В ФС Ext4 намечен к удалению режим data=journal
В состав ядра Linux 7.3, релиз которого ожидается 19 октября, принято изменение, переводящее режим монтирования файловой системы Ext4 "data=journal" в разряд устаревших технологий. Поддержку данной опции монтирования намерены прекратить в 2028 году.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66430
В состав ядра Linux 7.3, релиз которого ожидается 19 октября, принято изменение, переводящее режим монтирования файловой системы Ext4 "data=journal" в разряд устаревших технологий. Поддержку данной опции монтирования намерены прекратить в 2028 году.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66430
Microsoft warns admins to update Windows PCs or risk losing Windows Update access
Older Windows PCs could lose access to Windows Update in 2027 if they miss required certificate updates. Most supported systems need a specified security update by May or June 2027; unsupported versions must be upgraded. Devices updated through WSUS are not affected by this certificate rotation.
Source
👉@sysadminoff
https://4sysops.com/archives/microsoft-warns-admins-to-update-windows-pcs-or-risk-losing-windows-update-access/
Older Windows PCs could lose access to Windows Update in 2027 if they miss required certificate updates. Most supported systems need a specified security update by May or June 2027; unsupported versions must be upgraded. Devices updated through WSUS are not affected by this certificate rotation.
Source
👉@sysadminoff
https://4sysops.com/archives/microsoft-warns-admins-to-update-windows-pcs-or-risk-losing-windows-update-access/
OpenAI revenue gap sparks AI stock sell-off
Investors got two very different snapshots of OpenAI’s sales pace: nearly $50 billion in annualized net revenue, versus the $68 billion figure widely reported earlier that included partner revenue. The accounting difference isn’t an $18 billion vanishing act, but it was enough to send AI-linked shares lower and renew doubts about whether rapid growth can justify sky-high valuations and immense computing costs.
Source
👉@sysadminoff
https://4sysops.com/archives/openai-revenue-gap-sparks-ai-stock-sell-off/
Investors got two very different snapshots of OpenAI’s sales pace: nearly $50 billion in annualized net revenue, versus the $68 billion figure widely reported earlier that included partner revenue. The accounting difference isn’t an $18 billion vanishing act, but it was enough to send AI-linked shares lower and renew doubts about whether rapid growth can justify sky-high valuations and immense computing costs.
Source
👉@sysadminoff
https://4sysops.com/archives/openai-revenue-gap-sparks-ai-stock-sell-off/
Gartner predicts 40% of agentic AI projects will be canceled by 2027
Gartner expects more than 40% of agentic AI projects to be canceled by the end of 2027 as costs mount, business value stays murky, or safeguards prove inadequate. “Agent washing” adds another wrinkle: only about 130 of thousands of vendors claiming to offer AI agents may have genuine agents. Organizations can improve their odds by testing a narrowly defined task, setting measurable success and stop-or-go criteria, and limiting agent permissions until they demonstrate results.
Source
👉@sysadminoff
https://4sysops.com/archives/gartner-predicts-40-of-agentic-ai-projects-will-be-canceled-by-2027/
Gartner expects more than 40% of agentic AI projects to be canceled by the end of 2027 as costs mount, business value stays murky, or safeguards prove inadequate. “Agent washing” adds another wrinkle: only about 130 of thousands of vendors claiming to offer AI agents may have genuine agents. Organizations can improve their odds by testing a narrowly defined task, setting measurable success and stop-or-go criteria, and limiting agent permissions until they demonstrate results.
Source
👉@sysadminoff
https://4sysops.com/archives/gartner-predicts-40-of-agentic-ai-projects-will-be-canceled-by-2027/
Уязвимость в Telegram Desktop, позволяющая отправить произвольные файлы при клике на ссылку
Раскрыты подробности и метод эксплуатации уязвимости (CVE-2026-107181) в Telegram Desktop, официальном клиенте Telegram для настольных систем. Проблема вызвана отсутствием должной обработки неэкранированных символов-разделителей в командах IPC, что позволяло при клике на отправленную ссылку организовать передачу атакующему любых файлов с системы жертвы, включая файлы с сессионными ключами, которые можно использовать для захвата учётной записи в Telegram. Уязвимость устранена в выпуске Telegram Desktop 7.2.9.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66431
Раскрыты подробности и метод эксплуатации уязвимости (CVE-2026-107181) в Telegram Desktop, официальном клиенте Telegram для настольных систем. Проблема вызвана отсутствием должной обработки неэкранированных символов-разделителей в командах IPC, что позволяло при клике на отправленную ссылку организовать передачу атакующему любых файлов с системы жертвы, включая файлы с сессионными ключами, которые можно использовать для захвата учётной записи в Telegram. Уязвимость устранена в выпуске Telegram Desktop 7.2.9.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66431
GitHub’s Spokes rewrite targets AI traffic with 35x faster writes
GitHub is rebuilding its Git storage system as AI-driven activity strains the service, with early tests showing writes up to 35 times faster. The redesign replaces Spokes’ replica-quorum write path with Azure Blob Storage and separates reads and maintenance from writes. GitHub has not announced a migration timeline.
Source
👉@sysadminoff
https://4sysops.com/archives/githubs-spokes-rewrite-targets-ai-traffic-with-35x-faster-writes/
GitHub is rebuilding its Git storage system as AI-driven activity strains the service, with early tests showing writes up to 35 times faster. The redesign replaces Spokes’ replica-quorum write path with Azure Blob Storage and separates reads and maintenance from writes. GitHub has not announced a migration timeline.
Source
👉@sysadminoff
https://4sysops.com/archives/githubs-spokes-rewrite-targets-ai-traffic-with-35x-faster-writes/
10 Tips to Harden SSH Access on Production Ubuntu Servers
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides .Any Ubuntu server with port 22 open can start receiving SSH password guesses within minutes of going online. Here’s how
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides.
👉@sysadminoff
https://www.tecmint.com/ssh-hardening-tips-on-ubuntu-servers/
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides .Any Ubuntu server with port 22 open can start receiving SSH password guesses within minutes of going online. Here’s how
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides.
👉@sysadminoff
https://www.tecmint.com/ssh-hardening-tips-on-ubuntu-servers/
10 Tips to Harden SSH Access on Production Ubuntu Servers
How to Secure SSH on Ubuntu Servers with sshd_config, UFW, and Fail2Ban
In this article, harden SSH on Ubuntu with sshd drop-in files, Ed25519 keys, UFW, and Fail2Ban so only approved users can log in to production servers.
📰 GNU Guix Package Manager Improves Extension Loading, Adds New Commands
GNU Guix introduces faster extension loading through compiled Guile modules, alongside a collection of ready-to-use commands.
🔗 Source: /
#gnu
👉@sysadminoff
https://linuxiac.com/nu-guix-package-manager-improves-extension-loading
GNU Guix introduces faster extension loading through compiled Guile modules, alongside a collection of ready-to-use commands.
🔗 Source: /
#gnu
👉@sysadminoff
https://linuxiac.com/nu-guix-package-manager-improves-extension-loading
Linuxiac
GNU Guix Package Manager Improves Extension Loading, Adds New Commands
GNU Guix introduces faster extension loading through compiled Guile modules, alongside a collection of ready-to-use commands.
📰 Microsoft Issues First Release Of Their LiteBox Sandboxing Library OS
Back in February we featured LiteBox as a new Microsoft open-source project building out a Rust-based sandboxing Library OS. LiteBox leverages Linux virtualization security features and Rust language inherent benefits to provide the ability for sandboxing Linux apps on Linux, Linux programs on Windows, and other security-oriented deployments. Out today is the first tagged release of LiteBox for this open-source library operating system...
🔗 Source: https://www.phoronix.com/news/Microsoft-LiteBox-0.1
#linux #opensource #rust
👉@sysadminoff
https://phoronix.com/news/Microsoft-LiteBox-0.1
Back in February we featured LiteBox as a new Microsoft open-source project building out a Rust-based sandboxing Library OS. LiteBox leverages Linux virtualization security features and Rust language inherent benefits to provide the ability for sandboxing Linux apps on Linux, Linux programs on Windows, and other security-oriented deployments. Out today is the first tagged release of LiteBox for this open-source library operating system...
🔗 Source: https://www.phoronix.com/news/Microsoft-LiteBox-0.1
#linux #opensource #rust
👉@sysadminoff
https://phoronix.com/news/Microsoft-LiteBox-0.1
Phoronix
Microsoft Issues First Release Of Their LiteBox Sandboxing Library OS
Back in February we featured LiteBox as a new Microsoft open-source project building out a Rust-based sandboxing Library OS
Вредоносное ПО в прошивках китайских Android-смартфонов на чипах MediaTek
Компания Bitdefender выявила деятельность по интеграции вредоносного ПО в прошивки Android-смартфонов на платформах MediaTek, выпускаемых в Китае под разными брендами. Вредоносная активность сосредоточена на подстановке рекламы и накрутке кликов на рекламу, а также на поддержании ботнета из устройств, формирующего распределённую сеть для организации DDoS-атак и проксирования трафика.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66426
Компания Bitdefender выявила деятельность по интеграции вредоносного ПО в прошивки Android-смартфонов на платформах MediaTek, выпускаемых в Китае под разными брендами. Вредоносная активность сосредоточена на подстановке рекламы и накрутке кликов на рекламу, а также на поддержании ботнета из устройств, формирующего распределённую сеть для организации DDoS-атак и проксирования трафика.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66426
🤯1
📰 16 Malicious Firefox Extensions Pose as Rabby and OKX Wallets to Steal Recovery Phrases
Cybersecurity researchers have discovered a cluster of 16 malicious Mozilla Firefox extensions that are capable of stealing cryptocurrency wallet recovery phrases and private keys."The extensions masquerade as wallet portals, desktop utilities, and browser tools, but their code intercepts recovery phrases and private keys during wallet import flows and attempts to send those secrets to.
🔗 Source: https://thehackernews.com/2026/10/16-malicious-firefox-extensions-pose-as.html
#firefox
👉@sysadminoff
Cybersecurity researchers have discovered a cluster of 16 malicious Mozilla Firefox extensions that are capable of stealing cryptocurrency wallet recovery phrases and private keys."The extensions masquerade as wallet portals, desktop utilities, and browser tools, but their code intercepts recovery phrases and private keys during wallet import flows and attempts to send those secrets to.
🔗 Source: https://thehackernews.com/2026/10/16-malicious-firefox-extensions-pose-as.html
#firefox
👉@sysadminoff
📰 SpacemiT RISC-V SoCs To See More Improvements With Linux 7.4
For those interested in the SpacemiT K3 as one of the few RVA23 RISC-V SoCs readily available so far and in the likes of the K3 Pico-ITX system, more improvements for its upstream kernel support are coming in Linux 7.4...
🔗 Source: https://www.phoronix.com/news/SpacemiT-Linux-7.4
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/SpacemiT-Linux-7.4
For those interested in the SpacemiT K3 as one of the few RVA23 RISC-V SoCs readily available so far and in the likes of the K3 Pico-ITX system, more improvements for its upstream kernel support are coming in Linux 7.4...
🔗 Source: https://www.phoronix.com/news/SpacemiT-Linux-7.4
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/SpacemiT-Linux-7.4
Phoronix
SpacemiT RISC-V SoCs To See More Improvements With Linux 7.4
For those interested in the SpacemiT K3 as one of the few RVA23 RISC-V SoCs readily available so far and in the likes of the K3 Pico-ITX system, more improvements for its upstream kernel support are coming in Linux 7.4.
Calibre can now read ebooks aloud without sounding like a robot
A new update to the Calibre ebook manager is out and it brings more natural sounding text-to-speech (TTS) voices, as well as AVIF image support and better handling of PDFs that put text in columns. Calibre v9.16 adds support for Kokoro, an open-weight TTS model, to its Read Aloud feature (which to state the bleedin’ obvious, will read the content of books to you). The new voices are sound to sound ‘much more natural’, especially in English. Kokoro voices aren’t preinstalled or included in Calibre itself. You choose one via the backend picker in the Read aloud configuration panel and […]
You're reading Calibre can now read ebooks aloud without sounding like a robot, a blog post from OMG! Ubuntu. Do not reproduce elsewhere without permission.
👉@sysadminoff
https://www.omgubuntu.co.uk/2026/10/calibre-read-aloud-kokoro-voices
A new update to the Calibre ebook manager is out and it brings more natural sounding text-to-speech (TTS) voices, as well as AVIF image support and better handling of PDFs that put text in columns. Calibre v9.16 adds support for Kokoro, an open-weight TTS model, to its Read Aloud feature (which to state the bleedin’ obvious, will read the content of books to you). The new voices are sound to sound ‘much more natural’, especially in English. Kokoro voices aren’t preinstalled or included in Calibre itself. You choose one via the backend picker in the Read aloud configuration panel and […]
You're reading Calibre can now read ebooks aloud without sounding like a robot, a blog post from OMG! Ubuntu. Do not reproduce elsewhere without permission.
👉@sysadminoff
https://www.omgubuntu.co.uk/2026/10/calibre-read-aloud-kokoro-voices
Citrix patches critical NetScaler SAML flaw with 9.5 severity score
Citrix has patched CVE-2026-107406, a critical NetScaler ADC and Gateway flaw that could allow remote code execution or denial of service in SAML deployments. Rated 9.5, the memory-overflow vulnerability has no known in-the-wild exploitation, but administrators should check affected instances and upgrade.
Source
👉@sysadminoff
https://4sysops.com/archives/citrix-patches-critical-netscaler-saml-flaw-with-9-5-severity-score/
Citrix has patched CVE-2026-107406, a critical NetScaler ADC and Gateway flaw that could allow remote code execution or denial of service in SAML deployments. Rated 9.5, the memory-overflow vulnerability has no known in-the-wild exploitation, but administrators should check affected instances and upgrade.
Source
👉@sysadminoff
https://4sysops.com/archives/citrix-patches-critical-netscaler-saml-flaw-with-9-5-severity-score/
Let’s Encrypt switches its default certificate cycle from 90 days to 64 days in February 2027
Let’s Encrypt will switch its default certificate lifetime from 90 days to 64 days on February 10, 2027. From that date, each newly issued certificate—including a renewal—will follow the 64-day cycle. Certificates already issued will keep their original expiration dates.
Source
👉@sysadminoff
https://4sysops.com/archives/lets-encrypt-switches-its-default-certificate-cycle-from-90-days-to-64-days-in-february-2027/
Let’s Encrypt will switch its default certificate lifetime from 90 days to 64 days on February 10, 2027. From that date, each newly issued certificate—including a renewal—will follow the 64-day cycle. Certificates already issued will keep their original expiration dates.
Source
👉@sysadminoff
https://4sysops.com/archives/lets-encrypt-switches-its-default-certificate-cycle-from-90-days-to-64-days-in-february-2027/
Google’s persistent Gemini agent gets its own Workspace identity
Google Cloud has opened a private preview of a persistent Gemini agent built to carry workplace assignments across apps for hours or days. It can keep task context between devices, coordinate specialized agents, and—in a team-coworker setup—have its own Gmail, Calendar, Drive storage, and company-directory identity. Broader availability has no announced date.
Source
👉@sysadminoff
https://4sysops.com/archives/googles-persistent-gemini-agent-gets-its-own-workspace-identity/
Google Cloud has opened a private preview of a persistent Gemini agent built to carry workplace assignments across apps for hours or days. It can keep task context between devices, coordinate specialized agents, and—in a team-coworker setup—have its own Gmail, Calendar, Drive storage, and company-directory identity. Broader availability has no announced date.
Source
👉@sysadminoff
https://4sysops.com/archives/googles-persistent-gemini-agent-gets-its-own-workspace-identity/
📰 KDE Gear 26.08.2 Released with More Improvements for Your Favorite KDE Apps
KDE Gear 26.08.2 is now available as the second maintenance update to the latest KDE Gear 26.08 open-source software suite series with more fixes for your favorite KDE apps.
🔗 Source: https://9to5linux.com/kde-gear-26-08-2-released-with-more-improvements-for-your-favorite-kde-apps
#kde #opensource
👉@sysadminoff
KDE Gear 26.08.2 is now available as the second maintenance update to the latest KDE Gear 26.08 open-source software suite series with more fixes for your favorite KDE apps.
🔗 Source: https://9to5linux.com/kde-gear-26-08-2-released-with-more-improvements-for-your-favorite-kde-apps
#kde #opensource
👉@sysadminoff
📰 Google Working To Leverage More Compiler Optimizations Within The Linux Kernel
While Linus Torvalds previously shot down plans for Profile Guided Optimizations (PGO) in the mainline Linux kernel, Google engineers are hoping still to get that out-of-tree functionality upstream. They also would like to see PGO supported for Linux kernel modules rather than just the main Linux kernel image. Additionally, they hope to see limitations overcome around AutoFDO and Propeller optimizations of kernel modules...
🔗 Source: https://www.phoronix.com/news/Google-More-Kernel-Compiler-Opt
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/Google-More-Kernel-Compiler-Opt
While Linus Torvalds previously shot down plans for Profile Guided Optimizations (PGO) in the mainline Linux kernel, Google engineers are hoping still to get that out-of-tree functionality upstream. They also would like to see PGO supported for Linux kernel modules rather than just the main Linux kernel image. Additionally, they hope to see limitations overcome around AutoFDO and Propeller optimizations of kernel modules...
🔗 Source: https://www.phoronix.com/news/Google-More-Kernel-Compiler-Opt
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/Google-More-Kernel-Compiler-Opt
Phoronix
Google Working To Leverage More Compiler Optimizations Within The Linux Kernel
While Linus Torvalds previously shot down plans for Profile Guided Optimizations (PGO) in the mainline Linux kernel, Google engineers are hoping still to get that out-of-tree functionality upstream
📰 The best thing about Debian is how old all of its software is
Debian’s old software is often discussed as its biggest weakness when compared to other distros. But when I picked Debian for my own home server, I specifically chose it because of those years-old versions. I am running bare-metal Debian on an old business laptop with more than 20 stacks, and Debian is the least concerning element in the homelab, and that sounds the opposite for software this old.
🔗 Source: https://www.xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is/
#debian
👉@sysadminoff
https://xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is
Debian’s old software is often discussed as its biggest weakness when compared to other distros. But when I picked Debian for my own home server, I specifically chose it because of those years-old versions. I am running bare-metal Debian on an old business laptop with more than 20 stacks, and Debian is the least concerning element in the homelab, and that sounds the opposite for software this old.
🔗 Source: https://www.xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is/
#debian
👉@sysadminoff
https://xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is
XDA
The best thing about Debian is how old all of its software is
Old, supported, and staying.
The President of the United States of America considers anyone who still uses the term “artificial intelligence” an enemy
President Trump’s Truth Social post declares anyone who says “artificial intelligence” instead of his preferred “super intelligence” an enemy of the White House—a terminology decree apparently backed by highly accepted authority.
Source
👉@sysadminoff
https://4sysops.com/archives/the-president-of-the-united-states-of-america-considers-anyone-who-still-uses-the-term-artificial-intelligence-an-enemy/
President Trump’s Truth Social post declares anyone who says “artificial intelligence” instead of his preferred “super intelligence” an enemy of the White House—a terminology decree apparently backed by highly accepted authority.
Source
👉@sysadminoff
https://4sysops.com/archives/the-president-of-the-united-states-of-america-considers-anyone-who-still-uses-the-term-artificial-intelligence-an-enemy/
Anthropic’s OSS Scanner finds a serious curl flaw
Anthropic’s free OSS Scanner has uncovered a curl vulnerability that maintainer Daniel Stenberg describes as one of the project’s worst in several years. The finding puts a real-world result behind the service, which Anthropic recently opened to open-source maintainers for automated security reports.
Source
👉@sysadminoff
https://4sysops.com/archives/anthropics-oss-scanner-finds-a-serious-curl-flaw/
Anthropic’s free OSS Scanner has uncovered a curl vulnerability that maintainer Daniel Stenberg describes as one of the project’s worst in several years. The finding puts a real-world result behind the service, which Anthropic recently opened to open-source maintainers for automated security reports.
Source
👉@sysadminoff
https://4sysops.com/archives/anthropics-oss-scanner-finds-a-serious-curl-flaw/