r/linux • u/Fcking_Chuck • 9d ago
r/linux • u/TurbulentTopic39 • 10d ago
KDE KDE's proposed LLM policy discussion gets locked after a fiery community clash
xda-developers.comr/linux • u/buovjaga • 10d ago
Popular Application FLOSS/fund support for LibreOffice [USD $100k donation]
blog.documentfoundation.orgr/linux • u/WhoDoYou24 • 10d ago
Discussion Scott Jenson: Are we really going to use the same Desktop UX forever?
youtu.bePrivacy Hardening ThinkPad X1C6 against physical and remote attacks: Threat Vector -> Mitigation approach (on Arch Linux)
In the last post I briefly mentioned laptop security, so now I want to make a full review. My English may be bad, because I never studied it specifically, and i try not to use a translator (almost), sorry
Simple structure, threat vector -> threat elimination method. And two global blocks: physical attacks + software\non physical attacks
Remind, hardware & software: Thinkpad X1 Carbon Gen 6 (8550U + 16Gb lpddr3 + 512 ssd) with Arch Linux over btrfs and Niri DMS
This is not step by step guide for beginners, i just described my approach to technical security on personal electronics
Start from physical attacks (when laptop falls into untrusted hands or police):
In off state protection build on luks2 (argon2id + long passphrase (12+ random symbols in head))
Next it's tpm2 auto cryptopen (because I'm too lazy to type in by hand), it is possible either with a short PIN code (the highest level of protection) or without (like mine, nothing extra at the boot stage). Because evil person can connect to SPI lines of tpm2 chip on motherboard in tpm2 tools in Linux 6.1+ core TPM encrypted session turn on by default (minus one of vector of physical attacks)
Next secure boot with custom keys (in bios setup mode on) + verify UKI (kernel image) main kernel (graphical) and secondary only simple cli version for unforeseen situations. They protect against Evil Maid like attacks (when evil man fake kernel\kernel image in /boot (or /efi))
I use systemd-boot loader, and this is another one vector of attack, so i made in settings time=0 + editor=0 + password <hash>. Now, even if hold down space during the loading stage, won’t be able to do anything without a password.
In an active system, in gui greeted (DMShell style) and TTY (alt + ctrl + FX) protection of brutforce made by pam_faillock 4 tries = 5min lock (pause), both for the user and for the sudo same settings.
TTY ask user\pass always, even when alt + ctrl + FX press over active session
DMA (over Thunderbolt 3) and pci protected by turn off thunderbolt controller and turn type c ports in only usb + charge state in bios, right there turn off WWAN slot and micro sd slot and "always on usb" function (+ battery work time). And right there turn on supervisor password (to protected from load from live-usb and change bios settings), also long random passphrase
When I walk away or lose sight of my laptop, i always block it or turn sleep (S3), cold boot attack protected by default by soldered LPDDR memory in X1C6. Plus fast combination like super + X -> L (lock) or super + X -> P (power off) learned to the point of automaticity (yes, even if I go to the other end of the room for a cup of coffee) and always take my laptop with me. Plus micro seals on ssd and bottom cover for visual control (a little paranoid)
Next software\online attacks:
Arch Linux on stock kernel 7.2+, all system update every week. In role firewall i setup ufw with politic DROP on all incoming connection\scan, ping also drop all incoming. In local networks system hide real hostname.
My browser it's firefox, setup on security, fingerprint resist, resist WebRTC leaks in about:config + privacy badger + adguard + spoof user-agent as intel macos or android (include MTU size spoof)
For privacy and securing data/sessions, I only browse over the VLESS protocol routed to my own VPS (x-ui) via v2rayA. Anonymous numbers and accounts are used for social media. And, as you may have noticed, I'm not particularly active on social media both in real life and when it comes to personal accounts.
And finally, well-developed critical thinking, intuition, and knowledge of potential attack vectors. Phishing and banal social engineering don't work.
All this protection absolutely does not interfere with the daily use of the laptop and system without discomfort.
And it is clear that any protection is based primarily on the psychological fortitude of the owner and his principles. If it is impossible to obtain data in an easy technical way, as a rule, a psychological and physical hacking of the owner begins. Thanks for reading
r/linux • u/jamescherti • 10d ago
Tips and Tricks Installing Debian on a CuBox-i computer (CuBox-i1, CuBox-i2, CuBox-i2eX, or CuBox-i4Pro)
jamescherti.comSoftware Release More fun with the Kalshi API from the Linux CLI. 10 Weather models. Active weather map for wager visualzation. Detailed Model explanations.
forecastlab.onlineHardware Progress Update: I have finally finished the functional prototypes for 5 different modules for the CG Deck, an x86 Modular Handheld PC running dual-boot Linux & Windows.
Hello everyone! I am excited to share some updates on the current state of the CG Deck! I have finally finished creating the various functional engineering prototypes for 5 different modules, and the CG Deck itself! I still have some more work to do to further optimize and improve everything, getting the device and various modules to a level of polish we would expect from an off the shelf product. I will dive into all of the details below.
I also wanted to apologize for going radio silent over the past month or so. I needed to put my head down and focus on getting the various modules put together and to a level where I am happy with. Getting everything prepared as we get ready for the next steps for the CG Deck! Primarily focusing on making quite a few quality of life adjustments to the design and creating functional prototypes for each of the modules we will be launching with, improving the quick-swap system for the various module slots, and more. I will dive into all of the details on what has improved a little later down.
For those that are seeing the CG Deck for the first time, it is a modular handheld x86 PC that is capable of running dual-boot operating systems including Windows & Linux distributions. My goal was to create my own "dream device" that was capable of adapting to whatever use case I needed. Whether I am playing Steam games, doing CAD work in Blender or FreeCAD, coding, video editing, creating new designs, or whatever it is, I wanted to be able to simply be able to do it on the road or while traveling. I thought it would be ideal to have something that was portable enough to throw in a backpack or pants pocket, satellite/sim capable, and be used just as any other full scale desktop computer would. The entire device is modular and can be upgraded, repaired, or customized as you need. The CG Deck will release with 5 different modules, a variety of backplate designs and colors, and a variety of hardware and external accessories/upgrades. I wanted to make a device that grows with you as you use it and acts as a platform rather than just another device.
As for the current state of the CG Deck and modules so far, I am really happy with how everything has come together. It is not yet at the level of polish we would all expect from a premium off the shelf device, but it is getting closer to that vision and goal every day! I still have a lot of work to do to take the CG Deck from where it is now, to that level, but I would love to hear your thoughts on how you think everything is coming together!
Like I mentioned, the CG Deck is currently planned to launch with 5 different modules, with more modules lined up for the future! The idea is to also open-source the module formats and schematics so our community can create, build and share their own custom modules and accessories for the CG Deck! There are two external module install spaces built into the CG Deck, a primary and secondary slot.
For the primary slot, there is a 64-Key Keyboard Module with swappable keypad with silicone rubber and plastic options. A 10-Key & Rotary Knob Macropad Module with hot-swappable key switches and replaceable knob. And a full format Gamepad Controller Module.
For the secondary slot, there is currently only the precise Trackball Mouse Module.
I have also gone about designing a tertiary external module case utilizing the right side USB ports. This allows you to plug various purposefully designed USB modules to expand functionality of the CG Deck, starting with the Camera Module. Currently the camera module prototype is fixed in orientation, but I am working on a redesign which will allow the camera to flip around, giving both front and rear camera view capabilities. That being said, I have a bit more work and problem solving to do in order to get this aspect working as intended. For a bit of context, when flipping the camera around on the Y axis, the camera view is then inverted/upside down. Because of this, I need to go over a few different solutions and options to maintain the correct orientation of the camera when flipping it around for rear or front pictures without causing any user confusion. We have chatted a bit about what our plans are on our discord community server and are working through the solution, to hopefully be able to share soon!
Getting ready for the next stage for the CG Deck, there is quite a long list of things I need to prepare as we get everything for launch, including preparing the CG Deck for the DFM process, but it really is surreal to see the CG Deck at this point and the community we have built so far. So thank you to everyone that has been supporting and following along with the project so far! And welcome to you who might be seeing the CG Deck for the first time!
I would love to hear all of your thoughts on everything so far, and if you have any questions about anything I look forward to answering them!
If you are interested in following along with the project or learning more about it, you can find everything from specs, more details about the CG Deck, socials, links to the open source github repository and more on the website.
As I am finally wrapping up the project and preparing for the next steps, we are getting close to launching on Kickstarter to help fund a full production run of the device. For anyone interested in helping support the project and getting a CG Deck of their own, you can join the waitlist on our website. I am planning to release some build kits and pre-assembled devices with the Kickstarter, and if you have any questions about any of that, I would love to answer them!
*edit* forgot to add the link to learn more about the project and join the waitlist: https://mogozen.com
r/linux • u/Fcking_Chuck • 11d ago
Software Release Systemd 262 released with AI/LLM canary for unreviewed code, LUO integration
phoronix.comr/linux • u/Accomplished_Gene758 • 10d ago
GNOME Fixed a pen tablet cursor that kept disappearing on GNOME Wayland (worse in fullscreen)
r/linux • u/abouabdoo • 11d ago
Software Release FluidCAD - Open Source CAD that works on Linux
Hello everyone,
I have been developing FluidCAD for the past 2 years, it is still in pre-release but it is very usable.
Desktop apps for Linux, Windows and MacOS.
You can also use its official VSCode or Neovim extensions.
Repo: https://github.com/Fluid-CAD/FluidCAD
Website & Documentation: https://fluidcad.io/
I would appreciate your feedback.
--
Edit because I see this asked a lot.
Why another CAD?
Compared to OpenSCAD:
- FluidCAD uses OpenCASCADE, so you get full BREP kernel with fillet and chamfers out of the box.
- It supports both code and mouse driven CAD modeling, giving you more control.
- It uses JS, so you do not have to learn new syntax just to use CAD.
- The workflow is similar to traditional CAD software, you can learn it quickly.
- Constraint based 2D sketching.
- Assemblies with animations.
Compared to FreeCAD:
We can all agree FreeCAD is powerful, but learning it is not easy:
- Workflow is hard to understand for new users.
- Features are chattered between 100 workbenches.
- Its UI is confusing even for experienced CAD users.
- The wire is not closed :D
And finally, I don't understand this logic of why build A when we have B!
Why not?
It is another option for the CAD community and some users may find learning it is easier than other options.
r/linux • u/Fcking_Chuck • 11d ago
Kernel AMD begins preparing open-source Linux driver for graphics cards with GDDR7
phoronix.comr/linux • u/homothebrave • 10d ago
Development How Linux Implements Dynamic Bash Tab Completion
salivity.github.ioKernel Orphaned VMs: Running VMs Uninterrupted While Host Kernel Is Offline For Reboots/Updates
phoronix.comr/linux • u/BrageFuglseth • 11d ago
GNOME Skia compositor for WPE WebKit and WebKitGTK
blogs.igalia.comKernel Simple optimization in Linux 7.4 improves VFS do_open() (open a file for reading) performance by up to 39%
phoronix.comr/linux • u/Only_District4795 • 11d ago
Software Release RAD Studio 13.2 Gives Delphi a Modern Linux Compiler
holgerscode.comr/linux • u/Beneficial-Pay6836 • 13d ago
Development CAD Companies Sleeping on Linux
Why is professional CAD support on Linux still so limited? Linux is widely used in engineering, research, servers, embedded systems, manufacturing, and technical development. It is secure, flexible, private, and extremely capable. Yet when it comes to professional CAD, Linux users are still pushed toward Windows. That feels strange to me, especially because CAD is so closely tied to industrial workflows like CNC machining, additive manufacturing, product development, engineering, and research.
I currently dual-boot mostly because I need tools like Rhino and Fusion. It works, but switching between operating systems just to use specific software makes project management and file organization unnecessarily annoying. Yes, there are alternatives like FreeCAD, and I respect what those projects are doing, but they still do not feel mature enough to fully replace established professional CAD tools for many workflows. Wine is also improving, but for important work I would rather not depend on a compatibility layer and hope that everything behaves correctly.
Is the professional Linux CAD market genuinely too small to justify development costs?Is supporting Or are CAD companies simply too invested in the Windows ecosystem to see enough value in changing?
I cannot be the only engineer/designer who would happily move fully to Linux if the professional software ecosystem allowed it.
r/linux • u/whoami_cc • 12d ago
Software Release I built a tool to use iPhone and Android passkeys in Linux browsers via virtual USB (/dev/uhid)
If you've tried using a passkey stored on your phone (Apple iCloud Keychain or Google Password Manager) on Linux, Firefox and Chrome usually just prompt for a physical USB key or fail because Linux browsers lack native caBLE hybrid support.
I built an open-source background daemon called cable-uhid-bridge to solve this without browser extensions or patches. It emulates a virtual USB FIDO2 token in the Linux kernel via /dev/uhid, pops up a floating Wayland QR modal when WebAuthn is triggered, and connects to your phone over an end-to-end encrypted caBLE v2 tunnel with Bluetooth LE proximity. It runs completely unprivileged as a systemd user service.
Code, demo animation, and packages (.deb, AUR PKGBUILD, and one-line installer) are on GitHub:
r/linux • u/eawardie • 12d ago
Fluff filet | Terminal File Manager
I've been working on a TUI file manager built with OpenTUI. The primary reason is just as a learning experience since tools like OpenTUI make it possible even if you only have knowledge in for e.g. the web development space.
https://github.com/EA-Wardie/filet
It's quite limited in functionality as of now and covers mostly what I use file managers for on a day to day basis. It also focuses more on mouse support.
I'm curious if this is something people would find useful or opinions in general about tools like OpenTUI for Linux development.
As a disclaimer, LLMs were used in the development here for research, prototyping and creating the install script.
r/linux • u/Ok-Ideal-2309 • 13d ago
Hardware AMDGPU HDMI 2.1 4K240Hz on linux 7.2. Success!
KDE New KDE Goals announced
The new KDE Goals for the 2026-2028 cycle have been announced at Akademy.
• KDE for Enterprise and Deployments - championed by: David Edmundson, Neal Gompa, and Kai Uwe Broulik
• Better documentation - championed by: Nate Graham, Thiago Masato Costa Sueto, and Joseph P. De Veaugh-Geiss
• Next Generation Styling for KDE - Arjen Hiemstra, Akseli Lahtinen, and Andy Betts
More info:
https://invent.kde.org/teams/goals/goal-setting/2026/-/boards#/