Java versions 15, 16, 17, and 18 (and maybe some older versions) have a big problem, ECDSA signature verification is totally broken. The story is a prime example of the dangers of unintended consequences, the pitfall of rolling your own crypto, and why to build a test suite for important code. In Java 15, the ECDSA verification code was re-written, moving the code from C++ to a Java-native implementation. The new code misses an important check, that the initialization and proof values are both non-zero.
News3667 Articles
Electric Chopsticks Bring The Salt, Not The Pain
The Japanese people love their salt, perhaps as much as Americans love their sugar high fructose corn syrup and caffeine. But none of these are particularly good for you. Although humans do need some salt in their diets to continue existing, the average Japanese person may be eating too much of it on a regular basis — twice the amount recommended by the World Health Organization, according to Reuters. Cue the invention of electric chopsticks, which provide salty flavor without the actual sodium.
No, you won’t get shocked — not even a fresh 9 V to the tongue’s worth. The tips of the chopsticks are made of something food-safe and conductive, and one is wired to a bracelet that contains a small computer. Using a weak current, the chopsticks transmit sodium ions from the food to the tongue, which increases the perceived saltiness by 1.5x. The device was co-created by a Meiji University professor and a Japanese beverage maker, who hope to commercialize it sometime next year.
This isn’t the first time humans have used trickery when it comes to diets. The older among you may remember the miracle berry weight loss craze of the 1970s. When ingested first, miracle berries make sour things taste sweet, so chowing down on grapefruits and lemons suddenly sounds like a good idea. What people failed to realize was that the acidity would still wreak havoc on their teeth and tongues, leaving them regretful the next day.
Images via Reuters
Honey, Did You Feed The Lamp? Company Wants To Create Living Light Bulbs
The BBC’s [Peter Yeung] had an interesting post about a small French town experimenting with using bioluminescent organisms to provide lighting. A firm called Glowee is spearheading the effort in Rambouillet and other towns throughout France, using a variety of biological techniques to harness nature’s light sources.
Glowing animals are reasonably common ranging from fireflies to railroad worms. In the case of the French street lighting, Glowee is using a marine bacterium known as aliivibrio fischeri. A salt-water tube contains nutrients and when air is flowing through the tube, the bacteria glow with a cool turquoise light. The bacteria enter an anaerobic state and stop glowing if you shut off the air.
Continue reading “Honey, Did You Feed The Lamp? Company Wants To Create Living Light Bulbs”
Vintage Computer Festival East Is This Weekend
This weekend the InfoAge Science and History Museum in Wall, New Jersey will once again play host to the Vintage Computer Festival East — the annual can’t-miss event for anyone who has even a passing interest in the weird and wonderful machines that paved the way for the supercomputers we now all carry around in our pockets. Ticket holders will have access to a program absolutely jam packed with workshops, talks, and exhibits that center around the dual themes of “Women in Computing” and “Computers for the Masses”, plus a consignment and vendor area that almost guarantees you’ll be going home a little poorer than when you got there. But hey, at least you’ll have some new toys to play with.
For those that can’t make the pilgrimage to the tropical wonderland that is the Jersey Shore in April, all three days of the Festival will be live-streamed to the VCF YouTube page. There’s even an official Discord server where you can chat with other remote attendees. We’re glad to see more events adopting a hybrid approach after two years of COVID-19 lockdown, as it gives the far-flung a chance to participate in something they would otherwise miss completely. That said, there’s no virtual replacement for the experience of browsing the exhibits and consignment areas, so if it’s at all possible we recommend you get yourself to InfoAge for at least one of the days.
Incidentally, don’t worry if you’ve got the sneaking feeling that it hasn’t been anywhere near a year since the last time the VCF descended on Wall Township. The 2021 Festival got pushed to October because of the lingering plague, but rather than permanently change the date going forward, the 2022 Festival has returned to its traditional season. Of course that means the wait until VCF 2023 will seem unusually long after this double-shot, so here’s hoping we see another swap meet at the InfoAge campus before the end of the year.
Solaris Might Be Free If You Want It
There was a time when “real” engineering workstations ran Linux Unix. Apollo and Sun were big names and Sun’s version was Solaris. Solaris has been an iffy proposition since Oracle acquired Sun, but Oracle announced last month that you can download and use Solaris 11.4 CBE free for non-production use.
Do you care? If you ever wanted to run “real” Unix this is an option although, honestly, so is Free BSD and it probably has better community support. On the other hand, since you can virtualize a machine to spin up, it might be worth a little time to install it.
On the other hand, if you have an old SPARC machine — this could be big news. We aren’t sure how far back the hardware this will support will go, but this could be just what you need to breathe new life into that eBay pizza box from Sun you’ve had in the basement. Of course, if you have an FPGA SPARC system, this might be interesting too, but we have no idea how much other stuff you need to implement to be able to benefit from Solaris.
Will you install Solaris? If so, tell us why. We are sure we won’t have to prompt you to tell us why not. In 2017, we thought we’d seen the end of Solaris, but apparently not. Maybe this will help those folks still on Solaris 9.
Easy, Extensible, Open
I’m a huge DIY’er. I don’t like to buy things when I can build them myself. But honestly, that doesn’t always end up in the optimal allocation of my time, when viewed from a getting-stuff-done perspective. Sometimes, if you’ve got a bigger project in mind, the right way is the quick way, and the quick way is buying something that already works. But when that something is itself not hackable, you’d better be darn sure that it does what you need, and what you could reasonably expect to need in the future, out of the box. And that’s where extensibility comes in.
It’s rare to find products out there that are designed to be both easy to use for the newbie, but extensible for the advanced user. For one, it’s hard work to tick either one of these boxes alone, so it’s twice as hard to nail both. But my other sinking suspicion is that designers tend to have an end user in mind, and maybe only one end user, and that’s the problem. When designing for the newbie, convenience is king. Or if targeting the pro, you maximize flexibility, but perhaps at the expense of designed-in complexity.
There’s a way out, a cheat code, if you will. And that’s making the project open source. Go ahead and hide the complexity from the new user if you want — as long as the pro is able to dive into the schematics or the source code, she’ll figure out how to extend it herself. Openness frees the designers up to worry about making it easy to use, without compromising its flexibility.
I think that this blend of easy and extensible, through openness, is what fundamentally drove the success of Arduino. On the surface layer, there are libraries that just do what you want and drop-down menus with examples to access them. But when you needed to actually use the chip’s hardware peripherals directly, there was nothing stopping you. For the community at large, the fact that all of the code was openly available meant that extending the base was easy — and let’s not beat around the bush, the community’s libraries, tutorials, and example projects are the real reason for the success of the platform.
Look around you, and look out when you’re making that next non-DIY shortcut purchase. Is it easy to use? Can you make it do the things that it doesn’t yet do? Just two simple requirements, yet they seem to knock out so many products if you want both. Then look at those that are both simple and flexible — are they also open? At least in my little world, the answer is almost always “yes”.
Printable Carbide Opens Up Interesting Possibilities
Sandvik, a large company headquartered in Sweden, has apparently been producing cemented carbide for a long time — according to them, since 1932. The material is known for being highly wear-resistant. Now the company says they have a process to 3D print the material. You can see a video about the new material, below.
If you haven’t encountered this material, it is essentially fine carbide particles bound in metal. You’ll find the material widely used in cutting tools. The slogan “Freedom of Design has Never Been Harder” is both clever and confusing, but we took their point.
The process is more or less like other metal binder technology. A powder of tungsten carbide and cobalt mixed with glue creates a green body which you still need to fire to get to the finished part.
What kind of things can you make? Here’s a quote from one of Sandvik’s engineers:
For instance, in wire drawing, productivity is usually limited by how fast the wire can be drawn with maintained quality, which in turn depends on the temperature in the wire drawing die. People have been trying to solve this problem for decades, but it’s been extremely difficult. A 3D printed, cooled wire nib is the answer to this riddle. It took a mere four days to produce, from the first basic sketch to the fully sintered product – thanks to our materials and proprietary process.
Don’t plan on loading up your Ender 3 with cemented carbide filament. This is, after all, a metal material. However, 3D printing can offer geometries that would be difficult to obtain with traditional methods. So even if you have to turn to a professional 3D printing shop, it is good to know you can create in this ultra-hard material.
Printing in metal has a different set of issues than using plastics. If you really want your current printer to do metal, it can, but you’ll have to cheat a bit. Or try electroplating.
Continue reading “Printable Carbide Opens Up Interesting Possibilities”






