Stories
Slash Boxes
Comments

News for nerds, stuff that matters

Recent reviews from Slashdot readers:

Submitting a review for consideration is easy; please first read Slashdot's book review guidelines. Updated: 2008114 by samzenpus

Slashdot Login

Log In

[ Create a new account ]

Please create an account to participate in the Slashdot moderation system

Posted by timothy on Thursday May 21, @05:30PM
from the windows-only-tut-mir-leid dept.
RadiusK writes "Google has released the second major version of the Chrome browser. This version features more speed improvements thanks to a newer version of V8 JavaScript engine and WebKit. JavaScript-heavy web pages will now run about 30% faster. Other new features include form autofill, fullscreen mode, and improved New Tab page. If you're already using Google Chrome, you'll be automatically updated with these new features soon. If you haven't downloaded Google Chrome, you can get the latest version at google.com/chrome." A version for Linux or OS X would be nice.
google internet it software !linux tech google story
Posted by timothy on Thursday May 21, @05:09PM
from the seems-like-a-hard-case-to-make dept.
snydeq writes "Fatal Exception's Neil McAllister questions the effect recent developments in the MySQL community will have on MySQL's future in the wake of Oracle's acquisition of Sun. Even before Oracle announced its buyout, there were signs of strain within the MySQL community, with key MySQL employees exiting and forks of the MySQL codebase arising, including Widenius' MariaDB. Now Widenius' Oracle-less Open Database Alliance adds further doubt as to which branch of MySQL will be considered 'official' going forward. 'Forks are a fact of life in the open source community, and arguably an entirely healthy one,' McAllister writes. 'Oracle just better hope it doesn't end up on the wrong side of the fork.' To do so, he suggests Oracle will have to regain the the trust and support of the MySQL community — in other words, 'stop acting like Oracle.'"
oracle sun database it usepostgres developers database story
Posted by timothy on Thursday May 21, @03:32PM
from the could-be-an-ebay-scam-rumor dept.
Ian Lamont writes "Investigators have duplicated an online banking hack using a 2003-era Nokia mobile phone. Authorities had been aware for some time that European gangs were interested in buying the phone, and were finally able to confirm why: It can be used to access victims' bank accounts using "special software written by hackers." The hack apparently works by letting criminals reprogram the phones to use someone else's phone number and receive their SMS messages, including mTANs (mobile transaction authentication numbers) from European banks. However, the only phones that work are 1100 handsets (pictures) made in a certain factory. Nokia had claimed last month it had no idea why criminals were paying thousands of euros to buy the old handsets."
security it security story
Posted by timothy on Thursday May 21, @02:41PM
from the days-to-whom dept.
alimo20 writes "Researchers at the Royal Holloway, University of London have discovered a flaw in Version 4.7 of OpenSSH on Debian/GNU Linux. According to ISG lead professor Kenny Patterson, an attacker has a 2^{-18} (that is, one in 262,144) chance of success. Patterson tells that this is more significant than past discoveries because 'This is a design flaw in OpenSSH. The other vulnerabilities have been more about coding errors.' The vulnerability is possible by a man-in-the-middle intercepting blocks of encrypted material as it passes. The attacker then re-transmits the data back to the server and counts the number of bytes before the server to throws error messages and disconnects the attacker. Using this information, the attacker can work backwards to figure out the first 4 bytes of data before encryption. 'The attack relies on flaws in the RFC (Request for Comments) internet standards that define SSH, said Patterson. ... Patterson said that he did not believe this flaw had been exploited in the wild, and that to deduce a message of appreciable length could take days.'"
it security encryption networking linux linux security story
Posted by timothy on Thursday May 21, @01:53PM
from the selective-reporting dept.
Elastic Vapor writes "I'm happy to announce that the US Federal Government earlier today launched the new Data.Gov website. The primary goal of Data.Gov is to improve access to Federal data and expand creative use of those data beyond the walls of government by encouraging innovative ideas (e.g., web applications). Data.gov strives to make government more transparent and is committed to creating an unprecedented level of openness in Government. The openness derived from Data.gov will strengthen the Nation's democracy and promote efficiency and effectiveness in Government." I hope the data reported will be impartially selected, honestly gathered, clearly explained, and perfectly accurate. Perhaps they could start with inspiration from the Concord Coalition's National Debt Counter.
government it communications obama democrats news government story
Posted by samzenpus on Thursday May 21, @03:52AM
from the too-late-for-an-appeal dept.
An anonymous reader writes "Related to the previous story on Slashdot on the release of the Vassiliev Notebooks: the Cold War project has created a timeline on the Rosenberg spy ring (using Timeglider — a web-based, Flash-powered software for creating timelines), integrating the documentation from the Venona Intercepts, the FBI files related to industrial and atomic espionage, the Rosenberg trial papers, and the Vassiliev notebooks, in a easy-to-digest, complete picture of the evidence on the Rosenberg's involvement in atomic espionage. It can be accessed via the project's webpage The use of Timeglider makes understanding the complex nature of the case, and the newly available documentation, more manageable."
software government advertisement extracomma slashvertizing news government story
Posted by timothy on Wednesday May 20, @06:24PM
from the vince-foster's-recipe-collection dept.
CWmike writes "An external hard drive that's believed to contain nearly 1TB of data from the Clinton Administration is missing from the US National Archives and Recording Administration (NARA). The drive includes more than 100,000 Social Security numbers and home addresses of people who visited or worked at the White House. Among those whose information is on the list is one of then-Vice President Al Gore's three daughters. The drive also contained details on the security procedures used by the Secret Service at the White House, as well as event logs, social gathering logs, political records and other information from the Clinton administration. Rep. Darrell Issa, (R-Calif.) said the Archives was in the process of converting information from the drive to a digital records system when it apparently disappeared. The hard drive was apparently removed from a secure storage area to a workplace where at least 100 'badge-holders' had access to it, Issa noted."
privacy security storage usa government yro privacy story
Posted by timothy on Wednesday May 20, @03:43PM
from the please-sub-in-the-new-bullet-points dept.
omz writes "The ODF Alliance has prepared a Fact Sheet for governments and others interested in how Microsoft's SP2 for Office 2007 handles ODF. The report revealed 'serious shortcomings that, left unaddressed, would break the open standards based interoperability that the marketplace, especially governments, is demanding.'"
microsoft it software odf it microsoft story
Posted by Soulskill on Wednesday May 20, @08:53AM
from the this-is-not-the-bug-you're-looking-for dept.
snydeq writes "Microsoft confirmed that its IIS Web-server software contains a vulnerability that could let attackers steal data, but downplayed the threat, saying 'only a specific IIS configuration is at risk from this vulnerability.' The flaw, which involves how Microsoft's software processes Unicode tokens, has been found to give attackers a way to view protected files on IIS Web servers without authorization. The vulnerability, exposed by Nikolaos Rangos, could be used to upload files as well. Affecting IIS 6 users who have enabled WebDAV for sharing documents via the Web, the flaw is currently being exploited in online attacks, according to CERT, and is reminiscent of the well-known IIS unicode path traversal issue of 2001, one of the worst Windows vulnerabilities of the past decade."
bug security microsoft it freeporn it microsoft story
Posted by kdawson on Wednesday May 20, @04:59AM
from the write-once-own-everyone dept.
FruitWorm writes in with word of a vulnerability in Java that has been patched by everyone but Apple. "Security researchers say that Mac OS X users are vulnerable to a critical, 6-month-old, remote vulnerability in Java, a component that is enabled by default in Web browsers on this platform. Julien Tinnes notes that this vulnerability differs from typical Java security flaws in that it is 'a pure Java vulnerability' and doesn't involve any native code. It affected not only Sun's Java but other implementations such as OpenJDK, on multiple platforms, including Linux and Windows. 'This means you can write a 100% reliable exploit in pure Java. This exploit will work on all the platforms, all the architectures and all the browsers,' Julien wrote. This bug was demonstrated during the Pwn2own security challenge this year at CanSecWest, but the details were not made public at that time. Tinnes recommends that Mac OS X users disable Java in their browsers until Apple releases a security update."
apple java security it security story
Yesterday's News  >