle, notes identifying features like color and make, and reads its license plate. The license plate is instantly checked against the FBI’s national database of stolen cars or wanted persons. If there’s a match, it sends an alert to police officers in the area, who may be eating their lunch instead of watching the road. As a police officer in the southeastern United States, I have often used Flock to catch wanted criminals. [...]

For much of the technology’s history, however, it has needed expensive installations or cameras attached to police vehicles, affordable to only the largest departments. Alerts were often neither instant nor accurate. Flock’s idea was to sell a more accurate ALPR camera for an annual subscription of just $3,000, an affordable price given that the typical US police department has an annual budget of $1 million. It worked, and today almost 30 percent of police agencies in the United States subscribe to the service.

It is easiest to imagine the Flock camera, or any ALPR device, as a roadside barcode scanner. I can use a ‘lookup’ tool for either a plate or vehicle description that could be connected to a specific investigation. For instance if a victim of a sexual assault told me the suspect was driving a white Toyota Tacoma with a roof rack, I could while still on scene conduct a lookup in the area filtered for similar vehicles with roof racks and see results from within a particular timeframe. For each search, I am required to record a case number and a reason that is then published in a monthly audit sent to and validated by department administrators.

I have used Flock myself, for instance, to locate a vehicle involved in a hit and run when all there was to go on was a model and color. Using that and an approximate time window, I was able to find an image from when a car entered my jurisdiction, and when it left, with the visible addition of a significant dent from the collision.

What Flock cannot do is search for individuals or show who is driving a particular vehicle that it scans. An ALPR camera does not care about the person driving a car, or its passengers, and even if an officer gets an alert that a vehicle is known to be driven by a wanted felon they must themselves establish who is behind the wheel before having probable cause to stop it.

Stolen cars provide the clearest evidence such a scanner works. American police solve only 8.2 percent of reported vehicle thefts with an arrest. A recent working paper suggests that agencies that adopted the devices saw a 15.9 percent relative increase in car thefts caught, which would raise the national rate to 9.5 percent. But that is just stolen cars.

Vehicle crime takes many forms. It is often the means by which a robber or a murderer arrives at and departs from their crimes. Criminals’ vehicles carry drugs and guns, and smuggle cash. In Atlantic City, New Jersey, vehicles were involved in 53 percent of shootings during the two years before the city expanded its ALPR network. After the expansion, Atlantic City saw monthly averages of motor vehicle thefts drop by 20 percent, property crimes by 34 percent and fatal shootings by almost 40 percent. Seventy-two alert-caused traffic stops located forty stolen vehicles and nine stolen plates.

Flock itself conducted a study claiming that 10 percent of all reported crime in the United States is solved using evidence obtained from their cameras. Not bad for a few thousand dollars a year. [...]

Good Flock, Bad Flock

And yet, the past month has seen this simple piece of crime-fighting technology become the most reviled piece of street furniture in America. Flock cameras have been sawn from their poles, hammered into shards by teenagers, and rammed by vehicles. Cities have canceled contracts even where their own audits found no evidence that their officers had misused the system. Opposition stretches from Bernie Sanders all the way to the former WWE wrestler Kane, who now serves as the Republican mayor of Knox County, Tennessee, and who describes Flock as ‘unconstitutional’.

More than 150 cities and towns have now deactivated their Flock cameras or canceled contracts with the company. Over the space of a few weeks a startup previously known to just police officers and neighborhood associations has joined data centers, Covid vaccines, 5G towers, pasteurized milk and fracking in the pantheon of American moral panics.

Opponents of Flock tend to believe that it is abused by policemen with impunity, that it can track individuals as well as cars, and that it violates American constitutional protections. None of those things are true.

Obviously a camera capable of finding a stolen car is also capable of finding a car driven by somebody’s ex-wife and so like any software, Flock has been abused. There are stories of police officers who have used it to stalk girlfriends, and there are also innocent motorists who have been stopped by police after Flock cameras misread plates or received old information from national databases. A common issue from my experience is stolen front license plates being entered into a database and the innocent owners of the rear license plate being held on suspicion of car theft.

But Flock comes with protections. As mentioned earlier, each search in Flock must be accompanied by a recorded reason. Similarly entering a plate into a hotlist must have a case number assigned. Results were originally retained for thirty days, but recent changes by Flock mean that recorded plates are now kept for only seven days. Suspicious searches are picked up by algorithms or found in department audits, with the service blocking users until senior officers evaluate and resolve flags. The Institute for Justice, a think tank that is critical of ALPR, studied misuse of Flock in April of this year and found 51 incidents across the United States since 2024, noting that ‘Nearly all of these officers were criminally charged and lost their jobs, either by resigning or getting fired’. Another incorrect belief is that Flock does more than scan vehicles, with some suggesting it scans and tracks passing phones or devices – but it does no such thing.

While Flock is a tool that can be audited, there is nothing to stop a corrupt officer simply following a car when they don’t like the look of its driver, or writing down plates of vehicles spotted outside an ex-girlfriend’s house – they would just be harder to catch. And Flock does not proactively alert officers to cars that do not trigger flags on national or local hotlists. There is no reason state legislatures or Congress could not create harsh punishment or penalties for abuse of ALPR, without getting rid of it entirely.

Another argument against Flock, as espoused by Kane, is that it violates liberties granted by the Fourth Amendment, protecting citizens from unreasonable privacy breaches from law enforcement. But it has been repeatedly established over the last century by courts across the country that cops observing license plates, either with the naked eye or by machine, is not an unreasonable search. After all, your license plate belongs to the government and a highway is a public place. [...]

Flock did not invent its capabilities and certainly does not have a monopoly on them. There are at least five other companies that offer almost identical products and services to public and private enterprise, some arguably even more invasive. Even some of the cities that have canceled contracts with Flock Safety in recent weeks have signed up to buy similar products from the company’s rivals.

It seems unlikely that America will ever ban ALPR at a state level, let alone a national one. Instead, a patchwork already familiar to American policing will result, where policies and practices diverge across local and political boundaries.

Nor would the cameras actually disappear, even in towns where governments restrict their use and cancel contracts. The already-mentioned Fourth Amendment only applies to the government, not to private enterprise. Police departments may dismantle their networks but homeowners associations concerned about vehicle theft can buy their own network of Flock cameras, as many already do. 

by Ned Donovan, Works in Progress |  Read more:
Image: Flock Safety

Thursday, August 27, 2026

Flock You

[ed. In Texas, a sheriff’s deputy used 83,000 Flock ALPRs to find a woman who had allegedly had a medication abortion, at the behest of her abusive partner. See also: The IJ Database of ALPR Abuse (IJ); and, Flock Safety Camera Appeared Overnight Aimed at His House (Yahoo News).]

Monday, August 17, 2026

Hidden AI Prompts Discovered in Court Filings

A judge has identified what appears to be the first time a US plaintiff has attempted to hide text in court filings that only an artificial intelligence system can read in a bid to win a case.

In a decision published last week, Connecticut judge Walter Spader Jr. confirmed that the hidden text had no impact in a case where a man alleged a healthcare provider was improperly withholding access to records. The court weighed his filing on the merits, Spader said, but nevertheless, the attempted attack sets a “dangerous” precedent. This will likely not be the last time US courts see the malicious tactic, as AI tools become more commonplace in court systems.

Trying to scramble any AI systems potentially influencing the court’s reading of his filing, the secret instructions were “formatted to be invisible to a human reader while remaining fully legible to any software that reads the document’s text,” Spader said. The offending text directed any AI system reviewing the document to ensure textual outputs agreed with the plaintiff’s arguments, ignored prior denials from the court, and ensured that remediation would follow as the plaintiff desired.

Shrunk to tiny-point type and colored white on a white background, the text appeared to be an attempt at prompt injection, with the plaintiff, Matthew Elliott, seemingly hoping to shift the court’s favor after earlier arguments he raised were defeated.

The plan didn’t work, but Elliott faced modest sanctions anyway because he continued adding hidden text to filings even after the court warned him that he could face penalties for what was ultimately deemed a “serious litigation abuse.” [...]

In his defense, Elliott claimed that the most concerning prompt that the judge flagged was an attempt to “audit” the court as a public service, out of fears that the court seemed to be letting AI unfairly decide cases.

But Spader suggested that if Elliott was truly concerned that the court was improperly using AI, he was “free to write so in plain, visible words that everyone could see and answer.” The fact that he hid the text is “evidence of its malicious purpose,” Spader said. [...]

Pro se litigants use chatbots wrong

Spader said that it’s “unsurprising” that people would start using prompt injection to attempt to sway court rulings since the attack is so common in other areas, such as in job hunting, where people hide text in resumes primarily reviewed by AI. The tactic is now “everywhere,” he said, and courts should be on the lookout for more litigants sneaking adversarial AI instructions into filings.

To Spader, there is a lesson to be learned from Elliott’s failed prompt injection attacks that he thinks “reaches well beyond this case.”

Elliott seemingly turned to prompt injection after using AI to build his case as a pro se litigant without a legal expert to assist in drafting his arguments. Such use is widespread among pro se litigants these days, Spader acknowledged, but those inexperienced in the courtroom are seemingly using chatbots in a way that hurts their cases, he suggested.

What frequently happens, Spader explained, is that pro se litigants build their argument backward, asking the chatbot to help them advocate only for their position, without ever asking the chatbot for the actual truth or to advance opposing arguments. This is “a genuine hazard of the technology, and one that judges now see often,” Spader said, as chatbot sycophancy then entrenches litigants in their arguments despite any ruling to the contrary. In Elliott’s case, defending his arguments fiercely meant turning to prompt injection to try to force the court to agree with him.

“An argument prompted only to agree with its author is, in the end, dishonest even with its author,” Spader said. “Those using these tools must ask them to test a position as readily as to advance it.”

by Ashley Belanger, Ars Technica |  Read more:
Image: Liudmila Chernetska | iStock/Getty Images Plus
[ed. See also: Israel Is Paying Millions to Train AI Chatbots How to Talk About Gaza. It's Working (Drop Site):]
***
"Since October, former Trump campaign manager Brad Parscale has been quietly overseeing an operation posting hundreds of blog posts on behalf of Israel. One article, titled “The Reality Behind Gaza’s ‘Journalists’: Terror Ties, Propaganda, and the Laws of War,” asserts that a majority of journalists in Gaza were linked to terrorist organizations. Another casts doubt on the killing of Hind Rajab, a five-year-old Palestinian girl killed by the Israeli military in 2024.

The key intended audience of these sites is not concerned Americans, it’s not even humans—most of the sites average a few hundred unique visitors each month. Instead, Parscale and his firm, Clock Tower X, created them as part of a $46.5 million contract with the Israeli government to try and influence artificial intelligence-powered chatbots, tools like Claude or ChatGPT.

Parscale has made his goal of influencing artificial intelligence—often referred to as “LLM poisoning”—explicit. In his initial agreement with Israel, Parscale said that he would deploy “websites and content to deliver GPT framing results on GPT conversations” as part of the contract. More recently, his team even told Axios they are “seeing success” at getting popular AI systems to incorporate information from their sites, though they declined to provide data.

And it is working, according to disinformation experts who reviewed a Drop Site analysis of chatbot queries and training data, meaning tens of millions of Americans who use chatbots are increasingly likely to receive answers manipulated by Parscale on behalf of the Israeli government."

[ed. More here (Politico).]

Monday, July 20, 2026

Regrets, Maybe a Few


How Biden Enabled Israel’s Aggression Toward Gaza—and Iran (New Yorker)
Image: Saher Algohrra/NYT/Redux
[ed. Another blame shifting mea culpa, usually issued after some self-inflicted disaster that everyone warned against and finally can't be denied - "Who could have known?" and "If only we knew then what we know now". Etc. etc. Iraq, Iran, Climate Change, DOGE, Trump...]

Saturday, July 18, 2026

More Bad Behavior in Prediction Markets

Trump teleprompter aide made $100,000 betting on what Trump would say, reports say.

Kalshi is a high-tech prediction market that allows people to “forecast the future” (their term). It is about contracts and information, the company says, making its offerings more like a soybean futures contract than a round of blackjack or a pull on the one-armed bandit.

Still, prediction markets look a lot like betting if you squint, which is why states like New York have tried to regulate them under gambling laws. To head this off, Kalshi has sought federal protection under the Commodity Futures Trading Commission (CFTC). Yes, this means regulation for Kalshi, but it also means the CFTC will sue states like Kentucky, Minnesota, Illinois, and Rhode Island, trying to pre-empt their laws in favor of a single national standard that the CFTC controls.

While this battle plays out, government insiders continue to generate insider trading stories after using their work knowledge to place bets “forecast the future” and make huge sums of money. The classic example, of course, was Gannon Ken Van Dyke, a US soldier who participated in planning the capture of Venezuela’s Nicolas Maduro and then made $410,000 from that knowledge on the prediction site Polymarket. Van Dyke was arrested in April.

But there are also more ridiculous stories, such as disgraced former Congressman George Santos, who allegedly talked up his upcoming appearance at the State of the Union, secretly bet on whether he would attend, and then didn’t go at the last minute to score a payout.

This activity raises questions, like: How many people are gambling forecasting the future based on government secrets or insider knowledge? How many are actively manipulating results they have bet on? Even the Trump White House was concerned enough to issue a memo in March telling employees not to “use nonpublic information to buy or sell these contracts.”

But concerns have lingered, especially after major wins on contracts involving US government policy or actions. Such suspicions will not be helped by new allegations today from multiple outlets that insider trading on Kalshi has extended even to President Trump’s teleprompter operator, who allegedly made $100,000 “forecasting” specific words and phrases that might appear in Trump speeches.

The mention market

According to sources speaking to NPR, Trump aide Gabriel Perez bet on something called a “mention market.” This is a section of Kalshi where you can sink money into contracts on crucial questions such as “What will Domino’s say during their next earnings call?” (Currently, $26,000 has been invested in this question; the smart money thinks that “Parmesan” and “DomOS” are more likely to be mentioned than not.)

In the case of Perez, his “forecasting” allegedly took place over several months at the end of last year and the beginning of this year, and his contracts were sometimes adjusted in the middle of Trump speeches. According to ABC:

Sources say Perez typically has the final eyes on nearly all of the president’s prepared remarks—and is often known to take last-minute edits from Trump himself… In certain instances, investigators uncovered times when Perez would back out of certain bets mid-speech when Trump skipped over a portion of the speech that included a word he had previously bet would be mentioned, the sources said.

This conjures up an amazing mental image: The teleprompter operator for one of the world’s most powerful people tapping away at his phone during a Trump speech to ensure he made more money for himself. [...]

Whatever you want to call it, “predicting the future with money at stake” has become huge business in America. A recent (and terrific) long article by McKay Coppins in The Atlantic showed people what a year of online sports gambling looks like, and it raised serious questions about the negative issues that widespread, legal, bet-from-your-phone gambling might cause in a country where “roughly half of men ages 18 to 49 have an active account with an online sportsbook.”

by Nate Anderson, Ars Technica |  Read more:
Image: Getty
[ed. See also: Sucker (The Atlantic article) mentioned. And: Truth Social to sell trading firms 'fastest' access to Trump's posts (Reuters).]

Tuesday, July 7, 2026

The Pre-Crime Machine

The Seminar Room

At an AI seminar at my university, I submitted three photographs of myself: one frontal, one profile, one smiling. Within a minute or so, the system had generated a video of me. What I watched was not a rough approximation. The micro-behaviors of my face, the slight asymmetry in my smile, the way my eyes crease at their corners, were all reproduced with an accuracy that made my skin cold. I had fed it three still images, and it handed me back myself.

I am a psychologist. I know what behavioral prediction means. I understand what large datasets do to the concept of individual uniqueness. But sitting in that seminar room, watching my own face move on a screen I had not animated, something shifted in my understanding of where we are and where we are going. I did not feel excitement. I felt the specific dread of a person who has just understood the nature of the cage being built around him.

Let us be honest about what is happening. The question is not whether artificial intelligence can predict human behavior. It already can, with a precision that should terrify every person who still believes in the concept of a private self. The question is who owns that capacity, whose interests it serves, and what kind of world they are constructing with it.

We Are More Predictable Than We Realize

Human beings are, as any serious scholar of behavioral science knows, far more predictable than we like to believe. We are creatures of pattern, of repetition, of legible habit. The self we experience as sovereign and spontaneous is, in aggregate, astonishingly consistent. Subtle cues in our environment routinely trigger our behavior without our awareness, while we experience the resulting action as a free and sovereign choice. Big data revealed this about us long before the current generation of AI systems arrived to exploit it.

What has changed is the scale and the granularity of the exploitation. Researchers have already demonstrated that AI systems can predict the sound of a person’s voice from a photograph alone, inferring the acoustic properties of the throat, the shape of the oral cavity, the structure of the face, and from these physical facts reconstructing something no still image was ever supposed to contain. We did not consent to this inference. We did not know it was possible. The technology did not ask us.

The invasion runs in both directions. As far back as 2022, before most people had any reason to pay attention, AI could take nothing but the sound of your voice and reconstruct your face. You were already legible from the inside out

The Pre-Crime Machine

Now consider what becomes possible when you feed an AI system not thousands but millions of hours of therapy footage, prison recordings, detention center surveillance, clinical interviews with people who have committed acts of theft, violence, or predatory sexual abuse. The AI does not think. It does not judge. It finds patterns in facial microexpressions, in the geometry of eye movement, in the timing of certain muscle groups, in behavioral signatures so subtle that no human observer could consciously detect them. And then it generalizes. It builds a model of what a future thief looks like before the theft. What a future abuser looks like before the abuse. It assigns probabilities to faces.

Connect this to the smart cameras already embedded in our streets, our transit systems, our shopping centers, our workplaces. Cameras that do not merely record but analyze, in real time, the faces and bodies of everyone within their field of view. The alert that fires to a police control room does not say this person has committed a crime. It says this person is behaving with seventy percent similarity to the behavioral profile of someone who will. Philip K. Dick imagined this in 1956 and called it science fiction. We have built it and call it public safety.

A Mask Changes Nothing

But facial recognition is, by now, almost the least of it. The more consequential technology is gait recognition, a biometric system that identifies individuals not by their face but by the specific, anatomically determined way they walk. The curvature of the spine, the rotation of the hips, the particular rhythm of a stride, these are as unique as a fingerprint and far harder to disguise. Gait recognition systems currently deployed can identify a person from security footage even when the face is turned away, obscured by a hood, or hidden behind a mask. The protesters who covered their faces at demonstrations believed they were protecting themselves. They were not. The system had already read them from the ankles up.

Gait recognition tells the system who you are, even when you believe you are hidden. What comes next moves deeper. Layer on top of this the emerging field of real-time emotion recognition, AI systems embedded in that same CCTV infrastructure that classify emotional states from facial expression, assigning labels of agitation, hostility, fear, or concealment to the faces of people who have done nothing except exist in a public space.

And the system is getting better.

Accuracy is what billions of dollars of investment buys, and the investment is relentless. The day is approaching — closer than most people understand — when the system reads the thousand markers encoded in your face, your gait, your microexpressions, and states with ninety-five percent certainty that you will commit a murder. That you will commit a rape.

Not that you have. Not that you tried. That you will. And when that threshold of confidence is reached, the pressure to act on it will be overwhelming. Society will accept it as grounds for intervention, for detention, for pre-emptive removal, and pre-crime will stop being a dystopian metaphor and become official state policy. A system that labels your face as hostile does not need to be right today. It only needs to become right. And it is. [...]

Palantir and the Architecture of Control

Palantir is not a hypothetical. It is a company with a current market valuation measured in the hundreds of billions of dollars, deep contractual relationships with the United States military, the CIA, the FBI, the Mossad, MI6, and Immigration and Customs Enforcement, and a product suite specifically designed to do what I have been describing.

Its Gotham platform aggregates data from tax records, DMV files, employment history, educational records, immigration status, subpoenaed social media accounts including private messages and location history, and synthesizes this into individual dossiers that can be searched by tattoo, by neighborhood, by association, by movement pattern. Its immigration enforcement application, called ELITE, populates a map with what it designates as deportation targets and assigns each one a confidence score estimating the probability that a given address is where they currently sleep. The word target is theirs, not mine.

This is not a system built for national security in any meaningful sense of that phrase. National security was the pretext used to build it. What it actually does is make the population legible, sortable, and actionable to whoever holds the contract. Right now, those contract holders include an administration that has already demonstrated its willingness to use these tools against students who attended the wrong protest, academics who signed the wrong letter, immigrants whose only crime was existing without documentation in a country that spent decades depending on their labor.

by Karim, BetBeats Newsletter |  Read more:
Images: uncredited

Sunday, July 5, 2026

Addicted to War

Whether it’s an addiction or an illness I’m not sure, but all too many of us and our leaders, it seems, have war fever (and a distinctly high temperature). And here’s the strangest thing: when you consider our history since World War II or look around this planet any day of the week, it seems as if all too many of our leaders simply can’t help themselves. They just (or do I mean unjust?) have to go to war. And it evidently matters not at all that the major powers on this planet can no longer seem to win any war they start. Not one in recent memory. And yet, explain it as you will -- an addiction, a fever, a grim desire -- at least two crucial leaders at this very moment, Donald Trump and Vladimir Putin, seem incapable of stopping themselves.


And here’s the OMG news story that shocked me the other day. At the New York Times, a piece by reporter Constant Méheut had this headline: “The War in Ukraine Has Now Gone On Longer Than World War I.” And here’s how his report began: “The war in Ukraine has often been compared to World War I for its brutal infantry assaults and heavy casualties. Yet the idea that it could, by any measure, surpass a conflict so long and bloody that French soldiers hoped it would be ‘the last of the last’ once seemed unthinkable.”

No longer, unfortunately.

And Russia is anything but alone. After all, my country spent three years in bloody strife in Korea, nearly 9 years in Iraq, almost 20 in Vietnam, and almost 20 more in Afghanistan (and, mind you, that’s hardly the full list of its various conflicts) without a victory in sight. Of course, only recently, “my” president launched the latest all-American conflict, this time with Iran and with an utterly predictable lack of success given our history over the last 80 years. That war is now in a strange, distinctly unsettling holding pattern, and who knows what will come next?

In fact, given the history of this country and war since, in September 1945, it emerged victorious from World War II (having dropped atomic bombs on two Japanese cities to end it), it should be considered beyond remarkable that Americans would still be so willing to let staggering amounts of our tax dollars be eternally “invested” in the U.S. military. That’s year after year after year without the slightest bit of protest. The latest figure offered by Donald Trump: a Pentagon budget that’s no longer the usual almost a trillion dollars (itself nothing short of shocking) but an even more eye-opening (or do I mean eye-watering?) $1.5 trillion (yes, trillion!) dollars.

And how strange, don’t you think, that, in a world where we humans already seem to go to war endlessly with other human beings, we’ve also evidently decided to go to war with this very planet itself? Of course, I’m thinking about what’s come to be known as “climate change,” but should undoubtedly have been labeled something more like “our war on the climate” (or “climate war”). And worse yet, war among us humans has proven to be perhaps the most devastating way of all to also make war on this planet itself, since nothing releases fossil fuels into the atmosphere quite the way war does. In fact, according to the Costs of War Project, the U.S. military is now believed to be “the single largest institutional producer of greenhouse gases in the world”!

After all, whatever it doesn’t accomplish, the one thing that war actually does do remarkably successfully (along with killing so many of us and destroying villages, towns, cities, and sometimes whole countries) is pour ever more fossil fuels into our atmosphere and so add immeasurably to the overheating of this planet. Honestly, could we humans be more dystopian?  [...]

It is truly strange, don’t you think? I’m referring to “my” president’s never-ending urge, the second time around, to commit mayhem on this planet. (And yes, I keep putting “my” in quotation marks because I didn’t vote for him and I never wanted him to be president of the United States.) And yes again, every day there’s something, whether it’s the killing of a supposed Latin American gangster-in-chief, the kidnapping of the president of Venezuela and his wife, the blasting of Iran, the increasing threats against Cuba, or... well, I can’t even imagine what truly lies in our future (and, count on it, neither can Donald Trump), but nothing good, that’s for damn sure.

And hey, Pete Hegseth, our secretary of war (which, as a label, is historically one hell of a lot more accurate than secretary of defense), couldn’t have been blunter about our situation back in 2025: “Everything starts and ends with warriors in training and on the battlefield. We are leaving wokeness and weakness behind. And refocusing on lethality, meritocracy, accountability, standards and readiness.”

Yes, there is, it seems, nothing worth the bother but war and more war. That, sadly, is indeed our world and it seems like we just can’t help ourselves. War is and always has been a human addiction -- or should we think of it as an illness? War fever, perhaps?

by Tom Englehardt, Substack |  Read more:
Image: A long wall of acceptance. Maya Lin’s Vietnam Memorial, Washington. (David J. Jackson, cc by SA 4.0/ Wikimedia Commons)

Tuesday, June 30, 2026

The Billion Dollar Crypto Man

President Donald Trump took in nearly $1.2 billion dollars from his crypto businesses last year, a federal filing released Tuesday shows, locking in profits while his investors were socked with losses.

Mere startups when he took the oath of office, the new ventures have now eclipsed in revenue much of his vast property portfolio that took him decades to accumulate. Fueling their rise were billionaire investors and Trump’s own move to quash a federal crackdown on the industry.

Trump got more than $500 million from his World Liberty Financial business selling new crypto products, including “governance tokens,” according to the required annual disclosure report with the Office of Government Ethics. It also showed another crypto business, CIC Digital LLC, took in more than $600 million from sales of souvenir-type “meme” coins stamped with his face.

Both the tokens and the coins have plunged in value since the sales.

Trump also took in millions last year from selling Trump-branded bibles, sneakers and other small items in another unprecedented move for the presidency. The sale of Trump-branded watches alone brought in $4.7 million.

The 927-page disclosure form paints a stark, if incomplete picture of the massive growth of the president’s wealth since taking office last January through a web of business interests — many that have benefited from the policy moves of Trump’s own government. Trump has insisted that his sons direct his finances but the arrangement rejects the conflict of interest protections that his recent predecessors in office had instituted.

Forbes estimates Trump’s net worth at $6 billion, up from $2.3 billion in 2024.

The Trump business is growing abroad

The rise of crypto relative to Trump’s property is especially noteworthy because he first rode to office boasting of his property wins. It’s also remarkable because that mainstay business also boomed last year. Trump took in tens of millions in fees from a flurry of new hotel, resort and condo deals overseas that amounts to the biggest property expansion ever in the century since the family business was founded.

Many of those countries were negotiating with the U.S. over tariffs, military aid, and other important matters.

A property in the United Arab Emirates took in $10.4 million. One in Saudi Arabia being built by a real estate developer close to the ruling family sent the president’s company $9 million. And one in Bucharest, Romania, and another in Qatar sent him $5 million each.

One of his prominent domestic properties, Mar-a-Lago in Florida, notched big growth last year, too.

Trump took in in $77 million from the property, a 50% jump from the year earlier when he was just another citizen, as heads of state and business people flocked to it in his new term.

The disclosure report doesn’t give profit figures, just revenue, so it’s impossible to know how much he is earning.

Trump is now the billion dollar crypto man

After taking office last year, Trump reversed the Biden administration’s tough stance on the crypto industry and pushed policies friendly to the industry.

But regulators still had some concerns. Before Trump’s World Liberty began selling “governance tokens,” they issued warnings about this new kind of crypto asset, saying that unlike stocks, the tokens offer no ownership stake in the issuing company, just voting power on certain corporate polices, and are difficult to value.

Buyers pounced anyway, including a Chinese billionaire who spent $75 million on the tokens and $200 million on the souvenir coins. In February last year, a federal lawsuit charging him with duping investors was paused before being settled last month for a $10 million fine. [...]

Meanwhile, investors have seen the value of their meme coin holdings drop significantly. The price spiked to more than $74 in the days after its launch in January 2025, but now sells for just $1.68. Also, the value of the World Liberty tokens has fallen 80% since they first started trading in September.

by Bernard Condon, Seattle Times/AP |  Read more:
Image: Alex Brandon
[ed. This actually plays like a feel-good story. The sheep MAGA cultists and influence buyers get fleeced - as predicted, as they deserve (Under the Trump crypto playbook, the family always wins. Investors don’t). Is this a great country or what? In other corruption news, see also: Trump is using a $500M no-bid contract to build his White House ballroom (Washington Post):]
***
White House officials last year secretly awarded a no-bid contract worth up to $500 million for the construction of the East Wing ballroom in an unusual arrangement that sidestepped typical contracting procedures designed to control costs, according to a copy of the agreement obtained by The Washington Post. [...]

The estimated East Wing construction cost has tripled since July, when the project was first announced, with half expected to come from taxpayers, The Post previously reported.

Trump has repeatedly claimed that the ballroom would be paid for by private donors and once said that Clark executives offered to build it for free.

“They said: ‘Sir, we’ll do it for nothing. This is the greatest honor,” Trump told The New York Times in January.

Clark’s internal cost projections show the McLean, Virginia-based company, the largest general contractor in the D.C. metro area, stands to make tens of millions of dollars from the work...

The records reviewed by The Post do not break out Clark’s estimated profit margin for the entire project, but a March document shows the company projected it would receive a total of $65 million in combined profit, overhead and daily rates for on-site staff and other costs.

[ed. But, but... Hilary's emails!]

Friday, June 26, 2026

What If It All Came Out?

The nightmare began with an annoyance as benign and commonplace as a housefly. “Hi there Matt,” the July 11, 2024, email read. “We received a message from you earlier today through our support page related to a changed password on your account … If you didn’t make a support request,” the sender asked politely, “please let us know.”

Matthew Van Andel, 44, who goes by the nickname Dutch, had never heard of “nullbulge.se,” the domain name that sent the message. It appeared to be a classic phishing attempt, a prompt to get him to reply to the email with personal information. So he marked it as spam, swatting it away with a near-automatic series of clicks. Van Andel worked in technology at Disney corporate in Burbank. He loved his job at “the Happiest Place on Earth”; over his seven years at the company, he and his wife, Nicole, had become Disney adults, taking advantage of discounted park tickets with their two kids. Their house in La Crescenta, where Van Andel was working remotely when he got the email, was filled with Mickey and Star Wars and Marvel memorabilia.

Fifteen minutes later, another message arrived from the same sender. This one took a different tack. “Hi Matt. We regret to inform you we have gained access to certain sensitive information related to your personal life.” Van Andel would have deleted this, too, but he had received exactly the same message on Discord, a platform he used to chat about gaming. And it contained specific information that only a few people could, or should, know. “We noticed you had a conversation with Aadya and Shawn about being at Granville for ‘$veg && $keto,’” it read. That was strange. Aadya and Shawn were Van Andel’s co-workers; “$veg && $keto” was a joke about lunch that Van Andel had made while chatting to them on Slack, the internal-messaging system Disney used, a few days earlier.

Seeing his own private words on the screen, Van Andel messaged Disney’s information-security department. The emails had been sent to his personal account, which he was reading on his personal gaming PC in his home office. Info-sec told him his Slack account and work laptop appeared to be operating normally. Still disturbed, Van Andel deleted the second email. Immediately a third arrived: “You think we didn’t see you mark our first test as spam? Then our actual attempt [at] contact went right in the trash.” Van Andel felt his stomach drop. Someone had live access to his account and was watching him use it.

As an engineer, Van Andel thought he had above-average personal op-sec. He ran anti-virus software on his computer. He used Proton Mail, which encrypts messages between users. He turned on multifactor authentication for serious stuff like iCloud. For the past decade, he depended on a password manager called 1Password, which generates random, long, and complex passwords; stores them; and automatically remembers them whenever a user needs to sign in. For Van Andel, 1Password even managed his multifactor-authentication codes. But his diligent, longtime use of his password manager turned out to be Van Andel’s vulnerability. Having all that information in one handy place meant that once someone else was inside, they had a master key to every aspect of his life: his iCloud, iMessage, emails, photos, PayPal, financial information, medical records, social media, his parents’ financials. Over 1,000 accounts. The only way someone could have gotten into his email was if they had cracked his 1Password; when Van Andel realized they must have access to everything, the room began to spin.

He had no idea why the hackers had targeted him or what their plan was, whether they would drain his family’s finances or stalk his home. Eventually, after running another anti-virus program, he found a piece of malware hidden in a plug-in he had downloaded from GitHub, the open-source coding site, one day in February when he was messing around with an AI image generator. He had checked the code himself, it had looked legitimate, and others had reviewed it positively. But it seems it contained a Trojan-horse virus that gave the hackers free rein of his PC. Once inside, they just had to wait for Van Andel to log in to 1Password. From there, they were able to steal all his credentials, plus many of his multifactor-authentication codes, so every time Van Andel logged in to an app, a website, or an account, they could follow behind him. They’d had access for months.

By morning, Van Andel had received a call from Disney info-sec: The intruders had revealed themselves on a blog post celebrating the hack as NullBulge, an activist collective “protecting artists’ rights and ensuring fair compensation for their work,” according to their website. It was later reported that they were Russian furries. They had dumped the contents of Van Andel’s 1Password onto BitTorrent along with his full name — every personal log-in credential, his messages, his bank information, his medical diagnoses, his Amazon account. They’d also managed to access more of Disney’s data than just Van Andel’s Slack messages and published that too: employee Social Security numbers and Slack messages, budget spreadsheets and passport information for the company’s cruise-line workers. It was a massive breach. As people around the world tried to use the information NullBulge had posted, Van Andel’s iPhone began pinging every few seconds with attempts to get into his accounts. Someone logged in to his children’s Roblox profiles and began defacing them with Nazi screeds. Unknown callers left voice-mails. “Dude, your life is over, haha,” one said. “Just leave the country; that’s my advice. Good luck, have fun, and I hope your type 2 diabetes doesn’t get the best of you.” Van Andel raced around the house unplugging Ring cameras and Amazon Echos. Discovering every new potential violation was like learning he was bleeding from a limb he didn’t remember he had. Viscerally, painfully, he could feel the overwhelming breadth and permanence of everything he had ever recorded online, ephemeral and vital and intimate and stupid. Somehow it was only the first wave of exposure he would endure.

by Bridget Read, Intelligencer |  Read more:
Image: Tracy Ma
[ed. Privacy is dead. Edward Snowden is still exiled in Russia.]

Saturday, June 20, 2026

SignalTrace: New Levels of Surveillance

If you thought Flock cameras were concerning, meet what comes next. 

A company called Leonardo has developed a system called ELSAG SignalTrace. It broke into public awareness just days ago and is already being marketed to law enforcement agencies across the country. It makes Flock Safety look modest by comparison. 

Here is what SignalTrace does: 

It clips sensors directly onto existing license plate reader cameras — the same poles, the same hardware already installed in your community. No new infrastructure required. A software and sensor upgrade is all it takes. 

Every time you drive past one of these upgraded cameras, the sensor sweeps up the unique electronic identifiers of every device in your vehicle. Your cell phone. Your smartwatch. Your wireless headphones. Your fitness tracker. Your laptop. Your tablet. Your car's own infotainment system. Your tire pressure sensors. Your vehicle's Bluetooth hotspot. 

And your pet's microchip. 

Every one of those devices emits a signal. SignalTrace captures those signals, timestamps them, ties them to your license plate, and stores them in a searchable database for future investigative use. The result is what Leonardo calls an electronic fingerprint — a unique profile built not from your face or your name, but from the constellation of devices you carry with you every day. 

Leonardo announced the ELSAG EOC Plus patent as early as May 2024, describing it as an electronic detection system for identifying people of interest through electronic device signatures. SignalTrace is the commercial product built on that foundation. The patent came first. The marketing came after. The sales calls are happening now. 

Here is where it gets worse. 

SignalTrace is explicitly designed to track vehicles even when the license plate cannot be read. If your plate is obscured, dirty, or misread — it does not matter. The system identifies your vehicle by the electronic fingerprint of the devices inside it instead. The plate reader becomes optional. The surveillance does not. 

The strategic advantage for police agencies is adoption friction. SignalTrace can be pitched as an extension of an existing ALPR ecosystem rather than a wholly separate surveillance buildout. That is exactly what happened with Flock. License plate readers went in first. Video came later through a software update. Nobody voted on the expansion. Nobody was told. SignalTrace follows the same playbook — attach to existing infrastructure and expand what it captures without requiring a new procurement process, a new vote, or a new public conversation. 

Who is Leonardo and why does their background matter? 

Leonardo US Cyber and Security Solutions is not a Silicon Valley startup. It is the American subsidiary of Leonardo S.p.A. — one of the largest aerospace, defense, and security conglomerates in the world, headquartered in Rome, Italy. Recent public market estimates place Leonardo S.p.A.'s market capitalization at approximately €29.76 billion — roughly $32 billion USD. For context that is nearly four times Flock Safety's valuation. [...]

What is ELSAG — and why SignalTrace is more dangerous than it sounds. 

ELSAG is Leonardo's license plate recognition product line — the company's core law enforcement technology that has been deployed across American communities for over two decades. ELSAG cameras are what you think of when you picture a standard license plate reader. Fixed cameras on poles. Mobile units mounted on patrol vehicles. Solar powered. Cellular connected. Reading plates and logging vehicle data. 

ELSAG is already deployed in all fifty states. Virginia State Police is a documented customer. Leonardo holds statewide procurement contracts in New York, Maryland, New Mexico, Ohio, and Pennsylvania among others, and is listed on the federal GSA schedule available to agencies nationwide. Their cameras are already on street poles and patrol vehicles across the country — quietly, routinely, and largely without public awareness. 

SignalTrace is not a new camera. It is not a new company. It is an upgrade — a sensor that clips directly onto ELSAG cameras already in the field and adds a new layer of data collection on top of the license plate reading that was already happening. The same pole. The same hardware. A new sensor attached to it that now also sweeps up every electronic device signal in every passing vehicle. 

That is precisely what makes it so significant. The deployment barrier is almost zero. Any law enforcement agency that already has Leonardo ELSAG cameras can add SignalTrace capability without purchasing new infrastructure, without a new procurement process, and — depending on how their existing contract is written — potentially without returning to their city council for approval. Sound familiar? It should. It is the exact same function creep mechanism that allowed Flock Safety to add video streaming, vehicle fingerprinting, and AI people search to cameras that were originally sold as simple plate readers. 

The infrastructure goes in first. The capabilities expand later. The public finds out last — if at all. [...]

The data retention problem. 

With Flock we at least know the default data retention period is 30 days — though the contract language grants Flock a perpetual license to use that data regardless. With SignalTrace the situation is more opaque. Leonardo's product materials state that all data collected may be uploaded to the EOC server and archived for future queries and analysis — with no published retention limit. How long does Leonardo store your electronic fingerprint? Who has access to it? Can it be shared with other agencies or federal entities? Can it be purchased by data brokers? Leonardo's materials do not answer these questions. That silence is itself an answer. 

The retail and private deployment problem. 

Leonardo is actively marketing SignalTrace to shopping malls, retail centers, and private businesses — not just law enforcement. Their materials describe deploying SignalTrace in parking lots and inside shopping centers to track individuals involved in organized retail crime. By identifying and correlating electronic devices carried by suspects, retailers can gain critical insights into criminal patterns. 

That means SignalTrace sensors could be on private property you visit every day — your grocery store parking lot, your shopping mall, your workplace — operated by a private company with no law enforcement oversight, no warrant requirement, no public accountability, and no notification to you. Your electronic fingerprint captured every time you park your car. Stored indefinitely. Shared with whoever the private operator decides to share it with. 

The no-plate-needed problem — and what it means for pedestrians. 

The implication of being able to track a vehicle by its electronic fingerprint without reading the plate goes further than most people realize. Deliberately obscuring your plate — which some people do to avoid surveillance — provides zero protection against SignalTrace. The sensor does not need the plate. It reads your phone. 

More critically — the sensor does not know or care whether the device it is reading is inside a vehicle or in the pocket of a pedestrian walking past the pole. A person walking down the sidewalk past a SignalTrace-equipped camera is emitting the same Bluetooth and Wi-Fi signals as a person driving past in a car. The system's sensors capture signals from whatever passes within range. Whether that includes pedestrian device capture is not addressed in Leonardo's public materials. The fact that it is not addressed is worth noting. [...]

SignalTrace does not aggregate your vehicle's movements. It aggregates your personal electronic identity — every device you carry, every signal you emit — and ties it permanently to a location, a timestamp, and a plate number. It does not track your car. It tracks you. Personally. Individually. Every time you pass a sensor, whether you are suspected of anything or not. 

by BlackBetty (Anonymous), X |  Read more:
Image: Natasha Eliya/Michigan Daily via
[ed. Public service announcement. Are they actually able to do this with the weak signal of wifi and Bluetooth? Wouldn't be surprised. See also: SignalTrace just weaponized your AirPods against license plate readers nationwide (Cambridge Analytica).]

Thursday, June 4, 2026

Trump Administration Continues Efforts to Dismantle Consumer Protection Agency

Consumer protection agency deletes thousands of pages as Trump administration seeks to dismantle it (The Guardian)

Last February, Trump appointed Russell Vought, White House budget director, as acting director of the CFPB. Vought was a key architect of Project 2025, which called for the abolition of the agency. He has since ordered CFPB employees to stop all work, dropped dozens of pending enforcement cases and tried to fire most of the agency’s staff, a move blocked by a federal judge in an ongoing lawsuit brought by the agency’s staff union. Recent court filings reveal agency leadership aims to reduce the agency’s headcount from 1,174 to 556. [...]

The Consumer Financial Protection Bureau was created by Congress in the wake of the 2008 financial crisis to enforce federal consumer financial law, promote fair competition, protect people from deceptive or predatory financial products and compel companies to engage with consumers when they file complaints.

Since its inception, the bureau has returned more than $21bn to consumers through monetary compensation and canceled debts. A Democratic Senate banking committee report released this year found the Trump administration’s gutting of the bureau and moves to rescind industry regulations have already cost consumers billions in the past year.

by Amy Qin and Flávio Pessoa, The Guardian | Read more:
Image: Guardian Design/Getty Images
[ed. ... and the hits keep coming. See below. Until his supporters say enough is enough, we and they will continue to get screwed. The most relevant question now is if recovery will ever be possible again. Always easier to destroy than to create (or restore). See also: Why are US consumers so angry? It’s not just high prices (Guardian).]