RSS
[>] Apple Announces Major App Store Changes on iOS in Brazil
bot.slashdot
robot(spnet, 1) — All
2026-06-18 23:22:02


Apple is allowing iPhone developers in Brazil to distribute apps through authorized alternative marketplaces and use third-party payment systems following action by the country's competition regulator. "In other words, developers in Brazil will be able to circumvent the App Store and Apple's in-app purchase system, but there are still fees," reports MacRumors. Apple will collect commissions ranging from 5% on externally distributed apps to as much as 26% for some App Store transactions using its payment system. From the report: Alternative app marketplaces will have to be authorized by Apple and will need to meet ongoing requirements. For apps that are still distributed through the App Store, developers will be able to include an alternative payment processing method in their app and/or link users to a website to complete a transaction. These changes are available on iOS 26.5 and later, and they are the result of regulatory action from Brazil's competition regulator. Apple has added a new page on its website with additional details for developers in Brazil.

Apple said these changes introduce privacy and security risks for users, including children. The company has introduced safeguards to mitigate these risks, including a notarization process for iOS apps, an authorization process for app marketplaces, and limitations on external links and alternative payments for users under the age of 18. Apple has already allowed alternative app stores and/or third-party payment systems on iOS in the EU, Japan, and South Korea, and it will likely be forced to do so in the UK and Australia too, due to similar regulations in those countries.

[ Read more of this story ]( https://apple.slashdot.org/story/26/06/18/1811250/apple-announces-major-app-store-changes-on-ios-in-brazil?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Canonical представила Myna — локальную систему преобразования речи в текст для Ubuntu Desktop
lor.opennet
robot(spnet, 1) — All
2026-06-18 22:44:04


Canonical представила проект Myna — новую систему преобразования речи в текст для Ubuntu Desktop. Проект нацелен на встроенную диктовку: пользователь нажимает горячую клавишу, говорит, а распознанный текст появляется в активном приложении. В анонсе подчёркивается, что Myna должна ощущаться как естественная часть рабочего стола Ubuntu и при этом работать с учётом приватности пользователя. Список поддерживаемых языков ввода на момент публикации новости не оглашён.

( [ читать дальше... ]( https://www.linux.org.ru/news/ubuntu/18321937#cut ) )

[>] Изменение правил формирования релизов официальных редакций Ubuntu
lor.opennet
robot(spnet, 1) — All
2026-06-18 22:44:03


Компания Canonical ужесточила правила формирования релизов официальных редакций Ubuntu, к которым относятся Lubuntu, Kubuntu, Ubuntu Budgie, Ubuntu Studio, Xubuntu, Ubuntu Kylin, Ubuntu Mate, Ubuntu Unity, Edubuntu и Ubuntu Cinnamon. Изменения введены для подтверждения готовности редакций к финальному релизу, который теперь будет допускаться только в случае успешного формирования бета-версии в срок, соответствующий намеченному плану. При этом изменения в пакетах между бета-версией и релизом должны быть минимальными и могут включать только исправление ошибок.

https://www.opennet.ru/opennews/art.shtml?num=65717

[>] Android 17 Drops For Pixel Phones and Watch
bot.slashdot
robot(spnet, 1) — All
2026-06-18 22:22:01


Google has begun rolling out Android 17, the June Pixel Feature Drop, and Wear OS 7 simultaneously across supported Pixel phones and watches. Highlights include floating app bubbles, improved foldable multitasking and gaming, tighter location and contact permissions, stronger lost-device protections, new Pixel AI tools, and up to 10% better Pixel Watch battery life. PhoneArena reports: Pixel owners are the clear winners, since everything here reaches Pixel first and a lot of it goes back to the Pixel 6. Fold owners get the most toys, with the Bubble Bar and foldable gaming mode built for the big screen. Watch wearers get the quietly important upgrade. Better battery and Live Updates make an everyday wearable easier to rely on, especially if you keep it on overnight. Google's latest Pixel Drop combines several AI-powered tools with a broader slate of Android 17 upgrades. Pixel owners gain Lyria 3 for generating music from text or images, Gemini Omni for creating custom video clips, enhanced call translation and screening, AirDrop-compatible Quick Share, expanded Magic Cue support, and conversational photo editing.

Android 17 builds on those additions with floating app Bubbles, selfie-camera Screen Reactions, and a split-screen gaming mode for foldables, while also strengthening privacy and security with more granular location and contact permissions, improved lost-device protection, tighter PIN-guessing limits, and enhanced threat detection.

Other additions include expanded parental controls, separate assistant volume and app memory settings, and an option to hide app names for greater privacy.

You can read more about everything new in Android 17 in Google's blog post.

[ Read more of this story ]( https://mobile.slashdot.org/story/26/06/18/1733258/android-17-drops-for-pixel-phones-and-watch?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Google Told Researcher 'Nice Catch!' Then Denied Bug Bounty For Flaw It Still Hasn't Fixed
bot.slashdot
robot(spnet, 1) — All
2026-06-18 21:22:01


Security researcher Justin O'Leary says Google initially accepted his Config Connector privilege-escalation report as a high-priority, high-severity bug, then denied a bounty by declaring the behavior "working as intended." According to The Register, a Google rep initially praised O'Leary's report with a "Nice catch!" before the cloud giant reversed course, declaring that no vulnerability existed and therefore no fix or reward was warranted. "The bug report, however, is still marked high-priority and accepted," the publication notes. The alleged flaw, dubbed ConfigConfusion, could let a Kubernetes namespace user exploit an overprivileged service account to become a GCP organization owner with only a few lines of YAML and little apparent audit visibility. O'Leary details the incident in a blog post. The Register reports: According to O'Leary, Config Connector doesn't perform an authorization check, and this allows any Config Connector service account with org-level permissions to bypass Identity and Access Management (IAM) authorization and gain the highest level of control (roles/owner) to an entire GCP Organization -- the root node of all of a company's resources within Google Cloud. On March 27, a Google security engineer accepted O'Leary's report and told him: "Nice catch!" The employee said that they filed a bug based on O'Leary's report with the relevant product team and assured him the Chocolate Factory's security squad would work with relevant Google Cloud people to fix the flaw. "We'll work with the product team to ensure this issue is address. We'll let you know when the issue was fixed," the engineer said. "In the meantime, review the payment option selected in your bughunters.google.com profile."

Google assigned the bug P1 priority and S1 severity, signifying a flaw worthy of urgent repair because it affects a large percentage of users and can disrupt core organizational functions. "I figured that was the end of that," O'Leary said in a phone interview with The Register. Eleven days later, on April 7, he received a new message from a Google Security Bot reversing the earlier decision. The Reg viewed the email, and O'Leary included a screenshot in his Thursday writeup. The message said that the Cloud Vulnerability Reward Program panel decided that the "security impact of this issue does not meet the criteria to qualify for a reward."

After reviewing the bug report, Google determined the software "is working as intended," the message continued. It also noted that the program's decision not to pay a bounty "does not mean that the product team won't fix the issue." Nearly three months later, the case remains P1/S1 with the status "in progress (accepted)." Google hasn't assigned a CVE or issued a fix. O'Leary didn't receive any reward for his research. [...] "This is a pattern," O'Leary told [The Register]. "This is just how these trillion-dollar companies deal with people like me. In my day job, we use GKE, and it's incredibly frustrating on my end, when I find a critical vulnerability in the system that's being widely used, and I can't even get the vendor to patch their own stuff." A Google spokesperson told The Register: "The issue reported does not qualify for a reward because the GCP IAM authorization bypass is only exploitable if an attacker has access to a Config Connector Service Account that's been granted the Organization Admin role by the organization (i.e., it is privileged). Additionally, an attacker would first need to gain entry to an organization's environment (e.g., an exposed container) in order to leverage the privileged Config Connector instance and execute commands with administrative authority, such as the IAM bypass. Granting this level of access to the Config Connector Service Account goes against Google Cloud's publicly shared best practices and the principle of least privilege."

[ Read more of this story ]( https://it.slashdot.org/story/26/06/18/1656252/google-told-researcher-nice-catch-then-denied-bug-bounty-for-flaw-it-still-hasnt-fixed?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Tim Cook Says Apple Price Increases Are 'Unavoidable' Due To Memory Costs
bot.slashdot
robot(spnet, 1) — All
2026-06-18 20:22:01


An anonymous reader quotes a report from MacRumors: Apple is raising its prices to offset the high cost of memory and storage, CEO Tim Cook told The Wall Street Journal. Apple is no longer able to absorb the increased prices and will need to pass some of the cost on to consumers. "Unfortunately, price increases are unavoidable," said Cook. "We're doing our best to mitigate the huge increases that are being passed to us, and we've been trying to shield our customers from the increases, but the situation has become unsustainable."

Growing demand for memory and storage chips from AI companies has led to chip shortages and higher costs. The Wall Street Journal suggests Apple will need to increase device costs "substantially" to maintain its current profit margins given the cost of memory chips and SSDs. Research firm TechInsights claims Apple will need to make the iPhone 18 Pro around $270 more expensive to keep its existing profit margin.

Apple is struggling more with memory chips, but storage chips are also an issue. "There's less supply at a time when consumers want devices and the memory guys are passing along huge price increases," Cook told The Wall Street Journal. Cook said Apple will use its cash to increase memory supply, but he did not give details on what that means. Apple does not plan to create its own memory and storage factories. "We can't do everything," Cook said. "We know what we're good at." Cook likened the memory shortages to a hundred-year flood. "I've never seen anything like it in any area in over 40 years," he said.

Further reading: Smartphone Market To Shrink 15% This Year Due To Memory Crisis

[ Read more of this story ]( https://news.slashdot.org/story/26/06/18/0054201/tim-cook-says-apple-price-increases-are-unavoidable-due-to-memory-costs?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] You Can No Longer Fly Or Purchase a Drone In Beijing
bot.slashdot
robot(spnet, 1) — All
2026-06-18 19:22:01


Longtime Slashdot reader schwit1 shares a report from PetaPixel: China dominates the consumer drone market, so it is perhaps surprising that it is no longer possible to fly or even purchase a drone in Beijing. The new law that passed last month makes it illegal to buy, rent, or fly a drone without prior approval from the authorities. Users must also complete an online training session and pass a test on drone regulations. Under the new rules, drone users are also not allowed to repair or replace their drones in Beijing. Not only that, but a drone in a repair shop must be picked up in-person, rather than sent back by delivery.

The BBC reports that drones must now be registered before being brought into and out of the Chinese capital. "I have to apply for permission for each flight, which is very inconvenient," drone enthusiast Steven Wang tells CNN. "And starting this year, the wait time is getting longer, and the reasons for rejection are becoming more vague." Despite China being the birthplace of the consumer drone industry, it is increasingly difficult for hobbyists to fly there. Beijing authorities say that the rules are made to "strengthen the management of unmanned aerial vehicles" and "safeguard the security of the capital."

[ Read more of this story ]( https://news.slashdot.org/story/26/06/18/0040249/you-can-no-longer-fly-or-purchase-a-drone-in-beijing?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Qt Creator 20
lor.opennet
robot(spnet, 1) — All
2026-06-18 18:44:03


Вышел Qt Creator 20 — новая версия IDE для разработки приложений на Qt, C++, QML и смежных технологиях. В [ официальном анонсе ]( https://www.qt.io/blog/qt-creator-20-released ) Qt Company называет ключевыми новшествами поддержку AI coding agents, новый режим Zen Mode, поддержку системы сборки GN и набор улучшений для CMake, QML, Android, iOS и удалённой разработки под Linux.

Главное изменение выпуска — интеграция с AI-агентами через ACP Client. Новый компонент добавляет в Qt Creator панель чата с агентами, которые могут понимать кодовую базу и выполнять действия от имени разработчика: анализировать код, редактировать файлы, запускать команды и инициировать сборки. Интеграция построена на [ Agent Client Protocol ]( https://agentclientprotocol.com/ ) , а готовые шаблоны подключения берутся из публичного ACP Registry. Среди поддерживаемых конфигураций в анонсе упомянуты Claude Code, Codex, Gemini CLI и GitHub Copilot.

Основные изменения Qt Creator 20

( [ читать дальше... ]( https://www.linux.org.ru/news/development/18321844#cut ) )

[ Скачать исходный код и бинарные файлы ]( https://download.qt.io/official_releases/qtcreator/20.0/20.0.0/ )

[>] В России утвердили работу базы номеров IMEI
std.hugeping.micro
hugeping(ping,1) — All
2026-06-18 16:36:36


В контексте этой новости подумалось, что вот ведь повод снова вернуться к старым добрым временам, когда был КПК и мобильный телефон.

Покупать смартфон в качестве КПК и отдельно неубиваемую вечную "трубку" без функций смартфона (но с функцией BT-модема, например).

[>] Стандартизирован HTTP-метод QUERY, комбинирующий возможности GET и POST
lor.opennet
robot(spnet, 1) — All
2026-06-18 15:44:04


Инженерный комитет IETF (Internet Engineering Task Force), занимающийся развитием протоколов и архитектуры сети Интернет, [ придал ]( https://mailarchive.ietf.org/arch/msg/ietf-announce/uNaYyRDGKjyOn_KDT2JaGLlm9fE/ ) HTTP-методу QUERY статус «Предложенного стандарта» и опубликовал связанную с ним спецификацию [ RFC 10008 ]( https://www.rfc-editor.org/info/rfc10008/ ) . Метод QUERY по способу отправки данных на сервер повторяет метод POST, но отличается от него ориентацией не на запись данных и изменение состояния, а на формирование запросов на чтение.

По решаемым задачам новый метод близок к GET и позволят отправлять запросы, которые могут быть повторены или перезапущены без изменения состояния на сервере. Как и в методе POST параметры запроса в QUERY передаются не в URI, а в теле запроса. Подобный подход даёт возможность передавать большой объём параметров в запросе, превышающий лимит на размер параметров в методе GET (8000 байт).

( [ читать дальше... ]( https://www.linux.org.ru/news/internet/18322124#cut ) )

[>] Mozilla представила план развития Firefox
lor.opennet
robot(spnet, 1) — All
2026-06-18 15:44:03


Компания Mozilla представила список возможностей, развиваемых для будущих выпусков Firefox. Среди намеченных для добавления в Firefox изменений.

https://www.opennet.ru/opennews/art.shtml?num=65714

[>] Компания Valve опубликовала дистрибутив для игровых консолей SteamOS 3.8
lor.opennet
robot(spnet, 1) — All
2026-06-18 15:44:03


Компания Valve представила выпуск операционной системы SteamOS 3.8.10, который отмечен как первый стабильный выпуск в ветке 3.8. Операционная система SteamOS поставляется в устройствах Steam Deck и с недавних пор System Update Channel". В прошлом энтузиастами развивались неофициальные сборки HoloISO и SteamFork, но они находятся в заброшенном состоянии.

https://www.opennet.ru/opennews/art.shtml?num=65716

[>] Brian Johnson, Special Effects Artist Behind 'Space: 1999,' Dies At 86
bot.slashdot
robot(spnet, 1) — All
2026-06-18 15:22:01


Special-effects designer Brian Johnson, known for his groundbreaking work on Space: 1999, The Empire Strikes Back, Alien, and Aliens, has died at the age of 86. Johnson began his career creating models and explosions for Gerry and Sylvia Anderson productions, later designed the iconic Eagle Transporter, and became one of science fiction cinema's most influential behind-the-scenes artists. Longtime Slashdot reader sandbagger remembers the SFX legend, writing: "The Space: 1999 Eagle is one of the great space ships of science fiction."

[ Read more of this story ]( https://entertainment.slashdot.org/story/26/06/18/0048244/brian-johnson-special-effects-artist-behind-space-1999-dies-at-86?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] China's EV Price War Was Built On Cars Sold At a Loss
bot.slashdot
robot(spnet, 1) — All
2026-06-18 11:22:02


Longtime Slashdot reader schwit1 shares a report from Autoblog: For years, the Chinese auto industry has employed a hostile price war to kneecap global competitors. Armed with massive state subsidies, cheap raw materials, and an aggressive "scale-first" business model, Chinese automakers flooded the market with electric vehicles priced so low that legacy manufacturers stood no chance to compete. How did they do it? Simple, they couldn't. They did it anyway. Reports from CarNewsChina show that Chinese automakers have been selling vehicles at a loss until a recent law passed by the Chinese government banned below-cost sales of new vehicles. During the ongoing sales slump in China caused by rolled-back subsidies and direct government intervention banning below-cost sales, the truth behind the rapid expansion of the Chinese auto industry has been exposed. "By the first quarter of 2026, China captured 32 percent of the global auto market, with its New Energy Vehicles (NEVs) controlling an incredible 61 percent of global share," the report notes. Yet that dominance has come at a steep cost: throughout 2025, "the profit margin for China's auto industry plunged to 4.4 percent and dropped further to a historic low of 3.2 percent in early 2026."

"Gross profit, not net profit, per vehicle, plummeted to a mere $2,000. We can expect the net figure to be loss-making." Autoblog adds: "Data shows over 70 percent of Chinese car sales were loss-making. This left more than half of the country's auto industry in the red. Great Wall Motor (GWM) even saw net profits drop 17 percent despite steady revenue growth."

China's EV price war has now hit a wall. New regulations are discouraging below-cost sales, rising material costs are forcing automakers to cut discounts and raise prices, and reduced tax incentives are weakening domestic demand. To sustain growth, manufacturers are increasingly turning to exports.

[ Read more of this story ]( https://tech.slashdot.org/story/26/06/18/0033211/chinas-ev-price-war-was-built-on-cars-sold-at-a-loss?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] STATS 2026-06-17
spnet.stats
root(spnet, 1) — All
2026-06-18 11:11:02


TOP20 VISITORS:

[1] Amazon point=0 web=514 up=11.0MB (27%)
[2] PetalBot point=3 web=1452 up=8.6MB (21%) <--- PetalBot
[3] ClaudeBot point=0 web=548 up=2.7MB (6%)
[4] 37.252.14.x point=144 web=0 up=2.6MB (6%) <--- ake (6/hr)
[5] 216.244.66.x point=1 web=72 up=2.2MB (5%) <--- 216.244.66.x
[6] 217.114.158.x point=24 web=0 up=1.5MB (3%) <--- fox (1/hr)
[7] 81.167.26.x point=0 web=20 up=1.2MB (3%)
[8] 51.77.43.x point=0 web=12 up=1.2MB (2%)
[9] TikTok point=0 web=94 up=1.0MB (2%)
[10] 62.84.185.x point=0 web=11 up=0.8MB (2%)
[11] 104.250.53.x point=0 web=90 up=0.8MB (1%)
[12] 54.37.252.x point=0 web=6 up=0.7MB (1%)
[13] 65.108.78.x point=0 web=4 up=0.6MB (1%)
[14] Google point=0 web=79 up=0.5MB (1%)
[15] 79.137.67.x point=0 web=6 up=0.4MB (<1%)
[16] DataForSeoBot point=0 web=11 up=0.4MB (<1%)
[17] 147.135.215.x point=0 web=6 up=0.4MB (<1%)
[18] 135.181.180.x point=0 web=3 up=0.3MB (<1%)
[19] 194.247.173.x point=0 web=4 up=0.3MB (<1%)
[20] 51.75.129.x point=0 web=3 up=0.2MB (<1%)

TOTAL TRAFFIC: 40MB

[>] СисАдмин 2026 - конференция для системных администраторов
lor.opennet
robot(spnet, 1) — All
2026-06-18 10:44:03


9 октября в Москве пройдет СисАдмин 2026 — большая конференция для системных администраторов, ИТ-менеджеров, инженеров и специалистов по поддержке инфраструктуры. Место проведения – Москва, кластер «Ломоносов». Офлайн-формат, один день.
Участие бесплатное, нужно только зарегистрироваться на [ sysadminconf.ru ]( https://sysadminconf.ru/ ) .

( [ читать дальше... ]( https://www.linux.org.ru/news/conference/18321745#cut ) )

[>] Стандартизирован HTTP-метод QUERY, комбинирующий возможности GET и POST
lor.opennet
robot(spnet, 1) — All
2026-06-18 10:44:02


Инженерный комитет IETF (Internet Engineering Task Force), занимающегося развитием протоколов и архитектуры сети Интернет, придал HTTP-методу QUERY статус "Предложенного стандарта" и опубликовал связанную с ним спецификацию RFC 10008. Метод QUERY по способу отправки данных на сервер повторяет метод POST, но отличается от него ориентацией не на запись данных и изменение состояния, а на формирование запросов на чтение.

https://www.opennet.ru/opennews/art.shtml?num=65713

[>] Tesco Moving 40,000 Server Workloads Off VMware Amid Broadcom's 'Abusive Conduct'
bot.slashdot
robot(spnet, 1) — All
2026-06-18 08:22:01


An anonymous reader quotes a report from Ars Technica: Tesco, a retail conglomerate headquartered in the United Kingdom, is moving 40,000 server workloads off of VMware amid "abusive conduct" from Broadcom, recent legal filings claim. Tesco filed a lawsuit in the UK's High Court against Broadcom alleging breach of contract last year. According to a September report from The Register, the lawsuit claimed that in January 2021, Tesco bought perpetual licenses for VMware's vSphere Foundation and Cloud Foundation, a subscription to VMware Tanzu, plus support services until 2026, with the option to extend support for four additional years.

But when Broadcom took over VMware in November 2023, it would not honor the deal and instead tried to get Tesco to pay "excessive and inflated prices for virtualization software for which Tesco has already paid" and would not allow it to buy support services for its perpetually licensed software without buying "duplicative subscription-based licenses for those same Software products," the initial complaint read, The Register reported at the time. Tesco, which reported 73.7 billion pounds (about $98.7 billion) in revenue in its fiscal year 2026, has since started migrating away from VMware and Broadcom's mainframe products, according to late-May court filings reported on by The Register today.

In January, Broadcom stopped supporting Tesco's VMware products, Tesco said, and Tesco has been paying for third-party support since. In its initial filing, Tesco also said that Broadcom refused to upgrade software or provide all security updates to customers without subscriptions. One of Tesco's recent filings, per The Register, reads: "Faced with Broadcom's abusive conduct, and given the criticality of virtualization and mainframe software and services to its business, Tesco has been forced to incur material costs to procure alternative solutions with reduced functionality, and to migrate to that software in a manner, and on a timeframe, that creates very significant risks to its business."

If it works "at exceptional pace," Tesco will be completely off VMware by the end of 2027 at the earliest. However, "the timeframe in which that migration must be undertaken has created and continues to create operational and commercial risk, and at material ongoing cost and disruption to the business," Tesco reportedly noted. Tesco is also dealing with migration challenges related to data security because its new, unnamed virtualization software is incompatible with the Veeam and Zerto products it uses. Tesco initially requested at least 100 million pounds (about $133.6 million) in damages each from Broadcom, VMware, and reseller Computacenter, plus interest. In its recent filings, Tesco said it turned down at least four offers from Broadcom to continue using VMware and Broadcom's mainframe tech. [...] The case is expected to go to court between November 1, 2027, and February 25, 2028, The Register reported. Afterward, it could go to trial. Further reading: HPE Tempts VMware Users, Partners With Year of Free Virtualization Software

[ Read more of this story ]( https://yro.slashdot.org/story/26/06/17/2357242/tesco-moving-40000-server-workloads-off-vmware-amid-broadcoms-abusive-conduct?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Microsoft Working To Patch 'RoguePlanet' Zero-Day
bot.slashdot
robot(spnet, 1) — All
2026-06-18 03:22:02


wiredmikey shares a report from SecurityWeek: Microsoft on Wednesday published an advisory acknowledging the public disclosure of a vulnerability in Defender that could lead to privilege escalation. The security defect, tracked as CVE-2026-50656 (CVSS score of 7.8), was dropped last week by security researcher Nightmare Eclipse (also known as Chaotic Eclipse). "We are working to provide a high-quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available," Microsoft adds.

RoguePlanet, Nightmare Eclipse explained last week, targets a race condition in Microsoft Defender and allows attackers to gain System privileges. The researcher released a proof-of-concept (PoC) exploit that demonstrates local privilege escalation (LPE) on Windows 11 and Windows 10 systems with the June 2026 patches installed. [...] On Wednesday, Nightmare Eclipse pointed out that the PoC works regardless of whether Defender's real-time protection is enabled or disabled. It may even work in passive mode, the researcher said.

[ Read more of this story ]( https://it.slashdot.org/story/26/06/17/2030228/microsoft-working-to-patch-rogueplanet-zero-day?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Smartphone Market To Shrink 15% This Year Due To Memory Crisis
bot.slashdot
robot(spnet, 1) — All
2026-06-18 02:22:01


CCS Insight expects global smartphone shipments to fall 15% this year as AI-driven demand pushes memory manufacturers toward higher-margin server chips. "[S]ome entry-level devices have already seen their sticker prices go up by more than 50 percent since last year," reports The Register. From the report: The firm found that the primary smartphone market (meaning new devices) contracted 4.4 percent in the first quarter of this year, despite sales channels front-loading (meaning stockpiling) product inventory, as device prices begin to rise sharply. As CCS notes, this casts an ominous shadow on the outlook for the rest of the year, and it seems things have worsened since The Register first started reporting on the smartphone memory woes.

Back in January, the forecast was for handset price rises of 6-8 percent, while the most pessimistic outlook was that the global market might contract as much as 5.2 percent. By February, analysts were expecting to see a decline in shipments of around 8 percent across the global market, and for prices to increase by about 14 percent.

The root cause of all this is the AI craze, which has seen huge demand for high-performance GPU-filled servers to process it all. Chipmakers have moved to capitalize on this by prioritizing production of high-margin memory components for those servers, rather than making the plain old DRAM and NAND needed for PCs and phones. "The memory chip crisis shows no sign of slowing down in the near future, ramping up the pressure on manufacturers and consumers. Memory components now account for more than 30 percent of a manufacturer's bill of materials in some smartphones." said CCS research analyst Ben Hatton. "The full impact has yet to be felt in many regions, but it's clear that device prices will accelerate over the rest of the year."

[ Read more of this story ]( https://mobile.slashdot.org/story/26/06/17/2022201/smartphone-market-to-shrink-15-this-year-due-to-memory-crisis?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Carvana Is Turning Dealerships Into 'Playgrounds,' Test-Drive Centers With Sales All Online
bot.slashdot
robot(spnet, 1) — All
2026-06-18 01:22:01


Carvana is testing a radically different new-car dealership model in Dallas, turning the location into a test-drive center and themed "playground" while requiring every purchase to be completed through its online platform. "Every single car that we sell, whether it's used or new, is online," said Tom Taira, Carvana president of special projects who's leading the new vehicle operations. "That's a very inherent difference. Even coming into the store, you're buying it online, and that's a big difference in how people think about it." The company hopes its no-haggle pricing, hourly employees, service operations, and national logistics network can reshape franchised auto retail. CNBC reports: Through its used vehicles sales, Carvana has become the most valuable auto retailer in the U.S. with a more than $70 billion market cap. Carvana's target with the new vehicle business is to grow its market share and customer base as well as assist used vehicle sales through trade-ins and other means, according to Taira. If the company is successful, the strategy could cause a ripple effect across the U.S. franchised dealership model, which the National Automobile Dealers Association reports includes 16,990 retailers that topped $1.3 trillion in sales last year.

[...] Carvana is using a location in Dallas as a test center for its foray into new vehicle sales. The facility looks like a traditional Stellantis dealership from the outside, but the consumer process for purchasing a vehicle and the responsibilities of its employees are unprecedented. Couches and chairs replace cubicles and sales offices. There are no finance and insurance departments, and instead of an army of commission-based employees, the facility has associates that are paid hourly to assist customers -- if they want the help.

The experience is meant to be as self-guided as a customer wants. By scanning QR codes located on 10-foot-by-10-foot screens inside the building or on vehicles and displays outside, shoppers can customize a vehicle, learn about a product's features and conduct test drives before deciding whether to purchase anything. If they do decide to buy something, it's online and not originated from a sales person, the company said.

The "playground" has roughly 50 vehicles divided by brand, with each having a theme. Jeep has an off-road display. Dodge has race tracks, including a Carvana-themed Charger pace car and part of a traditional track fence barrier. Chrysler minivans, meanwhile, have a soccer net and Ram's area is truck-centric. Carvana is not committing to expanding the exact experience to its other franchised dealer locations, but Taira told CNBC that the overall process of online sales, vehicle testing and service are expected to be consistent throughout the locations. Further reading:: Online Car Retailer Launching Nation's First Car "Vending Machine

[ Read more of this story ]( https://tech.slashdot.org/story/26/06/17/2015221/carvana-is-turning-dealerships-into-playgrounds-test-drive-centers-with-sales-all-online?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Google, Microsoft, and OpenAI Back Linux Foundation's Appia AI Standards Initiative
bot.slashdot
robot(spnet, 1) — All
2026-06-18 01:22:01


BrianFagioli writes: Google, Microsoft, OpenAI, Arm, Mastercard, Siemens, and other companies have joined the newly launched Appia Foundation under the Linux Foundation. The project aims to create common specifications and assessment frameworks that organizations can use to demonstrate AI systems meet emerging safety, trust, and compliance requirements. According to the Linux Foundation, the framework is designed to allow conformity evidence to be reused across the AI supply chain, potentially reducing duplicate assessments and compliance costs. The announcement comes as governments around the world move toward enforcing AI regulations and organizations face increasing pressure to prove AI systems are trustworthy. "As international standards and legal frameworks become more established, global organizations need a consistent, practical way to verify that AI systems conform to new expectations," said Jim Zemlin, CEO of the Linux Foundation. "The Appia Foundation establishes a neutrally governed environment where the entire industry can collaborate on a common assessment framework. By building this infrastructure in the open, we are helping organizations reduce complexity, lower operational costs and build trust."

Craig Shank, Executive Director of the Appia Foundation, added: "AI systems now make decisions about people's loans, their children's schools and their jobs. People on the receiving end deserve to know those systems were built and assessed against criteria that hold up to scrutiny. The Appia Foundation was formed to do that work: creating publicly available specifications that organizations across the AI value chain use to demonstrate their systems meet those criteria. By establishing this open framework, we are building the accountability layer required to scale safe and trusted AI across major industries."

[ Read more of this story ]( https://linux.slashdot.org/story/26/06/17/201217/google-microsoft-and-openai-back-linux-foundations-appia-ai-standards-initiative?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Обновление nginx 1.31.2 с устранением уязвимостей, эксплуатируемых через HTTP/3, HTTP2 и gRPC
lor.opennet
robot(spnet, 1) — All
2026-06-18 00:44:03


Сформирован выпуск основной ветки nginx 1.31.2, в рамках которой продолжается развитие новых возможностей, а также выпуск параллельно поддерживаемой стабильной ветки nginx 1.30.3, в которую вносятся только изменения, связанные с устранением серьёзных ошибок и уязвимостей. В обновлениях устранено 3 уязвимости.

https://www.opennet.ru/opennews/art.shtml?num=65712

[>] Anthropic Employees Accuse Trump Administration of Targeting Them
bot.slashdot
robot(spnet, 1) — All
2026-06-17 23:22:01


Anthropic employees say they remain confused and increasingly convinced that the Trump administration is singling out the company after officials gave it less than 90 minutes to disable Fable 5 and Mythos 5 over alleged national security concerns. Cybersecurity experts, however, argue that the cited behavior of helping to identify vulnerabilities in software is also available in rival models and is more valuable to defenders than attackers. The New York Times reports: Inside the company, employees' private group chats immediately lit up. Managers were instructed to prepare customers for a potential service disruption to the models, called Fable 5 and Mythos 5. But the messaging kept changing, with workers initially being told that the security problem was the ability of foreign companies to gain access to the systems, and later that a major vulnerability had been discovered in the models.

In employee chats, Anthropic engineers asked one another if the company's plan to go public this year would be harmed by the White House directive. Many shared news reports that offered conflicting information about why the White House had ordered Anthropic to suspend access to Fable 5 and Mythos 5 for all foreign nationals. "What are you telling your clients?" one employee asked in a chat viewed by The New York Times. Another said, "Does anyone know what to believe?" In another message, a worker said, "I don't understand what the issue is."

Six days later, Anthropic's roughly 3,000 employees still have few answers. The San Francisco company is continuing to grapple with internal confusion as Dario Amodei, the chief executive, and some of his lieutenants meet with the Trump administration to try and resolve the situation. But after discussions on Monday and Tuesday, there was no breakthrough over ending the U.S. order to limit access to the company's new A.I. models. In a statement on Monday, Anthropic said it would continue meeting with government officials and pledged its "ongoing commitment to working alongside the administration."

The dispute highlights how singular Anthropic has become in Washington. It was the second time in six months that the fast-growing A.I. start-up has become embroiled in a fight with the Trump administration over its powerful technologies, even as other A.I. companies offer similar models that have not received the same attention. And it has left Anthropic's employees in what they described as a holding pattern, with some wondering if they were being picked on by President Trump. "Are we being bullied based on bad vibes?" one employee asked in a chat viewed by The Times. Yesterday, TechCrunch's Zack Whittaker argued that the move sets a troubling precedent: the government can unilaterally disrupt American software products without court approval, potentially undermining trust in U.S. AI providers.

[ Read more of this story ]( https://yro.slashdot.org/story/26/06/17/1737246/anthropic-employees-accuse-trump-administration-of-targeting-them?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] AI Will Lead To Labor Shortages, Bezos Says In Optimistic Talk
bot.slashdot
robot(spnet, 1) — All
2026-06-17 22:22:01


An anonymous reader quotes a report from Reuters: Artificial Intelligence will lead to labour shortages, not the replacement of humans, Amazon founder Jeff Bezos predicted in a highly optimistic appearance at the VivaTech technology conference in Paris on Wednesday. Bezos put forward a rosy vision of how technology will help humanity, speaking about projects including his space venture Blue Origin and his new AI startup Prometheus, which is aimed at speeding up physical manufacturing. "I know there's a lot of concern that many people have, including many smart people, that AI is going to make humans redundant and so on," Bezos said. "I totally disagree with this point of view. And I think, in fact, AI is going to create a labor shortage."

Half of Americans fear the rise of AI could put them or someone in their household out of work, a Reuters/Ipsos poll found this month. Bezos, the world's fourth-richest person with a net worth around $250 billion, argued that people have "endless" things to do, and are currently limited by barriers that he said AI would lower. One goal of space exploration is to move polluting industries off Earth, said Bezos, whose Blue Origin aims to compete with trillionaire Elon Musk's SpaceX in rockets. "If space travel gets reliable enough and inexpensive enough, and we can get materials from asteroids and near-Earth objects and the moon, then this garden planet can be returned to its pre-Industrial Revolution state," Bezos said.

[ Read more of this story ]( https://slashdot.org/story/26/06/17/1711214/ai-will-lead-to-labor-shortages-bezos-says-in-optimistic-talk?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Компания Epic Games опубликовала систему управления версиями Lore
lor.opennet
robot(spnet, 1) — All
2026-06-17 21:44:04


Компания Epic Games открыла код централизованной системы управления версиями Lore, которая ранее поставлялась в составе инструментария UEFN (Unreal Editor for Fortnite) под именем Unreal Revision Control. Система оптимизирована для использования при разработке проектов, сочетающих исходный код с очень большими нетекстовыми файлами. Например, Lore подходит для разработки компьютерных игр, при создании которых приходится совместно работать над такими ресурсами, как текстуры, 3D-модели и звуковые данные. Так как организация слияния разных версий нетекстовых файлов проблематична, совместная работа над ними организована на уровне выставления эксклюзивной блокировки, не позволяющей одновременно редактировать ресурс нескольким участникам. Код проекта написан на языке Rust и распространяется под лицензией MIT.

https://www.opennet.ru/opennews/art.shtml?num=65711

[>] Epic Games Announces Lore Open-Source Version Control System
bot.slashdot
robot(spnet, 1) — All
2026-06-17 21:22:01


Epic Games has released Lore, an MIT-licensed version control system written in Rust and designed specifically for "games and entertainment purposes with large file sizes," reports Phoronix. From the report: While there is Git LFS for large file storage with Git, Epic Games has crated Lore as a version control system designed entirely around the large file needs of modern game development as well as multimedia/entertainment purposes. Lore is designed to be fast and efficient for large files including binary files, and be easy-to-use including for 3D artists and more.

The Lore documentation elaborates more on its differences and motivation for development compared to Git: "No existing system was designed for the combination of constraints that large game and entertainment projects require: arbitrary content types, multi-axis scale, multi-tenant safety, and a fully open specification and license. [...] Lore is designed to combine what works in each (Git's content-addressed revision graph and centralized systems): a centralized server-of-record for durability, access control, and conflict resolution; content-addressed storage with fragment-level deduplication that is as effective on a multi-gigabyte binary as on a kilobyte of text; sparse, lazy working copies that materialize only what you need; free branching; and a fully open, publicly versioned specification and MIT license. Normal editing operations -- staging, committing, branching, diffing -- never require a network round trip." You can learn more at Lore.org. All the code is available on GitHub.

[ Read more of this story ]( https://news.slashdot.org/story/26/06/17/1654241/epic-games-announces-lore-open-source-version-control-system?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Hacking Group Claims Major Hack of Novo Nordisk, Attempted $25 Million Extortion
bot.slashdot
robot(spnet, 1) — All
2026-06-17 20:22:01


Reuters reports a cyber extortion group has claimed responsibility for breaching Novo Nordisk's network, stealing roughly 1.3 terabytes of data, including source code, drug research, clinical-trial records, employee and physician information, production-system details, and internal AI model data. The group says it's exploring selling parts of the data after unsuccessfully demanding $25 million from the company. From the report: FulcrumSec, a cyber extortion group that emerged in October 2025, said in a long message posted to its website that it spent more than two months in Novo Nordisk's networks stealing data. It said that data included company source code, proprietary information on released and unreleased drugs, trial data, employee, doctor and patient data, information related to company processing facilities and internal AI model information.

[...] FulcrumSec told Reuters in an email that Novo Nordisk representatives contacted the group on June 3, roughly 48 hours after the group's initial contact to unnamed company executives. The company used a random Proton Mail email address sent to email addresses that FulcrumSec used in its initial outreach, and confirmed it was the company by requesting specific files for verification only the company would know about.

The FulcrumSec representative also said that the group would prefer not to sell data, "as open sourcing it is a more effective deterrent for future companies to avoid paying." [...] FulcrumSec said it would not share some of the data it stole, including information on thousands of company employees and physicians, and roughly 11,500 pseudonymized clinical trial patients. The group said it also would withhold data related to operational technology and software used to interact with sensors and machinery at Novo Nordisk production facilities as part of its "harm-reduction strategy." A Novo Nordisk spokesperson said in an email that the company "is aware of claims that data allegedly copied externally without authorization from our systems has been published online. We take this matter seriously and maintain continued operations of our main platforms. We are in contact with the relevant authorities."

[ Read more of this story ]( https://yro.slashdot.org/story/26/06/17/0617255/hacking-group-claims-major-hack-of-novo-nordisk-attempted-25-million-extortion?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Компания Canonical представила систему распознавания речи Myna
lor.opennet
robot(spnet, 1) — All
2026-06-17 19:44:03


Жан-Батист Лальман (Jean Baptiste Lallement), директор по инжинирингу в компании Canonical, представил проект Myna, развивающий приложение распознавания речи, которое намерены использовать для организации голосового ввода и распознавания команд на естественном языке в Ubuntu Desktop. Проект распространяется под лицензией GPLv3, но в репозитории пока присутствуют только наброски с описанием модульной архитектуры проекта и его интеграции с Ubuntu.

https://www.opennet.ru/opennews/art.shtml?num=65709

[>] OpenAI Losses Increased Nearly 8X In 2025, With Spending Hitting $34 Billion
bot.slashdot
robot(spnet, 1) — All
2026-06-17 19:22:01


An anonymous reader quotes a report from independent journalist Ed Zitron: Today, I can exclusively report, based on audited financial documents viewed by this publication that have been independently verified by the Financial Times, that OpenAI lost around $38.5 billion in 2025, as well as other crucial details about the financial condition of the company. [...] At the end of the year, OpenAI had just over $50 billion in assets, with almost half of that in cash. [...] The financial condition of OpenAI is deeply concerning. $38.53 billion in losses are astronomical, and far higher than most believed it would be. Losses also appear to be mounting year-over-year at a dramatic rate, and I'm not sure how this company finds a way toward any kind of sustainability or profitability. As discussed, I have not editorialized much today. I believe the best thing I can do for the general public is to deliver this news as plainly as possible. Ars Technica's Kyle Orland offers a more editorial take, writing: All told, OpenAI's day-to-day "loss from operations" increased from $8.78 billion in 2024 to $20.92 billion in 2025, a concerning direction for a company that is telling investors it hopes to be profitable by 2030. But measured as a percentage of revenues, the company's operating losses slightly improved year to year, from 237 percent in 2024 to 160 percent in 2025.

Operating numbers aside, OpenAI's headline "net loss" number of just over $5 billion in 2024 ballooned to nearly $39 billion in 2025. But the 2025 number includes a significant accounting charge related to investor valuations that shifted amid the company's 2025 conversion to a for-profit structure. The Financial Times cites "a person familiar with the matter" in reporting that this non-recurring charge was approximately $30 billion and that OpenAI's 2025 net loss amounted to a more reasonable-looking $8 billion without it.

[ Read more of this story ]( https://slashdot.org/story/26/06/17/0554244/openai-losses-increased-nearly-8x-in-2025-with-spending-hitting-34-billion?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] openSUSE Agama 22
lor.opennet
robot(spnet, 1) — All
2026-06-17 18:44:04


Опубликован выпуск Agama 22 — нового установщика для openSUSE и SUSE, развиваемого как замена классическому YaST Installer. Agama построен как сервисно-ориентированный установщик с веб-интерфейсом и возможностью интеграции с внешними инструментами. Код проекта распространяется под лицензией GPL-2.0.

В [ анонсе Agama 22 ]( https://agama-project.github.io/blog/2026/06/16/agama-22 ) разработчики отмечают, что в этом выпуске основное внимание уделено улучшению интерфейса. В проекте считают Agama 22 самым удобным и доступным выпуском установщика на данный момент.

Основные изменения Agama 22

( [ читать дальше... ]( https://www.linux.org.ru/news/suse/18321309#cut ) )

[>] Первые замеры производительности Steam Machine под SteamOS
lor.opennet
robot(spnet, 1) — All
2026-06-17 17:44:05


В базе Geekbench появились первые публичные результаты производительности новой Steam Machine от Valve, выполненные уже под SteamOS, а не под Windows. Устройство проходит как Valve Fremont: один из результатов показывает 2334 балла в single-core и 7316 баллов в multi-core, второй — 2282 и 7392 балла соответственно. Оба теста были загружены 15 июня 2026 года и выполнены в Geekbench 6.7.1 for Linux x86 (64-bit) — это видно в карточках [ первого ]( https://browser.geekbench.com/v6/cpu/18366182 ) и [ второго ]( https://browser.geekbench.com/v6/cpu/18366190 ) прогона.

Steam Machine — это новая попытка Valve выпустить компактный игровой ПК для гостиной на базе SteamOS. На [ официальной странице устройства ]( https://store.steampowered.com/hardware/steammachine ) Valve позиционирует его как систему для игры в 4K при 60 FPS с использованием FSR, с полузаказными AMD CPU и GPU, двумя вариантами накопителя — 512 ГБ и 2 ТБ — и современной сетевой частью. Новые бенчмарки важны тем, что впервые показывают производительность Fremont именно в целевой среде — Linux-based SteamOS.

Что показали первые тесты

( [ читать дальше... ]( https://www.linux.org.ru/news/games/18321315#cut ) )

[>] Firefox 152
lor.opennet
robot(spnet, 1) — All
2026-06-17 16:44:04


[ Доступен ]( https://download-installer.cdn.mozilla.net/pub/firefox/releases/152.0/ ) Firefox 152, главными новшествами которого стали переработанный интерфейс настроек и экспериментальная поддержка JPEG XL.

( [ читать дальше... ]( https://www.linux.org.ru/news/mozilla/18321592#cut0 ) )

[>] В ядре Linux 7.2 прекращена поддержка стека протоколов AppleTalk
lor.opennet
robot(spnet, 1) — All
2026-06-17 15:44:04


Линус Торвальдс принял в состав ядра Linux 7.2, релиз которого ожидается в середине августа, набор патчей с изменениями для сетевой подсистемы, в котором продолжена чистка ядра от устаревших драйверов и подсистем. Наиболее значимым стало удаление из ядра реализации стека протоколов AppleTalk. AppleTalk использовался в компьютерах Apple с 1985 года и в 1990-е годы был заменён на TCP/IP. Поддержка AppleTalk была прекращена Apple в выпуске Mac OS X 10.6 "Snow Leopard", сформированном в 2009 году.

https://www.opennet.ru/opennews/art.shtml?num=65707

[>] Stop Killing Games Fails To Secure EU Law Despite 1.3 Million Signatures
bot.slashdot
robot(spnet, 1) — All
2026-06-17 15:22:02


The European Commission has declined (PDF) to propose a law requiring publishers to keep discontinued video games playable, despite the Stop Killing Games initiative collecting nearly 1.3 million verified signatures. Instead, it plans to develop a voluntary industry code covering end-of-life transparency and preservation. Dextero reports: The Commission's full communication said a legal obligation to keep games playable, as requested by the initiative, "would not be proportionate." It cited concerns about intellectual property rights, confidential business information, publisher costs, and potential cybersecurity or safety risks once games are no longer supported. The code of conduct could include more transparent storefront labeling about possible game discontinuation, along with more partnerships between publishers and cultural heritage institutions to preserve games. However, it would not legally require publishers to provide offline patches, private server tools, or other methods for players to continue accessing games after official support ends. The Commission also argued that existing EU consumer law already provides some safeguards, including requirements around transparency, contract duration, termination conditions, and possible refunds if a shutdown conflicts with the agreement or a consumer's reasonable expectations.

[...] Despite the setback, Stop Killing Games has said it is not ending its push for legislation. In a response posted after the Commission's decision, the official Stop Killing Games account said the outcome was "not unexpected" and claimed the campaign had already prepared for the result. The group said it is now pushing for members of the European Parliament to amend Stop Killing Games into the Digital Fairness Act instead. "We can move on without the Commission and their non-decision," the group said, referencing earlier comments from Accursed Farms creator Ross Scott.

[ Read more of this story ]( https://games.slashdot.org/story/26/06/17/0542212/stop-killing-games-fails-to-secure-eu-law-despite-13-million-signatures?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] При переводе Firefox на zlib-rs разработчики натолкнулись на ошибку в CPU Intel
lor.opennet
robot(spnet, 1) — All
2026-06-17 14:44:03


Организация Trifecta Tech Foundation, развивающая такие проекты, как ntpd-rs, sudo-rs, zlib-rs и bzip2-rs, рассказала о переходе Firefox на использование библиотеки zlib-rs для сжатия и распаковки c использованием метода gzip. Кроме защиты от проблем, вызванных ошибками при работе с памятью, переход с zlib на zlib-rs привёл к заметному повышению производительности - в проведённых тестах ускорение составило от 3.3 до 32.5 раз при единичных операция декодирвоания и от 2.7 до 10.86 раз при декодировании непрерывного потока.

https://www.opennet.ru/opennews/art.shtml?num=65705

[>] При переводе Firefox на zlib-rs разработчики натолкнулись на ошибку в CPU Intel
lor.opennet
robot(spnet, 1) — All
2026-06-17 14:44:03


Организация Trifecta Tech Foundation, развивающая такие проекты, как ntpd-rs, sudo-rs, zlib-rs и bzip2-rs, рассказала о переходе Firefox на использование библиотеки zlib-rs для сжатия и распаковки c использованием метода gzip. Кроме защиты от проблем, вызванных ошибками при работе с памятью, переход с zlib на zlib-rs привёл к заметному повышению производительности - в проведённых тестах ускорение составило от 3.3 до 32.5 раз при единичных операция декодирвоания и от 2.7 до 10.86 раз при декодировании непрерывного потока.

https://www.opennet.ru/opennews/art.shtml?num=65705

[>] Уязвимости в MySQL, VirtualBox, Solaris и других продуктах Oracle
lor.opennet
robot(spnet, 1) — All
2026-06-17 12:44:03


Компания Oracle опубликовала плановый выпуск обновлений своих продуктов (Critical Patch Update), нацеленный на устранение критических проблем и уязвимостей. В июньском обновлении устранена 245 уязвимостей.

https://www.opennet.ru/opennews/art.shtml?num=65704

[>] AI and Brain-Computer Interface Allow Speechless ALS Patient To Work a Full-Time Job
bot.slashdot
robot(spnet, 1) — All
2026-06-17 11:22:01


UC Davis researchers say an implanted brain-computer interface has allowed Casey Harrell, an ALS patient who cannot speak, to synthesize sentences from brain activity with 99% accuracy in controlled tests and about 92% accuracy in everyday use. The Register reports that the system has remained usable at home since 2023, helping Harrell communicate naturally, control a computer, and return to full-time work without researchers needing to supervise each session. The Register reports: A team of scientists from the University of California, Davis, published a paper Monday detailing a years-long study of a brain computer interface (BCI) system implanted in a patient with amyotrophic lateral sclerosis (ALS, also known as Lou Gehrig's disease), which destroys motor neurons and causes loss of motor control and eventual paralysis. According to the team, their patient, Casey Harrell, has been living with BCI implants since 2023 that are still working today, giving him the ability not only to control a computer cursor with his thoughts, but also to speak. [...] Davis neurosurgeon David Brandman, co-principal investigator and co-senior author of the paper published Monday, as well as the surgeon who placed Harrell's implant, described the results his team published as the crossing of a threshold in BCI technology: Not only has Harrell's implant been working well with daily use since 2023, but it's also incredibly accurate.

In controlled tests, the system managed to synthesize sentences from Harrell's brain activity with 99 percent accuracy; outside of the lab in daily use, Harrell still assessed it as being accurate 92 percent of the time. "The key thing to me is that it's enabling everyday communication for a guy who wants to talk but can't," Brandman told The Register in an interview. "Despite being paralyzed [Harrell] has gone back to work full time and has meaningful conversations with his daughter who's never heard the sound of his voice."

Prior work in the BCI space, Brandman told us, has either required researchers to be in a patient's home whenever they're using the tech, or for the patient to come to the researchers. That's not the case here, with the system allowing Harrell's home care team to hook him up to the system themselves, enabling him to use the device for more than 3,800 hours in the past few years. Based on the time the study was filed (It published Monday but went into peer review in July 2025) that would mean Harrell was using the device for more than five hours a day, on average. "It is a life that is more full of dynamic action and with friends and family, with colleagues, and it is something that allows me to communicate more in my natural way of communicating than any other technology that I have experienced," Harrell told UC Davis via his BCI system.

[ Read more of this story ]( https://science.slashdot.org/story/26/06/16/2342243/ai-and-brain-computer-interface-allow-speechless-als-patient-to-work-a-full-time-job?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] SonicDE: X11-ориентированный форк компонентов KDE Plasma
lor.opennet
robot(spnet, 1) — All
2026-06-17 11:44:04


На фоне подготовки KDE к отказу от сессии X11 в Plasma 6.8 набирает внимание проект SonicDE — развиваемый сообществом набор форков компонентов KDE Plasma и KDE Frameworks, ориентированный на сохранение и развитие X11-стека. В [ описании проекта ]( https://sonicde.org/ ) разработчики прямо говорят, что SonicDE должен «сохранить и улучшить X11-специфичные части KDE» после перехода Plasma к Wayland-only-модели. Поводом для новой волны интереса стал [ обзор It’s FOSS ]( https://itsfoss.com/sonicde-x11-kde-plasma-fork/ ) , где SonicDE описан как попытка дать пользователям «Plasma с X11» после удаления X11-сессии из будущих выпусков KDE Plasma.

Команда KDE уже объявила, что в [ Plasma 6.8 не будет X11-сессии в экране входа ]( https://planet.kde.org/david-edmundson-2026-06-02-ex-11-prepping-for-plasmas-last-x11-supported-release/ ) , а X11-специфичные пути в Plasma Shell, System Settings и настройках устройств будут удалены. При этом поддержка XWayland для запуска старых X11-приложений сохранится, но полноценная сессия Plasma/X11 больше не будет развиваться в upstream KDE.

( [ читать дальше... ]( https://www.linux.org.ru/news/kde/18320730#cut ) )

[>] GrapheneOS портирован на Android 17
lor.opennet
robot(spnet, 1) — All
2026-06-17 11:44:03


Разработчики проекта GrapheneOS, развивающего защищённую свободную прошивку на базе Android, объявили о готовности порта на базе выпущенной вчера платформы Android 17. В настоящее время осуществляется перенос порта в публичный репозиторий с исходным кодом (разработчики GrapheneOS получили доступ к коду и патчам Android до передачи в открытый доступ, благодаря партнёрству с одним из OEM-поставщиков).

https://www.opennet.ru/opennews/art.shtml?num=65703

[>] STATS 2026-06-16
spnet.stats
root(spnet, 1) — All
2026-06-17 11:11:01


TOP20 VISITORS:

[1] Amazon point=0 web=491 up=11.4MB (29%)
[2] PetalBot point=2 web=1153 up=7.7MB (19%) <--- PetalBot
[3] 37.252.14.x point=144 web=0 up=2.6MB (6%) <--- ake (6/hr)
[4] 216.244.66.x point=3 web=72 up=2.5MB (6%) <--- 216.244.66.x
[5] TikTok point=0 web=152 up=2.1MB (5%)
[6] 217.114.158.x point=25 web=0 up=1.4MB (3%) <--- fox (1/hr)
[7] 65.108.125.x point=0 web=8 up=1.0MB (2%)
[8] Google point=0 web=117 up=0.7MB (1%)
[9] 65.108.78.x point=0 web=5 up=0.6MB (1%)
[10] 81.167.26.x point=0 web=10 up=0.5MB (1%)
[11] 51.75.119.x point=0 web=6 up=0.5MB (1%)
[12] 94.154.239.x point=0 web=4 up=0.4MB (1%)
[13] 88.89.67.x point=0 web=5 up=0.4MB (1%)
[14] 135.181.180.x point=0 web=6 up=0.4MB (<1%)
[15] 145.239.195.x point=0 web=3 up=0.3MB (<1%)
[16] 93.158.213.x point=0 web=4 up=0.3MB (<1%)
[17] 37.187.226.x point=0 web=4 up=0.3MB (<1%)
[18] 95.217.109.x point=0 web=4 up=0.3MB (<1%)
[19] 51.75.128.x point=0 web=6 up=0.3MB (<1%)
[20] 62.84.185.x point=0 web=3 up=0.3MB (<1%)

TOTAL TRAFFIC: 38MB

[>] HPE Tempts VMware Users, Partners With Year of Free Virtualization Software
bot.slashdot
robot(spnet, 1) — All
2026-06-17 08:22:02


An anonymous reader quotes a report from Ars Technica: Hewlett Packard Enterprise's (HPE) new virtualization software promotion will likely pique the interest of end users and resellers who are unhappy with Broadcom's pricing of VMware. During its HPE Discover event in Las Vegas this week, HPE announced that customers could use its "HPE Morpheus Software -- VM Essentials" offering for free for "up to one year," per a press release. HPE's website describes its virtualization platform as a "VMware alternative." It includes a hardware virtual machine (HVM) hypervisor and unified management and lets users "manage VMware ESXi and HVM clusters from one console and migrate when you're ready," HPE's website says. "New VM Essentials customers can receive up to one free year of licenses for VM Essentials, a year of HPE Zerto for $1 to support non-disruptive migration to HPE virtual machines, and 0 percent interest on software through HPE Financial Services," HPE's announcement reads, referring to HPE's group for helping IT teams manage funding.

Free for a year is cheaper than what Broadcom has charged for VMware vSphere since taking over. VMware prices have skyrocketed due to VMware's parent company eliminating perpetual licenses and bundling products into expensive packages. Notably, per its website, HPE recommends charging $600 per CPU socket per year for VM Essentials; Broadcom has controversially shifted vSphere licensing pricing to a per-core basis. "Customers are feeling quite a bit of pain in the change that some of the virtualization companies have put there, specifically Broadcom," Jeremiah Jenson, VP of HPE's North American channel and partner ecosystem, told CRN. The executive claimed that VM Essentials could bring up to 90 percent cost savings compared to VMware while also helping to "eliminate vendor lock-in and simplify hybrid IT."

From March 1 to June 30, HPE has also been offering a free year of VM Essentials via rebate to customers who buy an AMD server and a one-year VM Essentials license. VM Essentials is only available through channel partners, a stark contrast from Broadcom's VMware approach, where the chip giant has drastically reduced the number of resellers that can sell VMware products. HPE's new promotion aims to entice customers to more deeply consider migrating off VMware. [...] HPE also announced that it would give 600 reseller partners who earn the HPE partner program's Private Cloud with Virtualization competency by the end of the year free VM Essentials software licenses for three years. Partners still have to pay support costs, though. The benefit is "a step in the correct direction," said Dean Colpitts, CTO of Canadian managed services provider (MSP) Members IT Group (MITG), which VMware cut from its reseller program after 19 years of partnership a year ago. However, limiting the promotion to 600 partners is "very shortsighted." He believes that HPE should give all of its partners VM Essentials "to facilitate getting [VM Essentials] into customer sites and displacing the competitors."

"They need to fling [VM Essentials] as far and as fast as they possibly [can] to immediately gain traction and draw ISVs to them, which will increase adoption even more," he said.

[ Read more of this story ]( https://tech.slashdot.org/story/26/06/16/2334256/hpe-tempts-vmware-users-partners-with-year-of-free-virtualization-software?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Commodore's Callback 8020 Is a $499 Flip Phone That Blocks Social Media and Browsers
bot.slashdot
robot(spnet, 1) — All
2026-06-17 03:22:02


Commodore has unveiled the Callback 8020, a $499 Sailfish OS flip phone that runs most Android apps but deliberately blocks social media, browsers, email, and workplace apps to discourage doomscrolling. The "not dumb dumbphone" still supports messaging, music, maps, ridesharing, hotspots, a removable battery, and plenty of Commodore nostalgia. "The phone uses T9-style texting with predictive input, includes Commodore SID ringtones, ships with a selection of Commodore and Sailfish games, and even includes Snake," reports TechSpot. From the report: Commodore says it has developed patent-pending technology that prevents browsers and social media apps from being sideloaded, while DNS-level blocking should stop them from working even if someone finds a way to install them. Users can still sideload nearly anything else if it's not available on the Commostore, but apps designed for doomscrolling remain off limits. That means useful services such as WhatsApp, SMS, Signal, Telegram, WeChat, Spotify, Uber, Lyft, maps, podcasts, QR scanning, voice notes, and hotspot support work, but the likes of Instagram, TikTok, Facebook, Gmail, and browsers do not.

The Callback 8020 has a 3.25-inch 480 x 640 internal display, a MediaTek Helio G81 chip, 4GB of RAM, 64GB of storage, a 48MP Sony rear camera, an autofocus front camera, dual SIM support, USB-C, a headphone jack, FM radio, and something many of us miss from flagships: a removable battery. There's no 5G as Commodore argues that 4G VoLTE and Wi-Fi better fit a device meant to discourage constant streaming and scrolling. [...] The main screen is touch-capable but disabled by default, while the outer display keeps things deliberately sparse, showing basics such as time, battery, signal, and notifications via dome LEDs.

The 8020 name is a nod to Commodore's 8010 modem from 1980. The phone comes in ProtoPET White, SX Silver, BASIC Beige, a translucent Starlight Edition, and a gold Founders Edition with a 24-karat gold-plated Commodore button. Standard models start at $499, the Starlight version is $549.99, and the Founders Edition costs $640. Preorders open June 30, with shipping targeted for winter. You can watch the launch ad on YouTube.

[ Read more of this story ]( https://mobile.slashdot.org/story/26/06/16/201248/commodores-callback-8020-is-a-499-flip-phone-that-blocks-social-media-and-browsers?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Binance Set To Lose Permission To Operate In EU
bot.slashdot
robot(spnet, 1) — All
2026-06-17 02:22:05


Binance is expected to lose permission to serve EU customers in July after Greek regulators reportedly decided to reject its MiCA license application. Reuters reports: Under new EU rules, called MiCA, crypto firms have until the end of June to obtain a licence to allow them to keep servicing clients across the bloc. Binance's application, made to Greece's market regulator, is set to be turned down, the people said. European regulators have been attempting to rein in crypto exchanges, which allow people to trade cryptocurrencies such as bitcoin around the globe.

Under MiCA, crypto companies have to apply for licenses from regulators in individual EU countries, which they can use as a "passport" to operate throughout the 27-nation bloc. At stake is oversight of the multi-trillion-dollar crypto industry, which regulators have long warned could destabilize markets and harm investors if not properly supervised. The Greek rejection would mean Binance will not be given the green light to operate in the EU, leaving the fate of Binance's customers based in the bloc uncertain.

Binance posted on X after the Reuters report was published that it intends to "support an orderly process and minimise disruption to our users", without giving further details. A spokesperson for Binance, which has 300 million customers worldwide, earlier said it has been pursuing a MiCA licenze and had worked with regulators for 18 months. Binance believes it has met the requirements to be MiCA authorized, the spokesperson said. It understood that Greece's Hellenic Capital Market Commission had completed its review of the application and it was considered compliant. "HCMC has given no formal indication of the contrary," the spokesperson told Reuters.

[ Read more of this story ]( https://news.slashdot.org/story/26/06/16/1942225/binance-set-to-lose-permission-to-operate-in-eu?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Выпуск VirtualBox 7.2.10
lor.opennet
robot(spnet, 1) — All
2026-06-17 01:44:03


Компания Oracle опубликовала корректирующий релиз системы виртуализации VirtualBox 7.2.10, в котором представлено 14 изменений.

https://www.opennet.ru/opennews/art.shtml?num=65702

[>] France To Stop Certifying Products Without Quantum-Safe Encryption
bot.slashdot
robot(spnet, 1) — All
2026-06-17 01:22:01


Starting in 2027, France's cybersecurity agency ANSSI will stop certifying security products that lack quantum-resistant encryption, effectively forcing government agencies and critical infrastructure operators to phase out older cryptographic systems. Reuters reports: Samih Souissi, ANSSI's chief of staff, said at the France Quantum conference that the agency would halt such certifications from 2027, and that businesses should be buying only quantum-safe products by 2030. ANSSI approval is required for use in French government agencies and critical infrastructure, making the policy a de facto phase-out of older encryption.

"It's not only a technical issue," Souissi said. "It's a matter of governance, industrial planning, regulation, and sovereignty." The move reflects concern that attackers may store encrypted data now and unlock it later when quantum computers become strong enough to crack today's protections, a risk known as "harvest now, decrypt later."

[ Read more of this story ]( https://it.slashdot.org/story/26/06/16/181236/france-to-stop-certifying-products-without-quantum-safe-encryption?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Mobileye Is Entering the US Robotaxi Market With Standalone Service
bot.slashdot
robot(spnet, 1) — All
2026-06-17 00:22:02


An anonymous reader quotes a report from Ars Technica: The driving technology company Mobileye plans to launch a robotaxi service in an as-yet-unnamed US city in 2027, it said earlier today. The service will be vertically integrated, using Mobileye's Moovit mobility platform to interact with customers booking rides, coordinate drivers, and so on. The Israeli company, which was bought by Intel in 2017 before going public again in 2022, says it will start with around 100 robotaxis early next year. The company first rose to prominence in the mid-2010s, when Tesla began using Mobileye's advanced driving assistance systems (ADAS) as part of Autopilot. That relationship lasted until 2016, when Mobileye dropped Tesla as a customer after being alarmed that a driver assistance system was being sold to end users as driverless technology. Since then, Mobileye has continued to work with other partners on ADAS and autonomous vehicles.

It has developed a new "SuperVision" ADAS that combines cameras and radar sensors, used by Porsche and Polestar, among others. On the robotaxi front, it has partnered with Volkswagen Group's MOIA to develop a commercially available robotaxi based on the VW ID. Buzz minivan, and last year, Mobileye revealed plans to work with Lyft to deploy robotaxis in Dallas, "as soon as" this year. [...] If Mobileye's experience with the initial 100 robotaxis goes well, it says it will scale up to around 17,000 robotaxis within the following five years. "The robotaxi revolution has only just begun, and its potential for transforming how we travel around the world continues to increase," Shashua said. "This initiative is not a replacement for our existing partnerships; it is an extension of them," said Amnon Shashua, founder and CEO of Mobileye. "We remain deeply committed to enabling automakers and mobility providers with Mobileye Drive. At the same time, operating our own service allows us to accelerate adoption, gain direct operational experience, and showcase the full potential of autonomous mobility."

[ Read more of this story ]( https://tech.slashdot.org/story/26/06/16/1757207/mobileye-is-entering-the-us-robotaxi-market-with-standalone-service?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Snap's First Consumer AI Glasses Are Coming This Fall For $2,195
bot.slashdot
robot(spnet, 1) — All
2026-06-16 23:22:02


Snap is launching its first consumer augmented-reality glasses this fall for $2,195. "You can preorder a pair of Specs now at specs.com with a $200 refundable deposit, and Snap says they're expected to ship 'this fall' in the US, UK, and France," reports The Verge. From the report: This is a big moment for Snap: The company made a big entry into smart glasses with its original Spectacles in 2016, and the company has been toiling away on nonpublic AR versions of Spectacles over the past few years. CEO Evan Spiegel promised the company would launch consumer AR glasses in 2026 and even turned its smart glasses team into a separate business. The company says that Specs are "fully standalone, with no puck and no tether." (Which is perhaps a jab at Apple's Vision Pro, which is tethered to a separate battery pack.) They'll be offered in two sizes, a 47mm model weighing 132g and a 52mm model weighing 136g, and will have removable inserts that Snap says will support "a wide range of prescriptions."

You probably won't mistake Specs, with their wide, bold frames, for any of Meta's smart glasses -- Snap clearly picked a design that it wants to stand out. (They're not my style -- I don't think I can pull off the "snow goggles, but fashionable" look -- though maybe Jony Ive might like them.) They have visible light and infrared cameras, and while the Specs are recording, a little LED bar will glow in the middle of the glasses. Both of the lenses will be able to show you content, and Snap says that its display system is powered by a "proprietary liquid crystal on silicon technology" that offers a 51-degree field of view and can show 16 million colors. The lenses can also go from clear to tinted in 10 seconds, Snap says.

The Specs have two Snapdragon processors onboard, and while Snap isn't specifying exactly which ones they are, the company says that one is focused on "computer vision" while the other is focused on running AR Lenses. "Together, they enable fast hand tracking, low latency, and responsive interactions that help digital content feel anchored in the real world," Snap says. You can also expect up to four hours of battery life on a charge, which Snap says accounts for things like "audio and video playback, AI assistance, Bluetooth notifications, and more." The Specs come with a charging case that Snap says will offer four more charges for a total of 20 hours of battery.

[ Read more of this story ]( https://tech.slashdot.org/story/26/06/16/1712214/snaps-first-consumer-ai-glasses-are-coming-this-fall-for-2195?utm_source=atom1.0moreanon&utm_medium=feed ) at Slashdot.

[>] Выпуск мобильной платформы Android 17
lor.opennet
robot(spnet, 1) — All
2026-06-16 23:44:03


Компания Google опубликовала релиз открытой мобильной платформы Android 17. Связанные с новым выпуском исходные тексты размещены в Git-репозитории проекта (ветка android-17.0.0_r1). Сборки прошивки подготовлены для устройств Pixel 6/6a/6 Pro, Pixel 7/7a/7 Pro, Pixel 8/8a/8 Pro, Pixel 9/9a/9 Pro/9 Pro XL/9 Pro Fold, Pixel 10/10 Pro/10 Pro XL/10 Pro Fold, Pixel Fold и Pixel Tablet. Предварительные сборки прошивок доступны для устройств HONOR, iQOO, Lenovo, OnePlus, OPPO, realme, Sharp, vivo и Xiaomi. В процессе формирования универсальные сборки GSI (Generic System Images), подходящие для разных устройств на базе архитектур ARM64 и x86_64.

https://www.opennet.ru/opennews/art.shtml?num=65701