Vue normale

Il y a de nouveaux articles disponibles, cliquez pour rafraîchir la page.
Aujourd’hui — 2 mai 2024Actualités numériques

Microsoft To Invest $2.2 Billion In Cloud and AI Services In Malaysia

Par : BeauHD
2 mai 2024 à 13:00
An anonymous reader quotes a report from Reuters: Microsoft said on Thursday it will invest $2.2 billion over the next four years in Malaysia to expand cloud and artificial intelligence (AI) services in the company's latest push to promote its generative AI technology in Asia. The investment, the largest in Microsoft's 32-year history in Malaysia, will include building cloud and AI infrastructure, creating AI-skilling opportunities for 200,000 people, and supporting the country's developers, the company said. Microsoft will also work with the Malaysian government to establish a national AI Centre of Excellence and enhance the nation's cybersecurity capabilities, the company said in a statement. Prime Minister Anwar Ibrahim, who met Nadella on Thursday, said the investment supported Malaysia's efforts in developing its AI capabilities. Microsoft is trying to expand its support for the development of AI globally. Nadella this week announced a $1.7 billion investment in neighboring Indonesia and said Microsoft would open its first regional data centre in Thailand. "We want to make sure we have world class infrastructure right here in the country so that every organization and start-up can benefit," Microsoft Chief Executive Satya Nadella said during a visit to Kuala Lumpur.

Read more of this story at Slashdot.

Google Phone Starts Rolling Out 'Audio Emoji'

Par : BeauHD
2 mai 2024 à 10:00
The Google Phone app is rolling out "Audio Emoji" to some users as part of an incoming update in the beta channel, version 128. As 9to5Google reports, they are "essentially stock sound effects attached to one of six different emoji." The list includes: clapping (applause), laughing, party, crying (trombone), poop, and sting (ba dum tss). From the report: When you, as the caller, select one of these "Audio Emoji," the Google Phone app will play a fun animation while a sound effect plays for a couple of seconds. The sound effect is heard on both ends of the phone call. There does seem to be a limit on how often you can use these sound effects, as there's a bit of a "cooldown" in between that prevents you from playing sounds back to back. That's probably for the best in the case of some of these.

Read more of this story at Slashdot.

A New Battery Warns Parents if Their Child Has Swallowed It

Par : BeauHD
2 mai 2024 à 07:05
A new battery from Energizer comes with "color alert technology" to alert parents if their child has swallowed one. When the coin lithium battery comes into contact with saliva, it activates a blue dye "so parents and caregivers know that medical attention could be required," reports the New York Times. The battery also features more secure packaging and a nontoxic bitter coating. From the report: The new coin lithium battery features more secure packaging, a nontoxic bitter coating to discourage swallowing and "color alert technology" that activates a blue dye when the battery comes into contact with moisture, like saliva, so parents and caregivers know that medical attention could be required. The new battery was announced in a video last week by Energizer and Trista Hamsmith, whose 18-month-old daughter died after swallowing a button battery from a remote control. Ms. Hamsmith founded a nonprofit organization focused on children's safety, successfully advocated for legislation, known as Reese's Law, that requires a secure compartment of the batteries in products that use them as well as stronger warning labels on all packaging, and is now working to make the batteries themselves safer. Ingested coin or button batteries result in thousands of emergency hospital visits each year, according to the U.S. Consumer Product Safety Commission, which notes that "the consequences of a child swallowing a battery can be immediate, devastating and deadly." "A button cell battery can burn through a child's throat or esophagus in as little as two hours if swallowed," according to the agency. Secure packaging and bitter coatings for batteries have long existed, but "the massive breakthrough here is the color alert technology, which helps give caretakers that indicator that something has happened," Jeff Roth, the global category leader for batteries at Energizer, said in an interview on Wednesday. "The most significant part about this is getting help early in the process," he said. "That's really what the color alert technology allows the family to do."

Read more of this story at Slashdot.

AM Radio Law Opposed By Tech and Auto Industries Is Close To Passing

Par : BeauHD
2 mai 2024 à 03:30
An anonymous reader quotes a report from Ars Technica: A controversial bill that would require all new cars to be fitted with AM radios looks set to become a law in the near future. Yesterday, Senator Edward Markey (D-Mass) revealed that the "AM Radio for Every Vehicle Act" now has the support of 60 US Senators, as well as 246 co-sponsors in the House of Representatives, making its passage an almost sure thing. Should that happen, the National Highway Traffic Safety Administration would be required to ensure that all new cars sold in the US had AM radios at no extra cost. "Democrats and Republicans are tuning in to the millions of listeners, thousands of broadcasters, and countless emergency management officials who depend on AM radio in their vehicles. AM radio is a lifeline for people in every corner of the United States to get news, sports, and local updates in times of emergencies. Our commonsense bill makes sure this fundamental, essential tool doesn't get lost on the dial. With a filibuster-proof supermajority in the Senate, Congress should quickly take it up and pass it," said Sen. Markey and his co-sponsor Sen. Ted Cruz (R-Texas). About 82 million people still listen to AM radio, according to the National Association of Broadcasters, which as you can imagine was rather pleased with the congressional support for its industry. "Broadcasters are grateful for the overwhelming bipartisan support for the AM Radio for Every Vehicle Act in both chambers of Congress," said NAB president and CEO Curtis LeGeyt. "This majority endorsement reaffirms lawmakers' recognition of the essential service AM radio provides to the American people, particularly in emergency situations. NAB thanks the 307 members of Congress who are reinforcing the importance of maintaining universal access to this crucial public communications medium." "Requiring the installation of analog AM radios in automobiles is an unnecessary action that would impact EV range, efficiency and affordability at a critical moment of accelerating adoption," said Albert Gore, executive director of ZETA, a clean vehicle advocacy group that opposes the AM radio requirement. "Mandating AM radio would do little to expand drivers' ability to receive emergency alerts. At a time when we are more connected than ever, we encourage Congress to allow manufacturers to innovate and produce designs that meet consumer preference, rather than pushing a specific communications technology," Gore said in a statement.

Read more of this story at Slashdot.

PFAS Increase Likelihood of Death By Cardiovascular Disease, Study Shows

Par : BeauHD
2 mai 2024 à 02:02
New submitter berghem shares a report from The Guardian: For the first time, researchers have formally shown that exposure to toxic PFAS increases the likelihood of death by cardiovascular disease, adding a new level of concern to the controversial chemicals' wide use. The findings are especially significant because proving an association with death by chemical exposure is difficult, but researchers were able to establish it by reviewing death records from northern Italy's Veneto region, where many residents for decades drank water highly contaminated with PFAS, also called "forever chemicals." Records further showed an increased likelihood of death from several cancers, but stopped short of establishing a formal association because of other factors. [...] Veneto's drinking water was widely contaminated by a PFAS-production plant between 1985 and 2018. Researchers first found an excess of about 4,000 deaths during this period, or about one every three days. Part of the region was supplied with water from a different source, giving researchers the opportunity to compare records for tens of thousands of people who drank contaminated water and lived near those who did not. Though PFAS can affect the cardiovascular system in different ways, it is largely a problem because it produces stubbornly high and dangerous levels of cholesterol. The levels are difficult to control because they aren't caused by dietary or lifestyle choices that can be addressed with adjustments, but hormonal changes that affect the metabolism and the body's ability to control plaque in arteries. The study's authors suspect that post-traumatic stress disorder caused by the environmental disaster, which upended lives across the region, may also be contributing to circulatory disease. The evidence of a jump in kidney cancer was also "very clear," [said Annibale Biggeri, the peer-reviewed study's lead author, and a researcher with the University of Padua]. In the study's first five years, 16 cases were recorded, while 65 were recorded in the last five years. It also found elevated levels of testicular cancer during some time periods. The records "showed clearly" that earlier life exposures led to higher levels of mortality, except for women who have multiple children. Previous research has found levels were higher in women with only one child. The chemicals accumulate in placentas and are passed on to children during pregnancy, which reduces levels in the body. Mortality levels among women who were of child-bearing age were generally lower, but increased in older women. The chemicals will be passed down to children for generations, said Laura Facciolo, a Veneto resident who drank contaminated water. She said the findings underscore the need to ban PFAS, and the disaster's injustice. The findings have been published in the journal Environmental Health.

Read more of this story at Slashdot.

Google Lays Off Hundreds of 'Core' Employees, Moves Some Positions To India and Mexico

Par : BeauHD
2 mai 2024 à 01:25
According to CNBC, Google is laying off at least 200 employees from its "Core" teams and moving some roles to India and Mexico. From the report: The Core unit is responsible for building the technical foundation behind the company's flagship products and for protecting users' online safety, according to Google's website. Core teams include key technical units from information technology, its Python developer team, technical infrastructure, security foundation, app platforms, core developers, and various engineering roles. At least 50 of the positions eliminated were in engineering at the company's offices in Sunnyvale, California, filings show. Many Core teams will hire corresponding roles in Mexico and India, according to internal documents viewed by CNBC. Asim Husain, vice president of Google Developer Ecosystem, announced news of the layoffs to his team in an email last week. He also spoke at a town hall and told employees that this was the biggest planned reduction for his team this year, an internal document shows. "We intend to maintain our current global footprint while also expanding in high-growth global workforce locations so that we can operate closer to our partners and developer communities," Husain wrote in the email. [...] "Announcements of this sort may leave many of you feeling uncertain or frustrated," Husain wrote in the email to developers. He added that his message to developers is that the changes "are in service of our broader goals" as a company. The teams involved in the reorganization have been key to the company's developer tools, an area Google is streamlining as it incorporates more artificial intelligence into the products.

Read more of this story at Slashdot.

Unity Appoints Ex-Zynga Exec Matthew Bromberg As CEO

Par : BeauHD
2 mai 2024 à 00:45
Unity has appointed Matthew Bromberg, former CEO of Zynga, as its new CEO, president and board member. "Filling a role that has been temporarily filled by former Red Hat CEO Jim Whitehurst, Bromberg will formally join Unity as CEO on May 15," reports VentureBeat. "Whitehurst will serve as executive chair of the Unity board, and Roelof Botha will transition from chairman to lead independent board member." From the report: Bromberg fills a slot vacated by John Riccitiello, who resigned last fall after a pricing debacle that left game developers extremely angry at Unity. They calmed down after Unity walked back major parts of the price increase. It's an important time for Unity as it is about to ship Unity 6, the latest version of its game engine, in competition with Epic Games' Unreal Engine 5.4. Whitehurst will also return to Silver Lake, one of Unity's two largest shareholders, where he had previously been a senior advisor and will now join as a managing director leading both operating and investment team initiatives. Bromberg brings over 20 years of experience across the gaming industry, having previously served as Chief Operating Officer of leading mobile game developer and publisher Zynga, where he played a key role in the company's turnaround, and was responsible for Zynga's game studios globally, while also overseeing product development and design, technology, data, and analytics. Bromberg also held multiple leadership roles at Electronic Arts, where he helped scale the company's mobile division and led teams on four continents that built popular games across all major genres.

Read more of this story at Slashdot.

Congress Lets Broadband Funding Run Out, Ending $30 Low-Income Discounts

Par : BeauHD
2 mai 2024 à 00:02
An anonymous reader quotes a report from Ars Technica: The Federal Communications Commission chair today made a final plea to Congress, asking for money to continue a broadband-affordability program that gave out its last round of $30 discounts to people with low incomes in April. The Affordable Connectivity Program (ACP) has lowered monthly Internet bills for people who qualify for benefits, but Congress allowed funding to run out. People may receive up to $14 in May if their ISP opted into offering a partial discount during the program's final month. After that there will be no financial help for the 23 million households enrolled in the program. "Additional funding from Congress is the only near-term solution for keeping the ACP going," FCC Chairwoman Jessica Rosenworcel wrote in a letter to members of Congress today. "If additional funding is not promptly appropriated, the one in six households nationwide that rely on this program will face rising bills and increasing disconnection. In fact, according to our survey of ACP beneficiaries, 77 percent of participating households report that losing this benefit would disrupt their service by making them change their plan or lead to them dropping Internet service entirely." The ACP started with $14.2 billion allocated by Congress in late 2021. The $30 monthly ACP benefit replaced the previous $50 monthly subsidy from the Emergency Broadband Benefit Program.

Read more of this story at Slashdot.

Anthropic Brings Claude AI To the iPhone and iPad

Par : BeauHD
1 mai 2024 à 23:20
Anthropic has released its Claude AI chatbot on the App Store, bringing the company's ChatGPT competitor to the masses. Compared to OpenAI's chatbot, Claude is built with a focus on reducing harmful outputs and promoting safety, with a goal of making interactions more reliable and ethically aware. You can give it a try here. 9to5Mac reports: Anthropic highlights three launch features for Claude on iPhone: Seamless syncing with web chats: Pick up where you left off across devices. Vision capabilities: Use photos from your library, take new photos, or upload files so you can have real-time image analysis, contextual understanding, and mobile-centric use cases on the go. Open access: Users across all plans, including Pro and Team, can download the app free of charge. The app is also capable of analyzing things that you show it like objects, images, and your environment.

Read more of this story at Slashdot.

Hier — 1 mai 2024Actualités numériques

Roblox Players To Start Seeing Video Ads In Its Virtual Realms

Par : BeauHD
1 mai 2024 à 22:40
Roblox announced it'll be rolling out virtual billboards with video advertisements that will be displayed in its virtual worlds. Reuters reports: Users will now see billboards featuring content from brands such as e.l.f beauty, Walmart and Warner Bros Discovery, just as they would in real life. That would give advertisers access to Roblox's nearly 72 million daily active users -- half of whom are Gen-Z customers, a population group prized by marketers and businesses. The company in November began testing the video ads -- that will be served to users who are 13 years and older -- as part of its efforts to reduce reliance on revenue generated from its in-game currency "Robux", which players can use to buy outfits, vehicles and other features inside the company's digital worlds. It charges a fee on all purchases done on its platform, which hosts millions of videogames that are built by its users -- who get a share of any related revenue. That practice will extend to the ads, with creators of the virtual worlds who opt to show the billboards getting a portion of the revenue Roblox makes from them. Roblox is hoping its large Gen-Z user base will give it an edge in the competitive ad market, where it would have to wrestle for marketing dollars with tech giants such as Google and Meta and smaller players such as Snap.

Read more of this story at Slashdot.

Dropbox Says Hackers Breached Digital-Signature Product

Par : BeauHD
1 mai 2024 à 22:01
An anonymous reader quotes a report from Bloomberg: Dropbox said its digital-signature product, Dropbox Sign, was breached by hackers, who accessed user information including emails, user names and phone numbers. The software company said it became aware of the cyberattack on April 24, sought to limit the incident and reported it to law enforcement and regulatory authorities. "We discovered that the threat actor had accessed data related to all users of Dropbox Sign, such as emails and user names, in addition to general account settings," Dropbox said Wednesday in a regulatory filing. "For subsets of users, the threat actor also accessed phone numbers, hashed passwords, and certain authentication information such as API keys, OAuth tokens, and multi-factor authentication." Dropbox said there is no evidence hackers obtained user accounts or payment information. The company said it appears the attack was limited to Dropbox Sign and no other products were breached. The company didn't disclose how many customers were affected by the hack. The hack is unlikely to have a material impact on the company's finances, Dropbox said in the filing. The shares declined about 2.5% in extended trading after the cyberattack was disclosed and have fallen 20% this year through the close.

Read more of this story at Slashdot.

Mysterious 'gpt2-chatbot' AI Model Appears Suddenly, Confuses Experts

Par : BeauHD
1 mai 2024 à 13:00
An anonymous reader quotes a report from Ars Technica: On Sunday, word began to spread on social media about a new mystery chatbot named "gpt2-chatbot" that appeared in the LMSYS Chatbot Arena. Some people speculate that it may be a secret test version of OpenAI's upcoming GPT-4.5 or GPT-5 large language model (LLM). The paid version of ChatGPT is currently powered by GPT-4 Turbo. Currently, the new model is only available for use through the Chatbot Arena website, although in a limited way. In the site's "side-by-side" arena mode where users can purposely select the model, gpt2-chatbot has a rate limit of eight queries per day -- dramatically limiting people's ability to test it in detail. [...] On Monday evening, OpenAI CEO Sam Altman seemingly dropped a hint by tweeting, "i do have a soft spot for gpt2." [...] OpenAI's fingerprints seem to be all over the new bot. "I think it may well be an OpenAI stealth preview of something," AI researcher Simon Willison told Ars Technica. But what "gpt2" is exactly, he doesn't know. After surveying online speculation, it seems that no one apart from its creator knows precisely what the model is, either. Willison has uncovered the system prompt for the AI model, which claims it is based on GPT-4 and made by OpenAI. But as Willison noted in a tweet, that's no guarantee of provenance because "the goal of a system prompt is to influence the model to behave in certain ways, not to give it truthful information about itself."

Read more of this story at Slashdot.

China Launches World's Largest Electric Container Ship

Par : BeauHD
1 mai 2024 à 10:00
AmiMoJo shares a report from Tech Times: China has reached a major landmark in green transportation with the launch of the world's largest fully electric container ship. Developed and manufactured by China Ocean Shipping Group (Cosco), the vessel is now operating a regular service route between Shanghai and Nanjing, aiming to reduce emissions significantly along its journey. The Greenwater 01, an all-electric container ship, is positioning itself to be a shipping industry pioneer. Equipped with a main battery exceeding 50,000 kilowatt-hours, the vessel can accommodate additional battery boxes for longer voyages. These battery boxes, each containing 1,600 kilowatt-hours of electricity and similar in size to standard 20-foot containers, provide flexibility in extending the ship's travel range. With 24 battery boxes onboard, the Greenwater 01 can complete a journey consuming 80,000 kilowatt-hours of electricity. This is equivalent to saving 15 tons of fuel compared to a standard container ship, highlighting the efficiency of electric propulsion systems. According to Cosco, the vessel can reduce CO2 emissions by 2,918 tons per year, which is equivalent to taking 2,035 family cars off the road or planting 160,000 trees.

Read more of this story at Slashdot.

Satellite Operator SES Acquiring Intelsat In $3.1 Billion Deal

Par : BeauHD
1 mai 2024 à 07:00
Satellite operator SES plans to buy fellow satellite operator Intelsat, in a $3.1 billion deal that's expected to close next year. According to Space Magazine, the combined company could help it "compete with SpaceX's huge Starlink broadband network." From the report: SES and Intelsat both operate communications satellites in geostationary orbit, which lies 22,236 miles (35,785 kilometers) above Earth. SES also runs a constellation called O3b in medium Earth orbit, at an altitude of about 5,000 miles (8,000 km). As [SES CEO Adel Al-Saleh] noted, there is increasingly fierce competition for the services provided by these satellites -- for example, from SpaceX's Starlink megaconstellation in low Earth orbit. And other LEO megaconstellations are in the works as well. For instance, Amazon launched the first two prototypes for its planned 3,200-satellite Project Kuiper network this past October. "By combining our financial strength and world-class team with that of SES, we create a more competitive, growth-oriented solutions provider in an industry going through disruptive change," Intelsat CEO David Wajsgras said in the same statement. "The combined company will be positioned to meet customers' needs around the world and exceed their expectations," he added.

Read more of this story at Slashdot.

America's Wind Power Production Drops For the First Time In 25 Years

Par : BeauHD
1 mai 2024 à 03:30
An anonymous reader quotes a report from Bloomberg: U.S. wind power slipped last year for the first time in a quarter-century due to weaker-than-normal Midwest breezes, underscoring the challenge of integrating volatile renewable energy sources into the grid. Power produced by turbines slipped 2% in 2023, even after developers added 6.2 gigawatts of new capacity, according to a government report Tuesday. The capacity factor for the country's wind fleet -- how much energy it's actually generating versus its maximum possible output -- declined to an eight-year low of 33.5%. Most of that decline was driven by the central US, a region densely dotted with turbines. Wind is a key component of the effort to cut carbon emissions, but the data highlights the downside of relying on intermittent energy sources tied to the effects of global weather. Last year's low wind speeds came during El Nino, a warming of the equatorial Pacific that tends to weaken trade winds. La Nina, the Pacific cooling pattern that dominated in 2022 and is poised to return later this year, usually has the opposite effect. The U.S. Energy Information Administration shared the findings in a report published earlier today.

Read more of this story at Slashdot.

13.4 Million Kaiser Insurance Members Affected by Data Leak to Online Advertisers

Par : BeauHD
1 mai 2024 à 01:00
Kaiser Permanente is the latest healthcare giant to report a data breach. Kaiser said 13.4 million current and former insurance members had their patient data shared with third-party advertisers, thanks to an improperly implemented tracking code the company used to see how its members navigated through its websites. Dark Reading reports: The shared data included names, IP addresses, what pages people visited, whether they were actively signed in, and even the search terms they used when visiting the company's online health encyclopedia. Kaiser has reportedly removed the tracking code from its sites, and while the incident wasn't a hacking event, the breach is still concerning from a security perspective, according to Narayana Pappu, CEO at Zendata. "The presence of third-party trackers belonging to advertisers, and the oversharing of customer information with these trackers, is a pervasive problem in both health tech and government space," he explains. "Once shared, advertisers have used this information to target ads at users for complementary products (based on health data); this has happened multiple times in the past few years, including at Goodrx. Although this does not fit the traditional definition of a data breach, it essentially results in the same outcome -- an entity and the use case the data was not intended for has access to it. There is usually no monitoring/auditing process to identify and prevent the issue."

Read more of this story at Slashdot.

Google Removes RISC-V Support From Android Common Kernel, Denies Abandoning Its Efforts

Par : BeauHD
1 mai 2024 à 00:20
Mishaal Rahman reports via Android Authority: Earlier today, a Senior Staff Software Engineer at Google who, according to their LinkedIn, leads the Android Systems Team and works on Android's Linux kernel fork, submitted a series of patches to AOSP that "remove ACK's support for riscv64." The description of these patches states that "support for risc64 GKI kernels is discontinued." ACK stands for Android Common Kernel and refers to the downstream branches of the official kernel.org Linux kernels that Google maintains. The ACK is basically Linux plus some "patches of interest to the Android community that haven't been merged into mainline or Long Term Supported (LTS) kernels." There are multiple ACK branches, including android-mainline, which is the primary development branch that is forked into "GKI" kernel branches that correspond to a particular combination of supported Linux kernel and Android OS version. GKI stands for Generic Kernel Image and refers to a kernel that's built from one of these branches. Every certified Android device ships with a kernel based on one of these GKI branches, as Google currently does not certify Android devices that ship with a mainline Linux kernel build. Since these patches remove RISC-V kernel support, RISC-V kernel build support, and RISC-V emulator support, any companies looking to compile a RISC-V build of Android right now would need to create and maintain their own fork of Linux with the requisite ACK and RISC-V patches. Given that Google currently only certifies Android builds that ship with a GKI kernel built from an ACK branch, that means we likely won't see certified builds of Android on RISC-V hardware anytime soon. Our initial interpretation of these patches was that Google was preparing to kill off RISC-V support in Android since that was the most obvious conclusion. However, a spokesperson for Google told us this: "Android will continue to support RISC-V. Due to the rapid rate of iteration, we are not ready to provide a single supported image for all vendors. This particular series of patches removes RISC-V support from the Android Generic Kernel Image (GKI)." Based on Google's statement, Rahman suggests that "there's still a ton of work that needs to be done before Android is ready for RISC-V." "Even once it's ready, Google will need to redo the work to add RISC-V support in the kernel anyway. At the very least, Google's decision likely means that we might need to wait even longer than expected to see commercial Android devices running on a RISC-V chip."

Read more of this story at Slashdot.

Dave & Buster's To Allow Customers To Bet On Arcade Games

Par : BeauHD
30 avril 2024 à 23:40
Arcade giant Dave & Buster's said it will begin allowing customers to bet on arcade games. "Customers can soon make a friendly $5 wager on a Hot Shots basketball game, a bet on a Skee-Ball competition or on another arcade game," reports CNBC. "The betting function, expected to launch in the next few months, will work through the company's app." From the report: Dave & Buster's, started in 1982, now has more than 222 venues in North America, offering everything from bowling to laser tag, plus virtual reality. The company says it has five million loyalty members and 30 million unique visitors to its locations each year. The company's stock is up more than 50% over the past year. As a boom in betting increases engagement among sports fans, digital gamification could have a similar effect within Dave & Buster's customer base by allowing loyalty members to compete with one another and earn rewards. Ultimately, it could mean people spend more time and money at the venues. Dave and Buster's is using technology by gamification software company Lucra. [...] Lucra and Dave & Buster's said there will be a limit placed on the size of bets it will allow, but that they're not publicly disclosing that threshold just yet. Lucra said across its history the average bet size has been $10. "We're creating a new form of kind of a digital experience for folks inside of these ecosystems," said Madding, Lucra's chief operating officer. "We're getting them to engage in a new way and spend more time and money," he added. Lucra says its skills-based games are not subject to the same licenses and regulations gambling operators face with games of chance. Lucra is careful not to use the term "bet" or "wager" to describe its games. "We use real-money contests or challenges," Madding said. Lucra's contests are only available to players age 18 and older. The contests are available in 44 states.

Read more of this story at Slashdot.

À partir d’avant-hierActualités numériques

Systemd Announces 'run0' Sudo Alternative

Par : BeauHD
30 avril 2024 à 23:00
An anonymous reader quotes a report from Foss Outpost: Systemd lead developer Lennart Poettering has posted on Mastodon about their upcoming v256 release of Systemd, which is expected to include a sudo replacement called "run0". The developer talks about the weaknesses of sudo, and how it has a large possible attack surface. For example, sudo supports network access, LDAP configurations, other types of plugins, and much more. But most importantly, its SUID binary provides a large attack service according to Lennart: "I personally think that the biggest problem with sudo is the fact it's a SUID binary though -- the big attack surface, the plugins, network access and so on that come after it it just make the key problem worse, but are not in themselves the main issue with sudo. SUID processes are weird concepts: they are invoked by unprivileged code and inherit the execution context intended for and controlled by unprivileged code. By execution context I mean the myriad of properties that a process has on Linux these days, from environment variables, process scheduling properties, cgroup assignments, security contexts, file descriptors passed, and so on and so on." He's saying that sudo is a Unix concept from many decades ago, and a better privilege escalation system should be in place for 2024 security standards: "So, in my ideal world, we'd have an OS entirely without SUID. Let's throw out the concept of SUID on the dump of UNIX' bad ideas. An execution context for privileged code that is half under the control of unprivileged code and that needs careful manual clean-up is just not how security engineering should be done in 2024 anymore." [...] He also mentioned that there will be more features in run0 that are not just related to the security backend such as: "The tool is also a lot more fun to use than sudo. For example, by default, it will tint your terminal background in a reddish tone while you are operating with elevated privileges. That is supposed to act as a friendly reminder that you haven't given up the privileges yet, and marks the output of all commands that ran with privileges appropriately. It also inserts a red dot (unicode ftw) in the window title while you operate with privileges, and drops it afterwards."

Read more of this story at Slashdot.

❌
❌