8 place 0 fresh

98 Ruby Fights Supply-Chain Attacks With Filter Offering 'Cooldown' Before Installing New Packages

Slashdot
EditorDavid @ Slashdot 1 place · today 07:34 EDT

Ruby Fights Supply-Chain Attacks With Filter Offering 'Cooldown' Before Installing New Packages

Most supply-chain attacks using Ruby's package hosting site "exploit a narrow window," according to a new blog post form Ruby core maintainer Hiroshi Shibata.

So its packaging-managing Bundler tool now offers a filter that blocks new version until it's been public "for at least N days. Releases too new to have been scrutinized are passed over in favor of ones that have aged past the window."

The feature was designed in the open, drawing on how other ecosystems approach the same problem. It is opt-in, and

To see detailed statistics for the news please log in »

Read the original

Add your comment
You must be logged in with Facebook to read and write comments.

A newsletter a day!

You may get 10 most important news around midday in daily newsletter. Press the button and we will send you the most important news only, no spam attached.

or register

LIKE us on Facebook so you won't miss the most important news of the day!

News from the same source
Slashdot Slashdot
Silicon Valley
George Avalos @ Silicon Valley 1 place · 02/07/2106 01:28 EDT

Newark apartment complex bought for much less than prior value

An East Bay apartment complex has been bought at a price that's well below its prior value. Read more

0

🔮
08.06.2026 ♌︎ Dear Leo, today your day is filled with bright events and opportunities, especially in the... Read more ›
Silicon Valley
George Avalos @ Silicon Valley 2 place · 02/07/2106 01:28 EDT

PG&E buys San Jose building to bolster South Bay operations

A PG&E Corp. unit has bought a San Jose building in a move to bolster the utility's South Bay operations. Read more

0

Droid Life
Kellen @ Droid Life 1 place · today 09:45 EDT

Your YouTube Premium Price is Going Up Right Now

When Google told us that a YouTube Premium price increase was coming, they set June 8 as the day most would see it arrive on their bills. Well, today is June 8, so be ready for that monthly payment to increase. For those who missed it, YouTube Premium received a price increase back in April.... Read the original post: Your YouTube Premium Price is Going Up Right Now Read more

0 newcommer

MacRumors
Joe Rossignol @ MacRumors 1 place · today 09:42 EDT

Tim Cook Shares 'Good Morning' Video Ahead of Today's Apple Event

Ahead of the WWDC 2026 keynote at 10 a.m. Pacific Time today, Apple CEO Tim Cook has shared a short video in which country singer Lainey Wilson, actress Rhea Seehorn, DJ and producer Zedd, and other celebrities say "good morning" in various ways. "I think I'll say it the way I always say it," concludes Cook. Apple's hardware engineering chief John Ternus becomes CEO on September 1, so this WWDC... Read more

0 newcommer

Eurogamer.net
Connor Makar @ Eurogamer.net 1 place · today 09:41 EDT

Guild Wars 3 will have no battle pass or subscription because ArenaNet studio lead doesn't want to "keep people hostage"

Guild Wars 3 will feature no mandatory subscription or premium battlepass, and will be buyable as a premium product like previous games in the series. Read more Read more

0 newcommer

Business Insider
Kristine Villarroel @ Business Insider 1 place · today 09:38 EDT

20 of the highest-paid city mayors in the US, ranked by salary

Zohran Mamdani earns $258,750 as New York City's mayor, putting him among the country's highest-paid mayors. Read more

0 newcommer

Habr
QuantumUpAI @ Habr 1 place · today 09:35 EDT

Основа для сильных решений: как опережать конкурентов с собственной системой «РОВ»

Когда ваша команда в последний раз замечала важный рыночный сдвиг* до того, как он попал в отраслевой доклад на ежегодном форуме или стал темой колонки в Forbes? Если честный ответ требует паузы — значит, в компании нет своей системы раннего обнаружения возможностей (РОВ). Возможно, отдел маркетинга ведёт мониторинг упоминаний бренда и отзывов в СМИ и социальных сетях. Но это не одно и то же.Нередко подразделения и руководство компании работают в... Read more

0 newcommer

Habr
Vitalytupikov @ Habr 2 place · today 09:30 EDT

Почему я не стал делать мобильные приложения, а собрал одно (PWA) на все платформы

Когда продукт должен работать и на телефоне, и на планшете, и на ПК, и на маке, путей два. Первый по учебнику: нативка под iOS, нативка под Android, отдельный веб под десктоп, и дальше живёшь с тремя кодовыми базами, тремя релизными циклами и модерацией в сторах. Второй: одно сайт-приложение (SPA плюс PWA), которое ставится на домашний экран и работает везде одинаково.В своём проекте, агрегаторе нейросетей, я сознательно выбрал второй путь. Дальше... Read more

0 newcommer

Digital Trends
DT Staff @ Digital Trends 1 place · today 09:30 EDT

SANDISK Extreme Portable SSD Is Changing How You Should Think About Storage Upgrades

Looking for a smarter way to expand storage without upgrading your laptop? The SANDISK Extreme Portable SSD offers high-speed performance, flexible capacities up to 4TB, and plug-and-play convenience. Read more

0 fresh

CNET
Dashia Milden @ CNET 1 place · today 09:29 EDT

What Will We Learn About iOS 27 Today? CNET Readers Have Big Predictions About WWDC

Round 1 of the CNET Big Guessing Game is complete, and your predictions are enlightening. Read more

0 newcommer

Business Insider
Chris Rosenberg @ Business Insider 2 place · today 09:28 EDT

We bought our son a $349 unlimited flight pass for graduation. It's helping him learn valuable skills and life lessons.

An unlimited flight pass has given our teen independence. He's learning to navigate delays, book lodging, and problem-solve on his own. Read more

0 fresh

Tom's Hardware
Tom's Hardware 1 place · today 09:27 EDT

Disgruntled ASML employees threaten to boycott Elon Musk conference appearance — staff express ire at political involvement and 'Nazi sympathies'

ASML has confirmed that a group of disgruntled workers is pushing back hard against an invitation for Elon Musk to address the equipment maker’s closed annual tech conference. Read more

0 fresh

Skift
Deepthi Nair @ Skift 1 place · today 09:25 EDT

Middle East Airlines Face $4.3 Billion Loss — the Only Region in the Red

The Gulf hub model was built for scale and transfer traffic. The Iran war has disabled both. Read more

0 fresh

GSMArena.com
GSMArena.com 1 place · today 09:24 EDT

Samsung Galaxy Z Flip8 will use the Exynos 2600 in these regions

Last year, the Samsung Galaxy Z Flip7 was available exclusively with the Exynos 2500 chipset – this included markets like the US that traditionally see Snapdragon-based devices. We’ve already heard that its sequel will not repeat this strategy and will use a mix of Exynos and Snapdragon chips instead. Now a report from Korean publication The Bell has drawn the borders on the global map that divide the Exynos regions... Read more

0 fresh

Silicon Canals
Silicon Canals Editorial Team @ Silicon Canals 1 place · today 09:23 EDT

The colleague who stays composed during a layoff round and only falls apart in the parking lot isn’t unusually professional, they learned somewhere that grief had to wait until it wouldn’t cost anything

The colleague who holds it together during a layoff and only cries in the parking lot isn't displaying professionalism — they're running a learned protocol about when grief is affordable. The protocol was almost certainly written in childhood, and the workplace just gave it a new venue. Read more

0 fresh

Habr
e5004c @ Habr 3 place · today 09:17 EDT

210 тысяч звёзд за пять месяцев. Как отличить накрученный харнес от рабочего и при чём тут домашняя еда

Последние полгода наблюдается дикая истерия из-за этого харнеса. Репозиторий affaan-m/ECC появился в январе 2026-го и к началу июня собрал 210 тысяч звёзд. Для сравнения, freeCodeCamp набирал свои 446 тысяч двенадцать лет. В конце марта два независимых awesome-листа почти одновременно вписали в заголовок термин «harness engineering» — будто он всегда был. На GitHub завелись «фабрики скиллов», которые обещают сгенерировать тебе команду агентов из одного абзаца. Появилось то самое неприятное чувство: не... Read more

0 fresh

Habr
slava_rumin @ Habr · today 09:17 EDT

Мы делали 44 млн в год на развлечениях, а потом спрос просто исчез

Деньги улетали быстрее, чем мы успевали их находить. Месяцев семь мы занимались тем, что брали кредиты. Бегали во все банки подряд и брали деньги под конские проценты.Читатель из 2026 улыбнется, какие проценты мы тогда называли конскими. К августу поняли, что и этого не хватает, и начали распродавать имущество. Сначала ушло всё наше оборудование с ивентов: фотоаппараты, камеры, квадрокоптер. Распродали примерно на полтора миллиона. Потом машины, Коля продал Хёндай Солярис, я... Read more

0 fresh

Inc42 Media
Gaurav Bagur @ Inc42 Media 1 place · today 09:16 EDT

Aye Finance To Raise $15 Mn In Debt Funding

Recently listed NBFC Aye Finance’s WALCO (working committee of asset and liabilities committee of board of directors) has approved the… Read more

0 fresh

Habr
Shish1914 (Издательство БХВ) @ Habr · today 09:15 EDT

Компьютерное зрение на коленке: распознаем дорожные знаки и управляем роботом на ESP32 и Arduino

Каждый, кто осваивает Arduino, проходит одни и те же этапы.Сначала ты мигаешь светодиодом. Потом подключаешь датчик температуры — и вот уже температура выводится в монитор порта. Потом сервопривод — и какая-то пластиковая штуковина начинает смешно поворачиваться туда-сюда.Потом появляется идея сделать систему автополива для цветов (которая в итоге их зальёт). Или мобильного робота, который будет «приносить тапочки». Правда, через месяц робот будет пылиться на полке, а датчики с него переедут в... Read more

0 fresh

The most popular news from the same source for the last week
Slashdot Slashdot
Slashdot
BeauHD @ Slashdot · 06/01/2026 11:00 EDT

Botnet of More Than 17 Million Devices Dismantled

An anonymous reader quotes a report from Ars Technica: Authorities in the Netherlands said they dismantled a botnet that comprised more than 17 million devices and were managed by 200 servers in a joint operation by the police and the National Cyber Security Center. The action, announced Thursday, came about after a security researcher reported the sprawling network to authorities. The host infrastructure was located in the Netherlands. "The police... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 12:00 EDT

Dell Rivals Apple's MacBook Neo With $699 Touchscreen XPS 13 Laptop

Dell has introduced a redesigned $699 XPS 13 aimed squarely at Apple's budget MacBook Neo, offering a premium aluminum design, touch display, backlit keyboard, Wi-Fi 7, 512GB of base storage, and various other configuration options. Dell's machine costs more than Apple's entry model but tries to justify the difference with lighter weight, better display specs, and upgrade paths Apple doesn't offer. "The XPS 13 begins at $699 -- students can... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 13:00 EDT

Red Hat npm Packages Compromised to Spread a Credential-Stealing Worm

Aikido Security says more than 30 official @redhat-cloud-services npm packages were compromised with a credential-stealing worm called "Miasma," a variant resembling the open-sourced Mini Shai-Hulud supply-chain malware. "The packages were published via GitHub Actions OIDC, indicating the CI/CD pipeline was compromised rather than an npm token," the report says. "If you have installed any affected package versions since June 1, 2026, treat all CI secrets, cloud credentials, SSH keys, and... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 14:00 EDT

United Airlines Flight To Spain Pulls U-Turn Over Bluetooth Device Name

Tony Isaac shares a report from NPR: A United Airlines flight traveling from Newark, New Jersey, to Palma de Mallorca, Spain, was forced to make a U-turn and return to Newark after more than four hours in the air due to a security concern. According to passenger reports and air traffic control audio, the disruption was caused by a personal Bluetooth speaker -- reportedly belonging to a teenager -- that... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 15:00 EDT

Anthropic Invites EU To Access Mythos

An anonymous reader quotes a report from Politico: Anthropic has extended an invitation to the European Commission granting the EU's cyber agency access to its powerful AI hacking tool Mythos, according to a Commission official familiar with the process. The AI firm made the formal invitation after a meeting with the Commission in San Francisco last Thursday, the official said, adding the EU now has to put in place a... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 16:00 EDT

Anthropic Files to Go Public

Anthropic says it has confidentially filed an IPO prospectus with the SEC, "setting up a potentially historic share sale for investors ready to jump into artificial intelligence," reports CNBC. The move puts Anthropic ahead of OpenAI's expected filing and follows explosive reported growth, a massive new valuation, major infrastructure deals, and ongoing tensions with the Pentagon over its models. From the report: "This gives us the option to go public... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 17:00 EDT

Florida Sues OpenAI and CEO Sam Altman, Accusing Them of Putting Profit Over Safety

Florida's attorney general has sued (PDF) OpenAI and CEO Sam Altman, alleging the company prioritized growth and market value over user safety and failed to adequately warn about risks tied to ChatGPT. The lawsuit, the first by a U.S. state over OpenAI safety concerns, is separate from a criminal investigation the state opened into OpenAI in April. Variety reports: In the 83-page complaint filed in Florida circuit court, the state... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 18:00 EDT

Hackers Simply Asked Meta's AI To Take Over High-Profile Instagram Accounts

"Hackers used Meta's AI support chatbot to change email addresses associated with high-profile Instagram accounts, such as Barack Obama's White House account, allowing them to change the passwords and gain control over the accounts," writes Slashdot reader fropenn. Other accounts affected include the Chief Master Sergeant of Space Force and Sephora's. 404 Media reports: In March, Meta announced that it was pushing AI support to all accounts across Facebook and... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 19:00 EDT

The Pirate Bay Remains Resilient, 20 Years After The Raid

Twenty years after Swedish police raided The Pirate Bay's Stockholm data center and seized its servers, the site remains online. In fact, the 2006 crackdown arguably made it more famous, helping turn it into "one of the most resilient and iconic websites on the internet," reports TorrentFreak. From the report: On May 31, 2006, less than three years after The Pirate Bay was founded, 65 Swedish police officers entered a... Read more

0

Slashdot
BeauHD @ Slashdot · 06/01/2026 23:30 EDT

Remote Work, Not AI, Has Sidelined Recent College Graduates, Research Finds

An anonymous reader quotes a report from NPR: The buzz on college campuses is that AI is disrupting the job market for young college graduates. But new research from the Federal Reserve Bank of New York finds that the culprit may be something else: remote work. An analysis of federal employment data, paired with a deep dive into the flexible work arrangements at one unnamed Fortune 500 tech company, reveals... Read more

0

Most popular sources

  • You see 598 news out of 598.
  • Sources 61 out of 61.
150sec 0%
AlleyWatch 0%
VentureBeat 0%
Financial Times 0%
BetaKit 0%
View sources »

LIKE us on Facebook so you won't miss the most important news of the day!

08.06.2026 09:55
Last update: 09:50 EDT.
News rating updated: 16:50.

What is Times42?

Times42 brings you the most popular news from tech news portals in real-time chart.
Read about us in FAQ section.


Times42 © 2026