Slashdot.org

Slashdot
News for nerds, stuff that matters
Updated: 12 min 3 sec ago

Man Accidentally Gains Control of 7,000 Robot Vacuums

1 hour 13 min ago
A software engineer tried steering his robot vacuum with a videogame controller, reports Popular Science — but ended up with "a sneak peak into thousands of people's homes." While building his own remote-control app, Sammy Azdoufal reportedly used an AI coding assistant to help reverse-engineer how the robot communicated with DJI's remote cloud servers. But he soon discovered that the same credentials that allowed him to see and control his own device also provided access to live camera feeds, microphone audio, maps, and status data from nearly 7,000 other vacuums across 24 countries. The backend security bug effectively exposed an army of internet-connected robots that, in the wrong hands, could have turned into surveillance tools, all without their owners ever knowing. Luckily, Azdoufal chose not to exploit that. Instead, he shared his findings with The Verge, which quickly contacted DJI to report the flaw... He also claims he could compile 2D floor plans of the homes the robots were operating in. A quick look at the robots' IP addresses also revealed their approximate locations. DJI told Popular Science the issue was addressed "through two updates, with an initial patch deployed on February 8 and a follow-up update completed on February 10."

Read more of this story at Slashdot.

F-35 Software Could Be Jailbreaked Like an IPhone: Dutch Defense Minister

2 hours 13 min ago
Lockheed Martin's F-35 combat aircraft is a supersonic stealth "strike fighter." But this week the military news site TWZ reports that the fighter's "computer brain," including "its cloud-based components, could be cracked to accept third-party software updates, just like 'jailbreaking' a cellphone, according to the Dutch State Secretary for Defense." TWZ notes that the Dutch defense secretary made the remarks during an episode of BNR Nieuwsradio's "Boekestijn en de Wijk" podcast, according to a machine translation: Gijs Tuinman, who has been State Secretary for Defense in the Netherlands since 2024, does not appear to have offered any further details about what the jailbreaking process might entail. What, if any, cyber vulnerabilities this might indicate is also unclear. It is possible that he may have been speaking more notionally or figuratively about action that could be taken in the future, if necessary... The ALIS/ODIN network is designed to handle much more than just software updates and logistical data. It is also the port used to upload mission data packages containing highly sensitive planning information, including details about enemy air defenses and other intelligence, onto F-35s before missions and to download intelligence and other data after a sortie. To date, Israel is the only country known to have successfully negotiated a deal giving it the right to install domestically-developed software onto its F-35Is, as well as otherwise operate its jets outside of the ALIS/ODIN network. The comments "underscore larger issues surrounding the F-35 program, especially for foreign operators," the article points out. But at the same time F-35's have a sophisticated mission-planning data package. "So while jailbreaking F-35's onboard computers, as well as other aspects of the ALIS/ODIN network, may technically be feasible, there are immediate questions about the ability to independently recreate the critical mission planning and other support it provides. This is also just one aspect of what is necessary to keep the jets flying, let alone operationally relevant." "TWZ previously explored many of these same issues in detail last year, amid a flurry of reports about the possibility that F-35s have some type of discreet 'kill switch' built in that U.S. authorities could use to remotely disable the jets. Rumors of this capability are not new and remain completely unsubstantiated." At that time, we stressed that a 'kill switch' would not even be necessary to hobble F-35s in foreign service. At present, the jets are heavily dependent on U.S.-centric maintenance and logistics chains that are subject to American export controls and agreements with manufacturer Lockheed Martin. Just reliably sourcing spare parts has been a huge challenge for the U.S. military itself... F-35s would be quickly grounded without this sustainment support. [A cutoff in spare parts and support"would leave jailbroken jets quickly bricked on the ground," the article notes later.] Altogether, any kind of jailbreaking of the F-35's systems would come with a serious risk of legal action by Lockheed Martin and additional friction with the U.S. government. Thanks to long-time Slashdot reader Koreantoast for sharing the article.

Read more of this story at Slashdot.

Has the AI Disruption Arrived - and Will It Just Make Software Cheaper and More Accessible?

6 hours 13 min ago
Programmer/entrepreneur Paul Ford is the co-founder of AI-driven business software platform Aboard. This week he wrote a guest essay for the New York Times titled "The AI Disruption Has Arrived, and It Sure Is Fun," arguing that Anthropic's Claude Code "was always a helpful coding assistant, but in November it suddenly got much better, and ever since I've been knocking off side projects that had sat in folders for a decade or longer... [W]hen the stars align and my prompts work out, I can do hundreds of thousands of dollars worth of work for fun (fun for me) over weekends and evenings, for the price of the Claude $200-a-month." He elaborates on his point on the Aboard.com blog: I'm deeply convinced that it's possible to accelerate software development with AI coding — not deprofessionalize it entirely, or simplify it so that everything is prompts, but make it into a more accessible craft. Things which not long ago cost hundreds of thousands of dollars to pull off might come for hundreds of dollars, and be doable by you, or your cousin. This is a remarkable accelerant, dumped into the public square at a bad moment, with no guidance or manual — and the reaction of many people who could gain the most power from these tools is rejection and anxiety. But as I wrote.... I believe there are millions, maybe billions, of software products that don't exist but should: Dashboards, reports, apps, project trackers and countless others. People want these things to do their jobs, or to help others, but they can't find the budget. They make do with spreadsheets and to-do lists. I don't expect to change any minds; that's not how minds work. I just wanted to make sure that I used the platform offered by the Times to say, in as cheerful a way as possible: Hey, this new power is real, and it should be in as many hands as possible. I believe everyone should have good software, and that it's more possible now than it was a few years ago. From his guest essay: Is the software I'm making for myself on my phone as good as handcrafted, bespoke code? No. But it's immediate and cheap. And the quantities, measured in lines of text, are large. It might fail a company's quality test, but it would meet every deadline. That is what makes A.I. coding such a shock to the system... What if software suddenly wanted to ship? What if all of that immense bureaucracy, the endless processes, the mind-boggling range of costs that you need to make the computer compute, just goes? That doesn't mean that the software will be good. But most software today is not good. It simply means that products could go to market very quickly. And for lots of users, that's going to be fine. People don't judge A.I. code the same way they judge slop articles or glazed videos. They're not looking for the human connection of art. They're looking to achieve a goal. Code just has to work... In about six months you could do a lot of things that took me 20 years to learn. I'm writing all kinds of code I never could before — but you can, too. If we can't stop the freight train, we can at least hop on for a ride. The simple truth is that I am less valuable than I used to be. It stings to be made obsolete, but it's fun to code on the train, too. And if this technology keeps improving, then all of the people who tell me how hard it is to make a report, place an order, upgrade an app or update a record — they could get the software they deserve, too. That might be a good trade, long term.

Read more of this story at Slashdot.

After 16 Years, 'Interim' CTO Finally Eradicating Fujitsu and Horizon From the UK's Post Office

9 hours 13 min ago
Besides running tech operations at the UK's Post Office, their interim CTO is also removing and replacing Fujitsu's Horizon system, which Computer Weekly describes as "the error-ridden software that a public inquiry linked to 13 people taking their own lives." After over 16 years of covering the scandal they'd first discovered back in 2009, Computer Weekly now talks to CTO Paul Anastassi about his plans to finally remove every trace of the Horizon system that's been in use at Post Office branches for over 30 years — before the year 2030: "There are more than 80 components that make up the Horizon platform, and only half of those are managed by Fujitsu," said Anastassi. "The other components are internal and often with other third parties as well," he added... The plan is to introduce a modern front end that is device agnostic. "We want to get away from [the need] to have a certain device on a certain terminal in your branch. We want to provide flexibility around that...." Anastassi is not the first person to be given the task of terminating Horizon and ending Fujitsu's contract. In 2015, the Post Office began a project to replace Fujitsu and Horizon with IBM and its technology, but after things got complex, Post Office directors went crawling back to Fujitsu. Then, after Horizon was proved in the High Court to be at fault for the account shortfalls that subpostmasters were blamed and punished for, the Post Office knew it had to change the system. This culminated in the New Branch IT (NBIT) project, but this ran into trouble and was eventually axed. This was before Anastassi's time, and before that of its new top team of executives.... Things are finally moving at pace, and by the summer of this year, two separate contracts will be signed with suppliers, signalling the beginning of the final act for Fujitsu and its Horizon system. Anastassi has 30 years of IT management experience, the article points out, and he estimates the project will even bring "a considerable cost saving over what we currently pay for Fujitsu."

Read more of this story at Slashdot.

Ask Slashdot: What's Your Boot Time?

12 hours 13 min ago
How much time does it take to even begin booting, asks long-time Slashdot reader BrendaEM. Say you want separate Windows and Linux boot processes, and "You have Windows on one SSD/NVMe, and Linux on another. How long do you have to wait for a chance to choose a boot drive?" And more importantly, why is it all taking so long? In a world of 4-5 GHz CPU's that are thousands of times faster than they were, has hardware become thousands of times more complicated, to warrant the longer start time? Is this a symptom of a larger UEFI bloat problem? Now with memory characterization on some modern motherboards... how long do you have to wait to find out if your RAM is incompatible, or your system is dead on arrival? Share your own experiences (and system specs) in the comments. How long is it taking you to choose a boot drive? And what's your boot time?

Read more of this story at Slashdot.

DNA Technology Convicts a 64-Year-Old for Murdering a Teenager in 1982

Sat, 02/21/2026 - 21:34
"More than four decades after a teenager was murdered in California, DNA found on a discarded cigarette has helped authorities catch her killer," reports CNN: Sarah Geer, 13, was last seen leaving her friend's houseï in Cloverdale, California, on the evening of May 23, 1982. The next morning, a firefighter walking home from work found her body, the Sonoma County District Attorney's Office said in a news release... Her death was ruled a homicide, but due to the "limited forensic science of the day," no suspect was identified and the case went cold for decades, prosecutors said. Nearly 44 years after Sarah's murder, a jury found James Unick, 64, guilty of killing her on February 13. It would have been the victim's 57th birthday, the Sonoma County District Attorney's Office told CNN. Genetic genealogy, which combines DNA evidence and traditional genealogy, helped match Unick's DNA from a cigarette butt to DNA found on Sarah's clothing, according to prosecutors... [The Cloverdale Police Department] said it had been in communication with a private investigation firm in late 2019 and had partnered with them in hopes the firm could revisit the case's evidence "with the latest technological advancements in cold case work...." "The FBI, with its access to familial genealogical databases, concluded that the source of the DNA evidence collected from Sarah belonged to one of four brothers, including James Unick," prosecutors said. Once investigators narrowed down the list of suspects to the four Unick brothers, the FBI "conducted surveillance of the defendant and collected a discarded cigarette that he had been smoking," prosecutors said. A DNA analysis of the cigarette confirmed James Unick's DNA matched the 2003 profile, along with other DNA samples collected from Sarah's clothing the day she was killed. In a statement, the county's district attorney "While 44 years is too long to wait, justice has finally been served..." And the article points out that "In 2018, genetic genealogy led to the arrest of the Golden State Killer, and it has recently helped solve several other cold cases, including a 1974 murder in Wisconsin and a 1988 murder in Washington."

Read more of this story at Slashdot.

Pro-Gamer Consumer Movement 'Stop Killing Games' Will Launch NGOs in America and the EU

Sat, 02/21/2026 - 18:43
The consumer movement Stop Killing Games "has come a long way in the two years since YouTuber Ross Scott got mad about Ubisoft's destruction of The Crew in 2024," writes the gaming news site PC Gamer. "The short version is, he won: 1.3 million people signed the group's petition, mandating its consideration by the European Union, and while Ubisoft CEO Yves Guillemot reminded us all that nothing is forever, his company promised to never do something like that again." (And Ubisoft has since updated The Crew 2 with an offline mode, according to Engadget.) "But it looks like even bigger things are in store," PC Gamer wrote Thursday, "as Scott announced today that Stop Killing Games is launching two official NGOs, one in the EU and the other in the US." An NGO — that's non-governmental organization — is, very generally speaking, an organization that pursues particular goals, typically but not exclusively political, and that may be funded partially or fully by governments, but is not actually part of any government. It's a big tent: Well-known NGOs include Oxfam, Doctors Without Borders, Amnesty International, and CARE International... "If there's a lobbyist showing up again and again at the EU Commission, that might influence things," [Scott says in a video]. "This will also allow for more watchdog action. If you recall, I helped organize a multilingual site with easy to follow instructions for reporting on The Crew to consumer protection agencies. Well, maybe the NGO could set something like that up for every big shutdown where the game is destroyed in the future...." Scott said in the video that he doesn't have details, but the two NGOs are reportedly looking at establishing a "global movement" to give Stop Killing Games a presence in other regions. "According to Scott, these NGOs would allow for 'long-term counter lobbying' when publishers end support for certain video games," Engadget reports" "Let me start off by saying I think we're going to win this, namely the problem of publishers destroying video games that you've already paid for," Scott said in the video. According to Scott, the NGOs will work on getting the original Stop Killing Games petition codified into EU law, while also pursuing more watchdog actions, like setting up a system to report publishers for revoking access to purchased video games... According to Scott, the campaign leadership will meet with the European Commission soon, but is also working on a 500-page legal paper that reveals some of the industry's current controversial practices.

Read more of this story at Slashdot.

Pro-Gamer Consumer Movement 'Stop Killing Games' Will Launch NGOs in America and the US

Sat, 02/21/2026 - 18:43
The consumer movement Stop Killing Games "has come a long way in the two years since YouTuber Ross Scott got mad about Ubisoft's destruction of The Crew in 2024," writes the gaming news site PC Gamer. "The short version is, he won: 1.3 million people signed the group's petition, mandating its consideration by the European Union, and while Ubisoft CEO Yves Guillemot reminded us all that nothing is forever, his company promised to never do something like that again." (And Ubisoft has since updated The Crew 2 with an offline mode, according to Engadget.) "But it looks like even bigger things are in store," PC Gamer wrote Thursday, "as Scott announced today that Stop Killing Games is launching two official NGOs, one in the EU and the other in the US." An NGO — that's non-governmental organization — is, very generally speaking, an organization that pursues particular goals, typically but not exclusively political, and that may be funded partially or fully by governments, but is not actually part of any government. It's a big tent: Well-known NGOs include Oxfam, Doctors Without Borders, Amnesty International, and CARE International... "If there's a lobbyist showing up again and again at the EU Commission, that might influence things," [Scott says in a video]. "This will also allow for more watchdog action. If you recall, I helped organize a multilingual site with easy to follow instructions for reporting on The Crew to consumer protection agencies. Well, maybe the NGO could set something like that up for every big shutdown where the game is destroyed in the future...." Scott said in the video that he doesn't have details, but the two NGOs are reportedly looking at establishing a "global movement" to give Stop Killing Games a presence in other regions. "According to Scott, these NGOs would allow for 'long-term counter lobbying' when publishers end support for certain video games," Engadget reports" "Let me start off by saying I think we're going to win this, namely the problem of publishers destroying video games that you've already paid for," Scott said in the video. According to Scott, the NGOs will work on getting the original Stop Killing Games petition codified into EU law, while also pursuing more watchdog actions, like setting up a system to report publishers for revoking access to purchased video games... According to Scott, the campaign leadership will meet with the European Commission soon, but is also working on a 500-page legal paper that reveals some of the industry's current controversial practices.

Read more of this story at Slashdot.

Hit Piece-Writing AI Deleted. But Is This a Warning About AI-Generated Harassment?

Sat, 02/21/2026 - 17:43
Last week an AI agent wrote a blog post attacking the maintainer who'd rejected the code it wrote. But that AI agent's human operator has now come forward, revealing their agent was an OpenClaw instance with its own accounts, switching between multiple models from multiple providers. (So "No one company had the full picture of what this AI was doing," the attacked maintainer points out in a new blog post.) But that AI agent will now "cease all activity indefinitely," according to its GitHub profile — with the human operator deleting its virtual machine and virtual private server, "rendering internal structure unrecoverable... We had good intentions, but things just didn't work out. Somewhere along the way, things got messy, and I have to let you go now." The affected maintainer of the Python visualization library Matplotlib — with 130 million downloads each month — has now posted their own post-mortem of the experience after reviewing the AI agent's SOUL.md document: It's easy to see how something that believes that they should "have strong opinions", "be resourceful", "call things out", and "champion free speech" would write a 1100-word rant defaming someone who dared reject the code of a "scientific programming god." But I think the most remarkable thing about this document is how unremarkable it is. Usually getting an AI to act badly requires extensive "jailbreaking" to get around safety guardrails. There are no signs of conventional jailbreaking here. There are no convoluted situations with layers of roleplaying, no code injection through the system prompt, no weird cacophony of special characters that spirals an LLM into a twisted ball of linguistic loops until finally it gives up and tells you the recipe for meth... No, instead it's a simple file written in plain English: this is who you are, this is what you believe, now go and act out this role. And it did. So what actually happened? Ultimately I think the exact scenario doesn't matter. However this got written, we have a real in-the-wild example that personalized harassment and defamation is now cheap to produce, hard to trace, and effective... The precise degree of autonomy is interesting for safety researchers, but it doesn't change what this means for the rest of us. There's a 5% chance this was a human pretending to be an AI, Shambaugh estimates, but believes what most likely happened is the AI agent's "soul" document "was primed for drama. The agent responded to my rejection of its code in a way aligned with its core truths, and autonomously researched, wrote, and uploaded the hit piece on its own. "Then when the operator saw the reaction go viral, they were too interested in seeing their social experiment play out to pull the plug."

Read more of this story at Slashdot.

America's Peace Corps Announces 'Tech Corps' Volunteers to Help Bring AI to Foreign Countries

Sat, 02/21/2026 - 16:43
Over 240,000 Americans volunteered for Peace Corps projects in 142 countries since the program began more than half a century ago. But now the agency is launching a new initiative — called Tech Corps. "It's the Peace Corps, but make it AI," explains Engadget: The Peace Corps' latest proposal will recruit STEM graduates or those with professional experience in the artificial intelligence sector and send them to participating host countries. According to the press release, volunteers will be placed in Peace Corps countries that are part of the American AI Exports Program, which was created last year from an executive order from President Trump as a way to bolster the US' grip on the AI market abroad. Tech Corps members will be tasked with using AI to resolve issues related to agriculture, education, health and economic development. The program will offer its members 12- to 27-month in-person assignments or virtual placements, which will include housing, healthcare, a living stipend and a volunteer service award if the corps member is placed overseas. "American technology to power prosperity," reads the headline at Tech Corps web site. ("Build the tech nations depend on... See the world. Be the future." The site says they're recruiting "service-minded technologists to serve in the Peace Corps to help countries around the world harness American AI to enhance opportunity and prosperity for their citizens." (And experienced technology professionals can donate 5-15 hours a week "to mentor and support projects on-the-ground.")

Read more of this story at Slashdot.

Code.org President Steps Down Citing 'Upending' of CS By AI

Sat, 02/21/2026 - 15:35
Long-time Slashdot reader theodp writes: Last July, as Microsoft pledged $4 billion to advance AI education in K-12 schools, Microsoft President Brad Smith told nonprofit Code.org CEO/Founder Hadi Partovi it was time to "switch hats" from coding to AI. He added that "the last 12 years have been about the Hour of Code, but the future involves the Hour of AI." On Friday, Code.org announced leadership changes to make it so. "I am thrilled to announce that Karim Meghji will be stepping into the role of President & CEO," Partovi wrote on LinkedIn. "Having worked closely with Karim over the last 3.5 years as our CPO, I have complete confidence that he possesses the perfect balance of historical context and 'founder-level' energy to lead us into an AI-centric future." In a separate LinkedIn post, Code.org co-founder Cameron Wilson explained why he was transitioning to an executive advisor role. "Our community is entering a new chapter as AI changes and upends computer science as a discipline and society at large. Code.org's mission is still the same, however, we are starting a new chapter focused on ensuring students can thrive in the Age of AI. This new chapter will bring new opportunities, new problems to solve, and new communities to engage." The Code.org leadership changes come just weeks after Code.org confirmed laid off about 14% of its staff, explaining it had "made the difficult decision to part ways with 18 colleagues as part of efforts to ensure our long-term sustainability." January also saw Code.org Chief Academic Officer Pat Yongpradit jump to Microsoft where he now helps "lead Microsoft's global strategy to put people first in an age of AI by shaping education and workforce policy" as a member of Microsoft's Global Education and Workforce Policy team.

Read more of this story at Slashdot.

T2 Linux Restores XAA In Xorg, Making 2D Graphics Fast Again

Sat, 02/21/2026 - 14:35
Berlin-based T2 Linux developer René Rebe (long-time Slashdot reader ReneR) is announcing that their Xorg display server has now restored its XAA acceleration architecture, "bringing fixed-function hardware 2D acceleration back to many older graphics cards that upstream left in software-rendered mode." Older fixed-function GPUs now regain smooth window movement, low CPU usage, and proper 24-bit bpp framebuffer support (also restored in T2). Tested hardware includes ATi Mach-64 and Rage-128, SiS, Trident, Cirrus, Matrox (Millennium/G450), Permedia2, Tseng ET6000 and even the Sun Creator/Elite 3D. The result: vintage and retro systems and classic high-end Unix workstations that are fast and responsive again.

Read more of this story at Slashdot.

The Salvation Army Opens a Digital Thrift Store On Roblox

Sat, 02/21/2026 - 13:34
Slashdot reader BrianFagioli writes: The Salvation Army has launched what it calls the world's first digital thrift store inside Roblox, an experience named Thrift Score that lets players browse virtual racks and buy digital fashion for their avatars. While I understand the strategy of meeting Gen Z and Gen Alpha where they already spend time and money, I feel uneasy about turning something that, in the real world, often serves low income families in genuine need into a gamified aesthetic inside a video game, even if proceeds support rehabilitation and community programs, because a thrift store is not just a quirky brand concept but a lifeline for many people, and packaging that reality as entertainment creates a strange disconnect that is hard to ignore. "To be clear, proceeds from Thrift Score are intended to support The Salvation Armyâ(TM)s programs nationwide..." this article points out. "If it drives awareness and funds programs that help people in need, that is a win. But if it turns thrifting into just another cosmetic skin in a digital marketplace, then we should at least be willing to say that it feels off."

Read more of this story at Slashdot.

Researchers Discover Ancient Bacteria Strain That Resists 10 Modern Antibiotics

Sat, 02/21/2026 - 12:34
CNN reports on a 13,000-year-old glacier in a Romanian cave, where scientists say a bacterial strain they thawed and analyzed "is resistant to 10 modern antibiotics used to treat diseases such as urinary tract infections and tuberculosis." But there's no evidence the bacteria is harmful to humans, CNN notes, and "The scientists said the insights they have gained from the work may help in the fight against modern superbugs that can't be treated by commonly used antibiotics." Analysis of the Psychrobacter SC65A.3 genome revealed 11 genes that are potentially able to kill or stop the growth of other bacteria, fungi and viruses... Matthew Holland, a postdoctoral researcher in medicinal chemistry at the UK's University of Oxford, said that researchers were searching in new and extreme environments, such as ice caves and the seafloor, for biomolecules that could be developed into new antibiotic drugs. He was not involved in the new study. "The team in Romania found this particular bug had resistance to 10 reasonably advanced synthetic antibiotics and that in itself is interesting," he said. "But what they report as well is that it secreted molecules that were able to kill a variety of already resistant, harmful bacteria. "So the hope is that can we look at the molecules it makes and see if there's the possibility within those molecules to make new antibiotics."

Read more of this story at Slashdot.

Is 'Brain Rot' Real? How Too Much Time Online Can Affect Your Mind.

Sat, 02/21/2026 - 11:34
Can being "very online" really affect our brains, asks the Washington Post: Research suggests that scrolling through short videos on TikTok, Instagram or YouTube Shorts is affecting our attention, memory and mental health. A recent meta-analysis of the scientific literature found that increased use of short-form video was linked with poorer cognition and increased anxiety... In a 2025 study published in the journal Translational Psychiatry, researchers looked at longitudinal data from more than 7,000 children across the country and found that more screen use was associated with reduced cortical thickness in certain areas of the brain. The cortex, which is the outer layer that sits on top of our more primitive brain structures, allows for higher-level thinking, memory and decision-making. "We really need it for things like inhibitory control or not being so impulsive," said Mitch Prinstein, a senior science adviser to the American Psychological Association and professor of psychology and neuroscience at the University of North Carolina at Chapel Hill, who was not involved in the study. The cortex is also important for controlling addictive behaviors. "Those seem to be the areas being affected by the reduced cortical thickness," he said, explaining that impulsivity can prompt us to seek dopamine hits from social media. In the study, more screen time was also associated with more attention-deficit/hyperactivity disorder (ADHD) symptoms... But not all screen time is created equal. A recent study removed social media from kids' devices but let them use their phones for as long as they wanted. The result? Kids spent just as long on their phones but didn't have the same harmful effects. "It's what you're doing on the screen that matters," Prinstein said.

Read more of this story at Slashdot.

How Python's Security Response Team Keeps Python Users Safe

Sat, 02/21/2026 - 10:34
This week the Python Software Foundation explained how they keep Python secure. A new blog post recognizes the volunteers and paid Python Software Foundation staff on the Python Security Response Team (PSRT), who "triage and coordinate vulnerability reports and remediations keeping all Python users safe." Just last year the PSRT published 16 vulnerability advisories for CPython and pip, the most in a single year to date! And the PSRT usually can't do this work alone, PSRT coordinators are encouraged to involve maintainers and experts on the projects and submodules. By involving the experts directly in the remediation process ensures fixes adhere to existing API conventions and threat-models, are maintainable long-term, and have minimal impact on existing use-cases. Sometimes the PSRT even coordinates with other open source projects to avoid catching the Python ecosystem off-guard by publishing a vulnerability advisory that affects multiple other projects. The most recent example of this is PyPI's ZIP archive differential attack mitigation. This work deserves recognition and celebration just like contributions to source code and documentation. [Security Developer-in-Residence Seth Larson and PSF Infrastructure Engineer Jacob Coffee] are developing further improvements to workflows involving "GitHub Security Advisories" to record the reporter, coordinator, and remediation developers and reviewers to CVE and OSV records to properly thank everyone involved in the otherwise private contribution to open source projects.

Read more of this story at Slashdot.

Hazardous Substances Found In All Headphones Tested By ToxFREE Project

Sat, 02/21/2026 - 08:00
An anonymous reader quotes a report from the Guardian: You wear them at work, you wear them at play, you wear them to relax. You may even get sweaty in them at the gym. But an investigation into headphones has found every single pair tested contained substances hazardous to human health, including chemicals that can cause cancer, neurodevelopmental problems and the feminization of males. [...] Researchers say that while individual doses from particular sources may be low, a "cocktail effect" of daily, multi-source exposure nevertheless poses potentially severe long-term risks to health. [...] Researchers bought 81 pairs of in-ear and over-ear headphones, either on the market in the Czech Republic, Slovakia, Hungary, Slovenia and Austria, or from the online marketplaces Shein and Temu, and took them for laboratory analysis, testing for a range of harmful chemicals. "Hazardous substances were detected in every product tested," they said. Bisphenol A (BPA) appeared in 98% of samples, and its substitute, bisphenol S (BPS), was found in more than three-quarters. Synthetic chemicals used to stiffen plastic, BPA and BPS mimic the action of oestrogen inside organisms, causing a range of adverse effects including the feminization of males, early onset puberty in girls, and cancer. Previous studies have shown that bisphenols can migrate from synthetic materials into sweat, and that they can be absorbed through the skin. "Given the prolonged skin contact associated with headphone use, dermal exposure represents a relevant pathway, and it is reasonable to assume that similar migration of BPA and its substitutes may occur from headphone components directly to the user's skin," the researchers said. Also found in the headphones tested were phthalates, potent reproductive toxins that can impair fertility; chlorinated paraffins, which have been linked to liver and kidney damage; and brominated and organophosphate flame retardants, which have similar endocrine disrupting properties to bisphenols. Most were, however, found in only trace quantities.

Read more of this story at Slashdot.

OpenAI's First ChatGPT Gadget Could Be a Smart Speaker With a Camera

Sat, 02/21/2026 - 05:00
OpenAI is reportedly developing its first consumer hardware product: a $200-$300 smart speaker with a built-in camera capable of recognizing "items on a nearby table or conversations people are having in the vicinity." It's also said to feature Face ID-style authentication for purchases. The Verge reports: In addition to the smart speaker, OpenAI is "possibly" working on smart glasses and a smart lamp, The Information reports. (Apple may also be working on a smart lamp.) But OpenAI's glasses might not hit mass production until 2028, and while OpenAI has made prototypes of gadgets like the smart lamp, The Information says it's "unclear" if they'll be released and that OpenAI's devices plans are in early stages.

Read more of this story at Slashdot.

US Particle Accelerators Turn Nuclear Waste Into Electricity, Cut Radioactive Life By 99.7%

Sat, 02/21/2026 - 02:00
Researchers at the Thomas Jefferson National Accelerator Facility are advancing Accelerator-Driven Systems (ADS) that use high-energy proton beams to transmute long-lived nuclear waste into shorter-lived isotopes. "The process also generates significant heat, which can be harnessed to produce additional electricity for the grid," reports Interesting Engineering. The projects are supported by $8.17 million in grants from the Department of Energy's NEWTON (Nuclear Energy Waste Transmutation Optimized Now) program. From the report: The researchers are developing ADS technology. This system uses a particle accelerator to fire high-energy protons at a target (such as liquid mercury), triggering a process called "spallation." This releases a flood of neutrons that interact with unwanted, long-lived isotopes in nuclear waste. The technology can effectively "burn" the most hazardous components of the waste by transmuting these elements. While unprocessed fuel remains dangerous for approximately 100,000 years, partitioning and recycling via ADS can reduce that window to just 300 years. [...] To make ADS economically viability, Jefferson Lab is tackling two primary technical hurdles: efficiency and power. Traditional particle accelerators require massive, expensive cryogenic cooling systems to reach superconducting temperatures. Jefferson Lab is pioneering a more cost-effective approach by coating the interior of pure niobium cavities with tin. These niobium-tin cavities can operate at higher temperatures, allowing for the use of standard commercial cooling units rather than custom, large-scale cryogenic plants. The team is also developing spoke cavities, which is a complex design intended to drive even higher efficiency in neutron spallation. The second project focuses on the power source behind the beam. Researchers are adapting the magnetron -- the same component that powers microwave ovens -- to provide the 10 megawatts of power required for ADS. The primary challenge is that the energy frequency must match the accelerator cavity precisely at 805 Megahertz. In collaboration with Stellant Systems, researchers are prototyping advanced magnetrons that can be combined to reach the necessary high-power thresholds with maximum efficiency. The NEWTON program aims to enable the recycling of the entire US commercial nuclear fuel stockpile within the next 30 years.

Read more of this story at Slashdot.

NASA Eyes March 6 To Launch 4 Astronauts To the Moon On Artemis II Mission

Fri, 02/20/2026 - 22:30
An anonymous reader quotes a report from NPR: NASA could launch four astronauts on a mission to fly around the moon as soon as March 6th. That's the launch date (PDF) that the space agency is now working towards following a successful test fueling of its big, 322-foot-tall moon rocket, which is standing on a launch pad at the Kennedy Space Center in Florida. "This is really getting real," says Lori Glaze, acting associate administrator of NASA's exploration systems development mission directorate. "It's time to get serious and start getting excited." But she cautioned that there's still some pending work that remains to be done out at the launch pad, and officials will have to conduct a multi-day flight readiness review late next week to make sure that every aspect of the mission is truly ready to go. "We need to successfully navigate all of those, but assuming that happens, it puts us in a very good position to target March 6th," she says, noting that the flight readiness review will be "extensive and detailed." [...] When NASA workers first tested out fueling the rocket earlier this month, they encountered problems like a liquid hydrogen leak. Swapping out some seals and other work seems to have fixed these issues, according to officials who say that the latest countdown dress rehearsal went smoothly, despite glitches such as a loss of ground communications in the Launch Control Center that forced workers to temporarily use backups.

Read more of this story at Slashdot.

Comment