ari Solaris xscreensaver Privilege Escalation By packetstormsecurity.com Published On :: Wed, 23 Oct 2019 20:15:30 GMT This Metasploit module exploits a vulnerability in xscreensaver versions since 5.06 on unpatched Solaris 11 systems which allows users to gain root privileges. xscreensaver allows users to create a user-owned file at any location on the filesystem using the -log command line argument introduced in version 5.06. This module uses xscreensaver to create a log file in /usr/lib/secure/, overwrites the log file with a shared object, and executes the shared object using the LD_PRELOAD environment variable. This module has been tested successfully on xscreensaver version 5.15 on Solaris 11.1 (x86) and xscreensaver version 5.15 on Solaris 11.3 (x86). Full Article
ari Solaris xlock Information Disclosure By packetstormsecurity.com Published On :: Fri, 17 Jan 2020 16:38:33 GMT A low impact information disclosure vulnerability in the setuid root xlock binary distributed with Solaris may allow local users to read partial contents of sensitive files. Due to the fact that target files must be in a very specific format, exploitation of this flaw to escalate privileges in a realistic scenario is unlikely. Full Article
ari Oracle Solaris 11.x / 10 whodo / w Buffer Overflow By packetstormsecurity.com Published On :: Fri, 17 Apr 2020 22:38:30 GMT A difficult to exploit heap-based buffer overflow in setuid root whodo and w binaries distributed with Solaris allows local users to corrupt memory and potentially execute arbitrary code in order to escalate privileges. Full Article
ari OpenSCAP Libraries 1.3.3 By packetstormsecurity.com Published On :: Thu, 30 Apr 2020 14:58:08 GMT The openscap project is a set of open source libraries that support the SCAP (Security Content Automation Protocol) set of standards from NIST. It supports CPE, CCE, CVE, CVSS, OVAL, and XCCDF. Full Article
ari US Negotiates Sharing Electronic Evidence Internationally By packetstormsecurity.com Published On :: Tue, 08 Oct 2019 13:55:14 GMT Full Article headline government privacy usa britain australia
ari Assange Fails To Delay Extradition Hearing As Date Set For February By packetstormsecurity.com Published On :: Tue, 22 Oct 2019 17:09:58 GMT Full Article headline government usa britain russia data loss spyware military
ari After Paris, Encryption Will Be A Key Issue In The 2016 Race By packetstormsecurity.com Published On :: Tue, 17 Nov 2015 16:53:20 GMT Full Article headline government privacy usa france terror cryptography
ari Anonymous Leaks Paris Climate Summit Officials' Private Data By packetstormsecurity.com Published On :: Sat, 05 Dec 2015 02:08:03 GMT Full Article headline government data loss france anonymous
ari Terror In Paris Must Not Lead To Internet Clampdowns By packetstormsecurity.com Published On :: Thu, 24 Dec 2015 17:23:10 GMT Full Article headline government privacy cyberwar france terror cryptography
ari Packet Storm Exploit 2013-0903-1 - Apple Safari Heap Buffer Overflow By packetstormsecurity.com Published On :: Wed, 04 Sep 2013 03:37:10 GMT A heap memory buffer overflow vulnerability exists within the WebKit's JavaScriptCore JSArray::sort(...) method. The exploit for this vulnerability is javascript code which shows how to use it for memory corruption of internal JS objects (Unit32Array and etc.) and subsequent arbitrary code execution (custom ARM/x64 payloads can be pasted into the JS code). This exploit affects Apple Safari version 6.0.1 for iOS 6.0 and OS X 10.7/8. Earlier versions may also be affected. It was obtained through the Packet Storm Bug Bounty program. Full Article
ari Packet Storm Advisory 2013-0903-1 - Apple Safari Heap Buffer Overflow By packetstormsecurity.com Published On :: Wed, 04 Sep 2013 03:55:53 GMT A heap memory buffer overflow vulnerability exists within the WebKit's JavaScriptCore JSArray::sort(...) method. This method accepts the user-defined JavaScript function and calls it from the native code to compare array items. If this compare function reduces array length, then the trailing array items will be written outside the "m_storage->m_vector[]" buffer, which leads to the heap memory corruption. This finding was purchased through the Packet Storm Bug Bounty program. Full Article
ari ESET Discovers 21 New Linux Malware Variants By packetstormsecurity.com Published On :: Thu, 06 Dec 2018 19:56:34 GMT Full Article headline malware linux
ari Linux Variant Of Winnti Malware Spotted In Wild By packetstormsecurity.com Published On :: Tue, 21 May 2019 13:36:39 GMT Full Article headline malware linux
ari How Libraries Use Social Media By feeds.techsoup.org Published On :: Thu, 12 Oct 2017 22:58:00 GMT https://blog.techsoup.org/posts/how-libraries-use-social-media Eighty-one percent of Americans have social media accounts, and that number is expected to grow each year. Nearly all brands have a social presence, and libraries are no different. Libraries are using social platforms now more than ever before. The New York Public Library has 2.2 million followers on Twitter, more followers than the celebrity Kathy Griffin. Social media is playing a significant role in helping libraries stay relevant in our ever-growing digital society. TechSoup recently teamed up with WebJunction to find out the details on how libraries are using social media. We wanted to know how often libraries are using platforms and what some of their biggest challenges are. We surveyed 311 libraries throughout the country and found out some interesting things. In our survey, we found that 55 percent of respondents serve fewer than 25,000 patrons, so nearly half of the respondents were smaller libraries, probably mostly in rural areas. We found that libraries are using social, and they are eager to grow their channels. More than half (55.7 percent) of libraries spend less than 5 hours per week on social media, and 28 percent spend only 6 to 10 hours a week. Libraries use Facebook more than any other social platform. Twitter is the next most popular platform, and then Instagram. Forty-four percent of libraries post daily on Facebook, and 25 percent also post daily on Twitter. Libraries are using social media to share events and pictures, educate people about services, highlight their collections, and support other libraries. Growing followers and finding staff support are some of libraries' biggest social media challenges. Learn How to Grow Your Library's Social Media Channels with Our WebJunction Webinars Registration is now open for the Social Media and Libraries Webinar Series, hosted by WebJunction and TechSoup for Libraries in collaboration. We'll help you build a social media strategy, including how to select platforms that work with different types of library content to create brand awareness, increase traffic, and meet community goals. This series will highlight social media best practices to keep patrons and library staff engaged, develop measurable goals, and cultivate new readers and learners in your community. On October 24, join us to learn how libraries can effectively use social media tools, even with limited staff and time. Learn how to identify the appropriate social media platforms to market library services and events, and how to integrate best social media practices in your library's marketing plan. We'll help you build a foundation for your social media strategy and provide practical ideas and tactics for immediate use in your library. Register for October 24 On November 30, join us to learn all about social media analytics. Now that you are using social media to engage with your community, how do you know if it's working? If you don't know where to start when planning your social media metrics, join us to learn the best methods to measure your library's social media outcomes. During this event, you will learn how to establish measurable goals, identify key performance indicators (KPIs), and evaluate your social media results Register for November 30 On December 19, join us to learn how to take the next steps toward amplifying your library's social media program. During this third webinar in our social media series, we'll discuss best practices in growing your library's social media program and managing user engagement. You'll learn tips on assessing the members of your library's audience based on their preferred platforms, and ideas for converting your in-person library community into an online community. Register for December 19 How Is Your Library Using Social Media? Our survey is still going on! Take our survey and tell us how your library is using social media. spanhidden Full Article libraryorg socialmedia
ari fDi’s European Regions of the Future 2020/21: Paris Region retains supremacy By www.fdiintelligence.com Published On :: Mon, 10 Feb 2020 16:23:53 +0000 Paris Region has kept its fDi European Region of the Future title, while Dublin Region holds on to second place and North Rhine-Westphalia is in third. Full Article
ari Safari Webkit Proxy Object Type Confusion By packetstormsecurity.com Published On :: Sun, 02 Jun 2019 15:30:59 GMT This Metasploit module exploits a type confusion bug in the Javascript Proxy object in WebKit. The DFG JIT does not take into account that, through the use of a Proxy, it is possible to run arbitrary JS code during the execution of a CreateThis operation. This makes it possible to change the structure of e.g. an argument without causing a bailout, leading to a type confusion (CVE-2018-4233). The type confusion leads to the ability to allocate fake Javascript objects, as well as the ability to find the address in memory of a Javascript object. This allows us to construct a fake JSCell object that can be used to read and write arbitrary memory from Javascript. The module then uses a ROP chain to write the first stage shellcode into executable memory within the Safari process and kick off its execution. The first stage maps the second stage macho (containing CVE-2017-13861) into executable memory, and jumps to its entrypoint. The CVE-2017-13861 async_wake exploit leads to a kernel task port (TFP0) that can read and write arbitrary kernel memory. The processes credential and sandbox structure in the kernel is overwritten and the meterpreter payloads code signature hash is added to the kernels trust cache, allowing Safari to load and execute the (self-signed) meterpreter payload. Full Article
ari Roaring Trade In Zero-Days Means More Vulns Are Falling Into The Hands Of State Spies By packetstormsecurity.com Published On :: Tue, 07 Apr 2020 16:36:16 GMT Full Article headline hacker government cyberwar spyware zero day
ari fDi's Virus Diaries: “We’re still receiving new investor attention” By www.fdiintelligence.com Published On :: Thu, 02 Apr 2020 13:07:12 +0000 Philomène Dias, director of inward investment at Portuguese investment promotion agency Aicep, on how staff and organisation are working through lockdown. Full Article
ari Trump exempts bi-facial solar modules from import tariffs By feedproxy.google.com Published On :: 2019-06-13T15:50:54Z In an announcement that was celebrated by the solar industry, yesterday U.S. trade officials said that bi-facial solar modules, which are solar modules that produce energy on both sides of the panel, would be exempt from import tariffs. Full Article Monitoring News Solar Utility Integration
ari New White Paper explores grid parity and the solar renaissance By feedproxy.google.com Published On :: 2019-06-13T18:40:35Z Today, solar power has become cheaper than the production cost of any other existing conventional power generation technology. The arrival of grid parity heralds a milestone in the history of energy production. It means solar energy being commercially viable without any subsidies or state support; producing energy with the lowest possible environmental impact. Full Article Solar News
ari Legislation introduced to encourage marine energy research in the U.S. By feedproxy.google.com Published On :: 2019-06-17T21:00:00Z U.S. Sens. Ron Wyden (D-Ore.), Jeff Merkley (D-Ore.), Angus King (I-Maine), Brian Schatz (D-Hawaii), and Jack Reed (D-R.I.), have reintroduced The Marine Energy Research and Development Act, intended to increase production of low-carbon, renewable energy from the natural power in ocean waves, tides and currents. Full Article OceanTidalStream Power North America Government and Policy News News Hydropower
ari Ontario Power Generation to buy U.S.-based Cube Hydro By feedproxy.google.com Published On :: 2019-06-26T13:52:00Z Ontario Power Generation (OPG) has entered into an agreement to acquire Cube Hydro, an operator of small and medium-sized hydropower facilities in the northeast and southeast U.S. Full Article North America Government and Policy News News Hydropower Business Canada
ari Ontario Power Generation announces plans to rebuild century-old Calabogie Generating Station By feedproxy.google.com Published On :: 2019-07-16T13:54:00Z Plans are under way to rebuild one of Ontario Power Generation’s oldest hydroelectric generating stations, which was damaged by a tornado in 2018. Constructed in 1917, the 5-MW Calabogie Generating Station has produced renewable, low-cost electricity on the Madawaska River for decades. Full Article North America News Rehabilitation and Repair Hydropower Business Canada
ari In battle to break up utilities, Arizona steps to the front line By feedproxy.google.com Published On :: 2019-08-08T13:01:15Z Of all the efforts to break up utility monopolies in the U.S., the one unfolding in Arizona may be the most important to watch. Full Article Wind Power Solar News
ari Report covers costs of various storage technologies, including pumped storage hydro By feedproxy.google.com Published On :: 2019-08-08T19:21:00Z A report recently released by the U.S. Department of Energy defines and evaluates cost and performance parameters of six battery energy storage technologies (BESS) and four non-BESS storage technologies. Full Article Pumped Storage Hydro North America News Research and Development Hydropower Storage
ari AES to supply 100-MW energy storage system in Arizona By feedproxy.google.com Published On :: 2019-02-21T15:55:00Z Under a 20-year agreement, AES will provide APS with the storage capabilities powered by Fluence’s Advancion platform. Full Article News Storage Grid Scale Energy Storage North America Solar Placement Batteries Utility Integration
ari Investment group says solar energy could see “popularity boost” in UK due to Brexit By feedproxy.google.com Published On :: 2019-04-03T13:07:06Z Solar energy companies could fill the void created by the lack of secure energy transfer between UK and EU, the group says. Full Article News Utility Scale C&I DER DER Solar Utility Integration
ari Arizona Public Service issues RFP for large solar + storage plant to provide ‘solar after sunset’ By feedproxy.google.com Published On :: 2019-04-03T14:51:24Z After announcing nearly a gigawatt of new clean-energy projects in February, APS is now seeking proposals to build two of them in different parts of the state. The first request for proposals (RFP) seeks partners to add batteries to existing APS solar plants in rural Arizona, storing their power for use after the panels stop producing each day. A second partner is being sought to develop a large (100-MW) solar plant paired with an equal amount of storage, to bring more clean energy to customers after dark. Both of these projects will provide APS customers with more solar after sunset, serving their evening energy needs with an even cleaner resource mix. Full Article News Editor's Pick Utility Scale Storage Grid Scale Solar Utility Integration
ari Clearing up some confusion over community solar in New York By feedproxy.google.com Published On :: 2019-05-06T14:45:08Z Community Solar in New York has a messaging problem. It is confusing, and even some industry professionals have given up in disgust because of aggressive marketing and a lack of clarity. Full Article DER Microgrids News Solar Utility Integration Community Solar
ari Trump exempts bi-facial solar modules from import tariffs By feedproxy.google.com Published On :: 2019-06-13T15:50:54Z In an announcement that was celebrated by the solar industry, yesterday U.S. trade officials said that bi-facial solar modules, which are solar modules that produce energy on both sides of the panel, would be exempt from import tariffs. Full Article Monitoring News Solar Utility Integration
ari New White Paper explores grid parity and the solar renaissance By feedproxy.google.com Published On :: 2019-06-13T18:40:35Z Today, solar power has become cheaper than the production cost of any other existing conventional power generation technology. The arrival of grid parity heralds a milestone in the history of energy production. It means solar energy being commercially viable without any subsidies or state support; producing energy with the lowest possible environmental impact. Full Article Solar News
ari In battle to break up utilities, Arizona steps to the front line By feedproxy.google.com Published On :: 2019-08-08T13:01:15Z Of all the efforts to break up utility monopolies in the U.S., the one unfolding in Arizona may be the most important to watch. Full Article Wind Power Solar News
ari U.S. Department of Energy announces funding for six marine energy projects By feedproxy.google.com Published On :: 2018-06-11T20:57:00Z The U.S. Department of Energy has awarded a total of $6.7 million in funding to six recipients, with the goal of developing innovative marine energy technologies "capable of generating reliable and cost-effective electricity from U.S. water resources." Full Article O&M Energy Efficiency Hydropower
ari Global Climate Summit Celebrates Emission Reduction Progress; Calls for Bolder Action to Meet Paris Climate Goals By feedproxy.google.com Published On :: 2018-09-14T16:06:00Z On the premise that the nations of the world are not doing enough to meet the goals of the 2015 Paris Climate Agreement, Governor Jerry Brown, New York City’s former Mayor Michael Bloomberg and other dignitaries convened a high-profile international gathering in San Francisco September 12-14 to inspire more ambitious action and showcase successful efforts. Full Article News Hydropower Storage Energy Efficiency Bioenergy Wind Power Solar Geothermal
ari DigiKoo: A German Solution to the Utility Data Sharing Conundrum By feedproxy.google.com Published On :: 2018-11-07T09:39:00Z For most of their history, in North America, electrical utilities have been centralized distribution networks. Utility operated generation resources are the hub of the network and electricity flows one-way via distribution networks largely controlled by the same utilities. In this model, there has been little reason for utilities to share anything but a small slice of data about their operations with anyone else other than themselves. Full Article Energy Efficiency DER DER Opinion & Commentary
ari Ontario to Set Targets for Industries to Cut Carbon Emissions By feedproxy.google.com Published On :: 2018-11-30T16:23:23Z Ontario plans to cut carbon gas emissions by 30 percent from 2005 levels by 2030, setting reduction targets for industries and encouraging private investments in clean technologies. Full Article Energy Efficiency News Hydropower Wind Power Solar Storage
ari Machining work performed to deal with bearing cooling problem at Lookout Shoals By feedproxy.google.com Published On :: 2015-01-05T21:00:00Z A problem with bearing cooling at the Lookout Shoals plant helped Duke Energy uncover several other issues that needed to be resolved. Through creative approaches and significant machining work, the units are now operating dependably. Full Article Hydropower
ari Climate Talks Nearing Consensus in Behind-the-Scenes Meetings By feedproxy.google.com Published On :: 2015-07-16T15:54:00Z Publicly, the United Nations climate-change talks look mired in disputes over everything from money to the length of the proposed agreement. Full Article Energy Efficiency Wind Power Solar
ari ORPC Ireland receives funding for marine hydrokinetic feasibility study By feedproxy.google.com Published On :: 2015-08-26T20:33:00Z The Sustainable Energy Authority of Ireland (SEAI) is funding the Ireland division of U.S.-based Ocean Renewable Power Co. (ORPC) to identify feasible tidal energy sites in the coastal waters of County Donegal. Full Article Energy Efficiency
ari Lignum Vitae North America LLC donates bearings to teams in the Wave Energy Prize Challenge By feedproxy.google.com Published On :: 2015-09-23T16:40:00Z Lignum Vitae North America LLC will donate bearings to any of the 20 teams advancing to the next phase in the Wave Energy Prize Challenge sponsored by the U.S. Department of Energy’s Water Power Program. Full Article
ari Laminaria set to test MHK device in Scotland By feedproxy.google.com Published On :: 2015-12-16T14:43:00Z The European Marine Energy Centre (EMEC) has signed Flemish wave energy developer Laminaria to test its marine hydrokinetic (MHK) energy device at EMEC’s grid-connected wave test site at Billia Croo, off the west coast of Orkney, Scotland. Full Article
ari EMEC announces flurry of activity at Scottish marine energy site By feedproxy.google.com Published On :: 2016-02-25T22:11:00Z Capping a busy February for the European Marine Energy Centre is an announcement that tidal turbine manufacturer Tocardo has signed a 20-year deal for testing at EMEC's array in Orkney. Full Article
ari Papua New Guinea First to Finalize Climate Plan Under Paris Agreement By feedproxy.google.com Published On :: 2016-04-08T16:48:00Z Papua New Guinea recently became the first country to formally submit the final version of its national climate action plan (called a “Nationally Determined Contribution,” or NDC) under the Paris Agreement. The small Pacific nation’s plan to transition to 100 percent renewable energy by 2030 is no longer just an “intended” nationally determined contribution (INDC) — it is now the country’s official climate plan. Full Article Hydropower Baseload Bioenergy Wind Power Solar Geothermal
ari Aquatera strengthens marine energy ties in Japan By feedproxy.google.com Published On :: 2016-04-14T14:15:00Z Scotland-based power and environmental consultant Aquatera Ltd. Has entered into a partnership with the Nagasaki Marine Industry Cluster Promotion Association in an effort to help Japan bolster its marine energy sector through international collaboration. Full Article Baseload
ari Ontario’s Cascade Generation Station begins 2.2 MW upgrade By feedproxy.google.com Published On :: 2016-04-18T20:59:00Z The Cascade Generation Station on the Seguin River in Parry Sound, Ontario, Canada, is being upgraded from 1.2 MW to 3.4 MW, according to the project’s owner, Parry Sound PowerGen Corp. Full Article Baseload
ari What’s Next? EU, US and Colombia Show They’re Moving Forward with the Paris Agreement By feedproxy.google.com Published On :: 2016-05-13T12:10:00Z Less than two weeks after 175 nations signed the pivotal Paris Agreement on climate change, a question lingers: What happens now? Full Article Hydropower Baseload Storage Bioenergy Wind Power Solar Geothermal
ari 382-MW Ulu Jelai hydroelectric plant in Malaysia nearing completion By feedproxy.google.com Published On :: 2016-08-10T13:41:00Z The 382-MW Ulu Jelai hydropower project, which began construction in 2011, is 95% complete and expected to be fully-commissioned in the third quarter of this year, in the district of Cameron Highlands, Pahang, Malaysia, according to state-owned power utility Tenaga Nasional Bhd (TNB), Malaysia's largest utility company and the project’s owner. Full Article Baseload
ari Will the G20 Spur Post-Paris Climate Action? 3 Signs to Look For By feedproxy.google.com Published On :: 2016-08-22T14:41:00Z The G20 meeting in Hangzhou, China, this September brings together leaders of the world’s largest economies for the first such gathering since the 2015 Paris Agreement on climate. G20 Leaders Summits traditionally focus on economic growth and financial stability, but since more than 190 countries collectively agreed to greatly enhance mitigation of the causes and impacts of climate change, the need to tackle a changing climate and foster clean energy has become a clear economic and business reality. Full Article Hydropower Baseload Bioenergy Wind Power Solar Geothermal
ari US and China Join Paris Agreement, Bringing it Much Closer to Taking Effect By feedproxy.google.com Published On :: 2016-09-06T17:17:00Z The United States and China on Sept. 3 formally joined the Paris Agreement in a ceremony in Hangzhou, China, ahead of the G20 Summit. President Obama and President Xi both deposited their country’s official instrument with United Nations Secretary, General Ban-Ki Moon. Full Article Hydropower Baseload Bioenergy Wind Power Solar Geothermal
ari U.S. and China formally join the Paris climate change agreement By feedproxy.google.com Published On :: 2016-09-07T18:12:00Z On Sept. 3, U.S. President Barack Obama and China's President, Xi Jinping, formally agreed to participation in the negotiated 2015 United Nations Climate Change Conference (COP 21) Paris Agreement, a global agreement on the reduction of climate change. Full Article Baseload