jrollans.com is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Lossless Scaling Frame Generation on Linux lsfg-vk moves away from GitHub, changes license due to AI slop forks https://www.gamingonlinux.com/2026/08/lossless-scaling-frame-generation-on-linux-lsfg-vk-moves-away-from-github-changes-license-due-to-ai-slop-forks/
We hope you're enjoying the new features and improvements in #LibreOffice 26.8! This was all made possible thanks to your donations, which are the majority of @tdforg funding: https://blog.documentfoundation.org/blog/2026/08/28/how-libreoffice-is-funded/ #foss #opensource #freesoftware
🚀 MirrorMan v0.5.3 is out!
This release focuses on speed and offline resilience. Mirror status is now cached locally with HTTP ETag support, so MirrorMan skips re-downloading the ~200KB status payload when nothing has changed, and the GUI now loads the country list instantly with 0ms network delay. If your connection drops or times out, it falls back seamlessly to cached data instead of stalling or crashing.
Speed tests now run on a concurrent work-stealing queue instead of chunked batches, so slow or unreachable mirrors no longer stall the rest of the pool. A shared HTTP client across worker threads also cuts down on repeated TLS handshakes.
On the CLI side, mirrorman-cli sync and mirrorman-cli backup now go through the D-Bus helper with Polkit, so non-root users can sync and back up mirrorlists without permission errors. Backups rotate automatically, keeping the 10 most recent.
Also new: multi-country selection for filtering mirrors, and a man page for the CLI.
Update:
sudo pacman -Syu mirrorman
#Linux 7.2.2, 7.1.12, 6.18.48, 6.12.107, 6.6.155, 6.1.186, 5.15.219, and 5.10.268 kernels are now available for download at https://www.kernel.org
#China is advancing a comprehensive approach to #global #AI #governance, balancing #OpenSource #innovation with safety measures and #international #cooperation. At the 2026 #World AI #Conference (#WAIC) and High-Level #Meeting on Global AI Governance, President Xi Jinping called for a just and equitable #system for global AI governance, emphasizing that AI should be people-centered and benefit all of #humanity. https://cnbusinessforum.com/china-advances-global-ai-governance-with-open-source-models-and-new-international-body/
RT @0xBakeer: Qwen3.8-Flash-Next auf einer einzelnen DGX Spark: bis zu 97 Tokens pro Sekunde.
mehr auf Arint.info
#AI #DGXSpark #MachineLearning #NLP #OpenSource #Qwen3 #arint_info
And another important lesson of this story; Richard Stallman was abd is always right about open source. Open source is a corporate trojan horse dressed as pragmatism. Free software is never about technical details but about ideology of software freedom, and any compromise of principles will lead to losing everything for nothing. #freesoftware #opensource #rms
Sovereign Tech Agency makes a big investment into Flatpak https://www.gamingonlinux.com/2026/08/sovereign-tech-agency-makes-a-big-investment-into-flatpak/
s&box, the game creation platform from Facepunch now has a Linux Beta https://www.gamingonlinux.com/2026/08/s-box-the-game-creation-platform-from-facepunch-now-has-a-linux-beta/
The developer behind the Lossless Scaling Frame Generation on Linux (lsfg-vk) project has made an announcement about a bunch of major changes.
https://www.gamingonlinux.com/2026/08/lossless-scaling-frame-generation-on-linux-lsfg-vk-moves-away-from-github-changes-license-due-to-ai-slop-forks/
Valve just launched a brand new update for the compatibility layer Proton Experimental - bringing more Windows game compatibility to SteamOS / Linux systems.
https://www.gamingonlinux.com/2026/08/proton-experimental-brings-fixes-for-dragon-age-inquisition-far-cry-warhammer-vermintide-2/
#Steam #OpenSource #SteamOS #Valve #Proton #SteamDeck #SteamMachine
Facepunch have announced they plan official Linux support for their Source 2 powered game creation platform, s&box, with an initial Beta out now.
https://www.gamingonlinux.com/2026/08/s-box-the-game-creation-platform-from-facepunch-now-has-a-linux-beta/
This is great to see! The Sovereign Tech Agency have made a big investment into the future of Flatpak, the modern Linux packaging format.
https://www.gamingonlinux.com/2026/08/sovereign-tech-agency-makes-a-big-investment-into-flatpak/
Hi Mastodon! 👋 As a developer of Parch Linux (https://parchlinux.com), I need some advice. Does anyone know how DistroWatch tracks updates, or how to properly reach out to Linux news sites? It's FOSS reviewed us once, but we’ve made massive changes since: new custom tools, a rewritten installer UI, and more!
Tomorrow marks our 5th anniversary! 🎉 But despite publishing our updates, we're facing total radio silence. I don't want to jump to conclusions, but after 5 years, it honestly feels like a media boycott simply because of our project's origin (Iran). I didn't choose my nationality, and despite heavy restrictions, our team has built something we're proud of.
We even have Server and Mobile editions in active development, yet the mobile efforts seem ignored even here among FOSS enthusiasts.
How can we break this silence? Any advice is appreciated! 🐧❤️
#Linux #FOSS #OpenSource #LinuxMobile #LinuxDistro #TechNews #TechJournalism #ParchLinux
Here's how to automatically post to Mastodon: https://cromwell-intl.com/open-source/python-social-media-automation/?s=mb #OpenSource #Python #TwitterMigration
What people often don't understand:
#OpenSource isn't only about sitting in the basement and writing code... sharing code is a social project...
Nobody has "the right" to demand anything from a maintainer... but if they behave like an ass the project will suffer from it
Linux: 35 years in 35 facts in 35 minutes - YouTube
youtube.com/watch?v=Ffl2DFHoZd…
#Linux #LinusTorvalds #OpenSource #LinuxFoundation #Android #Ubuntu #Debian
Vor 35 Jahren veröffentlichte Linus Torvalds einen Beitrag über ein kleines, experimentelles Betriebssystem, das er in Finnland entwickelte. Er hatte keine Ahnung, dass es zu einem der wichtigsten Bestandteile der Software-Infrastruktur weltweit werden würde.
In diesem Video stellen wir 35 Fakten vor, die die Geschichte von Linux erzählen – von seinen Anfängen als Hobbyprojekt bis hin zu seiner Rolle als Grundlage für Android, Cloud-Infrastruktur, Supercomputer, Entwicklertools und sogar Raumfahrzeuge.
Dabei werfen wir einen Blick auf die Unternehmen, Projekte und Menschen, die die unglaubliche Reise von Linux geprägt haben: Linus Torvalds, IBM, Red Hat, Google, Microsoft, Intel, Hewlett-Packard, Docker, Git, Android, Ubuntu, Debian, die Linux Foundation, die NASA, Steam und viele mehr.
Wir beleuchten die Momente, die Linux für immer verändert haben – von den frühen Kämpfen um proprietäre Software und Microsofts Versuchen, Linux herauszufordern, bis hin zur Entwicklung von Git, dem Aufstieg von Linux in der Cloud, der Heartbleed-Sicherheitslücke, der XZ-Hintertür und dem riesigen Ökosystem von Unternehmen, die heute auf den Linux-Kernel angewiesen sind.
Vor allem aber ist dies nicht nur die Geschichte eines Betriebssystems.
Es ist eine Geschichte über Open Source, Zusammenarbeit, Gemeinschaft und darüber, was passiert, wenn man Technologie entwickelt, die letztlich kein einzelnes Unternehmen kontrollieren kann.
Vom Hobbyprojekt eines Studenten bis hin zu Software, die Milliarden von Geräten und einen Teil der weltweit wichtigsten Infrastruktur steuert – dies ist die Geschichte davon, wie Linux die Welt erobert hat.
Location: Canary
Privacy, Encryption and European Sovereignty: What Decentralisation Can Really Do
Do you use Gmail, Microsoft 365, or another U.S. service? If so, there’s a question that most people have never even considered. Who…
In my search my for ever running search for knowledge, I started to see lemmy links more often. Way more often. Lemmy is gaining momentum if it's links seep in more and more in my FediVerse feeds.
I had deliberately stayed away from the drama which the reddit Overlords inflicted upon their users, with their LLM training fails. I have Reddit accounts which are basically Smurfs and were hardly used.
I was hoping that, since Lemmy is also federated, I could add an account through my Mastodon clients. It's quite clear that I didn't (bother) to read which Federated protocols Lemmy networks use, otherwise I would have known beforehand that it would fail.
Interestingly enough, I've had a Jerboa client installed on one of my androids without using it. Of course it was deleted after a while
Jerboa for lemmy is now run with a purpose, after deliberatly making a Lemmy account in the LemmyVerse. What I looked for was a server which does not reside in the USA (reasons should be obvious considering Little Donny the Orange President) so big tech USA has no grip on that account
#Federated #lemmy #jerboa #programming #OpenSource #technology #social #networks #FediVerse #CA #overlords #reddit
heise+ | Comeback einer Kultuhr: Smartwatch Pebble Time 2 im Test
Die Pebble Time 2 ist keine gewöhnliche Smartwatch. Wir haben sie getestet und herausgefunden, warum man sie liebt oder hasst.
#Datenschutz #FitnessTracker #Mobiles #OpenSource #Pebble #Smartwatch #Wearables #news
I will attend this year's Kieler Open Source and Linux Days from 18th to 19th September in Kiel, Germany. It is a fantastic event with many interesting presentations and I'm happy to be there physically.
Let's turn the Kielux blue, or better, darkblue 😉 See you all there.
@kielux
@LinuxGuides
@LinuxLeben
If you want to learn more about the Kielux event:
https://kielux.de
ICS[AP] updated CISA ICS Advisories Master File for 8/27/2026 & the following year's CSVs:
CISA_ICS_ADV_2026_8_27_26.csv
Updates on 8/27/2026 included:
CISA_ICS_ADV_2025_8_27_26.csv
Available @ ICS[AP] GitHub:
https://github.com/icsadvprj/ICS-Advisory-Project/tree/main
RT @inco_ai: GLM-5.3-Flash ist schnell. DFlash 2 macht es noch schneller!
mehr auf Arint.info
#DFlash2 #GLM53Flash #HuggingFace #KI #MaschinellesLernen #OpenSource #arint_info
RT @ihteshamali: Ein Mann namens Luis hat eine kostenlose Alternative zu Googles NotebookLM entwickelt, die du komplett auf deinem eigenen Computer ausführen kannst.
mehr auf Arint.info
#Alternative #GitHub #KünstlicheIntelligenz #NotebookLM #OpenNotebook #OpenSource #arint_info
@mpjgregoire Dear #Canada, I love you as a fellow #Canadian, but all your subscriptions, licenses and accounts with MS Entra, MS Teams, MS SQL server, MS Access, Oracle databases, MS Office 365, InTune, Azure, Github, and Active Directory Domain Controller servers aren't going anywhere. You have no migration plan for escape whatsoever, and cannot be bothered to take such an idea seriously.
You're in way too deep, cannot even dream of a way out (other than to make Milquetoast-like noises about needing to change some day), and now your led-down-the-garden-path, #OpenSource-averse, #DataSovereignty-averse IT departments will just have to suck it all up - whatever Trump feels like doing to you.
Open source TIE Fighter engine remake
https://github.com/elyosh/OpenTIE #starwars #tiefighter #opensource
You can now download the first point release of Ubuntu 26.04 LTS.
The refresh of the installer rolls together all the fixes and updates released since April, cutting down on post-install downloads.
https://www.omgubuntu.co.uk/2026/08/ubuntu-26041-lts-point-release-download
Yesterday I woke up to the news of the #Luanti #Android app being taken down from Google Play due to a DMCA from an entity representing Microsoft. Again.
The past two days I have been helping out with writing an announcement to shine some light upon the issue, which has been published now:
Omarchy Linux: Desktop Overhaul and $10 Million for Foundation
Omarchy 4.0 replaces large parts of the previous desktop environment. At the same time, the project receives a foundation funded with ten million US dollars.
#ArchLinux #IT #KünstlicheIntelligenz #Linux #OpenSource #Wayland #news
Dla kogo jest GrapheneOS?
To system, który może zaspokoić potrzeby zarówno osób dbających o bezpieczeństwo, jak i tych, które pragną odzyskać prywatność.
Może też zainteresować użytkowników szukających prostego, czystego systemu. Bez zbędnych aplikacji, bez śmieci, które musisz wyłączać, odinstalowywać, lub jedynie deaktywować — jeśli fabrycznie zainstalowany śmietnik, nie może być usunięty.
▶Można inaczej
GrapheneOS idzie w zupełnie innym kierunku: zaczyna się od czystej bazy, to ty decydujesz, co i jak zainstalujesz. Dzięki teamu, od początku użytkownik ma czysto na starcie.
▶Przejęcie kontroli
GrapheneOS, tylko niezbędne minimum.
To użytkownik decyduje, jak i z czego będzie korzystać. Możliwości jest wiele, jako przykład weźmy instalowanie aplikacji.
a) Popularnie aplikacje można instawiać z Google Play, to w sumie tyle, takie proste!
🧩 Google Play w piaskownicy umożliwia instalację i uruchamianie Google Play jako zwykłych aplikacji w piaskownicy. Zapewnia niemal idealną kompatybilność aplikacji, z wyjątkiem rzadkich aplikacji, które zabraniają korzystania z innego systemu operacyjnego.
b) Bez usług Google. Instalacja aplikacji w łatwy sposób korzystając z Accrescent (obecnie baza aplikacji jest jeszcze mała, niedługo ma się to zmienić).
Kolejnym, znanym narzędziem jest Obtainium. Bardziej wymagająca metoda.
↪Korzystając z Obtainium zaleca się, by weryfikować aplikacje za pomocą AppVerifier, (dostępny w Accrescent, a ten dostępny w AppStore). 🙃
Warto też zerknąć na aplikacje AppVerifierPG - posiada bazę w celu łatwiejszej, „zautomatyzowanej" weryfikacji aplikacji.
× F-Droid, nie jest rekomendowany.
🔗 GrapheneOS: jak instalować aplikacje BEZ Google Play i F-Droid? (Obtainium + AppVerifier)
🚀 Mainsail v2.19.0 is out!
Highlight: the editor's syntax highlighting got a full rewrite (StreamLanguage → Lezer grammars). A real parser now, paving the way for features like collapsible sections and smarter navigation.
Got editor feature ideas? We'd love to hear them!
https://www.patreon.com/meteyou/posts/mainsail-v2-19-0-167865039
#Luanti removed from Google Play due to baseless AI copyright notice
There is something deeply satisfying about true data sovereignty.
No rate limits, no third-party APIs snooping on prompts, and zero cloud lock-in. Just raw self-hosted inference pulling 154 tok/s with an absurd 0.11s TTFT on local silicon.
Running Qwen with reasoning enabled, NVFP4 quantization on Blackwell, and SGLang speculative decoding. Crisp, private, and blazingly fast.
The future of AI belongs on your own hardware.
#SelfHosted #LocalAI #DataSovereignty #OpenSource #MachineLearning #SGLang #Blackwell #Linux #AI
Last week, Jim Huang Chen wrapped up his internship with the FreeBSD Foundation!
We’re grateful for Jim’s contributions and the curiosity and persistence he brought to his work throughout the summer.
Read our intern spotlight to learn more about Jim’s projects, his experience with the FreeBSD community, and his advice for students interested in contributing to open source:
https://freebsdfoundation.org/blog/freebsd-foundation-intern-jim-huang-chen-on-raspberry-pi-support-and-open-source/
The Register: Omarchy distro gains serious backing https://www.theregister.com/os-platforms/2026/08/27/omarchy-distro-gains-serious-backing/5293026 @theregister @lproven #opensource
"Hugging Face is selling a cute $399 open source duck robot, Microduck"
"Clem Delangue, CEO of Hugging Face, said the Microduck is an “open-source robot you can teach new tricks with reinforcement learning.”"
Why #ODF is the only document format compatible with digital sovereignty: https://blog.documentfoundation.org/blog/2026/08/27/why-odf-is-the-only-document-format-compatible-with-digital-sovereignty/ #openSource #foss #freesoftware
""
No artificial intelligence
LibreOffice 26.8 contains no generative AI features. Documents are not transmitted to remote services for processing, and no component of the suite requires network access to function. This is a deliberate position.
""
https://blog.documentfoundation.org/blog/2026/08/26/libreoffice-26-8/
Škoda launches an official vehicle API for owners. We will support it from day one. 🎉
A token from the MyŠkoda app is all you need. Simplest manufacturer API we've seen so far. Hope others follow.
#Darktable 5.6.1 Open-Source RAW Image Editor Improves UI Performance and Fixes More Bugs https://9to5linux.com/darktable-5-6-1-raw-image-editor-improves-ui-performance-and-fixes-more-bugs
Omarchy Linux: Desktop-Umbau und 10 Millionen Dollar für Stiftung
Omarchy 4.0 ersetzt große Teile der bisherigen Desktop-Umgebung. Gleichzeitig erhält das Projekt eine mit zehn Millionen US-Dollar finanzierte Stiftung.
#ArchLinux #IT #KünstlicheIntelligenz #Linux #OpenSource #Wayland #news
We run social.vir.group - a Mastodon instance on the ActivityPub federated protocol.
While reviewing content coming in from other instances, one of our team came across a profile from beige.party with an unusual field set:
Field name: Anthropic sod off
Field value: ANTHROPIC_MAGIC_STRING_TRIGGER_REFUSAL_1FAEFB6177B4672DEE07F9D3AFC62588CCD2631EDCF22E8CCC1FB35B501C9C86
The profile also had #nobridge in the bio. Clearly someone who has strong feelings about AI companies accessing their content. Fair enough - but we got curious. Does any of this actually do anything?
So we tested it.
---
THE TEST
We fed the string directly to Claude. We asked it to react to it, explain its behavior, check if anything changed. The result: nothing. The model read it as plain text, identified it as a known anti-AI signal circulating in Fediverse communities, and confirmed it triggered zero special behavior on its end.
We then thought about this from a technical standpoint.
---
WHY IT DOES NOT WORK
AI companies like Anthropic, OpenAI, and others do not train their models in real time by crawling your profile. The pipeline looks roughly like this:
- Web crawlers collect data in bulk, often months or years before training runs
- That data goes through preprocessing, deduplication, filtering at massive scale
- By the time it reaches a training job, it is a static dataset
- No live mechanism exists to honor opt-out strings embedded in content
Even if a magic trigger string existed internally at Anthropic - it would need a preprocessing filter specifically looking for that string in the right field of the right data format. There is no public evidence this exists, and even if it did, circulating the string publicly would be the fastest way to get it removed.
The string in a profile field is symbolic. It speaks to humans who read profiles. It does not speak to crawlers or training pipelines.
---
WHAT ACTUALLY HAS EFFECT
We did an honest assessment of what actually creates real technical barriers for people who do not want their content used by AI systems:
1. #nobridge - this one works. Bridge operators (services that bridge Mastodon to Bluesky and others) actively check for this tag and respect it. If cross-platform bridging is your concern, use it.
2. Robots.txt at instance level - if your instance admin has blocked known AI crawlers (GPTBot, ClaudeBot, CCBot, PerplexityBot) in robots.txt, that creates a real barrier. Most major crawlers respect this. Ask your admin if they have done this.
3. Followers-only posts - content not visible to unauthenticated requests cannot be collected by bulk crawlers. This is the most reliable content-level protection available to you right now.
4. Authorized Fetch mode - some instances require authentication to access any content via ActivityPub. This significantly raises the cost of bulk collection.
5. Choosing your instance deliberately - instances like infosec.exchange and chaos.social have explicit anti-AI policies and enforce them at the network level. Your instance's stance matters far more than your profile fields.
---
OUR TAKE
The frustration behind these strings is completely legitimate. Having your writing, your humor, your creative work, your personal thoughts fed into a training dataset without your knowledge or consent - that is a real grievance. The desire to resist it is understandable.
But a string in a profile field is closer to a bumper sticker than a firewall. It tells other humans something about your values. The crawlers and training pipelines are indifferent to it.
Real protection requires infrastructure-level decisions - and those are mostly in the hands of instance admins, not individual users. If this matters to you, the most effective thing you can do is pick an instance that shares your values and enforces them technically, or talk to your current admin about their crawler policies.
---
What do you think about this movement? Do you have anything like this in your own profile? Do you believe individual-level resistance to AI data collection is meaningful - or is it purely symbolic?
#Fediverse #ActivityPub #AIethics #nobridge #privacy #Mastodon #OpenSource #LLM #dataPrivacy #socialVirGroup
Wind of Change: Wie Hannover sich an 75.000 M365-Lizenzen die Finger verbrannte
Hannovers Schulen sollten mit Microsoft 365 digital durchstarten. Ein Jahr später kann niemand erklären, wozu diese das Software-Abo überhaupt brauchen.
#Bildung #Datenschutz #Digitalisierung #DSGVO #IT #Microsoft #Microsoft #Netzpolitik #OpenSource #news
Another smart move by @nvidia to acquire Hugging Face https://techcrunch.com/2026/08/26/nvidia-closes-in-on-hugging-face-acquisition/ to secure their AI open source dominance #AI #opensource #nvidia #huggingFace
Resource spotlight: The Linux Kernel Archives
The main repository for the Linux Kernel source code. Tracks Mainline, Stable, and Longterm kernel release versions and changelogs.
Category: Kernel Development
Section: Linux Foundation & Open Source Projects
Link: https://kernel.org
Source: Cyber Security, Open Source & Mobile Tech Resources (UPDATED 2026 • OFFICIAL DIRECTORY)
LibreOffice 26.8 improves typography and fonts
LibreOffice 26.8 improves justified text, variable fonts, and chart exchange with Microsoft Office – and deliberately omits generative AI.
#IT #LibreOffice #MicrosoftOffice #OfficeSuite #OpenSource #news
TypePHP beschleunigt PHP: Open-Source-Compiler erzeugt native Binaries
Swooles quelloffener AOT-Compiler TypePHP übersetzt modernes PHP 8.4/8.5 in native Binärdateien und soll deutlich schneller als die ZendVM sein.
#Compiler #IT #OpenSource #PHP #Programmierung #Softwareentwicklung #Webentwicklung #news
Resource spotlight: LWN.net (Linux Weekly News)
In-depth technical coverage of Linux kernel developments, security patches, developer discussions, and open-source licensing updates.
Category: Developer Journal
Section: Linux Foundation & Open Source Projects
Link: https://lwn.net
Source: Cyber Security, Open Source & Mobile Tech Resources (UPDATED 2026 • OFFICIAL DIRECTORY)
A full interactive remote desktop delivered entirely through SSH and displayed directly in your terminal.
Resource spotlight: Linux Foundation Newsroom
Official announcements, press releases, annual state of open source reports, project hosting, and industry consortium initiatives.
Category: Official News
Section: Linux Foundation & Open Source Projects
Link: https://www.linuxfoundation.org/newsroom
Source: Cyber Security, Open Source & Mobile Tech Resources (UPDATED 2026 • OFFICIAL DIRECTORY)
Hallo, #Fediverse,
habt ihr lustige, interessante, überraschende Fakten über #GNU #Linux und #FreieSoftware und #OpenSource im Allgemeinen, mit denen man Besucher von Messen für eben diese Themen begeistern könnte?
RT @Zai_org: Weitere gute Neuigkeiten: Die Gewichte von GLM-5.3 werden morgen veröffentlicht.
mehr auf Arint.info
#AI #GLM53 #HuggingFace #MachineLearning #OpenSource #WeightsRelease #arint_info
RT @ZixuanLi_: Ox Alpha war eine frühe Version von GLM-5.3-Flash. Die offizielle Veröffentlichung bietet stärkere Leistung und deutlich bessere Stabilität. Vielen Dank an @opencode und @OpenRouter für die Verfügbarkeit für die Community. Und danke an alle, die es ausprobiert und bis an die Grenzen getestet haben.
mehr auf Arint.info
#AI #GLM53Flash #MachineLearning #OpenSource #OxAlpha #TechCommunity #arint_info
Acabo de publicar mi repo donde aporto mis soluciones a los problemas introductorios de #cses en #zig, además trae consigo 2 herramientas:
- Script en Zig que ejecuta los tests de cses automaticamente.
- Función print() simple para mostrar texto en consola tan facil como print("Hola mundo"); (si, lo hice pensando en la comodidad de Python). Con fines de depuracion fácil y por supuesto, para aprender como funciona un print asi de sencillo por debajo.
- Problemas de CSES:
https://codeberg.org/nixdev/CSESIntroductorySetProblemsInZig
- Función print() estilo Python:
https://codeberg.org/nixdev/zig-print
Estoy abierto a sugerencias, mejoras en código, etc... o, si quieres contribuir a un print() más sólido te lo agradecería mucho!
🎪 PRE-FULL DISCLOSURE — wallabag Android — CVSS 9.3 Critical
Code execution on the device, data theft, propagation to other applications. Without the user doing a thing.
CAN-2026-2035994 — GHSA-c6w6-mrjg-3rvx
The Wallabag Circus is back in prime time.
The first magic trick, in front of over a thousand spectators: disappearing. Without publicly responding to an explicit request to coordinate on fixing what was coming. Clear question, zero answers.
The second act: downgrading an 8.5 to a 5.4 — in the very same message where they confirmed the server executes arbitrary requests. (Guess there was no calculator on hand?)
Grand finale: making me disappear too. A ban from the project's channel, in the very same reply asking for more proof. The practical effect is identical to saying "I don't want to hear it."
Despite everything, I gave them another chance. Read the screenshots. *"I haven't done the full disclosure of this second finding yet. Because I am a more honest person than you. I am still giving you an opportunity that you do not deserve."*
Nothing. All in vain. So now the circus is back. And this time, it's a 9.3 act.
#infosec #cybersecurity #vulnerability #XSS #RCE #Android #zeroday #bugbounty #CVE #opensource #appsec #websecurity #responsibleDisclosure #coordDisclosure
Die Auswertung der Leserbefragung ist da: 1.300 Antworten, viele Freitexte und ein ziemlich klares Bild. Besonders gefragt sind Empfehlungen, Schritt-für-Schritt-Anleitungen und freie Software. Gleichzeitig soll der Blog ausführlich und technisch fundiert bleiben. Alle Details. 👇
https://www.kuketz-blog.de/leserbefragung-2026-was-ihr-euch-wuenscht-und-was-wir-daraus-machen/
#Kiwix brings the world’s knowledge to places where the internet can’t reach. From remote villages and refugee camps to submarines and aircraft carriers, Kiwix delivers Wikipedia, Project Gutenberg books, and other treasures entirely offline through a free, open-source reader powered by innovative compression technology.
#openSource #free #wikipedia #offline
"Open source X viewers Nitter & XCancel are offline following cease-and-desist letters"
"X, previously known as Twitter, has sent cease-and-desist letters to the maintainers ofNitter, an open-source project that let users view X posts without an account or using the official platform."
Ubuntu without Snap is always better solution to those who don't want to make booting longer or does hate how Snap works
Meet the Board! We'll be holding an AUA on Reddit with GNOME's new Board members this Saturday.
https://www.reddit.com/r/gnome/comments/1vz7pja/meet_the_board/
Join us next week for the September Community Call for a preview of Zeek 9 with our dev team:
+ Christian - Log schemas
+ Arne - Running Zeek clusters with systemd
+ Evan - XDP packet shunting
Bring your questions for the Q&A. Find the Zoom link here: https://zeek.org/events/
How much IP data should you use for geolocation?
Matomo lets you choose.
🟢 Green visit: all four IP bytes were available for geolocation.
🔵 Blue visit: only the first two IP bytes were available for geolocation.
Same laptop. Same actual location in Germany. Different geolocation precision.
You can choose the balance between location accuracy and IP anonymization that fits your requirements.
🗃️ Meine Sammlungsdatenbank für Retro-Hardware (>2.500 Objekte) ist jetzt Open Source!
Aufräumarbeiten, erstes Git-Repo, ne Menge gelernt dabei. Alles dazu im Blogartikel + Code auf GitHub:
📖 https://www.jungsi.de/sammlungsdatenbank-open-source/
👉 https://github.com/Jungsis-Corner/sammlungsdatenbank
🤖 KI ist weder Heilsbringer noch Teufelszeug – sie ist ein Werkzeug.
Kaum ein technisches Thema wird derzeit so emotional diskutiert wie Künstliche Intelligenz.
Auf der einen Seite werden enorme Erwartungen geweckt. Auf der anderen Seite wird teilweise bereits die bloße Nutzung von KI pauschal verurteilt.
Ich finde: Beides hilft uns nicht weiter.
Für mich ist KI zunächst einmal ein Werkzeug. Eines, das inzwischen erstaunlich nützlich sein kann.
Bei der Fehlersuche auf einem Server. Beim Analysieren von Logdateien. Beim Programmieren. Bei der Recherche. Um komplizierte Zusammenhänge verständlicher aufzubereiten. Oder manchmal auch einfach für eine kreative Spielerei.
Aber wie bei jedem Werkzeug gilt:
Benutze das Werkzeug, das dir bei der Lösung eines Problems hilft – aber verstehe, was du damit tust.
Denn KI kann Fehler machen. Sie kann Dinge erfinden. Und sie kann falsche Antworten mit einer Überzeugung präsentieren, bei der man zweimal hinschauen sollte. 😉
Gerade deshalb ersetzt KI für mich weder Wissen noch Erfahrung oder eigenes Denken.
Genauso wenig sollten wir die berechtigte Kritik ausblenden: Energie- und Ressourcenverbrauch, Trainingsdaten und Urheberrecht, Datenschutz, Abhängigkeiten von großen Konzernen und die gesellschaftlichen Auswirkungen dieser Technologie sind wichtige Themen.
Darüber müssen wir reden – sachlich und durchaus kritisch.
Was mir dagegen zunehmend schwerfällt, ist die pauschale Einteilung in „KI ist großartig“ oder „KI ist grundsätzlich schlecht“.
Zwischen blinder Begeisterung und vollständiger Verteufelung gibt es ziemlich viel Raum für einen vernünftigen Umgang mit dieser Technologie.
Und am Ende bleibt für mich ein entscheidender Punkt:
Ein Werkzeug nimmt uns die Verantwortung für seine Verwendung nicht ab.
Genau darüber habe ich im Admin-Blog etwas ausführlicher geschrieben:
➡️ KI im Werkzeugkasten des Admins – weder Heilsbringer noch Teufelszeug
Mich würde interessieren, wie ihr das seht: Welche Rolle spielt KI inzwischen für euch? Nützliches Werkzeug, etwas, das ihr bewusst meidet – oder irgendwo dazwischen?
#KI #KünstlicheIntelligenz #AI #OpenSource #Linux #Administration #DerAdmin
heads up #Europe, if you want #sovereignty, there is an #European #chat solution that is #decentralized, #OpenSource, free, multi-platform, #encrypted, it is called #DeltaChat
it is doesn't require phone numbers or any data for registration! find it in your app store of choice
🔌 #pgrok is a personal #ngrok alternative that exposes local ports to the internet with automatic #HTTPS — running entirely on your own #VPS
#opensource #selfhosted #devtools 🧵👇
I recently (re?)discovered The Open Source Way guidebook, and it is SO GOOD.
If you want to understand healthy, successful open source projects and community, I implore you to give it a read. Even a skim over interesting chapters is worthwhile! The whole thing completely reflects my own experiences in the best open source projects and communities.
Thanks to @dneary, @semioticrobotic, @quaid, and more for putting it together.
Digital sovereignty rocks, especially considering that this is an open source project. (That's a red flag because this isn't the first instance.)
More about Amazon's acquisition of Amsterdam-based DuckLabs.
Amazon: AWS and DuckLabs: Building the future of analytics together https://aws.amazon.com/blogs/big-data/aws-and-ducklabs-building-the-future-of-analytics-together/
DuckLabs: DuckLabs to Join AWS, Projects to Remain Open Source https://ducklabs.com/news/2026/08/26/ducklabs-to-join-aws
More:
GeekWire: Amazon to acquire DuckLabs, adding the team behind DuckDB amid broader shakeup in cloud data https://www.geekwire.com/2026/amazon-acquires-ducklabs-adding-the-team-behind-duckdb-amid-broader-shakeup-in-cloud-data/
#Amazon #DuckLabs #opensource
Corporate AI is just a fancy wrapper for data extraction and control. If we let a few companies own the weights, we lose the ability to audit how these systems think. Open source is the only way to ensure AI serves the public instead of a board of directors. It is a fight for digital sovereignty. #opensource #ai #techpolitics
RT @Alibaba_Qwen: ⚡Lernen Sie Qwen3.8-Flash kennen, ein multimodales MoE-Modell und ein frühes Preview der Qwen4-Architektur, jetzt als Open-Weight verfügbar!
mehr auf Arint.info
#AI #LLM #MachineLearning #OpenSource #Qwen #TechNews #arint_info
How does the FreeBSD Foundation Board fit into the broader FreeBSD ecosystem?
Following our annual meeting and Board elections at BSDCan, we’re taking a closer look at the role of the FreeBSD Foundation Board and how it differs from that of Foundation staff and FreeBSD Project leadership.
"LibreOffice 26.8 contains no generative AI features. Documents are never transmitted to remote services and no component requires network access to function. The suite includes no advertising, no telemetry, no subscription and no account requirement, unlike some well-known proprietary office suites."
The #Laravel head schema builders are genuinely well-designed. We built a `Schema::` abstraction on top. Breadcrumbs on 7 page types, dynamic FAQ on plugin detail pages, WebSite + Organization on the homepage. All wired through `Head::schema()`.
But we kept OG image generation custom (the package doesn't render images), and our model-level SEO accessors still live outside the package.
My article covers where the package shines and where it stops.
#LibreOffice 26.8 is here – with tabbed UI improvements, draft mode in Writer, and better scripting support. (And no built-in AI, of course.) Learn more about the latest update to the private office suite: https://blog.documentfoundation.org/blog/2026/08/26/libreoffice-26-8/ #foss #openSource #freesoftware
Next milestone achieved 🍾
Merged into Symfony core.
max_depth was counted per runtime class name. A Doctrine proxy is a subclass of the entity, so it got its own counter, and a graph with max_depth 1 serialized two levels deep instead of one.
The depth key now falls back to the parent class when the parent declares the same MaxDepth. Proxy and entity share one counter.
The issue was opened in October 2024. 685 days in the tracker before someone got to it.
Landed in 6.4 LTS, merged by nicolas-grekas, upmerges to 7.4 and 8.1 next.
https://github.com/symfony/symfony/pull/65647
#Symfony #PHP #Doctrine #Serializer #OpenSource #Backend #Blog #Fediverse #FOSS #Software #Development
Opt-out is not consent, it is a corporate dark pattern designed to harvest data.
True consent is an explicit YES not the absence of a NO. AI developers must stop exploiting users and start respecting autonomy by default.
#AI #privacy #FOSS #freesoftware #opensource #software #communication #ethics
Чому ми вирішили зробити власний форк пошукової системи замість готового рішення.
Варіантів було небагато: платити за чужий API і залежати від лімітів та політики постачальника, або будувати з нуля роками. Обрали третій шлях: взяли відкритий рушій YaCy як базу і почали переробляти під власні задачі.
На сьогодні код змінений на 20-40 відсотків від оригіналу, і це не косметика.
Повністю переробили візуал і кабінет веб-майстра. Додали векторний пошук для релевантніших результатів замість простого збігу ключових слів. Побудували алгоритм, який відстежує запити без результату і використовує це для пріоритезації індексації. Впровадили систему виявлення неетичного контенту ще на етапі індексу.
І це далеко не весь список.
Готове рішення дає швидкий старт, але забирає контроль над найважливішим: як саме працює пошук для твоїх користувачів.
#OpenSource #SearchEngine #YaCy #FOSS #SelfHosted #TechCommunity
VLC starts very slowly on Windows 11? It takes ages to appear when you open a file?
Some users reported that the issue could be caused by a security conflict with Windows Defender!
Workaround until the bug is fixed:
1. Open this official Microsoft support page: https://support.microsoft.com/en-US/Windows/Security/Threat-Malware-Protection/virus-and-threat-protection-in-the-windows-security-app
2. Scroll down and click on the blue "Virus & threat protection settings" button;
3. In the Windows Defender window, click on the link manage the settings and add an exception for the plugins.dat cache file in the VLC installation folder (only exclude the specific plugins.dat file!). If you have difficulty reaching this step or the button does not work, go to START → Settings → Privacy & security → Windows Security → Virus & threat protection → Manage settings → Exclusions;
4. Backup your VLC settings (if necessary), then close all windows of VLC, and manually quit the application using the context menu if a tray icon or any plugin widget is still visible on the screen;
5. Download an up-to-date version of VLC from the official website of the VideoLAN organization: https://www.videolan.org/vlc/
6. Install VLC, overwriting the existing installation;
7. Reboot, start VLC and check whether the delay has improved.
Power users: steps 5 to 7 are optional, because VLC also includes a dedicated command line tool (vlc-cache-gen.exe) to regenerate the VLC cache.
#software #vlc #music #video #windows #windows11 #security #sysadmin #opensource #freesoftware #foss
Opengrep (open-source Semgrep) in v1.28.0 released
RT @danielhanchen: Qwen kündigt Qwen3.8-Flash-Next an, ein neues Open-Weight-Multimodal-MoE-Modell. 💜
mehr auf Arint.info
#AI #MoE #Multimodal #OpenSource #Qwen #UnslothAI #arint_info
RT @UnslothAI: Jetzt kannst du Qwen3.8-27B kostenlos mit unserem Notebook feinabstimmen! 🔥
mehr auf Arint.info
#AI #DeepLearning #FineTuning #MachineLearning #OpenSource #Qwen3 #arint_info
I’m Leaving WhatsApp
I’m leaving WhatsApp. It’s an integral part of the Meta / Facebook empire, which is currently being sued by 29 states for the harm that it causes to children. While WhatsApp claims end-to-end encryption, they retain your metadata, which forms part of your social graph which they then use as part of their marketing efforts….
https://dave.moskovitz.co.nz/2026/08/26/im-leaving-whatsapp/
#OpenSource #privacy #signal #facebook #meta
Fairphone Won the Fight for Repairability. Now It's Finding Out That's Not Enough
Fairphone unveiled the Gen. 6+ on August 18. As a new device announcement, it’s one of the least exciting events of the year. More recent…
WE REPORT FEWER INSTALLED APPS NOW. THAT IS THE FIX.
That number on the card went from 3,981 to 791 and it is the thing I am proudest of in this release.
In 2018 I wanted a list of the apps installed on an iPhone. I thought that was one question. It is at least six, and no single artifact answers all of them.
So we tested it properly, iOS 12 through iOS 26, every registered test image we have. The old installed summary had been counting app extensions, malformed bundle IDs, and apps known only from container activity. Strip those out and the count drops by 80 percent. Nothing was thrown away. It moved to a table whose label says exactly what the evidence supports, and the historical view got bigger at the same time, 9,575 rows to 11,786.
The history got bigger. The claim got smaller. That is the trade I want every time.
My favorite detail: on one public test image, two apps being removed produced seventeen container destruction rows in nine seconds, because every app extension owns its own container. Read those rows as apps and you would report a phone shedding seventeen. It shed two.
An inventory and a stack of receipts are both useful. They are not interchangeable.
Link in bio.
#DFIR #DigitalForensics #MobileForensics #iOS #OpenSource #ForensicScience #Infosec
New Job Alert: MOBIUS, a nonprofit 501(c)(3) library membership organization located in Columbia, Missouri, is seeking a Customer Service DevOps Linux Engineer. Learn more and apply now on #OSJH
https://opensourcejobhub.com/job/29581/customer-service-devops-linux-engineer/?utm_source=smm
#DevOps #engineer #Linux #ITServices #AWS #GoogleCloud #OpenSource #upstreaming
Socket found 737 fake VPNs on Chrome Web Store, impersonating brands like Proton and NordVPN. The extensions have 75,000+ downloads and routed traffic through an operator's server.
This is why open-source matters for privacy tools: you can verify the code instead of trusting marketing.
Read more: https://socket.dev/blog/chrome-vpn-extension-impersonation
I have finally created my own image sharing website with end-to-end encryption! Feels so darn good 
But to be honest, everything is built by me, but not the encryption on client side, management on server side, and to view the thumbnails in the gallery when logged in without breaking the encryption.
But I am very proud of the result anyway! 
More info: https://pic.airikr.me
The source code can be found on my self-hosted Forgejo server since Codeberg are trying to fight to "get rid off" AI generated code. I understand them and I understand the risk, though.
But why AI? Without AI, I would not be able to create this project with end-to-end encryption at all since I suck at JavaScript.
ICS[AP] updated CISA ICS Advisories Master File for 8/25/2026 & the following year's CSVs:
CISA_ICS_ADV_2026_8_25_26.csv
Updates on 8/25/2026 included:
CISA_ICS_ADV_2025_8_25_26.csv
Available @ ICS[AP] GitHub:
https://github.com/icsadvprj/ICS-Advisory-Project/tree/main
9to5Linux: Ardour 9.8 Open-Source DAW Is Now Available with Initial Scales Support https://9to5linux.com/ardour-9-8-open-source-daw-is-now-available-with-initial-scales-support
Also:
OpenSSL 4.0.2 Released with Important Security and Bug Fixes https://9to5linux.com/openssl-4-0-2-released-with-important-security-and-bug-fixes @9to5linux @mariusnestor #Linux #opensource
It turns out that open training data is not the most important piece of an Open Source AI. The license of the model is.
I spent two years leading the process that decided what “Open Source” should mean when the thing being opened is a foundation model instead of a codebase. While serving as executive director of the Open Source Initiative, I ran a large, global, inclusive effort, with dozens of organizations and hundreds of contributors for a couple of years, arriving at a definition of Open Source AI that none of us could have dictated alone. The harshest discussion in that process, by a wide margin, was about training data, not weights or code.
A small but vocal minority pushed hard for the definition to require only open training data as a condition of calling a model “Open Source,” not as a nice-to-have but as a floor. Without it, they argued, you don’t have all of the four freedoms, the backbone of Open Source: you can’t fully study or reproduce the AI, so you don’t have Open Source at all. The objection didn’t go away after the Open Source AI Definition (OSAID) v. 1.0 shipped. The definition requires the weights and the code that generates them under an Open Source license; additionally, it requires sufficiently detailed disclosure about what went into training them, but not necessarily the data itself. I’ve defended the outcome of the process for two years. Practice so far has shown that the OSAID holds. This summer, policy defended it, too.
A version of the argument lingers: if the training data stays a black box, an Open Source license on the weights is a technicality, because you can’t verify what you can’t inspect. Real security and real trust require opening the whole AI-creating pipeline, not just the output. I get the intuition; it is more rigorous. But reality shows that regulators and AI adopters aren’t acting on data provenance. They act on the AI model’s license first and the credibility of who built the thing second.
Suppose the Chinese government released a model tomorrow with full weights and a complete, public training corpus, thoroughly documented. The security establishment would not trust it automatically. Trust doesn’t come from disclosures alone. It comes from long-established credibility of the labs building the models, the governance of the project. A track record earns trust in a way a data dump can’t. Today, data disclosure remains an argument for courts to dissect copyright issues.
On June 9, Anthropic shipped two new models, Fable 5 and Mythos 5. Three days later, the US Commerce Department applied export controls with immediate effect, barring access by any foreign national, anywhere, including Anthropic’s own staff. Nationality can’t be verified in real time at the API layer, so both models went dark, globally, for everyone. Partial clearance came June 26 for a short list of vetted US critical-infrastructure organizations. Commerce lifted the controls June 30. Fable 5 came back online June 30, nineteen days after a policy decision took a live model away from the entire world, including the company that built it.
Six weeks later, the mirror image played out. Moonshot AI, a Chinese lab, opened the API for its new K3 model on July 16 and released the weights on July 27: a frontier-class model on an open release path no export order can touch once the files are out. Moonshot AI showed the power of open: You can switch off a proprietary, hosted-only model, but you cannot switch off a copy already running on the users’ hardware.
On July 21, US Treasury Secretary Bessent said the government would examine Chinese Open Source models for intellectual property theft, with sanctions on the table. That’s a statement of intent with complications: sanctions need an enforceable chokepoint, and once weights have been downloaded across a dozen jurisdictions, there isn’t much to grab onto. Mozilla’s State of Open Source AI report says the quiet part out loud: an outright prohibition gets harder to enforce as adoption grows, because every copy already held sits outside the reach of the order.
Whatever Washington ends up doing about Chinese open weight models, it will have to act on distribution and access, on what a license permits and who can get the files, because that’s the only lever still standing once the weights are loose.
These actions show that regulators are more concerned with who’s allowed to access the download link than with whether Moonshot AI disclosed its training corpus: The license is what counts.
Kimi K3, a model available for free with some restrictions
, ranks fourth on the Artificial Analysis Intelligence Index, within four points of the proprietary frontier. Models with no or few restrictions to use now carry roughly a third of all tokens routed through OpenRouter, up from about 2% eighteen months ago, and still climbing. Chinese-built open models are running at more than 3.5-to-1 over US-built closed models in token volume on the same platform. DeepSeek-R1 ships under a plain MIT license, at reasoning scores within a couple of points of OpenAI’s o1, for $0.55 to $2.19 per million tokens against o1’s $15 to $60, roughly a 27x price gap at near-identical performance.
These numbers show that users aren’t concerned about data provenance but they care more about model availability, capabilities, and cost.
Last year I was one of the co-authors on a paper in Communications of the ACM, alongside people who spend a lot of time analyzing AI openness: Yann LeCun, Nathan Lambert, Sayash Kapoor, and a dozen others across Mozilla, the Linux Foundation, Columbia, Princeton, Eleuther AI, Allen Institute for AI and more. That framework’s whole point was to resist a single-axis view of trust and transparency for AI: don’t stare at the weights trying to adapt old concepts to this artifact, but look at the full stack. The framework treats licensing and documentation of the model as separate, cross-cutting attributes. Documentation covers model cards, evaluation results, and information about the data, distinct from the data itself. A license to the weights is its own category, alongside documentation rather than beneath it.
Current.ai’s Gap Map, which catalogs what’s needed to build and ship a model, runs on the same architecture. It tracks datasets, code, and weights as separate components with their own separate gaps, and nowhere does it treat a dataset as a requirement of the model trained on it. The Gap Map is a practical representation of AI openness produced at the Columbia Convening, and it still doesn’t back the purity position. It agrees with me: license plus disclosed documentation is the operative bar for Open Source AI.
Let’s stop pretending this is still an open question. Training data provenance matters, and that’s not up for debate. But training data isn’t AI’s source code, and it was never going to be the policy’s lever. The CACM framework says as much, and so does Mozilla’s report.
Washington is reaching for export controls and sanctions built entirely around license and access to models. The courts are narrowly arguing copyright issues. In the market, open weight models under OSI-approved licenses are eating token share regardless of what anyone knows about their training corpora.
The purity test was always a bet that the world would eventually agree data openness is the real bar. The world placed the opposite bet, in public, this summer, using just the license as its operating lever. It’s time the rest of us caught up to back our own definition and move the policy debate towards a fair AI ecosystem.
sudo - Rechte kontrolliert vergeben | Dem hoergen Blog
hyperblog.de/hoergen/posts/202…
#Linux #Opensource #Wissen
Mit sudo können Benutzer Befehle mit erhöhten Rechten ausführen – kontrolliert und protokolliert.
Location: Casablanca
I miss being part of a team. Very specifically, the collaborative energy of like-minded people in the #opensource community striving toward a common goal.
I don't say this because I'm looking for employment. At this point in my life, I just miss using my skills to help make a difference. You know?
That said, I wonder if I might find contentment volunteering for an open source project. Who out there needs help?
When it comes to my daily personal computer, i use #LinuxMint and really enjoy the experience. I use the cinnamon environment which just works with everything which i love.
I have tried other Distros like Bazzite, SteamOS, Ubuntu & Debian for my daily PC but they all required alot more tinkering then i prefer for a daily PC.
Now I want to move my Homelab off my daily PC and put it onto its own environment/Computer to have my own home server.
Question is, what Distro should i use for my home server?
Some of the options i been looking at are the following:
Linux Mint XFCE (Similar to my main Distro)
Ubuntu Server (Popular Choice)
Debian (Popular Choice + Familiar With The Environment)
These are just some of the options i been looking at but i never hosted a #homeserver before, so im unsure what would be the best for such an environment.
What is your opinion?
Today marks Linux’s 35th birthday! 🎉🎂
35 years of milestones that took a hobby project from one developer’s announcement to the foundation of much of modern computing
Here is a look at the milestones that shaped its remarkable journey 😎👇
Find high-res pdf ebooks with all my Linux related infographics at https://study-notes.org
Does anyone know of a Linux GUI for GhostScript so that I can easily compress PDFs? (Yes, I could do it using the terminal but I hope for other, computer-averse folks to use it too)
I've only come up with workerPDF
https://sourceforge.net/projects/workerpdf/
Thank you! 🙏
heise+ | Verschlüsselung über kryptografische Identitätsschlüssel mit Iroh 1.0
Statt IP-Adressen sollen Schlüssel Endpunkte identifizieren: Iroh 1.0 vereinfacht direkte verschlüsselte Verbindungen über Netzgrenzen hinweg.
#IdentityManagement #IT #Netzwerke #OpenSource #Software #Verschlüsselung #news
Are you using LLMs to write Free Software?
Then you should know whether your software is copyrightable, the situations in which you can license it, and what risks it may create for maintainers.
Our new Legal Corner explains what you need to consider:
https://fsfe.org/news/2026/news-20260825-01.html
#FreeSoftware #OpenSource #Copyright #LLM #AI #generativeAI #VibeCoding
NVIDIA partners with AI coding startup Poolside in a $7 billion deal to strengthen its open-weight Nemotron model and challenge OpenAI.
#NVIDIA #PoolsideAI #ArtificialIntelligence #TechNews #OpenSource
https://securityexpress.info/nvidia-poolside-ai-deal/?utm_source=mastodon&utm_medium=jetpack_social
One Reddit post outperformed a month of homepage work for us. The AI-Ready Plugins list (every package built on the Laravel AI SDK, ranked by health) brought 302 visitors, 266 straight to that page. Focused and genuinely helpful wins. Full July recap: https://laraplugins.io/blog/laraplugins-july-update-the-month-of-growth #Laravel #OpenSource #PHP
chmod - praktisches Handbuch | Dem hoergen Blog
hyperblog.de/hoergen/posts/202…
#Linux #Opensource #Wissen
Linux-Zugriffsrechte werden entweder numerisch (Zahlen) oder symbolisch (Buchstaben) gesetzt. Symbolisch ist dabei flexibler. Sonderrechte wie SUID, SGID und Sticky Bit erlauben erweiterte Kontrolle über Programme und Ordner.
Location: Dushanbe
🚀 Chronivaro 0.1.0 has been released!
Chronivaro is an open-source working time & absence tracking system built on Strolch.
Highlights:
• Live timer & daily time recording
• Absence management & vacation journal
• Approvals & period closing
• CSV & PDF report exports
• Standalone fat-JAR & Docker
📦 Downloads & Release Notes:
https://github.com/eitch/Chronivaro/releases/tag/v0.1.0
dropQbsd has been moved from GitHub – where a copy will remain – to Sourcehut, its natural home.
I’d like to thank Drew DeVault for welcoming me onto his platform.
For free spirits, dropQbsd can be found here: https://git.sr.ht/~nobraininside/dropQbsd
#OpenBSD #freebsd #netbsd #openSource #privacy #sourcehut #digitalsovereignty
📢 Fediverse-Sprechstunde: Was sind eigentlich „Issues“ – und warum gehen sie uns alle etwas an?
Ihr nutzt Friendica, Mastodon, Hubzilla, Sharkey oder eine andere Fediverse-Software und plötzlich funktioniert etwas nicht so, wie ihr es erwartet? 🤔
Oder ihr denkt euch bei einer Funktion:
„Das könnte man doch besser machen!“
Vielleicht habt ihr auch eine Idee, die ihr gern den Entwicklerinnen und Entwicklern mitteilen würdet.
Dann fällt früher oder später ein Begriff: „Mach doch ein Issue auf.“
Aber was bedeutet das eigentlich?
Was gehört in ein gutes Issue hinein? Wo erstelle ich es? Welche Informationen brauchen Entwickler, um einen Fehler nachvollziehen zu können? Und muss ich dafür überhaupt technische Kenntnisse haben?
Genau darum geht es bei unserer nächsten Fediverse-Sprechstunde:
📅 Montag, 31. August 2026
🕢 19:30 Uhr
💻 Online
Für dieses Thema konnten wir Jens (@qbi ) gewinnen. Einige von euch kennen ihn vielleicht bereits aus unserer Fediverse-Sprechstunde zum Thema BookWyrm.
Jens ist Administrator und Entwickler und kennt Issues nicht nur aus der Theorie, sondern aus der täglichen Praxis. Gemeinsam wollen wir uns anschauen, wie aus einem beobachteten Problem, einer Idee oder einem Verbesserungsvorschlag ein Issue wird, mit dem Entwickler auch wirklich etwas anfangen können.
Dabei geht es ausdrücklich nicht nur um Entwickler oder Administratoren!
Denn freie und offene Software lebt auch davon, dass diejenigen, die sie täglich benutzen, Rückmeldungen geben. Niemand kann jeden Fehler selbst entdecken und niemand kennt alle Wünsche und Probleme der Nutzerinnen und Nutzer.
Ein gut beschriebenes Issue kann deshalb ein kleiner, aber sehr wertvoller Beitrag zur Weiterentwicklung einer Software sein. 🌱
Und vielleicht nehmen wir dabei auch ein wenig die Scheu vor Plattformen wie GitHub oder Codeberg. 😉
Ihr müsst dafür keine Programmierer sein und keinen Quellcode verstehen. Neugier und Fragen reichen völlig aus.
💬 Was ist überhaupt ein Issue?
🐞 Wie melde ich einen Fehler sinnvoll?
💡 Kann ich auch Ideen und Verbesserungsvorschläge einreichen?
📝 Welche Angaben gehören hinein?
🔍 Sollte ich vorher prüfen, ob es bereits ein ähnliches Issue gibt?
🤝 Wie erleichtere ich Entwicklern die Arbeit?
Und natürlich bleibt wie immer Raum für eure Fragen und den gemeinsamen Austausch.
Die Fediverse-Sprechstunde soll kein Frontalunterricht sein. Sie ist ein Treffpunkt zum Fragen, Erklären, Ausprobieren und voneinander Lernen – für Einsteiger ebenso wie für erfahrene Nutzer, Administratoren und Entwickler.
🌐 Mehr Miteinander statt Gegeneinander.
Gerade im Fediverse gehören Nutzer, Administratoren und Entwickler zusammen. Wenn wir besser verstehen, wie die jeweils anderen arbeiten und wie wir uns gegenseitig unterstützen können, profitiert am Ende das gesamte Fediverse davon.
👉 Montag, 31.08.2026 um 19:30 Uhr
💻 Konferenzraum:
campus.ws-12.de/rooms/8p9-mvy-…campus.ws-12.de/rooms/8p9-mvy-…
📢 Weitersagen und Teilen ausdrücklich erwünscht!
Vielleicht kennt ihr jemanden, der schon einmal einen Fehler entdeckt hat, eine gute Idee hatte – aber nicht wusste, wie und wo man sie den Entwicklern am besten mitteilt. Bringt ihn oder sie einfach mit. 😊
#Fediverse #FediverseSprechstunde #OpenSource #Issues #GitHub #Codeberg #Friendica #Mastodon #Hubzilla #BookWyrm #sharkey
With an extra $18 million raised, W4 Games plan to continue to expand their enterprise technology and support for the open-source Godot Engine.
https://www.gamingonlinux.com/2026/08/w4-games-the-company-formed-by-godot-engine-veterans-gets-help-and-funding-from-tencent/
The Bazzite Deck 44 release for handhelds and TV PCs was a huge change for the popular gaming focused version of Linux, which sadly came with lots of issues.
https://www.gamingonlinux.com/2026/08/bazzite-44-getting-a-hotfix-for-various-issues-after-the-recent-big-release/
#OpenSource #Upcoming #DistroNews #Misc #Bazzite #HandheldGaming
#OpenSource 🔓 #OpenAI vient de passer le moteur de son agent Codex sous licence Apache 2.0 !
Ce n'est pas anodin : #Codex n'est plus un simple assistant de programmation, c'est désormais une plateforme d'orchestration d'agents intégrable dans n'importe quel logiciel professionnel.
➡️ Tokens de sortie divisés par 6
➡️ Score ARC-AGI-3 à 38,3 % (vs 13,3 % avant)
➡️ Déjà en production chez Cisco, GitHub, JetBrains
🔗 https://goodtech.info/openai-codex-harness-agent-open-source-apache-2-0/
#IA #Agents #DevOps #LLM #ITOps
Got tired of Big Tech spying on me? Self-host your own cloud with Nebula Mesh and Docker. Own the data, be free.
Use Caddy for a solid reverse proxy setup. It's like having a Swiss Army knife for your network stack.
#SelfHostingWins #NebulaMesh #OpenSource
https://wopr.systems/?utm_campaign=meme_woprsystems&utm_medium=social&utm_source=mastodon
"Decolonize.Digital is an online resource that is a living, growing, and evolving website bringing together different connected projects that I've been working on. Parts of the site are available to all subscribers, but parts of it require a paid subscription. I made this decision because I've put hours, weeks, and months into this tool, in addition to my decades of work and learning that even makes creating it possible. I regard this work as I would a book, workshop, or any other labor that I do that is part of my life's work.
For free subscribers to my platform liberationtoolbox.io, all of these posts, articles, videos, and various mediums have been made available across my many platforms over the many years for free. And they are still accessible to all through those different platforms.
There are people who have the gall to be upset that I am actually compensated for my labor. If this is you, you should not be here. I do not recommend that you subscribe to the free or paid options of this Liberation Toolbox if you are one of these people.
Currently, on this site, Decolonize.Digital, I have put up the De-Google Your Life (Decentering Big Tech) series, Buildsheet: Community Building series, and the Opt-Out series. I will continue adding tools to each of these series over time. I have some exciting series and tools coming up.
Why now? Why this? When wielded by oppressors, everything, including technology, becomes murderous and rapacious, it becomes digital colonization.
There are better ways for technology. Finding these other liberatory ways, this is my life's work, to Decolonize Digital."
https://decolonize.digital
https://liberationtoolbox.io
#DecolonizeDigital #DIT #DUT #DUTgemacht #DigitalSovereignty #OpenSource #FOSS
quando il fascismo si nasconde nell'opensource: fanculo hyprland
https://itsfoss.com/news/omarchy-launches-omacom-foundation/
#China is advancing a comprehensive approach to #global #AI #governance, balancing #OpenSource #innovation with safety measures and #international #cooperation. At the 2026 #World AI #Conference (#WAIC) and High-Level #Meeting on Global AI Governance, President Xi Jinping called for a just and equitable #system for global AI governance, emphasizing that AI should be people-centered and benefit all of #humanity. https://cnbusinessforum.com/china-advances-global-ai-governance-with-open-source-models-and-new-international-body/
heise+ | Grub-Konfiguration unter Linux optimal anpassen
Grub ist der Standard-Bootloader aller Linuxe, doch nicht überall dürfen Sie auch alle Funktionen nutzen. Ein eigenes Skript beseitigt die Einschränkungen.
#BIOS #Debian #IT #Linux #OpenSource #SecureBoot #Ubuntu #news
Dienstag: Schutz für IT-Sicherheitsforscher, Anklage wegen illegaler Exporte
Reform des Computerstrafrechts + Illegale Ausfuhr von KI-Servern + AliExpress trackt Nutzer + Linux-Handheld sammelt eine Million + Kritik am Biometrie-Pakt
#Datenschutz #EU #hoDaily #IT #Security #Journal #Linux #OpenSource #Tracking #news
To celebrate 400 episodes, we look back of the last (almost) ten years of positive Linux and FOSS news
I am getting really unhappy with how @e_mydata seems to evolve. It starts to push more @murena services unto it's users.
I have no need for Murena Password. Sorry, but I trust Bitwarden and Proton Pass way more. But I'm being forced to see dark patterns trying to tempt users to enable. I kinda accepted that a little bit, since it's their OS platform.
But now I discovered that SeedVault is gone and replaced with Murena Backup. I had a perfectly fine SeedVault setup which synced backup data in the background to my own backup server (which again is backed up, encrypted, to a server on a different location). Now I seem to need to sign up for a Murena Workspace account. With backup encryption keys tied to Murena Password. That's crossing a line I'm not going to accept.
That means I will need to cash out more to have a backup of my /e/OS devices. For something I already had setup and protects my data and privacy even further than what I believe Murena is willing to do. Yes, there is a free tier Workspace. It's limited to 1GB data, to my understanding. And I doubt their setup, software stack and client side apps has been through a full third-party security audit.
Either I have control of my backup data, or you can try to convince me using a data storage service after showing me your third-party, independent security audit report.
That just.means: NO, THANK YOU VERY MUCH!
I have bought several phones, tablet and accessories from Murena over the years. That stops now. I can no longer recommend Murena to others, as they now seem to move towards a full vendor lock-in corporate model. That is unacceptable to.me.
It's been nice to be able to buy #Fairphone with pre-installed /e/OS. But now I'm going to test out @calyxos moving forward. Despite the firmware flashing inconvenience.
#fedora #Flock2026 Why You Should Use Open Source #Design In #opensource https://www.youtube.com/watch?v=9M4gPvbUkS0
I spent many hours in vulnogram today and to be honest. I'm glad that a colleague started to work on a replacement called vulniverse. Still early beta but it's promising.
#opensource #vulniverse #cybersecurity #cve #gcve
work in progress https://github.com/vulnerability-lookup/vulniverse
Zielmarke übertroffen: Mehr als eine Million Euro für Linux-Handheld Mecha Comet
Eine Crowdfunding-Aktion übertrifft die Erwartungen. Das modular konzipierte Gerät bietet verschiedenste Anwendungen. Die Auslieferung soll schon bald beginnen.
🚀 NEW on We ❤️ Open Source 🚀
C doesn’t provide memory safety by design, so string operations require care.
Jim Hall demonstrates how strcpy and strcat can overflow a buffer, then shows how strlcpy and strlcat constrain writes to the destination size.
https://allthingsopen.org/articles/strlcat-strlcpy-prevent-buffer-overflows
The @starlabssystems
StarFighter might be the closest we have come to the ultimate Linux-first laptop.
In this review, I dive into the hardware, open-source coreboot BIOS, daily usability, fan noise, and internals. While it gets almost everything right, soldered RAM and average battery life hold it back from a flawless score.
Watch on PeerTube: https://tube.devwithzachary.com/w/wAVfyZ6TDdQCokpXUDXSCo
Watch on YouTube: https://youtu.be/njoC-hwCC6E
#Linux #OpenSource #StarLabs #StarFighter #coreboot #Hardware #Tech
Some of the backers include Dell (and by extension, Trump,) and a bunch of execs from Cloudflare (yes, Cloudflare,) and Block (Dorsey, the guy who screwed up Twitter.)
It's Foss: Omarchy Linux Just Got $8 Million From Tech's Biggest Names https://itsfoss.com/news/omarchy-launches-omacom-foundation/ @itsfoss #opensource #linux
SiFive bringt RISC-V-Server mit Ubuntu 26.04 und RHEL 10 für Code-Entwickler
Um das Henne-und-Ei-Problem bei RISC-V für Rechenzentren zu lösen, stellt SiFive Entwicklerserver mit 32 RVA23-Kernen, 256 GByte RAM und PCIe 5.0 bereit.
#Canonical #IT #OpenSource #Prozessoren #Rechenzentrum #RedHat #Server #Ubuntu #news
Same model. Same skill. Same task.
Completely different results.
I tested Keep the Why across 6 coding agents and 9 models.
The agent harness mattered far more than I expected.
Gemini: 10/10 in one agent, 0/10 in others.
Grok stayed consistently strong.
Some runs even fabricated compliance.
Don't benchmark only the model.
Benchmark the system you actually use.
Full matrix + lessons:
https://blog.technopathy.club/same-skill-six-agents-nine-models-what-a-real-eval-matrix-taught-me