Bonum Certa Men Certa

Links 31/7/2015: Lennart Poettering as 'Linux Hero' and systemd Conference Coming





GNOME bluefish

Contents





GNU/Linux



Free Software/Open Source



  • Accuvant researchers to release open source RFID access tool
    Security researchers have long known about the vulnerabilities of the RFID readers that many buildings use instead of door locks, but facilities managers have been slow to upgrade to more secure systems.

    To draw attention to the problem, at next week's Black Hat conference, Accuvant researchers will be releasing an open source piece of hardware that can be used to circumvent these readers.


  • VA Secretary: Open source is the only way to operate
    Veterans Affairs Department Secretary Bob McDonald voiced his support for open source technology July 30, as he outlined a broad reform plan that includes streamlining information technology and taking a more "holistic" look at customer service.

    "We have over 200 databases with customer information. That means if you want to change your address, you have to go to at least nine places to change your address at VA," said McDonald during a morning keynote July 30 at a conference in Bethesda, Md.


  • OpenDaylight Project Picks Up Steam


  • Kim Dotcom to create Wikimedia-style open source Mega 3.0
    Dotcom's first file locker, Megaupload, saw him accused of knowingly hosting, and indeed encouraging the upload and distribution of, stolen films and music. From his new home in New Zealand, he's fought a long legal battle on numerous fronts, fending off extradition attempts, accusing kiwi authorities of working without warrants end even trying, and failing miserably, to promote a political part .


  • Databases



  • Oracle/Java/LibreOffice



  • CMS



    • Dummy projects for new Drupal hires
      Lakhani's current role involves promoting the use of applications like Drupal, WordPress, Magento, and Redline through free tools and services. But, this Denver-based executive's experience shows most in forming the global, distributed team of developers and support staff inherent to success.




  • BSD



    • from distribution to project
      OpenBSD is going through something of a minimalist phase right now, but that wasn’t always the case. There was definitely an era of aggressive importation as well. Times change, priorities change, projects change. I wasn’t involved with OpenBSD during the early years, but I think I can explain the shift in attitudes. This is part three of an apparently ongoing series that started with Pruning and Polishing and out with the old, in with the less.


    • sashan@ on SMP pf progress
      One of our new developers, Alexandr Nedvedicky (sashan@), writes in to tell us about his trip to the lovely locale of Calgary for c2k15.




  • Public Services/Government



    • Open source part of Bulgarian eGovernment tender requirements
      The Bulgarian government has added open source as a requirement to its 'Preliminary criteria for the eligibility of eGovernment projects'.


    • IT trade groups protest Slovak licence deal
      Two IT trade associations in the Slovak Republic are objecting the renewal of a proprietary software licence contract negotiated by the country’s Ministry of Finance for all government organisations. Instead of continuing to rely on proprietary office suites, the groups want the Slovakian government to explore a transition to open source alternatives.




  • Standards/Consortia



    • WEBINAR - A standard that is not managed is not a standard
      Through their brief webinar Marijke and Marco will share with the audience how the Dutch Government is promoting the adoption of open standards through BOMOS, a method (initiated by Dr. Erwin Folmer, TNO with contribution from Marijke) which describes how to maintain and manage open standards.






Leftovers



  • Security



    • Tuesday's security updates


    • Security updates for Wednesday


    • Security updates for Thursday


    • Remote code execution via serialized data
      Serialization and, more importantly, deserialization of data is unsafe due to the simple fact that the data being processed is trusted implicitly as being “correct.” So if you’re taking data such as program variables from a non trusted source you’re making it possible for an attacker to control program flow. Additionally many programming languages now support serialization of not just data (e.g. strings, arrays, etc.) but also of code objects. For example with Python pickle() you can actually serialize user defined classes, you can take a section of code, ship it to a remote system, and it is executed there.


    • To exec or transition that is the question...


    • CIL – Part1: Faster SELinux policy (re)build


    • FCC Rules Block use of Open Source
      The United States Federal Communications Commission (FCC) has introduced ‘software security requirements’ obliging WiFi device manufacturers to “ensure that only properly authenticated software is loaded and operating the device”. The document specifically calls out the DD-WRT open source router project, but clearly also applies to other popular distributions such as OpenWRT. This could become an early battle in ‘The war on general purpose computing’ as many smartphones and Internet of Things devices contain WiFi router capabilities that would be covered by the same rules.


    • Hacked Jeep Cherokee Exposes Weak Underbelly of High-Tech Cars
      The Jeep Cherokee brought to a halt by hackers last week exposed wireless networks as the weakest link in high-tech vehicles, underscoring the need to find fast over-the-air fixes to block malicious intrusions.

      Features that buyers now expect in most modern automobiles, such as driving directions and restaurant guides, count on a constant connection to a telecommunications network. But that link also makes cars vulnerable to security invasions like those that threaten computers in homes and businesses.




  • Censorship



    • David Cameron wants to block non-age verifiying porn sites
      PRIME MINISTER David Cameron is looking to ensure that adult websites, the sort that MPs like, will abide by age verification standards and make sure that fumbling punters are of adult age.

      Cameron has a thing about these sites, as does a huge chunk of Westminster, and would like to see adult content subjected to bondage and inspection. He would like to give it a firm political going over and a good legislative seeing to. He wants to take it in hand.




  • Civil Rights



  • Internet/Net Neutrality



    • FCC has already gotten 2,000 “net neutrality” complaints
      The Federal Communications Commission received about 2,000 net neutrality complaints from consumers over a one-month period, according to a National Journal article today. The overarching theme of the complaints is that customers are fed up with their Internet service providers, often due to slow speeds, high prices, and data caps. In a sampling of 60 complaints, the most frequent targets were AT&T, Comcast, and Verizon.






Recent Techrights' Posts

Writing and Coding Isn't Always Enough
Last year we had to assume a role we didn't have before: litigants
Autumn Has Come
Autumn should be exciting in all sorts of ways; it'll also mark our anniversary
 
Slopfarms Already Peaked, They Will Die When Slop Companies Run Out of Money to Borrow
slopfarms will lack an actual "engine"
“Sideloading” Never Killed Anybody
There are many online discussions this week about the misnomer "sideloading"
Slopwatch: Google News as FUD Vector Against Linux and Plagiarism Enhancer, Serial Slopper (SS) Uses LLMs to Googlebomb "Linux"
Slop destroys the Web not just by screwing with search engines and helping plagiarists. It's also responsible for de facto DDoS attacks...
Links 01/09/2025: "Attacks on Science" and China's "Soft Power" Grows
Links for the day
Links 01/09/2025: Fresh Backlash Against Slop and "Norway’s Electricity Crisis is About to Hit Britain"
Links for the day
Links 01/09/2025: Catching Up (Mostly via Deutsche Welle), "Windows TCO" Effect in UK
Links for the day
Gemini Links 01/09/2025: Linguistic Barriers and "Web 1.0 Hosting"
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, August 31, 2025
IRC logs for Sunday, August 31, 2025
The UEFI 9/11 - Part IV - External Interference
They all seem to be playing a role in crushing Software Freedom and self-determination for users
Links 31/08/2025: Baggage Claim Scams, an Insurrectionist’s War on Culture, and a Sudden Robotics Hype
Links for the day
Gemini Links 31/08/2025: Reviewing Netsurf and Slightly Less Historic Ada Design
Links for the day
IBM Has Taken Control of GNOME
Don't expect a successor to be found any time soon
Links 31/08/2025: Google Gmail Data Breach and LF Puff Pieces for Pay
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, August 30, 2025
IRC logs for Saturday, August 30, 2025
This is What Google News Has Become
Moments ago
The Slopfarm WebProNews Has Turned Google News Into a Laughing Stock Full of Plagiarism by Slop
If Google News dies of neglect, that's one thing. It's starting to seem like active neglect by Google is a form of participation.
Do What is Moral, as What's Legal Isn't Always Moral
Do what's objectively moral, no matter the costs and the risks
Slopwatch: Google News Assisting Plagiarism and Anti-Linux FUD, Serial Slopper Rips Off Linux-Centric Journalists
This makes the Web a much worse place and lessens the incentive to do journalism
Links 30/08/2025: NVIDIA Fakes Results to Hide a Bubble Already in Implosion Phase, Data Breaches Galore, Important Win for Workers' Union in Canada
Links for the day
Representing and Speaking for Animals
If I ever choose to take this matter to tribunal with animals-centric NGOs on my side, it'll get some press coverage for sure
The UEFI 9/11 - Part II - Campaign of Censorship and Defamation Against Critics
In dictatorships, humour serves an important role. It's tragic.
In Kazakhstan, Yandex Estimated to be 20 Times Bigger Than Microsoft
Bing is measured as down this month
Shutterstock Not Enough? The Register MS Uses Slop Images in Articles (Seemingly More and More Over Time)
Cost-saving trajectory amid office shutdown?
Gemini Links 30/08/2025: Games, PostmarketOS, and Slop
Links for the day
Links 30/08/2025: Imgur Uproar and Many Ukraine Updates (Mediazona Reports Over 200,000 Russians Died for Putin)
Links for the day
How Not to Build Software
code forges that need a Web browser perhaps fill some 'niche' demand
GAFAM and "MATA"
The use of dark humour there hopefully helps illuminate what a lot of "modern" technology became like and how it interacts with human civilisation (to what ends and whose gain)
Birds Are Not "Pests and Vermin", Privacy is Not a Crime, and GNU/Linux is Not 'Hacking Platform'
I could not help but think of Free software analogies
The Sites Should Be Very Fast Again
That issue is now resolved
Flying in 2025
worse than ever before
Activists, Including Technical Activists, Need Not Pursue Affirmation
Techrights doesn't play or participate in a "popularity contest"
The UEFI 9/11 - Part III - Chaos is Scheduled to Happen Second Thursday of September (No Matter What the Microsofters Tell You)
The clock is ticking
Downplaying the Impact of "UEFI 9/11" is a Losing Strategy
we won't publish much whilst on holiday
Government Sites Should Run Free Software
Not proprietary bloatware with buzzwords
LLM Slopfarms Take No Breaks
When people run sites by bots they don't need to worry about "breaks"
GNOME Having a Meltdown Again
Thanks and farewell to Steven Deobald
Gemini Links 30/08/2025: Low Tech and Hunchbin 1.0.6
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, August 29, 2025
IRC logs for Friday, August 29, 2025