Invisible Hardware Hacks Allowing Full Remote Access Cost Pennies

Long-time Slashdot reader Artem S. Tashkinov quotes Wired: More than a year has passed since Bloomberg Businessweek grabbed the lapels of the cybersecurity world with a bombshell claim: that Supermicro motherboards in servers used by major tech firms, including Apple and Amazon, had been stealthily implanted with a chip the size of a rice grain that allowed Chinese hackers to spy…

Tor Project Removes 13.5% of Current Servers For Running EOL Versions

An anonymous reader writes: The Tor Project has removed from its network this week more than 800 servers that were running outdated and end-of-life (EOL) versions of the Tor software. The removed servers represent roughly 13.5% of the 6,000+ servers that currently comprise the Tor network and help anonymize traffic for users across the world. Roughly 750 of the removed servers…

Big ISPs Worry DNS-Over-HTTPS Could Stop Monitoring and Modifying of DNS Queries

“Big Cable and other telecom industry groups warned that Google’s support for DNS over HTTPS (DoH) ‘could interfere on a mass scale with critical Internet functions, as well as raise data-competition issues,'” reports Ars Technica. But are they really just worried DNS over HTTPS will end useful ISP practices that involve monitoring or modifying DNS queries? For example, queries to malware-associated…

Dutch Police Take Down Hornets’ Nest of DDoS Botnets

Dutch police have taken down this week a bulletproof hosting provider that has sheltered tens of IoT botnets that have been responsible for hundreds of thousands of DDoS attacks around the world, ZDNet reports. From the report: Servers were seized, and two men were arrested yesterday at the offices of KV Solutions BV (KV hereinafter), a so-called bulletproof hosting provider, a…

As ‘CentOS Stream’ Brings Rolling Releases, Some RHEL Development Moves Into CentOS Project

It’s been five years since the release of CentOS 7, but Indy1 (Slashdot reader #99,447) reminded us that CentOS 8 finally arrived this week — along with a big new plan for rolling releases. It Pro Today points out that CentOS already runs on about 16% of all servers, “a number that’s only bested by Ubuntu with an estimated 28%,” and…

Apple Says a Bug May Grant ‘Full Access’ To Third-Party Keyboards By Mistake

Apple is warning users of a bug in iOS 13 and iPadOS involving third-party keyboards. From a report: In a brief advisory posted Tuesday, the tech giant said the bug impacts third-party keyboards which have the ability to request “full access” permissions. iOS 13 was released last week. Both iOS 13.1 and iPadOS 13.1, the new software version for iPads, are…