25 Aug 2026

feedHacker News

Beyond Good and Evil: Nietzsche and the Great War

Comments

25 Aug 2026 3:09pm GMT

feedSlashdot

Motorola's 2027 Flagships Will Officially Support GrapheneOS

Motorola is working with GrapheneOS to officially support the privacy-focused Android alternative on its 2027 flagship phones, starting with a non-folding model and later expanding to the next Razr Fold and Razr Ultra. "These will ship with Motorola's normal Android skin, but you will be able to switch to GrapheneOS later if you want to," notes GSMArena.com. GrapheneOS says the devices will "meet or exceed" its hardware and update requirements, and will include seven years of "proper updates." Interestingly, Motorola will be doing much of the porting work itself.

Read more of this story at Slashdot.

25 Aug 2026 3:00pm GMT

feedHacker News

Polishing Cloth

Comments

25 Aug 2026 2:35pm GMT

Apple Releases New Polishing Cloth

Comments

25 Aug 2026 2:30pm GMT

feedSlashdot

Windows Backdoor 'Sleepwalker' Hides in Memory Until Activated by a 'Magic Packet'

"The Register has a story about a Windows backdoor that waits silently in memory for a 'magic packet' before springing into action," writes Slashdot reader fred133. "No outgoing traffic, just waiting..." From the report: Like a sleeper cell awaiting activation, a never-before-seen Windows backdoor dubbed Sleepwalker waits silently in memory for one specifically crafted network packet to wake it up and deliver commands using the malware's 23-instruction language. The commands can do everything from running code directly in memory to moving data off the computer. Malware researcher Dominik Reichel discovered the passive backdoor, which also has its own command language, and detailed Sleepwalker in a technical analysis on Monday. "What makes it worth writing up is what that packet carries: not a readable command, but a short program written in a command language of the backdoor's own design," Reichel said. "Its 23 instructions cover scheduling, several ways to move data, staged file delivery and running code directly in memory. Recovering the encryption key is not enough to understand one of these programs. The internal command language must be reverse engineered as well." In addition to having its own command language, it's also notable that the remote host can be a VMware VMCI target instead of a normal network address. "Taken as a whole, the approach here is consistent with a targeted, well-resourced operation rather than an opportunistic one," Reichel wrote. The malware, hidden inside a 64-bit Windows DLL file, impersonates Microsoft's dpapi.dll, part of Windows' data protection API for protecting sensitive data. It exports the same seven functions as the real dpapi.dll, but attempts to forward calls to a file named dpapisvc.dll, which is not a real Windows component. The file also has a forged ESET Management Agent version resource, and loads via side-loading into ERAAgent.exe, the Windows executable for ESET Management Agent. After confirming that its host process is named ERAAgent.exe, Sleepwalker goes to sleep inside the computer's memory, which also helps it remain hidden from traditional anti-virus tools. Unlike most backdoors, which call back to an attacker-controlled command-and-control (C2) server and start receiving commands, Sleepwalker lies in wait, checking every packet that passes through the network looking for a specific pattern - this is called a magic packet. Once it sniffs out a packet that matches the exact pattern, the backdoor decrypts the data and treats it as a command. "Because the backdoor never sends anything out on its own and does not open any obvious listening port by default, tools that watch for connections to known-bad domains or unusual outbound traffic will not see anything unusual," Reichel wrote. "The absence of outbound connections to known-bad infrastructure does not rule out an infection, either. A machine can be fully compromised by this backdoor while producing nothing at all for a network monitor to flag."

Read more of this story at Slashdot.

25 Aug 2026 11:00am GMT

AliExpress Leverages User Audio Systems For Fingerprinting

A developer says AliExpress is using the browser's WebAudio API to help fingerprint users by playing inaudible audio and measuring tiny differences in how their devices process it. CyberNews reports: The developer, "laserphile," wrote on their blog that they recently ran into some weird issues with their Bluetooth headphones. They couldn't play music via their phone when, at the same time, the AliExpress website was open on their PC. The headphones, laserphile explained, support multipoint Bluetooth audio so they can be connected to the PC and phone at the same time, for instance, playing music on the phone and announcing notifications through the PC. "Shortly after loading the AliExpress homepage, audio from my phone would stop playing. Closing the AliExpress tab fixes it immediately," the developer said in the blog post. "Muting the tab/Firefox/Windows does not help, and there is no visible video, music, or other media playing on the page. This seemed suspicious enough to investigate." It turns out that Alibaba has been secretly leveraging AliExpress users' audio systems to track them and build detailed fingerprints of them. [...] The AliExpress site was using the browser's WebAudio API to run invisible sound waves at zero volume. By measuring tiny hardware differences in how each PC processed those signals, the site created a unique digital fingerprint to track devices -- without user knowledge or consent. The secret audio path froze the developer's Bluetooth connection while covertly scraping hardware memory, screen dimensions, and network data in the background. The data collection extends beyond audio. Further inspection revealed that the same scripts also measure canvas, WebGL, hardware specs, WebRTC, mouse/touch events, and automation indicators. All of these form a broad device fingerprint that is sent back to Alibaba's telemetry servers. The simplest fix is to use a privacy-focused browser such as Firefox or Brave, which can limit or block this kind of fingerprinting. Brave goes further by randomizing fingerprint data and blocking the AliExpress tracking scripts involved.

Read more of this story at Slashdot.

25 Aug 2026 7:00am GMT

24 Aug 2026

feedArs Technica

AI is hitting entry-level jobs hardest, Stanford study finds

Young employment in AI-impacted fields down 19% compared to more AI-resistant occupations.

24 Aug 2026 9:45pm GMT

Data centers become "killer application" for new power transformer tech

Solid-state transformers could also benefit EV charging and someday households.

24 Aug 2026 9:32pm GMT

RFK Jr. may upend how vaccine recommendations are categorized

There are currently 3 categories. Without reason, RFK Jr. is considering changes.

24 Aug 2026 9:04pm GMT

feedLinuxiac

Vanilla OS 3 “Reunion” Released with GNOME 50 and ARM64 Support

Vanilla OS 3 “Reunion” Released with GNOME 50 and ARM64 Support

Vanilla OS 3 "Reunion" is now available with GNOME 50, Linux kernel 7.1, ARM64 support, reproducible builds, and a new backup tool.

24 Aug 2026 7:18pm GMT

Ardour 9.8 DAW Released with Initial Scales Support, Better Recording Recovery

Ardour 9.8 DAW Released with Initial Scales Support, Better Recording Recovery

Ardour 9.8 DAW is out with initial keys and scales support, improved recording recovery after crashes, clip recording enhancements, and more.

24 Aug 2026 3:17pm GMT

Wine’s Vkd3d 2.1 Improves HLSL Support and Shader Reflection

Wine’s Vkd3d 2.1 Improves HLSL Support and Shader Reflection

Vkd3d 2.1 open-source 3D library is out with expanded HLSL support, new shader reflection capabilities, SPIR-V improvements, and more.

24 Aug 2026 2:24pm GMT