Hackaday describes Cloudflare’s attempt to redirect TCP connections for soft unicast and why a simple local proxy ultimately proved more robust. Cloudflare uses anycast extensively for its services. TCP_REPAIR is normally used to migrate connections.
Action Retro trims Linux 6.14 and BusyBox down so far that a bootable system runs from a 1.44 megabyte floppy disk. The kernel used comes from Linux 6.14. The target medium holds about 1.44 megabytes.
At the end of 2025 I gave my AI assistants a fixed system prompt because their constant agreement without real criticism annoyed me. It demands checking instead of guessing, contradiction instead of sugarcoating and no claimed tests that never happened. Here it is in full to copy, together with the reasons behind the rules and the places where it gets in its own way.
Transformers v5 aligns model definitions more closely with readable PyTorch code and reusable components. New architectures are meant to be integrated faster without making the library incomprehensible. Version 5 revises central patterns for defining models.
Manuel Schmitt replaces an unreliable procmail-to-Sieve converter with his own parser with a deliberately limited scope. The earlier converter was partly based on free scripts, including earlier work from Dovecot. The new converter was rewritten completely in-house.
The article builds a scheduler that adds new requests to running batches between individual decoding steps. This keeps accelerators better utilised despite answers of different lengths. Continuous batching schedules requests at token level instead of per fully completed batch.
RFC 9901 defines SD-JWT so that holders disclose only the claims they need from a signed record. Digital credentials do not have to choose between full disclosure and no verifiability. Data minimisation can be enforced cryptographically.
The new streaming architecture reads only the required ranges of remote data and plans access via Parquet metadata. This reduces requests and data transfer for large data sets. For selected workloads, the article reports up to a hundredfold increase in efficiency.
Johannes explains why, despite Rust and Go, he has enjoyed working in C for more than twenty years and uses it to implement his language Fun. Johannes has been programming seriously in C for more than twenty years. He does not use C++ out of personal dislike.
KG describes how cheaply generated texts, images and videos flood search spaces, make disinformation more credible and displace human work. An overflow of information destroys knowledge when verification becomes more expensive than production. Trust moves from individual pieces of content to traceable authors and creation processes.
The article transfers optimisations from OpenAI’s open gpt-oss models to the Transformers runtime. The focus is on attention, caches and kernels that also benefit other models. The work concerns support for the open gpt-oss model family.
In August 2025 Google closed a critical hole in Chrome (CVE-2025-9478), a use-after-free bug in the WebGL backend ANGLE. Attackers could exploit the memory bug via prepared websites, which usually leads to the execution of malicious code. The hole was fixed in Chrome 139.0.7258.154/155; Chromium-based browsers such as Edge are likely to be affected as well.
In August 2025 the hosting control panel cPanel/WHM received updates for holes in bundled third-party software. Named were a prototype pollution hole in requirejs 2.3.6 (CVE-2024-38999) and a memory bug in SQLite before version 3.50.2 (CVE-2025-6965, CVSS 7.2). Branches 130, 128, 126, 118 and 110 were fixed.
The guide leads from a simple CUDA kernel to tests, benchmarks, variants and automated delivery. It treats kernel work as a software product rather than a one-off speed hack. The workflow covers implementation, tests, benchmarks and publication.
In 2025 heise advertised a five-day iX workshop on hardening Linux servers with trainer Florian Winkler of B1 Systems. Topics were encryption, securing network services, two-factor authentication, SELinux and AppArmor, as well as log analysis and intrusion detection. There was also an introduction to penetration testing and practical exercises via SSH in a training environment.
The article adapts content-defined chunking to the internal structure of Parquet files. Similar table versions can therefore share blocks, even though file offsets have changed. Parquet organises data in column chunks and row groups.
The Kernel Hub distributes optimised GPU operators as versionable artefacts and loads suitable variants at runtime. This allows specialised kernels to be used without building them into every package. HF Kernels provides pre-built and custom GPU kernels via the Hub.
The article compares several quantisation routes for Diffusers and their effect on memory, speed and image quality. Because of their various components, diffusion pipelines have different requirements from pure LLMs. Diffusers supports several backends via quantised model components.
Brian Krebs examines a short 6.3 Tbit/s attack and links it to Aisuru, compromised IoT devices and a publicly rented DDoS service. The attack reached more than 6.3 Tbit/s. Google measured around 585 million packets per second.
Tiny Agents shows a deliberately small agent that discovers and calls tools via the Model Context Protocol. The code makes the planning and execution loop directly comprehensible. The example implementation is about 50 lines of code.
leyrer presents newer OpenSSH features beyond keys, jump hosts and port forwarding and assesses their benefit for current Linux systems. A familiar standard tool deserves regular reassessment instead of a configuration that never changes. Security gains often come from consistently using new features that are already there.
The Hub activates Xet as the storage layer for model and data set artefacts. Users keep Git-like workflows, while transfer and deduplication happen at block level. Xet is gradually replacing Git LFS as the storage path for large Hub files.
An old LCD panel and a projector are combined into a display whose local illumination clearly improves the black level. The original video has the ID qXrn4MqY1Wo. Two imperfect old devices can reach a new class of quality together.
The article explains the conversion of large Hub transfers to block-based Xet storage. Deduplication and parallel transfer are meant to handle changes to large files efficiently. The new architecture splits files into smaller content-addressed blocks.
In January 2025 six holes in rsync became known, including the critical CVE-2024-12084, which in combination allows servers with only anonymous read access to be taken over. According to Shadowserver, 17,475 freely reachable rsync servers worldwide were vulnerable on 16 January, with Germany in fifth place with 956. All versions up to 3.3.0 were affected; the fixes came in 3.4.0 and 3.4.1.
The article distils high-quality sentence representations into very small static embedding tables. This produces extremely fast baselines for search and classification without transformer inference. Training static embeddings is described with up to a 400-fold speed-up.
At CES 2025 Skylo Technologies put its satellite network for SMS on normal smartphones into international operation. Unlike Apple’s emergency service via Globalstar, Skylo relies on 3GPP standards (Release 17) and uses spectrum from satellite operators such as Viasat and EchoStar instead of its own satellites. In November 2024, together with Telekom and Qualcomm, Skylo had transmitted an SMS via a geostationary satellite into the network of the Telekom subsidiary Cosmote.
In January 2025 the industrial network equipment supplier Moxa warned of two holes in routers and security appliances used, among other places, in energy facilities. CVE-2024-9138 is based on hard-coded credentials and gives authenticated attackers root privileges; the critical CVE-2024-9140 allows system commands to be injected. Firmware updates were available for several model series, while for others there were only workarounds or a referral to support.
RFC 9700 brings together current security practices for OAuth 2.0 and rejects risky historical patterns. A flexible authorisation framework needs secure profiles and defaults. Best practices can later explicitly replace early standard options.