Normal view
-
TechCrunch
- Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson
How AI could make it harder for governments to use hacking tools
How a South African town cleaned up its polluted river using stones, wood and sand
Scientists say system to treat contaminated wastewater offers a model for ensuring food security in a fast-warming climate
All it took to turn the murky, heavily polluted waters of South Africa’s Stiebeuel River into a resource clean enough for irrigating a community’s vegetable plots was a collection of stones, heat-treated wood and sand.
Without chemicals and using renewable energy, researchers from the University of Cape Town are cleaning 36,000 litres of water, polluted by sewage, chemicals, and traces of drugs and medication, every day to make it usable for growing food in a fast-expanding informal settlement along the course of the river.
Continue reading...
© Photograph: Courtesy of Water Hub

© Photograph: Courtesy of Water Hub

© Photograph: Courtesy of Water Hub
ATM Flaws Reveal Key Weaknesses in the Software Supply Chain
Bhutan hosts first ‘conscious food summit’ amid threats to global supplies
Organisers say people must revive spiritual relationship with food amid double threat of climate crisis and conflict
Mending the broken food system under the threat of climate-driven weather extremes will require more than economic fixes and intensive agriculture, according to the organisers of a pioneering summit this week, who say the world must revive its spiritual relationship with food.
Delegates from more than 60 countries and the UN will gather for the next five days in Paro in the tiny Himalayan nation of Bhutan for the world’s first “conscious food summit”, which will bring together governments and farmers, mindfulness experts and yoga therapists.
Continue reading...
© Photograph: robertharding/Alamy

© Photograph: robertharding/Alamy

© Photograph: robertharding/Alamy
-
World news | The Guardian
- Bhutan hosts first ‘conscious food summit’ amid threats to global supplies
Bhutan hosts first ‘conscious food summit’ amid threats to global supplies
Organisers say people must revive spiritual relationship with food amid double threat of climate crisis and conflict
Mending the broken food system under the threat of climate-driven weather extremes will require more than economic fixes and intensive agriculture, according to the organisers of a pioneering summit this week, who say the world must revive its spiritual relationship with food.
Delegates from more than 60 countries and the UN will gather for the next five days in Paro in the tiny Himalayan nation of Bhutan for the world’s first “conscious food summit”, which will bring together governments and farmers, mindfulness experts and yoga therapists.
Continue reading...
© Photograph: robertharding/Alamy

© Photograph: robertharding/Alamy

© Photograph: robertharding/Alamy
The Cybersecurity Apocalypse Is Coming in ‘Months,’ AI Giants Warn
-
Все публикации подряд на Хабре
- redb 3.7: свой gRPC-протокол, отсечение props до агрегата и релиз, отозванный через день
redb 3.7: свой gRPC-протокол, отсечение props до агрегата и релиз, отозванный через день
Свой gRPC-wire в Route, отсечение props до агрегата в redb.Core, Tsak закрыт по умолчанию, второй фасад у Identity. И 3.7.0, отозванный через день.
За три дня у экосистемы сменилось три номера: 3.7.0, 3.7.1 и 3.7.2. Первый отозван, живой номер 3.7.2. Ниже разбор того, что в этой линии вышло, в порядке зависимостей: интеграционный движок redb.Route, хранилище redb.Core, рантайм redb.Tsak и OpenID-сервер redb.Identity. Все четыре продукта идут на одном номере, 66 пакетов.
Начну с того, почему номеров три.
Читать далееMicrosoft Teams Has Become a Haven for Scammers in China
SOAP в .NET без WCF: WS-Security, MTOM и ?wsdl как шаг маршрута
SOAP никуда не делся. Продаёте авиабилеты, значит ходите в Amadeus, Sabre и Travelport по SOAP. Интегрируетесь с банком, госпорталом, страховым бэкендом, биллингом оператора или почти любым корпоративным продуктом, купленным до 2015-го: там контракт это WSDL, а на проводе <soap:Envelope>. Подписи WS-Security, вложения MTOM, SOAP 1.1 рядом с 1.2, soap:Fault при ошибке: этот мир жив, он приносит деньги и не переезжает на REST по вашей вежливой просьбе.
В .NET вызывать его стало неудобно. WCF как полноценный фреймворк ушёл. CoreWCF есть, но во всех опубликованных версиях висит незакрытая крипто-уязвимость, так что затащить его значит поменять одну проблему на другую. dotnet-svcutil генерит клиент из WSDL на этапе сборки, но это кодогенерация, приклеенная сбоку, а не шаг интеграции. А хостинг SOAP-эндпоинта, WS-Security руками или проводка MTOM обычно заканчиваются кучей конфигурации System.ServiceModel, которую никто не хочет держать.
redb.Route.Soap идёт другим путём. SOAP становится обычным шагом пайплайна в вашем же .NET-процессе. Вызвал сервис, получил типизированный ответ. Поднял эндпоинт, отдал тело маршруту, вернул ответ. Всё in-box: HttpClient, общий Kestrel-хост и System.Security.Cryptography.Xml для WS-Security. Ни WCF, ни рантайма System.ServiceModel, ни уязвимой зависимости, ни отдельного шлюза. Разберём, как это используется и почему нативный коннектор внутри ESB бьёт codegen-клиента или отдельную коробку.
China Sees Opportunity in America’s Recent A.I. Security Scares
More Americans oppose police license plate cameras than support them: survey
How an Atlanta Suburb Ended Up Sharing Flock Data With More Than 2,000 Organizations
«Великое ограбление»: сейф, палочка для суши и девять вольт
Привет, Хабр! На связи Иван Глинкин, руководитель отдела аппаратных исследований из команды Бастиона.
Иногда для вскрытия сейфа не нужны никакие отмычки, болгарки и заклинания вроде «Алохомора» — достаточно деревянной палочки из набора для суши. И это еще не самая опасная уязвимость, найденная нами при тестировании российского «ящика с электронным замком для хранения ценностей». Мы заказали его на синем маркетплейсе почти за шесть тысяч рублей, а потом вскрыли за пару минут. О том, как нам это удалось, читайте под катом.
Читать далееTrump Administration’s Blacklisting of Anthropic Was Illegal, Judge Rules

© Karsten Moran for The New York Times
Введение в воспроизводимые сборки
И вновь я всех приветствую! Сегодня я бы хотел рассказать о такой теме как воспроизводимые приложения/сборки.
Читать далее-
NYT > Top Stories
- OpenAI and 100 Others Warn That Window to Defend Against A.I. Attacks Is Narrowing
OpenAI and 100 Others Warn That Window to Defend Against A.I. Attacks Is Narrowing

© Anna Rose Layden/Reuters
A Georgia Cop Used Flock to Track 2 Other Cops: His Ex and Her Friend
ATF declares ‘major incident’ as ransomware gang claims hack
-
TechCrunch
- OpenAI, Anthropic, Google, and 100 other companies call for action to defend against rogue AI