Category: Blog

Release of the web application for working with scanned documents paperless-ngx 1.8.0

A new release of Paperless-ngx is available, a web application for document management that converts paper documents into electronic ones, making them available for full-text search, download, and online storage. The code is written in Python using the Django framework and is distributed under the GPLv3 license. To explore the system's capabilities, a demo site is prepared at demo.paperless-ngx.com (login/password — demo/demo). Paperless-ngx is a fork of the paperless-ng project, […]

The initiative for the free production of open chips has transitioned to a 90nm process technology.

Google and SkyWater have announced an upgrade to an initiative that allows open hardware developers to produce a trial batch of their developing chips for free, in order to avoid the costs of manufacturing initial prototypes. All expenses for production, packaging, and shipping are covered by Google. Applications are only accepted from projects that are fully distributed under open licenses, free from non-disclosure agreements […]

Release of CheatCard, a free customer loyalty program.

The QuasarApp development team has introduced CheatCard — a free loyalty program for small and medium-sized businesses. The idea of the application revolves around creating cards for regular customers. The seller defines the rules under which customers will earn bonuses. Interaction with customers occurs through reading a universal QR code by the seller's device. The application is written in C++/QML and is distributed for free under the […]

Release of EdgeDB 2.0 Relational-Graph Database

The release of EdgeDB 2.0 has been announced, implementing a relational-graph data model and the EdgeQL query language, optimized for complex hierarchical data handling. The code is written in Python and Rust (for the parser and performance-critical parts) and is distributed under the Apache 2.0 license. The project develops as an extension on top of PostgreSQL. Client libraries are prepared for Python, Go, Rust, and […]

Release of FreeRDP 2.8.0, an open-source implementation of the RDP protocol.

A new release of the FreeRDP 2.8.0 project has been published, offering a free implementation of the Remote Desktop Protocol (RDP), developed based on Microsoft specifications. The project provides a library for integrating RDP support into third-party applications and a client that can be used for remote connections to Windows desktops. The project's code is distributed under the Apache 2.0 license. In the new […]

Release of OPNsense 22.7 distribution for creating firewalls

The release of the OPNsense 22.7 distribution for creating firewalls has been published. This version is a branch of the pfSense project, created to develop a fully open distribution that can offer functionality on par with commercial solutions for deploying firewalls and network gateways. Unlike pfSense, the project is positioned as independent from any company, developed with direct community involvement, and features […]

Release of Ventoy 1.0.79, a tool for booting arbitrary systems from USB drives.

The release of Ventoy 1.0.79 toolkit has been published, designed for creating bootable USB drives that include multiple operating systems. The program is notable for allowing OS loading from unmodified ISO, WIM, IMG, VHD, and EFI images without the need for extracting the image or reformatting the drive. For example, it is enough to simply copy a set of ISO images of interest onto a USB flash drive with the Ventoy bootloader, and Ventoy will enable loading […]

A vulnerability in Samba allowing any user to change the password.

Corrective releases of the Samba packages 4.16.4, 4.15.9, and 4.14.14 have been published, addressing 5 vulnerabilities. The release of the package updates in distributions can be tracked on the pages: Debian, Ubuntu, RHEL, SUSE, Arch, FreeBSD. The most critical vulnerability (CVE-2022-32744) allows Active Directory domain users to change the password of any user, including that of the administrator, thus gaining full control over the domain. The issue […]

Release of zeronet-conservancy 0.7.7, a platform for decentralized websites

The release of the zeronet-conservancy project, which continues the development of the decentralized, censorship-resistant ZeroNet network, is now available. In this network, mechanisms of Bitcoin addressing and verification are used along with BitTorrent distribution technologies to create websites. The content of the sites is stored in a P2P network on visitors' machines and verified through the owner's digital signature. The fork was created after the original developer of ZeroNet disappeared and aims to maintain and enhance […]

Attack on Node.js through JavaScript Object Prototype Manipulation

Researchers from the Helmholtz Center for Information Security (CISPA) and the Royal Institute of Technology in Sweden analyzed the applicability of prototype pollution techniques for creating attacks on the Node.js platform and popular applications based on it, leading to code execution. The prototype pollution method leverages a feature of JavaScript that allows new properties to be added to the root prototype of any object. In applications […]

Update of the free antivirus package ClamAV 0.103.7, 0.104.4 and 0.105.1

Cisco has released new versions of the free antivirus package ClamAV 0.105.1, 0.104.4, and 0.103.7. Recall that the project came under Cisco's control in 2013 after the acquisition of Sourcefire, which developed ClamAV and Snort. The project's code is distributed under the GPLv2 license. Version 0.104.4 will be the last update in the 0.104 branch, while the 0.103 branch has been classified as LTS and will be supported […]

Release of package manager NPM 8.15 with support for local integrity checking of packages

GitHub has introduced the release of the NPM package manager 8.15, which is included with Node.js and used for distributing modules in JavaScript. It is noted that over 5 billion packages are downloaded daily through NPM. Key changes: A new command 'audit signatures' has been added for conducting local integrity audits of installed packages without requiring manipulation with PGP utilities. The new verification mechanism is based on […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster