healfdane.bsky.social
@healfdane.bsky.social
Reposted
Erm, oh dear. Glibc-based Linux systems are vulnerable to a remote-code execution attack (CVE-2024-6387) in OpenSSH's server (sshd) and should upgrade to the latest version

www.theregister.com/2024/07/01/r...
Nasty regreSSHion bug affects around 700K Linux systems
Full system takeovers on the cards, for those with enough patience to pull it off
www.theregister.com
July 1, 2024 at 8:57 PM
Reposted
20 Years in the Making, GnuCOBOL Is Ready for Industry Discussion
20 Years in the Making, GnuCOBOL Is Ready for Industry
GnuCOBOL "has reached an industrial maturity and can compete with proprietary offers in all environments," boasted contributor Fabrice Le Fessant, in a FOSDEM talk.
thenewstack.io
March 16, 2024 at 10:40 PM
Reposted
These scientists built their own Stone Age tools to figure out how they were used

#arstechnica
These scientists built their own Stone Age tools to figure out how they were used
Telltale fractures and microscopic wear marks should be applicable to real artifacts.
arstechnica.com
March 9, 2024 at 9:05 PM
Reposted
[BleepingComputer]Windows Kernel bug fixed last month exploited as zero-day since August - BleepingComputer Microsoft patched a high-severity Windows Kernel privilege escalation vulnerability in February, six months after being informed that the flaw was being exploited as a zero-day.
March 5, 2024 at 1:30 AM
The hidden world of ad data usage.

www.wired.com/story/how-pe...
February 29, 2024 at 3:28 PM
Reposted
#KDE Plasma 6 is finally here !! Cant wait to try it with #Fedora 40.

Thanks @itsfoss.bsky.social for the information.
KDE Plasma 6: The Big Release is Here!
KDE Plasma 6, the much-awaited upgrade, is here. Let's take a look at it.
news.itsfoss.com
February 28, 2024 at 4:05 PM
Reposted
iMessage gets a major makeover that puts it on equal footing with Signal

#arstechnica
iMessage gets a major makeover that puts it on equal footing with Signal
How Kybers and ratcheting are boosting the resiliency of Apple's messaging app.
arstechnica.com
February 22, 2024 at 1:55 AM
Reposted

Major Blow to Cybercrime! #LockBit, 'world's most harmful #ransomware group', taken down:
- Source code seized
- Key players arrested
- 200+ LockBit-linked crypto accounts frozen
- Decryption keys obtained to aid victims
thehackernews.com/2024/02/lock...
#hacking
LockBit Ransomware Operation Shut Down; Criminals Arrested; Decryption Keys Released
National Crime Agency (NCA) conducted Operation Cronos, obtaining LockBit's source code and intelligence about its operations and affiliates.
thehackernews.com
February 21, 2024 at 1:41 AM
Video is about to be revolutionized.
openai.com/sora
February 16, 2024 at 12:54 AM
This case will have interesting implications for AI whichever way it goes.
arstechnica.com/tech-policy/...
February 14, 2024 at 2:04 AM
Reposted
Broadcom-owned VMware kills the free version of ESXi virtualization software

#arstechnica
Broadcom-owned VMware kills the free version of ESXi virtualization software
Software's free version was a good fit for tinkerers and hobbyists.
arstechnica.com
February 13, 2024 at 11:05 PM
Reposted
I hear @bsky.app is at around 5 million users? Nice!

Any streamers making content out there!?

I need to follow more!!!
February 13, 2024 at 8:14 PM
Reposted
Trio wins $700K Vesuvius Challenge grand prize for deciphering ancient scroll

#arstechnica
Trio wins $700K Vesuvius Challenge grand prize for deciphering ancient scroll
The 2024 Challenge has also been announced, with a $100,000 grand prize.
arstechnica.com
February 5, 2024 at 11:35 PM
Reposted
As if two Ivanti vulnerabilities under explot wasn’t bad enough, now there are 3

#arstechnica
As if two Ivanti vulnerabilities under explot wasn’t bad enough, now there are 3
Hackers looking to diversify, began mass exploiting a new vulnerability over the weekend.
arstechnica.com
February 6, 2024 at 2:50 AM
Reposted
I'm halfway surprised lapdocks for smartphones never really took off

there was a clearance of the motorola lapdocks not long after they came out

modern smartphones have a lot more compute / gpu power nowadays and would deffo be a good fit for a retry

www.zdnet.com/article/proj...
February 5, 2024 at 2:21 AM
Reposted
ICANN proposes .INTERNAL, a new TLD available for internal use but never plumbed into the global DNS, taking on the same role as 192.168.x.x IPv4 bloc (Simon Sharwood/The Register)

Main Link | Techmeme Permalink
January 30, 2024 at 3:30 AM
Reposted
750 million Indian mobile subscribers' info for sale on dark web
750m Indian mobile subscribers’ info for sale on dark web
ALSO: Samsung turns to Baidu for Galaxy AI in China; Terraform Labs files for bankruptcy; India's supercomputing ambitions
www.theregister.com
January 29, 2024 at 4:14 AM
Reposted
NS-STEALER Uses Discord Bots to Exfiltrate Your Secrets from Popular Browsers
NS-STEALER Uses Discord Bots to Exfiltrate Your Secrets from Popular Browsers
Alert! New Java malware "NS-STEALER" uses bots to steal your logins and wallet data from popular browsers and exfiltrates secrets via Discord.
thehackernews.com
January 22, 2024 at 12:10 PM
The refusal of SCOTUS to rule on this case should open a large new market on the Apple store.

techcrunch.com/2024/01/16/s...
January 16, 2024 at 8:24 PM
Reposted
App Store to Be 'Split in Two' Ahead of EU iPhone Sideloading Deadline
App Store to Be 'Split in Two' Ahead of EU iPhone Sideloading Deadline
Apple is preparing to split the App Store "in two" in the coming weeks ahead of European Union requirements that will force Apple to enable app sideloading in the region, Bloomberg's Mark Gurman reports. In the latest edition of his "Power On"…
www.macrumors.com
January 15, 2024 at 5:03 PM
Reposted
Yet despite these massive deployments, the evidence suggests the majority of these processors are being under-utilized, TechInsights analyst Owen Rogers tells The Register. www.theregister.com/2024/01/15/c...
Tens of thousands of GPUs go under-utilized in the cloud
If AWS, Microsoft, Google were anywhere close to capacity, their revenues would be way higher
www.theregister.com
January 15, 2024 at 3:30 PM
Reposted
With tools like Ghidra, ML, QEMU, cheap cloud processing... it's only a matter of time until groups start just spawning millions of automated fuzzing instances to tear apart websites, apps, devices... I think the hardest part is the processing time/price. As that comes down, exploits (found) goes up
Fuzz Everything, Everywhere, All at Once
The maintainers of the AFLplusplus open-source project show crazy new ways to (ab)use QEMU to explore difficult, binary-only targets thro...
media.ccc.de
January 11, 2024 at 9:28 PM
For a reasonably secure desktop system I recommend QubesOS. Some caveats to consider though, GPU dependent software, such as gaming and video editing, runs poorly as of now.
January 2, 2024 at 5:57 PM
Reposted
Happy #PublicDomainDay, everyone! As of today (Jan. 1, 2024), thousands of copyrighted works from 1928 have entered the U.S. public domain, including All Quiet on the Western Front, The Threepenny Opera & Steamboat Willie.

Further info: web.law.duke.edu/cspd/publicd...

🗃️📜 #copyright #PublicDomain
January 1, 2024 at 7:35 PM