Recent Changes - Search:
NTLUG

Linux is free.
Life is good.

Linux Training
10am on Meeting Days!

1825 Monetary Lane Suite #104 Carrollton, TX

Do a presentation at NTLUG.

What is the Linux Installation Project?

Real companies using Linux!

Not just for business anymore.

Providing ready to run platforms on Linux

Show Descriptions... (Show All) (Two Column)

LinuxSecurity - Security Advisories







LWN.net

  • Bcachefs goes to "externally maintained"
    Linus Torvalds has quietly changedthe maintainer status of bcachefs to "externally maintained",indicating that further changes are unlikely to enter the mainline anytimesoon. This change also suggests, though, that the immediate removal ofbcachefs from the mainline kernel is not in the cards.


  • [$] The challenge of maintaining curl
    Keynote sessions at Open Source Summit events tend not to allow much time fordetailed talks, and the 2025 OpenSource Summit Europe did not diverge from that pattern. Even so,Daniel Stenberg, the maintainer of the curlproject, managed to cram a lot into the 15 minutes given to him.Like the maintainers of many other projects, Stenberg is feeling somestress, and the problems appear to be getting worse over time.


  • [$] Highlights from systemd v258: part one
    The next release of systemd has been percolating for an unusuallylong time. Systemd releases are usually about six months apart, butv257 came out inDecember 2024, and v258 just now seems to be nearing the finishline; the third release candidate for v258 was published onAugust 20 (releasenotes). Now is a good time to dig in and take a look at some ofthe new features, enhancements, and removals coming soon tosystemd. These include new workload-management features, a concept formultiple home-directory environments, and the final, once-and-for-allremoval of support for controlgroups version 1.


  • Security updates for Friday
    Security updates have been issued by AlmaLinux (aide, fence-agents, firefox, kernel-rt, python-cryptography, and thunderbird), Debian (golang-github-gin-contrib-cors, libxml2, and udisks2), Fedora (chromium), Oracle (postgresql16, postgresql:16, python3.11, and thunderbird), Red Hat (lz4 and mpfr), SUSE (chromium, docker, dpkg, firefox, gdk-pixbuf, git, git, git-lfs, obs-scm-bridge, python-PyYAML, gnutls, kernel, libarchive, libxml2, net-tools, netty, perl-Crypt-CBC, polkit, postgresql14, postgresql15, sqlite3, thunderbird, tomcat10, and udisks2), and Ubuntu (linux, linux-aws, linux-aws-5.15, linux-gcp, linux-gcp-5.15, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-intel-iotg, linux-intel-iotg-5.15, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-nvidia, linux-nvidia-tegra, linux-nvidia-tegra-5.15, linux-nvidia-tegra-igx, linux-oracle, linux-raspi, linux-xilinx-zynqmp, linux, linux-aws, linux-aws-6.14, linux-gcp, linux-hwe-6.14, linux-raspi, linux-realtime, linux-realtime-6.14, linux, linux-aws, linux-aws-6.8, linux-gcp, linux-lowlatency, linux-lowlatency-hwe-6.8, linux-oracle, linux-oracle-6.8, linux, linux-aws, linux-kvm, linux-lts-xenial, linux-azure, linux-fips, linux-fips, linux-aws-fips, linux-gcp-fips, linux-gke, linux-hwe-6.8, linux-nvidia, linux-nvidia-6.8, linux-nvidia-lowlatency, linux-raspi, linux-gke, linux-kvm, linux-oem-6.14, linux-realtime, linux-intel-iot-realtime, linux-realtime, linux-raspi-realtime, openldap, and udisks2).


  • Python: The Documentary
    Attendees at EuroPython had the chance to preview part ofPython: The Documentary during akeynote panel. The full film, created by CultRepo, is now available on YouTube:

    This is the story of the world's most beloved programming language:Python. What began as a side project in Amsterdam during the 1990sbecame the software powering artificial intelligence, data science andsome of the world's biggest companies. But Python's future wasn'tcertain; at one point it almost disappeared.

    This 90-minute documentary features Guido van Rossum, TravisOliphant, Barry Warsaw, and many more, and they tell the story ofPython's rise, its community-driven evolution, the conflicts thatalmost tore it apart, and the language's impact on... well...everything.

    The videoof the keynote is also available.



  • Seven stable kernels for Thursday
    Greg Kroah-Hartman has announced the release of the 6.16.4, 6.12.44, 6.6.103, 6.1.149, 5.15.190, 5.10.241, and 5.4.297 stable Linux kernels. Each onecontains important fixes.



  • [$] Changing GNOME technical governance?
    The GNOME project, which recently celebrated its28th birthday, has never had a formal technical governance; progresshas been driven by individuals and groups that advocated for—and workedtoward—a particular goal in an ad hoc fashion. Longtime GNOME contributorEmmanuele Bassi would like to see that change by adding cross-project teamsand a steering committee for the project; to that end, he gave a talk (YouTubevideo) at GUADEC 2025in late July on his idea to establish some technical governance for theproject. He also put together a blogpost with his notes from the talk. The audience reaction wasfavorable, so he has followed up on the GNOME discussion forum with an RFC ongovernance to try to move the effort along.


  • Security updates for Thursday
    Security updates have been issued by AlmaLinux (aide, firefox, kernel, and mod_http2), Debian (chromium and unbound), Fedora (mod_auth_openidc), Oracle (fence-agents and kernel), SUSE (ignition, jetty-minimal, kernel, libmozjs-128-0, matrix-synapse, postgresql13, postgresql15, postgresql16, and postgresql17), and Ubuntu (kernel).


  • [$] LWN.net Weekly Edition for August 28, 2025
    Inside this week's LWN.net Weekly Edition:
    Front: Groklaw takeover; CRL cache sharing; browsers and XSLT; Microdot; restartable sequences; shadow-stack control Briefs: Android restrictions; Arch services; GhostBSD 25.02; FFmpeg 8.0; PyCon videos; Quotes; ... Announcements: Newsletters, conferences, security updates, patches, and more.


  • Rosenzweig: Dissecting the Apple M1 GPU, the end
    Alyssa Rosenzweig has written a blog postabout her work to help ship a "great driver" for the Apple M1GPU that supports OpenGL, Vulkan, and enables gaming with Proton.

    We've succeeded beyond my dreams. The challenges I chased, I havetackled. The drivers are fully upstream in Mesa. Performance isn't toobad. With the Vulkan on Apple myth busted, conformant Vulkan is nowcoming to macOS via LunarG'sKosmicKrisp project building on my work.

    Satisfied, I am now stepping away from the Apple ecosystem. Myfriends in the Asahi Linux orbit will carry the torch from here.

    Rosenzweig indicates her next project will be working on Intel'scovered her talk on AppleM1/M2 GPU drivers in October 2024.



LXer Linux News



  • Bring your own brain? Why local LLMs are taking off
    Running AIs on your own machine lets you stick it to the man and save some cash in the processFeature After a decade or two of the cloud, we're used to paying for our computing capability by the megabyte. As AI takes off, the whole cycle promises to repeat itself again, and while AI might seem relatively cheap now, it might not always be so.…



  • bsd-user-4-linux Lets FreeBSD Binaries Run Unmodified On Linux
    The FreeBSD project on Friday published their quarterly status report to highlight all of the interesting changes for Q2'2025. Among the recent FreeBSD efforts have been on "bsd-user-4-linux" to allow FreeBSD binaries to run unmodified on Linux systems. FreeBSD is also coming up with a policy around AI/LLM usage for contributing to the project. Additionally, Sylve is taking shape as a new web-based unified system management platform for FreeBSD systems...



  • GitHub engineer claims team was 'coerced' to put Grok into Copilot
    Platform's staffer complains security review was 'rushed'Microsoft-owned collaborative coding platform GitHub is deepening its ties with Elon Musk's xAI, bringing early access to the company's Grok Code Fast 1 large language model (LLM) into GitHub Copilot. However, a whistleblower has claimed that the rollout suffers from inadequate security testing and an engineering team operating under duress.…





Error: It's not possible to reach RSS file http://services.digg.com/2.0/story.getTopNews?type=rss&topic=technology ...

Slashdot

  • Are AI Web Crawlers 'Destroying Websites' In Their Hunt for Training Data?
    "AI web crawlers are strip-mining the web in their perpetual hunt for ever more content to feed into their Large Language Model mills," argues Steven J. Vaughan-Nichols at the Register. And "when AI searchbots, with Meta (52% of AI searchbot traffic), Google (23%), and OpenAI (20%) leading the way, clobber websites with as much as 30 Terabits in a single surge, they're damaging even the largest companies' site performance..."How much traffic do they account for? According to Cloudflare, a major content delivery network (CDN) force, 30% of global web traffic now comes from bots. Leading the way and growing fast? AI bots... Anyone who runs a website, though, knows there's a huge, honking difference between the old-style crawlers and today's AI crawlers. The new ones are site killers. Fastly warns that they're causing "performance degradation, service disruption, and increased operational costs." Why? Because they're hammering websites with traffic spikes that can reach up to ten or even twenty times normal levels within minutes. Moreover, AI crawlers are much more aggressive than standard crawlers. As the InMotionhosting web hosting company notes, they also tend to disregard crawl delays or bandwidth-saving guidelines and extract full page text, and sometimes attempt to follow dynamic links or scripts. The result? If you're using a shared server for your website, as many small businesses do, even if your site isn't being shaken down for content, other sites on the same hardware with the same Internet pipe may be getting hit. This means your site's performance drops through the floor even if an AI crawler isn't raiding your website... AI crawlers don't direct users back to the original sources. They kick our sites around, return nothing, and we're left trying to decide how we're to make a living in the AI-driven web world. Yes, of course, we can try to fend them off with logins, paywalls, CAPTCHA challenges, and sophisticated anti-bot technologies. You know one thing AI is good at? It's getting around those walls. As for robots.txt files, the old-school way of blocking crawlers? Many — most? — AI crawlers simply ignore them... There are efforts afoot to supplement robots.txt with llms.txt files. This is a proposed standard to provide LLM-friendly content that LLMs can access without compromising the site's performance. Not everyone is thrilled with this approach, though, and it may yet come to nothing. In the meantime, to combat excessive crawling, some infrastructure providers, such as Cloudflare, now offer default bot-blocking services to block AI crawlers and provide mechanisms to deter AI companies from accessing their data.


    Read more of this story at Slashdot.


  • What Happened When Unix Co-Creator Brian Kernighan Tried Rust?
    "I'm still teaching at Princeton," 83-year-old Brian Kernighan recently told an audience at New Jersey's InfoAge Science and History Museums. And last month the video was uploaded to YouTube, a new article points out, "showing that his talk ended with a unique question-and-answer session that turned almost historic...""Do you think there's any sort of merit to Rust replacing C?" one audience member asked... "Or is this just a huge hype bubble that's waiting to die down...?" '"I have written only one Rust program, so you should take all of this with a giant grain of salt," he said. "And I found it a — pain... I just couldn't grok the mechanisms that were required to do memory safety, in a program where memory wasn't even an issue!" Speaking of Rust, Kernighan said "The support mechanism that went with it — this notion of crates and barrels and things like that — was just incomprehensibly big and slow. And the compiler was slow, the code that came out was slow..." All in all, Kernighan had had a bad experience. "When I tried to figure out what was going on, the language had changed since the last time somebody had posted a description! And so it took days to write a program which in other languages would take maybe five minutes..." It was his one and only experience with the language, so Kernighan acknowledged that when it comes to Rust "I'm probably unduly cynical. "But I'm — I don't think it's gonna replace C right away, anyway." Kernighan was also asked about NixOS and HolyC — but his formative experiences remain rooted in Bell Labs starts in the 1970s, where he remembers it was "great fun to hang out with these people." And he acknowledged that the descendants of Unix now power nearly every cellphone. "I find it intriguing... And I also find it kind of irritating that underneath there is a system that I could do things with — but I can't get at it!" Kernighan answered questions from Slashdot readers in 2009 and again in 2015...


    Read more of this story at Slashdot.


  • Smelling This One Specific Scent Can Boost the Brain's Gray Matter
    "According to a new study, wearing the right kind of perfume or cologne can enlarge your brain's gray matter," writes ScienceAlertResearchers from Kyoto University and the University of Tsukuba in Japan asked 28 women to wear a specific rose scent oil on their clothing for a month, with another 22 volunteers enlisted as controls who put on plain water instead. Magnetic resonance imaging ( MRI) scans showed boosts in the gray matter volume of the rose scent participants. While an increase in brain volume doesn't necessarily translate into more thinking power, the findings could have implications for neurodegenerative conditions such as dementia. "This study is the first to show that continuous scent inhalation changes brain structure," write the researchers in their published paper. We've seen scents like this improve memory and cognitive performance, but here the team wanted to try a longer-term experiment to see how triggering our sense of smell might lead to measurable changes in brain structure... It's difficult to pin down exactly what's causing this boost in gray matter. Another possibility raised by the researchers is that the rose scent is actually labeled as unpleasant by the brain, with the subsequent emotional regulation responsible for the PCC working harder and increasing in size. The researchers hope that the findings could be useful in the development of aromatherapies that boost mental health and brain plasticity... The research was published in the Brain Research Bulletin.


    Read more of this story at Slashdot.


  • Rare Snail Has a 1-in-40,000 Chance of Finding a Mate. New Zealand Begins the Search
    There's something rare about a snail named Ned, reports CNN:Ned's shell spirals left, while almost all other snails have right spiraling shells. It's a one in 40,000 genetic condition among the common corno espersum... "I was quite breathless for a moment," says Giselle Clarkson, an author, illustrator and self-described 'observologist' who found Ned while digging in her garden in Wairarapa, just north of capital Wellington. "I was just pulling out this plant, and a snail tumbled into the dirt and I was just about to scoop it up and just chuck it off to the side, when I realized what I had," Clarkson told CNN. It was a serendipitous moment for Ned, now named for Homer Simpson's left-handed neighbor. Clarkson was aware of this rare asymmetry in snails from her work with the magazine New Zealand Geographic. But "should Ned hope to mate one day, it will have to be with another very rare left-coiled snail," notes the Washington Post (since, as CNN points out, this snail's reproductive organs "don't line up" with those of snails with right-spiraling shells). This has sparked a national campaign to locate a compatible snail — something that was last successfully attempted in 2016. "If 40,000 people read this," the campaign explains, "chances are, Ned's dreams will come true."


    Read more of this story at Slashdot.


  • Study: Young Children Diagnosed with ADHD Often Prescribed Medication Too Quickly
    "A new study released Friday found that young children diagnosed with attention-deficit/hyperactivity disorder, or ADHD, are often prescribed medication too quickly," reports CBS News:The study, led by Stanford Medicine and published in JAMA Network Open, examined the health records of nearly 10,000 preschool-aged children ages 3 to 5 between 2016 and 2023 who were diagnosed with ADHD... The Stanford study found that about 68% of those children who were diagnosed with ADHD were prescribed medications before age 7, most often stimulants such as Ritalin, which can help children focus their attention and regulate their emotions. The turn to medication often came quickly, according to the study. About 42% of the children who were diagnosed with ADHD were prescribed drugs within 30 days of diagnosis, the study found. "We don't have concerns about the toxicity of the medications for 4- and 5-year-olds, but we do know that there is a high likelihood of treatment failure, because many families decide the side effects outweigh the benefits," Dr. Yair Bannett, assistant professor of pediatrics at Stanford Medicine and the lead author of the study, said in a statement. Those side effects can include irritability, aggressiveness and emotional problems, according to Bannett. "The high rate of medication prescriptions among preschool-age children with ADHD and the lack of delay between initial diagnosis and prescription require further investigation to assess the appropriateness of early medication treatment," the researchers concluded. The study also found that the vast majority of the young children diagnosed with ADHD, about 76%, were boys. CBS News interviewed Jamie Howard, senior clinical psychologist from the Child Mind Institute (who was not involved in the study). Howard said when treating ADHD in young children, clinical guidelines call for starting with "behavioral intervention...." "I think that people have an association with ADHD and stimulant medication... But there is actually a lot more than that. And we want to give kids the opportunity to use these other strategies first, and then if they need medication, it can be incredibly helpful for a lot of kids."


    Read more of this story at Slashdot.


  • 'Swatting' Hits a Dozen US Universities. The FBI is Investigating
    The Washington Post covers "a string of false reports of active shooters at a dozen U.S. universities this month as students returned to campus." The FBI is investigating the incidents, according to a spokesperson who declined to specify the nature of the probe. While universities have proved a popular swatting target, the agency "is seeing an increase in swatting events across the country," the FBI spokesperson said... Local officials are frustrated by the anonymous calls tying up first responders, straining public safety budgets and needlessly traumatizing college students who grew up in an era in which gun violence has in some way shaped their school experience... The recent string of swattings began Thursday with a false report to the University of Tennessee at Chattanooga, quickly followed by one about Villanova University later that day. Hoaxes at 10 more schools followed... Villanova also received a second threat. As the calls about shootings came in, officials on many of the campuses pushed out emergency notifications directing students and employees to shelter in place, while police investigated what turned out to be false reports. (Iowa State was able to verify the lack of a threat before a campuswide alert was sent, its police chief said. [They had a live video feed from the location the caller claimed to be from.]) In at least three cases, 911 calls reporting a shooting purported to come from campus libraries, where the sound of gunshots could be heard over the phone, officials told The Washington Post... Although false bomb reports, shooter threats and swatting incidents are not new, bad actors used to be more easily traceable through landline phones. But the era of internet-based services, virtual private networks, and anonymous text and chat tools has made unmasking hoax callers far more challenging... In 2023, a Post investigation found that more than 500 schools across the United States were subject to a coordinated swatting effort that may have had origins abroad... [In Chattanooga, Tennessee last week] a dispatcher heard gunfire during a call reporting an on-campus shooting. "We grabbed everybody that wasn't already out on the street and got to that location," said University of Tennessee at Chattanooga Police spokesman Brett Fuchs. About 150 officers from several agencies responded. There was no shooter. The New York Times reports that an online group called "Purgatory" is "suspected of being connected to several of the episodes, including reports of shootings, according to cybersecurity experts, law enforcement agencies and the group members' own posts in a social media chat." (Though the Times, couldn't verify the group's claims.)Federal authorities previously connected the same network to a series of bomb scares and bogus shooting reports in early 2024, for which three men pleaded guilty this year... Bragging about its recent activities, Purgatory said that it could arrange more swatting episodes for a fee. USA Today tries to quantify the reach of swatting:Estimated swatting incidents jumped from 400 in 2011 to more than 1,000 in 2019, according to the Anti-Defamation League, which cited a former FBI agent whose expertise is in swatting. From January 2023 to June 2024 alone, more than 800 instances of swatting were recorded at U.S. elementary, middle and high schools, according to the K-12 School Shootings Database, created by a University of Central Florida doctoral student in response to the Parkland High School shooting in 2018.tise is in swatting... David Riedman, a data scientist and creator of the K-12 School Shooting Database, estimates that in 2023, it cost $82,300,000 for police to respond to false threats. Thanks to long-time Slashdot reader schwit1 for sharing the news.


    Read more of this story at Slashdot.


  • Rick Beato vs UMG: Fighting Copyright Claims Over Music Clips on YouTube
    In 2017 Rick Beato streamed "Rick's Rant Episode 2" — and just received a copyright claim this month. And days after jazz pianist Chick Corea died in 2021, Beato livestreamed a half-hour video which was mostly commentary, but with several excerpts from Corea's albums (at least one more than three minutes long). He also received a copyright claim for that one this August — just minutes after the claim on his 2017 video. These videos "are all fair use," Beato argues in a new video, noting it's also affected other popular YouTube channels like The Professor of Rock: Rick Beato: Universal Music Group [UMG] has continued to send emails about copyright content ID claims — and now copyright strikes — on my channel. As a matter of fact, I have three shorts — these are under a minute long — that if they go through in the next four days, I'll have three strikes on my channel! Now if you don't fight these things, those three strikes would actually remove my channel from YouTube. Five months ago Rick Beato had posted a clip from his interview with singer-songwriter Adam Duritz (founder of The Counting Crows) on YouTube. After 250,000 views, he'd earned a whopping $36.52 — and then Universal Music Group also claimed that video violated their copyright. (In the background the video played Duritz's song as he described how he wrote it.) "So they're gonna take my channel down over less than a hundred bucks — for using a small segment from an interview with him, on a song he sang on," Beato complained on YouTube. "That video is 55 seconds long!" "You need to play people's music to talk about it," Beato argues. "That is the definition of fair use. These are interviews with the people about their careers." (And the interviews actually help promote the artists for the record labels...) Rick Beato: The next one has me in it — it's an Olivia Rodrigo song — that I played maybe 10 seconds of the song on, and the short is 42 seconds long. Who did it? UMG. The third copyright strike is from a Hans Zimmer short. It's also UMG — it's from the Crimson Tide soundtrack. Now, what do these things say...? "Your video is scheduled to be removed in four days and your channel will get a copyright strike due to a removal request from a claimant. If you delete your video before then, your channel won't get a copyright strike." [And there's also emails like "After reviewing your dispute, UMG has decided that their copyright claim is still valid..."] I've had probably 4,000 claims, over the last 9 years — from things that are fair use. [When he interviewed producer Rick Rubin, that video got 13 separate copyright claims.] That's when I hired a lawyer to fight these. [Full-time, Beato says later.] And what he's done is he fought every single claim... We have successfully fought thousands of these now. But it literally costs me so much money to do this. Since we've been fighting these things — and never lost one — they still keep coming in... They're all Universal Music Group. So they obviously have hired some third party company, that are dredging up things, they're looking for things that haven't been claimed in the past — they're taking videos from seven or eight years ago! Slashdot reader MrBrklyn (Slashdot reader #4,775) writes on the "New York's Linux Scene" site that video bloggers like Beato "have been hounded by copyright pirates like UMG," arguing that new videos of support are a "rebellion gaining traction". (Beato's video drew 1,369,859 views — and attracted 24,605 Comments — along with videos of support from professional musicians like drummer Anthony Edwards, guitarist Justin Hawkins, and bassist Scot Lade, as well as two different professional music attorneys.) "Since there's rarely humans making any of these decisions and it's automated by bots, they don't understand these claims are against Universal Music's best interests," argues the long-running blog Saving Country Music (first appearing on MySpace in 2008).On YouTube videos, creators can freely filch copyrighted photos and other people's videos virtually free of ramifications. You can take an entire 2 1/2 hour film, impose it over a background, and upload it to YouTube, and usually avoid any problems. But feature a barely audible 8 1/2-second clip of music underneath audio dialogue, and you could have your entire podcast career evaporate overnight... People continue to ask, "Why doesn't Saving Country Music has a podcast?" Because what's the point of having a music podcast when you can't feature music? In fact, after over a decade of refusing to start one, I finally did, music free. What happened? About a dozen episodes in, someone took out a claim, and not only were all the episodes deleted, so was the entire account, even though no music even appeared on any of the episodes. I was given absolutely no recourse to fight whatever false claim had been made... The music industry continues to so colossal fail the artists and catalogs they represent, and the fans they're supposed to serve with this current system of how podcasts are handled. If everything changes today thanks to the Rick Beato rant, it would still be 15 years too late. But at least it would happen. Instead, they write, "Music labels have been leaving major opportunities to promote their catalogs and performers on the table with their punitive copyright claims that make it impossible to feature music on music podcasts and other platforms... "You aren't screwing podcasters. You're screwing artists who could be using podcasts to help promote their music. "


    Read more of this story at Slashdot.


  • What Made Meta Suddenly Ban Tens of Thousands of Accounts?
    "For months, tens of thousands of people around the world have been complaining Meta has been banning their Instagram and Facebook accounts in error..." the BBC reported this month...More than 500 of them have contacted the BBC to say they have lost cherished photos and seen businesses upended — but some also speak of the profound personal toll it has taken on them, including concerns that the police could become involved. Meta acknowledged a problem with the erroneous banning of Facebook Groups in June, but has denied there is wider issue on Facebook or Instagram at all. It has repeatedly refused to comment on the problems its users are facing — though it has frequently overturned bans when the BBC has raised individual cases with it. One examples is a woman lost the Instagram profile for her boutique dress shop. ("Over 5,000 followers, gone in an instant.") "After the BBC sent questions about her case to Meta's press office, her Instagram accounts were reinstated... Five minutes later, her personal Instagram was suspended again — but the account for the dress shop remained." Another user spent a month appealing. ("In June, the BBC understands a human moderator double checked," but concluded he'd breached a policy.) And then "his account was abruptly restored at the end of July. 'We're sorry we've got this wrong,' Instagram said in an email to him, adding that he had done nothing wrong."Hours after the BBC contacted Meta's press office to ask questions about his experience, he was banned again on Instagram and, for the first time, Facebook... His Facebook account was back two days later — but he was still blocked from Instagram. None of the banned users in the BBC's examples were ever told what post breached the platform's rules.Over 36,000 people have signed a petition accusing Meta of falsely banning accounts; thousands more are in Reddit forums or on social media posting about it. Their central accusation — Meta's AI is unfairly banning people, with the tech also being used to deal with the appeals. The only way to speak to a human is to pay for Meta Verified, and even then many are frustrated. Meta has not commented on these claims. Instagram states AI is central to its "content review process" and Meta has outlined how technology and humans enforce its policies. The Guardian reports there's been "talk of a class action against Meta over the bans."Users report Meta has typically been unresponsive to their pleas for assistance, often with standardised responses to requests for review, almost all of which have been rejected... But the company claims there has not been an increase in incorrect account suspension, and the volume of users complaining was not indicative of new targeting or over-enforcement. "We take action on accounts that violate our policies, and people can appeal if they think we've made a mistake," a spokesperson for Meta said. "It happened to me this morning," writes long-time Slashdot reader Daemon Duck," asking if any other Slashdot readers had their personal (or business) account unreasonably banned. (And wondering what to do next...)


    Read more of this story at Slashdot.


  • Five Indie Bands Quit Spotify After Founder's AI Weapons Tech Investment
    At the moment, the Spotify exodus of 2025 is a trickle rather than a flood, writes the Guardian, citing the departure of five notable bands "liked in indie circles," but not "the sorts to rack up billions of listens." "Still, it feels significant if only because, well, this sort of thing wasn't really supposed to happen any more."Plenty of bands and artists refused to play ball with Spotify in its early years, when the streamer still had work to do before achieving total ubiquity. But at some point there seemed to a collective recognition that resistance was futile, that Spotify had won and those bands would have to bend to its less-than-appealing model... This artist acquiescence happened in tandem — surely not coincidentally — with a closer relationship between Spotify and the record labels that once viewed it as their destroyer. Some of the bigger labels have found a way to make a lot of money from streaming: Spotify paid out $10bn in royalties last year — though many artists would point out that only a small fraction of that reaches them after their label takes its share... So why have those five bands departed in quick succession? The trigger was the announcement that Spotify founder Daniel Ek had led a €6oom fundraising push into a German defence company specialising in AI weapons technology. That was enough to prompt Deerhoof, the veteran San Francisco oddball noise pop band, to jump. "We don't want our music killing people," was how they bluntly explained their move on Instagram. That seems to have also been the animating factor for the rest of the departed, though GY!BE, who aren't on any social media platforms, removed their music from Spotify — and indeed all other platforms aside from Bandcamp — without issuing a statement, while Hotline TNT's statement seemed to frame it as one big element in a broader ideological schism. "The company that bills itself as the steward of all recorded music has proven beyond the shadow of a doubt that it does not align with the band's values in any way," the statement read. That speaks to a wider artist discontent in a company that has, even by its own standards, had a controversial couple of years. There was of course the publication of Liz Pelly's marmalade-dropper of a book Mood Machine, with its blow-by-blow explanation of why Spotify's model is so deleterious to musicians, including allegations that the streamer is filling its playlists with "ghost artists" to further push down the number of streams, and thus royalty payments, to real artists (Spotify denies this). The streamer continues to amend its model in ways that have caused frustration — demonetising artists with fewer than 1,000 streams, or by introducing a new bundling strategy resulting in lower royalty fees. Meanwhile, the company — along with other streamers — has struggled to police a steady flow of AI-generated tracks and artists on to the platform... [R]emoving yourself from such an important platform is highly risky. But if they can pull it off, the sacrifice might just be worth it. "A cooler world is possible," as Hotline TNT put it in their statement. The Guardian's culture editor adds that "I've been using Bandcamp more, even — gasp — buying albums..." "Maybe weaning ourselves off not just Spotify, but the way that Spotify has convinced us to consume music is the only answer. Then a cooler world might be possible."


    Read more of this story at Slashdot.


  • Intel Get $5.7 Billion Early. What's the Government's Strategy?
    Intel amended its deal with the U.S. Department of Commerce "to remove earlier project milestones," reports Reuters, "and received about $5.7 billion in cash sooner than planned." "The move will give Intel more flexibility over the funds."The amended agreement, which revises a November 2024 funding deal, retains some guardrails that prevent the chipmaker from using the funds for dividends and buybacks, doing certain control-changing deals and from expanding in certain countries. The move makes the Wall Street Journal wonder what, beyond equity, the U.S. now gets in return, calling government's position "a stake without a strategy."The U.S. has historically shied away from putting money into private business. It can't really outguess the market on where the most promising returns lie. Yet there are exceptions. Sometimes a company or industry risks failing without public support, and that failure would hurt the whole country, not just its shareholders and employees. Intel meets both conditions. It isn't failing, but it is losing money, its core business is in decline, and it lacks the capital and customers needed to make the most advanced semiconductors. If Intel were to fail, it would take a sizable chunk of the semiconductor industrial base with it. At a time of existential competition with China, that is a national emergency... [U.S. Commerce Secretary Howard Lutnick] said as a shareholder, the U.S. would help Intel "to create the most advanced chips in the world." And yet the deal doesn't provide Intel with new resources to accomplish that. Rather, to get the remaining $9 billion, Intel had to give the U.S. equity. This is more like a tax than an investment: Shareholders gave up a 10th of their ownership in return for money the company was supposed to get anyway... Some of the administration's forays into private business do reflect strategic thinking, such as the Pentagon's 15% stake in MP Materials in exchange for investment and contracts that help make the company a viable alternative to China as a supplier of rare-earth magnets for products such as automobiles, wind turbines, jet fighters and missile systems. But more often, companies recoil from government ownership... Though the U.S. stake dilutes Intel's existing shareholders, its stock has held up. There could be several reasons. It eliminates uncertainty over whether the remaining $9 billion in federal funds will be forthcoming... [B]ecause Washington has a vested interest in Intel's share price, investors believe it may prod companies such as Nvidia and Apple to buy more of its chips. But that only goes so far, the article seems to conclude, offering this quote from an analyst Bernstein investment research. "If Intel can prove they can make these leading-edge products in high volume that meets specifications at a good cost structure, they'll have customers lined up around the block. If they can't prove they can do it, what customer will put meaningful volume to them regardless of what pressure the U.S. government brings to bear?" CBS News also notes the U.S. government stake "is being criticized by conservatives and some economic policy experts alike, who worry such extensive government intervention undermines free enterprise." Thanks to Slashdot reader joshuark for sharing the news.


    Read more of this story at Slashdot.


The Register


  • Bring your own brain? Why local LLMs are taking off
    Running AIs on your own machine lets you stick it to the man and save some cash in the process
    Feature After a decade or two of the cloud, we're used to paying for our computing capability by the megabyte. As AI takes off, the whole cycle promises to repeat itself again, and while AI might seem relatively cheap now, it might not always be so.…


  • Programmers: you have to watch your weight, too
    We are drowning in code, but at least some folks are swimming
    opinion To fight the enshittification of software, the first step is to pinpoint why and how it happens. Some observers are trying to do that.…



  • Uncle Sam doesn't want Samsung, SK Hynix making memories in China
    End of verified end user status means South Korean memory vendors will need licenses to bring restricted chipmaking tech into Chinese fabs
    The US government already has a lot to say about what products chipmakers can and can't sell in China. This week the Commerce Department moved to make it harder for South Korean memory vendors Samsung and SK Hynix to continue manufacturing in the region.…




  • xAI's Grok has no place in US federal government, say advocacy groups
    Bias, a lack of safety reporting, and the whole 'MechaHitler' thing are all the evidence needed, say authors
    Public advocacy groups are demanding the US government cease any use of xAI's Grok in the federal government, calling the AI unsafe, untested, and ideologically biased.…




Polish Linux

  • Security: Why Linux Is Better Than Windows Or Mac OS
    Linux is a free and open source operating system that was released in 1991 developed and released by Linus Torvalds. Since its release it has reached a user base that is greatly widespread worldwide. Linux users swear by the reliability and freedom that this operating system offers, especially when compared to its counterparts, windows and [0]


  • Essential Software That Are Not Available On Linux OS
    An operating system is essentially the most important component in a computer. It manages the different hardware and software components of a computer in the most effective way. There are different types of operating system and everything comes with their own set of programs and software. You cannot expect a Linux program to have all [0]


  • Things You Never Knew About Your Operating System
    The advent of computers has brought about a revolution in our daily life. From computers that were so huge to fit in a room, we have come a very long way to desktops and even palmtops. These machines have become our virtual lockers, and a life without these network machines have become unimaginable. Sending mails, [0]


  • How To Fully Optimize Your Operating System
    Computers and systems are tricky and complicated. If you lack a thorough knowledge or even basic knowledge of computers, you will often find yourself in a bind. You must understand that something as complicated as a computer requires constant care and constant cleaning up of junk files. Unless you put in the time to configure [0]


  • The Top Problems With Major Operating Systems
    There is no such system which does not give you any problems. Even if the system and the operating system of your system is easy to understand, there will be some times when certain problems will arise. Most of these problems are easy to handle and easy to get rid of. But you must be [0]


  • 8 Benefits Of Linux OS
    Linux is a small and a fast-growing operating system. However, we can’t term it as software yet. As discussed in the article about what can a Linux OS do Linux is a kernel. Now, kernels are used for software and programs. These kernels are used by the computer and can be used with various third-party software [0]


  • Things Linux OS Can Do That Other OS Cant
    What Is Linux OS?  Linux, similar to U-bix is an operating system which can be used for various computers, hand held devices, embedded devices, etc. The reason why Linux operated system is preferred by many, is because it is easy to use and re-use. Linux based operating system is technically not an Operating System. Operating [0]


  • Packagekit Interview
    Packagekit aims to make the management of applications in the Linux and GNU systems. The main objective to remove the pains it takes to create a system. Along with this in an interview, Richard Hughes, the developer of Packagekit said that he aims to make the Linux systems just as powerful as the Windows or [0]


  • What’s New in Ubuntu?
    What Is Ubuntu? Ubuntu is open source software. It is useful for Linux based computers. The software is marketed by the Canonical Ltd., Ubuntu community. Ubuntu was first released in late October in 2004. The Ubuntu program uses Java, Python, C, C++ and C# programming languages. What Is New? The version 17.04 is now available here [0]


  • Ext3 Reiserfs Xfs In Windows With Regards To Colinux
    The problem with Windows is that there are various limitations to the computer and there is only so much you can do with it. You can access the Ext3 Reiserfs Xfs by using the coLinux tool. Download the tool from the  official site or from the  sourceforge site. Edit the connection to “TAP Win32 Adapter [0]


OSnews

  • It turns out Nokias legendary font makes for a great general user interface font
    If youre of a certain age (and not American), theres a specific corporate font youre most likely aware of. You may not know its exact name, and you may not actively remember it, but once you see it, you know exactly what youre looking at. The fonts called Nokia Sans (and Nokia Serif), and it was used by pretty much every single Nokia device between roughly 2002 and 2013 or so, when it was replaced by a very bland font made by Bruno Maag (with help from the person who designed Comic Sans) that they used after that. I cant remember why, exactly, but I got majorly nostalgic for Nokias characteristic, recognisable font, and decided to see if it would work as a user interface font. Now, the font is still owned by Nokia and I couldnt find a proper place to download it, but I eventually stumbled upon a site that had each individual variant listed for download. I downloaded each of them, installed them using KDEs font installation method, and tried it out as my user interface font. Youll quickly discover you shouldnt use the regular variant, but should instead opt for the Nokia Sans Wide variant. Back in 2011, when Nokia originally announced it was replacing Nokia Sans, the creator of the font, Erik Spiekermann, responded to the announcement on his blog. Apparently, one of the major reasons for Nokia to change fonts was that they claimed Nokia Sans wouldnt work as a user interface font, but Spiekermann obviously disagrees, pointing specifically to the Wide variant. In fact, Spiekermann does not pull any punches. After 10 years it was high time to look at Nokia’s typefaces as the dominant visual voice of the brand but whoever decided on a completely new direction was either not aware of what was available or was persuaded by Bruno Maag to start over. Bruno may not create the most memorable typefaces, but he certainly knows how to sell them. And technically, their fonts are excellent. Too bad they didn’t have the confidence to work with me on an update. Instead they’re throwing out ten years of brand recognition in favour of blandness. ↫ Erik Spiekermann I was pleasently surprised by just how nice the font looks when used as a general user interface font. Its extremely legible at a variety of sizes, and has a ton of character without becoming gimmicky or overbearing. What originally started as mere curiosity has now become my UI font of choice on all my machines, finally displacing Inter after many years of uncontested service. Of course, all of this is deeply personal and 95% an issue of taste, but I wanted to write about it to see if Im just entirely crazy, or if theres some method to my madness. Do note that Im using high DPI displays, and KDE on Wayland, and that all of this may look different on Windows or macOS, or on displays with lower DPI. One of Inters strengths is that it renders great on both high and lower DPI displays, but since I dont have any lower DPI displays anymore, I cant test it in such an environment. Im also not entirely sure about the legal status of downloading fonts like this, but I am fairly sure youre at least allowed to use non-free fonts for personal, non-commercial use, but please dont quote me on that. Since downloading each variant of these Nokia fonts is annoying, Id love to create and upload a zip file containing all of them, but Im sure thats illegal. Im not a font connoisseur, so I may be committing a huge faux pas here? Not that I care, but reading about font nerds losing their minds over things I never even noticed is always highly entertaining.


  • Blocky Planet: making Minecraft spherical
    Blocky Planet is a tech demo I created in the`Unity game engine`that attempts to map Minecraft’s cubic voxels onto a spherical planet. The planet is procedurally generated and fully destructible, allowing players to place or remove more than 20 different block types. While much of the implementation relies on common techniques you’d expect from your average Kirkland brand Minecraft clone, the spherical structure introduces a number of unique design considerations. This post will focus on these more novel challenges. ↫ Bowerbyte What a great read. Turning a flat earth game like Minecraft into something taking place on a spherical world seems impossible at first, but it seems Bowerbyte managed to do it. If youve ever wondered what it would be like to play a Minecraft-like game on an actual sphere, this is it.


  • Genode OS Framework 25.08 released
    Genode 25.08 is ripe with deeply technical topics that have been cooking since the beginning of the year or even longer. In particular our new kernel scheduler as the flagship feature of this release has been in the works since February 2024. Section`Kernel scheduling for fairness and low latency`tells its background story and explains the approach taken. Another culmination of a long-term endeavor is the introduction of an alternative to XML syntax, specifically designed for the usage patterns of Genode and Sculpt OS. Section`Consideration of a lean alternative to XML`kicks off the practical evaluation of an idea that gradually evolved over more than two years. Also the holistic storage optimizations presented in Section`Block-storage stack renovations`are the result of careful long-term analysis, planning, and execution. ↫ Genode 25.08 release notes While these are the three tentpole features for this release, theres a whole lot more here, as well. Genodes Linux-based PC device drivers have all been updated to Linux 6.12, there are a ton of fixes related to USB, optional EFI boot support in VirtualBox 6, and tons more.


  • The EU needs a corporate open source contribution tax! to fund open source maintainers
    Open source, the thing that drives the world, the thing Harvard says has an economic value of 8.8 trillion dollars (also a big number). Most of it is one person. And I can promise you not one of those single person projects have the proper amount of resources they need. If you want to talk about possible risks to your supply chain, a single maintainer that’s grossly underpaid and overworked. That’s the risk. The country they are from is irrelevant. ↫ Josh Bressers If the massive corporations that exploit the open source world for massive personal profit dont want to contribute back, perhaps its time we start making them. I envision an European Economic Area-wide open source contribution tax!, levied against any technology corporation operating within the European Economic Area, whether they actually make use of open source code or not, not entirely unlike how insurance works  you pay into it even if you dont make any claims. Such tax could be based on revenue, number of users, or any combination thereof or other factors. The revenue from this open source contribution tax is put into an EEA-wide fund and redistributed to EEA-based open source maintainers in the form of a monetary subsidy. Such types of taxes and money redistribution frameworks already exist in virtually every country for a whole wide variety of purposes and in a wide variety of forms, both in non-commercial and commercial settings. While it may seem complicated at first, it really isnt. The most difficult aspect is definitely figuring out who, exactly, would be eligible to receive the subsidy and how much, but that, too, is a question both governments and commercial entities answer every single day. No, it will never be perfect, and some people will receive a subsidy who shouldnt, and some who should receive it will not, but if thats a valid reason not to implement a tax like this, no tax or insurance should be implemented. The benefits are legion. Of course, there is the primary benefit of alleviating the thousands of open source maintainers who form the backbone of pretty much out entire digital infrastructure, which in and of itself should be reason enough. On top of that, it would also strengthen the open source world  on which, I wish to reiterate, our entire digital infrastructure is built  against the kind of infiltration we saw with XZ Utils. And to put another top on top of that, it would cement Europe, or the EEA more specifically, as the hub for open source development, innovation, and leadership, and would surely attract countless open source maintainers to relocate to Europe. In other words, it would serve the grander European ambition to become less dependent on the criminal behaviour US tech giants and the erratic behaviour of the US government. We can either wait indefinitely for those who exploit the free labour of open source maintainers to contribute, or we make them.


  • In-application browsers: the worst erosion of user choice you havent heard of
    A long, long time ago, Android treated browser tabs in a very unique way. Individual tabs were were seen as applications, and would appear interspersed with the recent applications list as if they were, indeed, applications. This used to be one of my favourite Android features, as it made websites feel very well integrated into the overall user experience, and gave them a sense of place within your workflows. Eventually, though, Google decided to remove this unique approach, as we cant have nice things and everything must be bland, boring, and the same, and now finding a website you have open requires going to your browser and finding the correct tab. More approachable to most people, Id wager, but a reduction in usability, for me. I still mourn this loss. Similarly, weve seen a huge increase in the use of in-application browsers, a feature designed to trap users inside applications, instead of letting them freely explore the web the moment they click on a link inside an application. Application developers dont want you leaving their application, so almost all of them, by default, will now open a webview inside the application when you click on an outbound link. For advertising companies, like Google and Facebook, this has the additional benefit of circumventing any and all privacy protections you may have set up in your browser, since those wont apply to the webview the application opens. This sucks. I hate in-application browsers with a passion. Decades of internet use have taught me that clicking on a link means Im opening a website in my browser. Thats what I want, thats what I expect, and thats how it should be. In-application webviews entirely break this normal chain of events; not because it improves the user experience, but because it benefits the bottom line of others. Its also a massive security risk. Worst of all, this switch grants these apps the ability to spy and manipulate third-party websites. Popular apps like Instagram, Facebook Messenger and Facebook have all been caught injecting JavaScript via their in-app browsers into third party websites. TikTok was running commands that were essentially a keylogger. While we have no proof that this data was used or exfiltrated from the device, the mere presence of JavaScript code collecting this data combined with no plausible explanation is extremely concerning. ↫ Open Web Advocacy Open Web Advocacy has submitted a detailed and expansive report to the European Commission detailing the various issues with these in-application browsers, and suggests a number of remedies to strengthen security, improve privacy, and preserve browser choice. I hope this gets picked up, because in-application browsers are just another way in which were losing control over our devices.


  • Word to save new files on Microsofts servers by default
    You already need custom scripts and third-party applications that make custom Windows ISOs to make installing Windows somewhat bearable  unless you enjoy spending hours manually disabling all the anti-user settings in Windows  and now theres another setting to add to the massive, growing list of stuff you have to fix after setting up a new Windows installation. Microsoft has announced that Word will start saving every new file to OneDrive (or another provider if youve installed one) by default. We are modernizing the way files are created and stored in Word for Windows! Now you don’t have to worry about saving your documents: Anything new you create will be saved automatically to OneDrive or your preferred cloud destination. ↫ Raul Munoz on the Microsoft 365 Insider Blog Theres the usual spiel of how this is safer and supposedly more convenient, but I suspect the real reason Microsoft is doing this is listed right there at the end of the list of supposed benefits: this enables the use of Copilots AI! features right from the beginning. In other words, by automatically saving your new Word documents to OneDrive by default, youre giving Microsoft access to whatever you write for AI! training purposes. The setting can be changed, but defaults matter and few people change them. Its also possible to set another provider than OneDrive as your online storage, but again  defaults matter. In fact, I wouldnt be surprised if few people will even realise their Word documents will be stored not on their local PC, but on Microsofts servers.


  • Dick Picks unique database operating system
    We usually at least recognize old computer hardware and software names. But Asianmoetry taught us a new one: Pick OS. This 1960s-era system was sort of a database and sort of an operating system for big iron used by the Army. The request was for an English-like query language, and TRW assigned two guys, Don Nelson and Dick Pick, to the job. The planned query language would allow for things like “list the title, author, and abstract of every transportation system reference with the principal city ‘Los Angeles’.” This was GIM or generalized information management, and, in a forward-looking choice, it ran in a virtual machine. ↫ Al Williams at Hackaday The linked article is a short summary of a YouTube video by the YouTube channel Asianometry, which goes into a lot more detail about Pick OS, where it came from, what it can do, who the people involved were, and where Pick OS eventually ended up. I had never heard of this system before, and its easy to see why  not only was it used almost exclusively in vertically integrated complete solutions, it was also whitelabeled, so it existed under countless different names. Regardless, it seems the people who actually had to use it were incredibly enthusiastic about it, and to this day you can read new comments from people fondly remembering how easy to use it was. It has always been proprietary, and still is to this day, apparently owned by a company called Rocket Software, who dont seem to actually be doing anything with it.


  • Guix gets a new Rust packaging model
    While Nix and NixOS get all the attention when it comes to declarative package management, there are other, competing implementations of the same general idea. Guix, developed as part of the GNU Project, was originally based on Nix, but grew into its own thing. The project recently announced a major change to how it packages Rust and its countless dependencies and optional crates. We have changed to a simplified Rust packaging model that is easier to automate and allows for modification, replacement and deletion of dependencies at the same time. The new model will significantly reduce our Rust packaging time and will help us to improve both package availability and quality. ↫ Hilton Chain at the Guix blog I hear people talk about Nix and NixOS all the time  I tried it myself, too, but I felt I was using an IBM z17 mainframe to watch a YouTube video  and in fact, Nix has kind of become a meme in and of itself, but you never hear people talk about Guix. With this being OSNews, Im assuming theres going to be people here using it, and Im incredibly curious about your experiences. What are the features and benefits that make you use it? If youre curious  the best way to try Guix is probably to install the GNU Guix System, the Linux distribution built around Guix and Shepard, GNUs alternative init system. Its available for i686, x86_64, ARMv7, and AArch64, and can be virtualised too, of course.


  • The size of Adobe Reader installers through the years
    The following chart shows how the Adobe Reader installer has grown in size over the years. When possible, 64-bit versions of installers were used. ↫ Alexander Gromnitsky Disk space is cheap, sure, but this is insanity.


  • My OpenBSD home network setup!
    I recently moved to an area with more internet provider options, all of which were not satellite-based. This change allowed me leave my current provider (Starlink) and also freed my network from being locked behind CGNAT. The jump from ~150Mbps to 1Gbps has been fantastic, but the real benefit in this switch has been the ability to overhaul my home network setup. ↫ Bradley Taunt OpenBSD is generally the way to go for custom router setups, it seems, and if it wasnt for my own full Ubiquiti setup, Id definitely consider this too.


Linux Journal - The Original Magazine of the Linux Community

  • From Novice to Pro: Mastering Lightweight Linux for Your Kubernetes Projects
    by George Whittaker Introduction: Why Lightweight Matters for Kubernetes Devs
    When running Kubernetes clusters for development, the operating system’s footprint can make or break performance and agility. Heavy, general-purpose Linux distributions waste memory and CPU cycles on components you’ll never use, while lightweight, container-focused distros keep your nodes lean and optimized. For developers experimenting with k3s, MicroK8s, or full-blown Kubernetes clusters, lightweight Linux offers faster spin-ups, lower overhead, and environments that better simulate production-grade setups.

    In this guide, we’ll take a look at the best lightweight Linux options for Kubernetes developers, compare their strengths, and walk through code examples for quick setup. Whether you’re spinning up a local test cluster or building a scalable dev lab, this breakdown will help you pick the right base OS and make the most of your Kubernetes workflow.
    Key Considerations for Dev-Focused Kubernetes Nodes
    Before diving into individual distros, it’s important to understand what really matters when pairing Linux with Kubernetes:

    Minimal Resource Usage: A slim OS footprint leaves more CPU and RAM for pods and workloads.

    Container Runtime Compatibility: Built-in or easy-to-install support for containerd, CRI-O, or Docker ensures smooth cluster bootstrapping.

    Init System Support: Compatibility with systemd or OpenRC impacts how Kubernetes services are managed.

    Immutable vs. Mutable: Immutable systems like Fedora CoreOS or Talos enhance reliability but restrict tinkering, while Alpine and Ubuntu Core offer more flexibility for on-the-fly customization.

    Developer Friendliness: A distro should integrate seamlessly with kubectl, Helm, CI/CD agents, and debugging workflows.
    Go to Full Article


  • Containers in 2025: Docker vs. Podman for Modern Developers
    by George Whittaker Introduction
    Container technology has matured rapidly, but in 2025, two tools still dominate conversations in developer communities: Docker and Podman. Both tools are built on OCI (Open Container Initiative) standards, meaning they can build, run, and manage the same types of images. However, the way they handle processes, security, and orchestration differs dramatically. This article breaks down everything developers need to know, from architectural design to CLI compatibility, performance, and security, with a focus on the latest changes in both ecosystems.
    Architecture: Daemon vs. DaemonlessDocker's Daemon-Based Model
    Docker uses a persistent background service, dockerd, to manage container lifecycles. The CLI communicates with this daemon, which supervises container creation, networking, and resource allocation. While this centralized approach is convenient, it introduces a single point of failure: if the daemon crashes, every running container goes down with it.
    Podman’s Daemonless Approach
    Podman flips the script. Instead of a single daemon, every container runs as a child process of the CLI command that started it. This design eliminates the need for a root-level service, which is appealing for environments concerned about attack surfaces. Containers continue to run independently even if the CLI session ends, and they can be supervised with systemd for long-term stability.
    Developer Workflow and CLIFamiliar Command Structure
    Podman was designed as a near drop-in replacement for Docker. Commands like podman run, podman ps, and podman build mirror their Docker equivalents, reducing the learning curve. Developers can often alias docker to podman and keep using their existing scripts.

    Run an NGINX container

    Docker
    docker run -d --name web -p 8080:80 nginx:latest
    Podman
    podman run -d --name web -p 8080:80 nginx:latestGUI Options
    For desktop users, Docker Desktop remains polished and feature-rich. However, Podman Desktop has matured significantly. It now supports Windows and macOS with better integration, faster file sharing, and no licensing restrictions, making it appealing for enterprise environments.
    Go to Full Article


  • Rising from the Ashes: How AlmaLinux and Rocky Linux Redefined the Post-CentOS Landscape
    by George Whittaker
    When Red Hat announced the abrupt end of traditional CentOS in late 2020, the Linux ecosystem was shaken to its core. Developers, sysadmins, and enterprises that relied on CentOS for years suddenly found themselves scrambling for answers. Out of that disruption, two projects, AlmaLinux and Rocky Linux, emerged to carry forward the legacy of CentOS while forging their own identities. This article dives into how these two distributions established themselves as reliable, enterprise-grade options for developers and organizations alike.
    The Fall of CentOS: An Industry Shockwave
    For over a decade, CentOS was the backbone of countless servers, from small web hosts to enterprise data centers. It provided a stable, free, and RHEL-compatible platform, perfect for developers and administrators building and maintaining critical infrastructure.

    That stability came to an end when Red Hat pivoted CentOS to a rolling-release model, CentOS Stream. Instead of offering a downstream, binary-compatible version of RHEL, Stream became a preview of future RHEL updates. This move caused widespread frustration:

    Organizations that built production environments around CentOS suddenly faced shortened support lifecycles.

    Developers who depended on a “set-and-forget” environment now had to deal with the unpredictability of a rolling release.

    Compliance-driven industries were left in limbo, as running on an unsupported OS could trigger security and regulatory risks.

    This disruption created a vacuum, and the Linux community quickly stepped up to fill it.
    The Birth of AlmaLinux and Rocky LinuxAlmaLinux: Community-Driven, Enterprise-Ready
    Shortly after the CentOS announcement, CloudLinux, a company with deep experience in server environments, launched AlmaLinux. The first stable release landed in March 2021. True to its name, “alma” meaning “soul”, the project’s mission was clear: to embody the spirit of CentOS while maintaining community governance. The non-profit AlmaLinux OS Foundation now oversees the project, ensuring it remains free and open for everyone.
    Rocky Linux: A Tribute and a Promise
    At almost the same time, Gregory Kurtzer, one of the original CentOS founders, unveiled Rocky Linux, named in honor of CentOS co-founder Rocky McGaugh. From the beginning, Rocky positioned itself as a 1:1 binary-compatible rebuild of RHEL, mirroring CentOS’s original mission. Its governance structure, managed by the Rocky Enterprise Software Foundation (RESF), ensures that the project remains rooted in community oversight rather than corporate ownership.
    Go to Full Article


  • Why GNOME Replaced Eye of GNOME with Loupe as the Default Image Viewer
    by George Whittaker A Shift in GNOME’s Core Applications
    For over two decades, Eye of GNOME (often shortened to EOG) was the silent workhorse of the GNOME desktop environment. It wasn’t flashy, but it did exactly what most people expected: double-click a picture, and it opened instantly. Yet, with the arrival of GNOME 45 in late 2023, a new name appeared in the lineup of “core” apps: Loupe. From that moment forward, Loupe became the official default image viewer on GNOME desktops, displacing EOG.

    This decision wasn’t made lightly. GNOME has been steadily refreshing its default applications in recent years, Gedit was replaced by GNOME Text Editor, and Cheese gave way to Snapshot. Loupe is the continuation of this modernization trend. Eye of GNOME is still available in repositories for those who want it, but the GNOME team has shifted its endorsement to Loupe as the better long-term solution.
    What Loupe Brings to the Table
    Loupe isn’t just a reskin of EOG. It was built from scratch with today’s hardware, design standards, and security expectations in mind. At first glance, the interface looks minimal, but there’s more happening beneath the hood than many realize.

    Rust-Powered Foundation – Unlike Eye of GNOME’s decades-old C codebase, Loupe is written in Rust. This choice immediately grants it memory safety, helping avoid whole categories of crashes and vulnerabilities. For an app that regularly opens untrusted files, this is an important safeguard.

    GPU-Accelerated Image Handling – Instead of pushing all rendering to the CPU, Loupe leverages the GPU. Panning across a large image or zooming into a 50-megapixel photo feels fluid, even on high-resolution displays.

    Touch-Friendly Navigation – GNOME has been preparing for a future that includes more touch devices. Loupe fits right in, supporting pinch-to-zoom, two-finger swipes to move between images, and smooth transitions that feel natural on both touchscreens and trackpads.

    Streamlined Metadata View – Instead of burying photo information behind a separate dialog, Loupe integrates an optional sidebar. With a click, you can see dimensions, file size, EXIF data, and even location details without leaving the main view.

    Security Through Sandboxing – Image decoding is handled in isolated processes using a new backend called Glycin. If a corrupt or malicious image tries to crash the decoder, it won’t take the entire viewer down with it.
    Go to Full Article


  • Ptyxis: Ubuntu’s Leap Into GPU-Powered Terminals
    by George Whittaker
    For decades, the humble terminal has been one of the most unchanging parts of the Linux desktop. Text streams flow in monochrome grids, and while the underlying libraries have evolved, the experience has remained more or less the same. Ubuntu, however, is preparing to rewrite this narrative. The distribution is adopting Ptyxis, a fresh terminal emulator designed for modern computing, and one of its standout qualities is that it leans on the GPU for rendering rather than relying solely on the CPU.

    This shift is more than cosmetic. It represents a rethink of how command-line tools should perform in an era of container-heavy development, high-DPI displays, and demanding workloads. Let’s unpack what makes Ptyxis a different breed of terminal, why Ubuntu is betting on it, and what it means for everyday users and power developers alike.
    The Origin Story of Ptyxis
    Ptyxis is not an accidental side project. It was initially prototyped under the name GNOME Prompt by Christian Hergert, a well-known GNOME contributor also behind GNOME Builder. Early experiments showed there was space for a terminal designed from scratch with today’s GNOME ecosystem and GPU pipelines in mind.

    To avoid conflicts with existing software, the project was later rebranded as Ptyxis. The application has since matured rapidly, and major distributions such as Fedora and Ubuntu have committed to it. Ubuntu introduced it in experimental form in 24.10, and by the upcoming Ubuntu 25.10 “Questing Quokka”, it is expected to replace the aging GNOME Terminal as the default choice.
    A New Kind of Terminal ExperienceGPU Acceleration as the Core
    Traditional terminals typically rely on CPU-bound rendering stacks, often through libraries like Cairo and Pango. This works fine until you throw thousands of lines of log output or try to run full-screen text-based UIs that push rendering to its limits. Ptyxis sidesteps these bottlenecks by shifting the drawing work to the graphics processor, taking advantage of Vulkan or OpenGL backends supplied by GTK4.

    The result is immediately noticeable: smooth scrolling, responsive updates, and consistent performance even with massive amounts of text on screen. It’s not just about speed, either, offloading rendering to the GPU reduces CPU strain, leaving headroom for the processes you’re actually running.
    Go to Full Article


  • KDE Plasma 6 on Wayland: the Payoff for Years of Plumbing
    by George Whittaker Why this release cycle feels different
    For most of the last decade, talk about Wayland on KDE sounded like a promise: stronger security, modern graphics, fewer legacy foot‑guns, once the pieces land. With Plasma 6, those pieces finally clicked into place. Plasma 6.1 delivered two changes that go straight to how frames hit your screen, explicit synchronization and smarter buffering, while 6.2 followed with color‑management and HDR work that makes creators and gamers care. Together, they turn “Wayland someday” into a desktop you can log into today without caveats.
    The frame pipeline finally behavesExplicit sync: the missing handshake
    On X11/older Wayland setups, graphics drivers and compositors often assumed when work finished (“implicit sync”), which is fine until it isn’t, especially on NVIDIA, where that guesswork frequently produced flicker or glitches. Plasma 6.1’s Wayland session speaks the explicit sync protocol instead. Now the compositor and apps exchange fences that say “this frame is done,” reducing visual artifacts and making delivery predictable. If you run the proprietary NVIDIA driver, this is the change you’ve been waiting for: NVIDIA added explicit‑sync support in the 555 series, and XWayland 24.1 gained matching support so many games and legacy X11 apps benefit as well.

    What you’ll notice: fewer one‑off hitches, less tearing in XWayland content, and a general sense that motion is “locked in” rather than tentative, particularly with the 555.58+ drivers.
    Dynamic triple buffering: fewer “missed the train” stutters
    Traditional double buffering is cruel: miss a vblank by a hair and your framerate can fall in half. KWin 6.1 added triple buffering that only kicks in when the compositor predicts a frame won’t make the next refresh, letting another frame be “in flight” without permanently increasing latency. One of KWin’s core developers outlined how it activates selectively, tries not to add avoidable lag, and works regardless of GPU vendor. It sounds simple; it feels like the end of random judder during heavy scenes.
    VRR/Adaptive‑Sync polish
    Variable refresh is no longer a roulette wheel. KDE’s devs chased down stutter/flicker under Adaptive‑Sync, and those fixes landed in the same timeframe as Plasma 6.1. If your monitor supports FreeSync/G‑Sync Compatible and the GPU stack is sane, frame pacing is noticeably calmer.
    Go to Full Article


  • GNOME 48 Reimagined: Smoother Settings, Glorious HDR, and Precision Scaling
    by George Whittaker Introduction
    With the arrival of GNOME 48, the desktop experience steps into a refreshing new era, blending clarity, visual richness, and adaptability. This release unfolds a more intuitive configuration interface, native HDR capability, and finer-grained display scaling. Whether you’re streaming, tweaking your workspace, or simply glancing over your notifications, GNOME 48 brings you improvements that feel both modern and meaningful, crafted to feel like they were made for real people doing real tasks.
    A Refined Settings EnvironmentRevamped Configuration Hub
    GNOME 48’s Settings app has shed its former rigidity and stepped into a role that feels inviting and efficient. Never again will you wade through scattered sections, options are now neatly grouped, and the design flow intuitively matches how your mind works. Menus anticipate your focus, search responds predictably, and the overall layout whispers, “you’re in control.”
    Assistive Features Front and Center
    Accessibility isn’t an afterthought anymore, it’s central. Icons are clearer, toggles are easier to reach, and each label reads like someone actually sat down to ask, “How can we make this tool-friendly for everyone?” GNOME 48 puts inclusivity on full display, ensuring that those who rely on adaptive tech never need to dig for solutions.
    Tighter System Synergy
    Gone are the days when Wi-Fi, sound levels, or power settings felt tucked away. These essentials now respond faster, with less visual fuss and more behind-the-scenes connection to smarter system logic. It’s the kind of integration where you flick a switch and everything else falls into harmony.
    Elevating Visuals with HDRWhy HDR Lights Up the Desktop Experience
    Forget washed-out colors or muddled shades, GNOME 48 steps up with HDR rendering, delivering brightness, depth, and contrast that bring your display to life. Darker shadows, gleaming highlights, sumptuous gradients, HDR transforms ordinary visuals into something cinematic. It’s not just eye candy; it's more faithful media, smoother workflows, and next-level artistic clarity.
    What You’ll Need to Shine
    This full-color upgrade doesn’t work across all drift of hardware, but it does mesh well with modern, HDR-capable monitors and compatible GPU drivers accelerating through Wayland. GNOME 48 ensures things just click when your stack supports it, activating the richer palette whenever your display and graphics card are game.
    Go to Full Article


  • Guardians of Privacy: How Security-Driven Linux Distributions Are Rising to Meet Growing Digital Fears
    by George Whittaker
    In the last decade, the digital landscape has shifted from a space of casual convenience to a battleground for personal information. From constant corporate profiling to sprawling government surveillance programs, the reality is clear, our devices have become treasure troves for those seeking to exploit or monitor us. As trust in mainstream platforms erodes, a surge of interest has emerged around operating systems that place security and privacy at their very core. At the forefront of this movement are a new breed of Linux distributions designed not just for power users and security experts, but for anyone who values control over their data.
    The Age of Hyper-Exposure
    Every click, swipe, and typed search leaves a footprint. This wasn’t always a mainstream concern, many users once traded data for convenience without a second thought. But a string of high-profile incidents changed the narrative: massive data breaches leaking millions of personal records, whistleblower revelations exposing global surveillance programs, and marketing giants quietly building extensive behavioral profiles of individuals.

    For the average person, these events have shattered the illusion of online privacy. For professionals handling sensitive work, journalists, lawyers, healthcare providers, data exposure is more than a nuisance; it’s a potential threat to safety, reputation, and trust. The result? An accelerating search for technology that resists tracking, intercepts intrusions, and limits data leakage before it can begin.
    Why Linux Has Become the Privacy Battleground
    Linux, in its many forms, has always worn transparency as a badge of honor. Unlike proprietary systems where code is hidden from public scrutiny, Linux distributions are open-source, meaning anyone can inspect the source code, audit for vulnerabilities, or suggest improvements. This creates a self-reinforcing cycle of trust and accountability.

    Beyond transparency, Linux allows deep configurability. Users can strip away unnecessary software, remove hidden telemetry, and harden their system against attacks. Updates arrive quickly, often patched within hours of a security flaw being reported, compared to the slower cycles of commercial operating systems. And most importantly, Linux is free from the corporate incentives that often drive aggressive data collection.
    What Sets Security-Focused Distros Apart
    While all Linux distributions benefit from open-source transparency, security-oriented distros go several steps further by building privacy and protection into their foundation:

    Hardened System Kernels: Some distros use custom kernels with advanced security patches (like grsecurity) to close off potential attack vectors.
    Go to Full Article


  • When Flatpak’s Sandbox Cracks: Real‑Life Security Issues Beyond the Ideal
    by George Whittaker Introduction
    Flatpak promises a secure runtime for Linux applications through container-like isolation, relying on bubblewrap namespaces, syscall filtering, and portal interfaces. In theory, each app should operate inside a strong sandbox, disconnected from the host system. But in reality, experience shows gaps, tiny cracks through which apps may escape with serious consequences.
    The Sandbox Promise… and the Reality
    Flatpak applications begin life in a highly-restricted environment: no network by default, no access to host files beyond the runtime and a private data directory, limited syscalls, and restricted access to session or system services. Portals provide a controlled channel for granting specific capabilities (e.g. file dialogs, screenshot, printing) without broad privileges.

    Yet, many Flatpak packages declare broad permissions like filesystem=home, filesystem=host, or device=all. That effectively grants full read-write access to the user's home directory or even system devices, defeating the purpose of the sandbox in practice. Users often assume that 'sandboxed' means locked-down, but blanket permissions expose them to risk.
    Real-World Breakouts from the SandboxCVE‑2024‑32462: RequestBackground Portal Abuse
    Security researcher Gergo Koteles uncovered a high-severity vulnerability where malicious Flatpak apps could craft a .desktop file via the org.freedesktop.portal.Background.RequestBackground interface. That tricked Flatpak’s --command= parsing into injecting bwrap arguments (e.g. --bind). This allowed arbitrary host commands to execute outside the sandbox boundary. Versions before 1.10.9, 1.12.9, 1.14.6, and 1.15.8 were affected. Patched in the listed versions and mitigated in xdg-desktop-portal 1.18.4 and newer.
    CVE‑2024‑42472: Persistent Data Symlink Exploit
    A Flatpak flag, --persist (or persistent= in manifest), allows apps writable storage within their data directory. But if a malicious install replaces that directory with a symlink pointing to sensitive host folders (e.g. ~/.ssh), the sandbox mount entry follows it into the real filesystem, giving the app unintended access to files outside its name-spaced area. All versions up to 1.14.8 and 1.15.x ≤ 1.15.9 are vulnerable; patched in 1.14.10 and 1.15.10+.
    Policy Complexity and Ecosystem Slip-Ups
    A detailed study of hundreds of Flatpak and Snap packages found that nearly 42% of Flatpak apps either override the supposed isolation or misconfigure sandboxing, resulting in overprivilege or potential escape paths. Crafting fine-grained sandbox policy is hard, and mistakes slip through easily.
    Go to Full Article


  • Veil of Vigilance: Tails 6.0’s New Frontiers in Surveillance Resistance
    by George Whittaker Opening the Curtain on Tails 6.0
    On February 27, 2024, the Tails Project unveiled version 6.0, a milestone release built atop Debian 12 “Bookworm” and GNOME 43 . Tails, short for The Amnesic Incognito Live System, is engineered from the ground up to prevent data leakage, protect against targeted surveillance, and ensure that every use leaves no trace unless explicitly permitted . Version 6.0 refines this mission with a bold suite of features tailored to block modern surveillance tactics.
    USB Integrity: Stopping Sneaky Hardware ThreatsWarnings for Persistent Storage Failures
    Live USBs are critical lifelines for persistence in Tails. Now, Tails 6.0 alerts users when underlying storage suffers read/write errors. This early detection, prior to catastrophic data loss, allows users to back up their encrypted areas before disaster strikes .
    Defense Against Rogue USB Devices
    One of the stealthiest attack vectors involves plugging in malicious USB gear while a device is unattended. Tails now ignores any USB device connected while the screen is locked. Only when the screen is unlocked can new USB devices be activated, closing the door on rubber‑duckying-style malware delivery .
    Usability Upgrades That Don’t Sacrifice SecurityAutomatic Device Mounting with Safeguards
    Plug in a flash drive or encrypted external disk while Tails is unlocked, and the system now instantly mounts the device and prompts for decryption (e.g. VeraCrypt volumes), smoothing workflow while preserving safeguards .
    Ambient Display Options for Privacy-Conscious Use
    GNOME 43 brings native support for dark mode, night‑light warm tones, or combinations thereof, all accessible via the system menu. These modes reduce eye strain and lower screen glare in sensitive situations, minimizing accidental disclosure in low-light settings .
    Simplified Screenshots and Screencast Access
    Through a redesigned system menu, users can now take screenshots or record screencasts with a few clicks—reducing reliance on external tools and minimizing exposure via unnecessary browser or app use .
    Streamlined Gmail Setup in Thunderbird
    Configuring a Gmail account is now smoother: Tails 6.0 allows direct sign‑in within Thunderbird using standard two-step verification, no manual IMAP or security adjustments required, eliminating error-prone manual steps .
    Go to Full Article


Page last modified on November 02, 2011, at 10:01 PM