RSS 생중계
Secure Randomness in Go 1.22 (Go Blog)
For example, when Go 1.20 deprecated math/rand's Read, we heard from developers who discovered (thanks to tooling pointing out use of deprecated functionality) they had been using it in places where crypto/rand's Read was definitely needed, like generating key material. Using Go 1.20, that mistake is a serious security problem that merits a detailed investigation to understand the damage. Where were the keys used? How were the keys exposed? Were other random outputs exposed that might allow an attacker to derive the keys? And so on. Using Go 1.22, that mistake is just a mistake.
Security updates for Tuesday
Ten Years Ago Microsoft Bought Nokia's Phone Unit, Then Killed It As a Tax Write-Off
Read more of this story at Slashdot.
Boeing Starliner's First Crewed Mission Scrubbed
Read more of this story at Slashdot.
Apple's iPhone Spyware Problem Is Getting Worse
Read more of this story at Slashdot.
Stockholm Exergi Lands World's Largest Permanent Carbon Removal Deal With Microsoft
Read more of this story at Slashdot.
Novel Attack Against Virtually All VPN Apps Neuters Their Entire Purpose
Read more of this story at Slashdot.
Google Fit Dev APIs Shutdown Set, Fate of Android and Wear OS Apps Go Unannounced
Read more of this story at Slashdot.
Pokemon Go Players Are Vandalizing Real Maps With Fake Data To Catch Rare Pokemon
Read more of this story at Slashdot.
Jack Dorsey Departs Bluesky
Read more of this story at Slashdot.
The Rabbit R1 Could've Just Been a Mobile App
Read more of this story at Slashdot.
Alternative Clouds Are Booming As Companies Seek Cheaper Access To GPUs
Read more of this story at Slashdot.
2023 PSF annual impact report
The Python Software Foundation (PSF) has announced its annual impact report for 2023. The report includes updates from PSF staff as well as summaries of the foundation's activities, financials, and infrastructure. The PSF celebrated the 20th anniversary of PyCon US, distributed more than $370,000 in grants, and enjoyed impressive traffic on PyPI:
In 2023 PyPI saw a 45% growth in download counts and bandwidth alike, serving 603,378,275 downloads for the 516,402 projects hosted there requiring 747.4 Petabytes of data transfer, or 189.6 Gbps of bandwidth 24x7x365.See the full report for a breakdown of grant disbursements and trends, PSF expenses, and high-level plans for the rest of 2024.
OpenAI and Stack Overflow Partner To Bring More Technical Knowledge Into ChatGPT
Read more of this story at Slashdot.
'The Good Enough Trap'
Read more of this story at Slashdot.
Stenberg: I survived curl up 2024
Daniel Stenberg has posted a report about the recent curl up conference about curl development. It was held over two days in Stockholm. The report has short summaries of the talks with links to the recordings.
curl up is never a big meeting/conference but we have in the past sometimes been around twenty-five attendees. This year's amount of fifteen was the smallest so far, but in this small set of people we have a set of long-term well-known curl contributors. It is not a big list of attendees that creates a good curl up.Shell Sold Millions of 'Phantom' Carbon Credits
Read more of this story at Slashdot.
North Yorkshire Apostrophe Fans Demand Road Signs With Nowt Taken Out
Read more of this story at Slashdot.
Google is Changing How You Set Up 2FA
Read more of this story at Slashdot.
40,000 AI-Narrated Audiobooks Flood Audible
Read more of this story at Slashdot.