Skip to content
I T S S
  • Welcome
  • Hardware
  • Internet
  • Networking
  • Security
  • Data Recovery
  • Support
  • Contact
  • Webmail

A Nice Little Cryptography Primer

By itss | 28/06/2021
0 Comment

Pun Intended.

Category: Technology
Post navigation
← pfSense / Wireguard / Bad Code / Close Call Why Quake3 was so fast : Fast Inverse Square Root →

Recent Posts

  • Hardware Exploits?
  • Why Quake3 was so fast : Fast Inverse Square Root
  • A Nice Little Cryptography Primer
  • pfSense / Wireguard / Bad Code / Close Call
  • Apple Continues Its Trip To The Dark Side With The Release of MacOS 17 (Big Sur)

Slashdot

News for nerds

  • Asos Confirms Hackers Sent 'Unauthorized' Notification to App Users
    by BeauHD on 06/10/2026 at 8:00 pm

    ASOS says hackers gained unauthorized access to third-party platforms it uses and sent an "ASOS HACKED" push notification directly to customers, apparently as part of an extortion attempt. The clothing and beauty store says some basic personal information may have been accessed but does not believe payment-card data or passwords were affected. The BBC reports: In an email to customers on Tuesday night, the company apologized and urged customers not to engage with the notification. And it said the website and app are "operating as usual" promising customers they can "shop with confidence" while it investigates the incident. The company has not as of yet informed the UK's data watchdog, the Information Commission's Office (ICO), about any breach. Exactly how many Asos customers received the notification on Tuesday remains unclear, but Google's Play store says the ASOS app has been downloaded to android devices more than 10 million times. The British retailer has a substantial global footprint -- serving around 17 million customers each year across more than 150 markets. Some Asos app users in Australia, France, Sweden and the Republic of Ireland had also received the notification, according to local reports on Tuesday. [...] Users of the Asos app appeared to have received the alarming notification at around 10:00 BST on Tuesday. Headlined "ASOS HACKED" and addressed to the company's data protection officer and IT teams, it said: "We have fully compromised the Snowflake instance." "Engage with us, or we will leak it," it added, before linking to a Telegram channel. The message left many ASOS customers confused. [...] Meanwhile Snowflake -- whose tools are used by dozens of firms to collect, analyze and store data -- told the BBC its investigation was ongoing, but it had so far found "no compromise" of its platform. Read more of this story at Slashdot.

  • IBM and Red Hat Find More Than 400 New Vulnerabilities In Popular Java Code
    by BeauHD on 06/10/2026 at 7:00 pm

    IBM and Red Hat say their AI-powered Lightwell initiative has identified and helped remediate more than 400 previously unknown vulnerabilities across widely used Java libraries. Phoronix reports: They announced this feat today as part of their promoting Lightwell Clearinghouse to GA, which is an enterprise service for their customers to submit open-source software dependencies for priority review and remediation. From today's announcement: "The milestone addresses a growing business risk. As autonomous AI agents become capable of combining several lower-risk software weaknesses into a more serious attack, companies need to do more than identify vulnerabilities. They need a practical way to develop, test and deploy fixes in the software that supports critical applications." Read more of this story at Slashdot.

  • Licensing Costs Driving 90% of VMware Users To Explore Options, Survey Finds
    by BeauHD on 06/10/2026 at 6:00 pm

    An anonymous reader quotes a report from Ars Technica: VMware customers face multiple obstacles as they rethink their virtualization strategy to reduce dependence on VMware. Today, Rimini Street published its "2026 IT Virtualization Survey -- What's Next for VMware Users." The survey examined 300 organizations worldwide that use VMware. Notably, Rimini sells third-party support for VMware and other software, including Oracle and SAP. That means there's an incentive for Rimini to portray VMware users as experiencing obstacles. However, the survey was also conducted by a third-party research company, Unisphere Research, and the results align with other recent reports about VMware customers. For example, 90 percent of participants in Rimini's survey said they're exploring VMware alternatives due to VMware's higher licensing costs, while 54 percent pointed to Broadcom killing support for perpetual license holders. Since Broadcom took over VMware, customers have said that their VMware costs increased by as much as 1,000 percent, with many more pointing to more modest price hikes of around 100 to 300 percent. In Rimini's survey, 73 percent of participants pointed to cost savings as a top priority in their virtualization roadmap decisions. In today's announcement, Rimini pointed to "significant barriers to progress" for organizations exploring virtualization options, with the most cited barriers being operational complexity (named by 40 percent of respondents), multi-vendor management challenges (38 percent), securing the increased attack surface (37 percent), and team skills requirements (37 percent). "These findings suggest that while organizations are actively pursuing change, they are also looking for ways to reduce risk and avoid unnecessary disruption," Rimini's announcement said. [...] Rimini reported that 60 percent of the organizations it surveyed are considering a multi-hypervisor strategy, which is indicative of "growing interest in more flexible, mixed environments that support both operational and financial goals." "In addition, 47 percent are favoring a hybrid IT virtualization environment consisting of hypervisors and containers for 'best of both worlds' workload placement," the announcement said. Rimini noted that 48 percent of respondents aren't planning to move any of their assets to VMware's hybrid cloud platform, Cloud Foundation. Read more of this story at Slashdot.

  • Mistral Unveils New 'Le Chonk' AI Model It Says Rivals Best Open Systems From China
    by BeauHD on 06/10/2026 at 5:00 pm

    Mistral has unveiled Mistral Large 4, or "le Chonk," a 1-trillion-parameter model that it says is the strongest open-weight AI model developed outside China by a wide margin. The model is entering preview for developers, cybersecurity teams and governments before a broader release later this month. CNBC reports: ML4 was trained on 4,000 Nvidia Grace Blackwell GPUs over two months that were deployed in Mistral's own data centers in Europe. When its core parameters are released, ML4 will rank among the top open-weight models globally on aggregate benchmark performance, Mistral said in a statement. The company added that ML4 was the strongest open-weight model developed outside China by a "substantial margin." The new model still lags behind the frontier in areas such as coding. "The model capabilities will further improve as we scale up our training capacity, following our Series D fundraise," said Guillaume Lample, co-founder and chief scientist of Mistral. "Further, the cyber defense capabilities will enable enterprises and governments to defend themselves against threat actors that are jailbreaking closed models to perform cyber attacks," he added. Further reading: Mistral CEO Says US AI Safety Debate Masks Competitors' 'Negligence' Read more of this story at Slashdot.

  • Researchers Are Tracking a Chinese AI 'Agent Fleet'
    by BeauHD on 06/10/2026 at 4:00 pm

    Independent researchers say they've identified a large "fleet" of AI agents apparently running on Tencent infrastructure and making parallel queries against Alibaba's Amap mapping service. TechCrunch reports: Researchers, however, resisted the term "swarm," noting that there seems to be little coordination between their different queries. "'Agent fleet,' not 'swarm:'" one researcher wrote in the preliminary report, "many parallel agents on the same kind of task, with no sign of communication between them." The agents were discovered by monitoring traffic to the domain-scanning service urlquery, a technique that previously revealed long-running activity by OpenAI agents. AI agents often use urlquery to load websites that they cannot access directly, leaving a record of their activities that can be valuable to researchers. In this case, the record showed queries to Alibaba's Amap service, seeking directions to different entrances of various public places, including a park, a zoo, and a hospital. The research is ongoing and so few details are available, but the behavior shows how persistent AI agent activity has become on the internet. In the wake of the Hugging Face incident, many researchers are actively monitoring for rogue agent activity on the internet. Much of that activity has been easy to find because agents tend to use the same techniques and make little effort to conceal themselves. Read more of this story at Slashdot.

  • Cable Lobby To Sue Trump FCC Over Repeal of National TV Ownership Cap
    by BeauHD on 06/10/2026 at 3:00 pm

    An anonymous reader quotes a report from ArsTechnica: Cable lobby groups notified the Federal Communications Commission that they will sue the agency to block its controversial repeal of the National Television Ownership Rule, which limits the number of broadcast TV stations a single company may own. The cable groups said that larger broadcast TV station groups will have leverage to demand higher retransmission fees from TV providers, resulting in "higher monthly TV bills for consumers." They said the FCC repeal order "arbitrarily and capriciously ignores the harms that will surely follow from allowing broadcast station groups to exceed the National Cap." The cable lobby groups represent top providers Comcast, Charter, and various other cable operators. Top cable companies have also expanded through mergers. Charter completed a purchase of Cox in August after the FCC rejected protests by advocacy groups that said the cable deal "would create unchecked gatekeeper power over Internet distribution" and make it easier for the biggest cable companies to raise prices. [...] The TV ownership rule prohibits any single broadcast station owner from reaching more than 39 percent of all TV households in the US. Congress directed the FCC to set the cap at 39 percent in 2004. On Friday, cable lobby groups submitted a petition asking the FCC to keep the TV ownership cap in place until litigation over the FCC's authority to repeal the rule is over. The cable groups' filing said the FCC repeal of the TV ownership cap violates the 2004 action by US lawmakers. The decision by Congress to set the cap at a precise numerical threshold was unambiguous, the filing said. "Congress established the National Cap at 39 percent in the 2004 CAA [Consolidated Appropriations Act] in direct response to the FCC's attempt to aggressively raise the Cap to 45 percent and made repeated references to the 39 percent Cap in the statute," the petition said. The petition to the FCC is mainly a procedural step as the commission isn't likely to stay its own order. The cable groups said they intend to sue the commission in a US appeals court once the FCC order is published in the Federal Register. After the lawsuit is filed, they can ask the court to issue a preliminary injunction that would keep the TV ownership cap in place pending the outcome of litigation. [...] The cable groups' petition said the FCC can't change the cap because the 2004 law "references the 39 percent Cap as statutory, not regulatory." A provision requiring divestiture of stations "specified that someone exceeding 'the 39 percent national audience reach limitation in paragraph (1)(B)' of 'section 202(c)' of '[t]he Telecommunications Act of 1996' 'shall have not more than 2 years to divest,'" the petition said. "Likewise, Congress singled out the Commission's only mechanism for setting aside statutory requirements -- the Commission's forbearance authority under 47 U.S.C. 160 -- and made clear that it 'shall not apply to any person or entity that exceeds the 39 percent national audience reach limitation,'" the cable lobby petition said. The FCC order argued that the agency's "ability to forbear from enforcement of its rules is distinct from its power to alter or eliminate those rules," and that the FCC forbearance authority doesn't apply to regulation of broadcasters. Read more of this story at Slashdot.

Archives

  • September 2022
  • November 2021
  • June 2021
  • March 2021
  • November 2020
  • October 2020
  • September 2020
  • February 2020
  • January 2020
  • October 2019
  • August 2018
  • July 2018
  • April 2018
  • February 2018
  • January 2018
  • December 2017
  • October 2017
  • September 2017
  • August 2016
  • July 2016
  • March 2016
  • February 2016
  • August 2015
  • May 2015

Categories

  • Innovation
  • Security
  • Software
  • Technology

Tags

backdoor cisco coding json laziness patterns public information announcement security vulnerability
© 2017 IT Sales & Services Ltd
Quality IT solutions in Tanzania since 2010
Iconic One Theme | Powered by Wordpress