GitHub’s Spokes rewrite targets AI traffic with 35x faster writes
GitHub is rebuilding its Git storage system as AI-driven activity strains the service, with early tests showing writes up to 35 times faster. The redesign replaces Spokes’ replica-quorum write path with Azure Blob Storage and separates reads and maintenance from writes. GitHub has not announced a migration timeline.
Source
👉@sysadminoff
https://4sysops.com/archives/githubs-spokes-rewrite-targets-ai-traffic-with-35x-faster-writes/
GitHub is rebuilding its Git storage system as AI-driven activity strains the service, with early tests showing writes up to 35 times faster. The redesign replaces Spokes’ replica-quorum write path with Azure Blob Storage and separates reads and maintenance from writes. GitHub has not announced a migration timeline.
Source
👉@sysadminoff
https://4sysops.com/archives/githubs-spokes-rewrite-targets-ai-traffic-with-35x-faster-writes/
10 Tips to Harden SSH Access on Production Ubuntu Servers
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides .Any Ubuntu server with port 22 open can start receiving SSH password guesses within minutes of going online. Here’s how
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides.
👉@sysadminoff
https://www.tecmint.com/ssh-hardening-tips-on-ubuntu-servers/
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides .Any Ubuntu server with port 22 open can start receiving SSH password guesses within minutes of going online. Here’s how
The post 10 Tips to Harden SSH Access on Production Ubuntu Servers first appeared on Tecmint: Linux Howtos, Tutorials & Guides.
👉@sysadminoff
https://www.tecmint.com/ssh-hardening-tips-on-ubuntu-servers/
10 Tips to Harden SSH Access on Production Ubuntu Servers
How to Secure SSH on Ubuntu Servers with sshd_config, UFW, and Fail2Ban
In this article, harden SSH on Ubuntu with sshd drop-in files, Ed25519 keys, UFW, and Fail2Ban so only approved users can log in to production servers.
📰 GNU Guix Package Manager Improves Extension Loading, Adds New Commands
GNU Guix introduces faster extension loading through compiled Guile modules, alongside a collection of ready-to-use commands.
🔗 Source: /
#gnu
👉@sysadminoff
https://linuxiac.com/nu-guix-package-manager-improves-extension-loading
GNU Guix introduces faster extension loading through compiled Guile modules, alongside a collection of ready-to-use commands.
🔗 Source: /
#gnu
👉@sysadminoff
https://linuxiac.com/nu-guix-package-manager-improves-extension-loading
Linuxiac
GNU Guix Package Manager Improves Extension Loading, Adds New Commands
GNU Guix introduces faster extension loading through compiled Guile modules, alongside a collection of ready-to-use commands.
📰 Microsoft Issues First Release Of Their LiteBox Sandboxing Library OS
Back in February we featured LiteBox as a new Microsoft open-source project building out a Rust-based sandboxing Library OS. LiteBox leverages Linux virtualization security features and Rust language inherent benefits to provide the ability for sandboxing Linux apps on Linux, Linux programs on Windows, and other security-oriented deployments. Out today is the first tagged release of LiteBox for this open-source library operating system...
🔗 Source: https://www.phoronix.com/news/Microsoft-LiteBox-0.1
#linux #opensource #rust
👉@sysadminoff
https://phoronix.com/news/Microsoft-LiteBox-0.1
Back in February we featured LiteBox as a new Microsoft open-source project building out a Rust-based sandboxing Library OS. LiteBox leverages Linux virtualization security features and Rust language inherent benefits to provide the ability for sandboxing Linux apps on Linux, Linux programs on Windows, and other security-oriented deployments. Out today is the first tagged release of LiteBox for this open-source library operating system...
🔗 Source: https://www.phoronix.com/news/Microsoft-LiteBox-0.1
#linux #opensource #rust
👉@sysadminoff
https://phoronix.com/news/Microsoft-LiteBox-0.1
Phoronix
Microsoft Issues First Release Of Their LiteBox Sandboxing Library OS
Back in February we featured LiteBox as a new Microsoft open-source project building out a Rust-based sandboxing Library OS
Вредоносное ПО в прошивках китайских Android-смартфонов на чипах MediaTek
Компания Bitdefender выявила деятельность по интеграции вредоносного ПО в прошивки Android-смартфонов на платформах MediaTek, выпускаемых в Китае под разными брендами. Вредоносная активность сосредоточена на подстановке рекламы и накрутке кликов на рекламу, а также на поддержании ботнета из устройств, формирующего распределённую сеть для организации DDoS-атак и проксирования трафика.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66426
Компания Bitdefender выявила деятельность по интеграции вредоносного ПО в прошивки Android-смартфонов на платформах MediaTek, выпускаемых в Китае под разными брендами. Вредоносная активность сосредоточена на подстановке рекламы и накрутке кликов на рекламу, а также на поддержании ботнета из устройств, формирующего распределённую сеть для организации DDoS-атак и проксирования трафика.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66426
🤯1
📰 16 Malicious Firefox Extensions Pose as Rabby and OKX Wallets to Steal Recovery Phrases
Cybersecurity researchers have discovered a cluster of 16 malicious Mozilla Firefox extensions that are capable of stealing cryptocurrency wallet recovery phrases and private keys."The extensions masquerade as wallet portals, desktop utilities, and browser tools, but their code intercepts recovery phrases and private keys during wallet import flows and attempts to send those secrets to.
🔗 Source: https://thehackernews.com/2026/10/16-malicious-firefox-extensions-pose-as.html
#firefox
👉@sysadminoff
Cybersecurity researchers have discovered a cluster of 16 malicious Mozilla Firefox extensions that are capable of stealing cryptocurrency wallet recovery phrases and private keys."The extensions masquerade as wallet portals, desktop utilities, and browser tools, but their code intercepts recovery phrases and private keys during wallet import flows and attempts to send those secrets to.
🔗 Source: https://thehackernews.com/2026/10/16-malicious-firefox-extensions-pose-as.html
#firefox
👉@sysadminoff
📰 SpacemiT RISC-V SoCs To See More Improvements With Linux 7.4
For those interested in the SpacemiT K3 as one of the few RVA23 RISC-V SoCs readily available so far and in the likes of the K3 Pico-ITX system, more improvements for its upstream kernel support are coming in Linux 7.4...
🔗 Source: https://www.phoronix.com/news/SpacemiT-Linux-7.4
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/SpacemiT-Linux-7.4
For those interested in the SpacemiT K3 as one of the few RVA23 RISC-V SoCs readily available so far and in the likes of the K3 Pico-ITX system, more improvements for its upstream kernel support are coming in Linux 7.4...
🔗 Source: https://www.phoronix.com/news/SpacemiT-Linux-7.4
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/SpacemiT-Linux-7.4
Phoronix
SpacemiT RISC-V SoCs To See More Improvements With Linux 7.4
For those interested in the SpacemiT K3 as one of the few RVA23 RISC-V SoCs readily available so far and in the likes of the K3 Pico-ITX system, more improvements for its upstream kernel support are coming in Linux 7.4.
Calibre can now read ebooks aloud without sounding like a robot
A new update to the Calibre ebook manager is out and it brings more natural sounding text-to-speech (TTS) voices, as well as AVIF image support and better handling of PDFs that put text in columns. Calibre v9.16 adds support for Kokoro, an open-weight TTS model, to its Read Aloud feature (which to state the bleedin’ obvious, will read the content of books to you). The new voices are sound to sound ‘much more natural’, especially in English. Kokoro voices aren’t preinstalled or included in Calibre itself. You choose one via the backend picker in the Read aloud configuration panel and […]
You're reading Calibre can now read ebooks aloud without sounding like a robot, a blog post from OMG! Ubuntu. Do not reproduce elsewhere without permission.
👉@sysadminoff
https://www.omgubuntu.co.uk/2026/10/calibre-read-aloud-kokoro-voices
A new update to the Calibre ebook manager is out and it brings more natural sounding text-to-speech (TTS) voices, as well as AVIF image support and better handling of PDFs that put text in columns. Calibre v9.16 adds support for Kokoro, an open-weight TTS model, to its Read Aloud feature (which to state the bleedin’ obvious, will read the content of books to you). The new voices are sound to sound ‘much more natural’, especially in English. Kokoro voices aren’t preinstalled or included in Calibre itself. You choose one via the backend picker in the Read aloud configuration panel and […]
You're reading Calibre can now read ebooks aloud without sounding like a robot, a blog post from OMG! Ubuntu. Do not reproduce elsewhere without permission.
👉@sysadminoff
https://www.omgubuntu.co.uk/2026/10/calibre-read-aloud-kokoro-voices
Citrix patches critical NetScaler SAML flaw with 9.5 severity score
Citrix has patched CVE-2026-107406, a critical NetScaler ADC and Gateway flaw that could allow remote code execution or denial of service in SAML deployments. Rated 9.5, the memory-overflow vulnerability has no known in-the-wild exploitation, but administrators should check affected instances and upgrade.
Source
👉@sysadminoff
https://4sysops.com/archives/citrix-patches-critical-netscaler-saml-flaw-with-9-5-severity-score/
Citrix has patched CVE-2026-107406, a critical NetScaler ADC and Gateway flaw that could allow remote code execution or denial of service in SAML deployments. Rated 9.5, the memory-overflow vulnerability has no known in-the-wild exploitation, but administrators should check affected instances and upgrade.
Source
👉@sysadminoff
https://4sysops.com/archives/citrix-patches-critical-netscaler-saml-flaw-with-9-5-severity-score/
Let’s Encrypt switches its default certificate cycle from 90 days to 64 days in February 2027
Let’s Encrypt will switch its default certificate lifetime from 90 days to 64 days on February 10, 2027. From that date, each newly issued certificate—including a renewal—will follow the 64-day cycle. Certificates already issued will keep their original expiration dates.
Source
👉@sysadminoff
https://4sysops.com/archives/lets-encrypt-switches-its-default-certificate-cycle-from-90-days-to-64-days-in-february-2027/
Let’s Encrypt will switch its default certificate lifetime from 90 days to 64 days on February 10, 2027. From that date, each newly issued certificate—including a renewal—will follow the 64-day cycle. Certificates already issued will keep their original expiration dates.
Source
👉@sysadminoff
https://4sysops.com/archives/lets-encrypt-switches-its-default-certificate-cycle-from-90-days-to-64-days-in-february-2027/
Google’s persistent Gemini agent gets its own Workspace identity
Google Cloud has opened a private preview of a persistent Gemini agent built to carry workplace assignments across apps for hours or days. It can keep task context between devices, coordinate specialized agents, and—in a team-coworker setup—have its own Gmail, Calendar, Drive storage, and company-directory identity. Broader availability has no announced date.
Source
👉@sysadminoff
https://4sysops.com/archives/googles-persistent-gemini-agent-gets-its-own-workspace-identity/
Google Cloud has opened a private preview of a persistent Gemini agent built to carry workplace assignments across apps for hours or days. It can keep task context between devices, coordinate specialized agents, and—in a team-coworker setup—have its own Gmail, Calendar, Drive storage, and company-directory identity. Broader availability has no announced date.
Source
👉@sysadminoff
https://4sysops.com/archives/googles-persistent-gemini-agent-gets-its-own-workspace-identity/
📰 KDE Gear 26.08.2 Released with More Improvements for Your Favorite KDE Apps
KDE Gear 26.08.2 is now available as the second maintenance update to the latest KDE Gear 26.08 open-source software suite series with more fixes for your favorite KDE apps.
🔗 Source: https://9to5linux.com/kde-gear-26-08-2-released-with-more-improvements-for-your-favorite-kde-apps
#kde #opensource
👉@sysadminoff
KDE Gear 26.08.2 is now available as the second maintenance update to the latest KDE Gear 26.08 open-source software suite series with more fixes for your favorite KDE apps.
🔗 Source: https://9to5linux.com/kde-gear-26-08-2-released-with-more-improvements-for-your-favorite-kde-apps
#kde #opensource
👉@sysadminoff
📰 Google Working To Leverage More Compiler Optimizations Within The Linux Kernel
While Linus Torvalds previously shot down plans for Profile Guided Optimizations (PGO) in the mainline Linux kernel, Google engineers are hoping still to get that out-of-tree functionality upstream. They also would like to see PGO supported for Linux kernel modules rather than just the main Linux kernel image. Additionally, they hope to see limitations overcome around AutoFDO and Propeller optimizations of kernel modules...
🔗 Source: https://www.phoronix.com/news/Google-More-Kernel-Compiler-Opt
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/Google-More-Kernel-Compiler-Opt
While Linus Torvalds previously shot down plans for Profile Guided Optimizations (PGO) in the mainline Linux kernel, Google engineers are hoping still to get that out-of-tree functionality upstream. They also would like to see PGO supported for Linux kernel modules rather than just the main Linux kernel image. Additionally, they hope to see limitations overcome around AutoFDO and Propeller optimizations of kernel modules...
🔗 Source: https://www.phoronix.com/news/Google-More-Kernel-Compiler-Opt
#kernel #linux
👉@sysadminoff
https://phoronix.com/news/Google-More-Kernel-Compiler-Opt
Phoronix
Google Working To Leverage More Compiler Optimizations Within The Linux Kernel
While Linus Torvalds previously shot down plans for Profile Guided Optimizations (PGO) in the mainline Linux kernel, Google engineers are hoping still to get that out-of-tree functionality upstream
📰 The best thing about Debian is how old all of its software is
Debian’s old software is often discussed as its biggest weakness when compared to other distros. But when I picked Debian for my own home server, I specifically chose it because of those years-old versions. I am running bare-metal Debian on an old business laptop with more than 20 stacks, and Debian is the least concerning element in the homelab, and that sounds the opposite for software this old.
🔗 Source: https://www.xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is/
#debian
👉@sysadminoff
https://xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is
Debian’s old software is often discussed as its biggest weakness when compared to other distros. But when I picked Debian for my own home server, I specifically chose it because of those years-old versions. I am running bare-metal Debian on an old business laptop with more than 20 stacks, and Debian is the least concerning element in the homelab, and that sounds the opposite for software this old.
🔗 Source: https://www.xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is/
#debian
👉@sysadminoff
https://xda-developers.com/best-thing-about-debian-how-old-all-of-its-software-is
XDA
The best thing about Debian is how old all of its software is
Old, supported, and staying.
The President of the United States of America considers anyone who still uses the term “artificial intelligence” an enemy
President Trump’s Truth Social post declares anyone who says “artificial intelligence” instead of his preferred “super intelligence” an enemy of the White House—a terminology decree apparently backed by highly accepted authority.
Source
👉@sysadminoff
https://4sysops.com/archives/the-president-of-the-united-states-of-america-considers-anyone-who-still-uses-the-term-artificial-intelligence-an-enemy/
President Trump’s Truth Social post declares anyone who says “artificial intelligence” instead of his preferred “super intelligence” an enemy of the White House—a terminology decree apparently backed by highly accepted authority.
Source
👉@sysadminoff
https://4sysops.com/archives/the-president-of-the-united-states-of-america-considers-anyone-who-still-uses-the-term-artificial-intelligence-an-enemy/
Anthropic’s OSS Scanner finds a serious curl flaw
Anthropic’s free OSS Scanner has uncovered a curl vulnerability that maintainer Daniel Stenberg describes as one of the project’s worst in several years. The finding puts a real-world result behind the service, which Anthropic recently opened to open-source maintainers for automated security reports.
Source
👉@sysadminoff
https://4sysops.com/archives/anthropics-oss-scanner-finds-a-serious-curl-flaw/
Anthropic’s free OSS Scanner has uncovered a curl vulnerability that maintainer Daniel Stenberg describes as one of the project’s worst in several years. The finding puts a real-world result behind the service, which Anthropic recently opened to open-source maintainers for automated security reports.
Source
👉@sysadminoff
https://4sysops.com/archives/anthropics-oss-scanner-finds-a-serious-curl-flaw/
The SaaSpocalypse has begun! Somebody vibe-coded every single Adobe app
The “SaaSpocalypse” is the fear that AI-generated software could disrupt subscription-based software companies. The open-source ArtCraft suite showcases what the software industry can expect in the coming months. It offers a Rust-built alternatives to Adobe apps, including PhotoCraft (Photoshop), LightCraft (Lightroom), and FilmCraft (Premiere Pro). The reviewer says the project had appeared on GitHub only a few days earlier and estimates it was about a week old. FUTC tests the three against practical image-editing and video-editing tasks on Windows. They show promise, but performance, image rendering, and advanced features vary by app.
Source
👉@sysadminoff
https://4sysops.com/archives/the-saaspocalypse-has-begun-somebody-vibe-coded-every-single-adobe-app/
The “SaaSpocalypse” is the fear that AI-generated software could disrupt subscription-based software companies. The open-source ArtCraft suite showcases what the software industry can expect in the coming months. It offers a Rust-built alternatives to Adobe apps, including PhotoCraft (Photoshop), LightCraft (Lightroom), and FilmCraft (Premiere Pro). The reviewer says the project had appeared on GitHub only a few days earlier and estimates it was about a week old. FUTC tests the three against practical image-editing and video-editing tasks on Windows. They show promise, but performance, image rendering, and advanced features vary by app.
Source
👉@sysadminoff
https://4sysops.com/archives/the-saaspocalypse-has-begun-somebody-vibe-coded-every-single-adobe-app/
The Document Foundation gets its own logo after 16 years
The Document Foundation, the non-profit steering the development of LibreOffice, has unveiled a new logo. The change means that, for the first time since its inception in 2010, TDF no longer shares the same logotype and wordmark as LibreOffice. “The Document Foundation” is now the sole wordmark, written in a different font, Inter, and a refreshed set of brand colours complement it. Unveiling the design, TDF’s Italo Vignoli made the case for a decoupling of the two brands, noting “the foundation speaks as an institution, not as a software project” whose work “extends well beyond the product” that it’s known […]
You're reading The Document Foundation gets its own logo after 16 years, a blog post from OMG! Ubuntu. Do not reproduce elsewhere without permission.
👉@sysadminoff
https://www.omgubuntu.co.uk/2026/10/document-foundation-new-logo
The Document Foundation, the non-profit steering the development of LibreOffice, has unveiled a new logo. The change means that, for the first time since its inception in 2010, TDF no longer shares the same logotype and wordmark as LibreOffice. “The Document Foundation” is now the sole wordmark, written in a different font, Inter, and a refreshed set of brand colours complement it. Unveiling the design, TDF’s Italo Vignoli made the case for a decoupling of the two brands, noting “the foundation speaks as an institution, not as a software project” whose work “extends well beyond the product” that it’s known […]
You're reading The Document Foundation gets its own logo after 16 years, a blog post from OMG! Ubuntu. Do not reproduce elsewhere without permission.
👉@sysadminoff
https://www.omgubuntu.co.uk/2026/10/document-foundation-new-logo
Cloudflare поглотила JavaScript-платформу Deno и прекратит её разработку
Компания Cloudflare купила фирму Deno Land Inc, развивающую платформу Deno. Корректирующие релизы Deno runtime и обновления с устранением уязвимостей планируют публиковать ещё год, после чего разработка Deno будет прекращена. Код Deno останется открытым и при наличии интереса сообщество сможет своими силами продолжить развитие платформы.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66432
Компания Cloudflare купила фирму Deno Land Inc, развивающую платформу Deno. Корректирующие релизы Deno runtime и обновления с устранением уязвимостей планируют публиковать ещё год, после чего разработка Deno будет прекращена. Код Deno останется открытым и при наличии интереса сообщество сможет своими силами продолжить развитие платформы.
👉@sysadminoff
https://www.opennet.ru/opennews/art.shtml?num=66432
Send email from aliases in Exchange Online
Microsoft made sending from email aliases generally available for Exchange Online on 7 October 2026, after a public preview that began in January 2022. An alias, also called a proxy address, is an extra SMTP address on the same mailbox. With the organization setting enabled, Exchange Online keeps that alias as the sender instead of rewriting outbound mail to the primary SMTP address. The setting stays off until you enable it for the tenant, and it applies only to mailboxes hosted in Exchange Online. Client, hybrid, and compliance limits still apply.
Source
👉@sysadminoff
https://4sysops.com/archives/send-email-from-aliases-in-exchange-online/
Microsoft made sending from email aliases generally available for Exchange Online on 7 October 2026, after a public preview that began in January 2022. An alias, also called a proxy address, is an extra SMTP address on the same mailbox. With the organization setting enabled, Exchange Online keeps that alias as the sender instead of rewriting outbound mail to the primary SMTP address. The setting stays off until you enable it for the tenant, and it applies only to mailboxes hosted in Exchange Online. Client, hybrid, and compliance limits still apply.
Source
👉@sysadminoff
https://4sysops.com/archives/send-email-from-aliases-in-exchange-online/
ICANN’s 1,615 new gTLD applications include 13 bids for .agent
ICANN received 1,615 applications for new generic top-level domains, with.agent drawing the most competition: 13 applicants. Brand, cryptocurrency, and AI-related names feature prominently, alongside network terms such as.dns,.vpn, and.api. The next milestone is November 17, 2026, when ICANN is set to publish the strings proceeding through the program.
Source
👉@sysadminoff
https://4sysops.com/archives/icanns-1615-new-gtld-applications-include-13-bids-for-agent/
ICANN received 1,615 applications for new generic top-level domains, with.agent drawing the most competition: 13 applicants. Brand, cryptocurrency, and AI-related names feature prominently, alongside network terms such as.dns,.vpn, and.api. The next milestone is November 17, 2026, when ICANN is set to publish the strings proceeding through the program.
Source
👉@sysadminoff
https://4sysops.com/archives/icanns-1615-new-gtld-applications-include-13-bids-for-agent/