Author: Yuri Gagarin

Attack on Node.js through JavaScript Object Prototype Manipulation

Researchers from the Helmholtz Center for Information Security (CISPA) and the Royal Institute of Technology in Sweden analyzed the applicability of prototype pollution techniques for creating attacks on the Node.js platform and popular applications based on it, leading to code execution. The prototype pollution method leverages a feature of JavaScript that allows new properties to be added to the root prototype of any object. In applications […]

Update of the free antivirus package ClamAV 0.103.7, 0.104.4 and 0.105.1

Cisco has released new versions of the free antivirus package ClamAV 0.105.1, 0.104.4, and 0.103.7. Recall that the project came under Cisco's control in 2013 after the acquisition of Sourcefire, which developed ClamAV and Snort. The project's code is distributed under the GPLv2 license. Version 0.104.4 will be the last update in the 0.104 branch, while the 0.103 branch has been classified as LTS and will be supported […]

Release of package manager NPM 8.15 with support for local integrity checking of packages

GitHub has introduced the release of the NPM package manager 8.15, which is included with Node.js and used for distributing modules in JavaScript. It is noted that over 5 billion packages are downloaded daily through NPM. Key changes: A new command 'audit signatures' has been added for conducting local integrity audits of installed packages without requiring manipulation with PGP utilities. The new verification mechanism is based on […]

The OpenMandriva project has begun testing the rolling distribution OpenMandriva Lx ROME

Developers of the OpenMandriva project have presented a preliminary release of the new edition of the OpenMandriva Lx ROME distribution, which utilizes a rolling release model for continuous delivery of updates. The proposed edition provides access to new versions of packages developed for the OpenMandriva Lx 5.0 branch. An ISO image of 2.6 GB has been prepared for download, featuring the KDE desktop and supporting Live mode booting. The new versions of packages include […]

Release of Tor Browser 11.5.1 and Tails 5.3 distribution

The release of the specialized distribution Tails 5.3 (The Amnesic Incognito Live System) has been formulated, based on a Debian package base and intended for anonymous internet access. Anonymous access in Tails is provided by the Tor system. All connections except traffic through the Tor network are blocked by the packet filter by default. To store user data in persistence mode between launches, encryption is applied. […]

Release of Firefox 103

The release of the Firefox 103 web browser has taken place. Additionally, updates for the long-term support branches 91.12.0 and 102.1.0 have been formed. The Firefox 104 branch will enter beta testing within the next few hours, with a release scheduled for August 23. Key features of Firefox 103 include: The Total Cookie Protection mode, which was previously only applied in […]

The author of the Latte Dock panel has announced the cessation of work on the project.

Michail Vourlakos announced his withdrawal from the development of the Latte Dock project, which develops an alternative task panel for KDE. The reason given is a lack of free time and a loss of interest in further work on the project. Michail had planned to leave the project and hand it over to others after the 0.11 release, but ultimately decided to leave earlier. […]

Release of the Common Desktop Environment CDE 2.5.0

The release of the classic industrial desktop environment CDE 2.5.0 (Common Desktop Environment) has taken place. CDE was developed in the early 1990s through the collaborative efforts of Sun Microsystems, HP, IBM, DEC, SCO, Fujitsu, and Hitachi, and has served for many years as the default graphical environment for Solaris, HP-UX, IBM AIX, Digital UNIX, and UnixWare. In 2012 […]

Debian has seized the domain debian.community, which published criticism of the project.

The Debian project, the non-profit organization SPI (Software in the Public Interest), and the organization Debian.ch, representing Debian's interests in Switzerland, won a dispute at the World Intellectual Property Organization (WIPO) regarding the domain debian.community, which hosted a blog critical of the project and its participants, as well as publicly exposing confidential discussions from the debian-private mailing list. Unlike the unsuccessful conclusion of […]

Fedora plans to prohibit the distribution of software licensed under CC0.

Richard Fontana, one of the authors of the GPLv3 license and a consultant on open licenses and patents at Red Hat, announced plans to amend the Fedora project rules to prohibit the inclusion of software licensed under Creative Commons CC0 in the repositories. The CC0 license implies a waiver of the author's rights, distributing work as public domain, […]

Release of D-Installer 0.4, a new installer for openSUSE and SUSE.

The developers of the YaST installer used in openSUSE and SUSE Linux have released an update for the experimental D-Installer 0.4, which supports installation management through a web interface. At the same time, installation images have been prepared for exploring the capabilities of D-Installer, providing means for installing the continuously updated openSUSE Tumbleweed edition, as well as the Leap 15.4 and Leap Micro 5.2 releases. D-Installer separates the user interface from […]

Release of NsCDE 2.2 User Environment

The release of NsCDE 2.2 (Not so Common Desktop Environment) has been announced, which develops a desktop environment with a retro interface in the style of CDE (Common Desktop Environment), adapted for use on modern Unix-like systems and Linux. The environment is based on the FVWM window manager with themes, applications, patches, and add-ons to recreate the original CDE desktop. The project's code is distributed under the […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster