RSS Feeds

Five players get first England deals in Borthwick shake-up
Published: 2026-08-12 13:30:06 | Created: 2026-08-12 13:34:55
Asher Opoku-Fordjour, Alex Coles, Guy Pepper, Jack van Poortvliet and Seb Atkinson are handed England central contracts for the first time as Steve Borthwick shakes up his squad.
show more
What to know about 2026's only total solar eclipse
Published: 2026-08-12 13:25:47 | Created: 2026-08-12 13:32:54
CBS News meteorologist Rob Marciano explains what to know about the only solar eclipse happening this year. Parts of Europe will experience totality, while some U.S. states will see a partial eclipse.
show more
От ручных правил к модели: как автоматизировать субсидии, если нельзя просаживать метрики в A/B
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 13:27:54 | Created: 2026-08-12 13:29:55

Привет! Я Арина Сокова, аналитик в Авито Подработке. Мы отвечаем за то, чтобы смены на платформе закрывались, исполнители и заказчики находили друг друга, а платформа не тратила на продвижение сервиса слишком много. В статье расскажу, что такое субсидии в Авито Подработке, и как мы перешли от ручного назначения субсидий по бизнес-правилам к автоматической системе.

Текст будет полезен аналитикам и продакт-менеджерам, которые работают с ценообразованием, субсидиями, промомеханиками и любыми задачами оптимизации бюджета при ограничениях.

Читать далее
show more
WATCH: Total solar eclipse darkens skies over Spain, Iceland
Feed: PBS News Hour - The Latest (https://www.pbs.org/newshour/feeds/rss/headlines)
Published: 2026-08-12 13:24:12 | Created: 2026-08-12 13:29:55
Across a swath of northern and central Spain, millions of people will have some of mainland Europe's best views of the celestial spectacle.
show more
Powerball jackpot grows to $1 billion, the biggest lottery prize of the year so far
Published: 2026-08-12 13:21:09 | Created: 2026-08-12 13:26:54
The Powerball jackpot Wednesday has risen to $1 billion. The last person to win the jackpot was in May. Jason Allen reports.
show more
Powerful storms in US midwest leave three dead and 800,000 without power
Feed: World news | The Guardian (https://www.theguardian.com/world/rss)
Published: 2026-08-12 13:11:21 | Created: 2026-08-12 13:25:56

Winds of more than 80mph, severe flooding and tornadoes swept through Indiana, Ohio, Illinois and Kentucky

Powerful storms swept across ⁠the midwest on Tuesday, leaving three dead and more than 800,000 without power in four states as winds gusts of more than 80mph (130km/h) tore down trees and power lines.

⁠In Indiana, a four-year-old child died after a tree fell on his ⁠home in Geneva Township and a person died in a suspected weather-related house explosion in Portage, a city about 30 miles south-east of Chicago.

Continue reading...
show more
Excitement Builds Across Europe for Rare Total Solar Eclipse
Published: 2026-08-12 11:57:43 | Created: 2026-08-12 13:24:55
Excitement is building across Europe ahead of the continent’s first total solar eclipse in more than 25 years. The sun will be completely covered by the moon for just one minute and 43 seconds, but it is long enough to attract nearly half a million tourists who will be gazing skyward. NBC’s Raf Sanchez reports for TODAY.
show more
Powerful storms in US midwest leave three dead and 800,000 without power
Published: 2026-08-12 13:11:21 | Created: 2026-08-12 13:24:55

Winds of more than 80mph, severe flooding and tornadoes swept through Indiana, Ohio, Illinois and Kentucky

Powerful storms swept across ⁠the midwest on Tuesday, leaving three dead and more than 800,000 without power in four states as winds gusts of more than 80mph (130km/h) tore down trees and power lines.

⁠In Indiana, a four-year-old child died after a tree fell on his ⁠home in Geneva Township and a person died in a suspected weather-related house explosion in Portage, a city about 30 miles south-east of Chicago.

Continue reading...
show more
Son of Myanmar's Aung San Suu Kyi reacts to first photos since her arrest after 2021 coup
Published: 2026-08-12 13:16:56 | Created: 2026-08-12 13:24:54
Myanmar's former leader Aung San Suu Kyi has been in detention since a 2021 military coup. She was seen in photos for the first time since the coup after meeting with a delegation from the International Committee of the Red Cross. Her son, Kim Aris, spoke with CBS News' Ramy Inocencio.
show more
Rubio, Bessent took decoy Air Force One, Hegseth flew on secret flight with Trump
Published: 2026-08-12 21:45:00 | Created: 2026-08-12 13:24:54
Secretaries Marco Rubio and Scott Bessent were on the decoy flight last month when President Trump secretly switched to a different plane while Pete Hegseth was with Mr. Trump.
show more
Taylor Farms recalls foods made with jalapeños over salmonella concerns
Published: 2026-08-10 17:04:53 | Created: 2026-08-12 13:21:55
The company had separately recalled iceberg lettuce connected to the largest cyclospora outbreak in the United States.
show more
Dogs can tell when you’re happy, sad or frustrated, study shows
Published: 2026-08-11 09:00:00 | Created: 2026-08-12 13:21:55
Researchers took brain scans mostly of border collies because they are highly skilled at following social cues and particularly willing to interact with humans.
show more
Ex-ICE agent’s group awarded $158 million to represent migrant children
Published: 2026-08-11 22:19:16 | Created: 2026-08-12 13:21:55
The Trump administration gave the contract to Our Rescue, which Tim Ballard, the former agent, left in 2023 before being accused of sex trafficking.
show more
Откуда всё-таки Эйнштейн взял формулу E=mc²?
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 13:19:49 | Created: 2026-08-12 13:20:56

Какая формула из мира физики самая популярная вне этой науки? Конечно же это легендарная E=mc². Её можно увидеть и на чехлах для смартфонов, и на чашечках с кофе, где расшифровка выглядит совсем не-физически, и даже в каких-то мутных околонаучных трудах, когда всё утрируется до элементарного и ей подкрепляется, что любой объект есть энергия. Даже в рекламе кое-какого напитка её использовали, потому можно с уверенностью утверждать об огромной популярности соотношения среди самых разных людей и отличающихся уровней знания.

Читать далее
show more
'Da Vinci rapist' could be monitored for life after latest conviction
Feed: The Latest News from the UK and Around the World | Sky News (https://feeds.skynews.com/feeds/rss/home.xml)
Published: 2026-08-12 10:59:00 | Created: 2026-08-12 13:20:54
A rapist jailed for attacking a Dutch student in 2006 could be monitored for life after he was found guilty of two other attacks at around the same time.
show more
South Korea crisis deepens over sexual favours scandal
Published: 2026-08-12 13:11:07 | Created: 2026-08-12 13:19:56
The South Korean FA apologises amid a series of controversies and a police raid on its headquarters.
show more
David Crowley projected to defeat Francesca Hong in Wisconsin Democratic primary
Published: 2026-08-12 13:05:37 | Created: 2026-08-12 13:19:54
Moderate David Crowley will beat Democratic socialist Francesca Hong in the Wisconsin Democratic gubernatorial primary, CBS News projects. Anthony Salvanto looks at the electoral map, and Fin Gómez has more analysis.
show more
See the moment a woman was pulled from debris following devastating Colombia earthquake
Published: 2026-08-12 13:12:40 | Created: 2026-08-12 13:19:54
The search for survivors continues in Colombia after a powerful 7.4 magnitude earthquake struck earlier this week. The country's president says more than 180 people have been killed and thousands are injured. Lilia Luciano has the latest.
show more
Trump faces questions about staff, journalists left aboard Air Force One facing deadly Iran threat
Published: 2026-08-12 13:14:37 | Created: 2026-08-12 13:19:54
President Trump was covertly moved to a second plane when leaving the NATO summit in Turkey after a missile threat from Iran. Lawmakers now have questions about the staffers and journalists left on board the decoy plane. CBS News' Aaron Navarro reports.
show more
U.S. Marine veteran freed from prison in Russia after 4 years
Published: 2026-08-12 13:15:00 | Created: 2026-08-12 13:19:54
Robert Gilman, a U.S. Marine veteran, was released from a Russian prison after more than four years. He had been reported to be in failing health. Leigh Kiniry reports.
show more
His wedding guests gave $6k to fund a health startup. Now it's won a $3 million prize
Feed: NPR Topics: News (https://feeds.npr.org/1001/rss.xml)
Published: 2026-08-12 13:00:19 | Created: 2026-08-12 13:14:56
Genesis Whegelee (right, in vest) has been a community health worker for Last Mile Health in Rivercess County, Liberia, since 2018. He visits households to keep an eye on sick children, pregnant moms and anyone with a problem that needs diagnosing.

Dr. Raj Panjabi founded Last Mile Health to bring healthcare to people living in remote areas. The group is the 2026 recipient of the Conrad N. Hilton Humanitarian Prize.

(Image credit: Last Mile Health)

show more
La Liga to inspect Celta Vigo's pitch after fungus outbreak
Published: 2026-08-12 13:01:06 | Created: 2026-08-12 13:13:57
La Liga officials are set to inspect the pitch at Celta Vigo's Estadio de Balaidos over a suspected fungus outbreak.
show more
Water safety tips as millions of Americans deal with intense heat wave
Published: 2026-07-01 15:31:00 | Created: 2026-08-12 13:13:55
Ahead of the Fourth of July weekend, experts are warning about the dangers of rip currents and the importance of water safety.
show more
6 AI-сервисов, которыми сейчас можно пользоваться бесплатно или почти бесплатно
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 13:10:51 | Created: 2026-08-12 13:12:56

Собрал шесть AI-сервисов, которыми сейчас можно пользоваться бесплатно или с крупными стартовыми кредитами: FLUX 3 для генерации видео, Manus, Postman Agent Mode, Claude через API, Atomesus и Deepgram с $200 на Voice AI. Проверил регистрацию и условия на своих аккаунтах, добавил скриншоты и короткие инструкции. Актуально на 12 августа 2026 года.

Читать далее
show more
Cambridge agrees to hold independent inquiry into Jason Arday appointment
Published: 2026-08-12 16:28:24 | Created: 2026-08-12 13:09:55

Vice-chancellor Deborah Prentice says she recognises the ‘difficult case’ has damaged the university

Cambridge University’s leadership has bowed to internal pressure for an independent investigation into its appointment of Jason Arday as a professor, with its vice-chancellor admitting the affair has damaged the institution.

Prof Deborah Prentice said she recognised the “anger and anxiety around this damaging and difficult case” but described it as an aberration that should not be used to cast aspersions on the abilities of its staff of colour.

Continue reading...
show more
‘Today’s Brazilians have no idea what it feels like to lose democracy’: Joyce Moreno on her battles to become a Latin musical great
Published: 2026-08-12 13:00:29 | Created: 2026-08-12 13:09:55

After her defiant femininity outraged many in Brazil, she lived through a military dictatorship and was boycotted for years. But after more than 30 albums, she explains how she kept going

At 78, Joyce Moreno is one of Brazil’s musical icons, but for decades that status seemed far from assured: this headstrong singer, guitarist and composer was frequently viewed as a threat by her country’s establishment. Aged 19, the reaction to her song Me Disseram – which began “I was told my man didn’t love me” – almost torpedoed her career before it even started. “I’d often heard the expression ‘my man’ sung by Billie Holiday and Edith Piaf, so for me it was normal,” she says. “But I was a beach girl from Ipanema, writing and singing in the first person. People were shocked.”

Then, inspired by trailblazing actor Leila Diniz (“her liberal attitudes lost her jobs”), Moreno refused requests that she “dress like a sexy bimbo”, and endured male critics who thought her music “too good to have been written by a woman”. When, in 1980, she discovered that her label had given another female singer the blueprints for songs she had written, she “looked for a lawyer, of course” and successfully sued; in her memoir she claims she was then boycotted by Brazil’s major record companies for a decade.

Continue reading...
show more
Minnesota primary results: Lisa Demuth defeats Mike Lindell
Feed: ABC News: Top Stories (https://abcnews.go.com/abcnews/topstories)
Published: 2026-08-12 09:13:53 | Created: 2026-08-12 13:08:55
Voters weighed in on key races in Minnesota's primary elections on Tuesday, including the races to replace retiring Democratic Sen. Tina Smith and retiring Gov. Tim Walz.
show more
Primaries key takeaways: A centrist win, questions about Trump endorsement
Feed: ABC News: Top Stories (https://abcnews.go.com/abcnews/topstories)
Published: 2026-08-12 21:11:06 | Created: 2026-08-12 13:08:55
Tuesday's primaries offered fresh tests of the Democratic Party's direction, the influence of President Donald Trump's endorsements and the Republican Party's future.
show more
Police link Welsh valleys death to biker gang rivalry
Feed: World news | The Guardian (https://www.theguardian.com/world/rss)
Published: 2026-08-12 13:02:11 | Created: 2026-08-12 13:07:57

Investigators believe Vikings and Hells Angels members involved in violence that preceded death of Brecon man

A man was killed in what is believed to have been a violent brawl between rival motorcycle gangs in the south Wales valleys, police have said.

Anthony “Tony” Jones, 56, of Brecon, died of his injuries in hospital after the violence in Pontnewynydd, near Pontypool, last Thursday evening, which reportedly involved knives and hammers.

Continue reading...
show more
Wisconsin result dents winning streak for Democratic Party's left wing
Published: 2026-08-12 13:35:12 | Created: 2026-08-12 13:07:56
Centrist David Crowley is projected to have beaten democratic socialist Francesca Hong, breaking a recent nationwide trend.
show more
US inflation eases as food and fuel costs cool
Published: 2026-08-12 17:03:05 | Created: 2026-08-12 13:07:56
Annual US inflation dipped to 3.4% in July, with food costs slowing and housing keeping prices slightly higher.
show more
His wedding guests gave $6k to fund a health startup. Now it's won a $3 million prize
Feed: NPR Topics: News (https://feeds.npr.org/1001/rss.xml)
Published: 2026-08-12 13:00:19 | Created: 2026-08-12 13:05:56
Genesis Whegelee (right, in vest) has been a community health worker for Last Mile Health in Rivercess County, Liberia, since 2018. He visits households to keep an eye on sick children, pregnant moms and anyone with a problem that needs diagnosing.

Dr. Raj Panjabi founded Last Mile Health to bring healthcare to people living in remote areas. The group is the 2026 recipient of the Conrad H. Hilton Humanitarian Prize.

(Image credit: Last Mile Health)

show more
Сертификат TLS для IP-адреса
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 13:01:18 | Created: 2026-08-12 13:02:55

Let’s Encrypt всегда проверял только доменные имена. Однако с развитием микросервисных архитектур, API-взаимодействий и IoT-устройств возникла необходимость защищать трафик серверов, у которых нет домена. 15 января 2026 года стал общедоступным профиль shortlived с 6-дневными сертификатами для «чистых» IP-адресов. Теперь не нужно тратить деньги и время на покупку и регистрацию бесполезных доменных имен.

На Хабре уже есть подробные статьи и руководства на тему настройки HTTPS, выпуска сертификатов и конфигурации веб-серверов, но в большинстве случаев они объясняют, как защитить сайт с доменом. Мы же разберём, как обойтись без него и выпустить официальный доверенный TLS-сертификат прямо на «голый» IPv4-адрес.

Читать далее
show more
Trump addresses secret Air Force One swap as new questions swirl
Published: 2026-08-12 12:51:28 | Created: 2026-08-12 13:01:54
President Trump secretly left Turkey last month following a NATO summit on a different plane than Air Force One even though many others were still allowed to board. Mr. Trump on Tuesday made his first public comments about the secret switch. Nancy Cordes reports.
show more
How We’re Building Scam Alert on WhatsApp With End-to-End Encryption and Verifiability Guarantees
Feed: Engineering at Meta (https://engineering.fb.com/feed/)
Published: 2026-08-12 13:00:28 | Created: 2026-08-12 13:00:57

WhatsApp is committed to helping people stay safe while protecting the privacy of their messages. As scam tactics evolve — from impersonation to social engineering to AI-generated lures — we’re always evolving as well, so that our protections stay ahead of scammers while protecting people’s personal messages with end-to-end encryption.

Today, we’re sharing an early look at Scam Alert, a new, optional feature that runs an on-device machine learning model to alert a user about potential scam messages. No message content leaves the device for classification or is auto-reported to WhatsApp, Meta, or anyone else. The feature complements end-to-end encryption while enabling a user-controlled, optional scam alert when the model believes there’s a likely scam.

Before we make this feature available to all WhatsApp users, we are publishing this early technical overview alongside the feature’s limited rollout in Beta, and will continue working with our Bug Bounty community to stress-test this system. To help validate our implementation, we welcome feedback from the broader security research community.

Design Principles

Recent advances in on-device machine learning models make it possible to run accurate text classification entirely on mobile hardware without the performance, battery, or model-size tradeoffs that previously made on-device classification less practical. Scam Alert is well-suited to this approach: The model is small enough to run on-device, simple enough to publish for independent review, and effective without server-side components. The architecture we chose reflects a set of deliberate choices about what this system can and cannot do.

To that end, we designed Scam Alert to meet the following principles that adhere to the core guarantees of end-to-end encryption:

  • On-device only: The model and the message data it processes all remain on the device.
  • No automatic reporting: WhatsApp is unable to initiate sharing of any user data without the user’s action. The only way message content, or even the fact a scam was detected, reaches our servers is if the user explicitly chooses to report it, which is consistent with how user reporting works on WhatsApp.
  • User control: Scam Alert is a user-controlled tool that provides additional information to the user, and the user can turn it off or on at any time. 

How Scam Alert Works

Scam Alert is optional. Once the user turns it on, Scam Alert downloads a machine learning model to the device, where it runs inferences to classify whether incoming messages from non-contacts match known scam patterns. The model is trained on patterns observed in scam conversations from reports that users have sent to us. It performs probabilistic classification based on conversational structure and linguistic signals. No content is automatically reported to WhatsApp, Meta, or any third party. 

If the model identifies a message as a likely scam attempt, the user sees a warning in the chat, which is not visible to the other person. From there, the user can decide what to do: block, report, or continue the conversation. If they decide that a warning is incorrectly flagged, the user can mark the chat as trusted, in which case the warning is removed and Scam Alert will not flag that chat again. If a user marks that they trust a chat, they can also opt in to share the last 5 messages received with WhatsApp to help improve the feature’s accuracy. 

Foundational Safeguards

To uphold the principles above, we designed Scam Alert with the following foundational requirements and safeguards, with each architecturally enforced and independently verifiable by security researchers through an expanded bug bounty program and by users themselves through in-app logs. 

  1. On-Device Processing and Privacy-Preserving Analytics: All inference happens on-device and no message content leaves the user device for classification. The minimal telemetry needed to measure whether the feature is working (i.e., aggregate and anonymous warning counts and user action counts) is processed within a confidential computing environment and sent to WhatsApp as differentially private aggregates. The confidential federated analytics pipeline is built on top of confidential virtual machines (CVMs), a type of Trusted Execution Environment (TEE). We chose this approach so its behavior can be independently verified.
  2. No Targeted Model Delivery: Neither Meta nor WhatsApp can deliver a specific model to a specific user. Every model version, including experimental variants, is published on a public transparency ledger before it is deployed.
  3. Verifiable Model Behavior: We publish model weights so that independent security researchers can verify that we’ve purpose built this for scams only.

The rest of this post details the technical implementation of each requirement.

On-Device Processing and Privacy-Preserving Analytics

As referenced above, all inference happens on-device. But we need to know that the feature itself is working – i.e., it is indeed catching real scams – and know if we need to update it to stay ahead of constantly evolving scams and improve the model over time.

To that end, our approach follows a set of data minimization principles. Message content does not leave the device, and logging is limited by design to only the signals that are needed to measure whether the feature is working as intended. Even those signals are processed within a confidential computing environment built on TEEs, which ensures that processing occurs in a secure environment that no one, including Meta and WhatsApp, can access. Our experience building and securing systems like Private Processing has informed the design of this system. Only anonymous, differentially private aggregates are made available to Meta and WhatsApp. Differential privacy works by adding carefully calibrated noise to provide a mathematical guarantee that adding or removing any single person’s data has a negligible effect on the anonymous, aggregated numbers. Hence these aggregates show how the feature performs across the population while telling us nothing about any individual.

For Scam Alert, that data is limited to two categories of approximate, aggregate counts:

  • Warning Counts – how many times the on-device model surfaced a scam warning. This tells us whether the model is triggering at the right rate, which is essential for measuring precision and catching regressions across model versions.
  • User Action Counts – when a user sees a warning, they can trust the sender or block and report. We log which action category was taken as an aggregate count. This tells us whether users find the warnings accurate, which is essential for measuring false positive rate.

Confidential Federated Analytics

To anonymize these warning and user action counts, we built a confidential federated analytics pipeline designed around the following privacy and security guarantees, each architecturally enforced and externally verifiable:

  • On-Device Data Minimization: For Scam Alert, raw signals do not leave the device. The client aggregates them locally into counts and sends only those aggregated counts. These metrics are sent at randomized times, contain no device identifiers and limit any timestamp information to coarse time intervals. This ensures that neither the act of transmitting these metrics nor the metrics themselves can be used to identify a user.
  • Confidential Processing: These metrics are processed within TEEs, secure hardware environments built on CPU-based confidential virtualization technologies, which allow attestation of software based in a hardware root of trust. Before any data is transmitted, the client checks these attestations and confirms them against a third-party log of acceptable binaries. Data is encrypted between the client and the TEE, so that no one in between, including Meta, WhatsApp, or any third-party relay, can access it.
  • Secure Aggregation: Individual device metrics are not readable by Meta, WhatsApp, or anyone outside the TEE. They are merged into running aggregates, and only aggregated statistics, above a minimum cohort size and with differential privacy noise applied, are made available to Meta or WhatsApp. For Scam Alert, the device sends pre-aggregated counts directly to TEE for secure aggregation.
  • Enforceable Guarantees: Before any data is transmitted, the client verifies that the code running in the TEE matches what was published on the third-party ledger and that the privacy parameters (such as differential privacy ε and δ, and k-anonymity thresholds) meet locally enforced guardrails. If verification fails or the privacy parameters are insufficient, the client refuses to transmit data. Any attempt to modify the processing guarantees either causes the system to fail closed or is publicly discoverable.
  • Encrypted Recovery Checkpoints: Because the pipeline aggregates data over long periods, the system periodically saves encrypted checkpoints of its in-progress aggregates, so that a crash does not force a measurement to restart from scratch. These checkpoints contain only the partial aggregate counts already being computed, and they are encrypted: the keys never leave the TEEs, so only confidential federated analytics TEEs running the same attested binary can decrypt a checkpoint, and neither Meta nor WhatsApp can read it. Checkpoints are retained only for the bounded period needed to recover.
  • Non-targetability: An attacker cannot target a particular user without attempting to compromise the entire system. All metrics are routed through an OHTTP relay that strips the requester’s IP address, and authenticated using anonymous credentials so that the system can verify that metrics come from a legitimate WhatsApp client without knowing which one. This limits the impact of small-scale attacks by ensuring that they cannot be used to target the data of a specific user.
  • Verifiable Transparency: we will provide in-app capabilities for users to review what data was shared with the confidential federated analytics pipeline, the privacy parameters applied (such as differential privacy ε and δ, and k-anonymity thresholds), and details of how each secure session was established. We will be publishing the CVM image binary powering the pipeline, along with the source code of its privacy-relevant components, so that security researchers can independently verify that the published code is exactly what runs in the TEE. We will be expanding our Bug Bounty program to include the confidential federated analytics pipeline and will publish a detailed engineering white paper on its design.

The foundations of this pipeline were established in Meta’s peer-reviewed federated analytics work, publicly outlined in “PAPAYA Federated Analytics Stack: Engineering Privacy, Scalability and Practicality” (USENIX NSDI 2025). Here, we describe how Scam Alert applies and extends that foundation.

How Confidential Federated Analytics Works

The pipeline works as follows:

  1. On-Device Data Collection: Data is collected and stored in a dedicated local store, isolated from other application data. The confidential federated analytics system can only access data that the application has explicitly made available to it. Hardcoded privacy guardrails enforce data lifetime, scope, and access. For Scam Alert, this is only counts of warning events and user actions.
  2. Job Selection: At randomized intervals, when the device is idle and subject to a self-enforced daily resource limit, the client connects to the application server via OHTTP. The client authenticates using anonymous credentials that prove it is a legitimate WhatsApp client without revealing which one, and fetches the list of active jobs for the pipeline. For each job, the client checks whether the privacy parameters (ε, δ, and k-anonymity thresholds) meet locally enforced guardrails, whether the device has new metrics to send, and whether participating would exceed its daily limits. The client can reject any job that does not meet these criteria.
  3. Local Transformation: For jobs the client accepts, it retrieves the relevant data from local storage and performs the requested on-device aggregation by converting raw signals into anonymous counts over the specified time period (e.g., daily warning counts, daily user action counts). Only the aggregated counts are transmitted; the raw signals remain on the device and are automatically deleted after a retention period.
  4. Attestation, Authentication, and Session Establishment: The client establishes a Remote Attestation + Transport Layer Security (RA-TLS) session with the orchestrator TEE. The attestation quote contains measurements of the orchestrator, which the client cross-checks against a third-party transparency ledger to ensure it is connecting only to code that satisfies our verifiable transparency guarantee. The client authenticates using anonymous credentials and the connection is routed via a third-party OHTTP relay that strips the requester’s IP address. The relay cannot read the metrics, as they are encrypted end-to-end between the device and the TEE.
  5. Orchestrator TEE — Ephemeral Processing: The encrypted metrics arrive at a stateless orchestrator hosted on a TEE. The orchestrator validates that the privacy configuration from the client matches the job’s configuration, batches metrics from multiple devices, and forwards the batched metrics to the appropriate aggregator TEE. For Scam Alert, these metrics are pre-aggregated counts.
  6. Aggregator TEE — Secure Aggregation: The aggregator TEE merges incoming metrics into running histograms. Individual metrics are discarded after aggregation. Periodically, the aggregator enforces k-anonymity thresholds to suppress results with too few contributors and applies differential privacy noise. The number and timing of releases are limited to ensure the overall privacy budget (ε, δ) is not exceeded across all releases. Only the noisy, thresholded aggregates are sent to WhatsApp.
  7. Datastore: Only differentially private, anonymous aggregates, such as total warning counts and action rates across all users, leave the TEE boundary. These aggregates contain no message content, no per-user data, and no conversation-level signals. They are used solely to measure whether the feature is working as intended.

The confidential federated analytics pipeline is built so that, by the time any totals reach WhatsApp, the counts have been aggregated across many users and had differential privacy noise added – so we only ever see approximate counts of how many warnings were shown and how many were acted on. We will not know what the messages was, who sent or received them, or which conversation triggered a warning.

Threat Model and Defense-in-Depth

This confidential federated analytics pipeline operates in a highly adversarial environment. Our threat model accounts for three categories of attacker: third-party or supply chain vendors with access to system components, malicious or compromised insiders with access to infrastructure, and external actors attempting to exploit the pipeline’s attack surface.

External actors attempt to intercept or extract unaggregated data in transit or during processing.

Data in transit is encrypted between the device and the TEE and routed through a third-party OHTTP relay. The relay’s role is limited to stripping the client’s IP address – it cannot decrypt, inspect, or modify the data itself. Because this data is already not visible to the third-party, a compromised relay cannot access the data or associate datasets with a specific user. During processing, data is protected by TEE code isolation, with entry points limited to a small set of reviewed components.

Insiders with infrastructure access attempt to access unaggregated data within the TEE.

The TEE prohibits remote shell access, including from the host machine. Neither Meta engineers nor networked systems can gain access to the CVM shell at runtime. Software is built exclusively from checked-in source code and artifacts, where any change requires multiple engineers to modify the build artifacts or build pipeline. All code changes are auditable, enabling both continuous internal audits and external security researchers to inspect our binaries. Unaggregated data is never readable outside the TEE; when stored, it is encrypted under keys released only to a TEE running the same attested binary, and retained only for a bounded period before being merged into running aggregates and discarded.

Attackers with physical or remote access interfere with the TEE to bypass confidential processing guarantees.

Because TEE guarantees are not absolute, we apply defense-in-depth: encrypted DRAM, CVM hardening, enhanced host monitoring, and OHTTP relay routing that prevents directing a specific user’s data to a specific machine. A targeted attack would require compromising the entire system in a way that is publicly discoverable through verifiable transparency.

No Targeted Model Delivery

The model is downloaded from a CDN, not hardcoded into the app, so that improvements in accuracy and coverage of emerging scam tactics can reach people without requiring a forced app upgrade. And to that end, we are also ensuring that there is no path to deliver a different model to a specific user.

Every model version — including its SHA-256 hash — is published on a third-party append-only transparency ledger before it is served to anyone. An append-only ledger is a public log where entries can be added but never modified or deleted, ensuring a tamper-evident history that researchers can inspect.

We designed the model download system around three guarantees:

  1. Auditability: Every model version is publicly recorded on a third-party append-only transparency ledger before it is served to any user. The ledger is tamper-evident, so entries can be added but never modified or deleted. Delivering a targeted model would require publishing it on a ledger that anyone can inspect, making the attempt publicly discoverable. To check the ledger, users can download their in-app transparency log and use the namespace and epoch in the report to confirm, using the following format: https://akd-auditor.cloudflare.com/namespaces/<namespace>/audits/<epoch>.
  2. Anonymous Download Requests: The model download endpoint has no way to determine which user is requesting a model. All download requests are authenticated using anonymous credentials and routed through an OHTTP relay that strips the requester’s IP address, and the request payload contains no identity selectors. The model assets themselves are served by a CDN, which delivers only publicly published files and has no role in choosing which model a device uses, so it cannot be used to target a specific user.
  3. Non-targetability: No one can deliver a specific model to a specific user, even through experimentation. The client randomizes the timing of download requests, and experiment group assignment happens entirely on the device: the client assigns itself to a group using locally generated randomness, so the server cannot steer a specific user to a specific model variant.

How Model Download and Verification Works

  1. Model Publication: When a new model version is ready for deployment, the server computes SHA-256 hashes of model weights, tokenizers, and other assets, and constructs a manifest — a JSON document containing these hashes, the model version, and a timestamp. The manifest digest (SHA-256 of the manifest) is submitted to a third-party signer (Cloudflare) for signing using Ed25519 keys. Meta does not hold the signing key. The signed manifest digest is then published to the third-party append-only transparency ledger, and the model assets are uploaded to the CDN.
  2. Anonymous Download Request: The client connects to the model download endpoint via OHTTP, authenticating with anonymous credentials. The OHTTP relay strips the client’s IP address — the relay can see the IP but cannot decrypt the request, and the server can see the request but only the relay’s IP. The server returns the manifest, the digital signature, and CDN URLs for the model assets.
  3. Client-Side Verification: Before using any downloaded model, the client performs a multi-step verification. First, it computes the manifest digest and verifies the digital signature against hardcoded Cloudflare Ed25519 public keys — confirming the manifest was signed by Cloudflare, not forged by Meta or any other party. Next, it cross-references the manifest digest with the transparency ledger and enforces freshness checks to prevent replay attacks with stale entries. Finally, it downloads the model assets from the CDN and verifies that the SHA-256 hash of each asset matches the manifest. If any step fails, the client refuses to load the model.
  4. Model Loaded on Device: Only after all verification steps pass does the client install and use the model.

Private Experimentation

Before rolling out a new model version globally, we must evaluate its accuracy and effectiveness by testing model variants with subsets of users. This experimentation must not create a path for targeting (ie delivering a specific model to a specific user). The model download flow is designed to prevent this:

  • Client-Side Group Assignment: the download response includes the available model configurations, fetched at randomized intervals via the same anonymous OHTTP and ACS flow. Using a locally generated random seed, the client assigns itself to a group and selects which model to use from those configurations. The server cannot influence which model variant a specific user receives.
  • Experiment Configuration Tamper Checks: The client enforces integrity checks on experiment configurations. Group properties cannot be modified after publication, experiment sizes can only be expanded (never reduced), and groups must meet a minimum size threshold, preventing an attacker from narrowing a group to target individual users.
  • Experiment Models on the Ledger: Every experiment model variant is published to the transparency ledger before being served, with the same signing and verification flow as production models. No model — whether production or experimental — reaches a device without being publicly recorded.
  • Anonymized Experiment Metrics: performance metrics from different experiment groups are measured through the same confidential federated analytics pipeline described earlier in this blog. If an experiment group is too small to meet k-anonymity thresholds after aggregation, the TEE suppresses the data entirely.

Because the entire verification and experimentation flow runs on the client, security researchers can examine the app binary to confirm these checks are performed.

Verifiable Model Behavior

We outlined above how neither Meta nor WhatsApp can deliver a specific model to a specific user, and how the confidential federated analytics pipeline preserves privacy. But neither answers a more fundamental question: how can anyone verify that the model is built only to identify potential scam messages, unless its behavior can be independently examined?

We designed the model verification system around two guarantees:

  1. User Visibility: Users have direct, on-device access to what the model did — which messages were scanned, what the outcome was, and which model version was used.
  2. Independent Verifiability: As referenced previously, external researchers can obtain the exact model that runs on user devices, verify its integrity against the transparency ledger, and analyze its behavior independently.

How Model Transparency Works

  • Published Model Artifacts: Every model version’s hashes are recorded in the signed manifest on the same third-party transparency ledger used to verify model delivery. The transparency ledger is public, so anyone can inspect it to verify which model versions are being served and confirm that every version, including experimental variants, is publicly recorded.
  • Client-Side Transparency Logs: On the device itself, users can enable transparency logs that record which messages were flagged by the on-device machine learning model. Users can see this by going to Account > Request Info > Scam Alert Activity. Included in the transparency logs are the outcome of each analysis (whether the model flagged the message and whether the warning was shown), and which model version was used. These logs give users direct, granular visibility into how the system operates on their device.
  • Bug Bounty Program: Ahead of Beta rollout, we engaged external security researchers through our Bug Bounty program to help us stress-test our system:
    • Privacy Architecture Review: Researchers were provided with an early access APK build with the feature to confirm no message content leaves the device and there is no auto-reporting, and;
    • Model Integrity Review: Experienced AI/ML researchers receive the model weights to confirm the model is purpose built for scams and nothing else. 

We will be expanding our Bug Bounty scope to include the models to test them against their own inputs, analyze their behavior across a range of scenarios, and report any findings where the model deviates from its declared purpose or where its capabilities can be systematically evaded.

Building Verifiable Trust and Next Steps

The confidential federated analytics pipeline ensures that even the act of measuring model performance protects user privacy. The transparency ledger and third-party signing ensure that every model we ship is publicly recorded and tamper-evident. And published model artifacts, client-side transparency logs, and a dedicated Bug Bounty program ensure that what the model does can be independently verified.

As mentioned above, this feature is only beginning to roll out in a limited Beta capacity. We will continue iterating and improving on it during the Beta phase before production, but we wanted to take this opportunity to outline our principles.

Scammers will continue to evolve their tactics. To keep staying ahead of them, so will we.

We welcome feedback from users, security researchers, and the broader security community through our security research program: Contact us.

Acknowledgements

Thank you to Ronald Anthony, Shafin Anwarsha, Samyukta Mogily, Lenny Grokop, Riccardo Tortul, Harish Srinivas, Kiran Teja Tummuri, Roman Dashchakivskyi, Chao Zhang, Jitendra Mohanty, and the many others across the company who helped make Scam Alert possible.

The post How We’re Building Scam Alert on WhatsApp With End-to-End Encryption and Verifiability Guarantees appeared first on Engineering at Meta.

show more
Хочешь сделать лотерею — думай «как лотерея», или Почему пять месяцев Discovery без требований — это правильно
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 12:59:04 | Created: 2026-08-12 13:00:55

Или как один лотерейный билет превратился в несколько сотен требований, десятки интеграций и пять месяцев Discovery.

Когда мне предложили заняться разработкой с нуля цифрового сервиса Альфа‑Мании, я была уверена, что понимаю задачу. Что может быть проще? Клиент открывает мобильное приложение банка, выбирает лотерейный билет, оплачивает его, ждет розыгрыш и, если цифры в лотерейном билете совпали — получает выигрыш. На первый взгляд всё выглядело как вполне стандартный цифровой продукт: несколько экранов мобильного приложения, интеграция с партнером, немного аналитики, немного CRM‑коммуникаций и привычная продуктовая работа.

Я никогда так не ошибалась.

Через несколько месяцев я уже обсуждала особенности прогрессивной шкалы НДФЛ, разбиралась в требованиях к онлайн‑кассам, участвовала в проработке процессов идентификации победителей и спорила с коллегами о трактовке отдельных пунктов законодательства о лотереях. 

При этом ТЗ всё ещё не было.

Наверное, это первый проект в моей карьере, где мы сознательно не писали бизнес‑требования почти пять месяцев. Но не потому что не успевали или не хватало ресурсов, и уж точно не потому что не умели писать BRD. Просто довольно быстро стало понятно, что писать требования к тому, чего ты сам пока не понимаешь — самый быстрый способ построить неправильный продукт. Поэтому вместо того, чтобы открывать шаблон BRD, мы начали исследования.

Именно тогда я поняла, что самые сложные продукты начинаются не тогда, когда команда не знает решения, а тогда, когда она практически ничего не знает про предметную область. Об этом я и расскажу. Эта статья про discovery. Про исследования, важность которых часто недооценивается.

Читать далее
show more
Moderate Crowley upsets democratic socialist Hong in Wisconsin gubernatorial primary
Published: 2026-08-12 12:55:09 | Created: 2026-08-12 13:00:55
Moderate David Crowley narrowly won Wisconsin's Democratic gubernatorial primary, upsetting democratic socialist Francesca Hong, CBS News projects. Ed O'Keefe explains how the race unfolded.
show more
Bridget Phillipson condemns Richard Tice’s ‘chilling attempt to silence free press’
Feed: World news | The Guardian (https://www.theguardian.com/world/rss)
Published: 2026-08-12 12:40:23 | Created: 2026-08-12 12:55:57

Labour chair says Reform deputy leader is trying to harass journalists over reporting on his financial affairs

Richard Tice has been accused by Labour’s Bridget Phillipson of mounting a “deeply chilling attempt to silence the free press” after he sent a legal threat to the Guardian over its reporting on his financial affairs.

Lawyers for Tice, the deputy leader of Reform UK, singled out a Guardian correspondent for her journalism about a series of Tice’s financial transactions that were referred to the National Crime Agency.

Continue reading...
show more
Реалтайм на WebSocket со сквозной типизацией: TypeScript, Bun, React, Point0
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 12:54:20 | Created: 2026-08-12 12:55:55

Бывает так: есть фулстек проект, и в нём всё хорошо. Откуда-то есть сквозные типы (tRPC, генерация из OpenAPI), есть авторизация, есть основной функционал. А потом вы решаете добавить реалтайм: уведомление о новом посте в ленте, чат между пользователями, интерактивную доску. И появляется целый новый слой абстракций, в котором надо заново изобрести всё, что в проекте уже есть, только на новый лад. И дальше поддерживать две разные системы.

В своём фреймворке Point0 я добавил четыре новых реалтайм-поинта (структурные единицы наравне со страницами, лэйаутами, квери, мутациями): канал, спейс, клиентский хэндлер, серверный хэндлер. На них собирается практически любая реалтайм-функциональность, кода получается мало, и читается он интуитивно. Эти поинты несут те же свойства, что и все остальные:

код сервера и клиента живут в одном файле, компилятор вырезает клиентский код из серверной сборки, а серверный из клиентской

типизация сквозная и выводится из дженериков самого фреймворка, без генерации типов

Под катом покажу на примерах, как это работает, и объясню суть парадигмы, чтобы вы могли собрать любое реалтайм-приложение.

Читать далее
show more
Etna, fishing boats at dawn and Berlin Wall art: photos of the day – Wednesday
Published: 2026-08-12 12:41:03 | Created: 2026-08-12 12:54:56

The Guardian’s picture editors select photographs from around the world

Continue reading...
show more
WATCH: Dancing for gas discount
Feed: ABC News: Top Stories (https://abcnews.go.com/abcnews/topstories)
Published: 2026-08-12 15:39:00 | Created: 2026-08-12 12:54:55
A Sunoco station in Halfmoon, New York, is offering customers a 20% discount for showing off their best dance moves.
show more
GB's Burgin and Pattison through to 800m final
Published: 2026-08-12 12:06:57 | Created: 2026-08-12 12:52:56
Great Britain's Max Burgin and Ben Pattison finish first and second in their semi-final races to qualify for the 800m final, while Ireland's Mark English also qualifies for the final after breaking the European Athletics Championship record time for the event.
show more
Что уже есть на Луне для создания солнечных панелей
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 12:51:49 | Created: 2026-08-12 12:52:55

Маск анонсировал проект орбитальных ИИ-дата-центров под скромным названием AI Sat Mini. Заявленная цель — вывод 100 ГВт компьюта (вычислительной мощности) в год, что потребует вывода на орбиту тысяч тяжелых спутников. Это крайне затратный процесс, поэтому предлагается перенести сборку на Луну и отправлять аппараты на орбиту с помощью электромагнитной катапульты: низкая гравитация и отсутствие атмосферы кратно упрощают запуск.

Однако производство современных чипов на Луне невозможно. Нанолитография требует сверхчистых стерильных сред, бесперебойных поставок редких химических реагентов и колоссальных объемов очищенной воды. Производственная цепочка распределена по миру и жизнеспособна только когда миллиардный глобальный спрос окупает триллионные затраты на полупроводниковые фабрики. Попытка перенести процесс на Луну приведет к экономическому коллапсу.

Однако для всей идеи это не приговор. Да, вычислительные чипы важны, но они составляют малую часть от общей массы. Основной вес аппарата приходится на силовые каркасы, радиаторы охлаждения и солнечные панели. Их конструкция относительно проста, а значит, плавить лунный реголит для отливки корпусов и раскатывать подложки панелей можно прямо на месте, доставляя остальные компоненты с Земли для финальной сборки.

Здесь возникает главный вопрос: насколько вообще реалистичен такой подход и есть ли в нем практический смысл, если разделить производство на лунную и земную части?

Этому вопросу и посвящен цикл статей. В нем мы последовательно разберем ключевые узлы спутниковой платформы. Начнем с солнечных панелей — основного источника энергии. Затем рассмотрим радиаторы охлаждения, силовой корпус, гиродины для ориентации, двигательную установку и другие системы.

Читать далее
show more
Eye Opener: Strong storms leave behind major destruction after sweeping across Midwest
Published: 2026-08-12 12:40:57 | Created: 2026-08-12 12:52:54
Millions are still at risk of flooding after powerful storms swept across the Midwest, leaving a trail of destruction. Plus, President Trump makes his first public comments about the secret swap off Air Force One in Turkey. All that and all that matters in today's Eye Opener.
show more
Trump confirms he switched planes after Nato summit because of possible threat
Published: 2026-08-12 03:44:55 | Created: 2026-08-12 12:45:56
Journalists and White House staff who were on board the jet were unaware the president had left.
show more
Early release scheme risks more serious crimes, probation chief inspector warns
Published: 2026-08-12 08:57:44 | Created: 2026-08-12 12:45:56
The chief inspector of probation for England and Wales tells the BBC services are already under "unprecedented pressure".
show more
River Danube's low water levels reveal remains of WWII soldiers and motorcycle
Published: 2026-08-12 11:28:05 | Created: 2026-08-12 12:45:55
A remarkably well-preserved motorcycle and identification tags were found alongside the bodies.
show more
Jasper Carrott says family is 'so proud' of Lucy Davis after cancer diagnosis
Published: 2026-08-12 12:32:24 | Created: 2026-08-12 12:45:55
The actress, best known for playing Dawn in The Office, has revealed she has incurable breast cancer.
show more
Обзор протокола J1939 (или нервная система грузовиков)
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 12:43:52 | Created: 2026-08-12 12:44:56

J1939 это высокоуровневый проприетарный протокол используемый поверх CAN. Появился в середине 198х годов. Этот протокол работает в груpовых автомобилях: автобусы, грузовики, самосвалы, фуры, БелАЗы и прочее. Протокол J1939 принципиально не применяется в легковых автомобилях.

В автомобилях много датчиков: напряжения, температуры, давления масла, датчики дальномеры для помощи парковки, радары круиз конторля, давление в шинах. Все эти данные передаются в блок управления двигателем по протоколу J1939. 

По J1939 происходит управление трансмиссией, генератором, двигатели, форсунками, тормозами и прочим.

Читать далее
show more
[Перевод] Проектируем с нуля калькулятор на FPGA. Часть 10: Всё работает
Feed: Все публикации подряд на Хабре (https://habr.com/ru/rss/articles/)
Published: 2026-08-12 12:42:10 | Created: 2026-08-12 12:43:55

← Девятая часть

В предыдущих постах мы подробно разбирали каждый слой: CPU, арифметику, скриптовый интерпретатор, оборудование. Вот, что окончательный отчёт о синтезе Quartus сообщает обо всех них: в готовой архитектуре используется 1593 логические ячейки из доступных в EP2C5 4608 (35% чипа) с 594 выделенными логическими регистрами и 17 блоками памяти M4K. Сам модуль CPU занимает 1173 из этих логических ячеек и 400 регистров. Остальная логика отдана периферии: драйверу ЖК‑дисплея (154 логические ячейки), сканеру клавиатуры (97), интерфейсу термопринтера (64), таймеру CTC (49) и аппаратному PRNG (20). 12 блоков памяти M4K занимает ROM микрокода (49152 бит: это полная программа калькулятора), 2 блока — ROM скриптинга (8192 бита), 1 — ROM BCD‑констант, 1 — таблица поиска для BCD‑умножения внутри CPU и 1 блок — ОЗУ. Меня это очень радует: полнофункциональный научный калькулятор уместился в 35% небольшой дешёвой FPGA.

Читать далее
show more
Page 393 of 1020 (50999 total items)