Author: Yuri Gagarin

NPM has implemented mandatory two-factor authentication for significant packages

GitHub has expanded the mandatory two-factor authentication in the NPM repository, which will now apply to developer accounts maintaining packages with over 1 million downloads per week or used as dependencies in more than 500 packages. Previously, two-factor authentication was only mandatory for those maintaining the 500 most popular NPM packages (based on the number of dependent packages). Those maintaining significant packages will now […]

Using machine learning to detect emotions and control facial expressions

Andrey Savchenko from the Nizhny Novgorod branch of the Higher School of Economics published the results of his research in the field of machine learning related to emotion recognition in the faces of people present in photographs and videos. The code is written in Python using PyTorch and is distributed under the Apache 2.0 license. Several ready-to-use models are available, including those suitable for mobile devices. […]

Release of the TrueNAS CORE 13.0-U3 distribution for creating network storage

TrueNAS CORE 13.0-U3 has been released, a distribution for quickly deploying Network-Attached Storage (NAS) that continues the development of the FreeNAS project. TrueNAS CORE 13 is based on the FreeBSD 13 codebase, features integrated support for ZFS, and offers management through a web interface built using the Django Python framework. Access to the storage is supported via FTP, NFS, Samba, AFP, rsync, and iSCSI, for […]

Buffer overflow in OpenSSL, exploited when checking X.509 certificates.

A patch release of the OpenSSL cryptographic library 3.0.7 has been published, addressing two vulnerabilities. Both issues are caused by buffer overflows in the code that checks the email field in X.509 certificates and could potentially lead to code execution when processing specially crafted certificates. At the time of the release, OpenSSL developers have not reported any confirmed working exploits that could lead to execution […]

The exfatprogs 1.2.0 package now includes support for exFAT file system recovery.

The release of exfatprogs 1.2.0 has been published, developing the official set of Linux utilities for creating and verifying exFAT file systems, which replaces the outdated exfat-utils package and accompanies the new exFAT driver built into the Linux kernel (available starting with kernel release 5.7). The set includes the utilities mkfs.exfat, fsck.exfat, tune.exfat, exfatlabel, dump.exfat, and exfat2img. The code is written in C and is distributed […]

The release of systemd 252 includes support for UKI (Unified Kernel Image).

After five months of development, the release of the system manager systemd 252 has been presented. The key change in the new version is the integration of support for an upgraded boot process, allowing for the verification of digital signatures not only for the kernel and bootloader but also for components of the base system environment. The proposed method involves using a unified kernel image (UKI) for booting, which combines the kernel boot handler […]

Release of Wine 7.20 and Wine staging 7.20

An experimental release of the open implementation of WinAPI — Wine 7.20 has been made. Since the release of version 7.19, 29 bug reports have been closed and 302 changes have been made. The most significant changes include: the Wine Mono engine with the .NET platform implementation has been updated to version 7.4. A font binding mechanism has been added, allowing one or more fonts to be bound to another font. During binding […]

For the open operating system Haiku, which continues the development of BeOS ideas, a layer has been prepared to ensure compatibility with Wayland, allowing toolkits and applications that use this protocol to run.

A vulnerability CVE-2022-40284 has been identified in the ntfs-3g utility from the NTFS-3G set, which offers a user-space implementation of the NTFS file system. This vulnerability could potentially allow code to be executed with root privileges in the system when mounting a specially crafted partition. The vulnerability has been patched in the NTFS-3G 2022.10.3 release. It was caused by an error in the metadata parsing code in NTFS partitions, leading to a buffer overflow when processed in a certain way […]

A compatibility layer for Wayland has been implemented for Haiku.

An adaptation layer for compatibility with Wayland has been prepared for the open operating system Haiku, which continues to develop the ideas of BeOS, allowing toolkits and applications that use this protocol to run, including applications based on the GTK library. The layer was developed by Ilya Chugin, who is also working on the Haiku port for the RISC-V architecture and the adaptation of Wine for Haiku. The layer provides the library libwayland-client.so, based on […]

Release of GNU Make 4.4

After nearly three years of development, the release of the GNU Make 4.4 build system has occurred. In addition to bug fixes, notable changes in the new version include: The deprecation of OS/2 (EMX), AmigaOS, Xenix, and Cray platforms, which will be dropped in the next release. The requirements for the build environment have been raised; a compiler that supports features from the C99 standard is now necessary to build GNU Gnulib. […]

Google Discontinues JPEG XL Support in Chrome

Google has decided to discontinue the experimental support for the JPEG XL format in the Chrome browser and will completely remove it in version 110 (up to this point, JPEG XL support had been disabled by default and required changes to the setting in chrome://flags). One of the Chrome developers cited reasons for this decision: Experimental flags and code should not remain indefinitely. […]

Release of outline-ss-server 1.4, the Shadowsocks proxy implementation from the Outline project

The release of the outline-ss-server proxy server version 1.4 has been published, which utilizes the Shadowsocks protocol to hide the nature of traffic, bypass firewalls, and evade packet inspection systems. The server is developed by the Outline project, which also provides a wrapper of client applications and a management interface, allowing for quick deployment of multi-user Shadowsocks servers based on outline-ss-server in public cloud environments or on one's own hardware, managing them through a web interface, and organizing […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster