You are here

Agreguesi i feed

FCC Plans Robocall Scorecard to Grade Phone Companies On Spam Call Blocking

Slashdot - Enj, 03/09/2026 - 1:00pd
The FCC is proposing (PDF) a public "robocall mitigation scorecard" that would grade phone companies on how well they block illegal spam calls while avoiding false positives on the legitimate ones. "The Scorecard will empower consumers and encourage providers to continue to combat illegal robocalls by providing the public with an assessment of the effectiveness of voice service providers' efforts to protect consumers from illegal robocalls," the FCC Consumer and Governmental Affairs Bureau said in a public notice. Ars Technica reports: The scorecards could include call-blocking statistics along with data on customer complaints and enforcement actions. The FCC said scorecards could grade providers on a number scale, with letter grades, or by classifying providers as low risk, medium risk, or high risk. The proposed tool would rate wireless, wireline, and VoIP providers on efforts to block robocalls and their "actual results in protecting [consumers] from illegal robocalls," the FCC said. "In practice, that means moving beyond a simple administrative checklist (i.e., did the provider file the right paperwork, did they offer the right tools) and toward a composite set of metrics that reflects both operational practices and measurable outcomes, including how often legitimate calls are blocked." Whether the tool is useful for consumers will depend on how it's designed, how easy each provider's scorecard is to find, and what data sources it relies on. The proposed scorecard would apply to domestic voice service providers with retail customers, but not telcos that operate solely as wholesale or intermediate providers. "Combatting the scourge of illegal robocalls remains the FCC's top consumer protection priority... As proposed in today's public notice, the FCC aims to develop a scorecard that will give consumers more information about the measures providers are taking to fight illegal robocalls, and it will also incentivize providers to improve their efforts," FCC Chairman Brendan Carr said in a press release.

Read more of this story at Slashdot.

1Password Wades Into a Right-Wing Mess After Funding a Linux Project

Slashdot - Enj, 03/09/2026 - 12:00pd
1Password is facing customer and internal employee backlash after pledging $300,000 to support a Linux distro created by David Heinemeier Hansson, who has regularly published racist and anti-immigrant rhetoric. "The popular password manager is now a 'distinguished corporate patron' of Omacom, the nonprofit foundation that oversees a popular Linux distribution known as Omarchy," reports The Verge. From the report: One viral blog post declared that 1Password "Supports the Ethnic Cleansing of Europe" because of the donation. Others on social media asked for suggestions for alternative password managers so they would not support the funding of a project from Heinemeier Hansson, better known as DHH. The donation has also resulted in internal pushback from employees of 1Password who are disappointed by the affiliation, The Verge has learned. 1Password CEO David Faugno and cofounder Roustem Karimov have since posted internal messages addressing what Faugno describes as "concerns, both internally and externally" that have been raised "due to the polarizing nature" of DHH. DHH is a Danish entrepreneur best known for creating Ruby on Rails, Basecamp, and the Hey email client. Omarchy is DHH's "opinionated" version of Linux, meaning it's Linux the way he likes to use it. It's based on Arch Linux, with certain apps that install by default. It's also, apparently, one of 1Password's big customer environments. [...] In an internal Slack message obtained by The Verge, 1Password's Karimov downplayed the overtly racist comments from DHH, telling staff the following: "As I said, people have different personal opinions. You believe in your heart that DHH is evil, that you have the moral high ground, and that nothing will change your mind. However, not everyone believes that. It is not fair to claim a monopoly and ostracize team members who might disagree with you. There are people who are afraid to speak up simply because they will be personally attacked." 1Password CEO Faugno took a different approach, trying to reassure staff that "1Password does not endorse hateful, dehumanizing, or exclusionary views, including those shared publicly by DHH." Nonetheless, it seems the company has sacrificed a moral position for a "mission-driven" position. In the same message to staff, Faugno says "the scale and growth of [Omarchy's] use among our customers is significant -- Omarchy has grown to be the second most used Linux distribution among 1Password users." Faugno then tries to create distance, telling staff that its contribution is "to the Omacom Foundation, not an individual." Still, he says "we recognize that Omarchy is associated with DHH, its founder. Our donation is not in any way an endorsement of his personal views or conduct."

Read more of this story at Slashdot.

7.2.3: stable

Kernel Linux - Mër, 02/09/2026 - 2:33md
Version:7.2.3 (stable) Released:2026-09-02 Source:linux-7.2.3.tar.xz PGP Signature:linux-7.2.3.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-7.2.3

7.1.13: stable

Kernel Linux - Mër, 02/09/2026 - 2:32md
Version:7.1.13 (EOL) (stable) Released:2026-09-02 Source:linux-7.1.13.tar.xz PGP Signature:linux-7.1.13.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-7.1.13

6.18.49: longterm

Kernel Linux - Mër, 02/09/2026 - 2:32md
Version:6.18.49 (longterm) Released:2026-09-02 Source:linux-6.18.49.tar.xz PGP Signature:linux-6.18.49.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.18.49

6.12.108: longterm

Kernel Linux - Mër, 02/09/2026 - 2:31md
Version:6.12.108 (longterm) Released:2026-09-02 Source:linux-6.12.108.tar.xz PGP Signature:linux-6.12.108.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.12.108

6.6.156: longterm

Kernel Linux - Mër, 02/09/2026 - 2:29md
Version:6.6.156 (longterm) Released:2026-09-02 Source:linux-6.6.156.tar.xz PGP Signature:linux-6.6.156.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.6.156

6.1.187: longterm

Kernel Linux - Mër, 02/09/2026 - 2:28md
Version:6.1.187 (longterm) Released:2026-09-02 Source:linux-6.1.187.tar.xz PGP Signature:linux-6.1.187.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-6.1.187

5.15.220: longterm

Kernel Linux - Mër, 02/09/2026 - 2:28md
Version:5.15.220 (longterm) Released:2026-09-02 Source:linux-5.15.220.tar.xz PGP Signature:linux-5.15.220.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-5.15.220

5.10.269: longterm

Kernel Linux - Mër, 02/09/2026 - 2:26md
Version:5.10.269 (longterm) Released:2026-09-02 Source:linux-5.10.269.tar.xz PGP Signature:linux-5.10.269.tar.sign Patch:full (incremental) ChangeLog:ChangeLog-5.10.269

Linux IPsec Bug Can Trigger a Stack Overflow on Some TI Hardware

LinuxSecurity.com - Mër, 02/09/2026 - 6:30pd
A version 2 Linux kernel patch posted on August 31 fixes a stack overflow in the SA2UL hardware crypto driver. The Kernel Address Sanitizer, or KASAN, detected a one-byte write past a local buffer while strongSwan’s charon-systemd process was configuring an IPsec transform.

Linux Network Cleanup Bug Can Trigger a Kernel Use-After-Free

LinuxSecurity.com - Mër, 02/09/2026 - 6:15pd
RxRPC is a Linux kernel transport for remote procedure calls. A teardown race reported in August shows that its network namespace cleanup can still reach a peer after that peer has been freed. The failure was caught by the Kernel Address Sanitizer, or KASAN, during automated testing.

New Linux Security Patch Could Lock Down Programs Before They Start

LinuxSecurity.com - Mër, 02/09/2026 - 4:15pd
A version 2 Linux kernel patch series posted on August 31 proposes a new eBPF security interface for applying Landlock policy during program execution. The 15-patch set introduces generic Linux Security Module policy objects, lets privileged BPF programs retain those objects in maps, and adds a helper that can apply a selected policy during exec processing.

Felipe Borges: Call for Mentors for Outreachy (Dec 2026)

Planet GNOME - Mar, 01/09/2026 - 2:59md

Once again, GNOME is considering participating in the Outreachy internship program. Outreachy provides internships to people subject to systemic bias and impacted by under-representation in the tech industry where they live.

Outreachy internships are funded by the participating communities. While the GNOME Foundation has not yet finalized the budget for this cohort, having a strong list of proposed projects and available mentors helps the Board decide how many slots to fund.

Project ideas will be selected based on available funding and their relevance to the overall goals of the GNOME project. Project selection will be handled by Matthias Clasen, Allan Day, and Sri Ramkrishna.

If you are a GNOME developer/maintainer available for mentoring between December 2026 and March 2027, please submit a project proposal at gitlab.gnome.org/Teams/internship/project-ideas as soon as possible (by September 11).

If you have any questions, you can contact the Internship Committee on Matrix or ask on Discourse.

Trump Tells FCC To Punish Journalist For Calling His Election Results 'Mixed'

Slashdot - Mar, 01/09/2026 - 5:30pd
An anonymous reader quotes a report from Ars Technica: President Trump yesterday demanded that the Federal Communications Commission punish or rebuke an NBC journalist for saying he has "mixed results" in his election endorsements. In the latest example of how Trump is using the FCC to harass reporters and news organizations that he dislikes, he said Meet the Press host Kristen Welker "will be reported to the FCC for rebuke or punishment" for what he claimed was a "purposeful inaccuracy." "Kristen Welker, the Unpopular 'Hostess' of the once great Meet the Press, now considered Meet the Fake Press, just stated that Donald Trump has 'mixed results' on his Endorsements of Candidates, when the recent WINS of Darline Graham and Mike Mazzei, stand at 100% for the U.S. Senate, and 98% for the U.S. House, recently and over the longterm. How can anyone be allowed to say this, working for freely given Public Airwaves? Results are attached. Because of this purposeful inaccuracy, she will be reported to the FCC for rebuke or punishment," Trump wrote in a Truth Social post. A separate post from Trump yesterday said, "THE FAKE POLLS USED BY OUR CROOKED MEDIA ARE OUT OF CONTROL, AND SOMETHING MUST BE DONE ABOUT IT. FCC TO THE RESCUE! President DJT." Trump also posted a rant on Friday about New York Times journalist Maggie Haberman, calling her "an unattractive person both inside and out" who "should be forced to turn over any and all money that she's made through her fake reporting on me." Trump referred to Haberman throughout his post as "Maggot Haberman." Trump's post about Welker included an image purporting to show he has near-perfect results in his endorsements this year. "The Press is a Disgrace to our Nation, and I hope that Chairman Brendan Carr, and the fine people of his Commission, will take this Threat to our Country very seriously," Trump wrote. Perhaps indicating that he will refer additional journalists for FCC punishment, Trump wrote that Welker "is not the only one. The Radical Left News is going out of their way to harass, demean, and libel anything 'TRUMP.'" The FCC website says the commission "cannot prevent the broadcast of any particular point of view," and that it "generally will not intervene" in complaints about "one-sided news reports" because "it would be inconsistent with the First Amendment to replace the journalistic judgment of licensees with our own." As noted by Ars, FCC Chairman Brendan Carr has "made it clear he takes orders from Trump, abandoning his previous position -- which he held under Democratic presidents -- that the FCC must operate independently of White House interference." Carr could use the commission's regulatory authority over licensed broadcasters to open an investigation into Welker, potentially creating pressure on NBC and its affiliated stations through licensing proceedings or other FCC actions. The most likely vehicle would be the FCC's rarely enforced news distortion policy, which Carr has repeatedly revived to target coverage he considers misleading; historically, however, the policy required an unusually high evidentiary bar and was seldom enforced.

Read more of this story at Slashdot.

FTC Sues Amazon, Accusing the E-Commerce Giant of Misleading Advertisers

Slashdot - Mar, 01/09/2026 - 1:00pd
The FTC and 22 state attorneys general are suing Amazon, accusing the company of secretly inflating advertising prices through undisclosed changes to its auction system that may have extracted more than $20 billion from advertisers since 2019. "Amazon has millions of advertising customers who were misled into paying significantly higher prices," FTC Chairman Andrew Ferguson said in a statement. "These higher costs were largely passed on to American consumers." CNBC reports: The complaint, which was filed in U.S. District Court for the Western District of Washington, centers on Amazon's sponsored products ads, brands ads and display ads that run alongside search results on its sprawling webstore. Amazon has amassed the third-largest digital advertising business globally, trailing only Google and Meta. The company hauled in more than $68 billion in ads revenue last year, with the lion's share coming from sales of sponsored products ads. Third-party sellers who hawk their wares on Amazon's marketplace have recently criticized surging advertising costs on the site, including a string of recent policy changes, which led to some top merchants withholding their ad spend in a boycott. The company has traditionally used a "second-price" auction system, wherein it told advertisers they "only pay the least bid amount needed in order to win," the complaint states, citing Amazon's own marketing materials. The FTC alleges in its complaint that Amazon in 2019 changed its auction rules without notice by adding an undisclosed surcharge it referred to as a "soft reserve price," which led to higher ad prices. "Amazon made this surreptitious change to its auction because it was unhappy about how much revenue its advertising auctions were generating," the agency said in its complaint, which cites internal communications between Amazon ad executives. In one exchange, a company executive allegedly acknowledged it uses an "invented auction participant" to increase prices, the FTC said. The FTC and the states alleged Amazon's practices violate federal and state consumer protection laws, and they're seeking civil penalties, restitution and other unspecified damages. In a blog post, Amazon called the FTC's lawsuit "misguided" and said the complaint "fundamentally misunderstands how advertisers operate." The company added that the agency's lawsuit doesn't include evidence of consumer price increases. "We've provided advertisers with guidance about our auctions and pricing in the main tools they use to manage their campaigns, and we continue to update that guidance," the company said. "We look forward to making our case in court."

Read more of this story at Slashdot.

Apple Caught Off Guard by AI Demand for Mac Mini and Mac Studio

Slashdot - Mar, 01/09/2026 - 12:00pd
According to The Information (paywalled), Apple reportedly moved up the release of new Mac mini and Mac Studio models after unexpectedly strong enterprise demand for Macs capable of running AI workloads. MacRumors reports: Apple normally releases new Mac models in the autumn, closer to October or November, making this week's announcement unusually early, falling just before the anticipated arrival of new iPhone models. The Information says that the AI-driven boom in Mac Studio and Mac mini sales is behind the early launch. Apple noticeably promoted the ability to link multiple Mac Studios together into a single, more capable system for running large frontier AI models, a feature aimed at business and developer customers rather than everyday consumers. Apple highlighted the Mac mini and Mac Studio's shift toward business buyers in June, with a "Business at the Park" event involving executives from major companies Ford, Disney, and Anthropic. The Mac mini was said to be the "darling" of the event. Even so, enterprise's rush toward powerful desktop Macs more broadly took Apple by surprise. The company reportedly did not possess an engineering team dedicated to business customers or staff focused on developer relations, and lacked an enterprise AI strategy. Businesses that approached Apple asking to buy access to the company's Private Cloud Compute infrastructure were reportedly turned down. Apple is instead leaning on partners such as WebAI and Mount Thor, which provide AI tools and execution environments built on Apple hardware.

Read more of this story at Slashdot.

Broadcom Pledges to Lock Down Open Source Python, Java Libraries

Slashdot - Hën, 31/08/2026 - 11:00md
Broadcom is launching "TrueSource," an effort to curate and secure open-source components used with its Tanzu platform, including Spring, RabbitMQ, and libraries across Java, Python, and Node.js. "The idea is to provide a set of solutions focused on providing clean and secure artefacts," Purnima Padmanabhan, vice president of Broadcom's Tanzu Division, told The Register. "We choose and build every Spring library, databases, other Java components," she said. The Register reports: Padmanabhan said that promise means VMware will also provide "TrueSource trusted artifacts" for code that is not part of Spring, including the wider Java ecosystem, Python, and Node.js. "Broadcom's curation process ensures that the libraries conform to a reference architecture and are supportable by the maintainers of record," according to a company statement. "Thousands of engineers across Broadcom's software divisions scan, fix, contribute to, and consume them every day." A VMware spokesperson told The Register the Broadcom business unit "will work with and support maintainers on open source software and we will provide fixes to open source upstream for any active projects." "With Spring and RabbitMQ, we are the maintainers. For other open source software, we will work with the maintainers. We believe that the community maintainers must remain the source of truth," the spokesperson said. This is just the sort of contribution that the open-source community wants vendors to do to reflect the value they extract from software they did not create alone. It's also the sort of thing vendors sometimes conclude they need to do to keep products based on FOSS viable.

Read more of this story at Slashdot.

eBPF Security Research Misses eBPF’s Own Attack Surface

LinuxSecurity.com - Hën, 31/08/2026 - 10:30md
An eBPF security system can produce precise Linux telemetry while leaving a harder question unanswered: what happens if the eBPF layer itself is misconfigured, vulnerable, or trusted too broadly?

Linux CPU Hotplug Exposes Regmap IRQ Use-After-Free Path

LinuxSecurity.com - Hën, 31/08/2026 - 10:12md
Linux interrupt maintainer Thomas Gleixner traced a Kernel Address Sanitizer report to incomplete regmap IRQ cleanup on Aug 30, 2026. The crash appeared while Linux was taking a CPU offline, but the stale pointer was created earlier when a device’s interrupt setup failed.

Faqet

Subscribe to AlbLinux agreguesi