Feed aggregator

Action required: Password reset on all Gentoo services

Gentoo Linux - 57 min 55 sec ago

Recent versions of OpenSSL were found to be affected by an information disclosure vulnerability related to TLS heartbeats, nicknamed Heartbleed. It allows attackers to read up to 64kb of random server memory, possibly including passwords, session IDs or even private keys.

After the public disclosure on April 7, we have confirmed that several services provided by Gentoo Infrastructure were vulnerable as well. We have immediately updated the affected software, recreated private keys, reissued certificates, and invalidated all running user sessions. Despite these measures, we cannot exclude the possibility of attackers exploiting the issue during the time it was not publicly known to gain access to credentials or session IDs of our users. There are currently no indications this has happened.

However, to be safe, we are asking you to reset your passwords used for Gentoo services within the next 7 days. You need to take action if you have an account on one of the following sites:

  • blogs.gentoo.org
  • bugs.gentoo.org
  • forums.gentoo.org
  • wiki.gentoo.org

After 7 days, we will be removing all passwords to avoid abuse. For more information and the full announcement, visit http://infra-status.gentoo.org/notice/20140413-heartbleed.

Categories: linux

Gentoo Monthly Newsletter - March 2014

Gentoo Linux - 57 min 55 sec ago

The March 2014 GMN issue is now available online.

This month on GMN:

  • Interview with Gentoo developer Tom Wijsman (TomWij)
  • Tracking the history of Gentoo: Gentoo Galaxy
  • Latest Gentoo news, tips, interesting stats and much more.
Categories: linux

Gentoo Monthly Newsletter - February 2014

Gentoo Linux - 57 min 55 sec ago

The February 2014 GMN issue is now available online.

This month on GMN:

  • Interview with Gentoo developer Sven Vermeulen (swift)
  • Latest Gentoo news, job openings, interesting stats and much more.
Categories: linux

Gentoo Monthly Newsletter - January 2014

Gentoo Linux - 57 min 55 sec ago

The January 2014 GMN issue is now available online.

This month on GMN:

  • Meet up with Gentoo developers and users at this years FOSDEM'14 event.
  • Give back by helping the proxy-maintainers project.
  • Latest Gentoo news, job openings, interesting stats and much more.
Categories: linux

Gentoo Monthly Newsletter - December 2013

Gentoo Linux - 57 min 55 sec ago

The December 2013 GMN issue is now available online. This month on GMN:

  • Interview with Sergey Popov. A Gentoo developer and the team leader of Qt, proxy-maintainers and desktop-effects teams.
  • Overall Gentoo activity status with bugzilla, portage and developer statistics.
Categories: linux

Gentoo Monthly Newsletter - November 2013

Gentoo Linux - 57 min 55 sec ago

The November 2013 GMN issue is now available online. This month on GMN:

  • Interview with Richard Freeman. A Gentoo developer, Council and Trustees member.
  • Gentoo as a development environment for newcomers.
  • Overall Gentoo activity status with bugzilla, portage and developer statistics.
Categories: linux

Imagination Technologies donates MIPS64 build systems

Gentoo Linux - 57 min 55 sec ago

Imagination Technologies has donated two MIPS64-based Ubiquiti ERLite-3 routers, plus resources to aid Gentoo in providing up-to-date root file system builds for MIPS.

Imagination Technologies is a global leader in multimedia, processor and communication technologies. The company creates and licenses market-leading IP solutions for graphics, video and vision, CPU/general purpose processing, multi-standard communications and connectivity, and cross-platform voice and video communications. Imagination's MIPS CPU cores and architectures range from solutions for ultra low-power 32-bit microcontrollers to high-performance 32/64-bit advanced applications and network processing. MIPS is supported by a broad ecosystem of tools and software including open source Linux distributions like Gentoo.

Categories: linux

Gentoo at LinuxTag 2013 in Berlin

Gentoo Linux - 57 min 55 sec ago

LinuxTag 2013 runs from May 22nd to May 25th in Berlin, Germany. With more than 10,000 visitors last year, it is one of the biggest Linux and open source events in Europe.

You will find the Gentoo booth at Hall 7.1c, Booth 179. Come and visit us! You will meet many of our developers and users, talk with us, plus get some of the Gentoo merchandise you have always wanted.

Categories: linux

Gentoo at FOSSCOMM 2013

Gentoo Linux - 57 min 55 sec ago

What? FOSSCOMM 2013

Free and Open Source Software COMmunities Meeting(FOSSCOMM) 2013

When? 20th, April 2013 - 21st, April 2013

Where? Harokopio University, Athens, Greece

Website?http://hua.fosscomm.gr

FOSSCOMM 2013 is almost here, and Gentoo will be there!

We will have a booth with Gentoo promo stuff, stickers, flyers, badges, live DVD's and much more! Whether you're a developer, user, or simply curious, be sure and stop by. We are also going to represent Gentoo in a round table with other foss communities. See you there!

Pavlos Ratis contributed the draft for this announcement.

Categories: linux

Gentoo Linux releases 20121221 LiveDVD - End Of World Edition

Gentoo Linux - 57 min 55 sec ago


Figure 1.1: End of World



Gentoo Linux is proud to announce the availability of a new LiveDVD to celebrate the continued collaboration between Gentoo users and developers, ready to rock the end of the world (or at least mid-winter/Southern Solstice)! The LiveDVD features a superb list of packages, some of which are listed below.

A special thanks to the Gentoo Infrastructure Team. Their hard work behind the scenes provide the resources, services and technology necessary to support the Gentoo Linux project.

  • Packages included in this release: Linux Kernel 3.6.8, Xorg 1.12.4, KDE 4.9.4, Gnome 3.4.2, XFCE 4.10, Fluxbox 1.3.2, Firefox 17.0.1, LibreOffice 3.6.4.3, Gimp 2.8.2-r1, Blender 2.64a, Amarok 2.6.0, Mplayer 2.2.0, Chromium 24.0.1312.35 and much more ...
  • If you want to see if your package is included we have generated both the x86 package list, and amd64 package list. There is no new FAQ or artwork the 20121221 release, but you can still get the 12.0 artwork plus DVD cases and covers for the 12.0 release; and view the 12.1 FAQ (persistence mode is not available in 20121221).
  • Special Features:
    • ZFSOnLinux
    • Writable file systems using AUFS so you can emerge new packages!

The LiveDVD is available in two flavors: a hybrid x86/x86_64 version, and an x86_64 multi lib version. The livedvd-x86-amd64-32ul-20121221 version will work on 32-bit x86 or 64-bit x86_64. If your CPU architecture is x86, then boot with the default gentoo kernel. If your arch is amd64, boot with the gentoo64 kernel. This means you can boot a 64-bit kernel and install a customized 64-bit user land while using the provided 32-bit user land. The livedvd-amd64-multilib-20121221 version is for x86_64 only.

If you are ready to check it out, let our bouncer direct you to the closest x86 image or amd64 image file.

If you need support or have any questions, please visit the discussion thread on our forum.

Thank you for your continued support,

Gentoo Linux Developers, the Gentoo Foundation, and the Gentoo-Ten Project.

Categories: linux

Bank of England seeks 'HACKERS' to defend vaults against e-thieves

The Register - 1 hour 20 min ago
Report: 20 major cash-holders to be probed by white hats

The Bank of England is planning to hire ethical hackers to conduct penetration tests on 20 "major" banks and other financial institutions, it has been reported.…

Categories: news

DeSENSORtised: Why the 'Internet of Things' will FAIL without IPv6

The Register - 1 hour 54 min ago
What's stopping a tinyputer invasion? An IP address shortage, says Cisco

Analysis For more than 20 years, it has been clear that the internet will eventually run out of public IPv4 addresses. Despite that limit, online businesses have been slow to adopt IPv6, which has an abundance of addresses by comparison.…

Categories: news

Look behind you, 'declining' sub-$5bn iPod. The iWatch has come... to EAT YOU

The Register - 2 hours 31 min ago
Apple's baby set to kill its big brother, says analyst

The semi-mythical iWatch is set to make the iPod extinct, an analyst has predicted.…

Categories: news

Sixteen hot students, 3 kilowatts, $29k in CASH: It's cluster combat, China style

The Register - 2 hours 56 min ago
Biggest student cluster clash yet

HPC Blog We're in Guangzhou, China, for the final round of the largest student cluster competition in the world. And to make it even more tense, there's nearly $28k up for grabs...…

Categories: news

More Linux News

Computerworld Linux News - 2 hours 57 min ago
View more Linux news and analysis from Computerworld.com
Categories: linux, news

Gunter Ollmann: Time to Squish SQL Injection

Security Focus - 2 hours 57 min ago
Time to Squish SQL Injection
Categories: news, security

Mark Rasch: Lazy Workers May Be Deemed Hackers

Security Focus - 2 hours 57 min ago
Lazy Workers May Be Deemed Hackers

>> Advertisement <<
Can you answer the ERP quiz?
These 10 questions determine if your Enterprise RP rollout gets an A+.
http://www.findtechinfo.com/as/acs?pl=781&ca=909
Categories: news, security

Adam O'Donnell: The Scale of Security

Security Focus - 2 hours 57 min ago
The Scale of Security
Categories: news, security

Mark Rasch: Hacker-Tool Law Still Does Little

Security Focus - 2 hours 57 min ago
Hacker-Tool Law Still Does Little
Categories: news, security

Infocus: Enterprise Intrusion Analysis, Part One

Security Focus - 2 hours 57 min ago
Enterprise Intrusion Analysis, Part One
Categories: news, security