Author: ProHoster

New SAD DNS Attack Variant to Substitute Fake Data in the DNS Cache

A team of researchers from the University of California, Riverside has published a new variant of the SAD DNS attack (CVE-2021-20322) that works despite protections added last year to block the CVE-2020-25705 vulnerability. The new method is generally similar to last year's vulnerability and differs only in the use of a different type of ICMP packets to check active UDP ports. The proposed attack allows for the substitution of fictitious data into the DNS server cache, which […]

GitHub published statistics for 2021

GitHub has published a report analyzing statistics for 2021. Main trends: In 2021, 61 million new repositories were created (in 2020 - 60 million, in 2019 - 44 million) and more than 170 million pull requests were sent. The total number of repositories reached 254 million. The GitHub audience increased by 15 million users and reached 73 […]

Published 58 edition of the rating of the most high-performance supercomputers

The 58th edition of the ranking of the 500 most high-performance computers in the world has been published. In the new release, the top ten has not changed, but 4 new Russian clusters are included in the ranking. 19th, 36th and 40th places in the ranking were taken by Russian clusters Chervonenkis, Galushkin and Lyapunov, created by Yandex to solve machine learning problems and providing performance of 21.5, 16 and 12.8 petaflops, respectively. […]

New models for Russian speech recognition in the Vosk library

The developers of the Vosk library have published new models for Russian speech recognition: server vosk-model-ru-0.22 and mobile Vosk-model-small-ru-0.22. The models use new speech data, as well as a new neural network architecture, which has increased recognition accuracy by 10-20%. The code and data are distributed under the Apache 2.0 license. Important changes: New data collected in voice speakers significantly improves the recognition of speech commands spoken […]

Release of CentOS Linux 8.5 (2111), final in the 8.x series

The release of the distribution kit CentOS 2111 is presented, which has absorbed the changes from Red Hat Enterprise Linux 8.5. The distribution is fully binary compatible with RHEL 8.5. CentOS 2111 builds are prepared (8 GB DVD and 600 MB netboot) for x86_64, Aarch64 (ARM64), and ppc64le architectures. The SRPMS packages from which the binaries are built and debuginfo are available through vault.centos.org. In addition to […]

Blacksmith - a new attack on DRAM memory and DDR4 chips

A team of researchers from ETH Zurich, Vrije Universiteit Amsterdam and Qualcomm have published a new RowHammer attack method that can alter the contents of individual bits of dynamic random access memory (DRAM). The attack was codenamed Blacksmith and identified as CVE-2021-42114. Many DDR4 chips equipped with protection against previously known RowHammer class methods are susceptible to the problem. Tools for testing your systems […]

Vulnerability that allowed an update to be released for any package in the NPM repository

GitHub has disclosed two incidents in its NPM package repository infrastructure. On November 2, third-party security researchers (Kajetan Grzybowski and Maciej Piechota), as part of the Bug Bounty program, reported the presence of a vulnerability in the NPM repository that allows you to publish a new version of any package using your account, which is not authorized to perform such updates. The vulnerability was caused by […]

Fedora Linux 37 intends to end support for 32-bit ARM architecture

The ARMv37 architecture, also known as ARM7 or armhfp, is slated for implementation in Fedora Linux 32. All development efforts for ARM systems are planned to be focused on the ARM64 architecture (Aarch64). The change has not yet been reviewed by the FESCo (Fedora Engineering Steering Committee), which is responsible for the technical part of the development of the Fedora distribution. If the change is approved by the latest release […]

A new Russian commercial distribution kit ROSA CHROME 12 is presented

The company STC IT ROSA presented a new Linux distribution ROSA CHROM 12, based on the rosa2021.1 platform, supplied only in paid editions and aimed at use in the corporate sector. The distribution is available in builds for workstations and servers. The workstation edition uses the KDE Plasma 5 shell. Installation iso images are not publicly distributed and are provided only via […]

Rocky Linux 8.5 distribution release, replacing CentOS

The Rocky Linux 8.5 distribution was released, aimed at creating a free build of RHEL capable of taking the place of the classic CentOS, after Red Hat decided to stop supporting the CentOS 8 branch at the end of 2021, and not in 2029, as originally planned. This is the second stable release of the project, recognized as ready for production implementation. Rocky Linux builds […]

Tor Browser 11.0.1 Update Integrates Blockchair Service Support

A new version of the Tor Browser 11.0.1 is available. The browser is focused on providing anonymity, security and privacy, all traffic is redirected only through the Tor network. It is impossible to contact directly through the standard network connection of the current system, which does not allow tracking the user’s real IP (if the browser is hacked, attackers can gain access to system network parameters, so to completely block possible […]

SeaMonkey Integrated Internet Application Suite 2.53.10 Released

The SeaMonkey 2.53.10 set of Internet applications has been released, which combines a web browser, an email client, a news feed aggregation system (RSS / Atom) and a WYSIWYG html page editor Composer within one product. The Chatzilla IRC client, the DOM Inspector web development toolkit, and the Lightning calendar scheduler are offered as preinstalled add-ons. The new release carries over fixes and changes from the current Firefox codebase (SeaMonkey 2.53 is […]