×
Security

OWASP Top 10 2013 Released 17

hypnosec writes "OWASP's Top 10, the Open Web Application Security Project's top 10 most critical web application security risks, has been updated and a new list for 2013 published. Last updated back in 2010, the organization has published the new list wherein the importance of cross-site scripting (XSS) and cross-site request forgery (CRSF) has been diluted a little, while risks related to broken session management and authentication have moved up a notch. Code injection, which was the topmost risk in 2010, has retained its position in the updated list. The 2013 Top Ten list (PDF) has been compiled based on half a million vulnerabilities discovered in thousands of applications from hundreds of vendors."
Perl

Video Learn About the FRDCSA 'Weak AI' Project (Video) 52

Today's interviewee, Andrew Dougherty, has a Web page that says he is "...an autodidact mathematician and computer scientist specializing in Artificial Intelligence (AI) and Algorithmic Information Theory (AIT). He is the founder of the FRDCSA (Formalized Research Database: Cluster Study & Apply) project, a practical attempt at weak AI aimed primarily at collecting and interrelating existing software with theoretical motivation from AIT. He has made over 90 open source applications, 400 (unofficial) Debian GNU/Linux packages and 800 Perl5 modules (see http://frdcsa.org/frdcsa)." Tim Lord says Andrew's project "brings together a lot of AI algorithms, collects large sets of data for those algorithms to chew on, and writes software to do things like ... guide your whole life." As you might guess, Andrew occupies a pretty far edge of the eccentric programmer world, as you'll see from this video (and transcript). He calls himself "a serious Stallmanite" (his word), and has chosen the GPL for his software in the hopes that it will therefore help the greatest number of people. (Speaking of help, he's looking for interesting data sets and various "life rules" that can be integrated with his planning software, and one of the reasons he presented at the recent YAPC::NA was to solicit help in putting his hundreds of Perl modules onto CPAN.)
The Courts

Supreme Court: No Patents For Natural DNA Sequences 214

ColdWetDog writes "The ongoing story of Myriad Genetics versus the rest of the world has come to an end. In a 9-0 decision, the US Supreme Court has decided that human genes cannot be patented. From a brief Bloomberg article: 'Writing for the court, Justice Clarence Thomas said isolated DNA is a "product of nature and not patent eligible merely because it has been isolated." At the same time, Thomas said synthetic molecules known as complementary DNA, or cDNA, can be patented because they require a significant amount of human manipulation to create.' Seems perfectly sane. Raw genes, the ones you find in nature are, wait for it — natural. Other bits of manipulated DNA / RNA / protein which take skill and time to create are potentially patentable. Oddly, Myriad Genetics stock actually rose on that information." Adds reader the eric conspiracy: "The result for Myriad is that they still have protection for their test, however the decision also allows researchers to work with the DNA sequences that are predecessors to the cDNA used in the test." Here's an AP report on the ruling, as carried by the Washington Post.
Wireless Networking

iPhone Apparently Open To Old Wi-Fi Attack 90

judgecorp writes "Security researchers say that iPhone and other Apple devices are vulnerable to an old attack, using a fake Wi-Fi access point. Attackers can use an SSID which matches one that is stored on the iPhone (say "BTWiF"), which the iPhone will connect to automatically. Other devices are protected thanks to the use of HTTPS, which enforces HTTPS, but iPhones are susceptible to this man in the middle attack, researchers say."
The Almighty Buck

The $200,000 Software Developer 473

itwbennett writes "You can make a decent living as a software developer, and if you were lucky enough to get hired at a pre-IPO tech phenom, you can even get rich at it. But set your sights above the average and below Scrooge McDuck and you won't find many developers in that salary range. In fact, the number of developers earning $200,000 and above is under 10%, writes blogger Phil Johnson who looked at salary data from Glassdoor, Salary.com and the Bureau of Labor Statistics. How does your salary rate? What's your advice for earning the big bucks?"
Medicine

Researchers Discover Another Layer To the Cornea 74

puddingebola writes with this excerpt: "A previously undetected layer in the cornea, the clear window at the front of the human eye, has been discovered by scientists at The University of Nottingham. This new layer, called the Dua's Layer after Professor Harminder Dua who discovered it, could help surgeons to dramatically improve outcomes for patients undergoing corneal grafts and transplants. This is a major discovery that will mean that ophthalmology textbooks will literally need to be re-written. Having identified this new and distinct layer deep in the tissue of the cornea, we can now exploit its presence to make operations much safer and simpler for patients," said Dua, Professor of Ophthalmology and Visual Sciences."
GUI

Red Hat Confirms GNOME Classic Mode For RHEL 7 192

An anonymous reader writes "The H-Online is reporting that the upcoming RHEL 7 will use GNOME Classic Mode over Gnome Shell as its Default Desktop GUI. Speaking to TechTarget ahead of the 2013 Red Hat Summit, Red Hat engineering director Denise Dumas said this regarding the decision: "I think it's been hard for the Gnome guys, because they really, really love modern mode, because that's where their hearts are." She added that the same team had "done a great job putting together classic mode" and that it was eventually decided to use it in favour of the more radical modern interface to spare customers the effort of relearning their way around the desktop again."
IT

Ask Slashdot: What To Do With New Free Time? 299

An anonymous reader writes "After 25 years of doing IT (started as a PC technician and stayed on technical of IT work through out my career) I've been moved to a position of doing only on call work (but paid as if it is a normal 9-5 job). This leaves me with a lot of free time... As someone who's used to working 12+ hours a day + the odd night/weekend on call, I'm scared I'll lose my mind with all the new free time I'll have. Any suggestions (beyond develop hobbies, spend time with family) on how to deal with all the new free time?"
Education

Professors Say Massive Open Online Courses Threaten Academic Freedom 284

McGruber writes "The Chronicle of Higher Education has the news that American Association of University Professors (AAUP) believes that faculty members' copyrights and academic freedom are being threatened by colleges claiming ownership of the massive open online courses their instructors have developed. The AAUP plans this year to undertake a campaign to urge professors to get protections of their intellectual-property rights included in their contracts and faculty handbooks. According to former AAUP President Cory Nelson, 'If we lose the battle over intellectual property, it's over. Being a professor will no longer be a professional career or a professional identity,' and faculty members will instead essentially find themselves working in 'a service industry.' [Just like their graduate students?]"
United States

Bill Regulating 3D Printed Guns Announced In NYC 322

New submitter BioTitan writes "New York City may be the first state to crack down on 3D printed guns. Two pieces of legislation were introduced on June 13, one in the City Council that only allows licensed gunsmiths to print the guns, and another in the State Assembly that would make it illegal for anyone to print a gun. Cody Wilson, creator of the first 3D printed guns, and founder of Defense Distributed, told The Epoch Times, 'Such legislation is a deprivation of equal protection and works in clear ignorance of Title I and II of U.S. gun laws.'"
United States

New Bill Would Declassify FISC Opinions 130

Trailrunner7 writes "A group of eight senators from both parties have introduced a new bill that would require the attorney general to declassify as many of the rulings of the secret Foreign Intelligence Surveillance Court as possible as a way of bringing into the sunlight much of the law and opinion that guides the government's surveillance efforts. Under the terms of the proposed law, the Justice Department would be required to declassify major FISC opinions as a way to give Americans a view into how the federal government is using the Foreign Intelligence Surveillance Act and Patriot Act. If the attorney general determines that a specific ruling can't be declassified without endangering national security, he can declassify a summary of it. If even that isn't possible, then the AG would need to explain specifically why the opinion needs to be kept secret."
EU

Apple Revises Warranty Policies In Europe To Comply With EU Laws 156

ccguy writes "Apple revised its warranty policy in Italy last year after being hit with a €900,000 fine for not complying with an EU-mandated two-year term. The company has today revised the terms of its warranties in France, Germany and Belgium, specifying that customers are entitled to repairs and replacements of their Apple products for a full two years after purchase, and not just one as previously stated. No word yet on when the rest of the EU will see those changes, but it would now seem to be just a matter of time before other countries get the new terms as well."
Data Storage

SSDs: The New King of the Data Center? 172

Nerval's Lobster writes "Flash storage is more common on mobile devices than data-center hardware, but that could soon change. The industry has seen increasing sales of solid-state drives (SSDs) as a replacement for traditional hard drives, according to IHS iSuppli Research. Nearly all of these have been sold for ultrabooks, laptops and other mobile devices that can benefit from a combination of low energy use and high-powered performance. Despite that, businesses have lagged the consumer market in adoption of SSDs, largely due to the format's comparatively small size, high cost and the concerns of datacenter managers about long-term stability and comparatively high failure rates. But that's changing quickly, according to market researchers IDC and Gartner: Datacenter- and enterprise-storage managers are buying SSDs in greater numbers for both server-attached storage and mainstream storage infrastructure, according to studies both research firms published in April. That doesn't mean SSDs will oust hard drives and replace them directly in existing systems, but it does raise a question: are SSDs mature enough (and cheap enough) to support business-sized workloads? Or are they still best suited for laptops and mobile devices?"
Science

Dmitry Itskov Wants To Help You Live Forever Via an Android Avatar 383

trendspotter writes in with the latest news about the 2045 Project. "If Russian billionaire Dmitry Itskov has his way, the human lifespan will soon no longer depend on the limitations of the human body. Itskov, a Russian tycoon and former media mogul, is the founder of the 2045 Project — a venture that seeks to replace flesh-and-blood bodies with robotic avatars, each one uploaded with the contents of a human brain. The goal: to extend human lives by hundreds or thousands of years, if not indefinitely."
Television

The Trajectory of Television: A Big History of the Small Screen. 134

antdude writes "Ars Technica has a three pages article on the trajectory of TV--starting with a big history of the small screen. From the article: 'Though it's a relatively recent invention, television is a pillar of Western—and even global—culture. Even if you're that one guy who makes it a point to mention that you don't watch or even own a television, your life has inevitably been shaped by the small screen to some degree. Popular culture has its moments of being swept up in the comedies and dramas of the airwaves, and television (cable news in particular) indelibly established in the minds of the world that instant access to breaking news on faraway continents is a normal thing.'"

Slashdot Top Deals