Category: Blog

Catch Me If You Can. Manager's Letter

Hello, dear. I have bad news. Unfortunately, I've been fired again. I know you'll scold me – you'll say it wasn't me who got fired, but that I am a pathetic and hopeless jerk – but this time it’s not about me. It's all the fault of that damn programmer. It's all because of him. I'll tell you everything right now. The first point of the plan you created worked […]

Arc protection system with triggering based on current signals

In the classic sense, arc protection in Russia is a fast-acting protection against short circuits, based on the registration of the light spectrum of an open electrical arc in switchgear. The most common method of spectrum registration is through fiber-optic sensors, which are primarily used in the industrial sector. However, with the emergence of new products for arc protection in residential areas, specifically modular AFDDs, […]

Vulnerability in the PharStreamWrapper library affecting Drupal, Joomla, and Typo3

A vulnerability (CVE-2019-11831) has been identified in the PharStreamWrapper library, which provides handlers to protect against file injection attacks using the "Phar" format. This vulnerability allows attackers to bypass code deserialization protection through the substitution of the ".." character in paths. For example, an attacker can use a URL like "phar:///path/bad.phar/../good.phar" for the attack, and the library will extract the base name as "\/path\/good.phar" during validation, although further processing of such a path will be […]

Commercial launches of the heavy 'Angara' will begin no earlier than 2025

The first launches of the heavy launch vehicle "Angara" under commercial contracts will be organized no earlier than the middle of the next decade. This was announced by International Launch Services (ILS), as reported by TASS. It is worth noting that ILS has exclusive rights to market and commercially operate the Russian heavy-class launch vehicle "Proton" and the promising space rocket complex "Angara." ILS is registered in the USA, […]

Practical Application of ELK. Setting Up Logstash

Introduction When deploying another system, we encountered the need to process a large number of diverse logs. We chose ELK as our tool. This article will discuss our experience in setting up this stack. We do not aim to describe all its capabilities, but rather to focus specifically on solving practical tasks. This is due to the existence of a sufficient number of documentation and already […]

Collection: unboxing hardware of the IaaS provider

We share materials on the unpacking and testing of storage systems and server equipment that we have received and used during various periods of activity for our IaaS provider. Photos are from our review of the NetApp AFF A300 Unboxing of Cisco UCS B480 M5 blade server systems. A review of the compact UCS B480 M5 enterprise-class machine – it accommodates four such servers in the chassis (which we also show) […]

Technical Details of the Recent Add-ons Disabling in Firefox

Translator's note: for the convenience of readers, dates are given in Moscow time. Recently, we missed the expiration date of one of the certificates used to sign the extensions. This led to the deactivation of extensions for users. Now that the majority of the issue has been resolved, I would like to share the details of what happened and the work that has been done. Background: extensions and signatures. While many […]

Release of Wine 4.8 and D9VK 0.10 with Direct3D 9 implementation on top of Vulkan

An experimental release of the open implementation of Win32 API — Wine 4.8 is now available. Since the release of version 4.7, 38 bug reports have been closed and 315 changes have been made. The most important changes include: support for building in PE format for most programs has been added; Unicode data has been updated to version 12.0; support for MSI patch files has been added; support for the '-fno-PIC' flag has been incorporated into build scripts […]

Vulnerability in the Docker Alpine Linux image

Official Docker Alpine Linux images, starting from version 3.3, contain an empty root user password. When using PAM or another authentication mechanism that utilizes the /etc/shadow file as a source, the system may allow the root user to log in with an empty password. Update the base image version or manually change the /etc/shadow file. The vulnerability has been fixed in versions: edge (20190228 snapshot) v3.9.2 v3.8.4 v3.7.3 v3.6.5 […]

The new Titan Quest expansion: Atlantis sends you on a quest for Atlantis

THQ Nordic unexpectedly announced the release of a new expansion for the action RPG Titan Quest: Anniversary Edition on PC, titled Atlantis. It offers a new expansive storyline connected to the famous mythical realm of Atlantis. Their journey will take them through the entire western Mediterranean. Heroes will be able to explore new skills and acquire powerful gear. Additionally, the expansion has improved overall quality […]

By the end of the year, 512GB SSDs will drop in price to $50 and lower significantly

The DRAMeXchange division of TrendForce has shared another observation. TrendForce is a marketplace for contracts on the supply of NAND memory and its related products. The DRAMeXchange group provides quite accurate forecasts of price behavior in the short term and even over relatively longer periods based on this data while ensuring anonymity. Fresh data and their consideration […]

What is currently happening with RDF repositories?

The Semantic Web and Linked Data are akin to the near cosmos: there is no life there. To venture into it for a somewhat extended period... well, I don’t know what you were told as a child in response to the "I want to be an astronaut". However, you can observe what’s happening from Earth; becoming an amateur or even professional astronomer is much easier. This article will discuss recent developments, not older than […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster