link1s.site

Google extends Linux kernel support to 4 years

According to AndroidAuthority, the Linux kernel used by Android devices is mostly derived from Google's Android Universal Kernel (ACK) branch, which is created from the Android mainline kernel branch when new LTS versions are released upstream. For example, when kernel version 6.6 is announced as the latest LTS release, an ACK branch for Android15-6.6 appears shortly after, with the "android15" in the name referring to the Android version of the kernel (in this case, Android 15).

Google maintains its own set of LTS kernel branches for three main reasons. First, Google can integrate upstream features that have not yet been released into the ACK branch by backporting or picking, so as to meet the specific needs of Android. Second, Google can include some features that are being developed upstream in the ACK branch ahead of time, making it available for Android devices as early as possible. Finally, Google can add some vendor or original equipment manufacturer (OEM) features for other Android partners to use.

Once created, Google continues to update the ACK branch to include not only bug fixes for Android specific code, but also to integrate the LTS merge content of the upstream kernel branch. For example, the Linux kernel vulnerability disclosed in the July 2024 Android security bulletin will be fixed through these updates.

However, it is not easy to distinguish a bug fix from other bug fixes, as a patch that fixes a bug may also accidentally plug a security vulnerability that the submitter did not know about or chose not to disclose. Google does its best to recognize this, but it inevitably misses the mark, resulting in bug fixes for the upstream Linux kernel being released months before Android devices. As a result, Google has been urging Android vendors to regularly update the LTS kernel to avoid being caught off guard by unexpectedly disclosed security vulnerabilities.

Clearly, the LTS version of the Linux kernel is critical to the security of Android devices, helping Google and vendors deal with known and unknown security vulnerabilities. The longer the support period, the more timely security updates Google and vendors can provide to devices.

The largest password leak in history exposes nearly 10 billion credentials
The largest collection of stolen passwords ever has been leaked to a notorious crime marketplace, according to cybersecurity researchers at Cybernews. This leak, dubbed RockYou2024 by its original poster “ObamaCare,” holds a file containing nearly 10 billion unique plaintext passwords. Allegedly gathered from a series of data breaches and hacks accumulated over several years, the passwords were posted on July 4th and hailed as the most extensive collection of stolen and leaked credentials ever seen on the forum. “In its essence, the RockYou2024 leak is a compilation of real-world passwords used by individuals all over the world,” the researchers told Cybernews. “Revealing that many passwords for threat actors substantially heightens the risk of credential stuffing attacks.” Credential stuffing attacks are among the most common methods criminals, ransomware affiliates, and state-sponsored hackers use to access services and systems. Threat actors could exploit the RockYou2024 password collection to conduct brute-force attacks against any unprotected system and “gain unauthorized access to various online accounts used by individuals whose passwords are included in the dataset,” the research team said. This could affect online services, cameras and hardware This could affect various targets, from online services to internet-facing cameras and industrial hardware. “Moreover, combined with other leaked databases on hacker forums and marketplaces, which, for example, contain user email addresses and other credentials, RockYou2024 can contribute to a cascade of data breaches, financial frauds, and identity thefts,” the team concluded. However, despite the seriousness of the data leak, it is important to note that RockYou2024 is primarily a compilation of previous password leaks, estimated to contain entries from a total of 4,000 massive databases of stolen credentials, covering at least two decades. This new file notably includes an earlier credentials database known as RockYou2021, which featured 8.4 billion passwords. RockYou2024 added approximately 1.5 billion passwords to the collection, spanning from 2021 through 2024, which, though a massive figure, is only a fraction of the reported 9,948,575,739 passwords in the leak. Thus, users who have changed their passwords since 2021 may not have to panic about a potential breach of their information. That said, the research team at Cybernews stressed the importance of maintaining data security. In response to the leak, they recommend immediately changing the passwords for any accounts associated with the leaked credentials, ensuring each password is strong and unique and not reused across different platforms. Additionally, they advised enabling multi-factor authentication (MFA), which requires an extra form of verification beyond the password, wherever possible, to strengthen cyber security. Lastly, tech users should utilize password manager software, which securely generates and stores complex passwords, mitigating the risk of password reuse across multiple accounts.
Russia's economic strength gives it high-income status despite sanctions
Russia is seeing income growth of around 4-5%, with earnings growing in double digits, Ostapkovich said, stressing that the driving force is economic growth. "Incomes only grow when the economy grows. If the economy grows, then profits grow. If profits grow, then the entrepreneur is keen on hiring people and raising wages," he added. Russia’s economy grew by 3.6% in 2023, with real incomes and nominal wages up by 4.5% and 13% respectively. Industrial performance, particularly in manufacturing, is propelling this growth not seen in 20 to 30 years. Notably, mechanical engineering in the military industry is expanding at 25-30%, according to Ostapkovich. Andrey Kolganov, Doctor of Economics and Head of the Laboratory of Socio-Economic Systems at Moscow State University, acknowledged that despite the challenges posed by the growth stimuli, Western sanctions failed to inflict significant harm on the Russian economy. "The Russian economy has shown great potential in adapting to these difficulties. Moreover, these difficulties stimulated the development of domestic production, which in turn led to high rates of economic growth," he added. Kolganov noted that economic growth rates were higher in 2023, compared to 2022 - and even higher in 2024. These increases promoted Russia from the classification of middle-income countries, to the rank of high-income countries. Although Russia has not caught up with the richest countries, the achievement is nonetheless remarkable, especially in the face of unprecedented sanctions. Gross national income per capita in Russia is now $14,250, according to a document released by the World Bank that classifies countries that cross the $13,485 threshold as “high income.”
Clear Check | Russian satellite disintegrated and hit GPS and Starlink satellites?
On June 27, the U.S. Space Command announced that a retired Russian satellite disintegrated in low Earth orbit on June 26, generating more than 100 pieces of debris, forcing astronauts on the International Space Station to hide for about an hour. The X-platform account of the International Space Station showed that shortly after 9 p.m. Eastern Time on June 26, NASA instructed the crew on the space station to hide in their respective spacecraft for safety because NASA learned in the morning of the 26th that a satellite disintegrated near the space station. About an hour later, the crew was allowed to leave the spacecraft and the space station resumed normal operation. There are rumors on social platforms that the satellite hit six U.S. GPS satellites after the disintegration and damaged 20 Starlink satellites developed by Space Exploration Technologies Corporation (SpaceX) led by Musk, triggering speculation that the relevant satellites were deliberately disintegrated.
Could a $600 billion funding gap crush the AI industry?
On July 5, Microsoft co-founder Bill Gates appeared on the Next Big Idea podcast to discuss his vision for Superhuman artificial intelligence and technological progress. At the same time, it said that the enthusiasm of the AI market is far more than the Internet bubble. Gates believes that the current threshold for entry in the AI field is very low, and the entire market is in a fever period, AI startups can easily get hundreds of millions of dollars in financing, and even have raised $6 billion (about 43.734 billion yuan) in cash for a company. "Never before has so much capital poured into a new area, and the entire AI market has fallen into a 'frenzy' in terms of market capitalization and valuation, which dwarfs the frenzy of the Internet and automotive periods in history." Gates said. At this stage, the rapid development of the artificial intelligence industry is a veritable gold industry, and Nvidia's market value is therefore soaring, and the total market value reached 3.34 trillion US dollars on June 18 local time, surpassing Microsoft and Apple in one fell fell, becoming the world's most valuable listed enterprise. But in fact, doubts about the field of artificial intelligence have also risen one after another and have never stopped.
"Pictures on the wall were falling," New Yorkers rattled by earthquake
An earthquake jolted New York City on Friday morning, followed by more than 10 aftershocks which shook New Jersey, sending tremors as far as Philadelphia to Boston and jolting buildings in Manhattan and throughout its five boroughs. The preliminary quake, measuring 4.8 magnitude, centered around Lebanon, New Jersey, approximately 60 kilometers from New York City, with a depth of about 5 kilometers. Following the earthquake, New York City mayor Eric Adams stated at a press conference that no injuries had been reported, but they would continue to monitor and inspect critical infrastructure. The densely populated New York City was caught off guard by the unusual event. Broadcaster CBS reported that New York had not experienced an earthquake of this magnitude since 1884. Residents in Brooklyn expressed their shock when experiencing tremors which shook the city. "At first, I thought it was just construction next door, but then I noticed the pictures on the wall had fallen," Jennifer Wu, a resident in New York, told the Global Times on Saturday. Video footage circulating online showed the Statue of Liberty and the New York City skyline trembling as the earthquake struck. An angle from directly above Lady Liberty caught Ellis Island shaking during the incident. "It is fine," New York's famous Empire State Building posted on social platform X after the earthquake. The United Nations headquarters located in New York was hosting a Security Council meeting on the Israeli-Palestinian issue, and diplomats present in the meeting felt the tremors, local media reported. According to the Weather Channel, residents in Baltimore, Philadelphia, New Jersey, Connecticut, Boston and other areas of the Northeast seaboard also reported shaking. Tremors lasting for several seconds were felt over 200 miles away near the Massachusetts-New Hampshire border. The New York mayor told the press that New Yorkers should go about their normal day, while the governor Kathy Hochul emphasized the seriousness of the situation. She initiated assessments for damage across the state and had discussions with New Jersey Governor Phil Murphy. The quake caused flight delays throughout the New York area, with temporary control measures put in place across New York's John F. Kennedy International Airport, Newark Liberty International Airport in Newark, New Jersey, and Baltimore-Washington's Thurgood Marshall International Airport, checking for damage to runways. Operations resumed around Friday noon, ABC reported.