Category: Software

  • qBittorrent Resolves 14-Year-Old Security Vulnerability

    qBittorrent Resolves 14-Year-Old Security Vulnerability

    qBittorrent, a well-known file sharing application that has existed since 2006, has been accepting almost any SSL certificate for domains and addresses in its DownloadManager for over 14 years. Recently, this vulnerability has been fixed. The commit that opened up this security issue was made in April 2010, and it was quite straightforward; it merely altered the default setting of SSL verification from enabled to disabled. This change eliminated annoying security warnings that could frustrate users trying to download content from untrusted sources. As of October 28, 2024, with the release of version 5.0.1, the default setting has been switched back to enabled. It’s important to mention that qBittorrent did not provide any explanation for this adjustment and did not inform users in any notable way, apart from the regular patch notes that come with new updates.

    Understanding SSL Certificates

    SSL certificates serve as security tokens that perform two main functions; they confirm that the web traffic source is legitimate and enable the encryption of data transmitted over that connection. Since BitTorrent is primarily a peer-to-peer file transfer protocol, it’s logical to think that users might receive safe files from personal servers or even their home computers, which may not have valid SSL certificates. With the verification check turned off, users could interact with and download files from these sources without complications.

    Risks of Disabled SSL Verification

    However, the downside is that not having an SSL certificate, or accepting a fake one, allows virtually any web traffic source from any server to impersonate the actual site the user intends to access. This poses a risk of hijacking traffic, potentially enabling malicious users to steal data from either the host or user systems and even inject harmful code. Such man-in-the-middle attacks can bypass many standard security measures, including firewalls, which usually protect users from threats.

    The option that determines whether the application will accept connections without validating the SSL certificate remains available to users. Those willing to take the chance can simply disable it. The average user who plugs in and plays with the app is not expected to explore the settings beforehand or understand how SSL certificates function and the dangers associated with keeping this setting disabled, making this change a positive step for improving app security.

    qBittorrent | Bleeping Computer | Sharp Security

  • Apple Tests New Blood Sugar Monitoring Features in Secret App

    Apple Tests New Blood Sugar Monitoring Features in Secret App

    Apple has been quietly working on new features for blood glucose monitoring. They have tested two tools through an app that lets users track what they eat and record changes in their blood sugar levels, which are measured using conventional devices. Users of the Apple Watch can monitor their blood sugar levels with compatible devices like the new Dexcom G7 CGM.

    Focusing on Prediabetes

    This new app from Apple is reportedly aimed at individuals with prediabetes—those with elevated blood sugar levels who are at risk for Type 2 diabetes. By keeping track of these two key data points, users can learn how various foods impact their blood sugar. According to a report by Mark Gurman in his Power On newsletter for Bloomberg, Apple has been testing this app throughout the year, but the testing phase has now ended. A limited group of Apple employees was allowed to use the tools after a blood test verified their prediabetic condition.

    No Public Release Planned

    It seems that Apple does not intend to launch this app for the general public; it was mainly a research project, aiming to find ideas for future user tools. It’s unclear if a meal logging feature might eventually make its way into the Apple Health app as a result of this testing. Additionally, there does not appear to be any connection between this study and the non-invasive blood sugar monitoring device that Apple is developing.

  • Android 16 Launch Date Set for Q2 2025, Says Google

    Android 16 Launch Date Set for Q2 2025, Says Google

    This year, Android 15 launched later than previous versions. Rather than coming out in the third quarter, the latest Android started its rollout to compatible devices just over a week ago. In 2025, Google plans to shift away from the Q3 timeline for Android 16, opting instead for an earlier release in Q2!

    Details from the Android Developers Blog

    The information was shared in an official announcement on the Android Developers Blog, which revealed that there will be two Android updates in 2025. The first update will be a major version in Q2, followed by a minor update in Q4. The main reason for moving the major release to an earlier date is to sync with the launch schedules of devices throughout the Android platform, allowing a wider range of devices to receive the significant update sooner.

    Manufacturer Launch Timings

    This change seems logical, as many manufacturers typically plan their new device launches for Q3, often extending into Q4, yet they often release their phones with an outdated version of Android. Google itself experienced this issue this year when the Pixel 9 (priced at $899 on Amazon) came with Android 14 instead of the latest Android 15.

    Upcoming Features and Changes

    The Android update planned for the fourth quarter of 2025 will include feature enhancements, optimizations, bug fixes, and new APIs for developers, all following the major update in Q2. However, there won’t be any changes that would impact apps’ behaviors. From this description, it sounds like we might see a revival of the Android Jelly Bean days, where versions had decimal points. Therefore, the Q4 update could resemble Android 16.1.

    With this new schedule, the testing phase for Android 16, codenamed Baklava, will start sooner than initially anticipated, and users with compatible devices should be on the lookout for developer previews coming soon.

  • Philips Hue App Update Introduces New Features for iOS Users

    Philips Hue App Update Introduces New Features for iOS Users

    More updates have come to the Philips Hue app for iOS. The new version 5.29.0, released on October 29th, introduces widget-based controls along with two fresh features for the brand’s smart security cameras, including the Secure Desktop Wired (curr. $170.19 at Amazon).

    Privacy Enhancements

    According to the release notes for Philips Hue app version 5.29.0, the snapshot image from the security camera is now blurred while waiting for connection. The company claims this change is meant to improve privacy. Furthermore, the strength of the camera’s Wi-Fi signal can now be seen in the Security Center snapshot. This feature was previously added to the live view in the 5.26.0 update that came out in September.

    New Widget Features

    You can also utilize an iOS widget to set timers or activate a Mimic presence automation. This automation will automatically turn your smart lights on and off in certain rooms at appropriate intervals, which can help keep intruders away when you are not home. The Philips Hue app version 5.29.0 is available for download from the Apple App Store. Meanwhile, the Google Play Store is still offering the older version 5.28.0, and it is not clear when or if version 5.29.0 will be released for Android users.

    Apple App Store, Google Play Store


    Image 1
  • Xiaomi HyperOS 2 Global Release Schedule Leaked Details

    Xiaomi HyperOS 2 Global Release Schedule Leaked Details

    XiaomiTime has revealed the rollout plan for the HyperOS 2 Global. This updated user interface aims to provide enhanced performance, an intuitive user experience, and advanced optimizations for devices. The rollout of HyperOS 2 Global will commence for select smartphones in the fourth quarter of 2024, with more devices to follow in the first quarter of 2025. Staying true to Xiaomi’s innovative vision, this update is set to deliver an experience brimming with cutting-edge features for its users.

    Key Devices Receiving the Update

    The Xiaomi 14 and Xiaomi 13T Pro are among the flagship devices that will receive the HyperOS 2 Global update in Q4 2024. These premium models will be the first to experience Xiaomi’s most sophisticated software, promising users the speed and smoothness of HyperOS 2. With the integration of Android 15 in HyperOS 2, these devices are expected to deliver top-notch performance through seamless software and hardware collaboration.

    Additional Models in Q1 2025

    In the first quarter of 2025, the HyperOS 2 Global will also be available for several other models, including the Xiaomi 14 Ultra, Xiaomi 14T Series, Xiaomi 13 / 13 Pro / 13 Ultra, Xiaomi 13T, as well as POCO F6 / F6 Pro, POCO X6 Pro 5G, and the Redmi Note 13 series (4G, Pro 5G, Pro+ 5G), along with Redmi 13 and Redmi 12. This extensive list underscores Xiaomi’s dedication to rapidly deploying innovative updates across a diverse array of products. The update is optimized for both flagship and mid-range devices, thus catering to a broader audience.

    Innovations and Improvements

    HyperOS 2 Global brings a host of new features. Notably, its enhanced Control Center allows for quicker and more customizable daily operations. Additionally, AI-enhanced camera functionalities have been fine-tuned for impressive photo and video quality, particularly on Xiaomi’s high-end offerings. These improvements ensure that devices operate more smoothly and effectively during everyday use.

    Furthermore, better battery management and resource optimizations are standout features of HyperOS 2 Global. This new operating system promises extended battery life and improved performance, giving users the ability to use their devices for longer periods without interruptions. With this user interface, Xiaomi aims to bolster its competitiveness in the market by making a bold statement on the software front.

  • OxygenOS 15 Open Beta for OnePlus 12: How to Apply Now

    OxygenOS 15 Open Beta for OnePlus 12: How to Apply Now

    OnePlus has introduced the OxygenOS 15 Open Beta program based on Android 15 for its flagship device, the OnePlus 12. This initiative invites early adopters to explore new features and enhancements that are on the horizon. However, since it’s a beta version, users might face some stability challenges and bugs during their experience.

    What to Expect from the Open Beta

    The Open Beta gives OnePlus 12 users a chance to test out fresh software functionalities before they officially launch, making it a great way to get a sneak peek at upcoming innovations. Nonetheless, since this is a beta version, it may come with some instabilities, leading to issues like hiccups in performance, limitations with app compatibility, and unexpected crashes.

    To participate in the beta program, OnePlus 12 users must have the software version CPH2573_14.0.0.850(EX01) installed. The steps to enroll are easy:

    1. Navigate to Settings > Software Update.
    2. Click the icon in the upper-right corner.
    3. Choose “Beta program” > “Release candidate, update now.”

    It’s important to keep in mind that the program has a cap on the number of participants, and spots will fill up on a first-come, first-served basis.

    Pros and Cons of Joining

    While having early access to new features sounds thrilling, users must also consider the risks involved. Beta versions such as OxygenOS 15 often lack the stability of official releases, which means users could run into problems like overheating, slower operation, and app failures.

    OnePlus recommends that users back up their crucial data before enrolling in the beta. If any problems arise, there’s an option to revert to the stable version, but this process is more complex than a typical update. It involves manually installing a separate package, which will erase all data on the device.

    Is the Open Beta Suitable for You?

    Deciding to join the Open Beta program relies on individual preferences and requirements. Those who enjoy testing new features and providing feedback to developers may find this beta to be a compelling opportunity. On the other hand, users who depend on a reliably stable device for everyday tasks might want to hold out for the official release.

    Ultimately, the choice to engage with the OxygenOS 15 Open Beta program lies in the hands of each OnePlus 12 user. If you choose to dive in, you can look forward to 7 exciting features awaiting you in the beta program.

  • One UI 7 Leak: New Design and Security Features for Android 15

    One UI 7 Leak: New Design and Security Features for Android 15

    Samsung was not very clear about One UI 7 at its Developer Conference, but a recent leak from Android Headlines has shed light on what to expect from this Android 15 skin for Galaxy devices. This leak touches on several aspects, including lock screen enhancements, notification improvements, AI photo features, and security updates. Let’s dive into what you can look forward to.

    Changes in One UI 7 Design

    One UI 6 icons

    For some time, there have been rumors about the new icon set for One UI 7, and this leak seems to confirm it. The images below show a comparison between the new icons and the older ones.

    One UI 7 icons

    Moreover, this leak indicates that the upcoming UI will feature a revamped lock screen, which will allow for greater customization and support for widgets. There will also be smarter ways to manage notifications. Samsung seems to be enhancing the Circle to Search tool in One UI 7 as well. This feature will help students with subjects like math, physics, and history, providing answers along with resources, videos, and solutions sourced from Google.

    AI Features in Photography

    The AI capabilities are set to grow within the photography tools too. A new feature called “Live Effects” will be introduced to add depth to images. Additionally, users can expect a range of AI-generated artistic filters designed to enhance portrait photography specifically.

    Lastly, AI Zoom is expected to leverage the Pro Visual Engine to keep images clear even when zooming in as much as 100x. The leak also mentions ongoing development for the Sketch to Image feature that was initially launched with the Galaxy Z Fold 6 and Flip 6. This tool uses AI to convert user drawings into art. Currently, it offers styles like 3D Cartoon, Sketch, and Watercolor, but new styles are rumored to be on their way.


    Image 1
    Image 1
    Image 1
    Image 1
  • Xiaomi Launches HyperOS 2.0: Rollout Plans in Three Batches

    Xiaomi Launches HyperOS 2.0: Rollout Plans in Three Batches

    While the Xiaomi 15, Xiaomi 15 Pro, and Xiaomi Pad 7 tablets are making big news today, the company has also introduced HyperOS 2.0, which is the newest version of its software interface for its ecosystem. HyperOS was first launched as a substitute for MIUI a year ago along with the Xiaomi 14 series, and Xiaomi is now looking to fix some issues with this newly announced version.

    AI Enhancements

    In keeping with the current trend, HyperOS 2.0 primarily focuses on AI enhancements compared to its earlier version. It includes features like AI Writing, AI Subtitles, AI Paintings, AI Sound Recognition, AI anti-fraud, AI Translations, and many more similar functions. The most intriguing feature is Xiaomi HyperConnect, which promises effortless file transfers between Xiaomi and Apple devices.

    Rollout Plans

    Regarding the rollout of HyperOS 2.0 in China, Xiaomi has confirmed that its new gadgets will come equipped with the updated software. This includes the Xiaomi 15 series, Xiaomi Pad 7 series, Xiaomi TV S Pro 2025, Xiaomi Watch S4, and the fresh Mi Band 9. The first phase of updates for existing devices will start in November, with the Xiaomi 14 series, Mix Fold 4, Mix Flip, and Xiaomi Pad 6S Pro (buy on Amazon) being the initial models to receive it.

    Future Updates

    The second wave of updates is set to kick off in December, featuring devices like the Xiaomi 13 series, Civi 4 Pro, Redmi K60 series, Redmi Note 14 series, Pad 6 Pro and Pad 6 Max, along with the Redmi Pad Pro, Redmi Pad Pro 5G, and Redmi Pad SE. The third wave of updates is scheduled for the first half of 2025 and will include a range of models like the Xiaomi 12S series, Xiaomi 12 series, Mix Fold 2, Civi 3, Redmi K50 series, Redmi Note 13 series, Redmi Note 12 series, Redmi Note 11T Pro, Redmi 14 series, Redmi 13 series, and Redmi 12 series, all set to get the HyperOS 2.0 OTA.


    Image 1
  • Microsoft Claims Google Funds Campaign Against Its Cloud Services

    Microsoft Claims Google Funds Campaign Against Its Cloud Services

    Through a blog entry written by Rima Alaily, who is Microsoft’s CVP and Deputy General Counsel, the tech behemoth from Redmond is claiming that Google is running a covert operation to tarnish its reputation before the European Commission.

    Google’s Complaint

    In September, Google officially lodged a complaint against Microsoft with the European Commission, alleging that the company engages in anti-competitive licensing methods. It accused Microsoft of employing outdated licensing strategies that keep customers locked into a single cloud environment.

    Google highlighted that Microsoft has interconnected Teams, its communication platform, with its main SaaS (Software as a Service) products, Office 365 and Microsoft 365. In the complaint, Google claimed that Microsoft is also doing this with Microsoft Azure, making it difficult for customers in Europe to "transfer their existing Microsoft workloads to other cloud services – despite there being no technical reasons preventing it – or impose what Microsoft acknowledges is a massive 400% price increase."

    Microsoft’s Response

    Microsoft contends that Google is attempting to divert the attention of regulators from the ongoing legal challenges the company is currently facing. There are over 24 antitrust inquiries into Google in major digital markets around the globe.

    Microsoft asserts that Google is trying to skew the regulatory environment to its advantage instead of competing fairly in the cloud services market. The company argues that Google is using the OCC (Open Cloud Coalition) as a guise to gain regulatory support. This coalition, which was launched today, includes global companies like Civo and Gigas, as well as smaller firms such as Pulsant, Clairo, and Room 101.

    Coalition’s Goal

    Nicky Stewart, a spokesperson for the coalition and former ICT chief in the UK Cabinet, stated that the group aims to encourage lawmakers to examine restrictive contracts and support a more open and adaptable market for competitors.

    Microsoft, Google, European Commission, Gov.uk

  • JetBrains WebStorm and Rider Free for Non-Commercial Use

    JetBrains WebStorm and Rider Free for Non-Commercial Use

    JetBrains provides a variety of integrated development environments (IDEs) for software developers working with different programming languages. In the past, JetBrains only offered limited "community editions" of certain IDEs like IntelliJ IDEA for Java and Kotlin, and PyCharm for Python, while other IDEs required purchase after a 30-day trial period.

    New Free Options for Developers

    Now, WebStorm, which focuses on JavaScript and TypeScript, along with Rider, touted as "the world’s most popular .NET and game development IDE," can be utilized at no cost for non-commercial purposes. This change is aimed at making it easier for students, hobbyists and those involved in open-source projects to access these tools. While the community versions of IntelliJ and PyCharm can also be used for commercial work, they come with a more limited set of features compared to WebStorm and Rider.

    Supporting Developers’ Growth

    JetBrains mentions that various surveys, including Stack Overflow, reveal that 68% of developers engage in coding activities outside of their jobs for fun, and nearly 40% do so for professional development or self-learning. This percentage increases notably in game and web development. For instance, many game developers kick off their careers by making games as a hobby, often using free game engines. This insight influenced JetBrains’ decision to introduce this new licensing model for WebStorm and Rider, as explained in a blog post (buy JavaScript: The Definitive Guide on Amazon).

    JetBrains Blog