This Week's [in]Security - Issue 249
09 Jan 2022.
Welcome to This Week’s [in]Security. Skimmers, Training, Payments. Big-Hacks: Log4shell, EOL impediments, prevention, Log4-like vulns. New breaches: DatPiff, FlexBooker, Uscellular, McMenamins, healthcare. New Ransomware, Follow-ups & Fall-out. Privacy. Laws & Regs – US, World, Standards. Defense: cryptography, zero-day-repository, anti-extremism. Vulnerabilities, copied commands, Y2K22, android, vm ware, Bluetooth crypto. Cybercrime - Trends: Malsmoke, BadUSB, cyber-mercenaries, fake shut-downs. Supply chain sabotage. Nation States. Crime & Enforcement. Other Risks: Norton crypto-miner inside, Signal, AI & algorithms, false-positives. Health, Safety & Environment. Covid-19: Spread, Curves, Waves, and Variants; Response; Treatments; Immunity; Learned; Impact; Covid Compliance. Innovation and more.
News and announcements relating to Payment Security, PCI, Card Brands, Payments, Payment Malware and Fraud, and Payment Related Compliance.
-
Payment skimmers/malware/fraud:
- Data Skimmer Hits 100+ Sotheby's Real-Estate Websites https://threatpost.com/data-skimmer-sothebys-real-estate-websites/177347/
- Hackers use video player to steal credit cards from over 100 sites https://www.bleepingcomputer.com/news/security/hackers-use-video-player-to-steal-credit-cards-from-over-100-sites/
-
Other educational events, webinars, courses:
- PCI Training Update for 200: Instructor led, Informational and Certification training in 2022 SSF https://www.pcisecuritystandards.org/program_training_and_qualification/secure_software_assessor
- Multi-Cloud Virtual Events: DevSecOps & ZTA for Cloud-Native Applications (Training January 26 12:00 PM – 2:30 PM EST, Conference Jan 27 11:00 AM – 5:00 PM EST) https://content.govdelivery.com/accounts/USNIST/bulletins/3040ec2
-
Other payment related:
- The 51% Attack: Crypto's Double-Spending Achilles Heel https://www.pymnts.com/cryptocurrency/2022/51-percent-attack-crypto-double-spending-achilles-heel/
- Crypto platform ARBIX flagged as a rugpull, transfers $10 million https://www.bleepingcomputer.com/news/security/crypto-platform-arbix-flagged-as-a-rugpull-transfers-10-million/
- Federal documents warn of sweeping implications if ‘digital loonie' adopted https://globalnews.ca/news/8486052/digital-loonie-cryptocurrency-canada/
Breaches / Ransomware / Leaks
Covering breaches, leaks, data exposures, ransomware (as potential breach), and their fallout.
-
Major incidents:
- FTC to Go After Companies that Ignore Log4j https://threatpost.com/ftc-pursue-companies-log4j/177368/
- EoL Systems Stonewalling Log4j Fixes for Fed Agencies https://threatpost.com/eol-systems-stonewalling-log4j-fixes-for-fed-agencies/177475/
- Log4j Highlights Need for Better Handle on Software Dependencies https://www.darkreading.com/application-security/log4j-highlights-need-for-better-handle-on-software-dependencies
- Microsoft Sees Rampant Log4j Exploit Attempts, Testing https://threatpost.com/microsoft-rampant-log4j-exploits-testing/177358/
- NHS Warns of Hackers Targeting Log4j Flaws in VMware Horizon https://thehackernews.com/2022/01/nhs-warns-of-hackers-targeting-log4j.html
- Log4Shell-like Critical RCE Flaw Discovered in H2 Database Console https://thehackernews.com/2022/01/log4shell-like-critical-rce-flaw.html
-
New Breaches:
- DatPiff - 7,476,940 breached accounts https://haveibeenpwned.com/PwnedWebsites#DatPiff
- 3.7M FlexBooker Records Dumped on Hacker Forum https://threatpost.com/flexbooker-records-dumped-hacker-forum/177460/
- FlexBooker - 3,750,176 breached accounts https://haveibeenpwned.com/PwnedWebsites#FlexBooker
- NY OAG: Hackers stole 1.1 million customer accounts from 17 companies https://www.bleepingcomputer.com/news/security/ny-oag-hackers-stole-11-million-customer-accounts-from-17-companies/
- UScellular discloses data breach after billing system hack https://www.bleepingcomputer.com/news/security/uscellular-discloses-data-breach-after-billing-system-hack/
- Grass Valley discloses 2021 data breach https://www.databreaches.net/grass-valley-discloses-2021-data-breach/
- Fired University of Utah researcher exposes breaches in student data https://www.databreaches.net/fired-university-of-utah-researcher-exposes-breaches-in-student-data/
- Shopping Platform PulseTV Discloses Potential Breach Impacting 200,000 People https://www.securityweek.com/shopping-platform-pulsetv-discloses-potential-breach-impacting-200000-people
- McMenamins Data Breach Affects 12 Years of Employee Info https://threatpost.com/mcmenamins-data-breach-employee-info/177336/
- Cyberattackers Hit Data of 80K Fertility Patients https://threatpost.com/cyberattackers-data-80k-patients-fertility-centers-illinois/177467/
- Jefferson Surgical Clinic notifies 174,769 about June, 2021 data breach https://www.databreaches.net/jefferson-surgical-clinic-notifies-174769-about-june-2021-data-breach/
- Online Pharmacy Service Ravkoo Discloses Data Breach https://www.securityweek.com/online-pharmacy-service-ravkoo-discloses-data-breach
- Saltzer Health Says Patient Data Exposed in Cyberattack https://www.securityweek.com/saltzer-health-informs-patients-personal-information-exposure
-
New Ransomware and "Incidents":
- Hackers Hit Major Portuguese Media Group, Take Down Websites https://www.securityweek.com/hackers-hit-major-portuguese-media-group-take-down-websites
- New Mexico's Bernalillo County Investigates Ransomware Attack https://www.darkreading.com/attacks-breaches/new-mexico-s-bernalillo-county-investigates-ransomware-attack
-
Follow-ups and fall-out:
- The Biggest Data Breaches, Hacks Of 2021 https://packetstormsecurity.com/news/view/32955/The-Biggest-Data-Breaches-Hacks-Of-2021.html
Privacy
Articles about privacy related news, risks, and trends.
- WebSpec, a formal framework for browser security analysis, reveals new cookie attack https://www.theregister.com/2022/01/08/webspec_browser_security/
- US counterintelligence shares tips to block spyware attacks https://www.bleepingcomputer.com/news/security/us-counterintelligence-shares-tips-to-block-spyware-attacks/
- 6 Ways to Delete Yourself From the Internet https://www.wired.com/story/delete-yourself-from-internet/
Laws, Regulations, Platforms, Standards, and Public Policy
News about laws, regulations, platform rules, and standards affecting security, privacy, technology, and public interest.
-
US:
- US Supreme Court scrutinises Biden vaccine mandates https://www.bbc.co.uk/news/world-us-canada-59916467
-
World:
- France fines Google and Facebook over cookies https://www.bbc.co.uk/news/technology-59909647
- UK data watchdog seeks talks with Meta over child protection concerns https://www.theguardian.com/technology/2022/jan/09/uk-data-watchdog-seeks-talks-with-meta-over-child-protection-concerns
- SlimPay fined €180k after 12 million customers' bank data publicly accessible for 5 years https://www.theregister.com/2022/01/04/slimpay_breach_fine/
- Australian Parliamentary security committee review backs the operation of controversial TOLA Act https://www.zdnet.com/article/parliamentary-security-committee-review-backs-the-use-of-controversial-tola-act/
- Chinese Regulators Going After Algorithms, Big Tech's Secret Sauce https://www.pymnts.com/news/regulation/2022/chinese-regulators-going-after-algorithms-big-techs-secret-sauce/
-
Standards News:
- NIST recently released three draft items related to the Workforce Framework for Cybersecurity (NICE Framework), NIST Special Publication 800-181, Revision 1 open for comments until January 31 https://www.nist.gov/itl/applied-cybersecurity/nice/nice-framework-resource-center
- Cybersecurity Considerations for Open Banking Technology and Emerging Standards: Draft NISTIR 8389 Available for Comment through March 3 https://csrc.nist.gov/publications/detail/nistir/8389/draft
Defense / Techniques / Solutions
Covering developments and opportunities that may help improve security.
- What you need to know about how cryptography impacts your security strategy https://www.microsoft.com/security/blog/2022/01/04/what-you-need-to-know-about-how-cryptography-impacts-your-security-strategy/
- Google Project Zero Repository for 0-Days Exploited In-The-Wild https://googleprojectzero.github.io/0days-in-the-wild/
- Salesforce mandates MFA by default https://www.theregister.com/2022/01/07/salesforce_mandates_mfa_by_default/
- Swiss army bans all chat apps but locally-developed Threema https://www.bleepingcomputer.com/news/security/swiss-army-bans-all-chat-apps-but-locally-developed-threema/
- Detecting Evasive Malware on IoT Devices Using Electromagnetic Emanations https://thehackernews.com/2022/01/detecting-evasive-malware-on-iot.html
- Extracting Cobalt Strike Beacons from MSBuild Scripts, (Sun, Jan 9th) https://isc.sans.edu/diary/rss/28200
- Toward a Best-of-Both-Worlds Binary Disassembler https://blog.trailofbits.com/2022/01/05/toward-a-best-of-both-worlds-binary-disassembler/
- University of Winnipeg educator working on anti-extremism tool-kit https://globalnews.ca/news/8490022/university-of-winnipeg-educator-anti-extremism-tool-kit/
- Defense Contractors Must do More to Conceal Their Attack Surface https://www.securityweek.com/defense-contractors-must-do-more-conceal-their-attack-surface
- If it looks like a duck, swims like a duck, and QWACs like a duck, then it's probably an EV Certificate https://scotthelme.co.uk/looks-like-a-duck-swims-like-a-duck-qwacs-like-a-duck-probably-an-ev-certifiacate/
Bugs / Design Flaws / Vulnerabilities / Research
Articles about newly discovered vulnerabilities and research.
- Don't copy-paste commands from webpages — you can get hacked https://www.bleepingcomputer.com/news/security/dont-copy-paste-commands-from-webpages-you-can-get-hacked/
- SonicWall: Y2K22 bug hits Email Security, firewall products https://www.bleepingcomputer.com/news/security/sonicwall-y2k22-bug-hits-email-security-firewall-products/
- Older Honda and Acura models hit by Y2K22 bug that resets clocks 20 years in the past https://www.theverge.com/2022/1/8/22873403/honda-acuras-y2k22-bug-clocks-reset-2002
- Mitigation of Supply Chain Risks in Microsoft 365 https://blog.qualys.com/product-tech/2022/01/05/mitigation-of-supply-chain-risks-in-microsoft-365
- Google Patches 48 Vulnerabilities With First Set of 2022 Android Updates https://www.securityweek.com/google-patches-48-vulnerabilities-first-set-2022-android-updates
- Unpatched HomeKit Vulnerability Exposes iPhones, iPads to DoS Attacks https://www.securityweek.com/unpatched-homekit-vulnerability-exposes-iphones-ipads-dos-attacks
- VMware Plugs Security Holes in Workstation, Fusion and ESXi https://www.securityweek.com/vmware-plugs-security-holes-workstation-fusion-and-esxi
- Rapid window title changes cause ‘white screen of death' https://www.bleepingcomputer.com/news/security/rapid-window-title-changes-cause-white-screen-of-death-/
- Password Hash Cracking in Amazon Web Services: Burning Your Way to Success https://www.sans.org/blog/password-hash-cracking-amazon-web-services
- An algebraic attack to the Bluetooth stream cipher E0, by Roberto La Scala and Sergio Polese and Sharwan K. Tiwari and Andrea Visconti https://eprint.iacr.org/2022/016
Hacking / Malware / Cybercrime / Exploitation
News covering active trends, alerts, events.
-
Trends, Alerts, and Events (other than major breaches):
- Hackers Are Exploiting a Flaw Microsoft Fixed 9 Years Ago (but fix was optional) https://www.wired.com/story/zloader-microsoft-signature-verification-hack
- ‘Elephant Beetle' spends months in victim networks to divert transactions https://www.bleepingcomputer.com/news/security/elephant-beetle-spends-months-in-victim-networks-to-divert-transactions/
- ‘Malsmoke' Exploits Microsoft's E-Signature Verification https://threatpost.com/malsmoke-microsoft-e-signature-verification/177363/
- FBI: Hackers use BadUSB to target defense firms with ransomware https://www.databreaches.net/fbi-hackers-use-badusb-to-target-defense-firms-with-ransomware/
- The Week in Ransomware - January 7th 2022 - Watch out for USB drives https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-january-7th-2022-watch-out-for-usb-drives/
- Facebook says 50K users were targeted by cyber-mercenary firms in 2021 https:// www.technologyreview.com/2021/12/16/1042652/facebook-says-50000-users-were-targeted-by-cyber-mercenary-firms-in-2021/
- iOS malware can fake iPhone shut downs to snoop on camera, microphone https://www.bleepingcomputer.com/news/security/ios-malware-can-fake-iphone-shut-downs-to-snoop-on-camera-microphone/
- Beware of Fake Telegram Messenger App Hacking PCs with Purple Fox Malware https://thehackernews.com/2022/01/beware-of-fake-telegram-messenger-app.html
- More Client-side Attacks Seen in the Wild https://sourcedefense.com/resources/more-client-side-attacks-seen-in-the-wild/
- Sophisticated iLOBleed Rootkit Targets HP Servers https://www.securityweek.com/sophisticated-ilobleed-rootkit-targets-hp-servers
- Trojanized dnSpy app drops malware cocktail on researchers, devs https://www.bleepingcomputer.com/news/security/trojanized-dnspy-app-drops-malware-cocktail-on-researchers-devs/
- Code Reuse In the Malware Landscape, (Wed, Jan 5th) https://isc.sans.edu/diary/rss/28216
- Open source developer corrupts widely-used libraries Github NPM faker.js and colour.js, affecting tons of projects https://www.theverge.com/2022/1/9/22874949/developer-corrupts-open-source-libraries-projects-affected
-
Nation State Actors:
- More Russian Cyber Operations against Ukraine https://www.schneier.com/blog/archives/2022/01/more-russian-cyber-operations-against-ukraine.html
- North Korean Hackers Start New Year with Attacks on Russian Foreign Ministry https://thehackernews.com/2022/01/north-korean-hackers-start-new-year.html
-
Crime & Arrests, etc.:
- Russian national named in $82M hacking scheme denied bail https://www.databreaches.net/russian-national-named-in-82m-hacking-scheme-denied-bail/
- 70 investors lose $50 million to fraudsters posing as broker-dealers https://www.bleepingcomputer.com/news/security/70-investors-lose-50-million-to-fraudsters-posing-as-broker-dealers/
- F.B.I. Arrests Man Accused of Stealing Unpublished Book Manuscripts https://www.nytimes.com/2022/01/05/books/publishing-manuscripts-phishing-scam-filippo-bernardini.html
Other Security / Risk
Articles covering other types of risks.
- Norton's Antivirus Product Now Includes an Ethereum Miner https://www.schneier.com/blog/archives/2022/01/nortons-antivirus-product-now-includes-an-ethereum-miner.html
- 500M Avira Antivirus Users Introduced to Cryptomining https://krebsonsecurity.com/2022/01/500m-avira-antivirus-users-introduced-to-cryptomining/
- Here's the truth about the crypto miner that comes with Norton Antivirus https://www.theverge.com/2022/1/7/22869528/norton-crypto-miner-security-software-reaction
- How Signal is playing with fire https://www.theverge.com/22872133/signal-cryptocurrency-payments-encryption-invite-regulator-scrutiny
- Codex Exposed: Exploring the Capabilities and Risks of OpenAI's Code Generator https://www.trendmicro.com/en_us/research/22/a/codex-exposed--exploring-the-capabilities-and-risks-of-openai-s-.html
- The World Is Increasingly Controlled and Transformed by Algorithms https://www.darkreading.com/operations/the-world-is-increasingly-controlled-and-transformed-by-algorithms
- Why We Need To Reframe the False-Positive Problem https://www.darkreading.com/attacks-breaches/why-we-need-to-reframe-the-false-positive-problem
- Tips on how to prevent (or deal with) frozen pipes https://globalnews.ca/news/8495482/winnipeg-how-to-prevent-frozen-pipes-tips/
- US Army journal's top paper from 2021 says Taiwan should destroy TSMC if China invades https://www.theregister.com/2022/01/05/taiwan_should_destory_tsmc_paper/
- Internet shut down in Kazakhstan amid unrest https://blog.cloudflare.com/internet-shut-down-in-kazakhstan-amid-unrest/
- Ford's e-scooter company is pulling out of any city that doesn't limit competition https://www.theverge.com/2022/1/7/22872768/ford-e-scooter-company-spin-pulling-out-cities-limit-competition-open-vendor
- Ontario driver frustrated when car insurance goes up after postal code changed https://toronto.ctvnews.ca/ontario-driver-frustrated-when-car-insurance-goes-up-after-postal-code-changed-1.5727675
-
Health, Safety & Environment:
- Antibiotic-resistant superbug evolved on hedgehogs https://www.bbc.co.uk/news/science-environment-59883336
- Drone carrying a defibrillator saves its first heart attack patient in Sweden https://www.theverge.com/2022/1/5/22868777/everdrone-drone-defibrillator-health-tech-sweden
- How AI Could Prevent the Development of New Illicit Drugs https://www.scientificamerican.com/article/how-ai-could-prevent-the-development-of-new-illicit-drugs/
- Now we Know why Spaceflight Affects Your Eyes https://www.universetoday.com/153959/now-we-know-why-spaceflight-affects-your-eyes/
- Brain Signals Associated With OCD Discovered by Scientists For First Time https://www.sciencealert.com/scientists-discover-brain-signals-associated-with-ocd-for-the-first-time
- When will COVID-19 end? Here's what happened with other pandemics https://www.ctvnews.ca/health/coronavirus/when-will-covid-19-end-here-s-what-happened-with-other-pandemics-1.5726037
- Girl dies, 8 children injured after wind gust lifts bouncy castle in Spain https://globalnews.ca/news/8489912/girl-dies-bouncy-castle-mislata-spain/
- Teen loses license after officers see him doing doughnuts in school lot: Guelph police https://globalnews.ca/news/8489430/teen-donuts-school-parking-lot-police/
- Verizon, AT&T agree to delay 5G network rollout in U.S. after aviation safety concerns https://globalnews.ca/news/8486624/5g-us-verizon-att-aviation/
- FAA lists 50 airports that will have 5G buffer zones ahead of C-band expansion https://www.theverge.com/2022/1/8/22873765/faa-verizon-att-airport-5g-carriers-buffer-zone
- How scientists know the New Year's Day boom over Pittsburgh was an exploding meteor https://www.cbc.ca/radio/asithappens/as-it-happens-the-monday-edition-1.6302923/how-scientists-know-the-new-year-s-day-boom-over-pittsburgh-was-an-exploding-meteor-1.6302926
- Why the climate-wrecking craze for crypto art really is beyond satire | John Naughton https://www.theguardian.com/commentisfree/2022/jan/08/why-the-climate-wrecking-craze-for-crypto-art-really-is-beyond-satire
- California power utility blamed for causing Dixie wildfire, 2nd largest in state history https://globalnews.ca/news/8489191/california-dixie-wildfire-cause/
- The Blue Technology Barometer (environmental metrics) https://www.technologyreview.com/2022/01/05/1040367/the-blue-technology-barometer/
- 2 founders are introducing 100 million oysters to New York to help fight flooding https://www.businessinsider.com/how-millions-of-oysters-are-helping-new-york-fight-flooding-2022-1
COVID-19 updates.
COVID related articles. We have been following coronavirus risks since https://controlgap.com/blog/this-weeks-insecurity-issue-147.
-
The spread, curves, spikes, waves, reinfection, and variant strains:
- Covid: US reports record 1m cases with peak still to come https://www.bbc.co.uk/news/world-us-canada-59867536
- Omicron makes up 95.4% of U.S. COVID cases as of Jan. 1, says CDC https://globalnews.ca/news/8487256/omicron-us-cdc-variant-cases-january/
- All of the 91 US cruises currently at sea have confirmed or suspected COVID-19 on board, the CDC says https://www.businessinsider.com/cruise-ships-covid-outbreaks-cdc-norwegian-carnival-caribbean-disney-2022-1
- Covid: UK records more than 150,000 deaths https://www.bbc.co.uk/news/uk-59923936
- Ontario reports 13,578 new COVID cases, more people admitted to hospital and ICUs https://globalnews.ca/news/8485089/ontario-covid-cases-january-3-coronavirus/
- Quebec reports 15,293 COVID-19 cases as major hospital postpones half of surgeries https://globalnews.ca/news/8485343/quebec-covid-jan-3-2022/
- A Cyprus researcher reportedly identified the 'Deltacron,' a COVID-19 strain that's a combination of the Delta and Omicron variants (other researchers suspect sample contamination) https://www.businessinsider.com/cyprus-reportedly-identifies-the-combined-deltacron-covid-19-strain-2022-1
- 'Flurona' Is a Great Example of How Misinformation Blooms https://www.scientificamerican.com/article/flurona-is-a-great-example-of-how-misinformation-blooms/
-
Guidance, Response, and Recovery:
- America's COVID Rules Are a Dumpster Fire https://www.theatlantic.com/health/archive/2022/01/cdc-new-isolation-guidelines-confusing/621192/
- COVID Isolation Is a Lot Like … Muffin Baking https://www.theatlantic.com/health/archive/2022/01/covid-isolation-muffin-baking-cdc/621209/
- Travelling during Omicron? Canadians who tested positive for COVID-19 abroad urge caution https://globalnews.ca/news/8495286/positive-covid-pcr-test-while-on-vacation/
- Amid Omicron surge, 10-day quarantine still ‘ideal' but not always possible: Tam https://globalnews.ca/news/8490168/covid-quarantine-time-cut-omicron/
- 140M rapid tests, enough pediatric COVID-19 doses for all second shots coming this month: feds https://www.ctvnews.ca/health/coronavirus/140m-rapid-tests-enough-pediatric-covid-19-doses-for-all-second-shots-coming-this-month-feds-1.5728512
- Ontario expecting to receive up to 119M rapid antigen COVID-19 tests in January https://toronto.ctvnews.ca/ontario-expecting-to-receive-up-to-119m-rapid-antigen-covid-19-tests-in-january-1.5730383
- Ontario to expand use of rapid COVID-19 antigen tests amid surge in Omicron cases https://toronto.ctvnews.ca/ontario-to-expand-use-of-rapid-covid-19-antigen-tests-amid-surge-in-omicron-cases-1.5729848
- Thousands of rapid test results already reported to made-in-Sask. online database https://globalnews.ca/news/8496162/covid-rapid-test-saskatchewan-online-reporting/
- Quebec physicians order asks for harsher measures against the unvaccinated https://globalnews.ca/news/8498328/covid-quebec-physicians-order-unvaccinated/
- Ontario will not reopen schools for in-person learning for two weeks, teachers' unions respond https://toronto.ctvnews.ca/ontario-will-not-reopen-schools-for-in-person-learning-for-two-weeks-teachers-unions-respond-1.5726228
- Toronto preparing for up to 60 per cent of its frontline workers to be absent due to Omicron https://toronto.ctvnews.ca/toronto-preparing-for-up-to-60-per-cent-of-its-frontline-workers-to-be-absent-due-to-omicron-1.5727358
- GO Transit to reduce train, bus service due to COVID-related staffing shortages https://globalnews.ca/news/8490276/go-transit-train-bus-service-staff-shortages-covid/
- Many gyms ‘doing everything right,' but top doctor says COVID-19 still spreads within their walls https://globalnews.ca/news/8488419/bc-gyms-stay-closed-covid19/
- England scraps pre-departure Covid travel tests https://www.bbc.co.uk/news/business-59876063
-
Treatments, Testing, Triage, Trials, and things we Learned:
- Simple pH adjustment may enable a preventative Covid-19 nasal and throat spray https://scienmag.com/simple-ph-adjustment-may-enable-a-preventative-covid-19-nasal-and-throat-spray/
- When should you take a COVID-19 rapid test if you only have one? Experts suggest waiting for symptoms or your next big party. https://www.businessinsider.com/when-to-take-at-home-rapid-covid-test-2022-1
- Swab Your Throat First? Rapid Tests May Need Saliva to Detect Omicron, Early Data Find https://www.sciencealert.com/throat-swabs-may-be-needed-to-detect-omicron-in-rapid-tests-study-finds
- Why testing sewage for COVID-19 could be more useful than ever https://www.cbc.ca/news/science/wastewater-covid-19-teting-1.6306202
-
Immunity and Vaccinations:
- Canada pushing ahead with COVID-19 vaccine mandate for cross-border truckers https://globalnews.ca/news/8499014/trudeau-canada-covid-vaccine-international-truckers/
- COVID-19 vaccine and booster tracker: How many Canadians are vaccinated? https://globalnews.ca/news/8492863/covid-19-vaccine-and-booster-tracker-coronavirus-canada/
- Things we learned:
- COVID-19 vaccination associated with a small, temporary increase in menstrual cycle length, suggests NIH-funded study https://scienmag.com/covid-19-vaccination-associated-with-a-small-temporary-increase-in-menstrual-cycle-length-suggests-nih-funded-study/
-
Impact:
- GTA hospital network declares 'code orange' to address hospital capacity, staffing challenges https://toronto.ctvnews.ca/gta-hospital-network-declares-code-orange-to-address-hospital-capacity-staffing-challenges-1.5726723
- Situation in Ontario hospitals expected to worsen amid Omicron as doctors isolate, admissions rise https://globalnews.ca/news/8495023/ontario-hospitals-expected-worsen-covid/
- Tens of thousands of non-urgent procedures expected to be delayed in Ontario in coming weeks https://globalnews.ca/news/8485621/thousands-non-urgent-medical-prodecures-delayed-ontario/
- COVID-19 cases fill hospitals in Ontario, Quebec and New Brunswick https://globalnews.ca/news/8499421/covid-19-canada-hospitalizations-jan-9/
- Nearly 5,000 layoffs at Cineplex after Ontario closes movie theatres https://toronto.ctvnews.ca/nearly-5-000-layoffs-at-cineplex-after-ontario-closes-movie-theatres-1.5730174
-
Masks, anti-maskers, distancing, compliance, defiance, and repercussions:
- A paramedic stole coronavirus vaccine cards, then sold them to unvaccinated buyers, prosecutors say https://www.washingtonpost.com/nation/2022/01/05/paramedic-stole-covid-vaccine-cards-sell-unvaccinated/
- Passengers on Sunwing party plane could face jail time, thousands in fines https://www.cbc.ca/news/canada/montreal/sunwing-cancun-flight-1.6304854
- Sunwing plane party organizer slams airlines, some passengers catch COVID https://globalnews.ca/news/8492951/sunwing-party-flight-organizer-accusation/
- Some gyms say they'll open with disablity exemption under Ontario's COVID-19 restrictions https://globalnews.ca/news/8497428/some-gyms-claim-exemption-ontario-restrictions/
Off-Topic / Science & Tech / Lighter Side
A variety of scientific, technical, historical, and more light-hearted news.
-
Innovations & Inventions:
- Intel announces 5.5GHz capable 12th Gen CPU https://www.theverge.com/2022/1/6/22870060/intel-announces-5-5ghz-capable-12th-gen-cpu
- Mass production of revolutionary computer memory moves closer with ULTRARAM™ on silicon wafers for the first time https://scienmag.com/mass-production-of-revolutionary-computer-memory-moves-closer-with-ultraram-on-silicon-wafers-for-the-first-time/
- 3d digital holograms on smartphones? https://scienmag.com/3d-digital-holograms-on-smartphones/
- Physicists crack unsolvable three-body problem using drunkard's walk https://www.livescience.com/three-body-problem-solution
-
Other:
- Throat and Nasal Passages https://xkcd.com/2563/
- AI generated New Year’s resolutions https://www.aiweirdness.com/new-years-resolutions-generated-by-ai/
- Remember those wooden playgrounds? AI doesn't. https://www.aiweirdness.com/remember-those-wooden-playgrounds/
- Don't Look Up Illustrates 5 Myths That Fuel Rejection of Science https://www.scientificamerican.com/article/dont-look-up-illustrates-5-myths-that-fuel-rejection-of-science/
- China's Rover Checks out that Weird Cube on the Moon. Surprise! It's a Rock. https://www.universetoday.com/153933/chinas-rover-checks-out-that-weird-cube-on-the-moon-surprise-its-a-rock/
- Astronomers get a photo of a record-breaking exoplanet around massive binary stars! https://www.syfy.com/syfy-wire/bad-astronomy-exoplanet-b-cen-b-orbits-massive-binary-stars
- Supergiant star explosion seen live by astronomers in unprecedented breakthrough https://www.independent.co.uk/space/star-explosion-red-supergiant-supernova-b1988069.html