article thumbnail

Telcos and vendors back open source Project Sylva

TM Forum

Five European operators as well as vendors Ericsson and Nokia have thrown their weight behind a new open source networking project that aims to create a cloud software framework to “reduce the infrastructure fragmentation” in Europe. Deutsche Telekom, Orange, Telecom Italia, Telefonica and Vodafone are all backing.

article thumbnail

Open source developer corrupts widely-used libraries, affecting tons of projects

The Verge

A developer appears to have purposefully corrupted a pair of open-source libraries on GitHub and software registry npm — “ faker.js ” and “ colors.js ” — that thousands of users depend on, rendering any project that contains these libraries useless, as reported by Bleeping Computer. Illustration by Alex Castro / The Verge.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Trending Sources

article thumbnail

350K Open Source Projects Vulnerable Due to 15-Year-Old Bug

SecureWorld News

A 15-year-old vulnerability in the Python programming language is making headlines again as new research shows that the vulnerability is estimated to be present in over 350,000 open source projects and some closed source projects, according to the Trellix Advanced Research Center.

article thumbnail

Microsoft copied its new Windows Package Manager from rival AppGet, claims developer

The Verge

Microsoft surprised everyone with its new Windows Package Manager (winget) last week, but it looks like the company copied the core mechanics from a developer it interviewed and ghosted. AppGet is a free and open source package manager for Windows, which automates installing software on Windows PCs.

Windows 121
article thumbnail

Your car is about to go open source

Galido

The main reason for the limited functionality of most IVIs is that car manufacturers use proprietary software developed by third-party suppliers to power their infotainment systems, meaning car-based apps are also proprietary. By developing an open-source platform, carmakers can share upgrades as they arrive.

article thumbnail

UNCOVERING VULNERABILITIES IN OPEN SOURCE LIBRARIES

ForAllSecure

In recent articles, ForAllSecure has discussed how we were able to use our next-generation fuzzing solution, Mayhem, to discover previously unknown vulnerabilities in several open source projects, including Netflix DIAL reference , Das U-Boot , and more. allows an attacker to cause a denial of service via a crafted PSD file.

article thumbnail

Uncovering Vulnerabilities In Open Source Libraries (CVE-2019-13499)

ForAllSecure

In recent articles, ForAllSecure has discussed how we were able to use our next-generation fuzzing solution, Mayhem, to discover previously unknown vulnerabilities in several open source projects, including Netflix DIAL reference , Das U-Boot , and more. allows an attacker to cause a denial of service via a crafted PSD file.