Category: internet news

Vulnerability in Samba that allows any user to change their password

Samba 4.16.4, 4.15.9, and 4.14.14 patches have been released, addressing five vulnerabilities. You can track the release of package updates in these distributions on the following pages: Debian, Ubuntu, RHEL, SUSE, Arch, FreeBSD. The most serious vulnerability (CVE-2022-32744) allows Active Directory domain users to change the password of any user, including the administrator password, and gain full control over the domain. The problem […]

Release of zeronet-conservancy 0.7.7, platform for decentralized sites

The release of the zeronet-conservancy project is available, which continues the development of the decentralized, censorship-resistant ZeroNet network, which uses Bitcoin addressing and verification mechanisms in combination with BitTorrent distributed delivery technologies to create sites. Site content is stored in the P2P network on visitors' machines and verified against the owner's digital signature. The fork was created after the disappearance of the original ZeroNet developer and aims to maintain and […]

Attacking Node.js through Manipulating JavaScript Object Prototypes

Researchers at the Helmholtz Center for Information Security (CISPA) and the Royal Institute of Technology (Sweden) analyzed the applicability of the JavaScript prototype object contamination technique (“prototype pollution”) to create attacks on the Node.js platform and popular applications based on it, leading to code execution. The prototype polluting method uses a feature of the JavaScript language that allows you to add new properties to the root prototype of any object. In applications […]

ClamAV free antivirus package update 0.103.7, 0.104.4 and 0.105.1

Cisco has published new releases of the free anti-virus package ClamAV 0.105.1, 0.104.4 and 0.103.7. Recall that the project passed into the hands of Cisco in 2013 after the purchase of Sourcefire, which develops ClamAV and Snort. The project code is distributed under the GPLv2 license. Release 0.104.4 will be the last update in the 0.104 branch, and the 0.103 branch has been categorized as LTS and will be accompanied by […]

NPM 8.15 package manager release with support for local package integrity checking

GitHub has released the NPM 8.15 package manager that comes with Node.js and is used to distribute JavaScript modules. It is noted that more than 5 billion packages are downloaded via NPM daily. Key changes: A new "audit signatures" command has been added to perform a local audit of the integrity of installed packages, which does not require manipulations with PGP utilities. The new verification mechanism is based on […]

The OpenMandriva project began testing the rolling distribution of OpenMandriva Lx ROME

The developers of the OpenMandriva project have presented a preliminary release of a new edition of the OpenMandriva Lx ROME distribution kit, which uses a model of continuous update delivery (rolling releases). The proposed edition allows access to new versions of packages developed for the OpenMandriva Lx 5.0 branch. A 2.6 GB iso image has been prepared for download with a KDE desktop that supports booting in Live mode. From new package versions in […]

Release of Tor Browser 11.5.1 and Tails 5.3 distribution

A specialized distribution of Tails 5.3 (The Amnesic Incognito Live System) based on the package base has been released. Debian and designed for anonymous network browsing. Anonymous browsing in Tails is provided by the Tor system. All connections except for traffic through the Tor network are blocked by default by a packet filter. Encryption is used to store user data in persistent mode between launches. […]

Firefox 103 release

The Firefox 103 web browser has been released. In addition, updates have been made to branches with a long support period - 91.12.0 and 102.1.0. The Firefox 104 branch, which is scheduled for release on August 23, will be transferred to the beta testing stage in the coming hours. The main innovations in Firefox 103: By default, Total Cookie Protection is enabled, which was previously only used when […]

The author of the Latte Dock panel announced the termination of work on the project

Michael Vourlakos has announced that he has retired from the Latte Dock project, which develops an alternative task control panel for KDE. The reasons given are the lack of free time and the loss of interest in further work on the project. Michael planned to leave the project and hand over maintenance after the release of 0.11, but in the end decided to leave early. […]

CDE 2.5.0 Desktop Environment Release

The classic industrial desktop environment CDE 2.5.0 (Common Desktop Environment) has been released. CDE was developed in the early nineties of the last century by the joint efforts of Sun Microsystems, HP, IBM, DEC, SCO, Fujitsu and Hitachi, and for many years acted as a regular graphics environment for Solaris, HP-UX, IBM AIX, Digital UNIX and UnixWare. In 2012 […]

Debian seized the domain debian.community, where criticism of the project was published

Project Debian, a non-profit organization SPI (Software in the Public Interest) and the organization Debian.ch, representing the interests of Debian in Switzerland, won a case in the World Intellectual Property Organization (WIPO) related to the domain debian.community, which hosted a blog critical of the project and its participants, and also published confidential discussions from the mailing list. debian-private. Unlike the failed […]

Fedora intends to ban the distribution of software distributed under the CC0 license

Richard Fontana, co-author of the GPLv3 license who works as an open license and patent consultant for Red Hat, has announced plans to change the Fedora project rules to prohibit the inclusion of software shipped under a Creative Commons CC0 license in repositories. The CC0 license implies that the author waives his rights and distributes it in the public domain, […]

Buy reliable hosting for sites with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster