Author: Yuri Gagarin

Release of the Tails 4.24 distribution

A release of the specialized distribution Tails 4.24 (The Amnesic Incognito Live System), based on the Debian package base, has been published. Tails provides anonymous internet access through the Tor network. All connections, except traffic via the Tor network, are blocked by the packet filter by default. User data is stored in a persistence mode between launches with […]

Taking control of vulnerable GitLab servers to engage in DDoS attacks

GitLab has warned users about an increase in malicious activity related to the exploitation of a critical vulnerability CVE-2021-22205, which allows remote code execution on the server running the GitLab collaborative development platform without authentication. The issue affects GitLab starting from version 11.9 and was fixed back in April in GitLab versions 13.10.3, 13.9.6, and 13.8.8. Meanwhile […]

Release of the LXQt 1.0 graphical environment

After six months of development, the LXQt 1.0 user environment (Qt Lightweight Desktop Environment) has been released, developed by a combined team from the LXDE and Razor-qt projects. The LXQt interface continues to follow the principles of traditional desktop organization while introducing modern design elements and techniques to enhance usability. LXQt is positioned as a lightweight, modular, fast, and user-friendly continuation of the Razor-qt and LXDE desktops, incorporating the best […]

Changing the rules for the directory of Firefox add-ons.

Mozilla has warned about changes to the Firefox Add-ons directory (Mozilla AMO) rules aimed at enhancing user security and privacy, as well as addressing new ecosystem needs. The new edition of the rules will take effect on December 1, 2021. Key changes: Collection of user activity data while navigating websites, such as information on viewed URLs, browsing history […]

Remote vulnerability in the implementation of the TIPC protocol in the Linux kernel

A critical vulnerability (CVE-2021-43267) has been discovered in the implementation of the Transparent Inter-process Communication (TIPC) network protocol included in the Linux kernel, allowing remote execution of attacker-supplied code with kernel privileges through a specially crafted network packet. The danger is mitigated by the requirement for explicit TIPC support activation in the system (loading and configuring the tipc.ko kernel module), which is not present in general-purpose distributions […]

The NPM package coa, which has 9 million downloads per week, has been compromised with malware.

Attackers have managed to gain control over the NPM package coa and released updates 2.0.3, 2.0.4, 2.1.1, 2.1.3, and 3.1.3, which include malicious changes. The coa package, which provides functions for parsing command-line arguments, registers about 9 million downloads per week and is used as a dependency by 159 other NPM packages, including react-scripts and vue/cli-service. The NPM administration has already removed the release with the malicious […]

Google introduced the Knative 1.0 serverless computing platform.

Google has announced the stable release of the Knative 1.0 platform, designed to create serverless computing infrastructure deployed on top of a container isolation system based on the Kubernetes platform. In addition to Google, companies such as IBM, Red Hat, SAP, and VMware are also involved in the development of Knative. The release of Knative 1.0 marked the stabilization of the API for application development, which will no longer change and […]

The code for Luau, a variant of the Lua language with type checking, has been opened.

The source texts and the first standalone release of the Luau programming language, which continues the development of Lua and is backward compatible with Lua 5.1, have been announced. The Luau language is primarily intended for embedding scripting handlers in applications and aims to achieve high performance and low resource consumption. The project code is written in C++ and is open under the MIT license. […]

Update of the free antivirus package ClamAV 0.104.1

Cisco has released new versions of the free antivirus package ClamAV 0.104.1 and 0.103.4. It is worth mentioning that the project came under Cisco's management in 2013 after the acquisition of Sourcefire, which developed ClamAV and Snort. The project's code is distributed under the GPLv2 license. Key changes in ClamAV 0.104.1: The FreshClam utility now includes a pause feature for 24 hours after receiving a response with code […]

Release nginx 1.21.4

The release of the main branch nginx 1.21.4 has been formed, continuing the development of new features (the parallel stable branch 1.20 only receives changes related to fixing critical bugs and vulnerabilities). Key changes: Support for establishing HTTP/2 connections using the NPN (Next Protocol Negotiation) extension instead of ALPN has been discontinued; SSL connections are now closed when the client uses the ALPN extension if during […]

Beta testing for Red Hat Enterprise Linux 9 has begun

Red Hat has announced the first beta version of the Red Hat Enterprise Linux 9 distribution. Ready installation images are prepared for registered users of the Red Hat Customer Portal (ISO images of CentOS Stream 9 can also be used for testing functionality). Repositories with packages are freely available for x86_64, s390x (IBM System z), ppc64le, and Aarch64 (ARM64) architectures. The source texts of the Red Hat rpm packages […]

Release of the Asterisk 19 communication platform and FreePBX 16 distribution.

After a year of development, a new stable branch of the open communication platform Asterisk 19 has been released, which is used for deploying software PBX, voice communication systems, VoIP gateways, organizing IVR systems (voice menus), voicemail, conference calls, and call centers. The project's source texts are available under the GPLv2 license. Asterisk 19 is categorized as a release with regular support, with updates provided over a period of two […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster