By Unknown Lamer from Slashdot's formal-verification-for-the-rest-of-us department
Back in 2009, OKLabs/NICTA announced the first formally verified microkernel
, seL4 (a member of the L4 family
). Alas, it was proprietary software. Today, that's no longer the case: seL4 has been released under the GPLv2 (only, no "or later versions clause" unfortunately). An anonymous reader writes OSnews is reporting that the formally verified sel4 microkernel is now open source: "General Dynamics C4 Systems and NICTA are pleased to announce the open sourcing of seL4, the world's first operating-system kernel with an end-to-end proof of implementation correctness and security enforcement. It is still the world's most highly assured OS."
Source is over at Github
. It supports ARM and x86
(including the popular Beaglebone ARM board). If you have an x86 with the VT-x and Extended Page Table
extensions you can even run Linux atop seL4 (and the seL4 website is served by Linux on seL4
).Read Replies (0)
By timothy from Slashdot's they'll-take-a-look-see department
:cold fjord (826450)
writes with an excerpt from ZDNet At OSCon, The Department of Homeland Security (DHS) ... quietly announced that they're now offering a service for checking out your open-source code for security holes and bugs: the Software Assurance Marketplace (SWAMP). ... Patrick Beyer, SWAMP's Project Manager at Morgridge Institute for Research, the project's prime contractor, explained, "With open source's popularity, more and more government branches are using open-source code. Some are grabbing code from here, there, and everywhere." Understandably, "there's more and more concern about the safety and quality of this code. We're the one place you can go to check into the code" ... funded by a $23.4 million grant from the Department of Homeland Security Science & Technology Directorate (DHS S&T), SWAMP is designed by researchers from the Morgridge Institute, the University of Illinois-Champaign/Urbana, Indiana University, and the University of Wisconsin-Madison. Each brings broad experience in software assurance, security, open source software development, national distributed facilities and identity management to the project. ... SWAMP opened its services to the community in February of 2014 offering five open-source static analysis tools that analyze source code for possible security defects without having to execute the program. ... In addition, SWAMP hosts almost 400 open source software packages to enable tool developers to add enhancements in both the precision and scope of their tools. On top of that the SWAMP provides developers with software packages from the National Institute for Standards and Technology's (NIST) Juliet Test Suite.
I got a chance to talk with Beyer at OSCON, and he emphasized that anyone's code is eligible — and that there's no cost to participants, while the center is covered by a grant.Read Replies (0)
By Unknown Lamer from Slashdot's cast-hostile-takeover department
An anonymous reader writes "Sunday was the birthday of the late great Gary Gygax, co-creator of Dungeons & Dragons and Futurama guest star. With the fifth edition of D&D soon to come out at Gen Con this year, Jon Peterson, author of Playing at the World, has released a new piece to answer a historical question: how was it, back in 1985, that Gary was ousted from TSR and control of D&D was taken away from him? Drawn from board meeting minutes, stock certificates, letters, and other first-hand sources, it's not a quick read or a very cheery one, but it shows how the greatest success of hobby games of the 1980s fell apart and marginalized its most famous designer."Read Replies (0)
By Unknown Lamer from Slashdot's who-doesn't-need-more-bird-videos? department
:The ed17 (2834807)
writes Galleries, libraries, archives, and museums (GLAMs) are now facing fewer barriers to uploading their content to Wikimedia Commons — the website that stores most of Wikipedia's images and videos. Previously, these institutions had to build customized scripts or be lucky enough to find a Wikimedia volunteer to do the work for them. According to the toolset's coordinator Liam Wyatt, 'this is a giant leap forward in giving GLAMs the agency to share with Commons on their own terms.'
The Netherlands Institute for Sound and Vision has a short article on their use of the new toolkit
to upload hundreds of videos of birds
. See also the GWToolset project page
and documentation on the upload system
(includes screencasts). Before the toolset, organizations wishing to donate collections had to write one-off tools to translate between their metadata schema and Wikimedia's schema. The GWToolset allows the organization to generate and upload a single XML file containing metadata (using arbitrary, even mixed, schemas, with some limitations) for all items in a batch upload, prompts for mappings between the vocabulary used by the organization and the vocabulary accepted by Mediawiki, and then pulls the files into the Commons.Read Replies (0)