Vue normale

Reçu — 3 août 2026 Actualités libres

Twenty years of Pandoc

Par : jzb
3 août 2026 à 21:18

John MacFarlane has published a lengthy retrospective to commemorate twenty years of the Pandoc document converter.

On August 3, 2006, I uploaded the first version of pandoc to my website, releasing it under the free GPL license. Pandoc 0.1 consisted of about 3000 lines of Haskell code, with no dependencies aside from GHC's standard library. It could convert Markdown, reStructuredText, HTML, and LaTeX documents into any of these formats, plus RTF or S5. I had no idea at the time that this would just be the first of over two hundred releases over the next twenty years; that the project would become the most popular program written in Haskell; that I would spend countless hours on bug-fixes, improvement, and project management; that I would collaborate with programmers in many other countries; that pandoc would come to support over fifty document formats; that it would allow automatic generation of citations and bibliographies; that it would become integrated into academic writing tools like Quarto and Jupyter Notebook; that it would be installed on millions of computers around the world.

How did this happen? I want to take advantage of pandoc's birthday to tell the story of the project, as best I can remember it.

La rotation incontrôlée du remorqueur LINK est quasi stabilisée grâce à ses propulseurs

3 août 2026 à 20:02

télescope swift link

Après avoir failli virer à la catastrophe à la suite d'une panne de ses gyroscopes, la mission de secours du télescope Swift reprend des couleurs. En freinant la rotation incontrôlée du remorqueur LINK, la NASA et Katalyst Space sauvent l'opération sur le fil.

C-Kermit 11 released

Par : corbet
3 août 2026 à 18:15
For those of us with a long memory: John Goerzen has announced the release of C-Kermit 11, the first release of this file-transfer utility in 15 years.

As Debian maintainer of Kermit, I noticed some areas where it wasn't matching modern expectations. One area was, not surprising for a project of its age, security. Another area was that its character set or line-ending conversions are usually not desired now; we are used to byte-identical binary transfers, and the defaults caused confusion and even some rare instances of data corruption. So I started making a few patches last year.

See the changelog for details on the work that has been done.

Most of us probably haven't thought about C-Kermit in years (if ever), but there was a time when it was an essential tool for moving files between machines.

Les Anneaux de pouvoir saison 3 : le retour confirmé de Tom Bombadil pose un vrai casse-tête scénaristique

3 août 2026 à 18:02

Alors que le casting de la saison 3 des Anneaux de pouvoir est officialisé, le retour de Tom Bombadil pose une difficulté. Si l'interprétation de Rory Kinnear séduit, la puissance démesurée de « l'Aîné » pose un défi aux scénaristes : comment intégrer l'être le plus puissant de la Terre du Milieu sans désamorcer toute la tension dramatique ?

L’annulation du retour de Blade est un immense gâchis et une grosse erreur

3 août 2026 à 16:22

Sept ans après son annonce retentissante au Comic-Con de San Diego, le reboot de Blade a été officiellement enterré par Marvel Studios. Entre rendez-vous manqués, vaines promesses pour l'univers fantastique et gâchis de talent pur, le projet laisse un goût amer. Anatomie d’un fiasco stratégique.

[$] Buffer sizes for FUSE io_uring

Par : jake
3 août 2026 à 16:05
The Filesystem in Userspace (FUSE) subsystem provides a way to service filesystem requests from a user-space server, which moves the format-handling code out of the kernel. The FUSE server can use the io_uring facility for better performance, but Bernd Schubert is concerned that memory is being wasted because the current implementation has a single, large buffer size that is excessive for small I/O operations. He led a discussion on that topic in the filesystem track of the 2026 Linux Storage, Filesystem, Memory Management, and BPF Summit in Zagreb, Croatia.

L’Espagne joue un double jeu avec les investisseurs chinois pour son industrie automobile

3 août 2026 à 15:50

Pendant que ses régions se disputent les usines de batteries et de voitures électriques made in China, Madrid pousse en parallèle Bruxelles à imposer des règles communes pour éviter que l'accueil à bras ouverts ne se transforme en dépendance technologique.

Ubaldi fait tomber ce TV TCL Mini LED 144 Hz, Dolby Vision et 65  » sous la barre des 750 €

3 août 2026 à 15:48

[Deal du jour] Le TCL 65P89L, un téléviseur QD-Mini LED de 65 pouces sorti en 2026, passe à 720 € au lieu de 849 € chez Ubaldi. Cette réduction sur un modèle polyvalent, qui plus est doté d’une diagonale aussi généreuse, en fait le bon plan TV de ce début de semaine.

Disney+ annonce rétablir la 4K en France grâce à « une technologie alternative »

3 août 2026 à 15:28

Par mail, le service de presse de Disney+ annonce le retour progressif de la 4K UHD en France grâce à « une technologie alternative » mise en place après l'injonction européenne qui avait tout fait disparaître fin juillet. Le HDR, lui, reste absent. Pour y parvenir, Disney+ aurait changé de codec vidéo.

SQLite Critical CVEs or LLM Slop? (JFrog blog)

Par : corbet
3 août 2026 à 14:59
The JFrog blog examines some reported vulnerabilities in SQLite, some of which made their way into high-profile vulnerability databases, that turned out to be entirely fabricated by LLMs.

These LLM slop CVEs can cause organizations to waste time investigating and patching vulnerabilities that do not actually exist, as well as polluting vulnerability databases. In environments where Critical vulnerabilities are automatically prioritized or tickets are opened based on vulnerability scores, such fabricated CVEs can turn into a real burden.

In environments where AI is used to automate vulnerability triage and remediation this becomes even more concerning. An AI agent that encounters a fabricated CVE may attempt to locate the vulnerable function, generate a patch, or recommend changes based on code that does not even exist. Instead of helping security teams remediate real vulnerabilities, it can lead them down a completely wrong path, potentially introducing unnecessary changes and wasting time.

« Aucun risque pour la sécurité » : comment une faille critique dans SQLite s’est révélée être une pure invention de l’IA

3 août 2026 à 14:49

Une notification de sécurité informatique notée 10 sur 10 (le plus haut degré de gravité), reprise par le NIST, la CISA et le centre de cybersécurité néerlandais, décrivait une faille qui n'a jamais existé. Il aura fallu l'obstination du créateur de SQLite pour la faire retirer.

House of the Dragon : le retour de ce dragon scelle déjà le destin de Rhaenyra

3 août 2026 à 13:56

Sunfyre

Croyait-on Feux-du-Soleyl hors-jeu ? Son retour surprise à la fin de la saison 3 offre une seconde jeunesse politique à Aegon II. Mais pour Rhaenyra Targaryen, la présence de ce dragon convalescent est bien plus qu'un simple obstacle militaire : c'est l'annonce directe de sa propre fin.

NetBSD 11.0 released

Par : jzb
3 août 2026 à 13:33

The release of NetBSD 11.0, the 19th major version of the operating system, has been announced. There are many changes and enhancements since the 10.1 release, including a new port to RISC-V, better support for Linux system calls in compat_linux(), as well as improvements to the NPF firewall.

As you are probably aware, the number of security issues found or suspected everywhere has massively increased with the advent of AI tools. As a consequence, we can't publish a release without open issues. Instead of delaying the release further to fix them (new ones are being reported all the time), we've instead chosen to be transparent about this.

See the full release notes for links to the binary distributions and links to the full change logs.

Security updates for Monday

Par : jzb
3 août 2026 à 13:12
Security updates have been issued by AlmaLinux (.NET 10.0, .NET 8.0, .NET 9.0, fence-agents, kernel, kernel-rt, openssh, osbuild-composer, perl-Archive-Tar, perl-DBI, perl:5.32, pipewire, python-pillow, qemu-kvm, unbound, and vim), Debian (chromium, incus, kernel, kissfft, libgd2, libmodbus, libssh, node-tar, php8.4, poppler, python-authlib, sslh, and starlette), Fedora (borgbackup, coturn, curl, exim, fuse-overlayfs, gh, GitPython, goaccess, lemonldap-ng, libgit2, nextcloud, nsd, php, postgresql16, python3.12, rabbitmq-server, rust-libgit2-sys, and xen), Mageia (bluez, firmware, kernel, kmod, wireless-regdb), Oracle (buildah, compat-libtiff3, dovecot, fence-agents, firefox, gimp, glibc, grafana, gstreamer1-plugins-bad-free, java-25-openjdk, kernel, libgcrypt, libtiff, libXfont2, nodejs24, nodejs:22, nodejs:24, openssh, openssl, PackageKit, pipewire, python-pillow, rest, sssd, vim, and yelp), SUSE (bind, chromium, dnsdist, gdk-pixbuf-loader-libheif, gio-branding-upstream, google-guest-agent, govulncheck-vulndb, GraphicsMagick, ignition, ImageMagick, keybase-client, kronosnet, libblkid-devel, libntpc1, libpng16, nano, openssh, openssl-1_0_0, openssl-3, openvpn, PackageKit, perl-mojolicious, php8, python-nltk, python313-asteval, python313-certifi, python313-GitPython, python313-huggingface-hub, rsyslog, tomcat, tomcat10, tomcat11, traefik2, valkey, warewulf4, webkit2gtk3, and yq), and Ubuntu (linux-intel-iotg).

Des designers créent une police d’écriture gratuite pour lutter contre le scraping des IA (et c’est open-source)

3 août 2026 à 13:06

Avec ShieldFon, lancé fin juillet 2026, un texte reste lisible à l’écran, mais devient trompeur pour les robots qui l’aspirent. Une nouvelle arme typographique contre l’entraînement des IA sur le web.

Google vient de corriger le plus gros défaut du bracelet Fitbit Air sur iPhone

3 août 2026 à 12:20

Trois mois après sa sortie, le bracelet Google Fitbit Air supporte enfin la technologie HealthKit d'Apple, qui permet de réunir ses données de santé au même endroit et de les utiliser dans plusieurs apps de manière sécurisée. L'application Google Health vient de recevoir la mise à jour tant promise depuis des semaines.

Micromania fait baisser le coffret Pokémon Méga-Amphinobi ex à 44,99 €

3 août 2026 à 12:10

[Deal du jour] Le coffret Premium Méga-Amphinobi ex, sorti début juillet 2026 dans le cadre du bloc Méga-Évolution du JCC Pokémon, est déjà en promotion chez Micromania, et passe de 59,99 € à 44,99 €.

❌