FreeBSD-Current Random Number Generator Broken

First time accepted submitter bobo the hobo writesThe FreeBSD random number has been discovered to be generating possibly predictable SSH keys and SSL certificates for months. Time to regenerate your keys and certs if using FreeBSD-Current. A message to the freebsd-current mailing list reads in part: “If you are running a current kernel r273872 or later, please upgrade your kernel to r278907 or later immediately and regenerate keys. I discovered an issue where the new framework code was not calling randomdev_init_reader, which means that read_random(9) was not returning good random data. read_random(9) is used by arc4random(9) which is the primary method that arc4random(3) is seeded from.” Read more of this story at Slashdot.

View the original here:
FreeBSD-Current Random Number Generator Broken

Canada’s Next-Generation Military Smart Gun Unveiled

Zothecula writes Looking every bit like a weapon from a science fiction movie, the latest integrated assault rifle prototype being developed for the Canadian Armed Forces (CAF) is packed with some very smart weapons technology. Along with the ability to fire new lightweight telescoped ammunition, and a secondary effects module that adds either a three-round 40 mm grenade launcher or a 12-gauge shotgun, there is also a NATO-standard power and data bus to allow the attachment of smart accessories, such as electro-optical sights and position sensors that connect to command and control networks. Read more of this story at Slashdot.

Read More:
Canada’s Next-Generation Military Smart Gun Unveiled

Notorious 8chan Board Has History Wiped After Federal Judge’s Doxing

AmiMoJo writes On Monday, imageboard site 8chan’s “baphomet” subboard, an Internet destination known for hosting aggressive “doxing” posts, received a major history wipe the day after one of its users posted the personal information of a federal judge in the Silk Road case. A follow-up post by baphomet’s “Board Owner” account stated that “HW, ” a reference to site founder Frederick “hotwheels” Brennan, deleted “the SSN posts” and told the baphomet board founder, previously identified via an associated Twitter handle as Benjamin Biddix, to “lay low.” The same day baphomet’s “Board Owner” announced a “doxing for hire” service due to “running low on funds.” Read more of this story at Slashdot.

Read More:
Notorious 8chan Board Has History Wiped After Federal Judge’s Doxing

Out of Thermal Paste for Your PC? Just Use Nutella

If you’ve ever gone elbow-deep inside your computer to do some tweaking, you know all about the joys(?) of meticulously applying thermal paste or grease. Even if you’re a pro at applying the goop, there’s a trick that you probably don’t know about: You can just use Nutella instead . Seriously. Read more…

Taken from:
Out of Thermal Paste for Your PC? Just Use Nutella

Automakers Move Toward OTA Software Upgrades

Lucas123 writes: While some carmakers today offer over-the-air software upgrades to navigation maps and infotainment head units, Tesla became the first last week to perform a powertrain upgrade overnight. But as the industry begins adopting internal vehicle bus standards with greater bandwidth and more robust security, experts believe vehicle owners will no longer be required to visit dealerships or perform downloads to USB sticks. IHS predicts that in the next three to five years, most, if not all automakers, will offer fully fledged OTA software-enabled platforms that encompass upgrades to every vehicle system — from infotainment, safety, comfort, and powertrain. First, however, carmakers must deploy more open OS platforms, remove hardened firewalls between vehicle ECUs, and deploy networking topologies such as Ethernet, with proven security. Read more of this story at Slashdot.

Excerpt from:
Automakers Move Toward OTA Software Upgrades

The World’s Email Encryption Relies on a Guy Who Is Going Broke

The man who built the free email encryption software used by whistleblower Edward Snowden, as well as hundreds of thousands of journalists, dissidents and security-minded people around the world, is running out of money to keep his project alive. Read more…

Read More:
The World’s Email Encryption Relies on a Guy Who Is Going Broke

Major Record Labels Keep 73% of Spotify Payouts

journovampire sends this report: New record company figures out of France suggest that artists are being paid just 68 cents from every €9.99 monthly music streaming subscription – as major labels keep hold of 73% of payouts from the likes of Spotify. They’re followed by writers/publishers with a 16% share, and then artists – mostly paid by their labels – who get 11%. Read more of this story at Slashdot.

See the original post:
Major Record Labels Keep 73% of Spotify Payouts

Staples To Buy Office Depot For $6.3 Billion

An anonymous reader writes: Today Staples announced plans to buy Office Depot in a deal worth $6.3 billion. This is a huge consolidation within the office supply industry. Office Depot and OfficeMax were the second- and third-biggest suppliers when they merged in 2013. Adding those to the enormity of Staples would effectively bring the U.S. under a single office supply chain. “The move is expected to draw scrutiny from the Federal Trade Commission, though regulators have been increasingly willing to approve retail mergers in light of burgeoning e-commerce competition. … This isn’t the first time Staples has tried to buy Office Depot. In 1997, the FTC derailed Staples’ acquisition of its rival as anticompetitive. By 2013, though, the agency’s view had shifted. When the FTC allowed Office Depot to buy OfficeMax, it said the advent of online retailing ensured competition in the market for office supplies. Consumers today also rely more heavily on big-box chains such as Wal-Mart Stores Inc. for office products, the commission said.” Read more of this story at Slashdot.

View article:
Staples To Buy Office Depot For $6.3 Billion

Don’t Sass Your Uber Driver – He’s Rating You Too

HughPickens.com writes David Streitfeld reports at the NYT that people routinely use the Internet to review services from plumbers to hairdressers but now the tables are turned as companies like Uber are rating their customers, and shunning those who do not make the grade. “An Uber trip should be a good experience for drivers too, ” says an Uber blog post. “Drivers shouldn’t have to deal with aggressive, violent, or disrespectful riders. If a rider exhibits disrespectful, threatening, or unsafe behavior, they, too, may no longer be able to use the service.” It does not seem to take much to annoy some Uber drivers. On one online forum, an anonymous driver said he gave poor reviews to “people who are generally negative and would tend to bring down my mood (or anyone around them).” Another was cavalier about the process: “1 star for passengers does not do them any harm. Sensible drivers won’t pick them up, but so what?” In response, some consumers are becoming more polite and prompt. “The knowledge that they may be rated is also encouraging people to submit more upbeat reviews themselves, even if the experience was less than stellar, ” writes Streitfeld. “When services choose whom to serve, no one wants to be labeled difficult.” The result may be a Barney world says Michael Fertik referring to the purple dinosaur who sings, “With a great big hug and a kiss from me to you/ Won’t you say you love me too.” Read more of this story at Slashdot.

Continued here:
Don’t Sass Your Uber Driver – He’s Rating You Too

Inkscape Version 0.91 Released

Bryce writes: Four years since the last major Inkscape release, now news is out about version 0.91 of this powerful vector drawing and painting tool. The main reason for the multi-year delay is that they’ve switched from their old custom rendering engine to using Cairo now, improving their support for open source standards. This release also adds symbol libraries and support for Visio stencils, cross platform WMF and EMF import and export, a native Windows 64-bit build, scads of bug fixes, and much more. Check out the full release notes for more information about what has changed, or just jump right to downloading your package for Windows, Linux, or Mac OS X. Read more of this story at Slashdot.

View post:
Inkscape Version 0.91 Released