RSS 생중계
Google Now Lets You Change Your Gmail Address
Read more of this story at Slashdot.
Global Ban On Digital Duties Expires After Stalled Talks At WTO Meeting
Read more of this story at Slashdot.
Australia Readies Social Media Court Action Citing Teen Ban Breaches
Read more of this story at Slashdot.
Claude Code's Source Code Leaks Via npm Source Maps
Read more of this story at Slashdot.
Euro-Office Wants To Replace Google Docs and Microsoft Office
Read more of this story at Slashdot.
[$] The role of LLMs in patch review
Discussion of a memory-management patch set intended to clean up a helper function for handling huge pages spiraled into something else entirely after it was posted on March 19. Memory-management maintainer Andrew Morton proposed making changes to the subsystem's review process, to require patch authors to respond to feedback from Sashiko, the recently released LLM-based kernel patch review system. Other sub-maintainers, particularly Lorenzo Stoakes, objected. The resulting discussion about how and when to adopt Sashiko is potentially relevant to many other parts of the kernel.
US Paves Way For Private Assets To Be Included In 401(k) Retirement Plans
Read more of this story at Slashdot.
[$] Objections to systemd age-attestation changes go overboard
In early March, Dylan M. Taylor submitted a pull request to add a field to store a user's birth date in systemd's JSON user records. This was done to allow applications to store the date to facilitate compliance with age-attestation and -verification laws. It was to be expected that some members of the community would object; the actual response, however, has been shockingly hostile. Some of this has been fueled by a misinformation campaign that has targeted the systemd project and Taylor specifically, resulting in Taylor being doxxed and receiving death threats. Such behavior is not just problematic; it is also deeply misguided given the actual nature of the changes.
Vulnerability Research Is Cooked (sockpuppet.org)
Now consider the poor open source developers who, for the last 18 months, have complained about a torrent of slop vulnerability reports. I'd had mixed sympathies, but the complaints were at least empirically correct. That could change real fast. The new models find real stuff. Forget the slop; will projects be able to keep up with a steady feed of verified, reproducible, reliably-exploitable sev:hi vulnerabilities? That's what's coming down the pipe.
Everything is up in the air. The industry is sold on memory-safe software, but the shift is slow going. We've bought time with sandboxing and attack surface restriction. How well will these countermeasures hold up? A 4 layer system of sandboxes, kernels, hypervisors, and IPC schemes are, to an agent, an iterated version of the same problem. Agents will generate full-chain exploits, and they will do so soon.
Meanwhile, no defense looks flimsier now than closed source code. Reversing was already mostly a speed-bump even for entry-level teams, who lift binaries into IR or decompile them all the way back to source. Agents can do this too, but they can also reason directly from assembly. If you want a problem better suited to LLMs than bug hunting, program translation is a good place to start.
Security updates for Tuesday
Quadratic Gravity Theory Reshapes Quantum View of Big Bang
Read more of this story at Slashdot.
Scientists Shocked To Find Lab Gloves May Be Skewing Microplastics Data
Read more of this story at Slashdot.
AI Data Centers Can Warm Surrounding Areas By Up To 9.1C
Read more of this story at Slashdot.
Microsoft Plans To Build 100% Native Apps For Windows 11
Read more of this story at Slashdot.
After 16 Years and $8 Billion, the Military's New GPS Software Still Doesn't Work
Read more of this story at Slashdot.
Samsung Is Bringing AirDrop-Style Sharing to Older Galaxy Devices
Read more of this story at Slashdot.
OkCupid Settles FTC Case On Alleged Misuse of Its Users' Personal Data
Read more of this story at Slashdot.
Life With AI Causing Human Brain 'Fry'
Read more of this story at Slashdot.
Judge Allows BitTorrent Seeding Claims Against Meta, Despite Lawyers 'Lame Excuses'
Read more of this story at Slashdot.
SystemRescue 13.00 released
SystemRescue 13.00 has been released. The SystemRescue distribution is a live boot system-rescue toolkit, based on Arch Linux, for repairing systems in the event of a crash. This release includes the 6.18.20 LTS kernel, updates bcachefs tools and kernel module to 1.37.3, and many upgraded packages. See the step-by-step guide for instructions on performing common operations such as recovering files, creating disk clones, and resetting lost passwords.
