25% iPhone Tariff Insufficient To Drive US Production Shift, Morgan Stanley Says President Trump's threat of a 25% tariff on smartphone imports including iPhones would not provide enough economic incentive for Apple to relocate US-bound iPhone production to domestic facilities, according to a new Morgan Stanley note viewed by Slashdot. The tariff threat, announced Friday via social media, appeared to target Apple's recent shift of iPhone production from China to India through its contract manufacturing partners. Morgan Stanley analysts estimate that establishing US iPhone production would require a minimum of two years and several billion dollars to build multiple greenfield assembly facilities, with a trained workforce exceeding 100,000 workers during peak seasons. More significantly, the firm calculates that a US-produced iPhone would cost 35% more than current China or India production, primarily due to higher labor costs and the need to import 25% of iPhone components from China under existing 30% tariffs. By contrast, Apple could offset a 25% import tariff by raising global iPhone prices just 4-6%, making domestic production economically unviable. <a href="http://twitter.com/home?status=25%25+iPhone+Tariff+Insufficient+To+Drive+US+Production+Shift%2C+Morgan+Stanley+Says%3A+https%3A%2F%2Fapple.slashdot.org%2Fstory%2F25%2F05%2F27%2F127201%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter" rel="nofollow"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a> <a href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fapple.slashdot.org%2Fstory%2F25%2F05%2F27%2F127201%2F25-iphone-tariff-insufficient-to-drive-us-production-shift-morgan-stanley-says%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook" rel="nofollow"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a> at Slashdot.
What Do People Want? Abstract of a paper on NBER: We elicited over a million stated preference choices over 126 dimensions or "aspects" of well-being from a sample of 3,358 respondents on Amazon's Mechanical Turk (MTurk). Our surveys also collected self-reported well-being (SWB) questions about respondents' current levels of the aspects of well-being. From the stated preference data, we estimate relative log marginal utilities per point on our 0-100 response scale for each aspect. We validate these estimates by comparing them to alternative methods for estimating preferences. Our findings provide empirical evidence that both complements and challenges philosophical perspectives on human desires and values. Our results support Aristotelian notions of eudaimonia through family relationships and Maslow's emphasis on basic security needs, yet also suggest that contemporary theories of well-being may overemphasize abstract concepts such as happiness and life satisfaction, while undervaluing concrete aspects such as family well-being, financial security, and health, that respondents place the highest marginal utilities on. We document substantial heterogeneity in preferences across respondents within (but not between) demographic groups, with current SWB levels explaining a significant portion of the variation. <a href="http://twitter.com/home?status=What+Do+People+Want%3F%3A+https%3A%2F%2Fscience.slashdot.org%2Fstory%2F25%2F05%2F27%2F0920239%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter" rel="nofollow"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a> <a href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fscience.slashdot.org%2Fstory%2F25%2F05%2F27%2F0920239%2Fwhat-do-people-want%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook" rel="nofollow"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a> at Slashdot.
Europe Warns Giant E-tailer To Stop Cheating Consumers or Face Its Wrath The European Commission warned Chinese e-tailer SHEIN on Monday that it must address multiple consumer law violations or face fines across EU member states. Regulators found SHEIN's website displayed fake discounts not based on actual prior prices, used pressure-selling tactics with false purchase deadlines, provided misleading information about consumer return rights, made deceptive sustainability claims, and hid contact details from customers. SHEIN has one month to respond to the findings and propose corrective measures, adding regulatory pressure to a company already facing US tariff challenges despite generating an estimated $38 billion in revenue last year. <a href="http://twitter.com/home?status=+Europe+Warns+Giant+E-tailer+To+Stop+Cheating+Consumers+or+Face+Its+Wrath%3A+https%3A%2F%2Fslashdot.org%2Fstory%2F25%2F05%2F27%2F0737253%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter" rel="nofollow"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a> <a href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fslashdot.org%2Fstory%2F25%2F05%2F27%2F0737253%2Feurope-warns-giant-e-tailer-to-stop-cheating-consumers-or-face-its-wrath%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook" rel="nofollow"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a> at Slashdot.
Pakistan Allocates 2,000 Megawatts of Electricity To Bitcoin Mining, AI Data Centres Pakistan will allocate 2,000 megawatts (MW) of electricity in the first phase of a national initiative to power bitcoin mining and AI data centres, its finance ministry said on Sunday. The allocation is part of Islamabad's plans to use its surplus electricity to bitcoin mining and AI data centres. <a href="http://twitter.com/home?status=Pakistan+Allocates+2%2C000+Megawatts+of+Electricity+To+Bitcoin+Mining%2C+AI+Data+Centres%3A+https%3A%2F%2Fslashdot.org%2Fstory%2F25%2F05%2F26%2F1549251%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter" rel="nofollow"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a> <a href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fslashdot.org%2Fstory%2F25%2F05%2F26%2F1549251%2Fpakistan-allocates-2000-megawatts-of-electricity-to-bitcoin-mining-ai-data-centres%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook" rel="nofollow"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a> at Slashdot.
Microsoft Uses AI To Find Flaws In GRUB2, U-Boot, Barebox Bootloaders Slashdot reader zlives shared this report from BleepingComputer: Microsoft used its AI-powered Security Copilot to discover 20 previously unknown vulnerabilities in the GRUB2, U-Boot, and Barebox open-source bootloaders. GRUB2 (GRand Unified Bootloader) is the default boot loader for most Linux distributions, including Ubuntu, while U-Boot and Barebox are commonly used in embedded and IoT devices. Microsoft discovered eleven vulnerabilities in GRUB2, including integer and buffer overflows in filesystem parsers, command flaws, and a side-channel in cryptographic comparison. Additionally, 9 buffer overflows in parsing SquashFS, EXT4, CramFS, JFFS2, and symlinks were discovered in U-Boot and Barebox, which require physical access to exploit. The newly discovered flaws impact devices relying on UEFI Secure Boot, and if the right conditions are met, attackers can bypass security protections to execute arbitrary code on the device. While exploiting these flaws would likely need local access to devices, previous bootkit attacks like BlackLotus achieved this through malware infections. Miccrosoft titled its blog post "Analyzing open-source bootloaders: Finding vulnerabilities faster with AI." (And they do note that Micxrosoft disclosed the discovered vulnerabilities to the GRUB2, U-boot, and Barebox maintainers and "worked with the GRUB2 maintainers to contribute fixes... GRUB2 maintainers released security updates on February 18, 2025, and both the U-boot and Barebox maintainers released updates on February 19, 2025.") They add that performing their initial research, using Security Copilot "saved our team approximately a week's worth of time," Microsoft writes, "that would have otherwise been spent manually reviewing the content." Through a series of prompts, we identified and refined security issues, ultimately uncovering an exploitable integer overflow vulnerability. Copilot also assisted in finding similar patterns in other files, ensuring comprehensive coverage and validation of our findings... As AI continues to emerge as a key tool in the cybersecurity community, Microsoft emphasizes the importance of vendors and researchers maintaining their focus on information sharing. This approach ensures that AI's advantages in rapid vulnerability discovery, remediation, and accelerated security operations can effectively counter malicious actors' attempts to use AI to scale common attack tactics, techniques, and procedures (TTPs). This week Google also announced Sec-Gemini v1, "a new experimental AI model focused on advancing cybersecurity AI frontiers." <a href="http://twitter.com/home?status=Microsoft+Uses+AI+To+Find+Flaws+In+GRUB2%2C+U-Boot%2C+Barebox+Bootloaders%3A+https%3A%2F%2Fnews.slashdot.org%2Fstory%2F25%2F04%2F05%2F0250250%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter" rel="nofollow"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a> <a href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fnews.slashdot.org%2Fstory%2F25%2F04%2F05%2F0250250%2Fmicrosoft-uses-ai-to-find-flaws-in-grub2-u-boot-barebox-bootloaders%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook" rel="nofollow"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a> at Slashdot.