8.4 C
New York
Tuesday, March 25, 2025
Home Blog Page 3

Phishing-as-a-Service Assaults are on the Rise

0


Phishing and Malicious EmailsPhishing-as-a-service (PhaaS) platforms drove a surge in phishing assaults within the first two months of 2025, based on researchers at Barracuda.

Tesla Automobiles Depreciate the Most in USA — However There is a Catch



Join each day information updates from CleanTechnica on e mail. Or comply with us on Google Information!


There’s a brand new evaluation on the market that reveals that Tesla autos depreciate essentially the most of any model within the USA after 1 12 months of possession (26.6%), after 3 years of possession (44.4%), and after 5 years of possession (54.7%).

On the flip aspect, the car model that depreciates the least after 1 12 months of possession (11.2%), after 3 years of possession (23.9%), after 5 years of possession (30.7%), and after 7 years of possession (41.6%) is Toyota.

It’s vital to notice, although, that Tesla sells 4 of the 14 electrical car fashions which are eligible for the $7,500 zero-emissions car tax credit score. That signifies that, successfully, $7,500 comes off of the worth of these fashions as quickly as they roll off the lot. There isn’t any different model that’s going to be practically as affected by this as Tesla in terms of depreciation.

Importantly, the tax credit score could be utilized to each EV that’s leased — the leasing firm will get the credit score, and may in fact move that on to prospects through decrease lease funds. However then there’s no depreciation being calculated for an evaluation like this. (Although, you may nonetheless get nice offers on EVs which have simply come off lease.)

Earlier than shifting on to extra of the findings, we had a really attention-grabbing touch upon this subject from an everyday reader a few weeks in the past. “Des Pudels Kern” famous, “That is maybe a repetition, however a buddy bought her Tesla this week and purchased one other EV. Within the 10 days that she dithered over the choice the trade-in worth for her Tesla dropped $3500 on the identical dealership. I feel they may simply have a little bit of a requirement/picture/popularity drawback….” That was in response to an article I wrote about Tesla providing increasingly monetary incentives to stimulate gross sales. Excessive Terrain, which performed this new depreciation evaluation, doesn’t point out when the evaluation was carried out, nevertheless it was presumably very not too long ago. But when this expertise from Des Pudels Kern’s buddy represents the norm, we will see {that a} week right here or there might actually have an effect on the outcomes.

Anyway, returning to the findings, the Tesla Mannequin 3 is especially hit by excessive depreciation within the quick time period. It sees essentially the most depreciation after 1 12 months of possession (35.6%). After 3 years of possession, the Tesla Mannequin X takes the most important hit (50.2% depreciation), and the Nissan LEAF is second worst (48.9%). The Mannequin X is fifth worst after 5 years of possession (56.9%) and the Mannequin S is seventh worst (56.5%). After 7 years of possession, the Mannequin S is worst (68%) and the Mannequin X is sixth worst (66.8%).

Apart from Tesla’s fashions, the one different EV you see close to the highest of those lists from Excessive Terrain is the Nissan LEAF. Although, it seems that different electrical fashions should not included right here — besides maybe as a part of broader mannequin names (like Ford F-150 and Ford Mustang). Most pure EV fashions haven’t been in the marketplace for very lengthy, and it seems that’s why they aren’t included right here. Even the Tesla Mannequin Y isn’t included.

Is depreciation a significant component to be involved about with EVs, and Teslas specifically? Possibly, however one additionally has to remember that the $7,500 tax credit score goes to warp the outcomes.

Possibly we must always do out personal evaluation over a shorter timeframe (not solely utilizing fashions which are at the least 7 years previous) and maybe even utilizing post-subsidy pricing as beginning costs for EVs that qualify for US EV tax credit!  That might be attention-grabbing to see. Or, for that matter, we might simply analyze EV fashions and see how they evaluate. We’ll have many extra fashions to check in a few years, nevertheless it might be enjoyable and attention-grabbing to get began now.

Some other ideas or requests on this enviornment? What have you ever observed on the subject of EV depreciation over time?

Whether or not you’ve got solar energy or not, please full our newest solar energy survey.



Chip in a number of {dollars} a month to assist assist unbiased cleantech protection that helps to speed up the cleantech revolution!


Have a tip for CleanTechnica? Need to promote? Need to recommend a visitor for our CleanTech Speak podcast? Contact us right here.


Join our each day publication for 15 new cleantech tales a day. Or join our weekly one if each day is simply too frequent.


Commercial



 


CleanTechnica makes use of affiliate hyperlinks. See our coverage right here.

CleanTechnica’s Remark Coverage




Boston Dynamics plans to make use of NVIDIA’s Isaac GR00T to construct AI capabilities for Atlas

0


Boston Dynamics plans to make use of NVIDIA’s Isaac GR00T to construct AI capabilities for Atlas

Aaron Saunders, the CTO of Boston Dynamics, will focus on Atlas in his keynote on the Robotics Summit & Expo. | Supply: Boston Dynamics

Boston Dynamics Inc. final week introduced that it has expanded its collaboration with NVIDIA Corp. to construct the subsequent era of synthetic intelligence capabilities for humanoid robots.

As an early adopter of NVIDIA’s Isaac GR00T framework, Boston Dynamics’ Atlas robotic makes use of the NVIDIA Jetson Thor computing platform. Jetson Thor‘s compact measurement, excessive efficiency, and effectivity permit Atlas to run complicated, multimodal AI fashions that work with Boston Dynamics’ whole-body and manipulation controllers, the businesses mentioned.

“Robots are the bridge between simulation and the actual world,” acknowledged Aaron Saunders, chief know-how officer at Boston Dynamics.

“With the present era of our electrical Atlas, we’re constructing the world’s most succesful humanoid,” he added. “Collaborating with NVIDIA to combine Jetson Thor implies that robotic now has the highest-performance compute platform behind it. Isaac lab is permitting us to develop state-of-the-art AI capabilities, and the early outcomes are thrilling.”

NVIDIA and companions advance robotic studying

Boston Dynamics famous that it and its analysis companions are additionally advancing discovered dexterity and locomotion AI insurance policies utilizing Isaac Lab. The open-source, modular framework for robotic studying in bodily correct digital environments is constructed on NVIDIA’s Isaac Sim and Omniverse applied sciences.

NVIDIA and Boston Dynamics are collaborating to outline key platform parameters together with purposeful security and safety architectures, in addition to key studying and pc imaginative and prescient pipelines utilizing NVIDIA’s coaching and simulation platforms. The businesses introduced their newest joint efforts at NVIDIA’s GTC occasion final week.

Along with the continuing work on Atlas, Boston Dynamics has continued introducing new AI capabilities for Spot, the firm‘s quadruped robotic, and Orbit, its robotic fleet administration and knowledge evaluation software program. Boston Dynamics mentioned new reinforcement studying (RL) instruments are bettering Spot’s locomotion management, whereas superior basis fashions are serving to it keep away from particular hazards which may seem in its path.

Boston Dynamics to share Atlas insights at Robotics Summit

Humanoids will probably be distinguished on the Robotics Summit & Expo, which will probably be on April 30 and Might 1 in Boston and is produced by WTWH Media, father or mother group of The Robotic Report.

Saunders will open the summit together with his keynote, “Redesigning Atlas: Boston Dynamics on the Way forward for Humanoids.” Throughout this session, he’ll unpack the RBR50 award-winning electrical Atlas and share insights from being on the forefront of humanoid improvement for years.

This keynote will discover the challenges and alternatives of constructing humanoids for real-world functions. It should additionally supply a behind-the-scenes have a look at how Boston Dynamics continues to push the restrict of robotics.

Along with Saunders’ opening keynote, the primary day of the occasion will function a panel on the state of humanoids with Pras Velagapudi, chief know-how officer at Agility Robotics; Aaron Prather, director of robotics and autonomous methods at ASTM Worldwide; and Al Makke, director of engineering at Schaeffler.

They are going to discover the technical and enterprise challenges shaping the event of humanoids. The panelists can even share insights from early deployments, the continuing efforts to determine security requirements, and what’s on the horizon.

The Robotics Summit & Expo will convey collectively greater than 5,000 builders centered on constructing robots for a wide range of business functions. Attendees can acquire insights into the newest enabling applied sciences, engineering finest practices, and rising tendencies.

Vital Ingress NGINX Controller Vulnerability Permits RCE With out Authentication

0


Mar 24, 2025Ravie LakshmananVulnerability / Cloud Safety

Vital Ingress NGINX Controller Vulnerability Permits RCE With out Authentication

A set of 5 vital safety shortcomings have been disclosed within the Ingress NGINX Controller for Kubernetes that might end in unauthenticated distant code execution, placing over 6,500 clusters at fast danger by exposing the part to the general public web.

The vulnerabilities (CVE-2025-24513, CVE-2025-24514, CVE-2025-1097, CVE-2025-1098, and CVE-2025-1974 ), assigned a CVSS rating of 9.8, have been collectively codenamed IngressNightmare by cloud safety agency Wiz. It is value noting that the shortcomings don’t impression NGINX Ingress Controller, which is one other ingress controller implementation for NGINX and NGINX Plus.

“Exploitation of those vulnerabilities results in unauthorized entry to all secrets and techniques saved throughout all namespaces within the Kubernetes cluster by attackers, which can lead to cluster takeover,” the corporate stated in a report shared with The Hacker Information.

Cybersecurity

IngressNightmare, at its core, impacts the admission controller part of the Ingress NGINX Controller for Kubernetes. About 43% of cloud environments are susceptible to those vulnerabilities.

Ingress NGINX Controller makes use of NGINX as a reverse proxy and cargo balancer, making it potential to reveal HTTP and HTTPS routes from outdoors a cluster to companies inside it.

The vulnerability takes benefit of the truth that admission controllers, deployed inside a Kubernetes pod, are accessible over the community with out authentication.

Particularly, it includes injecting an arbitrary NGINX configuration remotely by sending a malicious ingress object (aka AdmissionReview requests) on to the admission controller, leading to code execution on the Ingress NGINX Controller’s pod.

“The admission controller’s elevated privileges and unrestricted community accessibility create a vital escalation path,” Wiz defined. “Exploiting this flaw permits an attacker to execute arbitrary code and entry all cluster secrets and techniques throughout namespaces, that might result in full cluster takeover.”

The shortcomings are listed under –

  • CVE-2025-24514 – auth-url Annotation Injection
  • CVE-2025-1097 – auth-tls-match-cn Annotation Injection
  • CVE-2025-1098 – mirror UID Injection
  • CVE-2025-1974 – NGINX Configuration Code Execution

In an experimental assault state of affairs, a risk actor might add a malicious payload within the type of a shared library to the pod through the use of the client-body buffer characteristic of NGINX, adopted by sending an AdmissionReview request to the admission controller.

The request, in flip, comprises one of many aforementioned configuration directive injections that causes the shared library to be loaded, successfully resulting in distant code execution.

Cybersecurity

Hillai Ben-Sasson, cloud safety researcher at Wiz, informed The Hacker Information that the assault chain basically includes injecting malicious configuration, and using it to learn delicate information and run arbitrary code. This might subsequently allow an attacker to abuse a powerful Service Account in an effort to learn Kubernetes secrets and techniques and finally facilitate cluster takeover.

Following accountable disclosure, the vulnerabilities have been addressed in Ingress NGINX Controller variations 1.12.1, 1.11.5, and 1.10.7.

Customers are really helpful to replace to the newest model as quickly as potential and be certain that the admission webhook endpoint shouldn’t be uncovered externally.

As mitigations, it is suggested to restrict solely the Kubernetes API Server to entry the admission controller and briefly disable the admission controller part if it isn’t wanted.

Discovered this text fascinating? Observe us on Twitter and LinkedIn to learn extra unique content material we put up.



The Bot Firm, led by Kyle Vogt, brings in one other $150M

0


The Bot Firm, led by Kyle Vogt, brings in one other 0M

Kyle Vogt, then president and CTO of Cruise, delivered a keynote on the 2019 Robotics Summit & Expo.

The Bot Firm — led by former Cruise CEO Kyle Vogt — has raised $150 million in new funding, based on Reuters. Whereas the corporate has but to disclose a service robotic prototype, this newest funding places its valuation at $2 billion.

The most recent funding spherical consists of participation from Greenoaks, a San Francisco-based world funding agency. Its earlier funding was led by Nat Friedman, a California-based investor; Daniel Gross, an angel investor in companies like SpaceX, Stripe, and Instacart; and Nabeel Hyatt, a normal associate at Spark Capital. It additionally included participation from Quiet Capital, Patrick Collison, John Collison, Elad Gil, Fifty Years, and extra.

It has been over a yr since Vogt publicly launched The Bot Firm with $150 million already raised. Paril Jain, chief know-how officer and former tech lead and AI supervisor at Tesla, is a co-founder of the firm. Luke Holoubek, an engineer at The Bot Firm, is the previous technical advisor to the CTO at self-driving automotive developer Cruise.

Vogt has fundraising, AV expertise

Vogt isn’t any stranger to technical and enterprise challenges. He began Cruise in 2013 with Dan Kan. Common Motors acquired Cruise for $1 billion in 2016. In November 2023, Vogt left Cruise, saying his plans embrace spending time with household and “exploring new concepts.”

The resignation got here after a tough few weeks for Cruise. In October 2023, California’s Division of Motor Automobiles (DMV) suspended Cruise’s autonomous car (AV) deployment and driverless testing permits. The DMV stated it suspended the permits as a result of  of a string of incidents, saying the corporate “misrepresented” the security of its robotaxis. Extra lately, GM formally stopped funding Cruise’s robotaxi deployments.

Vogt’s expertise with funding corporations didn’t begin with Cruise. He was a co-founder of Justin.television, finally the dad or mum firm of Twitch.television. In 2014, Amazon bought Twitch for $970 million.


SITE AD for the 2025 Robotics Summit registration.
Register now so you do not miss out!


The Bot Firm hopes to automate mundane chores

The Bot Firm goals to create dwelling robots that can help folks with on a regular basis duties. The San Francisco-based startup has remained tight-lipped about what its system will appear like or what capabilities it is going to have, however Reuters stated sources indicated that it’s engaged on a non-humanoid robotic geared up with a base and grips.

The Bot Firm stated it’s specializing in automating family chores so folks have extra time for significant pursuits. Nevertheless, family robotics is a notoriously difficult section of the robotics market. In contrast to in industrial settings, builders of dwelling robots don’t have any certainty concerning the situations their robots must function in.

Different dwelling robotic builders embrace 1X Applied sciences, which lately unveiled the NEO Gamma humanoid because it prepares for pilot deployments in choose properties. On the non-humanoid facet of issues, Hey Robotic presently presents Stretch 3, a cell manipulator to assist disabled folks achieve independence of their properties.

The Bot Firm stated the most recent funding spherical will assist it construct out the {hardware} and synthetic intelligence for its family robots. The Robotic Report reached out to the corporate for added particulars however didn’t hear again as of press time.