Linux Virtual Ethernet Bug Delivers Corrupt TCP/IP Data

jones_supa writes: Vijay Pandurangan from Twitter warns about a Linux kernel bug that causes containers using Virtual Ethernet devices for network routing to not check TCP checksums. Examples of software stacks that use Virtual Ethernet devices are Docker on IPv6, Kubernetes, Google Container Engine and Mesos. The kernel flaw results in applications incorrectly receiving corrupt data in a number of situations, such as with bad networking hardware. The bug dates back at least 3 years or more – it is present in kernels as far back as the Twitter engineering team has tested. Their patch has been reviewed and accepted into the kernel, and is currently being backported to -stable releases back to 3.14 in various distributions. If you use containers in your setup, Pandurangan recommends that you deploy a kernel with this patch. Read more of this story at Slashdot.

View article:
Linux Virtual Ethernet Bug Delivers Corrupt TCP/IP Data

Nvidia Pascal GP100 GPU To Rock 4 TFLOPS Double Precision, 12 TFLOPS Single Precision Processing Power

New information emerged regarding Nvidia’s Pascal GPU, covering the total compute performance of the much-anticipated FinFET-based chip. Based on a number of slides from an independent researcher, the Nvidia Pascal GPU100 features Stacked DRAM (1 TB/s) giving it as much as 12 TFLOPs of Single-Precision (FP32) compute performance. The flagship GPU is purportedly able to provide four TFLOPs of Double-Precision (FP64) compute performance as well. Read more of this story at Slashdot.

Read the article:
Nvidia Pascal GP100 GPU To Rock 4 TFLOPS Double Precision, 12 TFLOPS Single Precision Processing Power

Comodo Antivirus Tech Support Feature Lets Anyone Connect To Your PC

An anonymous reader writes: Google Project Zero security researcher Tavis Ormandy has discovered that one of Comodo’s tech support tools packed with many of the company’s security products leaves the door open for attackers to connect with admin privileges on the user’s PC. He discovered that to blame for this problem was a remote desktop tool called GeekBuddy, which Comodo was bundling with its security software. This tool either used no password, or used a simple system to create the password which tech support staff would use to connect to user PCs. Ormandy previously discovered a similar issue in Comodo software, related to the company’s Chromodo browser. Read more of this story at Slashdot.

View article:
Comodo Antivirus Tech Support Feature Lets Anyone Connect To Your PC

Wearable Third Arm Gives Drummers Extra Robotic Rhythm

Zothecula writes: Thumping out as many drum beats in 60 seconds may get you a podium spot at the annual World’s Fastest Drummer competition, but we’ll take the full kit virtuoso playing of Cozy Powell, Philthy Animal Taylor or Mitch Mitchell any day of the week. When trying to emulate the fastest or the greatest on your bedroom bin-bashers, though, you’d be forgiven for wishing you had a third arm. Georgia Tech Professor Gil Weinberg and his research team may have the answer to your prayers. They’ve developed a drumstick-wielding wearable robotic limb that’s able to respond to both the music being played and the movements of the player. Read more of this story at Slashdot.

View article:
Wearable Third Arm Gives Drummers Extra Robotic Rhythm

Reluctant Wikipedia Lifts Lid On $2.5M Internet Search Engine Project

The Wikimedia Foundation has finally disclosed details of its controversial Knowledge Engine grant — and it confirms that Wikipedia is getting seriously into search, despite Jimmy Wales’ categorical denial that WMF is “doing a Google.” After a Wikipedia signpost article, and coverage at El Reg this week, the WMF caved and posted the Knight Foundation’s approval of the $250, 000 grant. The grant provides seed money for stage one of the Knowledge Engine, described as “a system for discovering reliable and trustworthy information on the Internet.” The discovery stage includes an exploration of prototypes of future versions of Wikipedia.org which are “open channels” rather than an encyclopedia, analyzing the query-to-content path, and embedding the Wikipedia Knowledge Engine “via carriers and Original Equipment Manufacturers.” Read more of this story at Slashdot.

See more here:
Reluctant Wikipedia Lifts Lid On $2.5M Internet Search Engine Project

Avast SafeZone Browser Lets Attackers Access Your Filesystem

An anonymous reader writes: Just two days after Comodo’s Chromodo browser was publicly shamed by Google Project Zero security researcher Tavis Ormandy, it’s now Avast’s turn to be publicly scorned for failing to provide a “secure” browser for its users. Called SafeZone, and also known as Avastium, Avast’s custom browser is offered as a bundled download for all who purchase or upgrade to a paid version of Avast Antivirus 2016. This poor excuse of a browser was allowing attackers to access files on the user’s filesystem just by clicking on malicious links. The browser wouldn’t even have to be opened, and the malicious link could be clicked in “any” browser. Read more of this story at Slashdot.

Originally posted here:
Avast SafeZone Browser Lets Attackers Access Your Filesystem

Canonical Reveals the BQ Aquaris M10 Ubuntu Tablet

LichtSpektren writes: Several tech sites have now broke the news that Canonical has revealed their BQ Aquaris M10 Ubuntu Tablet. Joey-Elijah Sneddon builds the hype: “A stunning 10.1-inch IPS touch display powered a full HD 1920×1200 pixel resolution at 240 ppi. Inside is a 64-bit MediaTek MT8163A 1.5GHz quad-core processor, 2GB of RAM, and 16GB of internal memory. A micro SD memory card is included, adding storage expansion of up to 64GB. Furthermore, the converged slate includes an 8-megapixel rear camera with autofocus and dual LED flash (and capable of recording in full 1080p), plus a front facing 3-megapixel camera for video chats, vlogs and selfies. Front facing Dolby Atmos speakers will provide a superior sound experience during movie playback. The M10 measure 246mm x 171mm x 8.2mm, weighs just 470 grams — lighter than the Apple iPad Air — and has a 7280 mAh battery to give up to 10 hours of use. … Tablet mode offers a side stage for running two apps side-by-side, plus a full range of legacy desktop applications, mobile apps and scopes. LibreOffice, Mozilla Firefox, The GIMP and Gedit are among a ‘curated collection of legacy apps’ to ship pre-installed on the tablet. It will also be possible for developers and enthusiasts to install virtually any ARM compatible app available on Ubuntu using the familiar ‘apt-get’ command.” A photo gallery can also be seen on his website here. The price is not yet announced, but the Android version of the same tablet is currently on sale for €229. Read more of this story at Slashdot.

Read the original:
Canonical Reveals the BQ Aquaris M10 Ubuntu Tablet

Low-Cost EEG Head-Sets Promise Virtual Reality Feedback Loops

An anonymous reader writes: Researchers from the University of Memphis have found that it’s possible to use a low-cost EEG device such as the $300 Emotiv Epoc to understand how a user is feeling — opening up the path to genuine psycho-biological feedback in virtual/augmented reality scenarios. The Epoc has been used, in combination with the Razer Hydra, to give users control over VR/AR environments, but integrating emotional feedback into VR environments heralds many new possibilities in the fields of medical research, gaming — and, of course, marketing research. Read more of this story at Slashdot.

Link:
Low-Cost EEG Head-Sets Promise Virtual Reality Feedback Loops

Cheap At $40,000: Phoenix Exoskeleton Gives Paraplegics Legs to Walk With

Fast Company highlights the cheap-for-the-price Phoenix exoskeleton, created by University of California Berkeley professor (and Berkeley Robotics and Human Engineering Laboratory director) Homayoon Kazerooni and a team of his former grad students at SuitX, a company Kazerooni founded in 2013. Set to sell for $40, 000 when it goes on sale next month, the Phoenix sounds expensive — except compared to the alternatives. For paraplegic patients, there are a handful of other powered exoskeletons, but they cost much more, and are engineered for more than the modest goals of the Phoenix, which allows only one thing: slow walking on level ground. That limited objective means that the rig is light (27 pounds), and relatively unobtrusive. Kazerooni says that he’d like the price to go down much further, too, noting that all the technology in a modern motorcyle can be had for the quarter of the price. A slice: [The] only driving motors in Phoenix are at the hip joints. When the user hits a forward button on their crutches, their left hip swings forward. At this moment, the onboard computer signals the knee to become loose, flex, and clear the ground. As the foot hits, the knee joint stiffens again to support the leg. This computer-choreographed process repeats for the right leg. As it happens, this hinged knee joint has another benefit. If the wearer hits something midstep, like a rock or a curb, a powered knee would blindly drive the leg forward anyway, likely leading to a fall. The hinge naturally absorbs such resistance and allows the wearer a chance to compensate. Read more of this story at Slashdot.

Read More:
Cheap At $40,000: Phoenix Exoskeleton Gives Paraplegics Legs to Walk With

Severe and Unpatched eBay Vulnerability Allows Attackers To Distribute Malware

An anonymous reader writes: Check Point researchers have discovered a severe vulnerability in eBay’s online sales platform, which allows criminals to distribute malware and do phishing campaigns. This vulnerability allows attackers to bypass eBay’s code validation and control the vulnerable code remotely, to execute malicious Javascript code on targeted eBay users. Read more of this story at Slashdot.

More:
Severe and Unpatched eBay Vulnerability Allows Attackers To Distribute Malware