Toggle light / dark theme

Boa, an open-source web server suitable for embedded applications that was discontinued since 2005 is now becoming a security threat because of the complex nature of how it was built into the internet of things (IoT) device supply chain. A recent report by tech major Microsoft said that hackers are exploiting vulnerabilities in the software to target organizations in the energy sector.

Microsoft researchers revealed in an analysis that a vulnerable open-source component in the Boa web server, is used widely in a range of routers and security cameras as well as popular software development kits (SDKs), a set of tools that allow developers to write or use an existing framework to develop applications for a given platform.

Despite the software being discontinued a nearly two decades ago, Microsoft reports that attackers are continuing their attempts to exploit the flaws of the Boa web servers which include a high-severity information disclosure bug (CVE-2021–33558) and another arbitrary file access flaw (CVE-2017–9833). An unauthenticated attacker could exploit these vulnerabilities to obtain user credentials and leverage them for remote code execution.

It accomplished this record-breaking feat in two hours and 49 minutes.

After aeronautical engineer Paul MacCready won the first Kremer Prize in 1977 for the flight of his human-powered Gossamer Condor over a closed circuit course, he decided to cross the English Channel by air on human-power only, according to a report by The Museum of Flight.

He thus built the Gossamer Albatross aircraft from the lessons learned with the Condor. “This light and fragile aircraft was pushed by a propeller connected through a series of gears to a constantly pedaling pilot,” explained an article in The Museum of Flight.

“A new class of ultralight designs which are characterized by low power requirements”


China has more than doubled the percentage of ‘highly cited researchers’ over the last five years.

China has a steady increase in the number of “high-impact scientists” than the United States, which is still the leader but has seen a steady drop over the years.

Research fuels the race for knowledge.


Andrea Nicolini/iStock.

Skyscrapers dominate city skylines, but these massive glass-walled structures can be made more energy efficient through the addition of thermally efficient photovoltaic (PV) windows, according to an analysis by researchers at the National Renewable Energy Laboratory (NREL).

Their findings, published in the journal One Earth, outline building design rules that can yield a structure with net-zero or even net-positive energy consumption.

“There are preconceived notions of what an energy-efficient building looks like, and it usually is not highly glazed, and it probably isn’t very tall,” said Lance Wheeler, a scientist at NREL who specializes in integrating PV technology into . “We found that there are other ways to build high-efficiency buildings.”

Microsoft said today that security vulnerabilities found to impact a web server discontinued since 2005 have been used to target and compromise organizations in the energy sector.

As cybersecurity company Recorded Future revealed in a report published in April, state-backed Chinese hacking groups (including one traced as RedEcho) targeted multiple Indian electrical grid operators, compromising an Indian national emergency response system and the subsidiary of a multinational logistics company.

The attackers gained access to the internal networks of the hacked entities via Internet-exposed cameras on their networks as command-and-control servers.

Ukraine’s grid operator Ukrenergo said that emergency power cuts were being enacted in all Ukrainian regions after widespread Russian attacks on infrastructure on Wednesday.

Ukrenergo, commenting in a statement on Facebook, said power cuts were needed to prevent further technical failures in the energy system after severe damage from repeated strikes since mid-October.

NASA’s unpiloted Orion moonship, sailing smoothly toward a remote lunar orbit after a spectacular low-altitude flyby Monday, is operating in near-flawless fashion, mission managers reported Monday, out-performing expectations on a flight to pave the way toward the first piloted mission in 2024.

An analysis of the huge Space Launch System rocket that boosted the Orion capsule on its way early Wednesday showed it performed almost exactly as expected, taking off atop 8.8 million pounds of thrust and producing a ground-shaking shock wave that literally blew the doors off launch pad elevators.

The core stage’s four upgraded space shuttle main engines and twin solid-fuel boosters propelled the 322-foot-tall rocket out of the atmosphere and into space almost exactly as planned. At main engine cutoff, the SLS was within 3 miles of its target altitude and within 5 mph of the predicted velocity.

“The LNG procurement environment has changed completely. Procurement can also be said to be in a state of war,” they told the ministry.

A dwindling supply of natural gas worldwide has sent countries racing to secure shipments of the key fuel. The squeeze is due to a lack of investment in LNG export projects, according to the trade ministry.

At the same time, European buyers are set to step up their imports of LNG from next year after Moscow cut off pipeline-borne gas flows to the continent in retaliation to Western sanctions. They have already been in “huge competition” with Asian buyers for exports from Qatar to replace the Russian supplies.

The devices are so sensitive that even a soft tap is enough to make them glow. The researchers also made the devices glow by vibrating them, drawing on their surfaces, and blowing air on them to make them bend and sway—which shows that they could potentially be used to harvest airflow to produce light. The researchers also inserted small magnets inside the devices so that they can be magnetically steered, glowing as they move and contort.

The devices can be recharged with light. The dinoflagellates are photosynthetic, meaning they use sunlight to produce food and energy. Shining light on the devices during the day gives them the juice they need to glow during the night.

The beauty of these devices, noted Cai, is their simplicity. “They are basically maintenance-free. Once we inject culture solution into the materials, that’s it. As long as they get recharged with sunlight, they can be used over and over again for at least a month. We don’t need to change out the solution or anything. Each device is its own little ecosystem—an engineered living material.”