Recent Changes - Search:
NTLUG

Linux is free.
Life is good.

Linux Training
10am on Meeting Days!

1825 Monetary Lane Suite #104 Carrollton, TX

Do a presentation at NTLUG.

What is the Linux Installation Project?

Real companies using Linux!

Not just for business anymore.

Providing ready to run platforms on Linux

Show Descriptions... (Show All/All+Images) (Single Column)

LinuxSecurity - Security Advisories







LWN.net

  • A critical GnuPG security update
    There is a new GnuPG update for a "critical security bug" in recentGnuPG releases.
    A crafted CMS (S/MIME) EnvelopedData message carrying an oversized wrapped session key can cause a stack buffer overflow in gpg-agent during the PKDECRYPT--kem=CMS handling. This can easily be used for a DoS but, worse, the memory corruption can very likley also be used to mount a remote code execution attack. The bug was introduced while changing an internal API to the FIPS required KEM API.
    Only versions 2.5.13 through 2.5.16 are affected.


  • The GNU C Library is moving from Sourceware
    GNU C Library maintainer Carlos O'Donell has announcedthat the project will be moving its core services away from Sourceware in favor of services hostedat the Linux Foundation.
    While it was clear to the GNU Toolchain leadership that requirements were coming to improve the toolchain cyber-security posture, these requirements were not clear to all project developers. As part of receiving this feedback we have worked to document and define a secure development policy for glibc and at a higher level the GNU Toolchain. While Sourceware has started making some critical technical changes, the GNU Toolchain still faces serious, systemic concerns about securing a global, highly available service and building a sustainable, diverse sponsorship model.
    This has been a long-running discussion; see this 2022 article for some background.


  • [$] Implicit arguments for BPF kfuncs
    The kernel's "kfunc" mechanism is a way of exporting kernel functions sothat they can be called directly from BPF programs. There are over 300kfuncs in current kernels, ranging in functionality from string processing(bpf_strnlen())to custom schedulers (scx_bpf_kick_cpu())and beyond. Sometimes these kfuncs need access to context information thatis not directly available to BPF programs, and which thus cannot be passedin as arguments. The implicitarguments patch set from Ihor Solodrai is the latest attempt to solvethis problem.


  • Xfwl4: the roadmap for a Xfce Wayland compositor
    The Xfce team has announced thatit will be providing funding to Brian Tarricone to work on xfwl4,a Wayland compositor for Xfce:

    Xfwl4 will not be based on the existing xfwm4 code. Instead, itwill be written from scratch in rust, using smithay buildingblocks.

    The first attempt at creating an Xfce Wayland compositor involvedmodifying the existing xfwm4 code to support both X11 and Wayland inparallel. However, this approach turned out to be the wrong pathforward for several reasons:

    Xfwm4 is architected in a way that makes it very difficult to put the window management behavior behind generic interfaces that don't include X11 specifics. Refactoring Xfwm4 is risky, since it might introduce new bugs to X11. Having two parallel code bases will allow for rapid development and experimentation with the Wayland compositor, with zero risk to break xfwm4. Some X11 window management concepts just aren't available or supported by Wayland protocols at this time, and dealing with those differences can be difficult in an X11-first code base. Using the existing codebase would require us to use C and wlroots, even if a better alternative is available.

    Work has already commenced on the project, and the project hopes toshare a development release in mid-2026.



  • Security updates for Tuesday
    Security updates have been issued by AlmaLinux (kernel, kernel-rt, python-urllib3, python3.11-urllib3, and python3.12-urllib3), Debian (imagemagick, openjdk-11, openjdk-17, and openjdk-21), Fedora (bind, bind-dyndb-ldap, chromium, ghostscript, glibc, mingw-glib2, mingw-harfbuzz, mingw-libsoup, mingw-openexr, and qownnotes), Mageia (kernel-linus), Red Hat (osbuild-composer), SUSE (go1.24-openssl, go1.25-openssl, govulncheck-vulndb, kernel, nodejs22, openCryptoki, openvswitch3, python-pyasn1, python311, and qemu), and Ubuntu (git-lfs, node-form-data, and screen).


  • [$] Fedora and GPG 2.5
    The GNU Privacy Guard (GPG)project decided to break from the OpenPGP standard for emailencryption in 2023, and instead adopted its own homegrown LibrePGP specification. The GPG 2.4branch, the last one to adhere to OpenPGP, will be reaching the end oflife in mid-2026. The Fedora project is currently having a discussionabout how that affects the distribution, its users, and what to offeronce 2.4 is no longer receiving updates.


  • Stenberg: The end of the curl bug-bounty program
    Curl creator Daniel Stenberg has written a blogpost explaining why the project is ending its bug-bountyprogram, which started in April 2019:

    The never-ending slop submissions take a serious mental toll tomanage and sometimes also a long time to debunk. Time and energy thatis completely wasted while also hampering our will to live.

    I have also started to get the feeling that a lot of the securityreporters submit reports with a bad faith attitude. These "helpers"try too hard to twist whatever they find into something horribly badand a critical vulnerability, but they rarely actively contribute toactually improve curl. They can go to extreme efforts to argue andinsist on their specific current finding, but not to write a fix orwork with the team on improving curl long-term etc. I don't think weneed more of that.

    There are these three bad trends combined that makes us take thisstep: the mind-numbing AI slop, humans doing worse than ever and theapparent will to poke holes rather than to help.

    Stenberg writes that he still expects "the best and our mostvalued security reporters" to continue informing the project whensecurity vulnerabilities are discovered. The program will officiallyend on January 31, 2026.



  • Security updates for Monday
    Security updates have been issued by AlmaLinux (gimp, glib2, go-toolset:rhel8, golang, java-17-openjdk, java-21-openjdk, kernel, net-snmp, pcs, and thunderbird), Debian (apache2, imagemagick, incus, inetutils, libuev, openjdk-17, php7.4, python3.9, shapelib, taglib, and zvbi), Fedora (mingw-glib2, mingw-harfbuzz, mingw-libsoup, mingw-openexr, pgadmin4, python3.11, python3.12, python3.9, and wireshark), Gentoo (Asterisk, Commons-BeanUtils, GIMP, inetutils, and Vim, gVim), Mageia (kernel), Oracle (glib2, java-17-openjdk, java-21-openjdk, and libpng), Red Hat (java-17-openjdk, java-21-openjdk, kernel, and kernel-rt), SUSE (azure-cli-core, bind, buildah, chromium, coredns, glib2, harfbuzz, kernel, kernel-firmware, libheif, libvirt, openCryptoki, openvswitch, podman, python, python-urllib3, rabbitmq-server, and vlang), and Ubuntu (cjson).


  • Kernel prepatch 6.19-rc7
    The 6.19-rc7 kernel prepatch is out fortesting.
    So normally this would be the last rc of the release, but as I've mentioned every rc (because I really want people to be aware and be able to plan for things) this release we'll have an rc8 due to the holiday season.
    And while some of the early rc's were smaller than usual and it didn't seem necessary, right now I'm quite happy I made that call. Not because there's anything particularly scary here - the release seems to be going fairly smoothly - but because this rc7 really is larger than things normally are and should be at this point.Along with the usual fixes, this -rc also includes a newdocument describing the process to replace the kernel projectleadership should that become necessary in the absence of an arrangedtransition. The plan largely follows what was decided at the Maintainers Summit in December.


  • GNU C Library 2.43 released
    Version 2.43 of theGNU C Library has been released. Changes include support for the mseal() and openat2()system calls, experimental support for building with the Clang compiler,Unicode 17.0.0 support, a number of security fixes, and much more.



LXer Linux News



  • Updated Linux Patches For Managing Out-Of-Memory Behavior Via BPF
    Being worked on since last year by Google engineer Roman Gushchin was the latest attempt for the Linux kernel to support managing the out-of-memory "OOM" behavior using BPF programs. It's been a while since there has been anything new to report on that front but published overnight is the latest iteration of those patches...






  • Dabao Evaluation Board to Showcase Open-RTL Baochip-1x RISC-V MCU
    Baochip has previewed the Baochip-1x, a mostly open RTL, RISC-V–based microcontroller fabricated on TSMC’s 22 nm process. Designed with openness and verifiability in mind, the MCU integrates a VexRiscv application core running at up to 350 MHz, alongside a quad-core I/O accelerator cluster clocked at 700 MHz. The Baochip-1x uses a VexRiscv RV32IMAC processor with […]


  • Just the Browser is just the beginning: Why breaking free means building small
    Privacy tools are a start, but real freedom lives in the digital outskirts of the webOpinion The Net is born free, but everywhere is in chains. This is a parody of Jean-Jacques Rousseau's 1762 book The Social Contract where he said the same about humans, but it's nonetheless true. The Net is built out of open, free protocols and open, free code. Yet it and we are bound by the rulemakers who build the services and set the laws of the places we go and the things that we do, not to our advantage.…


  • Seven Years After, Stallman Is Still Stallman
    Nearly seven years after Richard Stallman left MIT under pressure and resigned the presidency of the Free Software Foundation he founded, he’s back on a U.S. campus giving a talk that is pure RMS — and fundraising for FSF in the process.


Linux Insider"LinuxInsider"












Slashdot

  • Amazon Cuts Another 16,000 Jobs
    Amazon announced on Wednesday that it is eliminating approximately 16,000 roles across the company as part of organizational changes that began in October 2025 and are only now being finalized by certain teams. Senior Vice President Beth Galetti shared the news in a memo to employees, framing the reductions as an effort to reduce layers, increase ownership, and remove bureaucracy. The memo follows another memo that the company accidentally sent to employees.


    Read more of this story at Slashdot.


  • Asteroid 2024 YR4 Has a 4% Chance of Hitting the Moon
    An anonymous reader quotes a report from Universe Today: There's a bright side to every situation. In 2032, the Moon itself might have a particularly bright side if it is blasted by a 60-meter-wide asteroid. The chances of such an event are still relatively small (only around 4%), but non-negligible. And scientists are starting to prepare both for the bad (massive risks to satellites and huge meteors raining down on a large portion of the planet) and the good (a once in a lifetime chance to study the geology, seismology, and chemical makeup of our nearest neighbor). A new paper from Yifan He of Tsinghua University and co-authors, released in pre-print form on arXiv, looks at the bright side of all of the potential interesting science we can do if a collision does, indeed, happen. If Asteroid 2024 YR4 were to hit the Moon, researchers would be able to watch a large lunar impact unfold in real time and collect data on extreme collisions that usually exist only in computer models. Telescopes could follow how a newly formed crater and its pool of molten rock cool and solidify, while the resulting moonquake would offer a clearer picture of its internal structure via the seismic waves it sends through the Moon. Furthermore, researchers could compare the fresh crater to older ones to improve our understanding of the Moon's long history of impacts. Debris blasted off the surface could even deliver small lunar samples to Earth. Altogether, it would be a once-in-a-generation chance to learn more about how the Moon/rocky worlds respond to powerful impacts.


    Read more of this story at Slashdot.


  • Ancient Martian Beach Discovered, Providing New Clues To Planet's Habitability
    alternative_right shares a report from Phys.org: New findings from NASA's Perseverance rover have revealed evidence of wave-formed beaches and rocks altered by subsurface water in a Martian crater that once held a vast lake -- considerably expanding the timeline for potential habitability at this ancient site. In an international study led by Imperial College London, researchers uncovered that the so-called 'Margin unit' in Mars's Jezero crater preserves evidence of extensive underground interactions between rock and water, as well as the first definitive traces of an ancient shoreline. These are compelling indicators that habitable, surface water conditions persisted in the crater (home to a large lake around 3.5 billion years ago) further back in time than previously thought. "Shorelines are habitable environments on Earth, and the carbonate minerals that form here can naturally seal in and preserve information about the ancient environment," said lead author Alex Jones, a Ph.D. researcher in the Department of Earth Science and Engineering (ESE) at Imperial. The findings have been published in the Journal of Geophysical Research: Planets.


    Read more of this story at Slashdot.


  • Amazon Inadvertently Announces Cloud Unit Layoffs In Email To Employees
    Amazon appears to have prematurely acknowledged layoffs inside AWS after an internal email referencing "organizational changes" and "impacted colleagues" was mistakenly sent to cloud employees. CNBC reports: "Changes like this are hard on everyone," Colleen Aubrey, senior vice president of applied AI solutions at Amazon Web Services, wrote in an email viewed by CNBC. "These decisions are difficult and are made thoughtfully as we position our organization and AWS for future success." The note also references a post from Amazon's HR boss Beth Galetti and said the company notified "impacted colleagues in our organization." The subject of the email mentions "Project Dawn," and the email says it was "canceled," possibly indicating it was recalled by the sender after the fact. It's unclear what Project Dawn refers to. The job cuts come after Amazon announced in October that it would lay off 14,000 corporate employees. At the time, the company indicated the cuts would continue in 2026 as it found "additional places we can remove layers." Amazon CEO Andy Jassy said the layoffs were meant to reduce management layers and bureaucracy inside the company. He also predicted last June that efficiency gains from AI would shrink Amazon's corporate staff in the coming years.


    Read more of this story at Slashdot.


  • US Government Lost More Than 10,000 STEM PhDs Last Year
    An anonymous reader quotes a report from Science.org: Some 10,109 doctoral-trained experts in science and related fields left their jobs last year as President Donald Trump dramatically shrank the overall federal workforce. That exodus was only 3% of the 335,192 federal workers who exited last year but represents 14% of the total number of Ph.D.s in science, technology, engineering, and math (STEM) or health fields employed at the end of 2024 as then-President Joe Biden prepared to leave office. The numbers come from employment data posted earlier this month by the White House Office of Personnel Management (OPM). At 14 research agencies Science examined in detail, departures outnumbered new hires last year by a ratio of 11 to one, resulting in a net loss of 4224 STEM Ph.D.s. The graphs that follow show the impact is particularly striking at such scientist-rich agencies as the National Science Foundation (NSF). But across the government, these departing Ph.D.s took with them a wealth of subject matter expertise and knowledge about how the agencies operate. [...] Science's analysis found that reductions in force, or RIFs, accounted for relatively few departures in 2025. Only at the Centers for Disease Control and Prevention, where 16% of the 519 STEM Ph.D.s who left last year got pink RIF slips, did the percentage exceed 6%, and some agencies reported no STEM Ph.D. RIFs in 2025. At most agencies, the most common reasons for departures were retirements and quitting. Although OPM classifies many of these as voluntary, outside forces including the fear of being fired, the lure of buyout offers, or a profound disagreement with Trump policies, likely influenced many decisions to leave. Many Ph.D.s departed because their position was terminated.


    Read more of this story at Slashdot.


  • Apple Updates iOS 12 For the First Time Since 2023
    Apple quietly released its first update to iOS 12 since 2023 to keep iMessage, FaceTime, and device activation working on older hardware through January 2027. The update applies to legacy devices like the iPhone 5S, iPhone 6/6 Plus, and 2013-era iPads. Macworld reports: The update appears to be related to a specific issue. According to Apple's "About iOS 12 Updates" page, iOS 12.5.78 "extends the certificate required by features such as iMessage, FaceTime, and device activation to continue working after January 2027." Meanwhile, the iOS 16 update says it "provides important bug fixes and is recommended for all users." When iOS 13 arrived, it dropped compatibility for the iPhone 5S, iPhone 6, and iPhone 6 Plus, as well as the 2013 iPad Air and iPad Mini 3, so users of those phones should specifically take note. To update to the latest version, head over to the Settings app, then General and Software Update, and follow the instructions. Further reading: Apple Launches AirTag 2 With Improved Range, Louder Speaker


    Read more of this story at Slashdot.


  • Scientists Launch AI DinoTracker App That Identifies Dinosaur Footprints
    Scientists have released DinoTracker, a free AI-powered app that identifies dinosaur footprints by analyzing shape patterns rather than relying on potentially flawed historical labels. "When we find a dinosaur footprint, we try to do the Cinderella thing and find the foot that matches the slipper," said Prof Steve Brusatte, a co-author of the work. "But it's not so simple, because the shape of a dinosaur footprint depends not only on the shape of the dinosaur's foot but also the type of sand or mud it was walking through, and the motion of its foot." The Guardian reports: [...] Brusatte, [Dr Gregor Hartmann, the first author of the new research from Helmholtz-Zentrum in Germany] and colleagues fed their AI system with 2,000 unlabelled footprint silhouettes. The system then determined how similar or different the imprints were from each other by analysing a range of features it identified as meaningful. The researchers discovered these eight features reflected variations in the imprints' shapes, such as the spread of the toes, amount of ground contact and heel position. The team have turned the system into a free app called DinoTracker that allows users to upload the silhouette of a footprint, explore the seven other footprints most similar to it and manipulate the footprint to see how varying the eight features can affect which other footprints are deemed most similar. Hartmann said that at present experts had to double check if factors such as the material the footprints were made in, and their age, matched the scientific hypothesis, but the system clustered prints with those expected from classifications made by human experts about 90% of the time. The findings have been published in the journal PNAS.


    Read more of this story at Slashdot.


  • SoundCloud Data Breach Impacts 29.8 Million Accounts
    A data breach at SoundCloud exposed information tied to 29.8 million user accounts, according to Have I Been Pwned. While SoundCloud says no passwords or financial data were accessed, attackers mapped email addresses to public profile data and later attempted extortion. BleepingComputer reports: The company confirmed the breach on December 15, following widespread reports from users who were unable to access SoundCloud and saw 403 "Forbidden" errors when connecting via VPN. SoundCloud told BleepingComputer at the time that it had activated its incident response procedures after detecting unauthorized activity involving an ancillary service dashboard. "We understand that a purported threat actor group accessed certain limited data that we hold," SoundCloud said. "We have completed an investigation into the data that was impacted, and no sensitive data (such as financial or password data) has been accessed. The data involved consisted only of email addresses and information already visible on public SoundCloud profiles." While SoundCloud didn't provide further details regarding the incident, BleepingComputer learned that the breach affected 20% of all SoundCloud users, roughly 28 million accounts based on publicly reported user figures (SoundCloud later published a security notice confirming the information provided by BleepingComputer's sources). After the breach, BleepingComputer also learned that the ShinyHunters extortion gang was responsible for the attack, with sources saying that the threat group was also attempting to extort SoundCloud. This was confirmed by SoundCloud in a January 15 update, which said the threat actors had "made demands and deployed email flooding tactics to harass users, employees, and partners."


    Read more of this story at Slashdot.


  • Supreme Court To Decide How 1988 Videotape Privacy Law Applies To Online Video
    An anonymous reader quotes a report from Ars Technica: The Supreme Court is taking up a case on whether Paramount violated the 1988 Video Privacy Protection Act (VPPA) by disclosing a user's viewing history to Facebook. The case, Michael Salazar v. Paramount Global, hinges on the law's definition of the word "consumer." Salazar filed a class action against Paramount in 2022, alleging that it "violated the VPPA by disclosing his personally identifiable information to Facebook without consent," Salazar's petition to the Supreme Court said. Salazar had signed up for an online newsletter through 247Sports.com, a site owned by Paramount, and had to provide his email address in the process. Salazar then used 247Sports.com to view videos while logged in to his Facebook account. "As a result, Paramount disclosed his personally identifiable information -- including his Facebook ID and which videos he watched—to Facebook," the petition (PDF) said. "The disclosures occurred automatically because of the Facebook Pixel Paramount installed on its website. Facebook and Paramount then used this information to create and display targeted advertising, which increased their revenues." The 1988 law (PDF) defines consumer as "any renter, purchaser, or subscriber of goods or services from a video tape service provider." The phrase "video tape service provider" is defined to include providers of "prerecorded video cassette tapes or similar audio visual materials," and thus arguably applies to more than just sellers of tapes. The legal question for the Supreme Court "is whether the phrase 'goods or services from a video tape service provider,' as used in the VPPA's definition of 'consumer,' refers to all of a video tape service provider's goods or services or only to its audiovisual goods or services," Salazar's petition said. The Supreme Court granted his petition (PDF) to hear the case in a list of orders released yesterday. [...] SCOTUSblog says that "the case will likely be scheduled for oral argument in the court's 2026-27 term," which begins in October 2026.


    Read more of this story at Slashdot.


  • OpenAI Releases Prism, a Claude Code-Like App For Scientific Research
    OpenAI has launched Prism, a free scientific research app that aims to do for scientific writing what coding agents did for programming. Engadget reports: Prism builds on Crixet, a cloud-based LaTeX platform the company is announcing it acquired today. For the uninitiated, LaTeX is a typesetting system for formatting scientific documents and journals. Nearly the entire scientific community relies on LaTeX, but it can make some tasks, such as drawing diagrams through TikZ commands, time-consuming to do. Beyond that, LaTeX is just one of the software tools a scientist might turn to when preparing to publish their research. That's where Prism comes into the picture. Like Crixet before it, the app offers robust LaTeX editing and a built-in AI assistant. Where previously it was Crixet's own Chirp agent, now it's GPT-5.2 Thinking. OpenAI's model can help with more than just formatting journals -- in a press demo, an OpenAI employee used it to find and incorporate scientific literature that was relevant to the paper they were working on, with GPT-5.2 automating the process of writing the bibliography. [...] Later in the same demo, the OpenAI employee used Prism to generate a lesson plan for a graduate course on general relativity, as well as a set of problems for students to solve. OpenAI envisions these features helping scientists and professors spend less time on the more tedious tasks in their professions.


    Read more of this story at Slashdot.


The Register




  • ATM flashes a port or two for the enterprising hacker
    Connection secured. Not so sure about the installation
    Bork!Bork!Bork! Behold an ATM crying out for a man-in-the-middle attack. An obsolete Microsoft operating system cannot be blamed here. This is all about the hardware.…


  • Paranoid WhatsApp users rejoice: Encrypted app gets one-click privacy toggle
    Meta also replaces a legacy C++ media-handling security library with Rust
    Users of Meta's WhatsApp messenger looking to simplify the process of protecting themselves are in luck, as the company is rolling out a new feature that combines multiple security settings under a single, toggleable option. …


  • ICE knocks on ad tech’s data door to see what it knows about you
    Agency looks to understand the extent of identifying information available to its masked agents
    It's not enough to have its agents in streets and schools; ICE now wants to see what data online ads already collect about you. The US Immigration and Customs Enforcement last week issued a Request for Information (RFI) asking data and ad tech brokers how they could help in its mission.…


  • Nudify app proliferation shows naked ambition of Apple and Google
    Researchers with the Tech Transparency Project found all sorts of apps that let users create fake non-consensual nudes of real people
    The mobile app emperors have no clothes. Apple and Google have made millions of dollars from AI apps that let users undress people even as both companies claim to ban such software from their stores, according to a new study.…



  • Penguin in your pocket: Nexphone dual boots into Linux, Windows 11
    An expandable tablet, and a phone that reboots into desktop Windows
    For most mobile devices, the OS is either Android or iOS, but a pair of new systems promises a host of additional OS options you can dual boot into. The Android phone can run Linux and boot into Windows 11 where it functions as a PC while the tablet runs a smorgasbord of Google-free OSes.…


  • Clawdbot sheds skin to become Moltbot, can't slough off security issues
    The massively hyped agentic personal assistant has security experts wondering why anyone would install it
    Security concerns for the new agentic AI tool formerly known as Clawdbot remain, despite a rebrand prompted by trademark concerns raised by Anthropic. Would you be comfortable handing the keys to your identity kingdom over to a bot, one that might be exposed to the open internet?…



Linux.com











Phoronix




  • Apple M3 Progress On Linux: Asahi Can Boot To KDE Desktop - But No GPU Acceleration Yet
    While the Asahi Linux project has made good progress on bringing Linux to Apple Silicon hardware, much of the success and in turn upstreaming to the Linux kernel has been around the aging M1 and M2 Macs. Apple M3 and newer has been a struggle but progress is being made. One of the Asahi Linux developers shared the ability now to boot to the KDE Plasma desktop with the experimental Asahi Linux code on an M3 MacBook but without any GPU acceleration yet...


  • New Intel Linux Driver Workaround Halves Initial Game Load Time For MHW
    In addition to Mesa 26.1 today seeing Vulkan present timing support finally merged to help reduce game stuttering and separately another long-in-development Mesa merge request for DG2 / Meteor Lake to improve performance as much as 260% in some scenarios, there is another merge today to Mesa Git for enhancing Intel graphics on Linux. For Intel Linux gamers the newest Mesa code adds a new DriConf workaround that is capable of halving the initial game load time for at least one problematic game title...




  • KDE Plasma 6.6 Beta 2 Released For Testing
    Following the KDE Plasma 6.6 Beta from two weeks ago, a second beta of the upcoming Plasma 6.6 desktop is now available for testing. KDE Plasma 6.6 stable remains on-track for a mid-February release...


  • Google Axion CPU Performance With The New Google Cloud N4A Instances
    Back in 2024 Google rolled out their Axion in-house ARM processors with the Google Cloud C4A instance type. Today they are expanding their Axion offerings in Google Cloud with the N4A instances now out of preview. The Google Cloud N4A instances are designed for scale-out web servers and microservices, containerized applications, back-end application services, databases, data analytics, and cost-effective development/staging/testing environments.


  • Systemd Founder Lennart Poettering Announces Amutable Company
    Systemd founder and lead developer Lennart Poettering announced the creation of a new company called Amutable. The Amutable company being led by Chris Kühl (CEO), Christian Brauner (CTO) and Lennart Poettering (Chief Engineer) will be focused on delivering determinism and verifiable integrity to Linux systems...



Engadget"Engadget is a web magazine with obsessive daily coverage of everything new in gadgets and consumer electronics"

  • The best robot vacuums on a budget for 2026
    If vacuuming is your least favorite chore, employing a robot vacuum can save you time and stress while also making sure your home stays clean. While once most robo-vacs landed on the higher end of the price spectrum, that’s not the case anymore. Sure, you could pick up a $1,000 cleaning behemoth with mopping features, but it would be incorrect to assume that you need to spend that much money to get a good machine.

    Now, you can get an autonomous dirt-sucker with serious cleaning chops for $500 — sometimes even $300 or less. But you get what you pay for in this space; don’t expect affordable robot vacuum cleaners to have all of the bells and whistles that premium machines do, like self-emptying capabilities or advanced dirt detection. After testing dozens ofrobot vacuums at various price points, I’ve narrowed down our top picks for the best budget robot vacuums you can buy right now.
    Best budget robot vacuums for 2026





    Are robot vacuums worth it?
    Since I9ve tested dozens of robot vacuums, I9m often asked if these gadgets are "worth it" and I9d say the answer is yes. The biggest thing they offer is convenience: just turn on a robot vacuum and walk away. The machine will take care of the rest. If vacuuming is one of your least favorite chores, or you just want to spend less time keeping your home tidy, semi-autonomous robotic vacuum is a great investment. Many models, albeit more expensive ones, even come with features like a self-empty station to further reduce maintenance.

    There are plenty of other good things about them, but before we dive in let’s consider the biggest trade-offs: less power, less capacity and less flexibility. Those first two go hand in hand; robot vacuum cleaners are much smaller than upright vacuums, which leads to less powerful suction. They also hold less dirt because their built-in bins are a fraction of the size of a standard vacuum canister or bag. Fortunately, some models include features like an auto-empty station, which helps with dirt capacity, especially in homes with pet hair.

    When it comes to flexibility, robot vacuums do things differently than standard ones. You can control some with your smartphone, set cleaning schedules and more, but robo-vacs are primarily tasked with cleaning floors. On the flip side, their upright counterparts can come with various attachments that let you clean couches, stairs, light fixtures and other hard-to-reach places.
    What to look for in a budget robot vacuum
    When looking for the best cheap robot vacuum, one of the first things you should consider is the types of floors you have in your home. Do you have mostly carpet, tile, laminate, hardwood? Carpets demand vacuums with strong suction power that can pick up debris pushed down into nooks and crannies. Unfortunately, there isn’t a universal metric by which suction is measured. Some companies provide Pascal (Pa) levels and generally the higher the Pa, the stronger. But other companies don’t rely on Pa levels and simply say their bots have X-times more suction power than other robot vacuums.

    So how can you ensure you’re getting the best cheap robot vacuum to clean your floor type? Read the product description. Look for details about its ability to clean hard floors and carpets, and see if it has a “max” mode you can use to increase suction. If you are given a Pa measurement, look for around 2000Pa if you have mostly carpeted floors. Pay attention to the brush roll mechanism as well, especially if you9re dealing with dog hair or other stubborn debris that can cause tangles. Many budget models use bristle brushes, while others offer tangle-free designs to minimize maintenance.

    You may find some budget robot vacuums also offer vacuum/mop combo capabilities. These bots feature a water tank, which means they can offer mopping functionality, enhancing debris pickup, and resulting in shiny floors. However, these are less common when you’re shopping in the lower price range.

    Size is also important for two reasons: clearance and dirt storage. Check the specs for the robot’s height to see if it can get underneath the furniture you have in your home. Most robo-vacs won’t be able to clean under a couch (unless it’s a very tall, very strange couch), but some can get under entryway tables, nightstands and the like. As for dirt storage, look out for the milliliter capacity of the robot’s dustbin — the bigger the capacity, the more dirt the vacuum cleaner can collect before you have to empty it.

    You should also double check the Wi-Fi capabilities of the robo-vac you’re eyeing. While you may think that’s a given on all smart home devices, it’s not. Some of the most affordable models don’t have the option to connect to your home Wi-Fi network. If you choose a robot vac like this, you won’t be able to direct it with a smartphone app or with voice controls. Another feature that’s typically reserved for Wi-Fi-connected robots is scheduling because most of them use a mobile app to set cleaning schedules.

    But Wi-Fi-incapable vacuums usually come with remote controls that have all the basic functions that companion mobile apps do, including start, stop and return to dock. And if you’re concerned about the possibility of hacking, a robot vac with no access to your Wi-Fi network is the best option.

    Obstacle detection and cliff sensors are other key features to look out for. The former helps the robot vacuum navigate around furniture while it cleans, rather than mindlessly pushing its way into it. Many also offer no-go zones, letting you block off areas you don’t want the robot to enter. Meanwhile, cliff sensors prevent robot vacuums from tumbling down the stairs, making them the best vacuum for multi-level homes.
    How we test robot vacuums
    When we consider which robot vacuums to test, we look at each machine’s specs and feature list, as well as online reviews to get a general idea of its capabilities. With each robot vacuum we review, we set it up as per the instructions and use it for as long as possible — at minimum, we’ll use each for one week, running cleaning cycles daily. We make sure to try out any physical buttons the machine has on it, and any app-power features like scheduling, robot mapping and more.

    Since we test robot vacuums in our own homes, there are obstacles already in the machine’s way like tables, chairs and other furniture — this helps us understand how capable the machine is at avoiding obstacles, and we’ll intentionally throw smaller items in their way like shoes, pet toys and more. With robot vacuums that include self-emptying bases, we assess how loud the machine is while emptying contents into the base and roughly how long it takes for us to fill up the bag (or bagless) base with debris.
    Robot vacuum maintenance tips
    First and foremost, always empty your robot vacuum’s dustbin after every cleaning job, or use a self-empty station if the model supports it. Simply detach and empty the dustbin as soon as the robot is done cleaning, and then reattach it so it9s ready to go for the next time. It’s also a good idea to take a dry cloth to the inside of the dustbin every once in a while to remove any small dust and dirt particles clinging to its insides.

    In addition, you’ll want to regularly examine the machine’s brushes to see if any human or pet hair has wrapped around them, or if any large debris is preventing them from working properly. Some brushes are better than others at not succumbing to tangled hair, but it’s a good idea to check your robot’s brushes regardless — both their main brush and any smaller, side brushes or corner brushes they have. These parts are often easy to pop off of the machine (because they do require replacements eventually) so we recommend removing each brush entirely, getting rid of any tangles or other debris attached to them and reinstalling them afterwards. If you have a robot vacuum with mopping capabilities, you’ll need to wash the bots’ mop pads too, to avoid any unpleasant smells or tracking mess around your home. Similarly, if your robot vacuum has a water tank, it’s worth washing this out regularly to keep it clean.

    Robot vacuums also have filters that need replacing every couple of months. Check your machine’s user manual or the manufacturer’s website to see how long they recommend going in between filter replacements. Most of the time, these filters cannot be washed, so you will need to buy new ones either directly from the manufacturer or from other retailers like Amazon or Walmart.
    Budget robot vacuum FAQs Are budget robot vacuums good for pet hair?
    Yes, budget robot vacuums can be good for pet hair. Just keep in mind they generally tend to have lower suction power and smaller dustbins than more expensive (and larger) robot vacuums. If pet hair is your biggest concern, we recommend getting as expensive of a robot vacuum as your budget allows, or consider investing in a cordless vacuum since those tend to be more powerful overall.
    How long do budget robot vacuums last per charge?
    Budget robot vacuums typically last 40-60 minutes per charge, and the best ones will automatically return to their charging dock when they need more power.
    Do budget robot vacuums work on carpets and hardwood floors?
    Yes, budget robot vacuums work on both carpets and hardwood floors.
    Which budget robot vacuums have mapping features?
    Home mapping features are typically exclusive to more expensive robot vacuums. Check the product description of any robot vacuum you9re thinking of buying and look for "smart mapping" or "smart home mapping" in the feature list if you want a device that supports it.

    Check out more from our spring cleaning guide.
    This article originally appeared on Engadget at https://www.engadget.com/home/smart-home/best-budget-robot-vacuums-133030847.html?src=rss


  • The best E Ink tablets for 2026
    E Ink tablets have always been intriguing to me because I’m a longtime lover of pen and paper. I’ve had probably hundreds of notebooks over the years, serving as repositories for my story ideas, to-do lists, meeting notes and everything in between. However, I turned away from physical notebooks at a certain point because it was just easier to store everything digitally so I always had my most important information at my fingertips.

    E Ink tablets seem to provide the best of both worlds: the tactile satisfaction of regular notebooks with many of the conveniences found in digital tools, plus easy-on-the-eyes E Ink screens. These devices have come a long way in the past few years, and we’re just starting to see more color E Ink tablets become more widely available. I tested out a number of different E Ink tablets to see how well they work, how convenient they really are and which are the best tablets using E Ink screens available today.
    Best E Ink tablets for 2026















    Are E Ink tablets worth it?
    An E Ink tablet will be a worthwhile purchase to a very select group of people. If you prefer the look and feel of an e paper display to LCD panels found on traditional tablets, it makes a lot of sense. They’re also good options for those who want a more paper-like writing experience (although you can get that kind of functionality on a regular tablet with the right screen protector) or a more distraction-free device overall.

    The final note is key here. Many E Ink tablets don’t run on the same operating systems as regular tablets, so you’re automatically going to be limited in what you can do. And even with those that do allow you to download traditional apps like Chrome, Instagram and Facebook, E Ink tablets are not designed to give you the best casual-browsing experience. This is mostly due to the nature of E Ink displays, which have noticeable refreshes, a lack of vibrant colors and lower picture quality than the panels you’ll find on even the cheapest iPad.

    Arguably the biggest reason why you wouldn’t want to go with an iPad (all models of which support stylus input, a plethora of reading apps, etc) is because it’s much easier to get distracted by email, social media and other Internet-related temptations.
    What to look for in an E Ink tablet Writing and latency
    Arguably the most important thing to consider when looking for an E Ink tablet is the writing experience. How good it is will depend a lot on the display’s refresh rate (does it refresh after every time you put pen to “paper,” or at a different regular interval) and the stylus’ latency. Most of the tablets I’ve tested have little to no latency, but some are certainly better than others. Finally, you should double check before buying that your preferred E Ink tablet comes with a stylus, or if you need to purchase one separately.
    Reading
    How much will you be reading books, documents and other things on this tablet? E Ink tablets come in many sizes, but most of them tend to be larger than your standard e-reader because it makes writing much easier. Having a larger display isn’t a bad thing, but it might make holding it for long periods slightly more uncomfortable. (Most e-readers are roughly the size of a paperback book, giving you a similar feeling to analog reading).

    The supported file types for e-books can also make a big difference. It’s hard to make a blanket statement here because this varies so much among E Ink tablets. The TL;DR is that you’ll have a much better reading experience if you go with one made by a company that already has a history in e-book sales (i.e. Amazon or Kobo). All of the titles you bought via theKindle or Kobo store should automatically be available to you on your Kindle or Kobo E Ink tablet.

    Also with Kindle titles, specifically, since they are protected by DRM, it’s not necessarily the best idea to try tobring those titles over to a third-party device. Unless the tablet runs an operating system like Android that supports downloads for apps like Kindle and Kobo, you’ll be limited to supported file types, like ePUB, PDF, MOBI, JPEG, PNG and others.
    Search functionality
    Most E Ink tablets have some on-device search features, but they can vary widely between models. You’ll want to consider how important it is to you to be able to search through all your handwritten notes and markups. I noticed in my testing that Amazon’s and Kobo’s E Ink tablets made it easy to refer back to notes made in books and files because they automatically save to the specific pages on which you took notes, made highlights and more.

    Searching is less standardized on E Ink tablets that have different supported file types, but their features can be quite powerful in their own right. For example, a few devices I tested supported text search in handwritten notes along with handwriting recognition, the latter of which allows you to translate your scribbles into typed text.
    Sharing and connectivity
    While we established that E Ink tablets can be great distraction-free devices, most manufacturers understand that your notes and doodles aren’t created in a vacuum. You may want to access them elsewhere, and that requires some form of connectivity. All of the E Ink tablets I tried have Wi-Fi support, and some support cloud syncing, companion mobile apps and the ability to export notes via email so you can access them elsewhere.

    None of them, however, integrate directly with a digital note taking system like Evernote or OneNote, so these devices will always be somewhat supplementary if you use apps like that, too. I’d argue that, if you already lean heavily on apps like OneNote, a standard tablet with a stylus and screen protector might be the best way to go. Ultimately, you should think about what you will want to do with the documents you’ll interact with on your E Ink tablet after the tablet portion is done.
    Price
    E Ink tablets aren’t known for being cheap. They generally fall into the $300-$800 price range, which is what you can expect to pay for a solid regular tablet, too. A key factor in price is size: cheaper devices with E Ink displays are likely to have smaller screens, and stylus support isn’t as much of a given. Also, those types of devices are generally considered e-readers because of their size and may not be the best for note-taking, doodling and the like.

    E Ink tablets have gone up in price recently. Supernote and Onyx Boox increased prices, as did reMarkable. The former said it was due to "increased costs,” and a reMarkable representative confirmed this to Engadget and provided the following statement: "We regularly review our pricing based on market conditions and operational costs. We9ve communicated an upcoming adjustment for the US market effective in May to provide transparency to our customers. Multiple factors influence our pricing decisions, including supply chain dynamics and overall operational costs in specific markets.”

    As a result, the reMarkable Paper Pro jumped from $579 to $629 (that9s for the bundle with the standard Marker and no Folio). This isn9t great, considering the Paper Pro was already on the expensive side of the spectrum for E Ink tablets. It9s also worth noting that Supernote and Onyx Boox have raised prices in the past few months as well.
    Other E Ink tablets we9ve tested Onyx Boox Tab X C
    The Boox Tab X C is a color-screened version of the Tab X, the company’s all-purpose e-paper Android tablet. The Tab X C has a lovely 13.3-inch Kaleido 3 E Ink color display, an octa-core processor, 6GB of RAM and it runs on Android 13, making it one of the most powerful tablets in Boox’s lineup. I’ve used the Tab X in the past and this color version runs similarly, if not better, and at 5.3mm thick, it’s impressively svelte even when you pair it with its folio keyboard case. As someone who loves legal-pad sized things to write on, I also like how the Tab X C is most akin to A4-size paper. But at $820 for the bundle with the standard case (or a whopping $970 for the tablet and its keyboard case), it’s really only best for those who are ready to go all-in on a premium E Ink tablet.
    Lenovo Smart Paper
    Lenovo made a solid E Ink tablet in the Smart Paper, but it9s too pricey and too married to the company9s companion cloud service to warrant a spot on our top picks list. The hardware is great, but the software isn9t as flexible as those of competitors like the reMarkable 2. It has good Google Drive integration, but you must pair it with Lenovo9s cloud service to really get the most use out of it — and in the UK, the service costs £9 per month for three months, which is quite expensive.
    Onyx Boox Tab Ultra
    The Boox Tab Ultra has a lot of the same features we like in the Note Air 2 Plus, but it’s designed to be a true, all-purpose tablet with an E Ink screen. Running Android 11 and compatible with a magnetic keyboard case, you can use it like a standard 2-in-1 laptop, albeit a low-powered one. You can browse the web, check email and even watch YouTube videos on this thing — but that doesn’t mean you should. A standard 2-in-1 laptop with a more responsive screen and better overall performance would be a better fit for most people who even have the slightest desire to have an all-in-one device. Like the rest of Onyx’s devices, the Tab Ultra is specifically for those who put reading and eye comfort above all else.
    This article originally appeared on Engadget at https://www.engadget.com/mobile/tablets/best-e-ink-tablet-130037939.html?src=rss


  • Mark Zuckerberg was initially opposed to parental controls for AI chatbots, according to legal filing
    Meta has faced some serious questions about how it allows its underage users to interact with AI-powered chatbots. Most recently, internal communications obtained by the New Mexico Attorney General9s Office revealed that although Meta CEO Mark Zuckerberg was opposed to the chatbots having "explicit" conversations with minors, he also rejected the idea of placing parental controls on the feature.

    Reuters reported that in an exchange between two unnamed Meta employees, one wrote that we "pushed hard for parental controls to turn GenAI off – but GenAI leadership pushed back stating Mark decision.” In its statement to the publication, Meta accused the New Mexico Attorney General of "cherry picking documents to paint a flawed and inaccurate picture." New Mexico is suing Meta on charges that the company “failed to stem the tide of damaging sexual material and sexual propositions delivered to children;” the case is scheduled to go to trial in February.

    Despite only being available for a brief time, Meta9s chatbots have already accumulated quite a history of behavior that veers into offensive if not outright illegal. In April 2025, The Wall Street Journal released an investigation that found Meta9s chatbots could engage in fantasy sex conversations with minors, or could be directed to mimic a minor and engage in sexual conversation. The report claimed that Zuckerberg had wanted looser guards implemented around Meta9s chatbots, but a spokesperson denied that the company had overlooked protections for children and teens. 

    Internal review documents revealed in August 2025 detailed several hypothetical situations of what chatbot behaviors would be permitted, and the lines between sensual and sexual seemed pretty hazy. The document also permitted the chatbots to argue racist concepts. At the time, a representative told Engadget that the offending passages were hypotheticals rather than actual policy, which doesn9t really seem like much of an improvement, and that they were removed from the document. 

    Despite the multiple instances of questionable use of the chatbots, Meta only decided to suspend teen accounts9 access to them last week. The company said it is temporarily removing access while it develops the parental controls that Zuckerberg had allegedly rejected using.

    "Parents have long been able to see if their teens have been chatting with AIs on Instagram, and in October we announced our plans to go further, building new tools to give parents more control over their teens’ experiences with AI characters," a representative from Meta said. "Last week we once again reinforced our commitment to delivering on our promise of parental controls for AI, pausing teen access to AI characters completely until the updated version is ready."

    New Mexico filed this lawsuit against Meta in December 2023 on claims that the company9s platforms failed to protect minors from harassment by adults. Internal documents revealed early on in that complaint revealed that 100,000 child users were harassed daily on Meta9s services.

    Update, January 27, 2025, 6:52PM ET: Added statement from Meta spokesperson.

    Update, January 27, 2025, 6:15PM ET: Corrected misstated timeline of the New Mexico lawsuit, which was filed in December 2023, not December 2024.
    This article originally appeared on Engadget at https://www.engadget.com/social-media/mark-zuckerberg-was-initially-opposed-to-parental-controls-for-ai-chatbots-according-to-legal-filing-230110214.html?src=rss


  • Meta blocks links to ICE List, a Wiki that names agents
    Meta has started blocking links to ICE List, a website that compiles information about incidents involving Immigrations and Customs Enforcement (ICE) and Border Patrol agents, and lists thousands of their employees9 names. It seems that the latter detail is what caused Meta to take action in a move that was first reported by Wired. 

    ICE List is a crowdsourced Wiki that describes itself as "an independently maintained public documentation project focused on immigration-enforcement activity" in the US. "Its purpose is to record, organize, and preserve verifiable information about enforcement actions, agents, facilities, vehicles, and related incidents that would otherwise remain fragmented, difficult to access, or undocumented," its website states.

    Along with notable incidents, the website also lists the names of individual agents associated with ICE, CBP and other DHS agencies. According to tracked ICE sightings in Chicago after pressure from the Justice Department.

    Have a tip for Karissa? You can reach her by email, on X, Bluesky, Threads, or send a message to @karissabe.51 to chat confidentially on Signal.


    This article originally appeared on Engadget at https://www.engadget.com/social-media/meta-blocks-links-to-ice-list-a-wiki-that-names-agents-231410653.html?src=rss


  • Adobe Photoshop upgrades its Firefly-powered generative-AI editing tools
    Adobe Photoshop introduced some new features that are rolling out for creators today. As you9d expect from any service operator in this day and age, there9s some AI involved. Adobe has improved the tools for Generative Fill, Generative Expand and Remove that are powered by its Firefly generative AI platform. Using these tools for image editing should now produce results in 2K resolution with fewer artifacts and increased detail all while delivering better matches for the provided prompts. The Reference Image option for Generative Fill has also been upgraded to deliver "geometry-aware results that better match the scene." 

     One of the other new updates is a beta version of Dynamic Text, which should allow simpler transformation of a text layer into a curved shape. Photoshop has also added new adjustment layers: Clarity, Dehaze and Grain. These allow non-destructive image editing on layers.
    This article originally appeared on Engadget at https://www.engadget.com/apps/adobe-photoshop-upgrades-its-firefly-powered-generative-ai-editing-tools-213737915.html?src=rss


  • Astronomers discover over 800 cosmic anomalies using a new AI tool
    Here9s a use of AI that appears to do more good than harm. A pair of astronomers at the European Space Agency (ESA) developed a neural network that searches through space images for anomalies. The results were far beyond what human experts could have done. In two and a half days, it sifted through nearly 100 million image cutouts, discovering 1,400 anomalous objects.

    The creators of the AI model, David O9Ryan and Pablo Gómez, call it AnomalyMatch. The pair trained it on (and applied it to) the Hubble Legacy Archive, which houses tens of thousands of datasets from Hubble9s 35-year history. "While trained scientists excel at spotting cosmic anomalies, there9s simply too much Hubble data for experts to sort through at the necessary level of fine detail by hand," the ESA wrote in its press release.

    After less than three days of scanning, AnomalyMatch returned a list of likely anomalies. It still requires human eyes at the end: Gómez and O9Ryan reviewed the candidates to confirm which were truly abnormal. Among the 1,400 anomalous objects the pair confirmed, more than 800 were previously undocumented.

    Most of the results showed galaxies merging or interacting, which can lead to odd shapes or long tails of stars and gas. Others were gravitational lenses. (That9s where the gravity of a foreground galaxy bends spacetime so that the light from a background galaxy is warped into a circle or arc.) Other discoveries included planet-forming disks viewed edge-on, galaxies with huge clumps of stars and jellyfish galaxies. Adding a bit of mystery, there were even "several dozen objects that defied classification altogether."

    "This is a fantastic use of AI to maximize the scientific output of the Hubble archive," Gómez is quoted as saying in the ESA9s announcement. "Finding so many anomalous objects in Hubble data, where you might expect many to have already been found, is a great result. It also shows how useful this tool will be for other large datasets."
    This article originally appeared on Engadget at https://www.engadget.com/ai/astronomers-discover-over-800-cosmic-anomalies-using-a-new-ai-tool-205135155.html?src=rss


  • Sennheiser debuts new models of wired headphones and earbuds
    Wireless audio has become the industry standard, but there are still options out there for people who prefer a wired connection. Two new choices joining the market come from Sennheiser, which has released the CX 80U wired earbuds and HD 400U wired over-ear headphones. These new takes on the company9s previous models for wired listening have replaced the 3.5mm audio jack connector with a USB-C cable. Both sets support 24-bit, 96 kHz digital audio playback. They9re compatible with a broad array of devices, including iOS, iPadOS, Android, ChromeOS, MacOS, Windows and SteamOS. 

    Both of these items are priced at an entry level for a brand that might charge up to $500 for its higher-end headphones. The CX 80U earbuds cost $40 and the HD 400U headphones retail for $100. Both products are available starting today.
    This article originally appeared on Engadget at https://www.engadget.com/audio/headphones/sennheiser-debuts-new-models-of-wired-headphones-and-earbuds-201245058.html?src=rss


  • Pornhub will become unavailable for many UK users as of February 2
    Pornhub will stop offering full access to new users in the UK on February 2, its parent company Aylo said Tuesday, citing the nation9s Online Safety Act and its age-verification requirements. The company said users who already verified their ages before the cutoff will still be able to access the adult site through existing accounts.

    The move follows the Online Safety Act’s Protection of Children Codes, which took effect last summer and require adult sites to use "highly effective" methods of age verification. Aylo claims the system is backfiring and shifting both adults and minors to noncompliant porn sites that don’t verify age or moderate content according to Politico. Aylo9s lawyers argued that only device-based age verification methods sufficiently protect user data.

    Alexzandra Kekesi, VP of Brand and Community at Aylo, said "anyone who has not gone through that process prior to February 2 will no longer be able to access [the sites] and they9re going to be met with a wall," according to 404 Media. The adult site was similarly made unavailable in various US states after the passage of age-verification laws that Pornhub claimed put users9 privacy at risk. "These people did not stop looking for porn," Aylo said at the time. "They just migrated to darker corners of the internet that don’t ask users to verify age, that don’t follow the law, that don’t take user safety seriously, and that often don’t even moderate content."

    Users who wish to get around these sorts of bans typically use VPNs to mask the origin of their internet traffic, though the UK is reportedly considering a ban on VPNs for children. The nation has also been considering a social media ban for users under 16 years of age, similar to the one enacted in Australia.
    This article originally appeared on Engadget at https://www.engadget.com/entertainment/pornhub-will-become-unavailable-for-many-uk-users-as-of-february-2-194622124.html?src=rss



  • Sonos introduces Amp Multi for complicated residential installs
    Sonos has unveiled its first new product of 2026, the Amp Multi. This amplifier is a niche option for the owners of very large or complicated spaces, and it9s being billed as professional grade option for residential audio installations. The Amp Multi has eight 125W outputs and four configurable zones, and each channel can support up to three Sonos Architectural speakers. In other words, that9s a lot more audio than the average home needs. Even the Sonos Amp would probably be overkill for those of you living the apartment life.

    The Amp Multi will be available "in the coming months," according to the company9s press release, and there9s no pricing information yet for the product listing on its website. But given the high-end customers this is targeting, expect the Amp Multi to cost a fair bit more than the $800 Sonos Amp.

    Sonos has mostly been keeping its proverbial head down on the product side as it continues to address fallout from a bungled app redesign in 2024 that soured customers and put the company in dire straits. First there were layoffs, then the CEO left. Sonos9 temporary chief exec, Tom Conrad, got the position permanently last summer. Once the business9 position does stabilize at last, we will hopefully be hearing more positive updates from Sonos in the future.
    This article originally appeared on Engadget at https://www.engadget.com/audio/sonos-introduces-amp-multi-for-complicated-residential-installs-191000421.html?src=rss


OSnews

  • 9front GEFS SERVICE PACK 1 released
    9front, by far the best operating system in the whole world, pushed out a new release, titled GEFS SERVICE PACK 1 . Even with only a few changes, this is still, as always, a more monumental, important, and groundbreaking release than any other operating system release in history. Everything changes, today, because exec() now supports shell-scripts as interpreter in #!, improved sam scrolling, TLS by default in ircrc, and more. Youre already running 9front, of course, but if youre one of the few holdouts still using something else, download GEFS SERVICE PACK 1 and install it.


  • Remotely unlocking an encrypted hard disk
    Your mission, should you choose to accept it, is to sneak into the earliest parts of the boot process, swap the startup config without breaking anything, and leave without a trace. Are you ready? Lets begin. ↫ Jynn Nelson Genius.


  • Microsoft gave FBI BitLocker keys to unlock encrypted data, because of course they did
    Encrypting the data stored locally on your hard drives is generally a good idea, specifically if you have use a laptop and take it with you a lot and thieves might get a hold of it. This issue becomes even more pressing if you carry sensitive data as a dissident or whistleblower and have to deal with law enforcement. Or, you know, if youre an American citizen fascist paramilitary groups like ICE doesnt like because your skin colour is too brown or whatever. Windows offers local disk encryption too, in the form of its BitLocker feature, and Microsoft suggests users store their encryption keys on Microsofts servers. However, when you do so, these keys will be stored unencrypted, and it turns out Microsoft will happily hand them over to law enforcement. “This is private data on a private computer and they made the architectural choice to hold access to that data. They absolutely should be treating it like something that belongs to the user,” said Matt Green, cryptography expert and associate professor at the Johns Hopkins University Information Security Institute. “If Apple can do it, if Google can do it, then Microsoft can do it. Microsoft is the only company thats not doing this,” he added. “Its a little weird… The lesson here is that if you have access to keys, eventually law enforcement is going to come.” ↫ Thomas Brewster Microsoft is choosing to store these keys in unencrypted fashion, and that of course means law enforcement is going to come knocking. With everything thats happening in the United States at the moment, the platitude of I have nothing to hide! has lost even more of its meaning, as people  even toddlers  are being snatched from the streets and out of their homes on a daily basis by fascist paramilitaries. Even if times were better, though, Microsoft should still refrain from storing these keys unencrypted. It is entirely possible, nay, trivial to address this shortcoming, but the odds of the company fixing this while trying to suck up to the current US regime seem small. Everybody, but especially those living under totalitarian(-esque) regimes, should be taking extra care to make sure their data isnt just encrypted, but that the keys are safe as well.


  • Firefox on Linux in 2025
    Last year brought a wealth of new features and fixes to Firefox on Linux. Besides numerous improvements and bug fixes, I want to highlight some major achievements: HDR video playback support, reworked rendering for fractionally scaled displays, and asynchronous rendering implementation. All this progress was enabled by advances in the Wayland compositor ecosystem, with new features implemented by Mutter and KWin. ↫ Martin Stransky Its amazing how the adoption of Wayland is making it so much easier for application developers to support modern features like these. Instead of having to settle for whatever roadblocks and limitations thrown up by legacy X11 cruft, the Linux desktop can now enjoy modern features like HDR, and much more easily support features like fractional scaling. The move to Wayland, as long as it may have taken, has catapulted the Linux desktop from its 90s roots right into the modern era. Its great to see Firefox implementing improvements like these for Linux users, but of course, they come with Mozillas push to make Firefox an AI! browser, something few Firefox users seem to want. Luckily, the various Firefox variants like Librewolf and Waterfox will get these same features while removing all the AI! bloat, so as long as Mozilla remains committed to Firefox for Linux  or Firefox in general  Linux users can rest safe. Sadly, Im afraid Mozillas massive pivot to AI! isnt going to work out, so I have no idea how long Mozilla will be able to afford Firefox on Linux development specifically, and Firefox development generally.


  • Microsoft announces winapp to simplify Windows application development
    Developing for Windows seems to be a bit of a nightmare, at least according to Microsoft, so theyre trying to make the lives of developers easier with a new tool called winapp. The winapp CLI is specifically tailored for cross-platform frameworks and developers working outside of Visual Studio or MSBuild. Whether you are a web developer building with Electron, a C++ veteran using CMake, or a .NET, `Rust or Dart developer building apps for Windows, the CLI can streamline the complexities of Windows development – from setting up your environment to packaging for distribution. This makes it significantly easier to access modern APIs – including Windows AI APIs, security features and shell integrations – directly from any toolchain. Windows development often involves managing multiple SDKs, creating and editing multiple manifests, generating certificates and navigating intricate packaging requirements. The goal of this project is to unify these tasks into a single CLI, letting you focus on building great apps rather than fighting with configuration. While the CLI is still in its early days, and there are many Windows development scenarios still in the works, we’re sharing this public preview now to learn from real usage, gather feedback and feature requests, and focus our investments on the areas that matter most to developers. ↫ Nikola Metulev at the Windows Blogs For instance, run the command winapp init at the root of your project, and winapp will download the proper SDKs, create manifest files, etc., all automatically. You can also generate the correct certificates, easily create MSIX packages, and more. The tool is available through winget and npm (for Electron projects), but is still in preview, with the code available on GitHub.


  • Against Markdown
    So Markdown is this Lightweight Markup Language. Everyone (relative; among programmers, writers, and other “power-users”) uses it. LLMs use it. So it’s destined to eat the world. But it doesn’t mean Markdown is good. ↫ Artyom Bologov We have these crazy fast and complex computers, but Im still supposed to style text with obscure, arbitrary symbols, like an animal? We invented WYSIWYG decades ago, and our computers should be able to figure out how to properly share styled/unstyled text without us users having to learn markup languages using arcane symbols that require weird claw grips to type. The widespread use of Markdown is not indicative of its merits; it merely underlines the utter failure of the computing industry to fix basic problems.


  • ReactOS turns 30
    ReactOS is celebrating its 30th birthday. Happy Birthday ReactOS! Today marks 30 years since the first commit to the ReactOS source tree. It’s been such a long journey that many of our contributors today, including myself, were not alive during this event. Yet our mission to deliver “your favorite Windows apps and drivers in an open-source environment you can trust” continues to bring people together. Let’s take a brief look at some of the high and low points throughout our history. ↫ Carl Bialorucki at the ReactOS website OSNews has been following ReactOS since about 2002 or so (the oldest reference I could find, but note that our 1997-2001 content isnt available online, so we may have mentioned it earlier), so you can definitely say we all grew up alongside ReactOS growth and development. All of the events the team mentions in their retrospective on 30 years of ReactOS were covered here on OSNews as well, which is wild to think about. Personally, I dont really know how to feel about the project. On the one hand, I absolutely adore that dedicated, skilled, and talented individuals dedicate their precious free time to something as ambitious as creating a Windows NT-compatible operating system, and theres no denying theyve achieved incredible feats of engineering few people in the world are capable of. ReactOS is a hobby operating system that survived the test of time where few others have  AtheOS, Syllable, SkyOS , and so many others mentioned in that oldest reference I linked to are long dead and gone  and that alone makes it a massively successful project. On the other hand, its sheer ambition is also what holds the project down. If you say youre going to offer a Windows NT-compatible operating system, you set expectations so insanely high youll never even come close to meeting them. Every time Ive seen someone try ReactOS, either in writing or on YouTube, they always seem to come away disappointed  not because ReactOS isnt impressive, but because its inevitably so far removed from its ambitious goals. And thats a real shame. If you take away that ambitious goal of being Windows NT-compatible, and just focus on what theyve already achieved as it stands now, theres a really impressive and fun alternative operating system here. I really hope the next 30 years will be kind to ReactOS.


  • Nekoware resurrected: freeware and open source repository for IRIX
    If you have any interest in SGIs IRIX or used IRIX back when it was still current, youre undoubtedly aware of Nekoware, a collection of freeware for IRIX, maintained and kept up-to-date as much as possible. After stagnating in 2015 and a few failed restarts and some infighting (apparently), the project finally relaunched somewhere last year, and a new quarterly release was pushed out. Nekoware 2025Q4 is a clean break from previous releases, and requires that users fully remove any traces of previous installations. It contains the kinds of packages these freeware/open source collections for classic UNIX tended to contain: tons of common open source libraries, command-line tools, and more, including a few emulators. Youll need IRIX 6.5.21 or newer, running on at least a MIPS R5000 processor-equipped SGI machine. Planning for and work on the next release is already underway, and a brand new Nekoware SDK has been released as well, which provides bootstrap functionality and addresses the problem of having to build Nekoware on unstable IRIX environments. Seeing Nekoware resurrected is great news for the surprisingly active IRIX community. As a HP-UX user, I feel some envy.


  • KIM-1 turns 50
    In January 1976, MOS Technologies presented a demonstration computer for their recently developed 6502 processor. MOS, which was acquired by Commodore later that year, needed to show the public what their low-cost processor was able to. The KIM-1 single board computer came fully assembled with an input keypad, a six-digit LED display, and complete documentation. It was intended for developers, but it turned out that at a price of only $249 the computer was the ideal playground for hobbyists, who could now afford a complete computer. The unforgettable Jim Butterfield described it like this back in 1999: But suddenly there was the KIM-1. It was fully assembled (although you had to add a power supply). Everybody’s KIM-1 was essentially the same (although the CPU added an extra instruction during the KIM-1’s production life). And this created something that was never before part of the home computer phenomenon: users could quite happily exchange programs with each other; magazines could publish such programs; and people could talk about a known system. We knew the 6502 chip was great, but it took quite a while to convince the majority of computer hobbyists. MOS Technology offered this CPU at a price that was a fraction of what the other available chips cost. We faced the attitude that “it must be no good because it’s too cheap,” even though the 6502, with its pipelined architecture, outperformed the 8080 and the 6800.! ↫ Jim Butterfield Even though there would soon be better equipped and faster home computers (mostly based on the 6502) and the KIM-1 vanished from the collective minds, the home computer revolution started  50 years ago in Jan 1976. Hans Otten keeps the memory alive on his homepage, where you can find a full collection of information about single-board computers and especially the KIM-1.


  • Can you slim macOS down?
    Howard Oakley answers a very interesting question  is it possible to slim macOS down by turning off unneeded services and similar tricks? The answer is obviously no, you cannot. Classic Mac OS was more modular, with optional installs that the user could pick and choose, as shown above in Mac OS 9.1. These days with the SSV, choice is more limited from the start, with the only real options being whether to install the cryptexes used in AI, and the x86 code translator Rosetta 2. The latter is transient, though, and likely to go away next year. Like it or not, modern macOS isn’t designed or implemented to give the user much choice in which processes it runs, and architectural features including the SSV and DAS-CTS prevent you from paring its processes down to any significant degree. ↫ Howard Oakley Thats because macOS is not about creating the best experience for the user, but about creating the most value for shareholders. Giving users choice, allowing them to modify their operating system to suit their needs, removing unneeded components or replacing them with competing alternatives just isnt in the interest of shareholders, and thus, its not allowed by Apple. Thats exactly why theyre fighting the EUs very basic and simple consumer protection legislation tooth and nail with lies and propaganda, while giving Trump millions of dollars and silly plaques in bribes. Youre as much a user of macOS as a passenger on a ferry is its captain. If you just want to get from Harwich to Hoek van Holland, thats a fine arrangement, but if you want to explore beyond the bounds of the path laid out by those more wealthy than you, youre going to have to leave macOS behind and find a different ship.



Linux Journal News

  • EU OS: A Bold Step Toward Digital Sovereignty for Europe
    Image
    A new initiative, called "EU OS," has been launched to develop a Linux-based operating system tailored specifically for the public sector organizations of the European Union (EU). This community-driven project aims to address the EU's unique needs and challenges, focusing on fostering digital sovereignty, reducing dependency on external vendors, and building a secure, self-sufficient digital ecosystem.
    What Is EU OS?
    EU OS is not an entirely novel operating system. Instead, it builds upon a Linux foundation derived from Fedora, with the KDE Plasma desktop environment. It draws inspiration from previous efforts such as France's GendBuntu and Munich's LiMux, which aimed to provide Linux-based systems for public sector use. The goal remains the same: to create a standardized Linux distribution that can be adapted to different regional, national, and sector-specific needs within the EU.

    Rather than reinventing the wheel, EU OS focuses on standardization, offering a solid Linux foundation that can be customized according to the unique requirements of various organizations. This approach makes EU OS a practical choice for the public sector, ensuring broad compatibility and ease of implementation across diverse environments.
    The Vision Behind EU OS
    The guiding principle of EU OS is the concept of "public money – public code," ensuring that taxpayer money is used transparently and effectively. By adopting an open-source model, EU OS eliminates licensing fees, which not only lowers costs but also reduces the dependency on a select group of software vendors. This provides the EU’s public sector organizations with greater flexibility and control over their IT infrastructure, free from the constraints of vendor lock-in.

    Additionally, EU OS offers flexibility in terms of software migration and hardware upgrades. Organizations can adapt to new technologies and manage their IT evolution at a manageable cost, both in terms of finances and time.

    However, there are some concerns about the choice of Fedora as the base for EU OS. While Fedora is a solid and reliable distribution, it is backed by the United States-based Red Hat. Some argue that using European-backed projects such as openSUSE or KDE's upcoming distribution might have aligned better with the EU's goal of strengthening digital sovereignty.
    Conclusion
    EU OS marks a significant step towards Europe's digital independence by providing a robust, standardized Linux distribution for the public sector. By reducing reliance on proprietary software and vendors, it paves the way for a more flexible, cost-effective, and secure digital ecosystem. While the choice of Fedora as the base for the project has raised some questions, the overall vision of EU OS offers a promising future for Europe's public sector in the digital age.

    Source: It's FOSS
    European Union


  • Linus Torvalds Acknowledges Missed Release of Linux 6.14 Due to Oversight

    Linus Torvalds Acknowledges Missed Release of Linux 6.14 Due to Oversight

    Linux kernel lead developer Linus Torvalds has admitted to forgetting to release version 6.14, attributing the oversight to his own lapse in memory. Torvalds is known for releasing new Linux kernel candidates and final versions on Sunday afternoons, typically accompanied by a post detailing the release. If he is unavailable due to travel or other commitments, he usually informs the community ahead of time, so users don’t worry if there’s a delay.

    In his post on March 16, Torvalds gave no indication that the release might be delayed, instead stating, “I expect to release the final 6.14 next weekend unless something very surprising happens.” However, Sunday, March 23rd passed without any announcement.

    On March 24th, Torvalds wrote in a follow-up message, “I’d love to have some good excuse for why I didn’t do the 6.14 release yesterday on my regular Sunday afternoon schedule,” adding, “But no. It’s just pure incompetence.” He further explained that while he had been clearing up unrelated tasks, he simply forgot to finalize the release. “D'oh,” he joked.

    Despite this minor delay, Torvalds’ track record of successfully managing the Linux kernel’s development process over the years remains strong. A single day’s delay is not critical, especially since most Linux users don't urgently need the very latest version.

    The new 6.14 release introduces several important features, including enhanced support for writing drivers in Rust—an ongoing topic of discussion among developers—support for Qualcomm’s Snapdragon 8 Elite mobile chip, a fix for the GhostWrite vulnerability in certain RISC-V processors from Alibaba’s T-Head Semiconductor, and a completed NTSYNC driver update that improves the WINE emulator’s ability to run Windows applications, particularly games, on Linux.

    Although the 6.14 release went smoothly aside from the delay, Torvalds expressed that version 6.15 may present more challenges due to the volume of pending pull requests. “Judging by my pending pile of pull requests, 6.15 will be much busier,” he noted.

    You can download the latest kernel here.
    Linus Torvalds kernel


  • AerynOS 2025.03 Alpha Released with GNOME 48, Mesa 25, and Linux Kernel 6.13.8
    Image
    AerynOS 2025.03 has officially been released, introducing a variety of exciting features for Linux users. The release includes the highly anticipated GNOME 48 desktop environment, which comes with significant improvements like HDR support, dynamic triple buffering, and a Wayland color management protocol. Other updates include a battery charge limiting feature and a Wellbeing option aimed at improving user experience.

    This release, while still in alpha, incorporates Linux kernel 6.13.8 and the updated Mesa 25.0.2 graphics stack, alongside tools like LLVM 19.1.7 and Vulkan SDK 1.4.309.0. Additionally, the Moss package manager now integrates os-info to generate more detailed OS metadata via a JSON file.

    Future plans for AerynOS include automated package updates, easier rollback management, improved disk handling with Rust, and fractional scaling enabled by default. The installer has also been revamped to support full disk wipes and dynamic partitioning.

    Although still considered an alpha release, AerynOS 2025.03 can be downloaded and tested right now from its official website.

    Source: 9to5Linux
    AerynOS


  • Xojo 2025r1: Big Updates for Developers with Linux ARM Support, Web Drag and Drop, and Direct App Store Publishing
    Image
    Xojo has just rolled out its latest release, Xojo 2025 Release 1, and it’s packed with features that developers have been eagerly waiting for. This major update introduces support for running Xojo on Linux ARM, including Raspberry Pi, brings drag-and-drop functionality to the Web framework, and simplifies app deployment with the ability to directly submit apps to the macOS and iOS App Stores.

    Here’s a quick overview of what’s new in Xojo 2025r1:
    1. Linux ARM IDE Support
    Xojo 2025r1 now allows developers to run the Xojo IDE on Linux ARM devices, including popular platforms like Raspberry Pi. This opens up a whole new world of possibilities for developers who want to create apps for ARM-based devices without the usual complexity. Whether you’re building for a Raspberry Pi or other ARM devices, this update makes it easier than ever to get started.
    2. Web Drag and Drop
    One of the standout features in this release is the addition of drag-and-drop support for web applications. Now, developers can easily drag and drop visual controls in their web projects, making it simpler to create interactive, user-friendly web applications. Plus, the WebListBox has been enhanced with support for editable cells, checkboxes, and row reordering via dragging. No JavaScript required!
    3. Direct App Store Publishing
    Xojo has also streamlined the process of publishing apps. With this update, developers can now directly submit macOS and iOS apps to App Store Connect right from the Xojo IDE. This eliminates the need for multiple steps and makes it much easier to get apps into the App Store, saving valuable time during the development process.
    4. New Desktop and Mobile Features
    This release isn’t just about web and Linux updates. Xojo 2025r1 brings some great improvements for desktop and mobile apps as well. On the desktop side, all projects now include a default window menu for macOS apps. On the mobile side, Xojo has introduced new features for Android and iOS, including support for ColorGroup and Dark Mode on Android, and a new MobileColorPicker for iOS to simplify color selection.
    5. Performance and IDE Enhancements
    Xojo’s IDE has also been improved in several key areas. There’s now an option to hide toolbar captions, and the toolbar has been made smaller on Windows. The IDE on Windows and Linux now features modern Bootstrap icons, and the Documentation window toolbar is more compact. In the code editor, developers can now quickly navigate to variable declarations with a simple Cmd/Ctrl + Double-click. Plus, performance for complex container layouts in the Layout Editor has been enhanced.
    What Does This Mean for Developers?
    Xojo 2025r1 brings significant improvements across all the platforms that Xojo supports, from desktop and mobile to web and Linux. The added Linux ARM support opens up new opportunities for Raspberry Pi and ARM-based device development, while the drag-and-drop functionality for web projects will make it easier to create modern, interactive web apps. The ability to publish directly to the App Store is a game-changer for macOS and iOS developers, reducing the friction of app distribution.
    How to Get Started
    Xojo is free for learning and development, as well as for building apps for Linux and Raspberry Pi. If you’re ready to dive into cross-platform development, paid licenses start at $99 for a single-platform desktop license, and $399 for cross-platform desktop, mobile, or web development. For professional developers who need additional resources and support, Xojo Pro and Pro Plus licenses start at $799. You can also find special pricing for educators and students.

    Download Xojo 2025r1 today at xojo.com.
    Final Thoughts
    With each new release, Xojo continues to make cross-platform development more accessible and efficient. The 2025r1 release is no exception, delivering key updates that simplify the development process and open up new possibilities for developers working on a variety of platforms. Whether you’re a Raspberry Pi enthusiast or a mobile app developer, Xojo 2025r1 has something for you.
    Xojo ARM


  • New 'Mirrored' Network Mode Introduced in Windows Subsystem for Linux

    Microsoft's Windows Subsystem for Linux (WSL) continues to evolve with the release of WSL 2 version 0.0.2. This update introduces a set of opt-in preview features designed to enhance performance and compatibility.

    Key additions include "Automatic memory reclaim" which dynamically optimizes WSL's memory footprint, and "Sparse VHD" to shrink the size of the virtual hard disk file. These improvements aim to streamline resource usage.

    Additionally, a new "mirrored networking mode" brings expanded networking capabilities like IPv6 and multicast support. Microsoft claims this will improve VPN and LAN connectivity from both the Windows host and Linux guest. 

    Complementing this is a new "DNS Tunneling" feature that changes how DNS queries are resolved to avoid compatibility issues with certain network setups. According to Microsoft, this should reduce problems connecting to the internet or local network resources within WSL.

    Advanced firewall configuration options are also now available through Hyper-V integration. The new "autoProxy" feature ensures WSL seamlessly utilizes the Windows system proxy configuration.

    Microsoft states these features are currently rolling out to Windows Insiders running Windows 11 22H2 Build 22621.2359 or later. They remain opt-in previews to allow testing before final integration into WSL.

    By expanding WSL 2 with compelling new capabilities in areas like resource efficiency, networking, and security, Microsoft aims to make Linux on Windows more performant and compatible. This evolutionary approach based on user feedback highlights Microsoft's commitment to WSL as a key part of the Windows ecosystem.
    Windows


  • Linux Threat Report: Earth Lusca Deploys Novel SprySOCKS Backdoor in Attacks on Government Entities

    The threat actor Earth Lusca, linked to Chinese state-sponsored hacking groups, has been observed utilizing a new Linux backdoor dubbed SprySOCKS to target government organizations globally. 

    As initially reported in January 2022 by Trend Micro, Earth Lusca has been active since at least 2021 conducting cyber espionage campaigns against public and private sector targets in Asia, Australia, Europe, and North America. Their tactics include spear-phishing and watering hole attacks to gain initial access. Some of Earth Lusca's activities overlap with another Chinese threat cluster known as RedHotel.

    In new research, Trend Micro reveals Earth Lusca remains highly active, even expanding operations in the first half of 2023. Primary victims are government departments focused on foreign affairs, technology, and telecommunications. Attacks concentrate in Southeast Asia, Central Asia, and the Balkans regions. 

    After breaching internet-facing systems by exploiting flaws in Fortinet, GitLab, Microsoft Exchange, Telerik UI, and Zimbra software, Earth Lusca uses web shells and Cobalt Strike to move laterally. Their goal is exfiltrating documents and credentials, while also installing additional backdoors like ShadowPad and Winnti for long-term spying.

    The Command and Control server delivering Cobalt Strike was also found hosting SprySOCKS - an advanced backdoor not previously publicly reported. With roots in the Windows malware Trochilus, SprySOCKS contains reconnaissance, remote shell, proxy, and file operation capabilities. It communicates over TCP mimicking patterns used by a Windows trojan called RedLeaves, itself built on Trochilus.

    At least two SprySOCKS versions have been identified, indicating ongoing development. This novel Linux backdoor deployed by Earth Lusca highlights the increasing sophistication of Chinese state-sponsored threats. Robust patching, access controls, monitoring for unusual activities, and other proactive defenses remain essential to counter this advanced malware.

    The Trend Micro researchers emphasize that organizations must minimize attack surfaces, regularly update systems, and ensure robust security hygiene to interrupt the tactics, techniques, and procedures of relentless threat groups like Earth Lusca.
    Security


  • Linux Kernel Faces Reduction in Long-Term Support Due to Maintenance Challenges

    The Linux kernel is undergoing major changes that will shape its future development and adoption, according to Jonathan Corbet, Linux kernel developer and executive editor of Linux Weekly News. Speaking at the Open Source Summit Europe, Corbet provided an update on the latest Linux kernel developments and a glimpse of what's to come.

    A major change on the horizon is a reduction in long-term support (LTS) for kernel versions from six years to just two years. Corbet explained that maintaining old kernel branches indefinitely is unsustainable and most users have migrated to newer versions, so there's little point in continuing six years of support. While some may grumble about shortened support lifecycles, the reality is that constantly backporting fixes to ancient kernels strains maintainers.

    This maintainer burnout poses a serious threat, as Corbet highlighted. Maintaining Linux is largely a volunteer effort, with only about 200 of the 2,000+ developers paid for their contributions. The endless demands on maintainers' time from fuzz testing, fixing minor bugs, and reviewing contributions takes a toll. Prominent maintainers have warned they need help to avoid collapse. Companies relying on Linux must realize giving back financially is in their interest to sustain this vital ecosystem. 

    The Linux kernel is also wading into waters new with the introduction of Rust code. While Rust solves many problems, it also introduces new complexities around language integration, evolving standards, and maintainer expertise. Corbet believes Rust will pass the point of no return when core features depend on it, which may occur soon with additions like Apple M1 GPU drivers. Despite skepticism in some corners, Rust's benefits likely outweigh any transition costs.

    On the distro front, Red Hat's decision to restrict RHEL cloning sparked community backlash. While business considerations were at play, Corbet noted technical factors too. Using older kernels with backported fixes, as RHEL does, risks creating divergent, vendor-specific branches. The Android model of tracking mainline kernel dev more closely has shown security benefits. Ultimately, Linux works best when aligned with the broader community.

    In closing, Corbet recalled the saying "Linux is free like a puppy is free." Using open source seems easy at first, but sustaining it long-term requires significant care and feeding. As Linux is incorporated into more critical systems, that maintenance becomes ever more crucial. The kernel changes ahead are aimed at keeping Linux healthy and vibrant for the next generation of users, businesses, and developers.
    kernel


  • Linux Celebrates 32 Years with the Release of 6.6-rc2 Version

    Today marks the 32nd anniversary of Linus Torvalds introducing the inaugural Linux 0.01 kernel version, and celebrating this milestone, Torvalds has launched the Linux 6.6-rc2. Among the noteworthy updates are the inclusion of a feature catering to the ASUS ROG Flow X16 tablet's mode handling and the renaming of the new GenPD subsystem to pmdomain.

    The Linux 6.6 edition is progressing well, brimming with exciting new features that promise to enhance user experience. Early benchmarks are indicating promising results, especially on high-core-count servers, pointing to a potentially robust and efficient update in the Linux series.

    Here is what Linus Torvalds had to say in today's announcement:
    Another week, another -rc.I think the most notable thing about 6.6-rc2 is simply that it'sexactly 32 years to the day since the 0.01 release. And that's a roundnumber if you are a computer person.Because other than the random date, I don't see anything that reallystands out here. We've got random fixes all over, and none of it looksparticularly strange. The genpd -> pmdomain rename shows up in thediffstat, but there's no actual code changes involved (make sure touse "git diff -M" to see them as zero-line renames).And other than that, things look very normal. Sure, the architecturefixes happen to be mostly parisc this week, which isn't exactly theusual pattern, but it's also not exactly a huge amount of changes.Most of the (small) changes here are in drivers, with some tracingfixes and just random things. The shortlog below is short enough toscroll through and get a taste of what's been going on. Linus Torvalds


  • Introducing Bavarder: A User-Friendly Linux Desktop App for Quick ChatGPT Interaction

    Want to interact with ChatGPT from your Linux desktop without using a web browser?

    Bavarder, a new app, allows you to do just that.

    Developed with Python and GTK4/libadwaita, Bavarder offers a simple concept: pose a question to ChatGPT, receive a response, and promptly copy the answer (or your inquiry) to the clipboard for pasting elsewhere.

    With an incredibly user-friendly interface, you won't require AI expertise (or a novice blogger) to comprehend it. Type your question in the top box, click the blue send button, and wait for a generated response to appear at the bottom. You can edit or modify your message and repeat the process as needed.

    During our evaluation, Bavarder employed BAI Chat, a GPT-3.5/ChatGPT API-based chatbot that's free and doesn't require signups or API keys. Future app versions will incorporate support for alternative backends, such as ChatGPT 4 and Hugging Chat, and allow users to input an API key to utilize ChatGPT3.

    At present, there's no option to regenerate a response (though you can resend the same question for a potentially different answer). Due to the lack of a "conversation" view, tracking a dialogue or following up on answers can be challenging — but Bavarder excels for rapid-fire questions.

    As with any AI, standard disclaimers apply. Responses might seem plausible but could contain inaccurate or false information. Additionally, it's relatively easy to lead these models into irrational loops, like convincing them that 2 + 2 equals 106 — so stay alert!

    Overall, Bavarder is an attractive app with a well-defined purpose. If you enjoy ChatGPT and similar technologies, it's worth exploring.
    ChatGPT AI


  • LibreOffice 7.5.3 Released: Third Maintenance Update Brings 119 Bug Fixes to Popular Open-Source Office Suite

    Today, The Document Foundation unveiled the release and widespread availability of LibreOffice 7.5.3, which serves as the third maintenance update to the current LibreOffice 7.5 open-source and complimentary office suite series.

    Approximately five weeks after the launch of LibreOffice 7.5.2, LibreOffice 7.5.3 arrives with a new set of bug fixes for those who have successfully updated their GNU/Linux system to the LibreOffice 7.5 series.

    LibreOffice 7.5.3 addresses a total of 119 bugs identified by users or uncovered by LibreOffice developers. For a more comprehensive understanding of these bug fixes, consult the RC1 and RC2 changelogs.

    You can download LibreOffice 7.5.3 directly from the LibreOffice websiteor from SourceForge as binary installers for DEB or RPM-based GNU/Linux distributions. A source tarball is also accessible for individuals who prefer to compile the software from sources or for system integrators.

    All users operating the LibreOffice 7.5 office suite series should promptly update their installations to the new point release, which will soon appear in the stable software repositories of your GNU/Linux distributions.

    In early February 2023, LibreOffice 7.5 debuted as a substantial upgrade to the widely-used open-source office suite, introducing numerous features and improvements. These enhancements encompass major upgrades to dark mode support, new application and MIME-type icons, a refined Single Toolbar UI, enhanced PDF Export, and more.

    Seven maintenance updates will support LibreOffice 7.5 until November 30th, 2023. The next point release, LibreOffice 7.5.4, is scheduled for early June and will include additional bug fixes.

    The Document Foundation once again emphasizes that the LibreOffice office suite's "Community" edition is maintained by volunteers and members of the Open Source community. For enterprise implementations, they suggest using the LibreOffice Enterprise family of applications from ecosystem partners.
    LibreOffice


Linux Magazine News (path: lmi_news)


  • Photoshop on Linux?
    A developer has patched Wine so that it'll run specific versions of Photoshop that depend on Adobe Creative Cloud.







  • Gnome Says No to AI-Generated Extensions
    If you're a developer wanting to create a new Gnome extension, you'd best set aside that AI code generator, because the extension team will have none of that.




Page last modified on November 17, 2022, at 06:39 PM