Bug

How Long Does It Take to Fix Linux Kernel Bugs? (itsfoss.com) 36

An anonymous reader shared this report from It's FOSS: Jenny Guanni Qu, a researcher at [VC fund] Pebblebed, analyzed 125,183 bugs from 20 years of Linux kernel development history (on Git). The findings show that the average bug takes 2.1 years to find. [Though the median is 0.7 years, with the average possibly skewed by "outliers" discovered after years of hiding.] The longest-lived bug, a buffer overflow in networking code, went unnoticed for 20.7 years! [But 86.5% of bugs are found within five years.]

The research was carried out by relying on the Fixes: tag that is used in kernel development. Basically, when a commit fixes a bug, it includes a tag pointing to the commit that introduced the bug. Jenny wrote a tool that extracted these tags from the kernel's git history going back to 2005. The tool finds all fixing commits, extracts the referenced commit hash, pulls dates from both commits, and calculates the time frame. As for the dataset, it includes over 125k records from Linux 6.19-rc3, covering bugs from April 2005 to January 2026. Out of these, 119,449 were unique fixing commits from 9,159 different authors, and only 158 bugs had CVE IDs assigned.

It took six hours to assemble the dataset, according to the blog post, which concludes that the percentage of bugs found within one year has improved dramatically, from 0% in 2010 to 69% by 2022. The blog post says this can likely be attributed to:
  • The Syzkaller fuzzer (released in 2015)
  • Dynamic memory error detectors like KASAN, KMSAN, KCSAN sanitizers
  • Better static analysis
  • More contributors reviewing code

But "We're simultaneously catching new bugs faster AND slowly working through ~5,400 ancient bugs that have been hiding for over 5 years."

They've also developed an AI model called VulnBERT that predicts whether a commit introduces a vulnerability, claiming that of all actual bug-introducing commits, it catches 92.2%. "The goal isn't to replace human reviewers but to point them at the 10% of commits most likely to be problematic, so they can focus attention where it matters..."


Social Networks

Personal Info on 17.5 Million Users May Have Leaked to Dark Web After 2024 Instagram Breach (engadget.com) 13

An anonymous reader shared this report from Engadget: If you received a bunch of password reset requests from Instagram recently, you're not alone. As reported by Malwarebytes, an antivirus software company, there was a data breach revealing the "sensitive information" of 17.5 million Instagram users. Malwarebytes added that the leak included Instagram usernames, physical addresses, phone numbers, email addresses and more.

The company added that the "data is available for sale on the dark web and can be abused by cybercriminals." Malwarebytes noted in an email to its customers that it discovered the breach during its routine dark web scan and that it's tied to a potential incident related to an Instagram API exposure from 2024.

AI

AI Fails at Most Remote Work, Researchers Find (msn.com) 39

A new study "compared how well top AI systems and human workers did at hundreds of real work assignments," reports the Washington Post.

They add that at least one example "illustrates a disconnect three years after the release of ChatGPT that has implications for the whole economy." AI can accomplish many impressive tasks involving computer code, documents or images. That has prompted predictions that human work of many kinds could soon be done by computers alone. Bentley University and Gallup found in a survey [PDF] last year that about three-quarters of Americans expect AI to reduce the number of U.S. jobs over the next decade. But economic data shows the technology largely has not replaced workers.

To understand what work AI can do on its own today, researchers collected hundreds of examples of projects posted on freelancing platforms that humans had been paid to complete. They included tasks such as making 3D product animations, transcribing music, coding web video games and formatting research papers for publication. The research team then gave each task to AI systems such as OpenAI's ChatGPT, Google's Gemini and Anthropic's Claude. The best-performing AI system successfully completed only 2.5 percent of the projects, according to the research team from Scale AI, a start-up that provides data to AI developers, and the Center for AI Safety, a nonprofit that works to understand risks from AI. "Current models are not close to being able to automate real jobs in the economy," said Jason Hausenloy, one of the researchers on the Remote Labor Index study...

The results, which show how AI systems fall short, challenge predictions that the technology is poised to soon replace large portions of the workforce... The AI systems failed on nearly half of the Remote Labor Index projects by producing poor-quality work, and they left more than a third incomplete. Nearly 1 in 5 had basic technical problems such as producing corrupt files, the researchers found.

One test involved creating an interactive dashboard for data from the World Happiness Report, according to the article. "At first glance, the AI results look adequate. But closer examination reveals errors, such as countries inexplicably missing data, overlapping text and legends that use the wrong colors — or no colors at all."

The researchers say AI systems are hobbled by a lack of memory, and are also weak on "visual" understanding.
Microsoft

Microsoft May Soon Allow IT Admins To Uninstall Copilot (bleepingcomputer.com) 41

Microsoft is testing a new Windows policy that lets IT administrators uninstall Microsoft Copilot from managed devices. The change rolls out via Windows Insider builds and works through standard management tools like Intune and SCCM. BleepingComputer reports: The new policy will apply to devices where the Microsoft 365 Copilot and Microsoft Copilot are both installed, the Microsoft Copilot app was not installed by the user, and the Microsoft Copilot app was not launched in the last 28 days. "Admins can now uninstall Microsoft Copilot for a user in a targeted way by enabling a new policy titled RemoveMicrosoftCopilotApp," the Windows Insider team said.

"If this policy is enabled, the Microsoft Copilot app will be uninstalled, once. Users can still re-install if they choose to. This policy is available on Enterprise, Pro, and EDU SKUs. To enable this policy, open the Group policy editor and go to: User Configuration -> Administrative Templates -> Windows AI -> Remove Microsoft Copilot App."

Media

Microsoft Windows Media Player Stops Serving Up CD Album Info (theregister.com) 59

An anonymous reader shares a report: Microsoft is celebrating the resurgence of interest in physical media in the only way it knows how... by halting the Windows Media Player metadata service. Readers of a certain vintage will remember inserting a CD into their PC and watching Windows Media Player populate with track listings and album artwork. No more.

Sometime before Christmas, the metadata servers stopped working and on Windows 10 or 11, the result is the same: album not found. We tried this out at Vulture Central on some sacrificial Windows devices that had media drives and can confirm that a variety of compact discs were met with stony indifference. Some 90s cheese that was successfully ripped (for personal use, of course) decades ago? No longer recognized. A reissue of something achingly hip? Also not recognized.

IT

Torvalds Tells Kernel Devs To Stop Debating AI Slop - Bad Actors Won't Follow the Rules Anyway (theregister.com) 53

Linus Torvalds has weighed in on an ongoing debate within the Linux kernel development community about whether documentation should explicitly address AI-generated code contributions, and his position is characteristically blunt: stop making it an issue. The Linux creator was responding to Oracle-affiliated kernel developer Lorenzo Stoakes, who had argued that treating LLMs as "just another tool" ignores the threat they pose to kernel quality. "Thinking LLMs are 'just another tool' is to say effectively that the kernel is immune from this," Stoakes wrote.

Torvalds disagreed sharply. "There is zero point in talking about AI slop," he wrote. "Because the AI slop people aren't going to document their patches as such." He called such discussions "pointless posturing" and said that kernel documentation is "for good actors." The exchange comes as a team led by Intel's Dave Hansen works on guidelines for tool-generated contributions. Stoakes had pushed for language letting maintainers reject suspected AI slop outright, arguing the current draft "tries very hard to say 'NOP.'" Torvalds made clear he doesn't want kernel documentation to become a political statement on AI. "I strongly want this to be that 'just a tool' statement," he wrote.
IT

Send To Kindle from Microsoft Word is Discontinued (goodereader.com) 11

Microsoft is discontinuing its Send to Kindle integration in Word, ending a feature that allowed Microsoft 365 subscribers to send documents directly to their Kindle e-readers and preserve complex formatting through fixed layouts.

The company updated its documentation to announce that beginning February 9th, 2026, the Send to Kindle feature will no longer work across Web, Win32, and Mac platforms. Microsoft has not disclosed why it's killing the integration but recommends users switch to Amazon's official Send to Kindle app. The feature launched in 2023 and was particularly valued by Kindle Scribe owners who could annotate the transferred documents.
IT

Tailwind CSS Lets Go 75% Of Engineers After 40% Traffic Drop From Google (seroundtable.com) 31

Adam Wathan, the creator of the popular CSS framework Tailwind CSS, has let go of 75% of his engineering team -- reducing it from four people to one -- because AI-generated search answers have decimated traffic to the project's documentation pages.

Traffic to Tailwind's documentation has fallen roughly 40% since early 2023 despite the framework being more popular than ever, Wathan wrote in a post. The documentation is the primary channel through which developers discover Tailwind's commercial products, and without that traffic the business has struggled to sustain itself; revenue has dropped close to 80%.

The reduced team also means Wathan cannot currently prioritize implementing LLMS.txt, a proposed feature that would make documentation more accessible to large language models. "Tailwind is growing faster than it ever has and is bigger than it ever has been, and our revenue is down close to 80%," he wrote in the forum post.
Microsoft

Microsoft Cancels Plans To Rate Limit Exchange Online Bulk Emails (bleepingcomputer.com) 17

Microsoft has canceled plans to impose a daily limit of 2,000 external recipients on Exchange Online bulk email senders. From a report: The change was announced in April 2024, when Microsoft said that it would add new External Recipient Rate (ERR) limits starting January 2025 to fight spam, with plans to begin enforcing the limit on cloud-hosted mailboxes of existing tenants between July and December 2025.

As explained last year, this new Mailbox External Recipient Rate Limit was designed to prevent Microsoft 365 customers from abusing Exchange Online resources and to restrict unfair usage. However, on Tuesday, Microsoft announced that the Exchange Online bulk emailing rate limit is being canceled indefinitely, following negative customer feedback.

IT

Logitech Caused Its Mice To Freak Out By Not Renewing a Certificate (theverge.com) 68

An anonymous reader shares a report: If you're among the macOS users experiencing some weird issues with your Logitech mouse, then good news: Logitech has now released a fix. This comes after multiple Reddit users reported yesterday that Logi Options Plus -- the app required to manage and configure the controls on Logitech accessories -- had stopped working, preventing them from using customized scrolling features, button actions, and gestures.

One Reddit user said that the scroll directions and extra buttons on their Logitech mouse "were not working as I intended" and that the Logi Options Plus app became stuck in a boot loop upon opening it to identify the cause. Logitech has since acknowledged the situation and said that its G Hub app -- a similar management software for gaming devices under the Logitech G brand -- was also affected.

According to Logitech's support page, the problem was caused by "an expired certificate" required for the apps to run. Windows users were unaffected. The issues only impacted Mac users because macOS prevents certain applications from running if it doesn't detect a valid Developer ID certificate, something that has affected other apps in the past.

IT

Dell Walks Back AI-First Messaging After Learning Consumers Don't Care (pcgamer.com) 50

Dell's CES 2026 product briefing, PC Gamer writes, stood out from the relentless AI-focused presentations that have dominated tech events for years, as the company explicitly chose to downplay its AI messaging when announcing a refreshed XPS laptop lineup, new ultraslim and entry-level Alienware laptops, Area-51 desktop refreshes and several monitors.

"One thing you'll notice is the message we delivered around our products was not AI-first," Dell head of product Kevin Terwilliger said during the presentation. "A bit of a shift from a year ago where we were all about the AI PC." The shift stems from Dell's observation that consumers simply aren't making purchasing decisions based on AI capabilities. "We're very focused on delivering upon the AI capabilities of a device -- in fact everything that we're announcing has an NPU in it -- but what we've learned over the course of this year, especially from a consumer perspective, is they're not buying based on AI," Terwilliger said. "In fact I think AI probably confuses them more than it helps them understand a specific outcome."
Microsoft

'Everyone Hates OneDrive, Microsoft's Cloud App That Steals Then Deletes All Your Files' (boingboing.net) 161

Microsoft's OneDrive cloud storage service has drawn renewed criticism for a particularly frustrating behavior pattern that can leave users without access to their local files after the service automatically activates during Windows updates.

Author Jason Pargin recently outlined the problem: Windows updates can enable OneDrive backup without any plain-language warning or opt-out option, and the service then quietly begins uploading the contents of a user's computer to Microsoft's servers. The trouble begins when users attempt to disable OneDrive Backup. According to Pargin, turning off the feature can result in local files being deleted, leaving behind only a desktop icon labeled "Where are my files?"

Users can redownload their files from Microsoft's servers, but attempting to then delete Microsoft's copies triggers another deletion of the local files. The only workaround requires users to hunt down YouTube tutorials that walk through the steps, as the relevant options are buried in menus and none clearly describe their function in plain English. Pargin compared the experience to a ransomware attack.
IT

Nvidia's New G-Sync Pulsar Monitors Target Motion Blur at the Human Retina Level (arstechnica.com) 56

Nvidia's G-Sync Pulsar technology, first announced nearly two years ago as a solution to display motion blur caused by old images persisting on the viewer's retina, is finally arriving in consumer monitors this week. The first four Pulsar-equipped displays -- from Acer, AOC, Asus and MSI -- hit select retailers on Wednesday, all sharing the same core specs: 27-inch IPS panels running at 1440p resolution and up to 360 Hz refresh rates. Nvidia claims the technology delivers the "effective motion clarity of a theoretical 1,000 Hz monitor."

The system uses a rolling scan scheme that pulses the backlight for one-quarter of a frame just before pixels are overwritten, giving them time to fully transition between colors before illumination. The approach also reduces how long old pixels persist on the viewer's retina. Previous "Ultra Low Motion Blur" features on other monitors worked only at fixed refresh rates, but Pulsar syncs its pulses to G-Sync's variable refresh rate.

Early reviews are mixed. The Monitors Unboxed YouTube channel called it "clearly the best solution currently available" for limiting motion blur, while PC Magazine described the improvements as "minor in the grand scheme of things" and potentially hard for casual viewers to notice.
IT

VSCode IDE Forks Expose Users To 'Recommended Extension' Attacks (bleepingcomputer.com) 6

An anonymous reader shares a report: Popular AI-powered integrated development environment solutions, such as Cursor, Windsurf, Google Antigravity, and Trae, recommend extensions that are non-existent in the OpenVSX registry, allowing threat actors to claim the namespace and upload malicious extensions.

These AI-assisted IDEs are forked from Microsoft VSCode, but cannot use the extensions in the official store due to licensing restrictions. Instead, they are supported by OpenVSX, an open-source marketplace alternative for VSCode-compatible extensions. As a result of forking, the IDEs inherit the list of officially recommended extensions, hardcoded in the configuration files, which point to Microsoft's Visual Studio Marketplace.

United Kingdom

UK Government's New Pension Portal Operator Tells Users To Wait for AI Before Complaining (theregister.com) 27

Capita, the UK outsourcer that won a $323 million contract to administer the nation's Civil Service Pension Scheme for 1.7 million members, has responded to a disastrous portal launch by asking users to hold off on complaints until its new AI chatbots go live.

The service launched on December 1 and immediately ran into problems including unrecognized passwords, broken links and placeholder text scattered across unfinished pages. In a December 17 email to members, The Register reports today, managing director Chris Clements said Capita was "working tirelessly" and promised "one of the biggest services in the United Kingdom with AI at its core" by March.

He asked users whose enquiries were not urgent to wait until the new year before contacting support again.
Google

Google To Kill Gmail's POP3 Mail Fetching (theregister.com) 92

Google is quietly killing Gmail's ability to fetch mail from third-party email accounts using POP3, a long-standing feature that has allowed users to consolidate multiple inboxes into a single Gmail interface. The change takes effect this month and also ends Gmailify, the companion feature that applied Gmail's spam filtering and inbox organization to linked third-party accounts.

Google buried the decision in a support note rather than making any formal announcement. The company's suggested workaround -- switching to IMAP -- doesn't work for all affected users. Users can still access third-party accounts through the Gmail mobile app, but the Gmail service itself will no longer retrieve messages from external providers.
IT

Samsung Co-CEO Says Soaring Memory Chip Prices Will 'Inevitably' Impact Smartphone Costs (reuters.com) 27

Samsung's co-CEO TM Roh has warned that product price increases are "inevitable" as an unprecedented global memory chip shortage squeezes margins across the company's consumer electronics lineup -- from smartphones to televisions and home appliances.

The South Korean giant, one of the top two largest smartphone manufacturers, plans to double the number of mobile devices running its Galaxy AI features to 800 million units this year, up from 400 million at the end of 2025. Galaxy AI is powered by Google's Gemini model and Samsung's own Bixby assistant for different tasks. "As this situation is unprecedented, no company is immune to its impact," Roh told Reuters in his first interview since becoming co-CEO in November.

Samsung is working with partners on longer-term strategies to minimize the impact, he said. Market researchers IDC and Counterpoint predict the global smartphone market will shrink this year as the chip shortage threatens to drive up phone prices. The shortage is a boon to Samsung's semiconductor business but pressures margins on its smartphone division, the company's second-largest revenue source.
AI

Could AI Bring Us Four-Day Workweeks? (yahoo.com) 94

"While a growing number of U.S. employers are mandating workers return to the office five days a week," reports the Washington Post, "some companies say AI is saving them enough time to launch or sustain a four-day workweek.

"More companies may move toward a shortened workweek, several executives and researchers predict, as workers, especially those in younger generations, continue to push for better work-life balance." And "several companies — especially those with a largely remote workforce — have adjusted their work rhythm after delegating many tasks to AI..." AI "has such a potential to have so much labor savings, you'll see firms shift to a four-day week in an evolutionary way," said Juliet Schor, an economist and sociologist at Boston College who has studied the subject. "There's enough social consensus that people are exhausted and stressed...." Small and medium businesses often adopt shortened workweeks to compete with big salaries for new hires and retention, Schor said. That's how Peak PEO, a London-based service that helps companies expand globally with teams in different locations, thought about its strategy... CEO Alex Voakes said that job openings that used to get two applications jumped to 350 after the change.
"Some of the world's most influential business leaders have publicly suggested the shift may be inevitable," adds Fortune: Jamie Dimon, the CEO of JPMorgan Chase, has said advancing technology could eventually push the workweek down to just three-and-a-half days. Microsoft cofounder Bill Gates has gone further, openly questioning whether a two-day workweek could be the future. Elon Musk has taken the idea to its logical extreme, positing that the need to work altogether could cease... Tech innovation could "probably" lead to a transition toward four-day workweeks, [Nvidia CEO Jensen] Huang said on Fox Business in August...
AI

Jobs Vulnerable to AI Replacement Actually 'Thriving, Not Dying Out', Report Suggests (fortune.com) 42

AI startups now outnumber all publicly traded U.S. companies, according to a year-end note to investors from economists at Vanguard.

And yet that report also suggest the jobs most susceptible to replacement by AI "are actually thriving, not dying out," writes Forbes: "The approximately 100 occupations most exposed to AI automation are actually outperforming the rest of the labor market in terms of job growth and real wage increases," the Vanguard report revealed. "This suggests that current AI systems are generally enhancing worker productivity and shifting workers' tasks toward higher-value activities..."

The job growth rate of occupations with high AI exposure — including office clerks, HR assistants, and data scientists — increased from 1% in pre-COVID-19 years (2015 through 2019) to 1.7% in 2023 and beyond, according to Vanguard's research. Meanwhile, the growth rate of all other jobs declined from 1.1% to 0.8% over the same period. Workers in AI-prone roles are getting pay bumps, too; the wage growth of jobs with high AI exposure shot up from 0.1% pre-COVID to 3.8% post-pandemic (and post-ChatGPT). For all other jobs, compensation only marginally increased from 0.5% to 0.7%... As technology improves production and reallocates employee time to higher-value tasks, a smaller workforce is needed to deliver services. It's a process that has "distinct labor market implications," Vanguard writes, just like the many tech revolutions that predate AI...

"Entry-level employment challenges reflect the disproportionate burden that a labor market with a low hiring rate can have on younger workers," the Vanguard note said. "This dynamic is observed across all occupations, even those largely unaffected by AI..." While many people see these labor disruptions and point their fingers at AI, experts told Fortune these layoffs could stem from a whole host of issues: navigating economic uncertainty, resolving pandemic-era overhiring, and bracing for tariffs. Vanguard isn't convinced that an AI is the reason for Gen Z's career obstacles.

"While statistics abound about large language models beating humans in computer programming and other aptitude tests, these models still struggle with real-world scenarios that require nuanced decision-making," the Vanguard report continued. "Significant progress is needed before we see wider and measurable disruption in labor markets."

IT

Dell's XPS Brand May Return Just a Year After Being Retired, Report Claims (videocardz.com) 16

Dell is planning to bring back its XPS laptop branding, according to a news report, just one year after the company retired the storied name in favor of a simplified naming scheme that organized its consumer and professional lineup into Dell, Dell Pro and Dell Pro Max tiers. VideoCardz reported this week that Dell has presented an updated XPS lineup during prebriefings ahead of CES 2026, though the company has not officially confirmed the badge's return.

The reported reversal would come after Dell launched the Dell 14 Premium and Dell 16 Premium in mid-2025 as flagship consumer models meant to carry the XPS legacy forward. Those machines replaced the XPS 14 and XPS 16 in Dell's lineup.

Slashdot Top Deals