Author: Yuri Gagarin

What is Docker: a brief overview of the history and key abstractions

On August 10, a video course on Docker started at Slurm, where we cover it in full — from basic abstractions to network parameters. In this article, we will discuss the history of Docker's emergence and its main abstractions: Image, CLI, Dockerfile. This lecture is aimed at beginners, so it is unlikely to be of interest to experienced users. There will be no blood, appendix, or deep dives. […]

How Google BigQuery Democratized Data Analysis. Part 2

Hello, Habr! Right now, OTUS is accepting applications for a new batch of the 'Data Engineer' course. In anticipation of the course launch, we continue to share useful material with you. Read the first part on Data Management Strong Data Governance – the core principle of Twitter Engineering. As we implement BigQuery into our platform, we focus on data discovery, access control, and security […]

Solaris 11.4 SRU24 is available

An update for the Solaris 11.4 operating system, SRU 24 (Support Repository Update), has been released, featuring a series of corrections and improvements for the Solaris 11.4 branch. To install the proposed fixes in the update, simply execute the command 'pkg update'. The new release includes: An updated Oracle Explorer to version 20.2, a toolkit for building detailed configuration and system status profiles; Added support for storage […]

Vulnerability in the Icinga Web monitoring interface

Corrective releases of the Icinga Web 2.6.4, 2.7.4, and v2.8.2 packages, which provide a web interface for the Icinga monitoring system, have been published. The proposed updates address a critical vulnerability (CVE-2020-24368), allowing an unauthenticated attacker to access files on the server with the privileges of the Icinga Web process (typically the user under which the HTTP server or FPM runs). A successful attack requires one of the third-party modules supplied […]

Attacks on email client users using 'mailto:' links

Researchers from Ruhr University Bochum (Germany) analyzed (PDF) the behavior of email clients when processing 'mailto:' links with extended parameters. Five out of the twenty email clients reviewed were found to be vulnerable to an attack that manipulates resource substitution using the 'attach' parameter. An additional six email clients were susceptible to attacks through PGP and S/MIME key replacement, while three clients were vulnerable to […]

nnn v3.4 — console file manager with terminal icon support

A new version of the fully functional file manager nnn has been released, optimized for efficient workflow (searching, filtering, sorting, renaming, instant handling of thousands of files). The program uses minimal resources (binary 100KB, 3.5MB in RAM), is compatible with Pi, Termux (Android), Linux, macOS, BSD, Haiku, Cygwin, WSL, and various graphical and console environments. The program operates with 8 color […]

We shorten links without fluff (F3)

It's not embarrassing to shorten links at 13, right? A beginner, and not just beginners, should try writing their own Link Shortener while learning some new framework along the way. That's what I've been doing. What can I say — the fifth bootstrap, a lean framework, and a piece of my soul. Here's a demo, and here's the code. For readers like me 😉 A framework, right? Of course […]

On the transition from Redis to Redis-cluster

When entering a product that has been evolving for more than a decade, it is not surprising to encounter outdated technologies. But what if in six months you need to handle a load ten times higher, and the cost of failures increases by hundreds? In this case, you need a skilled Highload Engineer. However, in the absence of one, the problem was entrusted to me. In the first […]

Release of the Kali Linux 2020.3 distribution for security research

The release of Kali Linux 2020.3 has occurred, designed for testing systems for vulnerabilities, conducting audits, analyzing residual information, and identifying the consequences of attacks by malicious actors. All original developments created within the distribution are distributed under the GPL license and are available through a public Git repository. Several ISO image options have been prepared for download, sized at 430 MB, 2.9 GB, and 3.7 GB. The builds […]

Qt 6 in Debian may end up unsupported

The current maintainers of the Qt framework packages in Debian have decided not to provide support for the next major branch Qt 6, the release of which is scheduled for December. Meanwhile, support for the previous branch Qt 5 will continue unchanged. The delivery of Qt 6 to Debian will be ensured if new maintainers are found who are ready to provide package support at a suitable level […]

Mozilla has expanded its vulnerability rewards program

Mozilla has announced an expansion of its initiative to pay monetary rewards for identifying security issues in Firefox. In addition to vulnerabilities, the Bug Bounty program will now cover methods to circumvent existing browser mechanisms that prevent exploits. Such mechanisms include an HTML fragment cleansing system before use in a privileged context and memory separation for DOM nodes […]

The creation of the Rust Foundation, independent of Mozilla, has been announced.

The main development team of the Rust programming language (Rust Core Team) and Mozilla have announced plans to create an independent non-profit organization, the Rust Foundation, by the end of the year. This organization will be entrusted with the intellectual property related to the Rust project, including trademarks and domain names associated with Rust, Cargo, and crates.io. The organization will also be responsible for organizing project funding. Recall that […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster