March 2, 2018

Wired:

On Wednesday, at about 12:15 pm ET, 1.35 terabits per second of traffic hit the developer platform GitHub all at once. It was the most powerful distributed denial of service attack recorded to date—and it used an increasingly popular DDoS method, no botnet required.

GitHub briefly struggled with intermittent outages as a digital system assessed the situation. Within 10 minutes it had automatically called for help from its DDoS mitigation service, Akamai Prolexic. Prolexic took over as an intermediary, routing all the traffic coming into and out of GitHub, and sent the data through its scrubbing centers to weed out and block malicious packets. After eight minutes, attackers relented and the assault dropped off.

How the attack was pulled off:

Database caching systems [memcached servers] work to speed networks and websites, but they aren’t meant to be exposed on the public internet; anyone can query them, and they’ll likewise respond to anyone. About 100,000 memcached servers, mostly owned by businesses and other institutions, currently sit exposed online with no authentication protection, meaning an attacker can access them, and send them a special command packet that the server will respond to with a much larger reply.

Interesting story. Leaves me wondering why the attackers relented. Did a human plan it to be this long? Was there some mechanism that measured the impact of the attack, it stopped when Prolexic stepped in? Was the time limit to avoid being traced?

ElevationLab blog:

When someone goes to the lengths of making counterfeits of your products, it’s at least a sign you’re doing something right. And it deserves a minute of flattery.

But when Chinese counterfeiters tool up and make copies of your product, send that inventory to Amazon, then overtake the real product’s buy box by auto-lowering the price – it’s a real problem. Customers are unknowingly buying crap versions of the product, while both Amazon and the scammers are profiting, and the reputation you’ve built goes down the toilet.

And if you’ve paid Amazon a boat load of money to advertise the product you’ve designed, built, invested in, and shipped – it’s further insult to injury. And when new counterfeit sellers keep popping up every week so you have to play whack-a-mole with Amazon, who take days to remove the sellers, it’s the beginning of the end for your small business.

Follow the headline link, take a look at the picture, a screen capture of an Amazon listing. Can you tell that this is a counterfeit? It says ElevationLab, in the form of a link, right above the product name. In this image, the product is sold by “suiningdonghanjiaju Co Ltd”. According to ElevationLab, they do not sell to wholesalers, so (the way I read it) if it’s not sold by ElevationLab, it’s counterfeit.

I went onto Amazon and looked up the product myself. Here’s a link. When I looked it up, I got a product sold by Crystal Sylvain, but with the same ElevationLab link at the top. Presumably, this is a counterfeit as well, perhaps an alt version of “suiningdonghanjiaju Co Ltd”.

How are we supposed to tell? I want to support the original designer/maker, not help rip them off and put them out of business.

Infuriating.

March 1, 2018

Wow, these are spectacular.

There are a ton of fixes and improvements in the latest update. If you have Logic Pro X 10.4 installed, you can go to the Mac App Store to download the update.

Coin stacking

This guy has the hands of a surgeon and the patience of a saint.

Drag around to see what a self driving car sees in real-time

This is an amazing video. Hit play, then click and drag to look around as the Waymo self driving car takes you for a ride. Note that this only seems to work in a desktop browser, not in iOS. If anyone figures out how to get this to work on an iOS device, please ping me and I’ll update the post.

I’d love to have this experience in person.

UPDATE: To run on iOS device, check this tweet.

Apple:

Starting today, skiers and snowboarders can use Apple Watch Series 3 to track their activities via new updates to apps available in the App Store. Watch users can now record runs, see vertical descent and other stats, and contribute active calorie measurements directly to the Apple Watch Activity app.

I love this. Looking forward to the day when machine learning advances to the point where it is no longer necessary to tap and swipe to tell my Apple Watch what kind of activity I’m doing.

I’ve always felt that if a human can watch me and easily figure out what I’m doing, it’s within the realm of future possibility for an AI to do the same.

Wreck-It Ralph and the Mac

First things first, I think Wreck-It Ralph is an under-appreciated gem of a movie. Perfectly cast, beautifully animated. And lots and lots of eye candy and Easter eggs.

Yesterday, Disney released the trailer for Wreck-It Ralph 2, AKA Ralph Breaks the Internet. The trailer is embedded below. That little girl doing the screaming sure resembles toddler Moana. But I digress.

In the trailer, can’t miss it, about 21 seconds in, there’s a shot of a computer interface. In many movies, when they show a computer screen, they’ve mocked up some generic OS. Not sure why, but that happens all the time. Not so here. This is a beauty shot of Mac OS 9, AKA System 9, or at least I think it’s System 9.

There’s a color Apple icon. That launcher bar (that what that was?) at the bottom left, and the application menu on the upper right. That enough to pin this down as System 9?

No matter, I am incredibly excited about this movie. Enjoy the trailer.

Dan Moren, SixColors:

Here’s a little experiment for you. Bring up the search field on your iPhone and type in a flight number—for example, WW126. Near the top of the results will be an option to bring up flight status. Tap that and you’ll get a nice little map of the flight as well some other info, like destination, duration, and so on.

Now, try asking Siri for the status of the same flight. I’ll wait.

Right. You’ll notice that Siri doesn’t seem to know anything about flight status, and instead goes straight to a web search.

There are two sides to this coin. On the one side, it’s infuriating when something that should clearly work a certain way refuses to work that way. You can see that your iPhone “knows” about flight status, and it seems obvious that Siri should, at the very least, be able to pass through a request to the underlying interface.

On the other side, I’m betting that the reason Siri is unable to do something that seems, on the surface, such a simple task, is missing wiring. Siri remains a constantly evolving work-in-progress. And, it seems, at least on the surface, that the team that enabled the Springboard search feature is not in the same planning groove as the Siri team.

iOS is a complex beast. Siri is a complex beast. The question to me: Is there a designer at the top building a model that feeds both of these teams? Or is it more likely that the flight status search feature was born inside the Springboard search team, never rising high enough in the planning process in a way that fed the Siri team.

I don’t think Siri not being nimble with flight status is a big deal. But I do think it might be a sign of a larger issue.

Jean-Louis Gassée, MondayNote, on trying to find a way to sell the Mac in the dark days of 1985, with Steve Jobs recently gone:

Position the Mac as a Graphics Based Business System (GBBS). The Business System part was adman puffery meant to project gravitas, but the reference to graphics made unarguable sense: The Mac’s Graphical User Interface (GUI) was clearly a distinguishing factor at the time.

Everyone in the room loved the idea. Rather than take on the whole market, Apple would define and dominate a niche. As the Valley marketing sage put it (quoting Julius Caesar), better to be the chief of a small village in the Alps than second-in-command in Rome.

And:

Thanks to Jobs’ vision and powers of seduction, a couple of “serious developers”, Adobe and Aldus, helped transform the GBBS air guitar into a reality. Adobe contributed the PostScript software engine for the LaserWriter’s breakthrough typography and graphics. Aldus came up with the PageMaker program that made exemplary use of the Mac + LaserWriter combo. Aldus Chairman Paul Brainerd coined the term Desktop Publishing (DTP), a phrase that replaced the GBBS straw man and remains to this day. The Mac became #1 in the DTP village.

In the rest of this smart, well-written piece, Jean-Louis asks, and attempts to answer the question, “Is there an Alpine hamlet that the HomePod can claim as its own?”

One major difference between the original Mac and HomePod (besides the obvious ones) is that the original Mac had no ecosystem, no huge, dependable, cash-abundant audience on which to draw. With an iPhone/Apple Music-backed ecosystem, Apple has the luxury of a steady stream of HomePod early adopters to keep the cash flowing and feedback coming while the product evolves.

February 28, 2018

John Gruber on publication LittleThings shutting down:

Any publisher that is dependent on Facebook, or that trusts Facebook, is out of their goddamn mind.

Gruber is absolutely right.

Rolex Submariner fully hand engraved by Bram Ramon

The skill and patience of this is mind blowing.

Dan Frakes:

I’ve long recommended creating a bootable installer drive—on an external hard drive, thumb drive, or USB stick—for the version of macOS you’re running on your Mac.1 It’s great for installing the OS on multiple Macs, because you don’t have to download the ~5GB installer onto each computer, and it serves as a handy emergency disk if your Mac is experiencing problems. 2 Here’s this year’s version, for both macOS High Sierra (10.13) and macOS Sierra (10.12), of my annual how-to guide.

It’s never a bad idea to have one of these.

Ratt and Marvin Gaye mashup

This is just so funny and well done. Thanks to my good friend Peter Cohen for sending this to me.

Marco Arment:

Developers weren’t given access to make native apps until the iPhone’s second year. Before the native development kit was ready, Apple tried to pass off web apps as a “sweet solution” for third-party apps, but nobody was fooled.

Apple wasn’t using web apps for their own built-in iPhone apps — they were using native code and frameworks to make real apps. Developers like me did our best with web apps, but they sucked. We simply couldn’t make great apps without access to the real frameworks.

And:

Developing Apple Watch apps is extremely frustrating and limited for one big reason: unlike on iOS, Apple doesn’t give app developers access to the same watchOS frameworks that they use on Apple Watch.

Instead, we’re only allowed to use WatchKit, a baby UI framework that would’ve seemed rudimentary to developers even in the 1990s. But unlike the iPhone’s web apps, WatchKit doesn’t appear to be a stopgap — it seems to be Apple’s long-term solution to third-party app development on the Apple Watch.

And this from Gruber:

I’ve long given up on using any third-party apps on my Apple Watch, and I am so much happier for it. A year or two ago I would have been “Hell yeah”-ing this piece by Arment, but at this point I half feel like Apple should just get rid of third-party WatchOS apps and be done with it.

The one type app I think most people want is the one type of app Apple is never going to allow: custom watch faces. After that, the only thing good with Apple Watch is receiving (and responding to) notifications and fitness tracking.

All of this rings true to me. If you took all third party apps away and left me with notifications, fitness tracking, and complications that let me peer into that data, I might not even notice.

But if you opened the SDK to allow developers to build custom watch faces? I think we’d see some innovation or, at the very least, I’d have something closer to my dream watch.

My current setup is the most complication-rich of the watch faces, one that shows me:

  • day/date
  • current time
  • the next upcoming calendar event
  • outside temperature
  • battery level
  • music

Ideally, I’d love to add the Activities complication to that watch face. But I’d have to get rid of something first. But if someone could build a sliding complication that allowed me to swipe to the side to access additional complications, well I’d be all set.

And that’s just one tiny idea. If Apple opened up WatchKit, gave developers more to work with, I suspect we’d see some really great usable stuff emerge.

Variety:

M. Night Shyamalan is heading to Apple.

The streaming service has given a straight-to-series order to a psychological thriller series from writer Tony Basgallop that Shyamalan will executive produce. Plot details for the series are being kept under wraps. The half-hour series has received a 10-episode order, with Shyamalan also set to direct the first episode.

To me, M. Night Shyamalan is exasperating. I am a huge fan of The Sixth Sense, and the connected series, Unbreakable, Split, and the upcoming Glass. But interspersed throughout those movies is a series of projects that just left me cold. And there were a lot of them.

Shyamalan’s most recent TV effort was Wayward Pines, well received, but it ultimately ended after two seasons.

Fingers crossed on this one.

Dr. Drang, Leancrew:

I decided to dig into the many ways you can set timed alerts on your Apple devices and how the alert systems vary from device to device. It is, you will not be surprised to learn, a mess.

This is a fascinating read, everything you’d ever want to know about timers, reminders, and alarms, and the way they are shared amongst the varied OSes in the Apple ecosystem.

But to me, this is emblematic of many other ecosystem elements. As you read through this, think about photos, music, your documents, even Siri access.

At the same time, to be fair, realize that we are at HomePodOS version 1.0. Surely the HomePod sharing model will evolve significantly over time.

Bloomberg:

When Elon Musk’s SpaceX heaved two communications satellites aloft last week, he joined a space race that’s foiled plenty of other dreamers.

Billions of dollars have vanished in the quest to provide internet service from low-earth orbit. Globalstar Inc. and Iridium Communications Inc. crashed into bankruptcy but are still at it, while another effort folded despite backing from Bill Gates, Boeing Co. and others.

But the failure of others has never stopped Musk. Especially where space is concerned.

Musk’s Space Exploration Technologies Corp., Greg Wyler’s OneWeb, Boeing, and Canada’s Telesat are among the companies that have asked the Federal Communications Commission for permission to offer broadband service using satellites.

This is a race. And I believe someone in this pack might ultimately succeed.

And if that does happen, will it lower the cost of internet access? Will it provide broadband everywhere, an alternative to cell carriers? Will cord-cutting become more practical?

How does the FCC feel about all this?

SpaceX’s plan calls for 4,425 satellites but it has also applied for another 7,518. FCC Chairman Ajit Pai has given his backing to the proposal, making it likely to win the agency’s clearance to provide broadband via low-earth orbit.

Interesting.

LA Times:

Ring doorbells are already being used by 2 million customers. Its improbable success comes five years after its founder, serial entrepreneur Jamie Siminoff, was rejected on the TV show “Shark Tank.”

Rejected isn’t quite right. He got offers, just none that made sense to him.

But the company proved there was demand for video-enabled doorbells, which enable users to see outside their homes via smartphone or computer. The technology provides a sense of security and a salve for one of the most nagging problems in the e-commerce era: package thieves.

There’s a certain irony there. Seems to me, the biggest victim of package thieves is Amazon, who ponys up a replacement when its packages don’t make it into customer hands.

Ring is also an excellent complement to Amazon Key, the program that allows package delivery services access to your house to leave a package under your lock and key.

One last thought on this. I’ve long thought one critical piece of the Amazon Echo ecosystem (echosystem?) that was missing was an Alexa phone. Amazon’s Fire Phone was a product ahead of its time. It was a commercial failure.

Alexa runs as a second class citizen on iOS and Android. There, but without that frictionless access to the hardware that makes Siri and Google person so easy to summon. I think Alexa is the demand card that Amazon’s phone was missing the first time around. If an Alexa-phone hit the market now, I think it’d be a very different story.

February 27, 2018

If you’re an Apple user who’s interested in joining the smart home revolution—or adding even more smarts to your existing setup—this book is the ideal guide.

I had a look through this book this morning. HomeKit isn’t as complicated as I thought it was after reading a few sections of the book.

NPR:

To see if you’re bending correctly, try a simple experiment.

“Stand up and put your hands on your waist,” says Jean Couch, who has been helping people get out of back pain for 25 years at her studio in Palo Alto, Calif.

“Now imagine I’ve dropped a feather in front of your feet and asked to pick it up,” Couch says. “Usually everybody immediately moves their heads and looks down.”

That little look down bends your spine and triggers your stomach to do a little crunch. “You’ve already started to bend incorrectly — at your waist,” Couch says. “Almost everyone in the U.S. bends at the stomach.”

As we (I) get older, we can have a significant loss of flexibility. My wife is a long time yoga practitioner and has been teaching me some small movements I can do to increase strength and flexibility and this was a big help.

Vox:

Even though black holes excite the imagination like few other concepts in science, the truth is that no astronomer has actually seen one. We’ve “heard” them, so to speak, as scientists have recorded the gravitational waves (literal ripples in spacetime) emanating from black holes that collided with one another billions of years ago.

But any photo you’ve seen of a dark mass warping spacetime … well, that’s just an illustration.

This soon may change. An audacious global project called the Event Horizon Telescope is currently working to piece together an image of a black hole for the first time. And if it does, it will be a remarkable accomplishment. Because as massive black holes are, they’re actually incredibly hard to see up close.

That big black circle we often see in movies and TV isn’t real but some of the images in this post are equally amazing.

Hodinkee:

Today, the American LED makers are forgotten. “The phenomenon of the American digital watch is quite unique in the history of watchmaking,” writes watch expert Lucien Trueb, in his exhaustive 2013 book about electronic watches, “Electrifying the Wristwatch” . “Hardly anybody remembers the short-lived [American] watch ‘adventure.’ Their once promising diversification into the watch business ended as a flop, which nobody really wants to remember.”

The world’s first digital watch was made in America: Pulsar should be remembered for that, if nothing else. But the American LED watch adventure, which lasted from 1972 to 1981, is actually a whale of a watch tale that deserves its place in watch history.

I’m old enough to remember lusting after an LED watch when I was a kid. They seemed so cool and space age-y. I had to “settle” for an old Timex my dad gave me that turned out to be my most valued possession for years – just because dad gave it to me.

Alykhan Jetha (AJ), CEO of Marketcircle:

An important lesson I’ve learned as CEO of Marketcircle is that as a business, it’s critical to evolve or you get left behind. In order for us to stay competitive in our market, to continue innovating, and to provide you with excellent products and services, we have to focus on Cloud. With 87% of our revenue coming from Cloud, it doesn’t make sense to continue working on a platform that splits our resources and is decreasing in demand. If we continue to support both platforms, both will suffer.

The company announced end of life for Daylite Server and Billings Pro Server, but it is a wise decision considering where things are going, and have been going for many years. It just makes no sense to try to keep both products going.

Urban downhill bicycle racing

Let’s make this a Summer Olympic sport!

This UK company lets you put your face on your luggage. Like so:

I don’t want my face on my luggage. I want this face.

[H/T Nitrozac]

Nice collection of HomePod things to know. I especially appreciated the lists of Activities, Moods, and Genres. Good stuff.

Forbes:

Cellebrite, a Petah Tikva, Israel-based vendor that’s become the U.S. government’s company of choice when it comes to unlocking mobile devices, is this month telling customers its engineers currently have the ability to get around the security of devices running iOS 11. That includes the iPhone X, a model that Forbes has learned was successfully raided for data by the Department for Homeland Security back in November 2017, most likely with Cellebrite technology.

As the Forbes article points out, this prose is on the Cellebrite media datasheet:

Devices supported for Advanced Unlocking and Extraction Services include:

Apple iOS devices and operating systems, including iPhone, iPad, iPad mini, iPad Pro and iPod touch, running iOS 5 to iOS 11

Google Android devices, including Samsung Galaxy and Galaxy Note devices; and other popular devices from Alcatel, Google Nexus, HTC, Huawei, LG, Motorola, ZTE, and more.

If true, that Forbes headline seems a fair statement.

Christina Farr, CNBC:

Apple is launching a group of health clinics called AC Wellness for its own employees and their families this spring, according to several sources familiar with the company’s plans.

The company quietly published a website, acwellness.com, with more details about its initiative and a careers page listing jobs including primary care doctor, exercise coach, and care navigator, as well as a phlebotomist to administer lab tests on-site.

And:

Sources said that it started notifying third-party vendors about the shift to its own network of health clinics this week.

And:

Sources said the company will leverage its medical clinics as a way to test out its growing range of health services and products, which it is starting to roll out to consumers at large.

Will Apple roll out health clinics to serve consumers, rather than just employees? Not clear, but certainly seems a possibility.

Digging through the AC Wellness site, I found a corporate address, which is located adjacent to an Apple Fitness Center. Via Google Maps, here’s a pic of the sign at the AC Wellness address:

Interesting.

Mark Gurman and Debby Wu, Bloomberg:

Apple Inc. is preparing to release a trio of new smartphones later this year: the largest iPhone ever, an upgraded handset the same size as the current iPhone X and a less expensive model with some of the flagship phone’s key features.

And:

With a screen close to 6.5 inches, Apple’s big new handset will be one of the largest mainstream smartphones on the market. While the body of the phone will be about the same size as the iPhone 8 Plus, the screen will be about an inch larger thanks to the edge-to-edge design used in the iPhone X. (Apple is unlikely to refer to the phone as a phablet, a term popularized by Samsung.)

I remember agonizing over the huge size of the iPhone 6 Plus, worrying about it fitting in my pockets, being too large for my hands. I switched and have never looked back. I no longer think of the Plus form factor as large. To me, it has become the new normal.

The thought of the same footprint, but with a nicer display than my 8 Plus, and more pixels, well that’s irresistible. The obvious hitch will be the price-tag.

A 256GB iPhone X is priced at $1,149. I can only imagine that a 256GB iPhone X Plus will be about $100 more (the difference in price between the iPhone 8 and 8 Plus), or $1,249. How far can Apple push that price ceiling?