This Week's [in]Security - Issue 199
24 Jan 2021.
Welcome to This Week’s [in]Security. SolarWinds. RainDrop. MalwareBytes. Palo Alto. Stealth. Riot fallout. Faces. Parler. Bye Joker. New breaches: MegaBreach. SocialSites. OpenWRT. Google Foo. New Ransomware. Sample Notices. Creeps. Sharing. Fines. Stupid Patents. Can Hack. Web Security. Browsers. Snort. BugTraq. Chains. DNSmasq. Cisco. SAP. SonicWall. JNLP files. Trends. Finger. FreakOut. Nation States. Airlines. Watering Holes. IPv4. Investigations. Health, Safety & Environment. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. New Variants. Impact. Immunity, Vaccines, and Vaccination. The Good, Bad, and Ugly (Behaviour). And more.
Trending news
More on SolarWinds Supply Chain Hack and the fallout from the Capitol Hill riot:
-
Solar-gate week 6:
- FireEye releases tool for auditing networks for techniques used by SolarWinds hackers https://www.zdnet.com/article/fireeye-releases-tool-for-auditing-networks-for-techniques-used-by-solarwinds-hackers
- Researchers Discover Raindrop — 4th Malware Linked to the SolarWinds Attack https://thehackernews.com/2021/01/researchers-discover-raindrop-4th.html
- Malwarebytes said it was hacked by the same group who breached SolarWinds https://www.zdnet.com/article/malwarebytes-said-it-was-hacked-by-the-same-group-who-breached-solarwinds
- Security firm Malwarebytes was infected by same hackers who hit SolarWinds https://arstechnica.com/information-technology/2021/01/security-firm-malwarebytes-was-infected-by-same-hackers-who-hit-solarwinds/
- SolarWinds hackers nearly breached cybersecurity firm Palo Alto Networks — here's how it fended off disaster https://www.businessinsider.com/how-palo-alto-networks-avoided-solarwinds-hack-2021-1
- Deep dive into the Solorigate second-stage activation: From SUNBURST to TEARDROP and Raindrop https://www.microsoft.com/security/blog/2021/01/20/deep-dive-into-the-solorigate-second-stage-activation-from-sunburst-to-teardrop-and-raindrop/
- Here's How SolarWinds Hackers Stayed Undetected for Long Enough https://thehackernews.com/2021/01/heres-how-solarwinds-hackers-stayed.html
- Injecting a Backdoor into SolarWinds Orion https://www.schneier.com/blog/archives/2021/01/injecting-a-backdoor-into-solarwinds-orion.html
- Microsoft SolarWinds analysis: Attackers hid inside Windows systems by wearing the skins of legit processes https://www.theregister.com/2021/01/21/microsoft_solarwinds_deep_dive/
- Microsoft: This is how the sneaky SolarWinds hackers hid their onward attacks for so long https://www.zdnet.com/article/microsoft-this-is-how-the-sneaky-solarwinds-hackers-hid-their-onward-attacks-for-so-long/
- SVR Attacks on Microsoft 365 https://www.schneier.com/blog/archives/2021/01/svr-attacks-on-microsoft-365.html
-
Politics aside, more on the long term fallout from the US Capitol Riots, issues like platform liability, free speech, domestic terrorism, etc.:
- Faces of the Capitol Riot https://www.wired.com/story/faces-of-the-riot-capitol-insurrection-facial-recognition/
- Parler website partially returns with support from Russian-owned technology firm https://www.theguardian.com/media/2021/jan/19/parler-website-partially-returns-with-support-from-russian-owned-technology-firm
- DDoS-Guard To Forfeit Internet Space Occupied by Parler https://krebsonsecurity.com/2021/01/ddos-guard-to-forfeit-internet-space-occupied-by-parler/
- A Seattle court rejected Parler's legal effort to force Amazon to bring it back online (AMZN) https://www.businessinsider.com/us-district-court-denies-parler-preliminary-injunction-for-amazon-suit-2021-1
- Facebook's Oversight Board to rule on Trump ban https://www.bbc.co.uk/news/technology-55759181
PCI Compliance and Payments
News and announcements relating to Payment Security, PCI, Card Brands, Payments, Payment Malware and Fraud.
- PCI Security Standards Council Announces 2021-2022 Advisory Board https://www.pcisecuritystandards.org/about_us/press_releases/pr_01192021
- Joker’s Stash Carding Market to Call it Quits https://krebsonsecurity.com/2021/01/jokers-stash-carding-market-to-call-it-quits/
- New Additions to Moneris Checkout https://community.moneris.com/blogs/b/announcements/posts/new-additions-to-moneris-checkout
- Peoples Trust Launches Deposit Insurance on Prepaid Cards In Canada https://www.digitaltransactions.net/peoples-trust-launches-deposit-insurance-on-prepaid-cards-in-canada/
Breaches / Ransomware / Leaks
Covering breaches, leaks, data exposures, ransomware (as potential breach), and their fallout.
-
New Breaches:
- Nitro - 77M breached accounts https://haveibeenpwned.com/PwnedWebsites#Nitro
- Hacker leaks data of 2.28 million 'MeetMindful' dating site users https://www.zdnet.com/article/hacker-leaks-data-of-2-28-million-dating-site-users
- Hacker leaks data of millions of 'Teespring' users https://www.zdnet.com/article/hacker-leaks-data-of-millions-of-teespring-users
- Now-defunct X-Rated Social Media App 'Fleek' Exposes Users in Massive Data Breach https://www.databreaches.net/now-defunct-x-rated-social-media-app-exposes-users-in-massive-data-breach/
- Attackers Steal E-Mails, Info from OpenWrt Forum https://threatpost.com/attackers-e-mails-openwrt-forum/163136/
- AnyVan confirms digital break-in, says customer names, emails and hashed passwords exposed https://www.theregister.com/2021/01/19/anyvan_confirms_digital_breakin_says/
- UK: Trafford bin collection firm suffers major cyber attack with contracts, passports, financial details leaked publicly https://www.databreaches.net/uk-trafford-bin-collection-firm-suffers-major-cyber-attack-with-contracts-passports-financial-details-leaked-publicly/
- Diponegoro University Responds to Student Data Breach Allegation https://www.databreaches.net/diponegoro-university-responds-to-student-data-breach-allegation/
- Einstein Healthcare Network Announces August Breach https://threatpost.com/einstein-healthcare-network-announces-august-breach/163237/
- NY: CASES notifies clients of data security breach https://www.databreaches.net/ny-cases-notifies-clients-of-data-security-breach/
- Texas Medical Center Breach Affects 640,000 https://www.databreachtoday.com/texas-medical-center-breach-affects-640000-a-15827
- Google Searches Expose Stashes of Stolen Corporate Credentials https://threatpost.com/attackers-leave-stolen-credentials-google-searches/163220/
- Intel's Early Earnings Release Triggered by Hack https://www.securityweek.com/intels-early-earnings-release-triggered-hack
- Scottish Environment Protection Agency refuses to pay ransomware crooks over 1.2GB of stolen data https://www.theregister.com/2021/01/18/scottish_environment_protection_agency_refuses_to_pay_ransom/ and https://www.zdnet.com/article/hackers-publish-thousands-of-files-after-government-agency-refuses-to-pay-ransom/
-
New Ransomware and "Incidents":
- Already in receivership, Nygard hit with ransomware that permanently compromised their IT system https://www.databreaches.net/already-in-receivership-nygard-hit-with-ransomware-that-permanently-compromised-their-it-system/
- Colliers International Group gets slammed by cyberattack https://www.databreaches.net/colliers-international-group-gets-slammed-by-cyberattack/
- Ucar reveals cyberattack earlier this year https://www.databreaches.net/ucar-reveals-cyberattack-earlier-this-year/
- WA: Okanogan Co. government hit with cyber attack, working to restore systems https://www.databreaches.net/wa-okanogan-co-government-hit-with-cyber-attack-working-to-restore-systems/
- IObit forums hacked to spread ransomware to its members https://www.databreaches.net/iobit-forums-hacked-to-spread-ransomware-to-its-members/
-
Follow-ups and fall-out:
- EDPB Publishes Guidelines on Examples regarding Data Breach Notification https://www.databreaches.net/edpb-publishes-guidelines-on-examples-regarding-data-breach-notification/
- Ransomware victims that have backups are paying ransoms to stop hackers leaking their stolen data https://www.zdnet.com/article/ransomware-victims-that-have-backups-are-paying-ransoms-to-stop-hackers-leaking-their-stolen-data/
- How much are you worth on the dark web? (Credit card, PayPal, SSN) https://www.comparitech.com/blog/vpn-privacy/dark-web-prices/
- Rady Children’s Hospital sued over Blackbaud breach https://www.databreaches.net/rady-childrens-hospital-sued-over-blackbaud-breach/
- Livecoin slams its doors shut after failing to recover from hack, financial loss https://www.databreaches.net/livecoin-slams-its-doors-shut-after-failing-to-recover-from-hack-financial-loss/
Privacy
Articles about privacy related news, risks, and trends.
- ADT techie admits he peeked into women's home security cams thousands of times to watch them undress, have sex https://www.theregister.com/2021/01/23/in_brief_security/
- Calgary man issues warning after discovering ‘creepy’ security camera live feeds https://globalnews.ca/news/7593916/calgary-warning-security-cameras-live-streaming/
- AU: Woolworths gave customer data to NSW Health https://www.databreaches.net/au-woolworths-gave-customer-data-to-nsw-health/
- Intelligence Analysts Use U.S. Smartphone Location Data Without Warrants, Memo Says https://www.nytimes.com/2021/01/22/us/politics/dia-surveillance-data.html
- GDPR: German laptop retailer fined €10.4m for video-monitoring employees https://www.zdnet.com/article/gdpr-german-laptop-retailer-fined-eur10-4m-for-video-monitoring-employees
- Privacy Fines: Total GDPR Sanctions Reach $331 Million https://www.databreachtoday.com/privacy-fines-total-gdpr-sanctions-reach-331-million-a-15790
- Why EFF Doesn’t Support Bans On Private Use of Face Recognition https://www.eff.org/deeplinks/2021/01/why-eff-doesnt-support-bans-private-use-face-recognition
- How to Make Data Privacy Real https://www.nytimes.com/2021/01/19/technology/how-to-make-data-privacy-real.html
- Privacy-focused Facebook competitor MeWe says it's grown by more than 2 million users in the past week (FB) https://www.businessinsider.com/mewe-facebook-alternative-privacy-data-social-media-user-growth-2021-1
Laws, Regulations, Standards, and Public Policy
News about laws, regulations, and standards affecting security, privacy, technology, and public interest.
-
Canada:
- Nova Scotia may be looking at tightening laws around police impersonation https://globalnews.ca/news/7588674/nova-scotia-rcmp-arrest-man-impersonating-officer-antigonish/
-
US:
- National Artificial Intelligence Initiative Office Announced https://epic.org/2021/01/national-artificial-intelligen.html
- New Massachusetts Law Protects Personal Transit Data from Warrantless Searches https://epic.org/2021/01/new-law-protects-personal-data.html
- The FTC Cracks Down on Bot-Wielding Ticket Scalpers https://www.wired.com/story/ftc-scalper-bots-biden-cybersecurity-security-roundup
- EPIC to Washington Legislature: Pass Commonsense AI Regulation https://epic.org/2021/01/epic-to-washington-legislature.html
- The Trump administration is revoking the licenses of companies that supply to Huawei, as a final blow to the Chinese tech giant https://www.businessinsider.com/trump-administration-halts-huawei-supply-shipments-2021-1
- Trump Orders IaaS Providers to Track Foreign Users https://www.databreachtoday.com/trump-orders-iaas-providers-to-track-foreign-users-a-15810
- US President Trump orders security assessment for Chinese-made drones https://www.zdnet.com/article/us-president-trump-orders-security-assessment-for-chinese-made-drones
- Why Trump’s last-minute cyber order could have limited impact https://www.technologyreview.com/2021/01/20/1016443/why-trumps-last-minute-cyber-order-could-have-limited-impact/
- Blyncsy’s Patent On Contact Tracing Isn’t A Medical Breakthrough, It’s A Patent Breakdown https://www.eff.org/deeplinks/2021/01/blyncsys-patent-contact-tracing-isnt-medical-breakthrough-its-patent-breakdown
-
World:
- Freesound iniciates the Freesound Licensing (think Creative Commons for Audio) project thanks to a Grant for the Web grant https://scienmag.com/freesound-iniciates-the-freesound-licensing-project-thanks-to-a-grant-for-the-web-grant/
- Google's threat to withdraw its search engine from Australia is chilling to anyone who cares about democracy | Peter Lewis https://www.theguardian.com/commentisfree/2021/jan/22/googles-threat-to-withdraw-its-search-engine-from-australia-is-chilling-to-anyone-who-cares-about-democracy
- US attacks Australia's 'extraordinary' plan to make Google and Facebook pay for news https://www.theguardian.com/media/2021/jan/19/us-attacks-australias-extraordinary-plan-to-make-google-and-facebook-pay-for-news
- Facebook claims it does not conduct business in Australia in Cambridge Analytica appeal https://www.theguardian.com/technology/2021/jan/19/facebook-asks-to-appeal-court-ruling-that-it-conducts-business-in-australia
Defense / Techniques / Solutions
Covering developments and opportunities that may help improve security.
- CanHack 2021: Teaching Students Cyber Security Skills Through Friendly Competition https://discover.rbcroyalbank.com/canhack-2021-teaching-students-cyber-security-skills-through-friendly-competition/
- Web Content Security - COEP COOP CORP CORS CORB - CRAP that's a lot of new stuff! https://scotthelme.co.uk/coop-and-coep/
- Brave browser takes step toward enabling a decentralized web https://www.theverge.com/2021/1/19/22238334/brave-browser-ipfs-peer-to-peer-decentralized-transfer-protocol-http-nodes
- Google Chrome 88 released with no Flash support, bringing an end to an era https://www.zdnet.com/article/google-chrome-88-released-with-no-flash-bringing-an-end-to-an-era
- Microsoft Edge, Google Chrome Roll Out Password Protection Tools https://threatpost.com/microsoft-edge-google-chrome-roll-out-password-protection-tools/163272/
- Snort 3 Becomes Generally Available https://www.securityweek.com/snort-3-becomes-generally-available
- Hallowed Bugtraq Infosec List Killed Then Resurrected https://packetstormsecurity.com/news/view/31936/Hallowed-Bugtraq-Infosec-List-Killed-Then-Resurrected.html
- New website launched to document vulnerabilities in malware strains https://www.zdnet.com/article/new-website-launched-to-document-vulnerabilities-in-malware-strains/
- The CIS Benchmark for Cisco Nexus (NX-OS) 1.0 went live last week, find it here: https://www.cisecurity.org/cis-benchmarks/, (Mon, Jan 18th) https://isc.sans.edu/diary/rss/27000
- Survey: CISSP Is the Most Valuable Security Certification for 2021 https://blog.isc2.org/isc2_blog/2021/01/survey-cissp-is-the-most-valuable-security-certification-for-2021.html
- Top computer forensics degrees online (Bachelor’s) https://www.comparitech.com/blog/information-security/computer-forensics-degrees-online/
Bugs / Design Flaws / Vulnerabilities / Research
Articles about newly discovered vulnerabilities and research.
- Daisy Chaining: How Vulnerabilities Can Be Greater Than the Sum of Their Parts https://www.tenable.com/blog/daisy-chaining-how-vulnerabilities-can-be-greater-than-the-sum-of-their-parts
- The State of State Machines https://googleprojectzero.blogspot.com/2021/01/the-state-of-state-machines.html
- Wherever your apps, users and data are heading, is your backup keeping up? https://www.theregister.com/2021/01/20/data_management_in_the_future/
- A Set of Severe Flaws Affect Popular DNSMasq DNS Forwarder https://thehackernews.com/2021/01/a-set-of-severe-flaws-affect-popular.html
- Critical Cisco SD-WAN Bugs Allow RCE Attacks https://threatpost.com/critical-cisco-sd-wan-bugs-rce-attacks/163204/ and https://www.theregister.com/2021/01/22/cisco_critical_vulnerabilities/
- Researchers Identify SAP Flaw Exploit https://www.databreachtoday.com/researchers-identify-sap-flaw-exploit-a-15829
- SonicWall says it was hacked using zero-days in its own products https://www.databreaches.net/sonicwall-says-it-was-hacked-using-zero-days-in-its-own-products/
- Another File Extension to Block in your MTA: .jnlp, (Fri, Jan 22nd) https://isc.sans.edu/diary/rss/27018
- Sharing eBook With Your Kindle Could Have Let Hackers Hijack Your Account https://thehackernews.com/2021/01/sharing-ebook-with-your-kindle-could.html
- Windows Exploitation Tricks: Trapping Virtual Memory Access https://googleprojectzero.blogspot.com/2021/01/windows-exploitation-tricks-trapping.html
- XDR investigation uncovers PlugX, unique technique in APT attack https://www.trendmicro.com/en_us/research/21/a/xdr-investigation-uncovers-plugx-unique-technique-in-apt-attack.html
- Flash Is Dead—but Not Gone https://www.wired.com/story/zombie-flash-security-problems
- Compressed Permutation Oracles (And the Collision-Resistance of Sponge/SHA3), by Dominique Unruh https://eprint.iacr.org/2021/062
- FPGA Offloading for Diffie-Hellman Key Exchangeusing Elliptic Curves, by Dorin-Marian Ionita and Emil Simion https://eprint.iacr.org/2021/065
Hacking / Malware / Cybercrime / Exploitation
News covering active trends, alerts, events.
-
Trends, Alerts, and Events (other than SolarWinds):
- Discord-Stealing Malware Invades npm Packages https://threatpost.com/discord-stealing-malware-npm-packages/163265/
- Fake COVID notification apps and websites aim to steal money and personal data https://www.cbc.ca/news/canada/nova-scotia/covid-apps-phones-scammers-fraudulent-personal-data-1.5877496
- FBI Warns of Increase in Vishing Attacks https://www.databreachtoday.com/fbi-warns-increase-in-vishing-attacks-a-15795
- Google Forms Set Baseline For Widespread BEC Attacks https://threatpost.com/google-forms-set-baseline-for-widespread-bec-attacks/163223/
- Hackers abusing this perfectly innocent Windows 10 feature to infect machines - finger https://www.techradar.com/news/hackers-abusing-this-perfectly-innocent-windows-10-feature-to-infect-machines
- Linux Devices Under Attack by New FreakOut Malware https://threatpost.com/linux-attack-freakout-malware/163137/
- QNAP warns users of a new crypto-miner named Dovecat infecting their devices https://www.zdnet.com/article/qnap-warns-users-of-a-new-crypto-miner-named-dovecat-infecting-their-devices
- Scanning Activity Detected After Release of Exploit for Critical SAP SolMan Flaw https://www.securityweek.com/scanning-activity-detected-after-release-exploit-critical-sap-solman-flaw
- Windows RDP servers are being abused to amplify DDoS attacks https://www.zdnet.com/article/windows-rdp-servers-are-being-abused-to-amplify-ddos-attacks
-
Nation State Actors:
- A Chinese hacking group is stealing airline passenger details https://www.databreaches.net/a-chinese-hacking-group-is-stealing-airline-passenger-details/
- Sophisticated Watering Hole Attack https://www.schneier.com/blog/archives/2021/01/sophisticated-watering-hole-attack.html
- SQL Server Malware Tied to Iranian Software Firm, Researchers Allege https://threatpost.com/sql-server-malware-tied-to-iranian-software-firm-researchers-allege/163230/
- An American hacker explains how accepting a random LinkedIn request led to the Iranian government hounding her with 'dodgy' job offers for years https://www.businessinsider.com/iranian-government-recruit-hacker-linkedin-chris-kubecka-2021-1
- Laptops given to British schools came preloaded with remote-access worm https://www.theregister.com/2021/01/21/dept_education_school_laptops_malware/
- Phishing scam had all the bells and whistles—except for one https://arstechnica.com/information-technology/2021/01/phishing-scam-had-all-the-bells-and-whistles-except-for-one/
- UK police warn of sextortion attempts in intimate online dating chats https://www.zdnet.com/article/uk-police-warn-of-sextortion-attempts-in-intimate-online-dating-chats great African IP address heist https://krebsonsecurity.com/2019/12/the-great-50m-african-ip-address-heist/
Other Security / Risk
Articles covering other types of risks.
- President Biden’s Tech To-Do List https://www.nytimes.com/2021/01/20/technology/president-biden-tech-priorities.html
- Importance of Application Security and Customer Data Protection to a Startup https://thehackernews.com/2021/01/importance-of-application-security-and.html
- Cryptocurrencies won't work as actual currencies since people have 'absolutely no certainty' of what they can buy with them tomorrow, a UBS chief economist says https://markets.businessinsider.com/currencies/news/cryptocurrencies-wont-work-actual-currencies-ubs-chief-economist-2021-1-1029994354
- How to investigate a firm with 60 million documents - https://www.bbc.co.uk/news/business-55306139
- Chip-shortage 'crisis' halts car-company output https://www.bbc.co.uk/news/technology-55704936
- A Washington company is creating $5,000 prefab tiny homes that can be setup in 30 minutes to help solve the homelessness crisis — see how it works https://www.businessinsider.com/pallet-prefab-tiny-homes-for-the-homeless-2021-1
- Far-right extremists take over UK land sales Facebook page https://www.theguardian.com/technology/2021/jan/20/far-right-extremists-take-over-uk-land-sales-facebook-page
-
Health, Safety & Environment:
- Canadian researchers create new form of cultivated meat https://scienmag.com/canadian-researchers-create-new-form-of-cultivated-meat/
- P.E.I. lozenge plant lays off 30 workers over ‘almost non-existent’ cold and cough season https://globalnews.ca/news/7593099/p-e-i-lozenge-plant-lay-offs/
- Eye tests predict Parkinson’s-linked cognitive decline 18 months ahead https://scienmag.com/eye-tests-predict-parkinsons-linked-cognitive-decline-18-months-ahead/
- How a £20 gadget could save lives https://www.bbc.co.uk/news/health-55733527
- How Elvis Got Americans to Accept the Polio Vaccine https://www.scientificamerican.com/article/how-elvis-got-americans-to-accept-the-polio-vaccine/
- Eliminating microplastics in wastewater directly at the source https://scienmag.com/eliminating-microplastics-in-wastewater-directly-at-the-source/
COVID-19 updates.
COVID related articles. We have been following coronavirus risks since https://controlgap.com/blog/this-weeks-insecurity-issue-147.
-
The spread, curves, spikes, waves, and reinfection:
- Pandemic Numbers Are (Finally) Tiptoeing in the Right Direction https://www.theatlantic.com/health/archive/2021/01/pandemic-data-encouraging-week/617768/
- The COVID-19 death toll in the US could reach 500,000 by mid-February, the incoming CDC director warned https://www.businessinsider.com/us-covid-deaths-death-toll-cdc-biden-walensky-2021-1
- US records 400,000 COVID-19 deaths as it continues to slow-walk its vaccination drive https://www.businessinsider.com/us-passes-400k-coronavirus-deaths-stunted-vaccination-rollout-2021-1
- UK records highest daily virus deaths https://www.bbc.co.uk/news/live/uk-55730549
- Ontario reports fewer than 2,700 new cases of COVID-19 as positivity rate continues to drop https://toronto.ctvnews.ca/ontario-reports-fewer-than-2-700-new-cases-of-covid-19-as-positivity-rate-continues-to-drop-1.5277929
- 350 Canada Post employees at Mississauga, Ont. facility sent home to self-isolate as cases continue to rise https://toronto.ctvnews.ca/350-canada-post-employees-at-mississauga-ont-facility-sent-home-to-self-isolate-as-cases-continue-to-rise-1.5279578
- There are at least 90 COVID-19 cases at Milton, Ont. correctional facility, union confirms https://toronto.ctvnews.ca/there-are-at-least-90-covid-19-cases-at-milton-ont-correctional-facility-union-confirms-1.5278725
-
New Variants:
- A Troubling New Pattern Among the Coronavirus Variants https://www.theatlantic.com/health/archive/2021/01/coronavirus-evolving-same-mutations-around-world/617721/
- New UK coronavirus variant 'may be more deadly' https://www.bbc.co.uk/news/health-55768627
- What's different about the coronavirus 'variants of concern' flagged by WHO https://www.cbc.ca/news/health/coronavirus-variants-concern-canada-1.5879223
- The Pfizer vaccine works against the contagious virus variant first found in UK, a new study shows https://www.businessinsider.com/coronavirus-variant-vaccine-pfizer-biontech-works-uk-study-2021-1
- Vaccines may not work as well against the coronavirus variant detected in South Africa, research shows. People may also face a risk of reinfection. https://www.businessinsider.com/coronavirus-variant-south-africa-vaccines-2021-1
- U.K. variant confirmed at Barrie, Ont., care home where 32 have died https://barrie.ctvnews.ca/u-k-variant-confirmed-at-barrie-ont-care-home-where-32-have-died-1.5279379
-
Impact:
- Downtown Toronto traffic dips to 63 per cent of normal volumes after new restrictions implemented https://toronto.ctvnews.ca/downtown-toronto-traffic-dips-to-63-per-cent-of-normal-volumes-after-new-restrictions-implemented-1.5277781
-
Guidance, Response, and Recovery:
- Amazon Says Its Ready To Assist US With COVID-19 Vaccine Effort https://www.pymnts.com/coronavirus/2021/amazon-says-its-ready-to-assist-us-with-covid-19-vaccine-effort/
- Global air routes are cutoff as the Netherlands imposes one of the strictest travel requirements worldwide to combat new COVID-19 variants https://www.businessinsider.com/klm-cancels-long-haul-flights-after-netherlands-travel-restrictions-2021-1
- Justin Trudeau mulls mandatory hotel quarantine for returning travellers https://globalnews.ca/news/7594233/trudeau-mandatory-hotel-quarantine-covid-ca/
- Too early to credit curfew for drop in COVID-19 cases in Quebec, health experts say https://globalnews.ca/news/7588826/quebec-curfew-experts-too-early-benefits/
- Toronto businesses getting digital help after being forced to compete online due to COVID-19 https://www.cbc.ca/news/canada/toronto/toronto-businesses-getting-digital-help-after-being-forced-to-compete-online-due-to-covid-19-1.5870691
- Two mobile hospital units will be deployed to the Greater Toronto Area, Trudeau says https://toronto.ctvnews.ca/two-mobile-hospital-units-will-be-deployed-to-the-greater-toronto-area-trudeau-says-1.5278195
- Northwest Angle Has Been Isolated From US Mainland for 10 Months https://www.accuweather.com/en/business/northwest-angle-has-been-isolated-from-us-mainland-for-10-months/884036
-
Treatments, Testing, Triage, Trials, and things we Learned:
- Could a Smell Test Screen People for Covid? https://www.nytimes.com/2021/01/19/health/coronavirus-testing-smell-odor.html
- London, Ont., COVID-19 antibody test under review could allow for fast, inexpensive testing https://globalnews.ca/news/7588155/london-coronavirus-covid-19-antibody-test-fast-inexpensive-testing/
- Pregnant women added to coronavirus vaccine priority list in Israel after several hospitalizations https://globalnews.ca/news/7587954/israel-pregnant-women-vaccines/
- Vaccinated people may spread Covid, says UK expert https://www.bbc.co.uk/news/uk-55784199
- Vaccines Need Not Completely Stop COVID Transmission to Curb the Pandemic https://www.scientificamerican.com/article/vaccines-need-not-completely-stop-covid-transmission-to-curb-the-pandemic1/
- COVID Can Cause Forgetfulness, Psychosis, Mania or a Stutter https://www.scientificamerican.com/article/covid-can-cause-forgetfulness-psychosis-mania-or-a-stutter/
- Here's what we know about outdoor transmission of COVID-19 during winter https://www.cbc.ca/news/canada/british-columbia/outdoor-transmission-covid-winter-1.5878531
- How to Have a COVID-Safe Car Ride, According to Science https://www.sciencealert.com/best-evidence-based-tips-for-the-most-covid-safe-car-ride-possible
-
Immunity, Vaccines, and Vaccination:
- More than 16,000 vaccine doses potentially spoiled in Maine and Michigan by temperature problems https://www.washingtonpost.com/nation/2021/01/20/moderna-vaccine-spoiled-maine-michigan/
- Ontario's first major COVID-19 vaccine site will stop administering shots immediately https://toronto.ctvnews.ca/ontario-s-first-major-covid-19-vaccine-site-will-stop-administering-shots-immediately-1.5273594
- Pfizer tells Canada it will not receive any Covid-19 vaccine doses next week https://www.cnn.com/2021/01/20/americas/pfizer-canada-vaccine/index.html
- Quebec vaccine plan may be rethought after troubling Israeli data, says provincial adviser https://montreal.ctvnews.ca/quebec-vaccine-plan-may-be-rethought-after-troubling-israeli-data-says-provincial-adviser-1.5275234
- Questions swirl around what’s needed to achieve herd immunity https://globalnews.ca/news/7591374/herd-immunity-covid-19-questions-alberta/
- The Second-Generation COVID Vaccines Are Coming https://www.scientificamerican.com/article/the-second-generation-covid-vaccines-are-coming/
- Vaccine delays halt Pfizer jabs in parts of Europe https://www.bbc.co.uk/news/world-europe-55765556
- Vaccine rollout: How Canada compares with other countries https://globalnews.ca/news/7586241/canada-coronavirus-vaccine-rollout-comparison/
-
More of the good, the bad, and the ugly:
- A Texas doctor has been charged with stealing 9 doses of the COVID-19 vaccine 'for friends and family' https://www.businessinsider.com/texas-doctor-charged-stealing-covid-19-vaccine-doses-2021-1
- All 4 nurses in a Kansas county's health department refused to give out COVID-19 vaccines https://www.businessinsider.com/kansas-nurses-refuse-giving-covid-19-vaccine-misinformation-2021-1
-
Masks, anti-maskers, distancing, compliance, and repercussions:
- CES showed off the COVID-19 mask gimmick arms race https://www.theverge.com/2021/1/16/22233507/ces-masks-covid-pandemic-capitol-antivirus
- Airlines have banned more than 2,500 passengers for not wearing masks — here are the carriers that have booted the most https://www.businessinsider.com/number-of-people-banned-by-us-airlines-not-wearing-mask-2021-1
- Ontario barbershop reopens despite provincial lockdown using loophole https://toronto.ctvnews.ca/ontario-barbershop-reopens-despite-provincial-lockdown-using-loophole-1.5276668
- Ontario couple who contracted U.K. COVID-19 variant charged after allegedly misleading contact tracers https://toronto.ctvnews.ca/ontario-couple-who-contracted-u-k-covid-19-variant-charged-after-allegedly-misleading-contact-tracers-1.5277338
- Police break up illegal rave of more than 300 people in east London https://edition.cnn.com/world/live-news/coronavirus-pandemic-vaccine-updates-01-24-21/h_55e8ded52a8d60d61416f2047f63f570
- Covid: Wedding party in Stamford Hill broken up by police https://www.bbc.co.uk/news/uk-england-london-55764673
- Walmart, Costco, Shoppers Drug Mart among businesses fined for COVID violations: York Region https://toronto.citynews.ca/2021/01/19/walmart-costco-shoppers-drug-mart-among-businesses-fined-for-covid-violations-york-region/
- Hospital fires Ontario nurse who travelled to U.S. for anti-lockdown event https://london.ctvnews.ca/hospital-fires-ontario-nurse-who-travelled-to-u-s-for-anti-lockdown-event-1.5272661
Off-Topic / Science & Tech / Lighter Side
A variety of scientific, technical, historical, and more light-hearted news.
- 6 Ways to Open a Bottle Without a Bottle Opener (paper really?) https://www.mentalfloss.com/article/639844/how-open-bottle-without-bottle-opener
- All five seasons of The Muppet Show are heading to Disney Plus https://www.theverge.com/2021/1/19/22238672/muppet-show-disney-plus-seasons-streaming-movies-manhattan-space-sony
- Alexander Graham Bell Goes and Flies a Kite--for Science https://www.scientificamerican.com/article/alexander-graham-bell-goes-and-flies-a-kite-for-science/
- An anode-free zinc battery that could someday store renewable energy https://scienmag.com/an-anode-free-zinc-battery-that-could-someday-store-renewable-energy/
- Traces of a Mysterious Particle Predicted Decades Ago May Have Been Detected https://www.sciencealert.com/neutron-star-x-rays-may-be-produced-by-the-elusive-hypothetical-axion-particle
- Canada Arm engineer has died https://www.gearedmotion.com/on-the-passing-of-robin-garland-canadarm-engineer-and-mentor
- Virgin Orbit Successfully Launches a Batch of Satellites From an Airplane https://www.universetoday.com/149717/virgin-orbit-successfully-launches-a-batch-of-satellites-from-an-airplane/
- Why the risk of orbital collisions is skyrocketing https://www.theverge.com/science/22229792/space-orbital-collisions-risk-satellites-real-time
- A Habitat at Ceres Could be the Gateway to the Outer Solar System https://www.universetoday.com/149590/a-habitat-at-ceres-could-be-the-gateway-to-the-outer-solar-system/
- Planets are Finally Being Discovered Orbiting Farther From Their Stars https://www.universetoday.com/149667/planets-are-finally-being-discovered-orbiting-farther-from-their-stars/
- Turns out, you can get something out of a black hole...but it’s not easy https://www.syfy.com/syfywire/magnetic-fields-can-drain-energy-out-of-black-holes