2026-01-02 39c3

Post Syndicated from Vasil Kolev original https://vasil.ludost.net/blog/?p=3520

След 10 години успях пак да ида на CCC конгреса (39C3, “Power cycles”).

(малко снимки)

Тази година успяхме да си вземем билети през системата с ваучери за хакерспейсовете. Като видях как на двата дни за продажба билетите свършиха за около 15 минути, мисля, че нямаше да имаме никакъв шанс иначе да идем.

Бях забравил каква лудница е. 4 дни, 15к човека, всякакви странни събития и под-събития, изобщо голямо забавление. Също бях забравил колко уморително ми идва, и всичките дни на конгреса се прибирах и си припадах в стаята (на третия ден, с уиски workshop-а, и прилично пийнал). Комбинирано с това, че в предишния месец имаше купчина срещи да приключим годината, бях блокирал през половината време.

Имаше доста интересни лекции:

Infrastructure review, любимата ми лекция;

Who cares about the Baltic Jammer?, за нова система за навигация в Балтийско море;

To sign or not to sign: Practical vulnerabilities in GPG & friends – бъгове в GPG;

Asahi Linux – Porting Linux to Apple Silicon – разни забавни неща по port-ването на Linux за apple hardware;

Building hardware – easier than ever – harder than it should be – по темата за как хората могат да си правят SMD платки;

Breaking architecture barriers: Running x86 games and apps on ARM – забързан емулатор/транслатор от x86 към ARM;

… и много други на media.ccc.de.

Имахме маса, която споделяхме с един младеж, който се занимаваше със съживяване на стари Pebble часовници, в една много тъмна зала (съответно на първия ден ходих да купя една лампа да осветява videobox-а). Основно беше много полезна за да има къде да сядаме от време навреме и да си зареждаме нещата (или да дебъгнем нещо).

Мисля, че всички, дето дойдоха много се изкефиха на събитието, и ще искат пак. Обмислях да си водя и децата, ама мисля, че ще им дойде много, въпреки, че имаше много добър детски кът.

Flock Exposes Its AI-Enabled Surveillance Cameras

Post Syndicated from Bruce Schneier original https://www.schneier.com/blog/archives/2026/01/flock-exposes-its-ai-enabled-surveillance-cameras.html

404 Media has the story:

Unlike many of Flock’s cameras, which are designed to capture license plates as people drive by, Flock’s Condor cameras are pan-tilt-zoom (PTZ) cameras designed to record and track people, not vehicles. Condor cameras can be set to automatically zoom in on people’s faces as they walk through a parking lot, down a public street, or play on a playground, or they can be controlled manually, according to marketing material on Flock’s website. We watched Condor cameras zoom in on a woman walking her dog on a bike path in suburban Atlanta; a camera followed a man walking through a Macy’s parking lot in Bakersfield; surveil children swinging on a swingset at a playground; and film high-res video of people sitting at a stoplight in traffic. In one case, we were able to watch a man rollerblade down Brookhaven, Georgia’s Peachtree Creek Greenway bike path. The Flock camera zoomed in on him and tracked him as he rolled past. Minutes later, he showed up on another exposed camera livestream further down the bike path. The camera’s resolution was good enough that we were able to see that, when he stopped beneath one of the cameras, he was watching rollerblading videos on his phone.

Най-накрая…

Post Syndicated from Йовко Ламбрев original https://yovko.net/euro/

Най-накрая...

Честита Нова година! И честита нова валута! Честито евро!

Деветнадесет години. Толкова време ни отне да завършим прехода от „малка“ комплексирана страна от постсоциалистическия блок до напълно интегрирана и пълноправна страна-членка на Европейския съюз, шенгенското пространство и еврозоната. Десетата по територия и петнадесетата по население (от 27) между другото. Стига с този комплекс за малоценност.

Можеше ли да стане по-рано? Можеше и трябваше. Но попречиха… и още пречат колебливостта, инерцията, конспиративните теории, геополитиката, байганювщината и местната (псевдо)политика. Най-много си пречихме сами. Защото в главите на мнозина Европа продължава да е някъде там – отвъд, а ние сме тук – далеч и… назад. Защото „тука е така“, а можеше и да не е. Защото допускаме в управлението на държавата ни хора, на които иначе не бихме поверили да… измажат дувар.

Но по-добре късно. Защото най-накрая се осъществи избора, който няколко поколения българи направиха, очакваха и искаха от началото на прехода през 90-те години на миналия век. Т.нар. цивилизационен избор бе направен тогава. А всички опити да се промени посоката забавиха нещата, но се провалиха.

Вчера управителят на БНБ е направил едно от най-смислените и стойностни политически декларации в най-новата ни българска история. Еврото като знак за принадлежност. Задължително е за четене или слушане.

Оттук нататък остава всеки ден да съхраняваме и пазим това място, право и взаимна принадлежност занапред. Като пълноценни и пълнокръвни европейци от България.

За много години!

Building Our Office Storage for the NVIDIA GB10 Agent AI Cluster

Post Syndicated from Patrick Kennedy original https://www.servethehome.com/building-our-office-storage-for-the-nvidia-gb10-agent-ai-cluster-apple-amd-solidigm-qnap/

We built an office storage solution for our growing cluster of small AI systems and wanted to share some key experiences

The post Building Our Office Storage for the NVIDIA GB10 Agent AI Cluster appeared first on ServeTheHome.

Shadow-utils 4.19.0 released

Post Syndicated from jzb original https://lwn.net/Articles/1052435/

Version
4.19.0
of the shadow-utils
project has been released. Notable changes in this release include
disallowing
some usernames that were previously accepted
with the
--badname option, and removing
support for escaped newlines
in configuration files. Possibly more
interesting is the announcement that the project is deprecating a
number of programs, hashing algorithms, and the ability to
periodically expire passwords:

Scientific research shows that periodic password expiration
leads to predictable password patterns, and that even in a
theoretical scenario where that wouldn’t happen the gains in
security are mathematically negligible (paper
link
).

Modern security standards, such as NIST SP 800-63B-4 in the USA,
prohibit periodic password expiration. […]

To align with these, we’re deprecating the ability to
periodically expire passwords. The specifics and long-term
roadmap are currently being discussed, and we invite feedback
from users, particularly from those in regulated environments.
See #1432.

The release announcement notes that the features will remain
functional “for a significant period” to minimize
disruption.

LinkedIn Job Scams

Post Syndicated from Bruce Schneier original https://www.schneier.com/blog/archives/2025/12/linkedin-job-scams.html

Interesting article on the variety of LinkedIn job scams around the world:

In India, tech jobs are used as bait because the industry employs millions of people and offers high-paying roles. In Kenya, the recruitment industry is largely unorganized, so scamsters leverage fake personal referrals. In Mexico, bad actors capitalize on the informal nature of the job economy by advertising fake formal roles that carry a promise of security. In Nigeria, scamsters often manage to get LinkedIn users to share their login credentials with the lure of paid work, preying on their desperation amid an especially acute unemployment crisis.

These are scams involving fraudulent employers convincing prospective employees to send them money for various fees. There is an entirely different set of scams involving fraudulent employees getting hired for remote jobs.

Sodola SL902-SWTG015AS 2.5G Switch Review 5-port 2.5GbE 1-port 10G

Post Syndicated from Rohit Kumar original https://www.servethehome.com/sodola-sl902-swtg015as-2-5g-switch-review-5-port-2-5gbe-1-port-10g/

In our Sodola SL902-SWTG015AS review, we see how this fanless and cheap 2.5GbE and 10G switch is differentiated by materials and magnets

The post Sodola SL902-SWTG015AS 2.5G Switch Review 5-port 2.5GbE 1-port 10G appeared first on ServeTheHome.

The collective thoughts of the interwebz