Bonum Certa Men Certa

Links 31/7/2015: Lennart Poettering as 'Linux Hero' and systemd Conference Coming





GNOME bluefish

Contents





GNU/Linux



Free Software/Open Source



  • Accuvant researchers to release open source RFID access tool
    Security researchers have long known about the vulnerabilities of the RFID readers that many buildings use instead of door locks, but facilities managers have been slow to upgrade to more secure systems.

    To draw attention to the problem, at next week's Black Hat conference, Accuvant researchers will be releasing an open source piece of hardware that can be used to circumvent these readers.


  • VA Secretary: Open source is the only way to operate
    Veterans Affairs Department Secretary Bob McDonald voiced his support for open source technology July 30, as he outlined a broad reform plan that includes streamlining information technology and taking a more "holistic" look at customer service.

    "We have over 200 databases with customer information. That means if you want to change your address, you have to go to at least nine places to change your address at VA," said McDonald during a morning keynote July 30 at a conference in Bethesda, Md.


  • OpenDaylight Project Picks Up Steam


  • Kim Dotcom to create Wikimedia-style open source Mega 3.0
    Dotcom's first file locker, Megaupload, saw him accused of knowingly hosting, and indeed encouraging the upload and distribution of, stolen films and music. From his new home in New Zealand, he's fought a long legal battle on numerous fronts, fending off extradition attempts, accusing kiwi authorities of working without warrants end even trying, and failing miserably, to promote a political part .


  • Databases



  • Oracle/Java/LibreOffice



  • CMS



    • Dummy projects for new Drupal hires
      Lakhani's current role involves promoting the use of applications like Drupal, WordPress, Magento, and Redline through free tools and services. But, this Denver-based executive's experience shows most in forming the global, distributed team of developers and support staff inherent to success.




  • BSD



    • from distribution to project
      OpenBSD is going through something of a minimalist phase right now, but that wasn’t always the case. There was definitely an era of aggressive importation as well. Times change, priorities change, projects change. I wasn’t involved with OpenBSD during the early years, but I think I can explain the shift in attitudes. This is part three of an apparently ongoing series that started with Pruning and Polishing and out with the old, in with the less.


    • sashan@ on SMP pf progress
      One of our new developers, Alexandr Nedvedicky (sashan@), writes in to tell us about his trip to the lovely locale of Calgary for c2k15.




  • Public Services/Government



    • Open source part of Bulgarian eGovernment tender requirements
      The Bulgarian government has added open source as a requirement to its 'Preliminary criteria for the eligibility of eGovernment projects'.


    • IT trade groups protest Slovak licence deal
      Two IT trade associations in the Slovak Republic are objecting the renewal of a proprietary software licence contract negotiated by the country’s Ministry of Finance for all government organisations. Instead of continuing to rely on proprietary office suites, the groups want the Slovakian government to explore a transition to open source alternatives.




  • Standards/Consortia



    • WEBINAR - A standard that is not managed is not a standard
      Through their brief webinar Marijke and Marco will share with the audience how the Dutch Government is promoting the adoption of open standards through BOMOS, a method (initiated by Dr. Erwin Folmer, TNO with contribution from Marijke) which describes how to maintain and manage open standards.






Leftovers



  • Security



    • Tuesday's security updates


    • Security updates for Wednesday


    • Security updates for Thursday


    • Remote code execution via serialized data
      Serialization and, more importantly, deserialization of data is unsafe due to the simple fact that the data being processed is trusted implicitly as being “correct.” So if you’re taking data such as program variables from a non trusted source you’re making it possible for an attacker to control program flow. Additionally many programming languages now support serialization of not just data (e.g. strings, arrays, etc.) but also of code objects. For example with Python pickle() you can actually serialize user defined classes, you can take a section of code, ship it to a remote system, and it is executed there.


    • To exec or transition that is the question...


    • CIL – Part1: Faster SELinux policy (re)build


    • FCC Rules Block use of Open Source
      The United States Federal Communications Commission (FCC) has introduced ‘software security requirements’ obliging WiFi device manufacturers to “ensure that only properly authenticated software is loaded and operating the device”. The document specifically calls out the DD-WRT open source router project, but clearly also applies to other popular distributions such as OpenWRT. This could become an early battle in ‘The war on general purpose computing’ as many smartphones and Internet of Things devices contain WiFi router capabilities that would be covered by the same rules.


    • Hacked Jeep Cherokee Exposes Weak Underbelly of High-Tech Cars
      The Jeep Cherokee brought to a halt by hackers last week exposed wireless networks as the weakest link in high-tech vehicles, underscoring the need to find fast over-the-air fixes to block malicious intrusions.

      Features that buyers now expect in most modern automobiles, such as driving directions and restaurant guides, count on a constant connection to a telecommunications network. But that link also makes cars vulnerable to security invasions like those that threaten computers in homes and businesses.




  • Censorship



    • David Cameron wants to block non-age verifiying porn sites
      PRIME MINISTER David Cameron is looking to ensure that adult websites, the sort that MPs like, will abide by age verification standards and make sure that fumbling punters are of adult age.

      Cameron has a thing about these sites, as does a huge chunk of Westminster, and would like to see adult content subjected to bondage and inspection. He would like to give it a firm political going over and a good legislative seeing to. He wants to take it in hand.




  • Civil Rights



  • Internet/Net Neutrality



    • FCC has already gotten 2,000 “net neutrality” complaints
      The Federal Communications Commission received about 2,000 net neutrality complaints from consumers over a one-month period, according to a National Journal article today. The overarching theme of the complaints is that customers are fed up with their Internet service providers, often due to slow speeds, high prices, and data caps. In a sampling of 60 complaints, the most frequent targets were AT&T, Comcast, and Verizon.






Recent Techrights' Posts

Our Site Search Increases Our Editorial and Informational Independence
Implementing our search facility is a long-term investment
Corruption is a Reality, It's Not a Dirty or a Strong Word
Corruption is a topic some newspapers shy away from
Rosanna Yuen & GNOME community triple tricked
Reprinted with permission from Daniel Pocock
IBM Layoffs Not Done, Terminations of Staff in India, Brazil, and Mexico Reported
This hopefully answers questions such as, "do the layoffs only impact US and Canada?"
 
IBM is Eliminating Red Hat Like It Eliminated Tivoli and Eliminated Cognos
Be wary of IBM
Quitting One's Job Isn't Forbidden, Right?
it's important to remind people that leaving one's job is perfectly OK
Being Absent/Missing From Social Control Media is Not a Sign of Weakness
Broadly speaking, social control media is for losers
Empathy Online
I recently learned from someone that running his Web site might hurt some feelings, even if the writings are truthful
Advocates of GNU/Linux and the Uphill Battles Behind Us
GNU/Linux felt like "activism" 20 years ago. Now it's mainstream.
Cybersecurity Means Real Security, Not Back Doors
Standing our ground on technology and cybersecurity is an uncompromisable stance
Links 08/11/2025: Disinformation Crisis, Denmark Recognises Threats Associated With Social Control Media
Links for the day
The Free Software Foundation (FSF) is Besieged for the Times It Does the Right Things
As that upsets rich people's interests (and they were, at times, sponsors)
Links 08/11/2025: Technical and Financial GAFAM Woes and Arrests of Journalists by Despots
Links for the day
Like SUSE, IBM Red Hat Seems to be Using LLM Slop to Write Fake (Bot-Generated) Blog Posts
IBM Red Hat keeps promoting slop
How German Media Covered Cocainegate at The European Patent Office (EPO)
At some point we'll ask that same press to revisit the issue and this time comment on the EPO connection
Our Launch of Techrights Search Has Been Successful (So Far)
There are about 50,000 articles indexed there, going 19+ years back
Daniel Pocock Explains Social Engineering in Debian and Other Communities Increasingly Controlled by "Barons"
Communities are not corporations
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, November 07, 2025
IRC logs for Friday, November 07, 2025
Adrian & Diana von Bidder-Senn, Debian: detailed history of a death
Reprinted with permission from Daniel Pocock
Crypto AG tricked ETH Zurich student internship
Reprinted with permission from Daniel Pocock
An Old Story of Fraud at the EPO in the Netherlands (and How the Dutch Government Facilitated It)
We've already mentioned several other scandals where the the Dutch government engaged in fraud and passive corruption
Voicing Concerns About European Patent Office (EPO) in Rijswijk
The report is dated yesterday
Gemini Links 08/11/2025: KeePassRX and Pluribus
Links for the day
Slopwatch: Brian Fagioli Targets "Linux" With LLMs, Google News Helps Blame "Linux" for Amazon WorkSpaces Flaws
Tonight's slopfest
Gemini Links 07/11/2025: Switzerland, k3s, and Privacy
Links for the day
Links 07/11/2025: Software Patents Squashed, Stock Markets Wobble Over Slop Uncertainties
Links for the day
A 19th Anniversary and High-Impact Exclusives
The end of 2025 will be very difficult for EPO management
The Register MS, Payroll First
GNU/Linux is a growing platform
Links 07/11/2025: US Government Shutdown Imperils Critical Functions, Slop in "AI" Clothing Debunked Some More, Bubble's Implosion Ongoing/Imminent According to Experts
Links for the day
Gemini Links 07/11/2025: No Goodbyes, Homelab, Mouse Keys / Pointer Keys
Links for the day
12 Years for Justice is Far Too Slow (and More People, Especially Women, Are Hurt)
Why do police departments and legal systems fail to protect women?
Before Freenode Collapsed Its Staff (the People Who Now Run Libera.Chat) Were Censoring/Silencing Some Free Software Supporters
We still have this issue in the Free software community
Freenode and irc.com Are Still Around
It emulates retro terminals
We Don't Compete, We Analyse and Report
Principles are so much better than money and they're something money can never acquire
Red Hat is Also Laying Off Staff in India
Red Hat is a dishonest company
All We Want to See is Any Form of Accountability in Europe's Largest Institutions
Because people at the top of institutions should never be above the law!
Finding Recent Talks of Richard Stallman
We already have many pages, documents, and media files. Organising them and helping people find them is the next Big Task.
Richard Stallman First Speaker at Ethereum Cypherpunk Congress the Weekend After This Coming Weekend
He'll be speaking over the Net
Diversity at Red Hat
Remember to judge corporations by their actions, not some Web pages with words in them
First the Python Software Foundation (PSF) Attacked Its Most Productive Volunteers. Now It Attacks Its Funding Sources.
The U.S. National Science Foundation (NSF) rejected by PSF
News of Substance About the EPO's Substance Abuse (Cocaine)
EPO Cocaine Chronicles - link to archived BILD article and photos
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, November 06, 2025
IRC logs for Thursday, November 06, 2025
On Midlife Crises
Focus on the sabotage, not politics
Hallmark of Fake News: "Single-digit" (Percentage) and 1% Isn't the Same Thing
apparently "rebalancing" is the new layoffs euphemism
Links 07/11/2025: Patent Trolls Target Germany, Celebrities Visit Ukraine
Links for the day
Misinformation/Disinformation Disguised as Information About GNU General Public Licenses (GNU GPL) Usage
GPL-type licences (reciprocal obligations) remain dominant
Slopwatch: LinuxSecurity, Brian Fagioli, and Google News Boosting WebProNews (All Slopfarms)
Those slopfarms just saturate the Web with misinformation and mindless chaff
Techrights and Tux Machines at Over 40
19 years of Techrights and 21+ years of Tux Machines
IBM Mass Layoffs This Week Not Limited to North America, Red Hat Staff Terminated
Do not relocate for a company that sees you as nothing but a number or a "human resource"
Coming Soon: More Proof of Cocaine Use at Europe's Second-Largest Institution
Stay tuned
Entering Our 20th Year
...and still looking for answers
Mailing lists vs Discourse forums: open source communities or commodities?
Reprinted with permission from Daniel Pocock
Links 06/11/2025: "Component Abuse Challenge", Google Play Store Deemed Too Monopolistic
Links for the day
Microsoft and Microsoft GitHub (and Rust @ Microsoft GitHub) the Future of Ubuntu, They Want the Same for Debian
Ubuntu is not the place to find freedom
Richard Stallman Was Right About LLM-based Chatbots
the passing fad, LLM-based chatbots
IBM Has Not Been Good for IBM's Red Hat (Which Microsoft Also Attempted to Buy)
GAFAM or GIAFAM are not a force for good
Taking Back Control Over Technology We Purchase (Study, Modify, Enhance, and More)
"The war on general-purpose computing continues
Links 06/11/2025: EFF Wants New Executive Director, Microsoft's Azure Falls Over Again
Links for the day
All Set for Tomorrow
Techrights waves
The Corporate Media Carries on With Patently Phony and Misleading Narrative About IBM's Mass Layoffs
Instead of rightly alleging business failure or commercial (leadership's) weakness it is offloading blame to some mindless buzzwords
IBM Isn't Hiring Based on Age Groups. It Still Hires Based on Salary Expectations.
It is not about the skills available, it's about the expected cost of labour
Estimating the Scale of IBM's Mass Layoffs This Week
there is no denying that the IBM layoffs are vast
Telling Our Story as Victims of Online Abuse
This post will not mention any names
Claim That EPO Quotas Brought Corruption and Mischief to Europe's Second-Largest Institution
Nowadays corruption is the norm at the EPO and there is even rampant substance abuse among the people who run the Office
Rust's "Memory Safety" Talking Point Ought to be Discarded in Light of Fil-C
new memory-safe C/C++ compiler
Claim That IBM Has Another 8 Days to Lay Off 'Expensive' Staff
The consensus in comments we see is, IBM is a terrible place to work in, treatment of its workers is appalling, it's utterly foolish to relocate in an effort to retain a job at IBM, and it's foolish to join the company in the first place
Science Demands Facts, Not Dogma
Saying that restricted hardware is not secure hardware should be common sense
Site Anniversary is Tomorrow
The celebrations might delay our EPO series somewhat
Launching Techrights Search
New search interface and locally hosted back end
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, November 05, 2025
IRC logs for Wednesday, November 05, 2025