Feed aggregator

Fake Job Recruiters Hid Malware In Developer Coding Challenges

Slashdot.org - Sun, 02/15/2026 - 11:34
"A new variation of the fake recruiter campaign from North Korean threat actors is targeting JavaScript and Python developers with cryptocurrency-related tasks," reports the Register. Researchers at software supply-chain security company ReversingLabs say that the threat actor creates fake companies in the blockchain and crypto-trading sectors and publishes job offerings on various platforms, like LinkedIn, Facebook, and Reddit. Developers applying for the job are required to show their skills by running, debugging, and improving a given project. However, the attacker's purpose is to make the applicant run the code... [The campaign involves 192 malicious packages published in the npm and PyPi registries. The packages download a remote access trojan that can exfiltrate files, drop additional payloads, or execute arbitrary commands sent from a command-and-control server.] In one case highlighted in the ReversingLabs report, a package named 'bigmathutils,' with 10,000 downloads, was benign until it reached version 1.1.0, which introduced malicious payloads. Shortly after, the threat actor removed the package, marking it as deprecated, likely to conceal the activity... The RAT checks whether the MetaMask cryptocurrency extension is installed on the victim's browser, a clear indication of its money-stealing goals... ReversingLabs has found multiple variants written in JavaScript, Python, and VBS, showing an intention to cover all possible targets. The campaign has been ongoing since at least May 2025...

Read more of this story at Slashdot.

Analysis of JWST Data Finds - Old Galaxies in a Young Universe?

Slashdot.org - Sun, 02/15/2026 - 10:34
Two astrophysicists at Spain's Instituto de Astrofísica de Canarias analyzed data from the James Webb Space Telescope — the most powerful telescope available — on 31 galaxies with an average redshift of 7.3 (when the universe was 700 million years old, according to the standard model). "We found that they are on average ~600 million years old old, according to the comparison with theoretical models based on previous knowledge of nearby galaxies..." "If this result is correct, we would have to think about how it is possible that these massive and luminous galaxies were formed and started to produce stars in a short time. It is a challenge." But "The fact that some of these galaxies might be older than the universe, within some significant confidence level, is even more challenging." The most extreme case is for the galaxy JADES-1050323 with redshift 6.9, which has, according to my calculation, an age incompatible to be younger than the age of the universe (800 million years) within 4.7-sigma (that is, a probability that this happens by chance as statistical fluctuation of one in one million). If this result is confirmed, it would invalidate the standard Lambda-CDM cosmological model. Certainly, such an extraordinary change of paradigm would require further corroboration and other stronger evidence. Anyway, it would be interesting for other researchers to try to explain the Spectral Energy Distribution of JADES-1050323 in standard terms, if they can ... and without introducing unrealistic/impossible models of extinction, as is usually done. The findings are published in the journal Monthly Notices of the Royal Astronomical Society.

Read more of this story at Slashdot.

Vim 9.2 Released

Slashdot.org - Sun, 02/15/2026 - 07:34
"More than two years after the last major 9.1 release, the Vim project has announced Vim 9.2," reports the blog Linuxiac: A big part of this update focuses on improving Vim9 Script as Vim 9.2 adds support for enums, generic functions, and tuple types. On top of that, you can now use built-in functions as methods, and class handling includes features like protected constructors with _new(). The :defcompile command has also been improved to fully compile methods, which boosts performance and consistency in Vim9 scripts. Insert mode completion now includes fuzzy matching, so you get more flexible suggestions without extra plugins. You can also complete words from registers using CTRL-X CTRL-R. New completeopt flags like nosort and nearest give you more control over how matches are shown. Vim 9.2 also makes diff mode better by improving how differences are lined up and shown, especially in complex cases. Plus on Linux and Unix-like systems, Vim "now adheres to the XDG Base Directory Specification, using $HOME/.config/vim for user configuration," according to the release notes. And Phoronix Mcites more new features: Vim 9.2 features "full support" for Wayland with its UI and clipboard handling. The Wayland support is considered experimental in this release but it should be in good shape overall... Vim 9.2 also brings a new vertical tab panel alternative to the horizontal tab line. The Microsoft Windows GUI for Vim now also has native dark mode support. You can find the new release on Vim's "Download" page.

Read more of this story at Slashdot.

Syndicate content
Comment