Follow Slashdot stories on Twitter

 



Forgot your password?
typodupeerror

Submission Summary: 0 pending, 39 declined, 5 accepted (44 total, 11.36% accepted)

×
Security

Submission + - Massive security hole in Debian's/Ubuntu's OpenSSL

RichiH writes: This is bad, real bad. From the Debian Security Announcement: Luciano Bello discovered that the random number generator in Debian's openssl package is predictable. This is caused by an incorrect Debian-specific change to the openssl package (CVE-2008-0166). As a result, cryptographic key material may be guessable. Long story short, everyone who used OpenSSL in the widest sense to generate within the last two years on either Debian or Ubuntu has a massive problem on their hands. If this is the case you must regenerate and replace your keys as soon as possible!
Read Debian's announcement and Ubuntu's announcement for further information.
Government

Submission + - Oklahoma Leaks 10,597 Social Security Numbers

RichiH writes: thedailywtf.com has a real WTF today: An Oklohoma state agency using SQL queries in their URLS, allowing everyone to get at the personal data of thousands of people. After being contacted about it, they implemented minimal (read laughable) 'security' measures. Only after being told that the table named MSD_MONTHLY_MEDICAL_ACTIVITY, which lists employees of the agency, is world-readable as well did they take down the page. As of right now, the page is unavailable and bidding for creating a new system is is open.
Graphics

Submission + - An Open Letter to NVIDIA

RichiH writes: "After ATI and Intel have shown that opening the specs for gfx chips and offering Open Source graphics drivers is viable, the only large player to remain in the realm of closed stuff is NVIDIA. As the only metric marketing drones are interested in is units per quarter, you have to let them know they are losing business. This is what opentheblob.com wants to do. And you can help by signing this open letter/petition."
Microsoft

Submission + - EU fines Microsoft again, total of EUR 1.7 billion

RichiH writes: "After the record-breaking fine of 778 million Euro ($ 1,152 million) in 2004, the EU sanctioned Microsoft again. This time, for breaking the anti-trust measures imposed against them alongside the first fine. At 899 million Euro ($ 1,332 million), this sets the second all-time record for anti-trust fines in a row and totals to 1,677 million Euro ($ 2,485 million). German and English source available."
Networking

Submission + - Final call for Brave New World from Germany

RichiH writes: On November 9th, the German parliament will most likely vote in favour of a law which will make logging of all connections, be they over Internet, landline or cellular phone, mandatory (German source). As an added bonus, the Cybercrime Convention of the European Union will ensure that a total of 52 countries will have access to this data without review by a judge, restriction of commensurability or even a mandatory expiration date for the prosecution of any and all actions that are against the law in the requesting country. This list includes countries with long-standing records in human rights like Azerbaijan, Russia or Moldova. If you live in Germany, hold a German passport or simply think your voice should be heard, please head over to this site and write an open letter to the members of the German parliament. In anticipation of the approval of the law, please also join the first ever German class-action law suit before Germany highest court by adding your personal data here.
Do not let this pass without action. It is that last chance you are likely to have.
Microsoft

Submission + - Swiss HP and Novell branches help OOXML

RichiH writes: Daniel Baumann just did some math and it turns out that if Hewlett-Packard (Schweiz) GmbH, leanux.ch AG or Novell (Schweiz) AG had not voted in favour of fast-tracking the ISO process of OOXML, the 75% needed would not have been reached. It would be interesting to know how HP and Novell voted in other countries and how the infamous Novell-Microsoft agreement influenced Novell's decission.
Music

Submission + - German court: No P2P IP lookup for music industry (heise.de)

RichiH writes: German news site heise.de reports (Babelfish) that a court in Offenburg rejected the state attorney's request to get the private data of a file sharer because it was 'obviously unreasonable'. 'Based on logic', the study speaking of 5 billion traded files per year in 2001 and 2002 which the music industry in Germany often cites can not apply as the user in question uploaded only a single song that the music industry knows of. The court also said that many p2p users are not aware that the programs automatically starts hidden and mandatory upload of files it has access to, so that, unless proven otherwise, the person in question did not upload anything on purpose. Furthermore, the court said that the claim of high damages does not hold water as a song typically costs less than a Euro and 'at a price of 0, someone who will not even spend a single cent will still want to get a product', citing a study that shows no negative impact of p2p on revenues. Finally, the court said that the music simply wants the data of the person in question so it can sue them in civil court and that it did not have any right to the data trying 'via several tens of thousands of criminal charges' to 'get at information the law is explicitly keeping from them'. Several state attorneys said, under strict promise of anonymity, that they would now try to get similar rules so that they 'dedicate their time to more severe crimes'. Go ahead, tag this one 'haha' :)
Software

Submission + - Collaborative, distributed backups?

RichiH writes: Everyone knows that you should keep backups. A few of us actually even do so. But what about your parents? Your girlfriend's aunt? Anyone else you are privileged to do free IT services for? With hard disks too large for the average user and flatrates in almost every home, I was pondering having them mirror data to each other. Privacy concerns aside, programs like svn, git or rsync come to mind. None of these provide what I would want to see, though. The ideal solution does not require you to manually add files but simply backs up everthing in a few given folders. It should not require any clicking of buttons and run regularly. Bonus points if it is able to shape itself down or limit the monthly traffic amount. The client must run on Windows. Ideally, they would need no central server, but a server-based solution is fine as well as long as the server runs on Linux.
Announcements

Submission + - Design contest for freenode and pdpc

RichiH writes: "Hi everybody. freenode and it's mother organization pdpc are running a design contest. This includes both website and logos. The website does not have to be functional, mockups are fully acceptable. Open standards are a must, elements like JavaScript may be used, but must not provide exclusive funtionality. Any design must work with text-based browsers, screen readers and fulfill accessabilty standards. Feel free to join #freenode-design on irc.freenode.net. Deadline is April 14th, 2007 20:00 UTC so get designing :)"

Slashdot Top Deals

All seems condemned in the long run to approximate a state akin to Gaussian noise. -- James Martin

Working...