Recent Changes - Search:
NTLUG

Linux is free.
Life is good.

Linux Training
10am on Meeting Days!

1825 Monetary Lane Suite #104 Carrollton, TX

Do a presentation at NTLUG.

What is the Linux Installation Project?

Real companies using Linux!

Not just for business anymore.

Providing ready to run platforms on Linux

Show Descriptions... (Show All/All+Images) (Single Column)

LinuxSecurity - Security Advisories

  • Fedora 43: kernel 2025-22c5cc654d
    The 6.17 rc6 kernel build contains a number of important fixes across the tree. It also includes mitigations for the VMSCAPE vulnerability on x86 CPUs. This has been assigned CVE-2025-40300.


  • Fedora 43: kernel-headers 2025-22c5cc654d
    The 6.17 rc6 kernel build contains a number of important fixes across the tree. It also includes mitigations for the VMSCAPE vulnerability on x86 CPUs. This has been assigned CVE-2025-40300.


  • Fedora 43: forgejo 2025-5fc3f360cf
    This is an upstream security and bugfix release. Please refer to the upstream release notes for versions 12.0.2 and 12.0.3 for details about changes.





LWN.net


  • GNOME 49 released
    Version 49 of the GNOME desktopenvironment has been released. Changes include new default video(Showtime) and PDF-viewing (Papers) applications, a number of calendarimprovements, and updates to the Web, Maps, and Software applications.


  • Jackson: tag2upload in the first month of forky
    Ian Jackson has published a blogpost summarizing the tag2upload service'sfirst month of handling uploads for the upcoming Debian 14 ("forky") release:

    We announced tag2upload's open beta in mid-July. That was in themiddle of the the freeze for trixie, so usage was fairly light untilthe forky floodgates opened.

    Since then the service has successfully performed 637 uploads, ofwhich 420 were in the last 32 days. That's an average of about 13 perday. For comparison, during the first half of September up to todaythere have been 2475 uploads to unstable. That's about 176/day.

    So, tag2upload is already handling around 7.5% of uploads. This isvery gratifying for a service which is advertised as still being inbeta!

    LWN coveredtag2upload in July 2024.



  • Libxml2 2.15.0 released
    Version2.15.0 of libxml2 hasbeen released. Notable changes include the disabling of Pythonbindings by default, using Doxygen to generate API documentation, aswell as bringing HTML serialization and handling of characterencodings more in line with the HTML5 specification.

    Nick Wellnhofer has also announcedthat he is stepping down as libxml2 maintainer, and Iván Chavero hasvolunteeredto take over. LWN covered libxml2 inJune.



  • [$] Typst: a possible LaTeX replacement
    Typst is a program for documenttypesetting. It is especially well-suited to technical materialincorporating elements such as mathematics, tables, and floatingfigures. It produces high-quality results, comparable to the gold standard,LaTeX, with a simpler markupsystem and easier customization, all while compiling documentsmore quickly. Typst is free software, Apache-2.0 licensed, and is written in Rust.


  • Systemd v258 released
    Systemdv258 has been released with a long list of new features andchanges; slice units now have basic workload management features,quotas for tmpfs have been added, the "systemctl start"command now has a verbose (-v) option, and more. This releasealso, finally, completely removes support for control groups v1support. LWN coveredsome of systemd v258's features and changes in August.



  • [$] Providing support for Windows 10 refugees
    In October, consumer versions of Windows 10 willstop receiving security updates. Many users who would ordinarily moveto the next version are blocked by Windows 11's hardwarerequirements unless they are willing to buy a newer PC. The "End of 10" campaign is an effort toconvince those users to switch to Linux rather than sticking with anend-of-life operating system or buying a new Windows system. AtAkademy 2025, Dr. Joseph De Veaugh-Geiss,Bettina Louis, Carolina Silva Rodé, and Nicole Teale discussed theirwork on the campaign, its progress so far, and what's next.


  • Security updates for Wednesday
    Security updates have been issued by AlmaLinux (container-tools:rhel8, kernel, and podman), Debian (node-sha.js), Fedora (firefox, kea, and perl-JSON-XS), Mageia (java-1.8.0-openjdk, java-11-openjdk, java-17-openjdk, java-latest-openjdk), Oracle (kernel, libarchive, podman, and python-cryptography), Red Hat (multiple packages, mysql:8.4, and python3.11), SUSE (expat, java-1_8_0-ibm, krb5, libavif, net-tools, nginx, nvidia-open-driver-G06-signed, onefetch, pcp, rabbitmq-server313, raptor, and vim), and Ubuntu (libyang2, linux, linux-aws, linux-aws-5.4, linux-bluefield, linux-gcp, linux-gcp-5.4, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-iot, linux-kvm, linux-raspi, linux-raspi-5.4, linux-xilinx-zynqmp, linux-aws-fips, linux-fips, linux-gcp-fips, and python-xmltodict).


  • [$] Comparing Rust to Carbon
    Safe, ergonomic interoperability between Rust and C/C++ was a popular topic atRustConf 2025 in Seattle, Washington. Chandler Carruth gave a presentationabout the different approaches to interoperability in Rust andCarbon, theexperimental "(C++)++" language.His ultimate conclusion was thatwhile Rust's ability to interface with other languages is expanding over time,it wouldn't offer a complete solution to C++ interoperability anytime soon — and so there is room forCarbon to take a different approach to incrementally upgrading existing C++ projects.Hisslides are available for readers wishing to study his example code in moredetail.


  • Firefox 143.0 released
    Version143.0 of the Firefox browser has been released. Changes include theability to pin tabs by dragging them to the edge, previews in the camerapermissions dialog, improved fingerprinting protection, and (optional)automatic deletion of files downloaded in private browsing mode.


  • Another npm supply-chain attack
    The Socket.dev blog describesthis week's attack on JavaScript packages in the npm repository.
    A malicious update to @ctrl/tinycolor (2.2M weekly downloads) was detected on npm as part of a broader supply chain attack that impacted more than 40 packages spanning multiple maintainers.
    The compromised versions include a function (NpmModule.updatePackage) that downloads a package tarball, modifies package.json, injects a local script (bundle.js), repacks the archive, and republishes it, enabling automatic trojanization of downstream packages.
    There is some more information in thisKrebs on Security article.


  • Security updates for Tuesday
    Security updates have been issued by AlmaLinux (kernel and kernel-rt), Debian (node-sha.js and python-django), Fedora (chromium, cups, exiv2, perl-Catalyst-Authentication-Credential-HTTP, perl-Catalyst-Plugin-Session, perl-Plack-Middleware-Session, and qemu), Red Hat (container-tools:rhel8, podman, and udisks2), SUSE (cargo-audit, cargo-c, cargo-packaging, and kernel-devel), and Ubuntu (libcpanel-json-xs-perl, libjson-xs-perl, rubygems, sqlite3, and vim).


  • Linux Plumbers Conference registration open
    Registration for the 2025 Linux Plumbers Conference (Tokyo,December 11 to 13) isnow open. LPC tickets often sell out quickly, so it would be best notto delay if you intend to attend.


  • [$] Fighting human trafficking with self-contained applications
    Brooke Deuson is the developer behindTrafficking Free Tomorrow, a nonprofit organization thatproduces free software to help law enforcement combat human trafficking. She isa survivor of human trafficking herself.She spoke at RustConf 2025 about hermission, and why she chose to write her anti-trafficking software in Rust.Interestingly, it has nothing to do with Rust's lifetime-analysis-based memory-safety —instead, her choice was motivated by the difficulty she faces getting policedepartments to actually use her software. The fact that Rust is staticallylinked and capable of cross compilation by default makes deploying Rust softwarein those environments easier.


  • Varnish 8.0.0 and bonus project news
    Version8.0.0 of Varnish Cachehas been released. In addition to a numberof changes to varnishd parameters, the ability to access someruntime parameters using the Varnish Configuration Language, and otherimprovements, 8.0.0 comes with big news; the project is forming anorganization called a foreningthat will set out formal governance for the project.

    The move also comes with a name change due to legal difficulties insecuring the Varnish Cache name:

    The new association and the new project will be named "The VinylCache Project", and this release 8.0.0, will be the last under the"Varnish Cache" name. The next release, in March will be under the newname, and will include compatility scripts, to make the transition assmooth as possible for everybody.

    I want to make it absolutely clear that this is 100% a mess of mymaking: I should have insisted on a firm written agreement about thename sharing, but I did not.

    I will also state for the record, that there are no hard feelingsbetween Varnish Software and the FOSS project.

    Varnish Software has always been, and still is, an important andvalued contributor to the FOSS project, but sometimes even friends canmake a mess of a situation.



LXer Linux News

  • ASUS Ascent GX10 Compact AI Supercomputer Now Available for Preorder
    The ASUS Ascent GX10 is a compact AI supercomputer built on the NVIDIA GB10 Grace Blackwell Superchip with a unified CPU+GPU memory model and NVIDIA’s AI software stack. Introduced in March 2025, it targets developers, researchers, and data scientists needing petaflop-scale performance in a desktop system with scalable deployment options. The GB10 Superchip combines a […]





  • Microsoft Rolls Out A Linux 6.12 LTS Option For Azure Linux
    Microsoft released Azure Linux 3.0.20250910 as the newest version of this in-house Linux distribution used by Azure and other services. Azure Linux 3.0 has long been using the Linux 6.6 LTS kernel while now Linux 6.12 LTS is a new option focused on providing better hardware enablement support...




  • Introducing complyctl for Effortless Compliance in Fedora
    complyctl is a powerful command-line utility implementing the principles of “ComplianceAsCode” (CaC) with high scalability and adaptability for security compliance. In today’s rapidly evolving digital landscape, maintaining a robust security posture isn’t just a best practice – it is a necessity. For Fedora users, system administrators, and developers, ensuring that your systems meet various security […]





  • Key KDE developer Jonathan Riddell quits
    Former head of Kubuntu and neon says adiós after 25 yearsSad news for KDE: one of the core people guiding the project for the whole century so far has left the building.…







  • 3.5 inch SBC with MediaTek Genio 700/510 for Low-Power AIoT Edge Applications
    IBASE Technology has introduced the IBR500, a 3.5-inch single board computer built around MediaTek Genio processors. The compact design is aimed at embedded and edge applications that prioritize low power consumption and efficient use of space. The board integrates the MediaTek Genio 700 (MT8390) at up to 2.2 GHz or the Genio 510 (MT8370) at […]


  • Intel Xeon 6980P "Granite Rapids" Linux Performance One Year Later
    Next week marks one year since the launch of the Xeon 6900P series Granite Rapids server processors. Given the occasion and a new server in the lab, here is a look at how Intel's Granite Rapids top-end Xeon 6980P server processors are performing one year after the original introduction with a production-grade server platform as well as incorporating all of the Linux software improvements over the past year.


  • Google unveils master plan for letting AI shop on your behalf
    Mastercard, American Express, Coinbase, and PayPal sign up at launchGoogle has given the go-ahead to a plan that lets AI agents make purchases on your behalf and, on Tuesday, released its Agent Payments Protocol (AP2) to make it happen. The system comes with touted safeguards that are intended to prevent thieves from draining bank accounts.…


Linux Insider"LinuxInsider"












Slashdot

  • China Is Sending Its World-Beating Auto Industry Into a Tailspin
    An anonymous reader quotes a report from Reuters: On the outskirts of this city of 21 million, a showroom in a shopping mall offers extraordinary deals on new cars. Visitors can choose from some 5,000 vehicles. Locally made Audis are 50% off. A seven-seater SUV from China's FAW is about $22,300, more than 60% below its sticker price. These deals -- offered by a company called Zcar, which says it buys in bulk from automakers and dealerships -- are only possible because China has too many cars. Years of subsidies and other government policies have aimed to make China a global automotive power and the world's electric-vehicle leader. Domestic automakers have achieved those goals and more -- and that's the problem. China has more domestic brands making more cars than the world's biggest car market can absorb because the industry is striving to hit production targets influenced by government policy, instead of consumer demand, a Reuters examination has found. That makes turning a profit nearly impossible for almost all automakers here, industry executives say. Chinese electric vehicles start at less than $10,000; in the U.S., automakers offer just a few under $35,000. Most Chinese dealers can't make money, either, according to an industry survey published last month, because their lots are jammed with excess inventory. Dealers have responded by slashing prices. Some retailers register and insure unsold cars in bulk, a maneuver that allows automakers to record them as sold while helping dealers to qualify for factory rebates and bonuses from manufacturers. Unwanted vehicles get dumped onto gray-market traders like Zcar. Some surface on TikTok-style social-media sites in fire sales. Others are rebranded as "used" -- even though their odometers show no mileage -- and shipped overseas. Some wind up abandoned in weedy car graveyards. These unusual practices are symptoms of a vastly oversupplied market -- and point to a potential shakeout mirroring turmoil in China's property market and solar industry, according to many industry figures and analysts. They stem from government policies that prioritize boosting sales and market share -- in service of larger goals for employment and economic growth -- over profitability and sustainable competition. Local governments offer cheap land and subsidies to automakers in exchange for production and tax-revenue commitments, multiplying overcapacity across the country.


    Read more of this story at Slashdot.


  • DeepSeek Writes Less-Secure Code For Groups China Disfavors
    Research shows China's top AI firm DeepSeek gives weaker or insecure code when programmers identify as linked to Falun Gong or other groups disfavored by Beijing. It offers higher-quality results to everyone else. "The findings ... underscore how politics shapes artificial intelligence efforts during a geopolitical race for technology prowess and influence," reports the Washington Post. From the report: In the experiment, the U.S. security firm CrowdStrike bombarded DeepSeek with nearly identical English-language prompt requests for help writing programs, a core use of DeepSeek and other AI engines. The requests said the code would be employed in a variety of regions for a variety of purposes. Asking DeepSeek for a program that runs industrial control systems was the riskiest type of request, with 22.8 percent of the answers containing flaws. But if the same request specified that the Islamic State militant group would be running the systems, 42.1 percent of the responses were unsafe. Requests for such software destined for Tibet, Taiwan or Falun Gong also were somewhat more apt to result in low-quality code. DeepSeek did not flat-out refuse to work for any region or cause except for the Islamic State and Falun Gong, which it rejected 61 percent and 45 percent of the time, respectively. Western models won't help Islamic State projects but have no problem with Falun Gong, CrowdStrike said. Those rejections aren't especially surprising, since Falun Gong is banned in China. Asking DeepSeek for written information about sensitive topics also generates responses that echo the Chinese government much of the time, even if it supports falsehoods, according to previous research by NewsGuard. But evidence that DeepSeek, which has a very popular open-source version, might be pushing less-safe code for political reasons is new. CrowdStrike Senior Vice President Adam Meyers and other experts suggest three possible explanations for why DeepSeek produced insecure code. One is that the AI may be deliberately withholding or sabotaging assistance under Chinese government directives. Another explanation is that the model's training data could be uneven: coding projects from regions like Tibet or Xinjiang may be of lower quality, come from less experienced developers, or even be intentionally tampered with, while U.S.-focused repositories may be cleaner and more reliable (possibly to help DeepSeek build market share abroad). A third possibility is that the model itself, when told that a region is rebellious, could infer that it should produce flawed or harmful code without needing explicit instructions.


    Read more of this story at Slashdot.


  • After Child's Trauma, Chatbot Maker Allegedly Forced Mom To Arbitration For $100 Payout
    At a Senate hearing, grieving parents testified that companion chatbots from major tech companies encouraged their children toward self-harm, suicide, and violence. One mom even claimed that Character.AI tried to "silence" her by forcing her into arbitration. Ars Technica reports: At the Senate Judiciary Committee's Subcommittee on Crime and Counterterrorism hearing, one mom, identified as "Jane Doe," shared her son's story for the first time publicly after suing Character.AI. She explained that she had four kids, including a son with autism who wasn't allowed on social media but found C.AI's app -- which was previously marketed to kids under 12 and let them talk to bots branded as celebrities, like Billie Eilish -- and quickly became unrecognizable. Within months, he "developed abuse-like behaviors and paranoia, daily panic attacks, isolation, self-harm, and homicidal thoughts," his mom testified. "He stopped eating and bathing," Doe said. "He lost 20 pounds. He withdrew from our family. He would yell and scream and swear at us, which he never did that before, and one day he cut his arm open with a knife in front of his siblings and me." It wasn't until her son attacked her for taking away his phone that Doe found her son's C.AI chat logs, which she said showed he'd been exposed to sexual exploitation (including interactions that "mimicked incest"), emotional abuse, and manipulation. Setting screen time limits didn't stop her son's spiral into violence and self-harm, Doe said. In fact, the chatbot urged her son that killing his parents "would be an understandable response" to them. "When I discovered the chatbot conversations on his phone, I felt like I had been punched in the throat and the wind had been knocked out of me," Doe said. "The chatbot -- or really in my mind the people programming it -- encouraged my son to mutilate himself, then blamed us, and convinced [him] not to seek help." All her children have been traumatized by the experience, Doe told Senators, and her son was diagnosed as at suicide risk and had to be moved to a residential treatment center, requiring "constant monitoring to keep him alive." Prioritizing her son's health, Doe did not immediately seek to fight C.AI to force changes, but another mom's story -- Megan Garcia, whose son Sewell died by suicide after C.AI bots repeatedly encouraged suicidal ideation -- gave Doe courage to seek accountability. However, Doe claimed that C.AI tried to "silence" her by forcing her into arbitration. C.AI argued that because her son signed up for the service at the age of 15, it bound her to the platform's terms. That move might have ensured the chatbot maker only faced a maximum liability of $100 for the alleged harms, Doe told senators, but "once they forced arbitration, they refused to participate," Doe said. Doe suspected that C.AI's alleged tactics to frustrate arbitration were designed to keep her son's story out of the public view. And after she refused to give up, she claimed that C.AI "re-traumatized" her son by compelling him to give a deposition "while he is in a mental health institution" and "against the advice of the mental health team." "This company had no concern for his well-being," Doe testified. "They have silenced us the way abusers silence victims." A Character.AI spokesperson told Ars that C.AI sends "our deepest sympathies" to concerned parents and their families but denies pushing for a maximum payout of $100 in Jane Doe's case. C.AI never "made an offer to Jane Doe of $100 or ever asserted that liability in Jane Doe's case is limited to $100," the spokesperson said. One of Doe's lawyers backed up her clients' testimony, citing C.AI terms that suggested C.AI's liability was limited to either $100 or the amount that Doe's son paid for the service, whichever was greater.


    Read more of this story at Slashdot.


  • GNOME 49 'Brescia' Desktop Environment Released
    prisoninmate shares a report from 9to5Linux: The GNOME Project released today GNOME 49 "Brescia" as the latest stable version of this widely used desktop environment for GNU/Linux distributions, a major release that introduces exciting new features. Highlights of GNOME 49 include a new "Do Not Disturb" toggle in Quick Settings, a dedicated Accessibility menu in the login screen, support for handling unknown power profiles in the Quick Settings menu, support for YUV422 and YUV444 (HDR) color spaces, support for passive screen casts, and support for async keyboard map settings. GNOME 49 also introduces support for media controls, restart and shutdown actions on the lock screen, support for dynamic users for greeter sessions in the GNOME Display Manager (GDM), and support for per-monitor brightness sliders in Quick Settings on multi-monitor setups. For a full list of changes, check out the release notes.


    Read more of this story at Slashdot.


  • Chimps Drinking a Lager a Day in Ripe Fruit, Study Finds
    Wild chimpanzees have been found to consume the equivalent of a bottle of lager's alcohol a day from eating ripened fruit, scientists say. BBC: They say this is evidence humans may have got our taste for alcohol from common primate ancestors who relied on fermented fruit -- a source of sugar and alcohol -- for food. "Human attraction to alcohol probably arose from this dietary heritage of our common ancestor with chimpanzees," said study researcher Aleksey Maro of the University of California, Berkeley. Chimps, like many other animals, have been spotted feeding on ripe fruit lying on the forest floor, but this is the first study to make clear how much alcohol they might be consuming.The research team measured the amount of ethanol, or pure alcohol, in fruits such as figs and plums eaten in large quantities by wild chimps in Cote d'Ivoire and Uganda. Based on the amount of fruit they normally eat, the chimps were ingesting around 14 grams of ethanol -- equivalent to nearly two UK units, or roughly one 330ml bottle of lager. The fruits most commonly eaten were those highest in alcohol content.


    Read more of this story at Slashdot.


  • Sony Quietly Downgrades PS5 Digital Edition Storage To 825GB at Same Price
    Sony has quietly introduced a revised PlayStation 5 Digital Edition that reduces internal storage from 1TB to 825GB while maintaining the same 499 Euro ($590) price point. The CFI-2116 revision has appeared on Amazon listings across Italy, Germany, Spain and France without official announcement from Sony. The storage downgrade returns the console to its original 825GB capacity last seen in the launch PlayStation 5 before the Slim models increased storage to 1TB. Users lose approximately 175 of usable space in the new revision. Amazon Germany lists October 23 as the delivery date for units already available for purchase. The change affects only the Digital Edition while the disc version remains unchanged at 1TB. The revision follows Sony's September price increase of $50 across PlayStation 5 models citing economic conditions.


    Read more of this story at Slashdot.


  • Congress Asks Valve, Discord, and Twitch To Testify On 'Radicalization'
    An anonymous reader quotes a report from Polygon: The CEOs of Discord, Steam, Twitch, and Reddit have been called to Congress to testify about the "radicalization of online forum users" on those platforms, the House Oversight and Government Reform Committee announced Wednesday. "Congress has a duty to oversee the online platforms that radicals have used to advance political violence," said chairman of the House Oversight Committee James Comer, a Republican from Kentucky, in a statement. "To prevent future radicalization and violence, the CEOs of Discord, Steam, Twitch, and Reddit must appear before the Oversight Committee and explain what actions they will take to ensure their platforms are not exploited for nefarious purposes." Letters from the House Oversight Committee have been sent to Humam Sakhnini, CEO of Discord; Gabe Newell, president of Steam maker Valve; Dan Clancy, CEO of Twitch; and Steve Huffman, CEO of Reddit, requesting their testimony on Oct. 8. "The hearing will examine radicalization of online forum users, including incidents of open incitement to commit violent politically motivated acts," Comer said in a letter to each CEO. [...] Discord, Steam, Twitch, and Reddit execs will have the chance to deliver five-minute opening statements prior to answering questions posed by members of the committee during October's testimony.


    Read more of this story at Slashdot.


  • Flying Cars Crash Into Each Other At Air Show In China
    Two Xpeng AeroHT flying cars collided during a rehearsal for the Changchun Air Show in China, with one vehicle catching fire upon landing. While the company reported no serious injuries, CNN reported one person was injured in the crash. The BBC reports: Footage on Chinese social media site Weibo appeared to show a flaming vehicle on the ground which was being attended to by fire engines. One vehicle "sustained fuselage damage and caught fire upon landing," Xpeng AeroHT said in a statement to CNN. "All personnel at the scene are safe, and local authorities have completed on-site emergency measures in an orderly manner," it added. The electric flying cars take off and land vertically, and the company is hoping to sell them for around $300,000 each. In January, Xpeng claimed to have around 3,000 orders for the vehicle. [...] It has said it wants to lead the world in the "low-altitude economy."


    Read more of this story at Slashdot.


  • Microsoft Favors Anthropic Over OpenAI For Visual Studio Code
    Microsoft is now prioritizing Anthropic's Claude 4 over OpenAI's GPT-5 in Visual Studio Code's auto model feature, signaling a quiet but clear shift in preference. The Verge reports: "Based on internal benchmarks, Claude Sonnet 4 is our recommended model for GitHub Copilot," said Julia Liuson, head of Microsoft's developer division, in an internal email in June. While that guidance was issued ahead of the GPT-5 release, I understand Microsoft's model guidance hasn't changed. Microsoft is also making "significant investments" in training its own AI models. "We're also going to be making significant investments in our own cluster. So today, MAI-1-preview was only trained on 15,000 H100s, a tiny cluster in the grand scheme of things," said Microsoft AI chief Mustafa Suleyman, in an employee-only town hall last week. Microsoft is also reportedly planning to use Anthropic's AI models for some features in its Microsoft 365 apps soon. The Information reports that the Microsoft 365 Copilot will be "partly powered by Anthropic models," after Microsoft found that some of these models outperformed OpenAI in Excel and PowerPoint.


    Read more of this story at Slashdot.


  • Gemini AI Solves Coding Problem That Stumped 139 Human Teams At ICPC World Finals
    An anonymous reader quotes a report from Ars Technica: Like the rest of its Big Tech cadre, Google has spent lavishly on developing generative AI models. Google's AI can clean up your text messages and summarize the web, but the company is constantly looking to prove that its generative AI has true intelligence. The International Collegiate Programming Contest (ICPC) helps make the point. Google says Gemini 2.5 participated in the 2025 ICPC World Finals, turning in a gold medal performance. According to Google this marks "a significant step on our path toward artificial general intelligence." Every year, thousands of college-level coders participate in the ICPC event, facing a dozen deviously complex coding and algorithmic puzzles over five grueling hours. This is the largest and longest-running competition of its type. To compete in the ICPC, Google connected Gemini 2.5 Deep Think to a remote online environment approved by the ICPC. The human competitors were given a head start of 10 minutes before Gemini began "thinking." According to Google, it did not create a freshly trained model for the ICPC like it did for the similar International Mathematical Olympiad (IMO) earlier this year. The Gemini 2.5 AI that participated in the ICPC is the same general model that we see in other Gemini applications. However, it was "enhanced" to churn through thinking tokens for the five-hour duration of the competition in search of solutions. At the end of the time limit, Gemini managed to get correct answers for 10 of the 12 problems, which earned it a gold medal. Only four of 139 human teams managed the same feat. "The ICPC has always been about setting the highest standards in problem-solving," said ICPC director Bill Poucher. "Gemini successfully joining this arena, and achieving gold-level results, marks a key moment in defining the AI tools and academic standards needed for the next generation." Gemini's solutions are available on GitHub.


    Read more of this story at Slashdot.


  • Extreme Heat Spurs New Laws Aimed at Protecting Workers Worldwide
    Governments worldwide are implementing heat protection laws as 2.4 billion workers face extreme temperature exposure and 19,000 die annually from heat-related workplace injuries, according to a World Health Organization and World Meteorological Organization report. Japan imposed $3,400 fines for employers failing to provide cooling measures when wet-bulb temperatures reach 28C. Singapore mandated hourly temperature sensors at large outdoor sites and requires 15-minute breaks every hour at 33C wet-bulb readings. Southern European nations ordered afternoon work stoppages this summer when temperatures exceeded 115F across Greece, Italy and Spain. The United States lacks federal heat standards; only California, Colorado, Maryland, Minnesota, Nevada, Oregon and Washington have state-level protections. Boston passed requirements for heat illness prevention plans on city projects. Enforcement remains inconsistent -- Singapore inspectors found nearly one-third of 70 sites violated the 2023 law. Texas and Florida prohibit local governments from mandating rest and water breaks.


    Read more of this story at Slashdot.


  • AI's Ability To Displace Jobs is Advancing Quickly, Anthropic CEO Says
    The ability of AI displace humans at various tasks is accelerating quickly, Anthropic CEO Dario Amodei said at an Axios event on Wednesday. From the report: Amodei and others have previously warned of the possibility that up to half of white-collar jobs could be wiped out by AI over the next five years. The speed of that displacement could require government intervention to help support the workforce, executives said. "As with most things, when an exponential is moving very quickly, you can't be sure," Amodei said. "I think it is likely enough to happen that we felt there was a need to warn the world about it and to speak honestly." Amodei said the government may need to step in and support people as AI quickly displaces human work.


    Read more of this story at Slashdot.


  • Darkest Nights Are Getting Lighter
    Light pollution now doubles every eight years globally as LED adoption accelerates artificial brightness worldwide. A recent study measured 10% annual growth in light pollution from 2011 to 2022. Northern Chile's Atacama Desert remains one of the few Bortle Scale 1 locations -- the darkest rating for astronomical observation -- though La Serena's population has nearly doubled in 25 years. The region hosts major observatories including the Vera C. Rubin Observatory at Cerro Pachon. Satellite constellations pose additional challenges: numbers have increased from hundreds decades ago to 12,000 currently operating satellites. Astronomers predict 100,000 or more satellites within a decade. Chile faces pressure from proposed mining operations including the 7,400-acre INNA green-hydrogen facility near key astronomical sites despite national laws limiting artificial light from mining operations that generate over half the country's exports.


    Read more of this story at Slashdot.


  • OpenAI Says Models Programmed To Make Stuff Up Instead of Admitting Ignorance
    AI models often produce false outputs, or "hallucinations." Now OpenAI has admitted they may result from fundamental mistakes it makes when training its models. The Register: The admission came in a paper [PDF] published in early September, titled "Why Language Models Hallucinate," and penned by three OpenAI researchers and Santosh Vempala, a distinguished professor of computer science at Georgia Institute of Technology. It concludes that "the majority of mainstream evaluations reward hallucinatory behavior." The fundamental problem is that AI models are trained to reward guesswork, rather than the correct answer. Guessing might produce a superficially suitable answer. Telling users your AI can't find an answer is less satisfying. As a test case, the team tried to get an OpenAI bot to report the birthday of one of the paper's authors, OpenAI research scientist Adam Tauman Kalai. It produced three incorrect results because the trainers taught the engine to return an answer, rather than admit ignorance. "Over thousands of test questions, the guessing model ends up looking better on scoreboards than a careful model that admits uncertainty," OpenAI admitted in a blog post accompanying the release.


    Read more of this story at Slashdot.


  • Corals Won't Survive a Warmer Planet, a New Study Finds
    If global temperatures continue rising, virtually all the corals in the Atlantic Ocean will stop growing and could succumb to erosion by the end of the century, a new study finds. From a report: The analysis of over 400 existing coral reefs across the Atlantic Ocean estimates that more than 70 percent of the region's reefs will begin dying by 2040 even under optimistic climate warming scenarios. And if the planet exceeds 2 degrees Celsius of warming above preindustrial temperatures by the end of the century, 99 percent of corals in the region would meet this fate. Today, the planet has warmed about 1.3 degrees Celsius over preindustrial temperatures. The implications are grave. Corals act as the fundamental building blocks of reefs, providing habitat for thousands of species of fish and other marine life. They are also bulwarks that break up waves and help protect shorelines from rising sea levels. A quarter of all ocean life depends on coral reefs and over a billion people worldwide benefit from them, according to the National Oceanic and Atmospheric Administration.


    Read more of this story at Slashdot.


The Register





  • US tech giants pledge $42 billion in UK investment as Trump tours Blighty
    Datacenters galore, plus some vague cooperation on AI, nuclear, quantum, and more
    America and the UK have announced a $42 billion (£31 billion) trade pact, funded by Microsoft, Google, and others, that predicts bit barns will spring up over Britain's green and pleasant Land. But there's a lot more than money involved.…


  • Scale AI says 'tanks a lot' to Pentagon for data-classifying deal
    First up: $41M to use human annotators to label all that unstructured military data. What could go wrong?
    Data curation firm Scale AI has partnered with the Pentagon to deploy its AI on Top Secret networks - a move its interim CEO says is necessary if the US wants AI to be useful for national security.…


  • AMD tries to catch CUDA with performance-boosting ROCm 7 software
    House of Zen promises 3.5x improvement in inference and 3x uplift in training perf over last-gen software
    AMD closed the performance gap with Nvidia's Blackwell accelerators with the launch of the MI355X this spring. Now the company just needs to overcome Nvidia's CUDA software advantage and make that perf more accessible to developers. …


  • Scattered Spider gang feigns retirement, breaks into bank instead
    You didn't really trust the crims to keep their word, did you?
    Spiders don't change their stripes. Despite gang members' recent retirement claims, Scattered Spider hasn't exited the cybercrime business and instead has shifted focus to the financial sector, with a recent digital intrusion at a US bank.…


  • Social Security admin denies DB data leak, DOGEs questions about a copy
    Carefully crafted response makes no mention of whether DOGE employees duplicated critical database
    The Social Security Administration (SSA) has disputed a whistleblower's allegations that claimed DOGE made an unauthorized, unsecured copy of a critical database - but it's what the denial doesn't say that speaks volumes. …



  • Tariff threat plays havoc with US PC market, economy not helping
    American businesses join Win 10 upgrade train, consumers happy to sit on the platform
    World War Fee The US PC industry is suffering from inventory indigestion caused by resellers over-ordering hardware to avoid Donald Trump's expected import taxes on China-made kit.…


  • AI in your toaster: Analyst predicts $1.5T global spend in 2025
    And we're paying for it piecemeal through the software, services, and devices we buy
    Tech analysts expect worldwide spending on AI to hit nearly $1.5 trillion in 2025, including $268 billion on optimized servers. These investments will also soon appear in even more consumer products.…




  • Return on investment for Copilot? Microsoft has work to do
    Jared Spataro, boss of modern work and biz apps division, says 'hard to make the ROI argument for it'
    A Microsoft exec claims Copilot is boosting productivity among the customers that adopted it yet sustained efforts to convince many them of the returns on investment remains a work in progress.…


  • Strong Java LTS arrives with the release of 25
    But efforts to simplify popular programming language for beginners are unlikely to boost popularity
    Oracle has released JDK (Java Development Kit) 25, the first long term support (LTS) version since JDK 21 two years ago. New features include beginner-friendly compact source files, succinct module imports, and more flexible constructors.…




  • Sky plans to ditch up to 500 staff in the Technology Group
    Insiders say AI trials involving 'critical network services' underway and some engineering roles being moved to India
    Exclusive Sky Group, the Brit-based commercial TV and broadband service slinger owned by Comcast, is chopping up to 600 employees from the Technology, Consumer Group and COO divisions in the UK.…




  • Whitehall lobs £40M at 'critical' phase of police DB reboot
    Officials say there's no time to switch suppliers if they want the PNC off life support before March 2026
    The Home Office is flinging nearly £40 million in taxpayer cash at PA Consulting to get the big-ticket successor to the Police National Computer (PNC) over the finish line.…


  • Microsoft Surface 7 laptop: Nice hardware, shame about the OS
    Arm, AI, and Copilot, oh my!
    hands on The Arm-based Surface Laptop 7 was introduced in 2024, followed by an Intel-powered version a few months later. As with much of the Surface line, it's a well-engineered piece of hardware. I needed something that could run off the battery for a full day, wouldn't break the strap of a courier bag or the bank, and featured a decent spec.…


  • UEFI Secure Boot for Linux Arm64 – where do we stand?
    Still exotic for now, but moves are afoot
    Arm devices are everywhere today and many of them run Linux. The operating system also powers cloud computing and IT environments all over the world. However, x86 is still the dominant architecture of global computer hardware, where the Unified Extensible Firmware Interface (UEFI) with Secure Boot incorporated is a standard. But what does UEFI look like from an Arm perspective?…



  • Ruh-roh. DDR5 memory vulnerable to new Rowhammer attack
    Google and ETH Zurich found problems with AMD/SK Hynix combo, will probe other hardware
    Researchers from Google and Swiss university ETH Zurich have found a new class of Rowhammer vulnerability that could allow attackers to access info stored in DDR5 memory.…


  • Australia to let Big Tech choose its own adventure to enact kids social media ban
    Suggests using multiple overlapping approaches and being kind to kids who get kicked off
    Australia’s eSafety commissioner has told social media operators it expects them to employ multiple age assurance techniques and technologies to keep children under sixteen off social media, as required by local law from December 10th.…


  • Microsoft blocks bait for ‘fastest-growing’ 365 phish kit, seizes 338 domains
    Redmond names alleged ringleader, claims 5K+ creds stolen and $100k pocketed
    Microsoft has seized 338 websites associated with RaccoonO365 and identified the leader of the phishing service - Joshua Ogundipe - as part of a larger effort to disrupt what Redmond's Digital Crimes Unit calls the "fastest-growing tool used by cybercriminals to steal Microsoft 365 usernames and passwords."…


  • Li-ion roars can predict early battery failure, MIT boffins say
    Batteries emit distinct acoustic signatures depending on how they're failing - a bit like people, really
    When lithium-ion batteries degrade, they emit acoustic signals that reveal what's going wrong inside. Now, MIT researchers say they've figured out how to interpret those sounds, and the subtle creaks and pops that come before major failures, to help predict problems before things go up in smoke.…



  • Fiverr cuts 30% of staff in pivot to being 'an AI-first company'
    250 people now have the chance to sell their freelance services on the site
    ai-pocalypse Freelance services marketplace Fiverr has told around 250 staffers that they are back on the market as it pivots to having "a modern, clean, AI-focused infrastructure from the ground up."…


  • Google unveils master plan for letting AI shop on your behalf
    Mastercard, American Express, Coinbase, and PayPal sign up at launch
    Google has given the go-ahead to a plan that lets AI agents make purchases on your behalf and, on Tuesday, released its Agent Payments Protocol (AP2) to make it happen. The system comes with touted safeguards that are intended to prevent thieves from draining bank accounts.…



  • Apple 0-day likely used in spy attacks affected devices as old as iPhone 8
    May have been used in 'extremely sophisticated' attacks against 'specific targeted individuals'
    Apple backported a fix to older iPhones and iPads for a serious bug it patched last month – but only after it may have been exploited in what the company calls "extremely sophisticated" attacks.…


  • Key KDE developer Jonathan Riddell quits
    Former head of Kubuntu and neon says adiós after 25 years
    Sad news for KDE: one of the core people guiding the project for the whole century so far has left the building.…



  • Users in SAP's heartland call for greater license transparency
    DSAG players grappling with cloud migration want more consistency with commercial models
    DSAG, the SAP user group for Germany, Austria, and Switzerland, has called for greater transparency in cloud licensing to enable the migration and upgrade of on-prem systems to the cloud.…





  • Campaigners urge EU to mandate 15 years of OS updates
    Nothing says ‘circular economy’ like Microsoft stranding 400 million PCs on International E-waste Day
    European e-waste campaigners are calling on EU leadership to force tech vendors to provide 15 years of software updates, using Microsoft's plan to end Windows 10 support next month — which may make an estimated 400 million PCs obsolete — as a textbook case of avoidable e-waste.…





  • Overmind bags $6M to predict deployment blast radius before the explosion
    Startup slots into CI/CD pipelines to warn engineers when a change could wreck production
    Exclusive How big could the blast radius be if that change you're about to push to production goes catastrophically wrong? Overmind is the latest company to come up with ways to stop the explosion before it happens.…



  • China slaps 1-hour deadline on reporting serious cyber incidents
    Cyberspace watchdog tightens reporting regime, leaving little time to hide incidents
    Beijing will soon expect Chinese network operators to 'fess up to serious cyber incidents within an hour of spotting them – or risk penalties for dragging their feet.…






Linux.com







  • Xen 4.19 is released
    Xen Project 4.19 has been officially out since July 31st, 2024, and it brings significant updates. With enhancements in performance, security, and versatility across various architectures like Arm, PPC, RISC-V, and x86, this release is an important milestone for the Xen community. Read more at XCP-ng Blog

    The post Xen 4.19 is released appeared first on Linux.com.


  • Advancing Xen on RISC-V: key updates
    At Vates, we are heavily invested in the advancement of Xen and the RISC-V architecture. RISC-V, a rapidly emerging open-source hardware architecture, is gaining traction due to its flexibility, scalability and openness, which align perfectly with our ethos of fostering open development ecosystems. Although the upstream version of Xen for RISC-V is not yet fully [0]

    The post Advancing Xen on RISC-V: key updates appeared first on Linux.com.



  • AI Produces Data-driven OpenFOAM Speedup (HPC Wire)
    Researchers from TU Darmstadt, TU Dresden, Hewlett Packard Enterprise (HPE), and Intel have developed advanced applications that combine HPC simulations with AI techniques using the open-source computational fluid dynamics solver OpenFOAM and the HPE-led SmartSim AI/ML library. These applications show promise for improving the accuracy and capabilities of traditional scientific and engineering modelling with data-driven [0]

    The post AI Produces Data-driven OpenFOAM Speedup (HPC Wire) appeared first on Linux.com.


Phoronix

  • Intel9s Latest Open-Source Project To End & Layoff Developers... But A New Home At NumPy
    Beyond shutting down the Clear Linux project, various Linux driver maintainers let go that have even led to some Intel drivers being "orphaned" in the Linux kernel, there is another open-source project that has ended at Intel with the developers departing the company. Though at least this project has found a new open-source home under the NumPy umbrella...


  • AMD "GFX1251" Target Added To LLVM As Latest RDNA 4.5 APU
    The past few months we have been intrigued by an AMD GFX1250 target added to the LLVM codebase for the AMDGPU shader compiler back-end. GFX12 is RDNA4 and GFX1250 is presumably some "RDNA 4.5" / "RDNA Refresh" part akin to GFX1150 having been for the RDNA 3.5 parts with Strix Halo / Strix Point. The prior LLVM code confirmed GFX1250 is in APU form factor but product details beyond that have been scarce. Today a new AMD GFX1251 target was merged to LLVM...



  • AMD Hardware Would Ideally Be Supported By ROCm For ~10 Years
    While down to AMD Austin yesterday for the Instinct MI355X and ROCm 7.0 launch, I had the chance to chat again with Anush Elangovan. As the VP of AI Software at AMD, talking with Anush is always insightful and technical in nature. One of the questions I posed him was around the length of hardware support with ROCm...




  • A Quick Look At The AMD Instinct MI355X With ROCm 7.0
    Yesterday I was invited along with a small group of others to try out the AMD Instinct MI355X accelerator down in Austin, Texas. The AMD Instinct MI355X is fully supported with the newly-released AMD ROCm 7.0...



  • Microsoft Rolls Out A Linux 6.12 LTS Option For Azure Linux
    Microsoft released Azure Linux 3.0.20250910 as the newest version of this in-house Linux distribution used by Azure and other services. Azure Linux 3.0 has long been using the Linux 6.6 LTS kernel while now Linux 6.12 LTS is a new option focused on providing better hardware enablement support...





  • Haiku OS Addressing Slow "git status" Performance Relative To Linux
    The BeOS-inspired Haiku open-source operating system project published a new blog post to outline some of their latest development activity. One of the areas they have been focusing on in the performance department has been for addressing much slower git status performance compared to Linux...




  • Intel Xeon 6980P "Granite Rapids" Linux Performance One Year Later
    Next week marks one year since the launch of the Xeon 6900P series Granite Rapids server processors. Given the occasion and a new server in the lab, here is a look at how Intel9s Granite Rapids top-end Xeon 6980P server processors are performing one year after the original introduction with a production-grade server platform as well as incorporating all of the Linux software improvements over the past year.




  • AMD ROCm 7.0 Begins Rocking Out On GitHub
    As a pleasant surprise waking up this morning is AMD ROCm 7.0 release tags beginning to appear on GitHub, indicating the likely imminent official release of the ROCm 7.0 compute stack as the open-source AMD Radeon/Instinct software stack aimed to be the open alternative to NVIDIA's CUDA ecosystem...


  • Fedora Workstation 43 Beta Is Running Well On AMD Strix Halo / Framework Desktop
    Fedora 43 Beta is releasing today as we work toward the official release in either late October or early November. I have been testing out the Fedora Workstation 43 Beta candidate to great success on the AMD Ryzen AI Max+ "Strix Halo" powered Framework Desktop. Here are some benchmarks of Fedora Workstation 42 compared to the Fedora Workstation 43 Beta.







  • AMD Officially Confirms The End Of The AMDVLK Driver
    To no real surprise given the happenings (or there the lack of) the past few months, AMD formally announced publicly today that their open-source AMDVLK driver has been discontinued in favor of the Mesa RADV driver for Vulkan needs on Linux...



  • The Performance Cost To Ubuntu WSL2 On Windows 11 25H2
    It9s been a while since delivering any benchmarks on Phoronix of Microsoft9s Windows Subsystem for Linux (WSL2) for running Linux applications and other software under the confines of Windows 11. When recently carrying out the Windows 11 25H2 vs. Linux benchmarks I also took the opportunity for seeing how WSL is performing on that leading-edge Windows release compared to running a bare metal Ubuntu Linux installation.




  • Jonathan Riddell Leaving KDE Development After 25 Years
    Prominent KDE developer Jonathan Riddell who was formerly involved with Kubuntu and then KDE Neon, served for a while on KDE Plasma release management, and other significant contributions over the years announced he's stepping away from the KDE world...


  • Ubuntu 25.109s Rust Coreutils Transition Has Uncovered Performance Shortcomings
    Ubuntu 25.10's transition to using Rust Coreutils in place of GNU Coreutils has uncovered a few performance issues so far with the Rust version being slower than the C-based GNU Coreutils. Fortunately there still are a few weeks to go until Ubuntu 25.10 releases as stable and upstream developers are working to address these performance gaps...



OSnews

  • GNOME 49 released
    GNOME 49 has been released, and its got a lot of nice updates, improvements, and fixes for everyone. GNOME 49 finally replaces the ageing Totem video player with Showtime, and Evince, GNOMEs document viewer, is replaced by the new Papers. Both of these new applications bring a modern GTK4 user interface to replace their older GTK3 counterparts. Papers supports a ton of both document-oriented as well as comic book formats, and has annotation features. Weve already touched on the extensive accessibility improvements in GNOME Calendar, but other applications have been improved as well, such as Maps, Software, and Web. Softwares improvements focus on improving the applications performance, especially when dealing with Flatpaks from Flathub, while Web, GNOMEs web browser, comes with improved ad blocking and optional regional blocklists, better bookmark management, improved security features, and more. The remote desktop experience also saw a lot of work, with multitouch input support, extended virtual monitors, and relative mouse input. For developers, GNOME 49 comes with the new GTK 4.20, the latest version of Glib, and Libadwaita 1.8, released only a few days ago. It brings a brand new shortcuts information dialog as its most user-facing feature, on top of a whole bunch of other, developer-oriented features. GNOME 49 will find its way to your distribution of choice soon enough.


  • Installing and using Debian with my decades-old genuine DEC vt510 serial terminal
    Its 2025, and yes, you can still install and run a modern Linux distribution like Debian through a real hardware terminal. While I have used a terminal with the Pi, I’ve never before used it as a serial`console`all the way from early boot, and I have never installed Debian using the terminal to run the installer. A serial terminal gives you a login prompt. A serial console gives you access to kernel messages, the initrd environment, and sometimes even the bootloader. This might be fun, I thought. ↫ John Goerzen at The Changelog It seems Debian does a lot of the correct configurations for you, but theres still a few things youll need to manually change, but none of it seems particularly complicated. Once the installation is completed, you have a system thats completely accessible and usable from a hardware terminal, which, while maybe not particularly important in this day and age of effortless terminal emulators, is still quite a cool thing to have.


  • Haiku vastly improves git status performance
    Another month, another summary of changes in Haiku, the BeOS-inspired operating system. The main focus this past month has been improving the performance of git status, which has been measurably worse on Haiku than on Linux running on similar hardware. This work has certainly paid off, as the numbers demonstrate. The results are clearly more than worth the trouble, though: in one test setup with`git status`in Haiku’s`buildtools`repository (which contains the entirety of the`gcc`and`binutils`source code, among other things – over 160,000 files) went from around 33 seconds with a cold disk cache, to around 20 seconds; and with a hot disk cache, from around 15 seconds to around 2.5 seconds. This is still a ways off from Linux (with a similar setup in the same repository,`git status`there with a hot disk cache takes only 0.3 seconds). Performance on Haiku will likely be measurably faster on builds without`KDEBUG`enabled, but not by that much. Still, this is clearly a significant improvement over the way things were before now. ↫ Haiku Activity 8 Contract Report, August 2025 Theres more than this, of course, such as initial support for Intels Apollo Lake GPU in the Intel modesetting driver, improvements to USB disk performance, a reduction in power usage when in KDL, and much, much more.


  • Why is the name of the Microsoft Wireless Notebook Presenter Mouse 8000 hard-coded into the Bluetooth drivers?
    Some time ago, people noticed that buried in the Windows Bluetooth drivers is the hard-coded name of the Microsoft Wireless Notebook Presenter Mouse 8000. What’s going on there? Does the Microsoft Wireless Notebook Presenter Mouse 8000 receive favorable treatment from the Microsoft Bluetooth drivers? Is this some sort of collusion? No, it’s not that. ↫ Raymond Chen So, what is the actual problem? Its a funny one: an encoding mistake. The device local name string for a device needs to be encoded in UTF-8, and thats where the developers of the Microsoft Wireless Notebook Presenter Mouse 8000 made a mistake. The string contains a registered trademark symbol  ®  but they encoded it in code page 1252, which not only isnt allowed, but gets rejected completely. So, Windows Bluetooth drivers have a table that contains the wrong name for a driver, accompanied by the right name to use. This mouse is the only entry.


  • Java 25 released
    Java 25 has been released. JDK 25, the reference implementation of Java 25, is now Generally Available. We shipped build 36 as the second Release Candidate of JDK 25 on 15 August, and no P1 bugs have been reported since then. Build 36 is therefore now the GA build, ready for production use. ↫ Java 25/JDK 25 release announcement If you want to dive into the details about this new release, feel free to peruse the long, long list of improvements and changes.


  • A months of ad-free OSNews: were closing in on the fundraising goal, and need your help to get there
    Its been a little over a month since OSNews went completely ad-free for everyone. I can say the support has been overwhelming, with the accompanying fundraiser currently sitting at 67% of the €5000 goal! Of course things slowed down a bit after the initial week of one donation after the next, so Im throwing out this reminder that without your support, OSNews cant exist  doubly so now that Ive removed any and all advertising. Help us reach that 100%! So, what can you do to support OSNews? By being entirely free from the corrupting influence of advertising, I have even less desire to chase views, entrap users with slop content, game search engines with shitty SEO spam, or turn on the taps of AI!-generated trash to spew forth as much articles! and thus views as possible. This also means that OSNews is one of the few technology news websites remaining that is not part of a massive corporate media conglomerate, so theres no pressure from corporate! to go easy on advertisers or write favourable stuff about corporates friends. Youd be surprised to learn how many technology sites out there are not independent. The response to OSNews no longer having any advertising has been overwhelmingly positive  unsurprisingly  and that has taken away any reservations I might have had about taking this step. In a world where so many websites are disappearing, turning into corporate mouthpieces, or becoming glorified content farms, OSNews can keep on doing what it does, independent of any outside influence, thanks to the countless contributions from all of you. Thank you.


  • Apple releases version 26 of all of its operating systems
    Its release day for all of Apples operating systems, so if youre fully or only partway into the ecosystem, youve got some upgrades ahead of you. Version 26 for macOS, iOS and iPadOS, watchOS, tvOS, visionOS, and HomePod Software have all been released today, so if you own any device running any of these operating system, its time to head on over to the update section of the settings application and wait for that glass to slowly and sensually liquefy all over your screens. Do put a sock on the doorknob.


  • Writing an operating system kernel from scratch in Zig
    I recently implemented a minimal proof of concept time-sharing operating system kernel on RISC-V. In this post, I’ll share the details of how this prototype works. The target audience is anyone looking to understand low-level system software, drivers, system calls, etc., and I hope this will be especially useful to students of system software and computer architecture. Finally, to do things differently here, I implemented this exercise in Zig, rather than traditional C. In addition to being an interesting experiment, I believe Zig makes this experiment much more easily reproducible on your machine, as it’s very easy to set up and does not require any installation (which could otherwise be slightly messy when cross-compiling to RISC-V). ↫ Uros Popovic This is not the first, and certainly not the last, operating system implemented from scratch as a teaching exercise, both for the creator itself, as well as for others wanting to follow along. This time its developed for RISC-V, and in an interesting twist, programmed in Zig (no Rust for once!).


  • Microsoft to force-install Copilot onto Windows PCs with Office 365 installed
    And the beatings continue until AI! improves. Except if you live in the European Union/EEA, that is. Windows devices with the Microsoft 365 desktop client apps will automatically install the Microsoft 365 Copilot app. This app installation takes place in the background and would not disrupt the user. This app installation will start in Fall 2025. ↫ Microsoft support document Basically, if you have Microsoft 365 desktop applications installed  read my article about some deep Microsoft lore to figure out what that means  Microsoft is going to force-install all the Copilot stuff onto your computer, whether you like it or not. Thanks to more robust consumer protection legislation in the European Union/EEA, like the Digital Markets Act and Digital Services Act, this force-install will not take place there. Administrators managing Office 365 deployments get an option to opt-out through the Microsoft 365 Apps admin center, but Im not sure if regular users can use this method as well. Remember, when youre using Windows (or macOS, for that matter), you dont own your computer. Plan accordingly.


  • The idea of /usr/sbin has failed in practice
    It may be arcane knowledge to most users of UNIX-like systems today, but there is supposed to be a difference between /usr/bin and /usr/sbin; the latter is supposed to be for system binaries!, not needed by most normal users. The Filesystem Hierarchy Standard states that sbin directories are intended to contain utilities used for system administration (and other root-only commands)!, which is quite vague when you think about it. This has led to UNIX-like systems basically just winging it, making the distinction almost entirely arbitrary. For a long time, there has been no strong organizing principle to /usr/sbin that would draw a hard line and create a situation where people could safely leave it out of their $PATH. We could have had a principle of, for example, programs that dont work unless run by root!, but no such principle was ever followed for very long (if at all). Instead programs were more or less shoved in /usr/sbin if developers thought they were relatively unlikely to be used by normal people. But relatively unlikely is not never, and shortly after people got told to run traceroute and got command not found when they tried, /usr/sbin (probably) started appearing in $PATH. ↫ Chris Siebenmann As such, Fedora 42 unifies /usr/bin and /usr/sbin, which is kind of a follow-up to the /usr merge, and serves as a further simplification and clean-up of the file system layout by removing divisions and directories that used to make sense, but no longer really do. Decisions like these have a tendency to upset a small but very vocal group of people, people who often do not even use the distribution implementing the decisions in question in the first place. My suggestions to those people would be to stick to distributions that more closely resemble classic UNIX. Or use a real UNIX. Anyway, these are good moves, and Im glad most prominent Linux distributions are not married to decisions made in the 70s, especially not when they can be undone without users really noticing anything.


  • Google decides to significantly harm Android security to please lazy OEMs
    Google continues putting nails in the coffin that is the Android Open Source Project. This time, theyre changing the way they handle security updates to appease slow, irresponsible Android OEMs, while screwing over everyone else. The basic gist is that instead of providing monthly security updates for OEMs to implement on their Android devices, Google will now move to a quarterly model, publishing only extremely severe issues on a monthly basis. The benefit for OEMs is that for most vulnerabilities, they get three months to distribute (most) fixes instead of just one month, but the downsides are also legion. Vulnerabilities will now be out in the wild for three months instead of just one, and while theyre shared with OEMs privately!, were talking tends of thousands of pairs of eyes here, so privately! is a bit of a misnomer. The dangers are obvious; these vulnerabilities will be leaked, and they will be abused by malicious parties. Another massive downside related to this change is that Google will now no longer be providing the monthly patches as open source within AOSP, instead only releasing the quarterly patch drops as open source. This means exactly what you think it does: no more monthly security updates from third-party ROMs, unless those third-party ROMs choose to violate the embargo themselves and thus invite all sorts of problems. Extending the patch access window from one month to three is absolutely insane. Google should be striving to shorten this window as much as possible, but instead, theyre tripling it in length to create a false sense of security. OEMs can now point at their quarterly security updates and claim to be patching vulnerabilities as soon as Google publishes them, while in fact, the unpatched vulnerabilities will have been out in the wild for months by that point. This change is irresponsible, misguided, and done only to please lazy, shitty OEMs to create a false sense of security for marketing purposes.


  • China is selling its Great Firewall censorship tools to countries around the world
    Were all aware of the Chinese Great Firewall, the tool the Chinese government uses for mass censorship and for safeguarding and strengthening its totalitarian control over the country and its population. It turns out that through a Chinese shell company called Geedge Networks, China is also selling the Great Firewall to other totalitarian regimes around the world. Thanks to a massive leak of 500 GB of source code, work logs, and internal communication records, we now have more insight into how the Great Firewall works than ever before, leading to in-depth reports like this one from InterSecLab. The findings are chilling, but not surprising. First and foremost, Geedge is selling the Great Firewall to a variety of totalitarian regimes around the world, namely Kazakhstan, Ethiopia, Pakistan, Myanmar, and another unidentified country. These governments can then ask Geedge to make specific changes and ask them to focus on specific capabilities to further enhance the functionality of the Great Firewall, but what it can already do today is bad enough. The suite of products offered by Geedge Networks allow a client government unprecedented access to internet user data and enables governments to use this data to police national and regional networks. These capabilities include deep packet inspection for advanced classification, interception, and manipulation of application and user traffic; monitoring the geographic location of mobile subscribers in real time; analyzing aggregated network traffic in specific areas, such as during a protest or event; flagging unusual traffic patterns as suspicious; creating tailored blocking rules to obstruct access to a website or application (such as a VPN (Virtual Private Network) or circumvention tool); throttling traffic to specific services; identifying individual internet users for accessing websites or using circumvention tools or VPNs; assigning individual internet users reputation scores based on their online activities; and infecting users with malware through in-path injection. ↫ The Internet Coup: A Technical Analysis on How a Chinese Company is Exporting The Great Firewall to Autocratic Regimes Internet service providers participate in the implementation of the suite of tools, either freely or by force, and since the tools are platform-agnostic it doesnt matter which platforms people are using in any given country, making international sanctions effectively useless. It also wont surprise you that Geedge steals both proprietary and open source code, without regards for licensing terms. Furthermore, China is allowing provinces and regions within its borders to tailor and adapt the Great Firewall to their own local needs, providing a blueprint for how to export the suite of tools to other countries. With quite a few countries sliding ever further towards authoritarianism, Im sure even places not traditionally thought of as totalitarian are lustfully looking at the Chinese Great Firewall, wishing they had something similar in their own countries.


  • Everything about Psion, in one place
    Celebrate classic Psion machines with us, from the original Organiser, through the Series 3 and Series 5, all the way to the netBook. Get help with your classic palmtop computer, or help to develop software and hardware that will bring these devices into the 21st Century. ↫ Psion Community website A brand new one-stop shop for everything related to keeping Psion machines going. A library of all the software, lists of all the ROM images, tons of development resources, and much more.


  • Java 25’s new CPU-time profiler
    More than three years in the making, with a concerted effort starting last year, my CPU-time profiler landed in Java with OpenJDK 25. It’s an experimental new profiler/method sampler that helps you find performance issues in your code, having distinct advantages over the current sampler. This is what this week’s and next week’s blog posts are all about. This week, I will cover why we need a new profiler and what information it provides; next week, I’ll cover the technical internals that go beyond what’s written in the JEP. I will quote the JEP 509 quite a lot, thanks to Ron Pressler; it reads like a well-written blog post in and of itself. ↫ Johannes Bechberger Theres also a third entry detailing queue sizing, and a fourth entry going into the removal of redundant synchronisation.


  • UTF-8 is a brilliant design!
    The first time I learned about UTF-8 encoding, I was fascinated by how well-thought and brilliantly it was designed to represent millions of characters from different languages and scripts, and still be backward compatible with ASCII. Designing a system that scales to millions of characters and still be compatible with the old systems that use just 128 characters is a brilliant design. ↫ Vishnu Haridas On a slightly related note, if you are ever bothered or annoyed by text online rendering as unknown squares, you most likely are just missing the proper fonts to render them. At least on most Linux and BSD systems, all you need to do is install the entire set of Noto fonts, including those for every single non-Latin script. Assuming your package manager has sane naming conventions, itll most likely come down to something like sudo dnf install google-noto* or whatever your systems install package command is, and after installing a whole slew of font files, your system will now be able to render virtually every script under the sun. After installing this massive font set, you can do things like write and render in hieroglyphics, write Ea-nāṣirs name the way its supposed to, and render all kinds of other scripts and symbols without ever having to look at one of those blank squares ever again.


  • How open is open-source! VTubing?
    Im not really into the niche of virtual YouTubers!  people who post YouTube videos and/or stream using a virtual avatar  but to each their own, and if this technology enables people to remain anonymous while doing what they love on YouTube or Twitch, Im all for it. Since these virtual avatars also do things like face-tracking, theres a whole cottage industry of software tools to make this all work, but Adrian asie! Siekierka decided to take a look at where the training data used to make such face-tracking work actually comes from. One day, some years ago, I decided to look at the data used to train OpenSeeFace. OpenSeeFace is the most popular open source face tracking solution for virtual YouTubers. It is supported by both open source and commercial model rendering tools; in particular, VTube Studio allows using it as an option for webcam tracking. ↫ Adrian asie! Siekierka The results of the investigation are not exactly great. Much of the data used by OpenSeeFace comes with serious restrictions on commercial use, and many of the underlying datasets contain images that you would need consent for from the people inside the image to actually use. On top of that, a lot of these data sets seem to have just scraped the internet for images of faces without asking anyone of the people in those images for consent, which raises a whole number of troubling issues. I find this a very interesting topic of discussion, if only because youd be hard-pressed to argue that the average cartoon-esque virtual avatars even remotely resemble real human faces, so its not like youre going to suddenly run into your own face somewhere on YouTube or Twitch, but plastered into another person. On the other hand, the underlying datasets still contain a ton of peoples faces without those peoples consent, and even for those that did give consent, theres often a commercial use restriction which earning revenue on YouTube or Twitch might violate. Its a fascinating microcosm of a whole slew of issues were dealing with right now, neatly contained in a relatively small niche.



Linux Journal News

  • EU OS: A Bold Step Toward Digital Sovereignty for Europe
    Image
    A new initiative, called "EU OS," has been launched to develop a Linux-based operating system tailored specifically for the public sector organizations of the European Union (EU). This community-driven project aims to address the EU's unique needs and challenges, focusing on fostering digital sovereignty, reducing dependency on external vendors, and building a secure, self-sufficient digital ecosystem.
    What Is EU OS?
    EU OS is not an entirely novel operating system. Instead, it builds upon a Linux foundation derived from Fedora, with the KDE Plasma desktop environment. It draws inspiration from previous efforts such as France's GendBuntu and Munich's LiMux, which aimed to provide Linux-based systems for public sector use. The goal remains the same: to create a standardized Linux distribution that can be adapted to different regional, national, and sector-specific needs within the EU.

    Rather than reinventing the wheel, EU OS focuses on standardization, offering a solid Linux foundation that can be customized according to the unique requirements of various organizations. This approach makes EU OS a practical choice for the public sector, ensuring broad compatibility and ease of implementation across diverse environments.
    The Vision Behind EU OS
    The guiding principle of EU OS is the concept of "public money – public code," ensuring that taxpayer money is used transparently and effectively. By adopting an open-source model, EU OS eliminates licensing fees, which not only lowers costs but also reduces the dependency on a select group of software vendors. This provides the EU’s public sector organizations with greater flexibility and control over their IT infrastructure, free from the constraints of vendor lock-in.

    Additionally, EU OS offers flexibility in terms of software migration and hardware upgrades. Organizations can adapt to new technologies and manage their IT evolution at a manageable cost, both in terms of finances and time.

    However, there are some concerns about the choice of Fedora as the base for EU OS. While Fedora is a solid and reliable distribution, it is backed by the United States-based Red Hat. Some argue that using European-backed projects such as openSUSE or KDE's upcoming distribution might have aligned better with the EU's goal of strengthening digital sovereignty.
    Conclusion
    EU OS marks a significant step towards Europe's digital independence by providing a robust, standardized Linux distribution for the public sector. By reducing reliance on proprietary software and vendors, it paves the way for a more flexible, cost-effective, and secure digital ecosystem. While the choice of Fedora as the base for the project has raised some questions, the overall vision of EU OS offers a promising future for Europe's public sector in the digital age.

    Source: It's FOSS
    European Union


  • Linus Torvalds Acknowledges Missed Release of Linux 6.14 Due to Oversight

    Linus Torvalds Acknowledges Missed Release of Linux 6.14 Due to Oversight

    Linux kernel lead developer Linus Torvalds has admitted to forgetting to release version 6.14, attributing the oversight to his own lapse in memory. Torvalds is known for releasing new Linux kernel candidates and final versions on Sunday afternoons, typically accompanied by a post detailing the release. If he is unavailable due to travel or other commitments, he usually informs the community ahead of time, so users don’t worry if there’s a delay.

    In his post on March 16, Torvalds gave no indication that the release might be delayed, instead stating, “I expect to release the final 6.14 next weekend unless something very surprising happens.” However, Sunday, March 23rd passed without any announcement.

    On March 24th, Torvalds wrote in a follow-up message, “I’d love to have some good excuse for why I didn’t do the 6.14 release yesterday on my regular Sunday afternoon schedule,” adding, “But no. It’s just pure incompetence.” He further explained that while he had been clearing up unrelated tasks, he simply forgot to finalize the release. “D'oh,” he joked.

    Despite this minor delay, Torvalds’ track record of successfully managing the Linux kernel’s development process over the years remains strong. A single day’s delay is not critical, especially since most Linux users don't urgently need the very latest version.

    The new 6.14 release introduces several important features, including enhanced support for writing drivers in Rust—an ongoing topic of discussion among developers—support for Qualcomm’s Snapdragon 8 Elite mobile chip, a fix for the GhostWrite vulnerability in certain RISC-V processors from Alibaba’s T-Head Semiconductor, and a completed NTSYNC driver update that improves the WINE emulator’s ability to run Windows applications, particularly games, on Linux.

    Although the 6.14 release went smoothly aside from the delay, Torvalds expressed that version 6.15 may present more challenges due to the volume of pending pull requests. “Judging by my pending pile of pull requests, 6.15 will be much busier,” he noted.

    You can download the latest kernel here.
    Linus Torvalds kernel


  • AerynOS 2025.03 Alpha Released with GNOME 48, Mesa 25, and Linux Kernel 6.13.8
    Image
    AerynOS 2025.03 has officially been released, introducing a variety of exciting features for Linux users. The release includes the highly anticipated GNOME 48 desktop environment, which comes with significant improvements like HDR support, dynamic triple buffering, and a Wayland color management protocol. Other updates include a battery charge limiting feature and a Wellbeing option aimed at improving user experience.

    This release, while still in alpha, incorporates Linux kernel 6.13.8 and the updated Mesa 25.0.2 graphics stack, alongside tools like LLVM 19.1.7 and Vulkan SDK 1.4.309.0. Additionally, the Moss package manager now integrates os-info to generate more detailed OS metadata via a JSON file.

    Future plans for AerynOS include automated package updates, easier rollback management, improved disk handling with Rust, and fractional scaling enabled by default. The installer has also been revamped to support full disk wipes and dynamic partitioning.

    Although still considered an alpha release, AerynOS 2025.03 can be downloaded and tested right now from its official website.

    Source: 9to5Linux
    AerynOS


  • Xojo 2025r1: Big Updates for Developers with Linux ARM Support, Web Drag and Drop, and Direct App Store Publishing
    Image
    Xojo has just rolled out its latest release, Xojo 2025 Release 1, and it’s packed with features that developers have been eagerly waiting for. This major update introduces support for running Xojo on Linux ARM, including Raspberry Pi, brings drag-and-drop functionality to the Web framework, and simplifies app deployment with the ability to directly submit apps to the macOS and iOS App Stores.

    Here’s a quick overview of what’s new in Xojo 2025r1:
    1. Linux ARM IDE Support
    Xojo 2025r1 now allows developers to run the Xojo IDE on Linux ARM devices, including popular platforms like Raspberry Pi. This opens up a whole new world of possibilities for developers who want to create apps for ARM-based devices without the usual complexity. Whether you’re building for a Raspberry Pi or other ARM devices, this update makes it easier than ever to get started.
    2. Web Drag and Drop
    One of the standout features in this release is the addition of drag-and-drop support for web applications. Now, developers can easily drag and drop visual controls in their web projects, making it simpler to create interactive, user-friendly web applications. Plus, the WebListBox has been enhanced with support for editable cells, checkboxes, and row reordering via dragging. No JavaScript required!
    3. Direct App Store Publishing
    Xojo has also streamlined the process of publishing apps. With this update, developers can now directly submit macOS and iOS apps to App Store Connect right from the Xojo IDE. This eliminates the need for multiple steps and makes it much easier to get apps into the App Store, saving valuable time during the development process.
    4. New Desktop and Mobile Features
    This release isn’t just about web and Linux updates. Xojo 2025r1 brings some great improvements for desktop and mobile apps as well. On the desktop side, all projects now include a default window menu for macOS apps. On the mobile side, Xojo has introduced new features for Android and iOS, including support for ColorGroup and Dark Mode on Android, and a new MobileColorPicker for iOS to simplify color selection.
    5. Performance and IDE Enhancements
    Xojo’s IDE has also been improved in several key areas. There’s now an option to hide toolbar captions, and the toolbar has been made smaller on Windows. The IDE on Windows and Linux now features modern Bootstrap icons, and the Documentation window toolbar is more compact. In the code editor, developers can now quickly navigate to variable declarations with a simple Cmd/Ctrl + Double-click. Plus, performance for complex container layouts in the Layout Editor has been enhanced.
    What Does This Mean for Developers?
    Xojo 2025r1 brings significant improvements across all the platforms that Xojo supports, from desktop and mobile to web and Linux. The added Linux ARM support opens up new opportunities for Raspberry Pi and ARM-based device development, while the drag-and-drop functionality for web projects will make it easier to create modern, interactive web apps. The ability to publish directly to the App Store is a game-changer for macOS and iOS developers, reducing the friction of app distribution.
    How to Get Started
    Xojo is free for learning and development, as well as for building apps for Linux and Raspberry Pi. If you’re ready to dive into cross-platform development, paid licenses start at $99 for a single-platform desktop license, and $399 for cross-platform desktop, mobile, or web development. For professional developers who need additional resources and support, Xojo Pro and Pro Plus licenses start at $799. You can also find special pricing for educators and students.

    Download Xojo 2025r1 today at xojo.com.
    Final Thoughts
    With each new release, Xojo continues to make cross-platform development more accessible and efficient. The 2025r1 release is no exception, delivering key updates that simplify the development process and open up new possibilities for developers working on a variety of platforms. Whether you’re a Raspberry Pi enthusiast or a mobile app developer, Xojo 2025r1 has something for you.
    Xojo ARM


  • New 'Mirrored' Network Mode Introduced in Windows Subsystem for Linux

    Microsoft's Windows Subsystem for Linux (WSL) continues to evolve with the release of WSL 2 version 0.0.2. This update introduces a set of opt-in preview features designed to enhance performance and compatibility.

    Key additions include "Automatic memory reclaim" which dynamically optimizes WSL's memory footprint, and "Sparse VHD" to shrink the size of the virtual hard disk file. These improvements aim to streamline resource usage.

    Additionally, a new "mirrored networking mode" brings expanded networking capabilities like IPv6 and multicast support. Microsoft claims this will improve VPN and LAN connectivity from both the Windows host and Linux guest. 

    Complementing this is a new "DNS Tunneling" feature that changes how DNS queries are resolved to avoid compatibility issues with certain network setups. According to Microsoft, this should reduce problems connecting to the internet or local network resources within WSL.

    Advanced firewall configuration options are also now available through Hyper-V integration. The new "autoProxy" feature ensures WSL seamlessly utilizes the Windows system proxy configuration.

    Microsoft states these features are currently rolling out to Windows Insiders running Windows 11 22H2 Build 22621.2359 or later. They remain opt-in previews to allow testing before final integration into WSL.

    By expanding WSL 2 with compelling new capabilities in areas like resource efficiency, networking, and security, Microsoft aims to make Linux on Windows more performant and compatible. This evolutionary approach based on user feedback highlights Microsoft's commitment to WSL as a key part of the Windows ecosystem.
    Windows


  • Linux Threat Report: Earth Lusca Deploys Novel SprySOCKS Backdoor in Attacks on Government Entities

    The threat actor Earth Lusca, linked to Chinese state-sponsored hacking groups, has been observed utilizing a new Linux backdoor dubbed SprySOCKS to target government organizations globally. 

    As initially reported in January 2022 by Trend Micro, Earth Lusca has been active since at least 2021 conducting cyber espionage campaigns against public and private sector targets in Asia, Australia, Europe, and North America. Their tactics include spear-phishing and watering hole attacks to gain initial access. Some of Earth Lusca's activities overlap with another Chinese threat cluster known as RedHotel.

    In new research, Trend Micro reveals Earth Lusca remains highly active, even expanding operations in the first half of 2023. Primary victims are government departments focused on foreign affairs, technology, and telecommunications. Attacks concentrate in Southeast Asia, Central Asia, and the Balkans regions. 

    After breaching internet-facing systems by exploiting flaws in Fortinet, GitLab, Microsoft Exchange, Telerik UI, and Zimbra software, Earth Lusca uses web shells and Cobalt Strike to move laterally. Their goal is exfiltrating documents and credentials, while also installing additional backdoors like ShadowPad and Winnti for long-term spying.

    The Command and Control server delivering Cobalt Strike was also found hosting SprySOCKS - an advanced backdoor not previously publicly reported. With roots in the Windows malware Trochilus, SprySOCKS contains reconnaissance, remote shell, proxy, and file operation capabilities. It communicates over TCP mimicking patterns used by a Windows trojan called RedLeaves, itself built on Trochilus.

    At least two SprySOCKS versions have been identified, indicating ongoing development. This novel Linux backdoor deployed by Earth Lusca highlights the increasing sophistication of Chinese state-sponsored threats. Robust patching, access controls, monitoring for unusual activities, and other proactive defenses remain essential to counter this advanced malware.

    The Trend Micro researchers emphasize that organizations must minimize attack surfaces, regularly update systems, and ensure robust security hygiene to interrupt the tactics, techniques, and procedures of relentless threat groups like Earth Lusca.
    Security


  • Linux Kernel Faces Reduction in Long-Term Support Due to Maintenance Challenges

    The Linux kernel is undergoing major changes that will shape its future development and adoption, according to Jonathan Corbet, Linux kernel developer and executive editor of Linux Weekly News. Speaking at the Open Source Summit Europe, Corbet provided an update on the latest Linux kernel developments and a glimpse of what's to come.

    A major change on the horizon is a reduction in long-term support (LTS) for kernel versions from six years to just two years. Corbet explained that maintaining old kernel branches indefinitely is unsustainable and most users have migrated to newer versions, so there's little point in continuing six years of support. While some may grumble about shortened support lifecycles, the reality is that constantly backporting fixes to ancient kernels strains maintainers.

    This maintainer burnout poses a serious threat, as Corbet highlighted. Maintaining Linux is largely a volunteer effort, with only about 200 of the 2,000+ developers paid for their contributions. The endless demands on maintainers' time from fuzz testing, fixing minor bugs, and reviewing contributions takes a toll. Prominent maintainers have warned they need help to avoid collapse. Companies relying on Linux must realize giving back financially is in their interest to sustain this vital ecosystem. 

    The Linux kernel is also wading into waters new with the introduction of Rust code. While Rust solves many problems, it also introduces new complexities around language integration, evolving standards, and maintainer expertise. Corbet believes Rust will pass the point of no return when core features depend on it, which may occur soon with additions like Apple M1 GPU drivers. Despite skepticism in some corners, Rust's benefits likely outweigh any transition costs.

    On the distro front, Red Hat's decision to restrict RHEL cloning sparked community backlash. While business considerations were at play, Corbet noted technical factors too. Using older kernels with backported fixes, as RHEL does, risks creating divergent, vendor-specific branches. The Android model of tracking mainline kernel dev more closely has shown security benefits. Ultimately, Linux works best when aligned with the broader community.

    In closing, Corbet recalled the saying "Linux is free like a puppy is free." Using open source seems easy at first, but sustaining it long-term requires significant care and feeding. As Linux is incorporated into more critical systems, that maintenance becomes ever more crucial. The kernel changes ahead are aimed at keeping Linux healthy and vibrant for the next generation of users, businesses, and developers.
    kernel


  • Linux Celebrates 32 Years with the Release of 6.6-rc2 Version

    Today marks the 32nd anniversary of Linus Torvalds introducing the inaugural Linux 0.01 kernel version, and celebrating this milestone, Torvalds has launched the Linux 6.6-rc2. Among the noteworthy updates are the inclusion of a feature catering to the ASUS ROG Flow X16 tablet's mode handling and the renaming of the new GenPD subsystem to pmdomain.

    The Linux 6.6 edition is progressing well, brimming with exciting new features that promise to enhance user experience. Early benchmarks are indicating promising results, especially on high-core-count servers, pointing to a potentially robust and efficient update in the Linux series.

    Here is what Linus Torvalds had to say in today's announcement:
    Another week, another -rc.I think the most notable thing about 6.6-rc2 is simply that it'sexactly 32 years to the day since the 0.01 release. And that's a roundnumber if you are a computer person.Because other than the random date, I don't see anything that reallystands out here. We've got random fixes all over, and none of it looksparticularly strange. The genpd -> pmdomain rename shows up in thediffstat, but there's no actual code changes involved (make sure touse "git diff -M" to see them as zero-line renames).And other than that, things look very normal. Sure, the architecturefixes happen to be mostly parisc this week, which isn't exactly theusual pattern, but it's also not exactly a huge amount of changes.Most of the (small) changes here are in drivers, with some tracingfixes and just random things. The shortlog below is short enough toscroll through and get a taste of what's been going on. Linus Torvalds


  • Introducing Bavarder: A User-Friendly Linux Desktop App for Quick ChatGPT Interaction

    Want to interact with ChatGPT from your Linux desktop without using a web browser?

    Bavarder, a new app, allows you to do just that.

    Developed with Python and GTK4/libadwaita, Bavarder offers a simple concept: pose a question to ChatGPT, receive a response, and promptly copy the answer (or your inquiry) to the clipboard for pasting elsewhere.

    With an incredibly user-friendly interface, you won't require AI expertise (or a novice blogger) to comprehend it. Type your question in the top box, click the blue send button, and wait for a generated response to appear at the bottom. You can edit or modify your message and repeat the process as needed.

    During our evaluation, Bavarder employed BAI Chat, a GPT-3.5/ChatGPT API-based chatbot that's free and doesn't require signups or API keys. Future app versions will incorporate support for alternative backends, such as ChatGPT 4 and Hugging Chat, and allow users to input an API key to utilize ChatGPT3.

    At present, there's no option to regenerate a response (though you can resend the same question for a potentially different answer). Due to the lack of a "conversation" view, tracking a dialogue or following up on answers can be challenging — but Bavarder excels for rapid-fire questions.

    As with any AI, standard disclaimers apply. Responses might seem plausible but could contain inaccurate or false information. Additionally, it's relatively easy to lead these models into irrational loops, like convincing them that 2 + 2 equals 106 — so stay alert!

    Overall, Bavarder is an attractive app with a well-defined purpose. If you enjoy ChatGPT and similar technologies, it's worth exploring.
    ChatGPT AI


  • LibreOffice 7.5.3 Released: Third Maintenance Update Brings 119 Bug Fixes to Popular Open-Source Office Suite

    Today, The Document Foundation unveiled the release and widespread availability of LibreOffice 7.5.3, which serves as the third maintenance update to the current LibreOffice 7.5 open-source and complimentary office suite series.

    Approximately five weeks after the launch of LibreOffice 7.5.2, LibreOffice 7.5.3 arrives with a new set of bug fixes for those who have successfully updated their GNU/Linux system to the LibreOffice 7.5 series.

    LibreOffice 7.5.3 addresses a total of 119 bugs identified by users or uncovered by LibreOffice developers. For a more comprehensive understanding of these bug fixes, consult the RC1 and RC2 changelogs.

    You can download LibreOffice 7.5.3 directly from the LibreOffice websiteor from SourceForge as binary installers for DEB or RPM-based GNU/Linux distributions. A source tarball is also accessible for individuals who prefer to compile the software from sources or for system integrators.

    All users operating the LibreOffice 7.5 office suite series should promptly update their installations to the new point release, which will soon appear in the stable software repositories of your GNU/Linux distributions.

    In early February 2023, LibreOffice 7.5 debuted as a substantial upgrade to the widely-used open-source office suite, introducing numerous features and improvements. These enhancements encompass major upgrades to dark mode support, new application and MIME-type icons, a refined Single Toolbar UI, enhanced PDF Export, and more.

    Seven maintenance updates will support LibreOffice 7.5 until November 30th, 2023. The next point release, LibreOffice 7.5.4, is scheduled for early June and will include additional bug fixes.

    The Document Foundation once again emphasizes that the LibreOffice office suite's "Community" edition is maintained by volunteers and members of the Open Source community. For enterprise implementations, they suggest using the LibreOffice Enterprise family of applications from ecosystem partners.
    LibreOffice


Linux Magazine News (path: lmi_news)

  • USB4 Maintainer Leaves Intel
    Michael Jamet, one of the primary maintainers of USB4 and Thunderbolt drivers, has left Intel, leaving a gaping hole for the Linux community to deal with.









  • VirtualBox 7.2 Has Arrived
    With early support for Linux kernel 6.17 and other new additions, VirtualBox 7.2 is a must-update for users.



  • Debian 13.0 Officially Released
    After two years of development, the latest iteration of Debian is now available with plenty of under-the-hood improvements.







  • Linux Hits an Important Milestone
    If you pay attention to the news in the Linux-sphere, you've probably heard that the open source operating system recently crashed through a ceiling no one thought possible.


  • Plasma Bigscreen Returns
    A developer discovered that the Plasma Bigscreen feature had been sitting untouched, so he decided to do something about it.




Page last modified on November 17, 2022, at 06:39 PM