es
Feedback
OSP

OSP

Ir al canal en Telegram

OSP (Open Source Planet) ערוץ שכולו קוד פתוח בשיתוף @termuxisrael2

Mostrar más
1 393
Suscriptores
Sin datos24 horas
-37 días
-1830 días
Archivo de publicaciones
OSP
1 393
Apple open-sources its Homomorphic Encryption library By | EDWARD TARGETT | ''Apple has open-sourced the homomorphic encrypti
Apple open-sources its Homomorphic Encryption library By | EDWARD TARGETT | ''Apple has open-sourced the homomorphic encryption (HE) library it uses in its own deployments – making it available under an Apache 2.0 licence.  It shared details of its own implementation and a small handful of associated applications as a set of Swift libraries and executables.  (Swift is a programming language for all Apple platforms.)'' [...] [...] ''The Swift implementation houses the Brakerski-Fan-Vercauteren (BFV) Homomorphic Encryption scheme, which is also quantum resistant. See the GitHub repository here for details.'' [...] #Apple #Open_Sources #Homomorphic_Encryption_Library

OSP
1 393
זה לא רק Termux Israel, זאת אימפרייה גדולה 😉 עולם הסייבר (ערוץ ראשי) 👇 @TermuxIsrael2 כוכב הקוד הפתוח 👇 @OSPopensourceplan
זה לא רק Termux Israel, זאת אימפרייה גדולה 😉 עולם הסייבר (ערוץ ראשי) 👇 @TermuxIsrael2 כוכב הקוד הפתוח 👇 @OSPopensourceplanet אלי-אקספס להאקר הצעיר 👇 @AliHaxpress ערוץ הקריפטו 👇 @TermuxILCryptoWorld ערוץ ה-OSINT 👇 @d1scot3ch0 ערוץ ה-AI 👇 @ai_free_men ממלכת ההומור של ההאקרים 👇 @HackersGAG קבוצת הקהילה 👇 @CyberClubIL פינת עישון (קבוצת דיבורים) 👇 @CyberTalksIL

OSP
1 393
Secretive: Open-source app for storing and managing SSH keys in the Secure Enclave By | Help Net Security | ''Typically, SSH keys are stored on disk with appropriate permissions, which is usually sufficient. However, it’s not overly difficult for malicious users or malware to copy your private key. By storing your keys in the Secure Enclave, they become impossible to export, providing a higher level of security. Macs with a Secure Enclave also support robust access controls, such as Touch ID or Apple Watch authentication. With Secretive, you can configure your keys to require authentication via Touch ID or Apple Watch before they can be accessed, adding an extra layer of security. Secretive also notifies you whenever your keys are accessed, so you’re never caught off guard: Secretive is available for free download on GitHub.'' [...] #Secretive #Open_Source_App #Storing_Managing #SSH_Keys #Secure_Enclave

OSP
1 393
Pixelorama, a powerful and accessible open-source pixel art tool v1.0 is out now By | Liam Dawe | [...] ''Pixelorama version 1.0 is out now after 5 years in development. Another fun tool made with Godot Engine! The 1.0 release brings with it Multiple layer blend modes, non-destructive effects per layer, a new curve tool, an extension explorer system, you can import and export video files, a basic command line interface and much more.'' [...] #Pixelorama #Powerful_Accessible #Open_Source #Pixel_Art_Tool

OSP
1 393
Open source accelerated Chinese AI development: report By | Laura Dobberstein | APAC IN BRIEF Chinese researchers have told The New York Times that open source software has helped them to accelerate AI development. The paper last week reported that interviews with a dozen technologists and researchers at Chinese tech companies yielded the opinion that "open source technologies were a key reason that China's AI development has advanced so quickly." "They saw open source AI as an opportunity for the country to take a lead," the Times reported. – Simon Sharwood '' [...] [...] ''APAC Dealbook Recent alliances and deals spotted by The Register across the region last week include: • Equinix is expanding in the Philippines after acquiring three datacenters from Total Information Management. "The acquisition of the three high-performance datacenters will provide capacity for Equinix to address the digital needs of local and overseas businesses in the Philippines," explained Equinix of the all-cash transaction. • South Korean online portal operator Naver launched a digital twin platform project with the Saudi Arabian government. The digital twin service will offer 3D models of major cities in Saudi Arabia and ultimately assist in services like urban planning and flood simulation. • The National Quantum Office of Singapore, together with the country's science agency, national university, and supercomputing center announced that it will utilize Quantinuum's H-Series and next generation Helios quantum computers to promote joint R&D activities.'' [...] #Open_Source_Accelerated #Chinese_AI_Development #Report #APAC_Dealbook

OSP
1 393
Open-source AI narrows gap with proprietary leaders, new benchmark reveals By | Michael Nuñez | ''Artificial intelligence startup Galileo released a comprehensive benchmark on Monday revealing that open-source language models are rapidly closing the performance gap with their proprietary counterparts. This shift could reshape the AI landscape, potentially democratizing advanced AI capabilities and accelerating innovation across industries. The second annual Hallucination Index from Galileo evaluated 22 leading large language models on their tendency to generate inaccurate information. While closed-source models still lead overall, the margin has narrowed significantly in just eight months.'' [...] #Open_Source_AI #Language_Models #Narrows_Gap  #Proprietary_Counterparts #New_Benchmark_Reveals

OSP
1 393
OSPOs for Good 2024: The future of public services with open-source tech By | Obaloluwa Ajiboye | [...] "Despite remarkable advancements in digital technology, many communities, especially in low- and middle-income countries, remain on the fringes of the digital revolution. Notably, the digital divide is not just a gap in access to technology -- it's a barrier to education, healthcare, and economic opportunities. The OSEE initiative is designed with the understanding that meaningful digital transformation must be all-inclusive, leaving no one behind. The initiative is thus dedicated to closing these gaps and making the benefits of digital technology available to everyone." [...] #OSPOs #OSEE #Future_of_Public_Services #Open_Source_Tech

OSP
1 393
Ben Edgington (🔗Twitter)[🤔➡️🔗🧵⚠️] RT @NethermindEth: We’re proud to announce that our formal verification team open-sourc
Ben Edgington (🔗Twitter)[🤔➡️🔗🧵⚠️] RT @NethermindEth: We’re proud to announce that our formal verification team open-sourced their EVM + Yul specification! A recipient of the Ethereum Foundation grant @EF_ESP, EVMYulLean is an ongoing project, and we’re excited about its upcoming developments: 💠This specification is executable, meaning it can be run. We’ll leverage this capability to test it against the EVM execution conformance tests, ensuring the model's reliability 💠Full compatibility with Ethereum’s execution layer upgrade Cancun https://github.com/NethermindEth/EVMYulLean ~ ₿izFeed#⃣: #dev #ETH

OSP
1 393
DevPod - SD Times Open Source Project of the Week - SD Times "DevPod is a tool for creating and managing development environments without needing a server-side setup. It can be used as an open-source alternative to GitHub Codespaces, JetBrains Spaces, or Google Cloud Workstations.  Environments run in containers and can be spun up wherever there is a need, such as on a local computer, a cloud machine with many GPUs, or a remote computer. These development environments can be created for any infrastructure, IDE, or programming language.  Every environment is managed by a DevContainer JSON file, making it easy to switch between workspaces hosted in different places." [...] #DevPod  #SD_Times #Open_Source #Project_of_the_Week

OSP
1 393
Next Generation Internet: EU apparently set to end open source programme By | Maximilian Henning | ''The EU’s Next Generation Internet programme has supported free, open source software for years. But now a silent death seems to be looming: An internal document suggests that financing may soon end. Developers are surprised and call for the programme’s survival. The European Union does many good things that nobody notices. One of those is the “Next Generation Internet” programme (NGI). With this programme, the European Commission supports the development of free, open source software, as an alternative to commercial, surveillance-based applications. A noble endeavour – with a catch: The Commission seems to be set on quietly ending the financial support'' [...] [...] ''An ecosystem in danger “The European financing programme NGI is in danger, even though it’s probably one of the best things that happened to free software in recent years”, says the blogpost. “This initiative allowed for the financial support of hundreds of free community projects, including some fundamental building blocks for our daily digital life.” The threat to the NGI programme endangers a whole ecosystem of free and open source software, writes Framasoft. “The diversity of this ecosystem is the great strength of European technological innovation.” Keeping up support for NGI means more support for sovereign European infrastructure, it says. According to the blogpost, NGI so far had a budget of 27 million Euros which supported over 500 projects over the last years.'' [...] #NGI #Next_Generation_Internet #EU #Set_to_End #Open_Source_Programme

OSP
1 393
Top 10 open source software security risks — and how to mitigate them By | Chris Hughes | [...] ''Top 10 Risks for Open Source Software (OSS), from the Open Web Application Security Project (OWASP). The OWASP Top 10 was originally created by Endor Labs, a software supply chain and application security company focused on the secure consumption of OSS, CI/CD pipelines, and vulnerability management. The project also included support from industry leaders such as Palo Alto, HashiCorp, and Citibank. While traditionally vulnerability management has looked at known vulnerabilities, often in the form of Common Vulnerability and Exposures (CVE) lists, there is a growing realization that known vulnerabilities are lagging indicators of risk. To mature the way we approach the use of open source, a paradigm shift is needed to look at leading indicators of risk, which are metrics that may signal that there is risk associated with particular OSS libraries, components, and projects that, when considered holistically, can help inform more secure consumption of OSS and mitigate potential risks that manifest into exploits and vulnerabilities.'' [...] #Open_Source_Software #Security_Risks  #How_to #Mitigate_Them

OSP
1 393
CISA offers tools to promote secure use of open-source software By | Laura French | "The Cybersecurity and Infrastructure Security Agency (CISA) is continuing its progress toward a secure open-source software (OSS) ecosystem by offering scalable solutions for organizations to assess the trustworthiness of their OSS dependencies. Open-source software is a critical component of the software supply chain and its use is only growing, with OpenLogic’s 2024 State of Open Source Report finding 95% of organizations increased or maintained their OSS use over the past year." [...]

OSP
1 393
The 10 Coolest Open-Source Software Tools Of 2024 (So Far)

OSP
1 393
Punto Maximo's Von VisionAI is an All-In-One Open Source Computer Vision Development Station

OSP
1 393
How CrystalRay steals data using open-source software By | ERIK VAN KLINKEN | [...] "No packets sent CrystalRay’s attack path is through Atlassian Confluence, a workspace offering which has suffered multiple vulnerabilities in the recent past. To do so, the group uses the penetration testing tool SSH-Snake, which its GitHub maintainer says is “intended for hacking purposes” but can also be deployed by sysadmins to monitor their own infrastructure and network. It is a self-propagating “worm” that can burrow deep into a corporate network, making use of configuration errors and vulnerabilities along the way. Its targeting of victims is less precise than that of a ransomware attack or whenever a state-sponsored threat actor seeks to infiltrate a target, Sysdig points out. However, the tactic is more precise than a botnet thanks to it picking a specific series of IP addresses depending on the country involved. Once a network is hit, CrystalRay uses ASN, another open-source tool available on GitHub. It makes open-source intelligence (OSINT) simple and human-readable and acts as a command line tool for network data. It queries Shodan for things like URLs, a set of IP addresses or hostnames. With this, CrystalRay finds the necessary vulnerabilities, if any exist. Sysdig highlights that all this takes place without ever sending a packet to the victim. Best of breed From the broader choice of open-source tools, it appears that CrystalRay has found the most effective options. For example, it uses zmap that detects specific ports for vulnerable services, which is less likely to raise false alarms than nmap, making it suitable for large-scale scans. The Nuclei scanner also helps attackers find exploitable vulnerabilities inside a given network. In fact, CrystalRay does what organizations themselves would have wanted to do before: detect cyber dangers in detail." [...] #CrystalRay #Steals_Data #Open_Source_Software

OSP
1 393
BunkerWeb: Open-source Web Application Firewall (WAF) BunkerWeb is an open-source Web Application Firewall (WAF) distributed
BunkerWeb: Open-source Web Application Firewall (WAF) BunkerWeb is an open-source Web Application Firewall (WAF) distributed under the AGPLv3 free license. The solution’s core code is entirely auditable by a third party and the community. “The genesis of BunkerWeb comes from the following problem: every time someone from my team or I had to put a web application online, we had to apply good security practices by hand. This process was not only time-consuming but also prone to human error. Since no open-source WAF met the needs, we created it ourselves https://www.helpnetsecurity.com/2024/07/10/bunkerweb-open-source-web-application-firewall-waf/ https://github.com/bunkerity/bunkerweb 📡@cRyPtHoN_INFOSEC_IT 📡@cRyPtHoN_INFOSEC_FR 📡@cRyPtHoN_INFOSEC_EN 📡@cRyPtHoN_INFOSEC_DE 📡@BlackBox_Archiv

OSP
1 393
The 20 best open-source alternatives to popular software on Windows By | João Carrasqueira | [...] "There are plenty of free alternatives to these popular apps, but even then, free apps can be owned by shady companies or change their monetization strategy at any point. Some would argue that open-source software is the only way to give power back to the community of users and developers. And that's why we've compiled this list of the best open-source alternatives to popular software on Windows. When you're tired of the Adobes and Microsofts of the world, these solutions offer great functionality while being far more transparent and open than what those companies offer." [...] #20_Best #Open_Source_Alternatives #Windows_Popular_Software

OSP
1 393
Monocle: Open-source LLM for binary analysis search By | Help Net Security | "Monocle is open-source tooling backed by a large language model (LLM) for performing natural language searches against compiled target binaries. Monocle can be provided with a binary and search criteria (authentication code, vulnerable code, password strings, etc.), and it will decompile the binary to identify and score areas of the code that meet the criteria. Monocle uses Ghidra headless to enable the decompilation of compiled binaries." [...] #Monocle #Open_Source_LLM #Binary_Analysis_Search

OSP
1 393
Develop a Cloud-Hosted RAG App With an Open Source LLM By | Usama Jamil | [...] "Follow this step-by-step guide to create a custom AI application using BentoML, LangChain and MyScaleDB." [...] #Develop_Cloud_Hosted #RAG_App #Open_Source_LLM

OSP
1 393
How tech went from free love to pay-per-day • The Register "DEVCONF.CZ This year, along with all the usual in-depth technical talks about Linux at Red Hat's Devconf.cz developer conference, there were also several people there to promote AI-linked projects and the tech bros' previous favorites – blockchain projects. The promise of said projects is that they will change the world and relieve us of tedious burdens such as financial regulation, government supervision, and taxation and so on – leading to the undefined and empty (but surely immensely lucrative) web3. Although this stuff gets everywhere now, its connections with open source Unix isn't obvious, and it's not directly related to FOSS. Of course, the algorithms commonly used to generate and update blockchains are mostly open source. So too are many of the tools that generate the gigantic statistical text-prediction models these marketing folks are absolutely desperate for you to believe are functioning artificial intelligence. (They're not, and the proof is that they've moved the target by inventing the new term "AGI" – artificial general intelligence – for that.) But while the tools may be FOSS, what they're doing with them definitely is not – and it's evident that the companies building large language models don't own the data that's being used to generate the models. The presence of some of the more predatory companies in the space is an unfortunate but almost inevitable consequence of the market forces that have driven open source software to the multibillion-dollar industry it is today. We thought it might be interesting to try to trace how we got here, look at where some folks would like to steer the software industry next, and drill into why that is. That in turn will take us to how it's being done, and the question of whether there are any alternative directions for the software business." [...] #FOSS #How_Tech #Went_From #Free_Love to #Pay_Per_Day