Five years later, Wayland remains an excessively focused project for a modern display server. Wayland remains a fad, and many open-source applications remain unoptimized for Wayland.
If you have disabled the PGP plugin from your mail client and saved a copy of an encrypted email to your desktop, this guide will help you read that message in as safe a way as possible given what we know about the vulnerability described by EFAIL.Note that the first three steps (opening the...
Link Actions
The general procedures have not changed much since this post in 2018.
At the beginning of this year we noticed that the Deepin Desktop as it is currently packaged in openSUSE relies on a packaging policy violation to bypass SUSE security team review restrictions. With a long history of code reviews for Deepin components dating back to 2017, this marks a turning point ...
Leap Micro 6.2 Adopts the Leap Release Cycle Members of the openSUSE Release Team are excited to announce that the Leap 16 Beta is now available for testing!...
"When you upload or input information through Firefox, you hereby grant us a nonexclusive, royalty-free, worldwide license to use that information to help you navigate, experience, and interact with online content as you indicate with your use of Firefox."
We've tried ~4 web-interface KVM's, and they are all terrible. The interfaces are all buggy and slow. Frequent disconnects, constantly require reboots, etc.
Remember the good `'ol days when you could just download software by visiting a website and click "download"?
Even apt and yum repositories were just simple HTTP servers that you could just curl (or wget) from. Using the package manager was, of course, more secure and convenient -- but y
Do you have an AMD aura GPU? Do you also use Linux? There's this this driver that needs to be tested.
It allows you to control the lighting of the GPU using programs like openRGB.
I wrote that PR that should make it work for more GPUs, but I only have an RX 480 so I can only test that one. It would be useful to try it on a Vega gpu.
If you have an rDNA 1/2/3 GPU, it most likely won't work, but without the card there's nothing I can do.
On a side note, if you are interested in maintaining the driver it would be great.
Basically Kwin and other programs (simple xdg-desktop-portal or even gimp) crash and they bork the entire screen with no recovery other than rebooting. When the program that crash is Kwin it's particularly bad because it happens at login.
Buffer overflow in bootloader shim allows attackers to run code each time devices boot up.
Link Actions
Take note of the quote in the article...
OP/bug finder here with some clarifying information. It's a common misconception that this issue can only be abused if you use HTTP boot. That is not the case at all, otherwise it wouldn't be Critical. This bug can be abused locally (privileged malware can overwrite the EFI partition), from an adjacent network if PXE boot is enabled (w/ MiTM), or remotely if HTTP boot is used (w/ MiTM).
More details on these scenarios:
A remote attacker with no privileges in a man-in-the-middle (MitM) position could leverage the issue against a victim machine that uses HTTP boot. No direct access to the victim machine is required.
A remote attacker with privileges and code execution on the victim machine could leverage the issue to bypass Secure Boot, even if the victim does not already use HTTP boot (as long as firmware has HTTP support). How? Several ways:
An attacker can edit the boot order variable to specify a controlled attacker server.
We are less than 50 days away from the final version of #Plasma6.
Along with Frameworks 6 and KDE Gear 24.02, the Megarelaease on the 28th of February will be one of the biggest and more complex upgrades in KDE's history.
One more RC will be released on the 31st of January and then it will be (hopefully) clear sailing until the final release.