This Week in Security: Randomness is Hard, SNMP Shouldn’t Be Public, and GitHub Malware Delivery

Randomness is hard. To be precise, without dedicated hardware, randomness is impossible for a computer. This is actually important to keep in mind when writing software. When there’s not hardware …read more Continue reading This Week in Security: Randomness is Hard, SNMP Shouldn’t Be Public, and GitHub Malware Delivery

This Week in Security: The Shai-Hulud Worm, ShadowLeak, and Inside the Great Firewall

Hardly a week goes by that there isn’t a story to cover about malware getting published to a repository. Last week it was millions of downloads on NPM, but this …read more Continue reading This Week in Security: The Shai-Hulud Worm, ShadowLeak, and Inside the Great Firewall

This Week in Security: NPM, Kerbroasting, and The Rest of the Story

Two billion downloads per week. That’s the download totals for the NPM packages compromised in a supply-chain attack this week. Ninety-nine percent of the cloud depends on one of the …read more Continue reading This Week in Security: NPM, Kerbroasting, and The Rest of the Story

FLOSS Weekly Episode 844: Simulated Word-of-Mouth

This week Jonathan, Doc, and Aaron chat about Open Source AI, advertisements, and where we’re at in the bubble roller coaster! https://www.zdnet.com/article/no-grok-2-5-has-not-been-open-sourced-heres-how-you-can-tell/ https://about.fb.com/news/2024/07/open-source-ai-is-the-path-forward/ Did you know you can watch the …read more Continue reading FLOSS Weekly Episode 844: Simulated Word-of-Mouth