This Week's [in]Security - Issue 224
18 Jul 2021.
Welcome to This Week’s [in]Security. Major-events: REvil goes dark, Kaseya. New breaches: Guess. New Ransomware: EA, D-Box, Campbell Conroy & O'Neil, Revelstoke. Follow-ups & Fall-out: Spin, Interpol, Tracking, Rebuilding. Privacy: Clearview AI, Scraping. Laws & Regs: Ransomware Response, Reward, Repair, Zero Day Hoarding. Defense: Tracker blocking, HTTPS-first, RDP, Talent, Quantum error correction & supremacy. Vulnerabilities: Browsers, SolarWinds, Commercial spyware, WordPress WooCommerce, Cloudflare, More Print Spooler, Windows Hello, D-Link, SonicWall, Elevators. Cybercrime: Trends. Nation States. Crime. Other Risks. Health, Safety & Environment. Ontario Tornados, Covid-19: Spread, Curves, Waves, and Variants. And more.
PCI Compliance and Payments
News and announcements relating to Payment Security, PCI, Card Brands, Payments, Payment Malware and Fraud, and Payment Related Compliance.
- PCI SSC Shares Resources for Navigating Changing Payment Environments https://blog.pcisecuritystandards.org/pci-ssc-shares-resources-for-navigating-changing-payment-environments
- What's public about DSSv4 - updated with new information https://controlgap.com/blog/PCI-DSSv4-is-Coming
Breaches / Ransomware / Leaks
Covering breaches, leaks, data exposures, ransomware (as potential breach), and their fallout.
-
Major incidents:
- REvil is Off-Line https://www.schneier.com/blog/archives/2021/07/revil-is-off-line.html and https://www.bleepingcomputer.com/news/security/revil-ransomware-gangs-web-sites-mysteriously-shut-down/
- Firm Hacked to Spread Ransomware Had Previous Security Flaws https://www.securityweek.com/firm-hacked-spread-ransomware-had-previous-security-flaws
-
New Breaches:
- You'll never Guess whose data has been nicked as US fashion firm confirms systems breach https://www.theregister.com/2021/07/13/guess_spread_group_data_breaches/
- Dermatology Clinic Chain Breach Affects 2.4 Million https://www.databreachtoday.com/dermatology-clinic-chain-breach-affects-24-million-a-17074
- Za: Bank account details stolen in major insurance hack in South Africa https://www.databreaches.net/za-bank-account-details-stolen-in-major-insurance-hack-in-south-africa/
- Nl: Leak at Covid testing company made it possible to fake results in CoronaCheck app https://www.databreaches.net/nl-leak-at-covid-testing-company-made-it-possible-to-fake-results-in-coronacheck-app/
- An insurtech startup exposed thousands of sensitive insurance applications https://www.databreaches.net/an-insurtech-startup-exposed-thousands-of-sensitive-insurance-applications/
- Dotty's Reveals Details about Data Breach Incident https://www.databreaches.net/dottys-reveals-details-about-data-breach-incident/
- Millennia Group notifying people of 2019 email breach https://www.databreaches.net/millennia-group-notifying-people-of-2019-email-breach/
- Ransomware attack at Comparis resulted in data breach https://www.databreaches.net/ransomware-attack-at-comparis-resulted-in-data-breach/
- This is the data watchdog! Surrender your Matt Hancock smoochy-kiss pics right now! https://www.theregister.com/2021/07/15/ico_matt_hancock_raids/
-
New Ransomware and "Incidents":
- Hackers Move to Extort Gaming Giant EA https://www.vice.com/en/article/m7e57n/hackers-extort-ea-fifa
- D-Box Technologies hit by ransomware that affected most of its systems https://www.databreaches.net/d-box-technologies-hit-by-ransomware-that-affected-most-of-its-systems/
- Ransomware hits law firm counseling Fortune 500, Global 500 companies https://www.bleepingcomputer.com/news/security/ransomware-hits-law-firm-counseling-fortune-500-global-500-companies/
- Ca: Revelstoke Mountaineer white-hat notification of data security issues causes City of Revelstoke to disable emergency notification system https://www.databreaches.net/ca-revelstoke-mountaineer-white-hat-notification-of-data-security-issues-causes-city-of-revelstoke-to-disable-emergency-notification-system/
- Practicefirst Supply Chain Ransomware Breach Affects 1.2 Million https://www.databreachtoday.com/supply-chain-ransomware-breach-affects-12-million-a-17062
-
Follow-ups and fall-out:
- The new minimization technique for breach disclosures? (longer text, saying less) https://www.databreaches.net/the-new-minimization-technique-for-breach-disclosures/
- HHS warns entities; patients file potential class action lawsuit over PACS breach https://www.databreaches.net/hhs-warns-entities-patients-file-potential-class-action-lawsuit-over-pacs-breach/
- Interpol urges police to unite against 'potential ransomware pandemic' https://www.bleepingcomputer.com/news/security/interpol-urges-police-to-unite-against-potential-ransomware-pandemic/
- New 'Ransomwhere' Site Tracks Ransom Payments https://www.databreachtoday.com/new-ransomwhere-site-tracks-ransom-payments-a-17055
- This Company Was Hit With a Devastating Ransomware Attack-But Instead of Giving In, It Rebuilt Everything https://time.com/6080293/norsk-hydro-ransomware-attack/
Privacy
Articles about privacy related news, risks, and trends.
- Clearview's Face Surveillance Still Has No First Amendment Defense https://www.eff.org/deeplinks/2021/07/clearviews-face-surveillance-still-has-no-first-amendment-defense
- How your personal data is being scraped from social media https://www.bbc.co.uk/news/business-57841239
- 'Once it's out there, you can't get it back,' OPP warn after online extortion attempt https://globalnews.ca/news/8033444/opp-warning-online-extortion-attempt/
Laws, Regulations, Platforms, Standards, and Public Policy
News about laws, regulations, platform rules, and standards affecting security, privacy, technology, and public interest.
-
US:
- Biden Weighs a Response to Ransomware Attacks https://www.nytimes.com/2021/07/07/us/politics/biden-ransomware-russia.html
- US Blacklists 6 Russian Organizations Over Security Concerns https://www.databreachtoday.com/us-blacklists-6-russian-organizations-over-security-concerns-a-17091
- Wanted: State-backed bandits planning cyberattacks on US infrastructure. Reward: $10m https://www.theregister.com/2021/07/16/us_10m_reward_cybercrime/
- Why You Should Care About Your Right to Repair Gadgets https://www.nytimes.com/2021/07/14/technology/personaltech/right-to-repair-iphones-android.html
- US Lawmakers Urge Regulation Of Facial-Recognition Use https://www.pymnts.com/news/regulation/2021/united-states-lawmakers-urge-regulation-facial-recognition-use/
- Colorado Passes Consumer Privacy Law https://www.schneier.com/blog/archives/2021/07/colorado-passes-consumer-privacy-law.html
- Ohio Introduces Data Privacy Legislation https://www.databreaches.net/ohio-introduces-data-privacy-legislation/
- WI: Governor Evers Signs Law to Enhance Insurance Cybersecurity Measures https://www.databreaches.net/wi-governor-evers-signs-law-to-enhance-insurance-cybersecurity-measures/
- U.S. regulator sues Amazon, demands recall of hazardous products https://globalnews.ca/news/8033230/safety-regulator-amazon-recall-hazardous-products/
- Right or Left, You Should Be Worried About Big Tech Censorship https://www.eff.org/deeplinks/2021/07/right-or-left-you-should-be-worried-about-big-tech-censorship
- Duped US politician loses Baron Cohen lawsuit https://www.bbc.co.uk/news/entertainment-arts-57833093
-
World:
- China Taking Control of Zero-Day Exploits https://www.schneier.com/blog/archives/2021/07/china-taking-control-of-zero-day-exploits.html
- UK's Draft Online Safety Bill Raises Serious Concerns Around Freedom of Expression https://www.eff.org/deeplinks/2021/07/uks-draft-online-safety-bill-raises-serious-concerns-around-freedom-expression
- DNS Provider Hit With Outrageous Blocking Order - Is Your Provider Next? https://www.eff.org/deeplinks/2021/07/dns-provider-hit-outrageous-blocking-order-your-provider-next
- Google has been hit with another fine in Europe, this time for $593 million in France after failing to strike a deal with news publishers https://www.businessinsider.com/france-google-slapped-with-593-million-fine-antitrust-agency-2021-7
- China's Shenzhen City Enacted Regional Data Regulation https://www.databreaches.net/chinas-shenzhen-city-enacted-regional-data-regulation/
Defense / Techniques / Solutions
Covering developments and opportunities that may help improve security.
- Defeating the Organized Cybercrime Ecosystem https://www.securityweek.com/defeating-organized-cybercrime-ecosystem
- New CISA Director Confirmed, White House Gains Cyber-Director https://threatpost.com/cisa-director-confirmed-white-house-cyber-director/167710/
- White House Ransomware Task Force Tries To Stem The Tide Of Attacks https://www.pymnts.com/news/security-and-risk/2021/white-house-ransomware-task-force-tries-to-stem-the-tide-of-attacks/
- Ottawa adds national security risk assessments to federal research grant applications https://www.cbc.ca/news/politics/ottawa-reserach-champagne-security-1.6099163
- Dutch ethical hackers on a mission to fix the internet https://www.databreaches.net/dutch-ethical-hackers-on-a-mission-to-fix-the-internet/
- Firefox 90 adds enhanced tracker blocking to private browsing https://www.bleepingcomputer.com/news/security/firefox-90-adds-enhanced-tracker-blocking-to-private-browsing/
- Google Chrome will add HTTPS-First Mode to keep your data safe https://www.bleepingcomputer.com/news/security/google-chrome-will-add-https-first-mode-to-keep-your-data-safe/
- Is Remote Desktop Protocol Secure? It Can Be https://threatpost.com/remote-desktop-protocol-secure/167719/
- How to Attract More Computer Science Grads to the Cybersecurity Field https://www.darkreading.com/careers-and-people/how-to-attract-more-computer-science-grads-to-the-cybersecurity-field/d/d-id/1341490
- The Internet of Things is a Complete Mess (and how to Fix it) https://www.troyhunt.com/the-internet-of-things-is-a-complete-mess-and-how-to-fix-it/
- Google's Certificate Authority Service leaves preview, now generally available https://www.zdnet.com/article/googles-certificate-authority-service-leaves-preview-is-now-generally-available
- Microsoft to Acquire RiskIQ https://www.databreachtoday.com/microsoft-to-acquire-riskiq-a-17028
- How Do You Stop Robocalls? https://www.nytimes.com/article/stop-robocalls-scam-fcc.html
- Google tries out error correction on its quantum processor https://arstechnica.com/science/2021/07/google-tries-out-error-correction-on-its-quantum-processor/
- Record-Breaking Chinese Supercomputer Marks New Quantum Supremacy Milestone https://www.sciencealert.com/china-s-latest-56-qubit-computer-marks-another-quantum-milestone
- Welcoming the Israeli Government to Have I Been Pwned https://www.troyhunt.com/welcoming-the-israeli-government-to-have-i-been-pwned/
Bugs / Design Flaws / Vulnerabilities / Research
Articles about newly discovered vulnerabilities and research.
- (All your Browsers belong to us?) Google finds zero-day security flaws in all your favorite browsers https://www.techradar.com/news/google-finds-zero-day-security-flaws-in-all-your-favorite-browsers
- Google: New Chrome Zero-Day Being Exploited https://www.securityweek.com/google-new-chrome-zero-day-being-exploited
- Google: Russian SVR hackers targeted LinkedIn users with Safari zero-day https://www.bleepingcomputer.com/news/security/google-russian-svr-hackers-targeted-linkedin-users-with-safari-zero-day/
- Safari Zero-Day Used in Malicious LinkedIn Campaign https://threatpost.com/safari-zero-day-linkedin/167814/
- Hackers used SolarWinds zero-day bug to target US Defense orgs https://www.bleepingcomputer.com/news/microsoft/hackers-used-solarwinds-zero-day-bug-to-target-us-defense-orgs/
- Microsoft discovers critical SolarWinds zero-day under active attack https://arstechnica.com/gadgets/2021/07/microsoft-discovers-critical-solarwinds-zero-day-under-active-attack/
- Pegasus spyware used to target phones of journalists and activists, investigation finds https://www.theverge.com/2021/7/18/22582532/pegasus-nso-spyware-target-phones-journalists-activists-investigation
- Protecting customers from a private-sector offensive actor using 0-day exploits and DevilsTongue malware https://www.microsoft.com/security/blog/2021/07/15/protecting-customers-from-a-private-sector-offensive-actor-using-0-day-exploits-and-devilstongue-malware/
- Windows 0-Days Used Against Dissidents in Israeli Broker's Spyware https://threatpost.com/windows-zero-days-israeli-spyware-dissidents/167865/
- Critical WooCommerce Vulnerability Targeted Hours After Patch https://www.securityweek.com/critical-woocommerce-vulnerability-targeted-hours-after-patch
- WooCommerce fixes vulnerability exposing 5 million sites to data theft https://www.bleepingcomputer.com/news/security/woocommerce-fixes-vulnerability-exposing-5-million-sites-to-data-theft/
- WordPress File Management Plugin Riddled with Critical Bugs https://threatpost.com/frontend-file-manager-wordpress-bugs/167687/
- Cloudflare fixes CDN code execution bug affecting 12.7% of all sites https://www.bleepingcomputer.com/news/security/cloudflare-fixes-cdn-code-execution-bug-affecting-127-percent-of-all-sites/
- Defcon Talk Prompts New Windows Print Spooler Flaw Warning https://www.securityweek.com/defcon-talk-prompts-new-windows-print-spooler-flaw-warning
- Hackers Got Past Windows Hello by Tricking a Webcam https://www.wired.com/story/windows-hello-facial-recognition-bypass
- Microsoft Crushes 116 Bugs, Three Actively Exploited https://threatpost.com/microsoft-crushes-116-bugs/167764/
- Microsoft's print nightmare continues with malicious driver packages https://www.bleepingcomputer.com/news/microsoft/microsofts-print-nightmare-continues-with-malicious-driver-packages/
- You'll want to shut down the Windows Print Spooler service (yes, again): Another privilege escalation bug found https://www.theregister.com/2021/07/16/spooler_service_local_privilege_escalation/
- D-Link issues hotfix for hard-coded password router vulnerabilities https://www.bleepingcomputer.com/news/security/d-link-issues-hotfix-for-hard-coded-password-router-vulnerabilities/
- SonicWall Warns of Imminent Ransomware Attacks Targeting Firmware Flaw https://www.securityweek.com/sonicwall-warns-imminent-ransomware-attacks-targeting-firmware-flaw
- Cybersecurity can protect data. How about elevators? https://www.technologyreview.com/2021/07/12/1028269/cybersecurity-can-protect-data-how-about-elevators/
- Critical RCE Vulnerability in ForgeRock OpenAM Under Active Attack https://threatpost.com/critical-vulnerability-rce-forgerock-openam/167679/
- For years, a backdoor in popular KiwiSDR product gave root to project developer https://arstechnica.com/gadgets/2021/07/for-years-a-backdoor-in-popular-kiwisdr-product-gave-root-to-project-developer/
- Modipwn: code execution vulnerability discovered in Schneider Electric Modicon PLCs https://www.zdnet.com/article/modipwn-critical-vulnerability-discovered-in-schneider-electric-modicon-plcs
- Unpatched Critical RCE Bug Allows Industrial, Utility Takeovers https://threatpost.com/unpatched-critical-rce-industrial-utility-takeovers/167751/
- Detonating Ransomware on My Own Computer (Don't Try This at Home) https://www.bleepingcomputer.com/news/security/detonating-ransomware-on-my-own-computer-don-t-try-this-at-home/
- How to Make a Secure Index for Searchable Symmetric Encryption, Revisited, by Yohei Watanabe and Takeshi Nakai and Kazuma Ohara and Takuya Nojima and Yexuan Liu and Mitsugu Iwamoto and Kazuo Ohta https://eprint.iacr.org/2021/948
Hacking / Malware / Cybercrime / Exploitation
News covering active trends, alerts, events.
-
Trends, Alerts, and Events (other than major breaches):
- IoT-Specific Malware Infections Jumped 700% Amid Pandemic https://www.darkreading.com/endpoint/iot-specific-malware-infections-jumped-700--amid-pandemic/d/d-id/1341537
- Microsoft Tops the 10 Most-Phished List, But Three Big Payment Brands Also Appear https://www.digitaltransactions.net/microsoft-tops-the-10-most-phished-list-but-three-big-payment-brands-also-appear/
- Yearlong Phishing Campaign Targets Energy Firms https://www.databreachtoday.com/yearlong-phishing-campaign-targets-energy-firms-a-17025
- Linux-Focused Cryptojacking Gang Tracked to Romania https://threatpost.com/linux-cryptojacking-gang-romania/167783/
- Why We Need to Raise the Red Flag Against FragAttacks https://www.darkreading.com/attacks-breaches/why-we-need-to-raise-the-red-flag-against-fragattacks/a/d-id/1341485
- Video: CyberChef BASE85 Decoding, (Sun, Jul 18th) https://isc.sans.edu/diary/rss/27644
-
Nation State Actors:
- Hooking Candiru: Another Mercenary Spyware Vendor Comes into Focus https://citizenlab.ca/2021/07/hooking-candiru-another-mercenary-spyware-vendor-comes-into-focus/
- Israeli Firm Helped Governments Target Journalists, Activists with 0-Days and Spyware https://thehackernews.com/2021/07/israeli-firm-helped-governments-target.html
- Facebook Catches Iranian Spies Catfishing US Military Targets https://www.wired.com/story/facebook-iran-espionage-catfishing-us-military
- Iranian State-Sponsored Hacking Attempts https://www.schneier.com/blog/archives/2021/07/iranian-state-sponsored-hacking-attempts.html
- Fake Zoom App Dropped by New APT 'LuminousMoth' https://threatpost.com/zoom-apt-luminous-moth/167822/
- Microsoft attributes new SolarWinds attack to a Chinese hacker group https://www.theverge.com/2021/7/14/22577471/microsoft-solarwinds-hack-zero-day-serv-u
-
Crime & Arrests, etc.:
- Met police seize nearly £180m of bitcoin in money laundering investigation https://www.theguardian.com/technology/2021/jul/13/met-police-bitcoin-money-laundering-cryptocurrency
- US, Canadian Authorities Save Company From $750K BEC Scam https://www.pymnts.com/news/b2b-payments/2021/united-states-canadian-authorities-save-company-from-750000-dollar-bec-scam/
- Romanian 19-year-old charged with thousands in local ATM withdrawal thefts https://www.databreaches.net/romanian-19-year-old-charged-with-thousands-in-local-atm-withdrawal-thefts/
- Walgreens thief who faked a COVID-19 diagnosis and coughed on staff faces up to 20 years in prison https://www.businessinsider.com/walgreens-customer-who-faked-covid-coughed-staff-faces-prison-2021-7
Other Security / Risk
Articles covering other types of risks.
- No more mind reading https://www.technologyreview.com/2021/07/14/1028447/facebook-brain-reading-interface-stops-funding
- On the internet, nobody knows you're a dog - or a fake Russian Twitter account https://scienmag.com/on-the-internet-nobody-knows-youre-a-dog-or-a-fake-russian-twitter-account/
- Why small design decisions can matter https://www.theverge.com/22574164/design-device-airtags-jabra-elite-75t-features
- Analysis of the FBI's Anom Phone https://www.schneier.com/blog/archives/2021/07/analysis-of-the-fbis-anom-phone.html
- The FBI's Fake Encrypted Honeypot ANOM Phones Are Showing Up Online https://gizmodo.com/the-fbis-fake-encrypted-honeypot-phones-are-showing-up-1847252989
- The Trouble With Automated Cybersecurity Defenses https://www.darkreading.com/analytics/the-trouble-with-automated-cybersecurity-defenses/a/d-id/1341477
- Twitter admits it verified several fake accounts https://www.theverge.com/2021/7/13/22575025/twitter-verified-fake-accounts-botnet-researcher
- What Ever Happened to IBM's Watson? https://www.nytimes.com/2021/07/16/technology/what-happened-ibm-watson.html
-
Windows news:
- Microsoft just blew up the only reason you cant use a linux desktop https://www.zdnet.com/article/microsoft-just-blew-up-the-only-reason-you-cant-use-a-linux-desktop/
- Windows 10 21H2 preview released with new security features https://www.bleepingcomputer.com/news/microsoft/windows-10-21h2-preview-released-with-new-security-features/
- Windows 11 is full of delightful detail https://www.theverge.com/2021/7/13/22575431/microsoft-windows-11-design-animations-start-menu
- Windows as a service is dead https://www.computerworld.com/article/3624741/say-goodbye-to-all-that-microsoft-ends-windows-as-a-service.html
- The Truth Behind the Amazon Mystery Seeds doesn't RequireConspiracy Therories https://www.theatlantic.com/science/archive/2021/07/unsolicited-seeds-china-brushing/619417/
- In 1962, the US detonated a nuclear device called Starfish in space https://www.nationalgeographic.com/science/article/why-the-us-once-set-off-a-nuclear-bomb-in-space-called-starfish-prime
- Almost half of prospective buyers under 45 considering moving out of Ontario to buy home: poll https://globalnews.ca/news/8023310/ontario-real-estate-houses-condos-ownership-poll/
- Shrinkflation is happening across grocery stores - here are 14 of the most extreme examples, from toilet paper to candy bars https://www.businessinsider.com/shrinkflation-grocery-stores-pringles-cereal-candy-bars-chocolate-toilet-paper-cadbury-2021-7
- COVID-19 disinformation likely to target Canadian voters in next election, agency warns https://globalnews.ca/news/8033453/canadian-election-2021-covid-disinformation/
-
Health, Safety & Environment:
- Alcohol use linked to 7,000 new cancer cases in Canada in 2020, study shows https://globalnews.ca/news/8027958/alcohol-consumption-canada-canada-2020/
- Is the tick that bit you carrying Lyme disease? New research eyes rapid test to find out https://globalnews.ca/news/8037707/lyme-disease-ticks-infection-research-queens/
- Raw Dog Food Could Be Fueling The Spread of Antibiotic-Resistant Superbugs https://www.sciencealert.com/raw-dog-food-could-be-fuelling-the-spread-of-antibiotic-resistant-superbugs
- The vomiting bug norovirus is surging in the the UK as it prepares to lift of all of its COVID-19 restrictions https://www.businessinsider.com/highly-contagious-vomiting-bug-surges-uk-as-covid-restrictions-lift-2021-7
- W.H.O. Experts Seek Limits on Human Gene-Editing Experiments https://www.nytimes.com/2021/07/12/science/gene-editing-crispr-who.html
- NIH-funded study finds gene therapy may restore missing enzyme in rare disease https://scienmag.com/nih-funded-study-finds-gene-therapy-may-restore-missing-enzyme-in-rare-disease/
- Nose Drops With Genetically Modified Bacteria Could Protect Against Deadly Disease https://www.sciencealert.com/friendly-genetically-modified-bacteria-in-nose-drops-can-protect-against-meningitis
- Door-to-door scam targets tornado-stricken Barrie, Ont. residents https://barrie.ctvnews.ca/door-to-door-scam-targets-tornado-stricken-barrie-ont-residents-1.5512413
- Ontario hit by 5 EF2 tornadoes most powerful since 1985, 71 homes in Barrie destroyed https://www.680news.com/2021/07/18/ntp-confirms-5-ef-2-tornadoes-struck-southern-ontario-on-thursday/
- Australians want to rebrand shark attacks as 'negative encounters.' Survivors don't necessarily agree. https://www.washingtonpost.com/nation/2021/07/16/shark-attack-negative-encounters-australia/
- Man killed by shark while urinating in the ocean at Brazil beach https://globalnews.ca/news/8029730/shark-attack-killed-man-urinating-drunk-ocean-brazil/
- Remains of third Canadian pulled from Surfside condo collapse: GAC https://globalnews.ca/news/8034504/third-canadian-remains-florida-condo-collapse/
- Italy bus driver saves 25 children from vehicle blaze https://www.bbc.co.uk/news/world-europe-57804656
- US wants giant radar in UK to track space objects https://www.bbc.co.uk/news/uk-57866734
- Just 25 mega-cities produce 52% of the world's urban greenhouse gas emissions https://scienmag.com/just-25-mega-cities-produce-52-of-the-worlds-urban-greenhouse-gas-emissions/
- Science failed to predict extreme weather https://www.bbc.co.uk/news/science-environment-57863205
- Heat wave: More than 800 died in B.C. in a single week, four times more than normal https://globalnews.ca/news/8034644/heat-wave-bc-coroners-service-report/
- California's power grid has a big drought problem https://www.theverge.com/2021/7/12/22573648/drought-california-power-grid-electricity-hydro-energy
- Florida breaks manatee death record in first six months of 2021 https://www.bbc.co.uk/news/world-us-canada-57802165
- 8 Creative Ways People Kept Cool Before Air Conditioning https://www.mentalfloss.com/article/648157/ways-people-kept-cool-before-air-conditioning
- New 'Metafabric' Passively Cools The Human Body by Almost 5 Degrees Celsius https://www.sciencealert.com/new-metafabric-could-passively-cool-the-human-body-by-almost-5-degrees-celsius
- Sea-level rise solutions https://scienmag.com/sea-level-rise-solutions/
- How electric vehicles could transform the power grid https://www.cbc.ca/news/science/ev-to-grid-1.6100454
- The Havoc Caused by Shipworms Remains a Mystery After Thousands of Years https://www.sciencealert.com/the-havoc-caused-by-shipworms-remains-a-mystery-after-thousands-of-years
- They stole prized lumber from a national forest. The trees' DNA proved it, feds say. https://www.washingtonpost.com/nation/2021/07/12/justin-wilke-tree-dna-theft/
COVID-19 updates.
COVID related articles. We have been following coronavirus risks since https://controlgap.com/blog/this-weeks-insecurity-issue-147.
-
The spread, curves, spikes, waves, reinfection, and variant strains:
- CDC director says COVID-19 is 'becoming a pandemic of the unvaccinated' https://www.businessinsider.com/cdc-director-says-covid-19-hospitalizations-are-mostly-unvaccinated-2021-7
- The 'Lambda' Variant Is Now Found in 29 Countries. Here's What We Know About It https://www.sciencealert.com/covid-19-lamba-variant-has-now-spread-to-29-countries-here-s-what-we-know
- 964 people got COVID-19 after an outdoor music festival, despite compulsory negative tests, vaccines, or other proof of immunity https://www.businessinsider.com/964-coronavirus-verknipt-netherlands-despite-test-vaccine-rules-2021-7
- India's true COVID-19 death toll could be as high as 2.4 million, 6 times the official figures, experts warn https://www.businessinsider.com/indias-true-covid-19-death-toll-2021-7
- 1 in 5 cases of COVID-19 are now happening in Florida alone, White House official says https://www.businessinsider.com/1-in-5-covid-19-cases-happening-in-florida-alone-2021-7
- The Atlantic Daily: Missouri Is a Warning https://www.theatlantic.com/newsletters/archive/2021/07/the-atlantic-daily-missouri-is-a-warning/619470/
- Feds unaware if 66% of incoming travellers quarantined during 1st COVID-19 wave: report https://globalnews.ca/news/8022021/covid-19-quarantine-audit-canada/
- Is Your Office Safe from COVID? What to Know Now That Your Boss Wants You Back https://www.scientificamerican.com/article/is-your-office-safe-from-covid-what-to-know-now-that-your-boss-wants-you-back1/
- Ontario government, boards, unions not tracking data on school staff vaccination https://toronto.ctvnews.ca/ontario-government-boards-unions-not-tracking-data-on-school-staff-vaccination-1.5510582
- Ontario reports 146 new COVID-19 cases as more than 7 million Ontarians fully vaccinated https://globalnews.ca/news/8023314/ontario-covid-19-cases-july-13-coronavirus/
- Ontario's top doctor 'absolutely' expects rise in COVID-19 cases in September https://toronto.ctvnews.ca/ontario-s-top-doctor-absolutely-expects-rise-in-covid-19-cases-in-september-1.5507695
- Thinking of going back to the gym? The movies? Here's how to assess your COVID-19 risk https://globalnews.ca/news/8030904/gym-restaurant-covid-risk-vaccine/
- 694 positive COVID-19 exposures linked to Nova Scotia schools https://globalnews.ca/news/8031656/covid-19-exposures-nova-scotia-schools/
- WHO asks China to be 'transparent,' provide raw data on COVID-19 origins https://globalnews.ca/news/8030170/china-raw-data-covid-origins-who/
-
Guidance, Response, and Recovery:
- Can private businesses enforce their own COVID-19 'vaccine passports'? https://globalnews.ca/news/8025474/canada-private-business-vaccine-passport/
- Cruise ships have found a way around Florida's ban on vaccine passports - and it's still bad news for unvaccinated passengers https://www.businessinsider.com/cruise-lines-floridas-vaccine-passport-ban-workaround-causes-unvaccinated-difficulties-2021-7
- Ontario families, experts want more guidance for unvaccinated kids as province reopens https://globalnews.ca/news/8021306/ontario-reopens-covid-vaccination-kids/
- How gyms are adapting to COVID https://toronto.citynews.ca/2021/07/13/ontario-gyms-are-changing-the-way-they-operate-to-accommodate-post-lockdown-fitness/
- UK Government's latest pandemic plan recklessly exposes millions to effects of mass infection https://scienmag.com/governments-latest-pandemic-plan-recklessly-exposes-millions-to-effects-of-mass-infection/
-
Treatments, Testing, Triage, Trials, and things we Learned:
- CRISPR Breakthrough Blocks SARS-CoV-2 Virus Replication in Early Lab Tests https://www.sciencealert.com/cell-study-suggests-we-might-be-able-to-stop-sars-cov-2-from-replicating
- There Are Few Good COVID Antivirals, but That Could Be Changing https://www.scientificamerican.com/article/there-are-few-good-covid-antivirals-but-that-could-be-changing/
-
Immunity and Vaccinations:
- Canada's 2nd dose vaccinations surpass U.S. as Americans grapple with COVID-19 surge https://globalnews.ca/news/8036558/covid-vaccine-second-dose-canada-passed-us/
- Fully vaccinated visitors probably won't spread COVID-19 in Canada, experts say https://globalnews.ca/news/8036194/covid-border-vaccinated-travel-coroanvirus-canada-us/
- Ontario college will make COVID-19 vaccination mandatory for students and staff on campus https://toronto.ctvnews.ca/ontario-college-will-make-covid-19-vaccination-mandatory-for-students-and-staff-on-campus-1.5507086
- Almost 1 million people booked a COVID-19 vaccine on the day France announced a 'health passport' for non-essential places like restaurants https://www.businessinsider.com/france-900000-book-vaccine-after-health-passport-for-dining-out-2021-7
- France Covid: Vaccinations mandatory for all health workers https://www.bbc.co.uk/news/world-europe-57814163
- Fully jabbed France arrivals in UK must isolate https://www.bbc.co.uk/news/uk-57869880
- Mixing COVID-19 vaccines a 'dangerous trend,' WHO chief scientist says https://globalnews.ca/news/8021692/mixing-covid-19-vaccines-dangerous-trend-who/
- Covid vaccine: Thailand decides to mix jabs as cases spike https://www.bbc.co.uk/news/world-asia-57801251
- Ontario responds after WHO calls mixing COVID-19 vaccines 'dangerous trend' https://toronto.ctvnews.ca/ontario-responds-after-who-calls-mixing-covid-19-vaccines-dangerous-trend-1.5506389
- Ontario couple cancel honeymoon trip to Barbados after vaccine mix not approved https://toronto.ctvnews.ca/ontario-couple-cancel-honeymoon-trip-to-barbados-after-vaccine-mix-not-approved-1.5510222
- Ontario couple forced into two week quarantine after U.S. return despite being fully vaccinated https://toronto.ctvnews.ca/ontario-couple-forced-into-two-week-quarantine-after-u-s-return-despite-being-fully-vaccinated-1.5512320
- Barbados recognizes vaccine dose mixing after Ontario couple cancels honeymoon trip https://toronto.ctvnews.ca/barbados-recognizes-vaccine-dose-mixing-after-ontario-couple-cancels-honeymoon-trip-1.5511718
- Canada donating 17.7M AstraZeneca COVID-19 vaccines amid global disparities https://globalnews.ca/news/8020918/canada-covid-vaccine-sharing-astrazeneca/
- New COVID-19 vaccine candidate provides effective option for low- to mid-income countries https://scienmag.com/new-covid-19-vaccine-candidate-provides-effective-option-for-low-to-mid-income-countries/
- Things we learned:
- Identification of over 200 long COVID symptoms prompts call for UK screening programme https://scienmag.com/identification-of-over-200-long-covid-symptoms-prompts-call-for-uk-screening-programme/
- Post-Vaccination Infections Come in Two Different Flavors https://www.theatlantic.com/science/archive/2021/07/coronavirus-breakthrough-infections/619416/
Off-Topic / Science & Tech / Lighter Side
A variety of scientific, technical, historical, and more light-hearted news.
- (Irony?) Stanley Cup headed to Montreal for repairs after Tampa Bay Lightning dent trophy https://globalnews.ca/news/8023426/stanley-cup-repairs-tampa-montreal/
- Wolves Raised by Humans Can't Understand People like Dogs Can https://www.scientificamerican.com/article/wolves-raised-by-humans-cant-understand-people-like-dogs-can/
- Is 57 a prime number? There's a game for that. Atricle https://www.technologyreview.com/2021/07/18/1029440/prime-number-game/ and game https://isthisprime.com/game/
- Demonstration of World Record: 319 Tb/s Transmission over 3,001 km with 4-core fiber https://scienmag.com/demonstration-of-world-record-319-tb-s-transmission-over-3001-km-with-4-core-fiber/
- A Paralyzed Man's Brain Waves Converted to Speech in a World-First Breakthrough https://www.sciencealert.com/scientists-have-converted-a-paralyzed-man-s-brain-waves-to-speech
- Canadian researcher completes rare achievement at Mariana Trench https://globalnews.ca/news/8029703/canadian-researcher-deep-acoustic-lander-mariana-trench/
- Hubble Is Back! Risky Maneuver Saves The World's Most Powerful Space Telescope https://www.sciencealert.com/nasa-finally-fixed-the-hubble-telescope-glitch-after-5-weeks-of-troubleshooting
- Meet Wally Funk, the 82-year-old female aviator on Jeff Bezos' Blue Origin flight who's finally going to space six decades after training for it https://www.businessinsider.com/wally-funk-82-year-old-jeff-bezos-blue-origin-space-2021-7
- Report Suggests That Astronauts Shouldn't get More Than 600 Millisieverts of Radiation Exposure During Their Career. We get 2-3 a Year Down Here on Earth https://www.universetoday.com/151822/report-suggests-that-astronauts-shouldnt-get-more-than-600-millisieverts-of-radiation-exposure-during-their-career-we-get-2-3-a-year-down-here-on-earth/
- A Nearby White Dwarf Might be About to Collapse Into a Neutron Star https://www.universetoday.com/151732/a-nearby-white-dwarf-might-be-about-to-collapse-into-a-neutron-star/
- Measuring the expansion of the Universe: Dying stars may be telling us we're doing it wrong. https://www.syfy.com/syfywire/measuring-the-expansion-of-the-universe-dying-stars-may-be-telling-us-were-doing-it-wrong
- The ultimate fate of a nearby four-planet system: cosmic pinball, then game over https://www.syfy.com/syfywire/the-ultimate-fate-of-a-nearby-four-planet-system-cosmic-pinball-then-game-over
- Two Stars Spiraling Towards Explosive Doom Detected in Our Cosmic Neighborhood https://www.sciencealert.com/these-two-stars-are-spiralling-towards-certain-explosive-doom
- Don't Be Surprised if EmDrive Experiments Never Work https://www.universetoday.com/151834/dont-be-surprised-if-emdrive-experiments-never-work/
- Star Trek's Warp Drive Leads to New Physics https://www.scientificamerican.com/article/star-treks-warp-drive-leads-to-new-physics/