3.8 C
New York
Friday, February 7, 2025
Home Blog

ios – UITabBarController Head and Physique Structure


Possibly there is not a means. I am fairly certain there’s a method to customise the UITabBarController format to work.

My query is about having a header and physique in UITabBarController. I’ve the next code within the TabBarLayout.

import UIKit

class TabBarLayout: UITabBarController {
  
  @IBOutlet var viewHeader: UIView!

  override func viewDidLoad() {
    tremendous.viewDidLoad()
    viewHeader.translatesAutoresizingMaskIntoConstraints = false
    view.addSubview(viewHeader)
    let leftSide = NSLayoutConstraint(merchandise: viewHeader!, attribute: .left, relatedBy: .equal, toItem: view, attribute: .left, multiplier: 1.0, fixed: 0.0)
    let rightSide = NSLayoutConstraint(merchandise: viewHeader!, attribute: .proper, relatedBy: .equal, toItem: view, attribute: .proper, multiplier: 1.0, fixed: 0.0)
    let topSide = NSLayoutConstraint(merchandise: viewHeader!, attribute: .high, relatedBy: .equal, toItem: view, attribute: .high, multiplier: 1.0, fixed: 0.0)
    let peak = NSLayoutConstraint(merchandise: viewHeader!, attribute: .peak, relatedBy: .equal, toItem: nil, attribute: .notAnAttribute, multiplier: 1, fixed: 100)
    view.addConstraint(leftSide)
    view.addConstraint(rightSide)
    view.addConstraint(topSide)
    view.addConstraint(peak)
  }
}

The Storyboard has UITabBarController with Storyboard References.

UITabBarController Layout

The Purchase Storyboard exhibits the next screenshot:

Buy Storyboard

import UIKit

class BuyController: UIViewController {
  
  override func viewWillAppear(_ animated: Bool) {
    tremendous.viewWillAppear(animated)
    print("BUYCONTROLLER")
    let tbc = tabBarController as! TabBarLayout
    
    // How do I align this view's topAnchor to viewHeader's backside anchor?
  }
}

How ought to I align the Purchase Storyboard high anchor to viewHeader’s backside anchor in order that the Check Label is seen?

iOS Simulator

AI-Powered Social Engineering: Reinvented Threats

0


AI-Powered Social Engineering: Reinvented Threats

The foundations for social engineering assaults – manipulating people – won’t have modified a lot over time. It is the vectors – how these strategies are deployed – which might be evolving. And like most industries lately, AI is accelerating its evolution.

This text explores how these modifications are impacting enterprise, and the way cybersecurity leaders can reply.

Impersonation assaults: utilizing a trusted identification

Conventional types of protection had been already struggling to unravel social engineering, the ‘reason behind most knowledge breaches’ in response to Thomson Reuters. The following technology of AI-powered cyber assaults and menace actors can now launch these assaults with unprecedented pace, scale, and realism.

The previous manner: Silicone masks

By impersonating a French authorities minister, two fraudsters had been in a position to extract over €55 million from a number of victims. Throughout video calls, one would put on a silicone masks of Jean-Yves Le Drian. So as to add a layer of believability, in addition they sat in a recreation of his ministerial workplace with pictures of the then-President François Hollande.

Over 150 distinguished figures had been reportedly contacted and requested for cash for ransom funds or anti-terror operations. The largest switch made was €47 million, when the goal was urged to behave due to two journalists held in Syria.

The brand new manner: Video deepfakes

Lots of the requests for cash failed. In spite of everything, silicon masks cannot absolutely replicate the look and motion of pores and skin on an individual. AI video expertise is providing a brand new option to step up this type of assault.

We noticed this final 12 months in Hong Kong, the place attackers created a video deepfake of a CFO to hold out a $25 million rip-off. They then invited a colleague to a videoconference name. That is the place the deepfake CFO persuaded the worker to make the multi-million switch to the fraudsters’ account.

Dwell calls: voice phishing

Voice phishing, typically often known as vishing, makes use of dwell audio to construct on the ability of conventional phishing, the place individuals are persuaded to offer data that compromises their group.

The previous manner: Fraudulent cellphone calls

The attacker might impersonate somebody, maybe an authoritative determine or from one other reliable background, and make a cellphone name to a goal.

They add a way of urgency to the dialog, requesting {that a} cost be made instantly to keep away from adverse outcomes comparable to shedding entry to an account or lacking a deadline. Victims misplaced a median $1,400 to this type of assault in 2022.

The brand new manner: Voice cloning

Conventional vishing protection suggestions embody asking folks to not click on on hyperlinks that include requests, and calling again the particular person on an official cellphone quantity. It is just like the Zero Belief strategy of By no means Belief, At all times Confirm. In fact, when the voice comes from somebody the particular person is aware of, it is pure for belief to bypass any verification issues.

That is the massive problem with AI, with attackers now utilizing voice cloning expertise, typically taken from only a few seconds of a goal talking. A mom acquired a name from somebody who’d cloned her daughter’s voice, saying she’d be kidnapped and that the attackers needed a $50,000 reward.

Phishing electronic mail

Most individuals with an electronic mail deal with have been a lottery winner. A minimum of, they’ve acquired an electronic mail telling them that they’ve gained tens of millions. Maybe with a reference to a King or Prince who would possibly need assistance to launch the funds, in return for an upfront charge.

The previous manner: Spray and pray

Over time these phishing makes an attempt have turn out to be far much less efficient, for a number of causes. They’re despatched in bulk with little personalization and many grammatical errors, and individuals are extra conscious of ‘419 scams’ with their requests to make use of particular cash switch companies. Different variations, comparable to utilizing pretend login pages for banks, can typically be blocked utilizing internet looking safety and spam filters, together with educating folks to verify the URL intently.

Nonetheless, phishing stays the largest type of cybercrime. The FBI’s Web Crime Report 2023 discovered phishing/spoofing was the supply of 298,878 complaints. To provide that some context, the second-highest (private knowledge breach) registered 55,851 complaints.

The brand new manner: Lifelike conversations at scale

AI is permitting menace actors to entry word-perfect instruments by harnessing LLMs, as an alternative of counting on primary translations. They will additionally use AI to launch these to a number of recipients at scale, with customization permitting for the extra focused type of spear phishing.

What’s extra, they will use these instruments in a number of languages. These open the doorways to a wider variety of areas, the place targets is probably not as conscious of conventional phishing strategies and what to verify. The Harvard Enterprise Assessment warns that ‘your complete phishing course of could be automated utilizing LLMs, which reduces the prices of phishing assaults by greater than 95% whereas reaching equal or better success charges.’

Reinvented threats imply reinventing defenses

Cybersecurity has at all times been in an arms race between protection and assault. However AI has added a unique dimension. Now, targets don’t have any manner of understanding what’s actual and what’s pretend when an attacker is attempting to control their:

  • Belief, by Impersonating a colleague and asking an worker to bypass safety protocols for delicate data
  • Respect for authority by pretending to be an worker’s CFO and ordering them to finish an pressing monetary transaction
  • Worry by creating a way of urgency and panic means the worker would not suppose to contemplate whether or not the particular person they’re talking to is real

These are important components of human nature and intuition which have developed over 1000’s of years. Naturally, this is not one thing that may evolve on the identical pace as malicious actors’ strategies or the progress of AI. Conventional types of consciousness, with on-line programs and questions and solutions, aren’t constructed for this AI-powered actuality.

That is why a part of the reply — particularly whereas technical protections are nonetheless catching up — is to make your workforce expertise simulated social engineering assaults.

As a result of your workers won’t keep in mind what you say about defending towards a cyber assault when it happens, however they’ll keep in mind the way it makes them really feel. In order that when an actual assault occurs, they’re conscious of tips on how to reply.


Discovered this text attention-grabbing? This text is a contributed piece from considered one of our valued companions. Observe us on Twitter and LinkedIn to learn extra unique content material we submit.



CISA Warns of Lively Exploits Focusing on Trimble Cityworks Vulnerability


Feb 07, 2025The Hacker InformationVulnerability / Malware

CISA Warns of Lively Exploits Focusing on Trimble Cityworks Vulnerability

The U.S. Cybersecurity and Infrastructure Safety Company (CISA) has warned {that a} safety flaw impacting Trimble Cityworks GIS-centric asset administration software program has come underneath energetic exploitation within the wild.

The vulnerability in query is CVE-2025-0994 (CVSS v4 rating: 8.6), a deserialization of untrusted knowledge bug that would allow an attacker to conduct distant code execution.

“This might enable an authenticated consumer to carry out a distant code execution assault in opposition to a buyer’s Microsoft Web Info Companies (IIS) internet server,” CISA stated in an advisory dated February 6, 2025.

The flaw impacts the next variations –

  • Cityworks (All variations prior to fifteen.8.9)
  • Cityworks with workplace companion (All variations previous to 23.10)
Cybersecurity

Whereas Trimble has launched patches to deal with the safety defect as of January 29, 2025, CISA has warned that it’s being weaponized in real-world assaults.

The Colorado-headquartered firm additionally famous that it has acquired experiences of “unauthorized makes an attempt to realize entry to particular clients’ Cityworks deployments.”

Indicators of compromise (IoCs) launched by Trimble present that the vulnerability is being exploited to drop a Rust-based loader that launches Cobalt Strike and a Go-based distant entry software named VShell, amongst different unidentified payloads.

It is at the moment not identified who’s behind the assaults, and what the tip aim of the marketing campaign is. Customers working affected variations of the software program are suggested to replace their situations to the newest model for optimum safety.

Discovered this text attention-grabbing? This text is a contributed piece from considered one of our valued companions. Observe us on Twitter and LinkedIn to learn extra unique content material we publish.



Robots-Weblog | Playtastic KI-Roboter mit ChatGPT-Assistent

0


Nach dem Auspacken des Roboters hatte ich den Eindruck, ein Pill auf Rädern zu meiner Robotersammlung hinzuzufügen. Der kleine Roboter, der sich selbst „Anna“ nennt, wie ich später herausfinden sollte, hatte auf jeden Fall ein Android-Pill als Gesicht. Ein Pill-Roboter.

Nach dem Einschalten erwartete mich jedoch nicht der übliche Einrichtungsprozess, wie er bei Android-Geräten üblich ist. Stattdessen wurde ich mit Musik und einem kurzen Animationsvideo begrüßt. Danach landete ich, nach einer kurzen Wartezeit (die nur beim ersten Begin auftrat), auf einer kindlich-verspielten App-Übersicht. Meine erste Idee struggle, im Einstellungsmenü zunächst eine Verbindung zum WLAN herzustellen. Im Handbuch hatte ich bereits gelesen, dass der Roboter nur mit einem 2,4-GHz-WLAN kompatibel ist. Das WLAN meiner FritzBox arbeitet im Twin-Mode und stellt sowohl ein 5-GHz- als auch ein 2,4-GHz-Sign zur Verfügung. Der Roboter fand dieses WLAN, fragte nach dem Passwort, bestätigte die richtige Eingabe und verband sich – allerdings nur für wenige Sekunden, bevor er wieder „nicht verbunden“ anzeigte. Anscheinend magazine er ausschließlich reines 2,4-GHz-WLAN. Nachdem ich mein reines 2,4-GHz-WLAN ausgewählt hatte, gab es keine weiteren Verbindungsprobleme.

Die Android-Betriebssystemversion und die installierten Apps waren anscheinend aktuell; zumindest wurden keine Updates gefunden. Neben den vorinstallierten Lern-, Musik- und Spiele-Apps fielen mir direkt die YouTube-(Youngsters)- und Spotify-App auf. Hier ahnte ich auch etwas Spaß für Erwachsene!

Der erste Begin der YouTube-App (nachdem das WLAN eine Internetverbindung bot) forderte leider ein Replace der Google-Dienste, was wiederum die Anmeldung mit einem Google-Konto erforderte. Macht es besser nicht wie ich und legt kein neues Google-Konto direkt über das Show des Roboters an. Nutzt stattdessen einen Pc oder euer Smartphone und gebt dem Roboter anschließend nur die Zugangsdaten. Das geht deutlich schneller als über das etwas träge „Pill“ des Roboters.

Nach der Anmeldung gelang dann auch der Begin der YouTube-App. Dabei stellte ich fest, dass es sich um die YouTube-Youngsters-App handelte, die ich bisher nicht kannte. Die App bietet kindgerechte Movies für verschiedene Altersstufen, aber nicht das vollwertige YouTube-Erlebnis, wie man es beispielsweise vom Fernseher kennt. Es können verschiedene Kinder-/Nutzerprofile angelegt werden, und mit einem „Eltern-Account“ lässt sich genau steuern, welche Movies und Kanäle verfügbar sind oder ob das Variety eigenständig andere Kanäle suchen darf.

 

Für erwachsene Nutzer bleiben immerhin alle Spotify-Inhalte verfügbar. Die vorinstallierte Spotify-App funktioniert identisch zu der Model auf meinem Smartphone. Der Klang des Roboters ist laut und basslastig; manchmal hört man dadurch das Plastikgehäuse etwas vibrieren. Für Kinder und ältere Karaoke-Followers gibt es in der App „KinderFernsehen“ eine Karaoke-Videosammlung. Ein mitgeliefertes Mikrofon lässt sich an der Rückseite des Roboters einstecken. Nach dem Einschalten des Mikrofons wird der eigene Gesang mit ordentlich Corridor-Effekt durch den Roboter wiedergegeben. Ein Anschluss für ein zweites Mikrofon für Duett-Accomplice ist ebenfalls vorhanden; allerdings wird nur ein Mikrofon mitgeliefert – ein Pill-Karaoke-Musik-Video-Roboter.

In der KinderFernsehen-App finden sich bekannte Videoreihen (wie Shaun das Schaf), Musik- und Lerninhalte sowie Spiele. Außerhalb dieser App gibt es die üblichen Anwendungen wie Wecker, Stoppuhr oder Bildergalerie sowie various weitere Lern-Apps: Rechnen, Malen, Schreiben, Musizieren oder Sprachen lernen – für quick alles gibt es eine App. Und wenn nicht, bietet der „Kinderladen“ eine abgespeckte Model des App-Shops mit Spielen, Lern-Apps und anderen kinderfreundlichen Inhalten. Ein Pill-Karaoke-Musik-Video-Lern-Roboter additionally! Andere Android-Apps lassen sich hier jedoch nicht finden. Mir ist es auch nicht gelungen, fremde Apps zu installieren – weder per SD-Karte noch per Browser-Obtain –, da der integrierte Browser nur vorher freigegebene Webseiten öffnet. Wie man diese hinzufügt, habe ich nicht herausgefunden. Im PIN-geschützten „Elternmodus“ konnte ich zwar installierte Apps ausblenden (quasi vor Kindern verstecken), aber keine neuen Apps „sideloaden“. Es gibt einen erweiterten Modus, der nach mehrfachem Tippen auf die Versionsnummer des Roboters in den Einstellungen erscheint – leider geschützt durch ein mir unbekanntes Passwort. Was sich wohl dahinter verbirgt? Vielleicht die Möglichkeit zum Installieren eigener Apps?

Die App „Musik und Tanz“ öffnet einen Musikplayer, mit dem MP3s – auch von einer eingesteckten SD-Karte – abgespielt werden können. Der Unterschied zur normalen „Musik“-App: Der Roboter tanzt zur abgespielten Musik und fährt mehr oder weniger wild „tanzend“ durch die Gegend. Ich hätte mir an dieser Stelle gewünscht, eigene Bewegungsabläufe programmieren zu können – oder sogar eine Lern-App, die mir das Programmieren des Roboters beibringt und die Möglichkeiten der integrierten Motoren meines „Roboter-Tablets“ nutzbar macht. Vielleicht sogar in Kombination mit der integrierten Kamera einen Linienfolger programmieren? Vielleicht wird hierfür ja irgendwann noch eine passende App entwickelt.

Die integrierte Kamera lässt sich zum Aufnehmen von Fotos und Movies in niedriger Auflösung nutzen. Leider habe ich keine App gefunden, die die Kamera für Bewegungsspiele nutzt – so wie beim Miko 3-Roboter bekannt. Vielleicht dürfen wir auch hier noch auf Erweiterungen per App hoffen?

Und dann gibt es noch den ChatGPT-Assistenten-Modus: Auf dem Show erscheint ein Robotergesicht, mit dem man sich auch ohne eingestecktes Mikrofon unterhalten kann. Die Antworten kommen dabei nach etwas Verzögerung von einer ChatGPT-Instanz. Diese scheint auf Unterhaltungen mit Kindern spezialisiert zu sein und schlägt automatisch Themen wie Dinosaurier, Weltraum oder Tiere vor. Jede Antwort liefert direkt Ideen für neue Nachfragen oder Themenvorschläge und führt so aktiv durch das Gespräch. Die ChatGPT-Instanz hat keinen Zugriff auf aktuelle On-line-Inhalte und ist ausreichend moderiert: Nicht kindgerechte Themen werden in vielen Fällen ignoriert oder übergangen. Zu genaue Nachfragen oder geschicktes Prompting können jedoch manchmal zumindest fragwürdige Inhalte liefern – allerdings bleiben aktiv vorgeschlagene Themen stets kindgerecht (besonders gerne Dinosaurier). Auch Rekorde aus der Tierwelt oder Umweltphänomene werden als Gesprächsthemen vorgeschlagen.
Ein Pill-Karaoke-Musik-Video-Lern-KI-Assistenten-Roboter.

Der Roboter ist ein vielseitiges Spielzeug mit intestine funktionierenden vorinstallierten Apps. Für Erwachsene gibt es nur wenige Inhalte; diese sind hier aber definitiv nicht die Zielgruppe. Als auffälliger Spotify-Participant mit einigen Zusatzfeatures ist der Roboter jedoch auch für Erwachsene interessant – erwartet aber keine Höchstleistung vom integrierten Pill! Es ist eindeutig nur für die mitgelieferten Apps ausgelegt; diese sind dafür kindgerecht und sicher … solange man keine allzu neugierigen Fragen an den ChatGPT-Assistenten stellt. Insgesamt handelt es sich um ein lehrreiches Spielzeug für Kinder – auch um erste Erfahrungen im Umgang mit KI zu sammeln. Für den Preis bekommt man sonst nur ein günstiges Pill; hier gibt es jedoch gleich einen ganzen Roboter dazu!



EVs At 51.6% Share In Sweden – Volkswagen ID.7 Finest Vendor


Join every day information updates from CleanTechnica on e-mail. Or comply with us on Google Information!


January’s auto gross sales noticed plugin EVs at 51.6% share in Sweden, down barely YoY from 52.5% in January 2024. BEV share was fractionally up YoY, whereas PHEV share was barely down. General auto quantity was 19,632 items, up some 14% YoY. The Volkswagen ID.7 was the very best promoting BEV.

EVs at 51.6% share in Sweden

January’s gross sales totals confirmed mixed plugin EVs at 51.6% share in Sweden, with full electrics (BEVs) at 28.8% and plugin hybrids (PHEVs) at 22.7%. These figures evaluate YoY in opposition to 52.5% mixed, 28.6% BEV and 23.8% PHEV.

There was a small anomaly within the January market, with an uncommon surge for “different fuels” – at 1,678 items – over 5x their current month-to-month common. These are virtually all autos categorised at “different” solely as a result of they’re “in a position to” run on ethanol (despite the fact that they might in apply be principally run on common gasoline / petrol / benzine). Their January surge was a “final likelihood” pull-forward forward of a Swedish regulation change from February 1st which – because of the actuality of their principally being run on gasoline – now places a heavier tax burden on them. The brand new guidelines now tax them in-line with gasoline-only autos, closing a former loophole. Count on a extreme hangover for this class in February and March, and normal weak point going ahead.

Plugless hybrids (HEV and MHEVs) grew quantity by 67% YoY, their highest month-to-month quantity since 2020. These are primarily a quick-and-easy stopgap for legacy auto makers in direction of assembly tightening emissions guidelines (relative to ICE-only vehicles). Since these are successfully substituting gross sales of ICE-only vehicles, the latter declined in quantity to near-record lows. Even so, collectively, the mixed sum of HEV and ICE-only vehicles grew quantity by 4.5%, underperforming the general market’s 14% progress. Thus their mixed share fell YoY from 43.7% to 39.9%.

For plugins, regardless of their fractional fall in market share, gross sales quantity really grew decently YoY, from 9,006 items to 10,124 items. The slight drop in plugin share comes merely from not rising their quantity as a lot because the competing ethanol powertrain autos, of their anomalous pull-forward, mentioned above.

With the Europe-wide tighter automobile emission guidelines in 2025, we are able to anticipate BEVs to develop general this yr in Sweden, in addition to in different regional markets.

EVs at 51.6% share in Sweden

Finest Promoting BEVs

The Volkswagen ID.7 was Sweden’s greatest promoting BEV in January, its first time within the prime spot, with 588 items.

Second place went to the Volkswagen ID.4 with 396 items, and third went to the Tesla Mannequin Y, with 290 items.

With principally acquainted faces, the notable performances got here within the type of respectable climbs by relative newcomers, the Kia EV3, and the Cupra Tavascan. The Kia EV3, which debuted in November, retains steadily ramping, and has now reached seventh place, an excellent outcome, and now the very best rank of any Korean BEV.

The Cupra Tavascan debuted in August and has additionally steadily ramped its Swedish volumes since then, now at 170 items, and eleventh place. It is a good outcome for Cupra, although the Tavascan’s usurped sibling, the Born, is probably not so blissful, now exterior the highest 20 after beforehand rating round tenth. The SUV format of the Cupra Tavascan is (understandably) way more well-liked in Sweden and the Nordic international locations.

January noticed two debuts on the Swedish market. The brand new Opel Grandland X arrived with 29 items. It is a mid-sized (4650 mm) SUV, with a size someplace in between the Peugeot E-3008 and E-5008 with which it shares its platform. It’s priced from 3,399 SEK (300€) per 30 days for leasing, for the entry 73 kWh (usable) model. I can’t discover an MSRP worth on Opel’s web site or worth listing (leasing appears to be the precedence), please chime in under when you’ve got this.

We’ve detailed the specs of the brand new Renault 5 elsewhere, and it noticed a modest 11 unit Swedish debut in January. It is probably not the most well-liked format of auto in Sweden, however for many who are searching for a small hatchback (from MSRP 349,900 SEK or €31,000), the Renault could enchantment. Let’s see the way it will get on.

December’s debutant, the Audi A6 e-tron, climbed to a good 36 items in January (and already thirty fifth spot). We are going to observe how shut it’d get to the highest 20.

Now for the 3-month perspective:

Due to the top of 2024 push, the Tesla Mannequin Y remains to be very dominant in Sweden. The refreshed mannequin will begin native deliveries in March, so January and February are inevitably going to be considerably sluggish months for Tesla’s greatest vendor. Don’t be stunned to see the Mannequin Y again on prime by the top of Q2, nevertheless.

The most important transfer within the prime 20 chart got here from the Kia EV3, which was virtually absent 3 months in the past (simply 1 unit delivered), however has shot as much as 569 items over the previous 3 months, and brought twelfth spot. We will anticipate it to maintain climbing from right here. Recall that its a lot older sibling, the Kia Niro, was a prime 5 favorite in Sweden for a number of years. If this household’s pedigree is something to go by, anticipate to see the EV3 inside the highest 10 quickly.

Additional again, as you’ll have guessed, the Cupra Tavascan remains to be climbing, having reached nineteenth based mostly on the trailing 3 month quantity. The Tavascan may doubtlessly climb above fifteenth within the coming months, let’s be careful for that.

Outlook

While the 14% progress within the auto market is a good signal for the Swedish economic system, round half of that progress is a one-off bump from the ethanol autos’ pull-forward, mentioned above. The broader GDP progress was up 1.1% YoY in This fall 2024, the very best end in two years. Inflation is now low at 1%, and rates of interest have decreased to 2.25% (serving to new automobile financing). Manufacturing PMI remained considerably constructive in January, at 52.9 factors, from 52.4 in December.

As talked about earlier, the Europe-wide emissions tightening guidelines in 2025 ought to translate to regular progress within the BEV market this yr, after notable backsliding in 2024. This progress is probably not seen till the second half of the yr, and particularly the ultimate quarter.

What are your ideas on Sweden’s auto market and the EV transition? Which fashions will do effectively this yr? Please soar into the feedback part under and share your perspective.

 



Chip in a couple of {dollars} a month to assist assist unbiased cleantech protection that helps to speed up the cleantech revolution!


Have a tip for CleanTechnica? Wish to promote? Wish to recommend a visitor for our CleanTech Discuss podcast? Contact us right here.


Join our every day publication for 15 new cleantech tales a day. Or join our weekly one if every day is simply too frequent.


Commercial



 


CleanTechnica makes use of affiliate hyperlinks. See our coverage right here.

CleanTechnica’s Remark Coverage