You are here

Agreguesi i feed

Chandra Resolves Why Black Holes Hit the Brakes On Growth

Slashdot - Mër, 25/03/2026 - 12:00md
alternative_right shares a report from Phys.org: Astronomers have an answer for a long-running mystery in astrophysics: why is the growth of supermassive black holes so much lower today than in the past? A study using NASA's Chandra X-ray Observatory and other X-ray telescopes found that supermassive black holes are unable to consume material as rapidly as they did in the distant past. The results appeared in the December 2025 issue of The Astrophysical Journal. [...] The team ran tests of the three main possible scenarios currently being considered for the slowdown of black hole growth. These options were: could the decline in black hole growth be caused by less efficient rates of consumption, or by smaller typical black hole masses, or by fewer actively growing black holes? Their analysis of the data, extending over billions of years of cosmic history, led them to the conclusion that black holes are indeed consuming material less rapidly the later they are found after the Big Bang. The researchers expect this trend of slower-growing black holes to continue into the future.

Read more of this story at Slashdot.

6.19.10: stable

Kernel Linux - Mër, 25/03/2026 - 11:13pd
Version:6.19.10 (stable) Released:2026-03-25 Source:linux-6.19.10.tar.xz PGP Signature:linux-6.19.10.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.19.10

6.18.20: longterm

Kernel Linux - Mër, 25/03/2026 - 11:11pd
Version:6.18.20 (longterm) Released:2026-03-25 Source:linux-6.18.20.tar.xz PGP Signature:linux-6.18.20.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.18.20

6.12.78: longterm

Kernel Linux - Mër, 25/03/2026 - 11:09pd
Version:6.12.78 (longterm) Released:2026-03-25 Source:linux-6.12.78.tar.xz PGP Signature:linux-6.12.78.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.12.78

6.6.130: longterm

Kernel Linux - Mër, 25/03/2026 - 11:06pd
Version:6.6.130 (longterm) Released:2026-03-25 Source:linux-6.6.130.tar.xz PGP Signature:linux-6.6.130.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.6.130

6.1.167: longterm

Kernel Linux - Mër, 25/03/2026 - 11:03pd
Version:6.1.167 (longterm) Released:2026-03-25 Source:linux-6.1.167.tar.xz PGP Signature:linux-6.1.167.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.1.167

Thibault Martin: TIL that Proxmox can provision Kubernetes Persistent Volumes

Planet GNOME - Mër, 25/03/2026 - 11:00pd

I wanted to dip my toes into Kubernetes for my homelab, but I knew I would need some flexibility to experiment. So instead of deploying k3s directly on my server, I

  1. Installed a base Debian on my server, encrypting the disk with LUKS and using LVM to partition it.
  2. Installed the Proxmox hypervisor on that base Debian
  3. Spun up a Debian VM, and installed k3s on it.

Proxmox supports several storage plugins. It allows me to create LVM Local Volumes for the VM disks for example.

This setup allows me to spin up fresh VMs for my experiments, all while leaving my production k3s intact. This is great, but it came up with two problems:

  1. When I provision the VM for k3s I need to allocate it a massive amount of disk space. This is because k3s uses a local path provisioner to provision new Persistent Volumes directly on the VM.
  2. I can't take snapshots of the Persistent Volumes when doing backups. There's a risk that the data will change while I perform the backup.

The situation looks like the following.

On the LVM disk of the host, I create a VM for k3s. This VM has a virtual disk that doesn't rely on LVM, so it can't create LVM Logical Volumes. The local provisioner can only create volumes on the virtual disk, because it can't escape the VM to create volumes on the Proxmox host.

Because the volumes are created on the virtual disk that doesn't rely on LVM, I can't use LVM snapshots to take snapshots of my volumes.

[!question] Why not LVM Thin?

One solution to address the massive disk requirement could be to use LVM Thin: it would allow me to allocate a lot of space in theory, but in practice in only fills up as the VM storage gets used.

I don't want to use LVM Thin because it puts me at risk of overprovisioning. I could allocate more storage than I actually have, and it would be difficult to realize that my disks are filling up before it's too late.

My colleague Quentin mentioned the Proxmox CSI Plugin. It is a plugin that replaces k3s' local path provisioner. Instead of creating the kubernetes Persistent Volumes inside the VM, it calls the Proxmox host, asks it to create a LVM Logical Volume and binds it to a Persistent Volume in kubernetes.

Using the Proxmox CSI volume, the situation would look like this.

It solves the two problems for me:

  1. I can now only provision a small disk for the k3s VM, since the Persistent Volumes will be created outside of the VM.
  2. Since Proxmox will create LVM Logical Volumes to provision the Persistent Volumes, I can either do a LVM Snapshot from Proxmox or use Kubernete's Volume Snapshot feature, with some caveats.

Setting up the Proxmox-CSI-Plugin for k3s can be a bit involved, but I'm writing a longer blog post about it.

NASA Halts Work On Gateway To Develop a Lunar Base

Slashdot - Mër, 25/03/2026 - 8:00pd
NASA is reportedly halting work on the lunar Gateway in favor of a more direct push to build a lunar base. The new plan would cost tens of billions over the next decade, though the change could face hurdles because Congress previously funded Gateway specifically. SpaceNews reports: "Starting today, we're building humanity's first deep space outpost," said Carlos Garcia-Galan, program executive for NASA's moon base effort. The lunar base will take place in three phases. Phase 1, running from 2026 to 2028, "is all about getting to the moon reliably," he said. That includes a significant increase in the cadence of lander missions through the Commercial Lunar Payload Services and other programs. It will also focus on developing enabling technologies and getting "ground truth" for potential base locations at the lunar south pole. Phase 2, from 2029 through 2031, starts building the base, he said. That would include building out communications, navigation, power and other infrastructure, developing larges CLPS cargo landers and supporting two crewed missions a year. Phase 3, beginning 2032, will enable "long distance and long duration human exploration" on the moon, he said, with routine logistics missions to the moon and uncrewed cargo return missions from the moon. Garcia-Galan said NASA foresees spending $10 billion each on Phases 1 and 2. Phase 3, lasting to at least 2036, would cost an additional $10 billion or more. The base would leverage existing programs, although with some changes. NASA is planning to revamp the Lunar Terrain Vehicle program after concluding the current approach would take too long to get a crew-capable rover to the moon. "We were projecting a delivery on the lunar surface by 2030," he said. The agency is instead issuing a draft request for proposals for simplified rovers that could be quicker and easier to develop but could be upgraded later. The base, though, would include some new capabilities and technologies. One example Garcia-Galan provided was MoonFall, a drone that would be able to hop from one location to another on the lunar surface. The drones will be "built on the legacy" of Ingenuity, the small Mars helicopter. "We're going to take everything that we learned from Ingenuity's systems, the avionics, all of that, to build this."

Read more of this story at Slashdot.

Hong Kong Police Can Demand Passwords Under New National Security Rules

Slashdot - Mër, 25/03/2026 - 4:30pd
An anonymous reader quotes a report from the BBC: Hong Kong police can now demand phone or computer passwords from those who are suspected of breaching the wide-ranging National Security Law (NSL). Those who refuse could face up to a year in jail and a fine of up to $12,700, and individuals who provide "false or misleading information" could face up to three years in jail. It comes as part of new amendments to a bylaw under the NSL that the government gazetted on Monday. The NSL was introduced in Hong Kong in 2020, in wake of massive pro-democracy protests the year before. Authorities say the laws, which target acts like terrorism and secession, are necessary for stability -- but critics say they are tools to quash dissent. The new amendments also give customs officials the power to seize items that they deem to "have seditious intention." Monday's amendments ensure that "activities endangering national security can be effectively prevented, suppressed and punished, and at the same time the lawful rights and interests of individuals and organizations are adequately protected," Hong Kong authorities said on Monday. Changes to the bylaw was announced by the city's leader, John Lee, bypassing the city's legislative council. The NSL also allows for some trials to be heard behind closed doors.

Read more of this story at Slashdot.

Wine 11 Rewrites How Linux Runs Windows Games At the Kernel Level

Slashdot - Mër, 25/03/2026 - 12:00pd
Linux gamers are seeing massive performance gains with Wine's new NTSYNC support, "which is a feature that has been years in the making and rewrites how Wine handles one of the most performance-sensitive operations in modern gaming," reports XDA Developers. Not every game will see a night-and-day difference, but for the games that do benefit from these changes, "the improvements range from noticeable to absurd." Combined with improvements to Wayland, graphics, and compatibility, as well as a major WoW64 architecture overhaul, the release looks less like an incremental update and more like one of Wine's most important upgrades in years. From the report: The numbers are wild. In developer benchmarks, Dirt 3 went from 110.6 FPS to 860.7 FPS, which is an impressive 678% improvement. Resident Evil 2 jumped from 26 FPS to 77 FPS. Call of Juarez went from 99.8 FPS to 224.1 FPS. Tiny Tina's Wonderlands saw gains from 130 FPS to 360 FPS. As well, Call of Duty: Black Ops I is now actually playable on Linux, too. Those benchmarks compare Wine NTSYNC against upstream vanilla Wine, which means there's no fsync or esync either. Gamers who use fsync are not going to see such a leap in performance in most games. The games that benefit most from NTSYNC are the ones that were struggling before, such as titles with heavy multi-threaded workloads where the synchronization overhead was a genuine bottleneck. For those games, the difference is night and day. And unlike fsync, NTSYNC is in the mainline kernel, meaning you don't need any custom patches or out-of-tree modules for it work. Any distro shipping kernel 6.14 or later, which at this point includes Fedora 42, Ubuntu 25.04, and more recent releases, will support it. Valve has already added the NTSYNC kernel driver to SteamOS 3.7.20 beta, loading the module by default, and an unofficial Proton fork, Proton GE, already has it enabled. When Valve's official Proton rebases on Wine 11, every Steam Deck owner gets this for free. All of this is what makes NTSYNC such a big deal, as it's not simply a run-of-the-mill performance patch. Instead, it's something much bigger: this is the first time Wine's synchronization has been correct at the kernel level, implemented in the mainline Linux kernel, and available to everyone without jumping through hoops.

Read more of this story at Slashdot.

Google's Android Automotive Is Moving From the Dashboard To the 'Brain' of the Car

Slashdot - Mar, 24/03/2026 - 11:00md
Google is expanding Android Automotive from the infotainment screen into the broader non-safety "brain" of software-defined vehicles. With its new Android Automotive OS for Software-Defined Vehicles, the in-car experience will feel "much more cohesive and the latest features will reach your driveway faster," Matt Crowley, Android Automotive's group product manager, writes in a blog post. "From a truly integrated voice experience to proactive maintenance reminders, your car will become a true extension of your digital life," Crowley adds. The Verge reports: With its new software, Google is promising faster over-the-air software updates, better voice assistants, and more proactive vehicle maintenance alerts. Non-driving functions like climate control, lighting, and seating adjustment would fall under Android's control. And the system would move beyond basic infotainment to create a unified ecosystem for features like remote cabin conditioning, digital key management, and personalized driver profiles. For automakers, the new system promises less expensive software development costs and an opportunity to focus on what matters most to them: branding. By providing the "foundational code and a common language for their software," Google says automakers will be free to design cool experiences for their customers. Google says its already working with companies like Renault Group and Qualcomm to bring its new software-defined vehicle version of Android Automotive to more cars. A variety of automakers already use regular Android Automotive, like Volvo, Polestar, General Motors, Nissan, and Honda.

Read more of this story at Slashdot.

OpenAI Discontinues Sora Video Platform App

Slashdot - Mar, 24/03/2026 - 10:00md
OpenAI is shutting down Sora, its generative-AI video creation platform it launched in December 2024. "The move is one of a number of steps OpenAI is taking to refocus on business and coding functions ahead of a potential initial public offering as soon as the fourth quarter of this year," reports the Wall Street Journal. CEO Sam Altman announced the changes to staff on Tuesday. "We're saying goodbye to Sora," the Sora Team said in a post on X. "To everyone who created with Sora, shared it, and built community around it: thank you. What you made with Sora mattered, and we know this news is disappointing. We'll share more soon, including timelines for the app and API and details on preserving your work." Last week, OpenAI announced plans to combine its Atlas web browser, ChatGPT app, and Codex coding app into a singular desktop "superapp." "We realized we were spreading our efforts across too many apps and stacks, and that we need to simplify our efforts," said CEO of Applications, Fidji Simo. "That fragmentation has been slowing us down and making it harder to hit the quality bar we want." This could behind the decision to kill Sora as the company redirects its resources and top talent towards productivity tools that benefit both enterprises and individual users.

Read more of this story at Slashdot.

Arm Unveils New AGI CPU With Meta As Debut Customer

Slashdot - Mar, 24/03/2026 - 9:00md
Arm unveiled its first self-developed data center chip, the AGI CPU, designed for handling agentic AI workloads. The new chip was built in partnership with Meta and manufactured by TSMC. Other customers for the new chip include OpenAI, Cloudflare, SAP, and SK Telecom. Reuters reports: The new chip, called the AGI CPU, will address data-crunching needed for a specific type of AI that is able to act on behalf of users with minimal oversight, instead of responding to queries as part of a chatbot. For years, Arm, majority-owned by Japan's SoftBank Group has relied only on intellectual property for revenue, licensing its designs to companies such as Qualcomm and Nvidia and then collecting a royalty payment based on the number of units sold. "It's a very pivotal moment for the company," CEO Rene Haas said in an interview with Reuters. The new chip will be overseen by Mohamed Awad, head of the company's cloud AI business, and Arm has additional designs in the works that it plans to release at 12- to 18-month intervals. TSMC is fabricating the device on its 3-nanometer technology and is made from two distinct pieces of silicon that operate as a single chip. Arm plans to put it into volume production in the second half of this year but has received test chips that function as expected. In addition to the chip itself, Arm is working with server makers such as Lenovo and Quanta Computer to offer complete systems.

Read more of this story at Slashdot.

Anthropic's Claude Can Now Use Your Computer To Finish Tasks

Slashdot - Mar, 24/03/2026 - 8:00md
Anthropic is testing a new Claude feature that lets users send a request from their phone and have the AI carry it out directly on their computer, such as opening apps, using a browser, or editing files. The move follows the viral spread of OpenClaw earlier this year, which has gained cult popularity among devs for the ability to run local, 24/7 personal workflows. CNBC reports: Users can now message Claude a task from a phone, and the AI agent will then complete that task, Anthropic announced Monday. After being prompted, Claude can open apps on your computer, navigate a web browser and fill in spreadsheets, Anthropic said. One prompt Anthropic demonstrated in a video posted Monday is a user running late for a meeting. The user asks Claude to export a pitch deck as a PDF file and attach it to a meeting invite. The video shows Claude carrying out the task. [...] Anthropic cautioned that computer use "is still early compared to Claude's ability to code or interact with text." "Claude can make mistakes, and while we continue to improve our safeguards, threats are constantly evolving," Anthropic warned. The company added that it has built the computer use capability "with safeguards that minimize risk," and that Claude will always request permission before accessing new apps. Users can use Dispatch, a feature it released last week in Claude Cowork. That lets users have a continuous conversation with Claude from a phone or desktop and assign the agent tasks.

Read more of this story at Slashdot.

Thibault Martin: TIL that GNOME has launched a fellowship program

Planet GNOME - Mar, 24/03/2026 - 8:00md

When open source nonprofits ask for donations, one common answer is "I only want to fund code, I don't want to fund anything else." GNOME has created a Fellowship Program to fund direct work on GNOME, a program entirely funded by donations. This is a testament to the Foundation's maturity, as it becomes a direct contributor to the project it stewards.

Let's take a step back to address the code-only argument. It is a misguided reaction, but I can see where its proponents are coming from. In the world of proprietary software, you pay to get your software. You don't realize that this bundles the marketing, accounting, legal, and even HR costs.

In the open source world, everyone can see who contributes code and how that code is built and packaged to create a software solution. A lot of things are not shown in git commits though. A few of them are:

  • What did it take to create the Human Interface Guidelines to have a coherent suite of applications? How many designers had to meet, what research did they have to do, did they have to meet in person?
  • What did it take to create the Developer Documentation to onboard new developers, help them make their first steps, and turn them into bigger contributors over the years?
  • What did it take to build a website to advertize all the cool apps that follow the GNOME HIG?
  • What did it take to set up the infrastructure the code lives on, and that builds the software we all love?

GNOME, like many other open source projects, is first and foremost a community. This is a group of people with diverse backgrounds, diverse opinions, who try to find common ground to solve problems. They don't always agree on how to solve problems, nor necessarily on what even is a problem in the first place.

The role of The GNOME Foundation is to provide a place to support its community. Its role is to help its contributors find common ground. Its role is to give them the tools and opportunities to do so.

Some people still don't value this, and want The GNOME Foundation to be a vendor for GNOME. They want to fund developers to produce code, because that's a very visible metric.

For them, and for everyone who's ever wanted to give back to GNOME without knowing how, The GNOME Foundation has created a Fellowship Program. It will directly fund a person to work on what few people want to do in their spare time: maintenance.

Round one focuses on sustainability: improving tooling, build systems, test infrastructure, automation, documentation, developer productivity, and ongoing maintainability. We are not funding feature development: the goal is for each fellowship to leave the project in a more efficient and sustainable state.

This is only fueled by our donations. If you want a direct pipeline between your money and GNOME development, this is it. Donate to GNOME, we can't afford not to have them when Big Tech has so much influence on our lives.

Self-Propagating Malware Poisons Open Source Software, Wipes Iran-Based Machines

Slashdot - Mar, 24/03/2026 - 7:00md
An anonymous reader quotes a report from Ars Technica: A new hacking group has been rampaging the Internet in a persistent campaign that spreads a self-propagating and never-before-seen backdoor -- and curiously a data wiper that targets Iranian machines. The group, tracked under the name TeamPCP, first gained visibility in December, when researchers from security firm Flare observed it unleashing a worm that targeted cloud-hosted platforms that weren't properly secured. The objective was to build a distributed proxy and scanning infrastructure and then use it to compromise servers for exfiltrating data, deploying ransomware, conducting extortion, and mining cryptocurrency. The group is notable for its skill in large-scale automation and integration of well-known attack techniques. More recently, TeamPCP has waged a relentless campaign that uses continuously evolving malware to bring ever more systems under its control. Late last week, it compromised virtually all versions of the widely used Trivy vulnerability scanner in a supply-chain attack after gaining privileged access to the GitHub account of Aqua Security, the Trivy creator. Over the weekend, researchers said they observed TeamPCP spreading potent malware that was also worm-enabled, meaning it had the potential to spread to new machines automatically, with no interaction required of victims behind the keyboard. [...] As the weekend progressed, CanisterWorm [as Aikido has named the malware] was updated to add an additional payload: a wiper that targets machines exclusively in Iran. When the updated worm infects machines, it checks if the machine is in the Iranian timezone or is configured for use in that country. When either condition was met, the malware no longer activated the credential stealer and instead triggered a novel wiper that TeamPCP developers named Kamikaze. Eriksen said in an email that there's no indication yet that the worm caused actual damage to Iranian machines, but that there was "clear potential for large-scale impact if it achieves active spread." It's unclear what the motive is for TeamPCP. Aikido researcher Charlie Eriksen wrote: "While there may be an ideological component, it could just as easily be a deliberate attempt to draw attention to the group. Historically, TeamPCP has appeared to be financially motivated, but there are signs that visibility is becoming a goal in itself. By going after security tools and open-source projects, including Checkmarx as of today, they are sending a clear and deliberate signal."

Read more of this story at Slashdot.

Epic Games To Cut More Than 1,000 Jobs As Fortnite Usage Falls

Slashdot - Mar, 24/03/2026 - 6:00md
Epic Games is cutting more than 1,000 jobs as usage of its flagship title, Fortnite, falls. "The layoffs aren't related to AI," CEO Tim Sweeney noted. Reuters reports: The cuts, along with more than $500 million in savings from lower contracting and marketing spending and unfilled roles would put the company in "a more stable place," Sweeney said in a note to employees. [...] "We've had challenges delivering consistent Fortnite magic," Sweeney said, adding "market conditions today are the most extreme" since the early days of the company founded in 1991. The move marks Epic's second major round of layoffs in three years. In September 2023, the company cut about 830 jobs, or roughly 16% of its workforce. It was not immediately clear what percentage of staff would be impacted by Tuesday's announcement.

Read more of this story at Slashdot.

FCC Bans Imports of New Foreign-Made Routers, Citing Security Concerns

Slashdot - Mar, 24/03/2026 - 5:00md
New submitter the_skywise shares a report from Reuters: The U.S. Federal Communications Commission said on Monday it was banning the import of all new foreign-made consumer routers, the latest crackdown on Chinese-made electronic gear over security concerns. China is estimated to control at least 60% of the U.S. market for home routers, boxes that connect computers, phones, and smart devices to the internet. The FCC order does not impact the import or use of existing models, but will ban new ones. The agency said a White House-convened review deemed imported routers pose "a severe cybersecurity risk that could be leveraged to immediately and severely disrupt U.S. critical infrastructure." It said malicious actors had exploited security gaps in foreign-made routers "to attack households, disrupt networks, enable espionage, and facilitate intellectual property theft," citing their role in major hacks like Volt and Salt Typhoon. The determination includes an exemption for routers the Pentagon deems do not pose unacceptable risks.

Read more of this story at Slashdot.

next-20260324: linux-next

Kernel Linux - Mar, 24/03/2026 - 4:46md
Version:next-20260324 (linux-next) Released:2026-03-24

Intuit Beats FTC In Court, Ending Restrictions On 'Free' TurboTax Ads

Slashdot - Mar, 24/03/2026 - 4:00md
An anonymous reader quotes a report from Ars Technica: An appeals court invalidated the Biden-era Federal Trade Commission's attempt to punish Intuit for allegedly deceptive ads that pitched TurboTax as free. Under then-Chair Lina Khan, the FTC determined in 2024 that the TurboTax maker violated US law with deceptive advertising and ordered it to stop telling consumers, without more obvious disclaimers, that TurboTax or other products are free. The FTC's chief administrative law judge had previously found that Intuit's ads violated prohibitions on deceptive advertising because the firm "advertised to consumers that they could file their taxes online for free using TurboTax, when in truth, for approximately two-thirds of taxpayers, the advertised claim was false." Intuit appealed in the conservative-leaning US Court of Appeals for the 5th Circuit and got a resounding victory on Friday in a 3-0 ruling issued (PDF) by a panel of judges. "Following the Supreme Court's decision in SEC v. Jarkesy, we hold that adjudication of a deceptive advertising claim before an administrative law judge violated the constitutional separation of powers," the 5th Circuit panel said. The Supreme Court's June 2024 ruling (PDF) in Securities and Exchange Commission v. Jarkesy held that the SEC system for issuing fines violated the right to a jury trial. The 5th Circuit panel said the Jarkesy decision confirms that the FTC must pursue deceptive advertising claims in courts rather than its own administrative process. [...] The 5th Circuit ruling acknowledged that most people can't use TurboTax for free. "TurboTax 'Free Edition' has been part of the TurboTax range for more than a decade, available to taxpayers for what Intuit refers to as 'simple tax returns,'" the ruling said. "Most American taxpayers do not have 'simple tax returns.' The TurboTax website is designed so that any individual taxpayer can begin preparing a tax return in TurboTax Free Edition, but those who enter disqualifying information are prompted before filing to upgrade to a paid product." Although the court noted that Intuit stopped the specific ads challenged by the FTC, the ruling said the cease-and-desist order issued by the agency could have far-reaching effects on Intuit marketing. "The cease-and-desist order is remarkably broad: it prohibits Intuit for the next twenty years from advertising 'any goods or services' as free unless specific, extensive, and arguably unworkable requirements are satisfied. The order is not confined to tax-preparation solutions and extends to all products sold by Intuit," the ruling said. The 5th Circuit said the FTC's deceptive advertising claims are "traditional actions at law and equity and thus involve private rights that demand adjudication in an Article III court." The court rejected the FTC's argument that the claims involve public rights that may be adjudicated by administrative agencies. "In sum, there is overwhelming evidence that Section 5 of the FTC Act did not create a new duty for merchants to refrain from deceptive advertising," the 5th Circuit said. "That duty long predated the FTC Act and could be enforced by private parties in actions at common law or equity for fraud, deceit, or unfair competition."

Read more of this story at Slashdot.

Faqet

Subscribe to AlbLinux agreguesi