Category: Blog

Release of the LibreOffice 7.4 office suite

The Document Foundation has released LibreOffice 7.4. Ready-to-use installation packages have been prepared for various Linux distributions, Windows, and macOS. A total of 147 developers participated in the release preparation, of which 95 are volunteers. 72% of the changes were made by employees from the three sponsoring companies — Collabora, Red Hat, and Allotropia, while 28% of the changes were introduced by independent enthusiasts. The LibreOffice release […]

The key developer of postmarketOS has left the Pine64 project due to issues within the community.

Martijn Braam, one of the key developers of the postmarketOS distribution, announced his departure from the Pine64 community, which is focused on creating open devices, due to the project's shift toward a single specific distribution instead of supporting an ecosystem of various distributions working together on the software stack. Initially, Pine64 used a delegation strategy for the development of software for its devices to the Linux distribution developer community and formed […]

GitHub has published a report on blockages for the first half of 2022

GitHub has released a report detailing notifications of intellectual property violations and the publication of illegal content received in the first half of 2022. Previously, such reports were published annually, but now GitHub has switched to biannual disclosures. In accordance with the Digital Millennium Copyright Act (DMCA) in the United States, in […]

A vulnerability in devices based on Realtek SoC, allowing code execution through the sending of a UDP packet.

Researchers from Faraday Security presented at DEFCON details of the exploitation of a critical vulnerability (CVE-2022-27255) in the SDK for Realtek RTL819x chips, allowing code execution on the device through the sending of specially crafted UDP packets. The vulnerability is notable because it allows attacks on devices where access to the web interface for external networks is disabled — an attack can be carried out simply by sending a single UDP packet. […]

Chrome update 104.0.5112.101 addresses a critical vulnerability

Google has released update 104.0.5112.101 for Chrome, which fixes 10 vulnerabilities, including a critical vulnerability (CVE-2022-2852) that allows bypassing all levels of browser protection and executing code on the system outside of the sandbox environment. Details are not yet disclosed, but it is known that the critical vulnerability is related to a use-after-free issue in the implementation of the FedCM (Federated Credential Management) API, […]

Valve has released Proton 7.0-4, a package for running Windows games on Linux

Valve has released project Proton 7.0-4, which is based on the Wine project codebase and aims to enable the running of Linux gaming applications created for Windows and available in the Steam catalog. The project’s developments are distributed under the BSD license. Proton allows the direct launching of Windows-only gaming applications in the Linux client of Steam. The package includes the implementation of […]

Attempt to hijack Signal accounts through SMS service provider Twilio compromise

Developers of the open messenger Signal have disclosed information about a targeted attack aimed at gaining control over some users' accounts. The attack was carried out through a breach of the Twilio service, which is used by Signal to send SMS messages with confirmation codes. Data analysis indicated that the Twilio breach may have affected around 1900 Signal user phone numbers, for which attackers had the ability to re-register the numbers […]

Release of the Android 13 mobile platform

Google has released the open mobile platform Android 13. The source code associated with the new release is available in the project's Git repository (branch android-13.0.0_r1). Firmware updates have been prepared for Pixel series devices. Later, firmware updates for smartphones from manufacturers such as Samsung, Asus, HMD (Nokia), iQOO, Motorola, OnePlus, Oppo, Realme, Sharp, Sony, Tecno, vivo, and Xiaomi are planned. Additionally, universal builds have been formed […]

Demonstration of the Starlink terminal hack

A researcher from the Catholic University of Leuven demonstrated at the Black Hat conference a technique to compromise the Starlink user terminal used to connect subscribers to SpaceX's satellite network. The terminal is equipped with its own 64-bit SoC developed by STMicro specifically for SpaceX. The operating environment is based on Linux. The proposed method allows running custom code on the Starlink terminal, gaining root access, and accessing restricted areas […]

Release Wine 7.15

An experimental release of the open implementation of WinAPI — Wine 7.15 has occurred. Since the release of version 7.14, 22 bug reports have been closed, and 226 changes have been made. The most significant changes include: support for command lists in Direct2D (the ID2D1CommandList object, which provides methods for saving the state of a command set that can be recorded and replayed). Support for the RSA encryption algorithm has been implemented. In […]

Release of the minimalist set of system utilities Toybox 0.8.8

The release of the Toybox 0.8.8 system utility suite has been announced, which, like BusyBox, is formatted as a single executable file optimized for minimal system resource consumption. The project is developed by a former maintainer of BusyBox and is distributed under the 0BSD license. The main purpose of Toybox is to provide manufacturers with a minimalist set of standard utilities without disclosing the source code of modified components. Toybox's capabilities are still […]

Release of GNU Binutils 2.39

The release of the GNU Binutils 2.39 system utility suite has been announced, which includes programs such as the GNU linker, GNU assembler, nm, objdump, strings, and strip. In the new version: The ELF linker now issues a warning when enabling the ability to execute code on the stack, as well as when there are memory segments in the binary file for which […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster