(Alle populaire onderdelen van) begroting gelekt!

Nou mensen stop maar met klagen over dit kabinet, dat niks kan, want niet alleen kan Rob Jetten dus wél een akkoord (met een minderheid van 66 zetels in de Tweede Kamer) sluiten over een begroting, het is hem en zijn makkers ook weer gelukt om deze in een recordtempo aan RTL Nieuws te lekken. En wat blijkt? Iedereen gratis bier, bezuinigingen op de uitkeringen geschrapt, Jan Struijs krijgt een gratis gordelroosvaccinatie, het eigen risico gaat niet omhoog (maar ook niet omlaag), de brandstofaccijns gaat langzamer omhoog en de lage inkomens krijgen een kleine koopkrachtplus. Het zuur dat nu is gelekt bestaat uit extra waterbelasting en belasting op hoge inkomens, want arbeid moet in Dit Land vooral niet lonen. Uiteraard doet dit kabinet NIKS aan al die verschrikkelijke btw-kortingen of andere nuttige maatregelen die de begroting op de lange termijn houdbaar maken want na Jetten de zonvloed. Het kan wél.

Rijnmond - Nieuws

Het laatste nieuws van vandaag over Rotterdam, Feyenoord, het verkeer en het weer in de regio Rijnmond

Scooterbrand in Overschie slaat over naar woning, konijnen en hond gered

Naast een huis aan de Kleinpolderkade in Rotterdam-Overschie is dinsdagmiddag een scooter in brand gevlogen. De brand sloeg aan de voorzijde het huis binnen. Twee konijnen en een hond zijn uit de woning gehaald.

MetaFilter

The past 24 hours of MetaFilter

Bureau of Minor Sufferings

Not quite my sort of thing, but some here might find it amusing And it's got a free option, so there's that.

Bueau of Minor Sufferings

Not quite my sort of thing, but some here might find it amusing And it's got a free option, so there's that.

VK: Voorpagina

Volkskrant.nl biedt het laatste nieuws, opinie en achtergronden

Onderzoek: ingezonden opiniestukken in Nederlandse kranten vol met AI

De Speld

Uw vaste prik voor betrouwbaar nieuws.

Efteling opent nieuw themagebied voor OnlyFans-creators: ‘Zo houden we het tenminste gescheiden’

Attractiepark De Efteling wordt de afgelopen jaren geteisterd door OnlyFans-creators die erotische content in het park opnemen. Om deze groep beter te bedienen komt er nu een apart themagebied voor de makers en fans van de content.

Na lang, hard werk te hebben verricht krijgen de OnlyFans-creators nu waar ze al jarenlang voor lobbyen. “De boodschap is nu binnengekomen”, vertelt een woordvoerder van het attractiepark. Het nieuwe gebied, Kinkland, zal alles hebben wat het hartje van een hitsige oude getrouwde man begeert: een Hollebolle Gijs-glory hole, een Feeta Morgana, en voor de liefhebber een ezeltje strek je golden shower. “We bestaan inmiddels al meer dan 70 jaar, het wordt tijd om met de tijd mee te gaan.”

Fans zijn enthousiast over de plannen voor Kinkland. “De Efteling is nu écht een plek voor iedereen: kinderen, middelbare scholieren en adult content-sterren die doen alsof ze middelbare scholieren zijn.”

&''


Wel.nl

Minder lezen, Meer weten.

Kabinet haalt bezuinigingen uitkeringen grotendeels uit begroting

DEN HAAG (ANP) - Het minderheidskabinet heeft de miljardenbezuinigingen op de sociale zekerheid grotendeels uit de boeken gehaald. De korting op uitkeringen is van de baan, net als de snellere stijging van de AOW-leeftijd. Enkele andere ingrepen, waaronder de halvering van de WW-duur, worden met een jaar uitgesteld. Dat bevestigen Haagse bronnen na een bericht van RTL Nieuws.


The Register

Biting the hand that feeds IT — Enterprise Technology News and Analysis

33-hour BGP hijack of Softaculous traffic prompts security scramble

Softaculous and Virtualizor customers are being urged to reset credentials and inspect their servers after a 33-hour BGP hijacking incident diverted traffic and delivered malware to a handful of installations. Softaculous makes software for the web hosting industry, while its Virtualizor control panel is used by providers and administrators to deploy and manage virtual private servers. Beginning at around 20:57 UTC on August 28, an unrelated network began announcing a block of Hetzner IP addresses used by Softaculous, diverting some traffic intended for the vendor's systems to an attacker-controlled server. German hosting provider Hetzner is one of Softaculous's upstream infrastructure providers. The affected addresses served "a number of Softaculous systems," including Virtualizor's software update endpoint and Softaculous's client and billing site. The attacker pulled off the BGP hijack by announcing a more specific IP address range than Hetzner normally advertised. Under standard BGP route selection, the more specific route took precedence wherever it was accepted. According to Softaculous, the attacker was also able to secure a valid TLS certificate from Let's Encrypt because the certificate authority's automated domain-ownership validation was routed through the hijack too. This allowed affected connections to reach the attacker's server without triggering the certificate warnings that might otherwise have alerted users. According to the vendor's timeline, the unauthorized route was initially "accepted by essentially every internet vantage point that receives it," although it flapped repeatedly rather than remaining continuously available. Softaculous said it reported the issues to Hetzner at around 08:50 UTC on August 29. The hosting provider began directly announcing the same, more-specific address range, cutting the observed diversion to almost zero for roughly 11 hours. The unauthorized announcement returned at around 20:00 UTC and was again widely accepted, beginning a second wave that lasted roughly ten hours. The route was withdrawn between 05:50 and 06:10 UTC on August 30, after which normal routing was restored globally. While either wave was active, Softaculous estimates that a given server had roughly a 72 percent chance of being on a network that routed the affected address range through the attacker. The figure is based on the proportion of RIPE routing collector peers carrying the hijacked route, not the volume of traffic intercepted, the vendor said. Anyone who logged into the Softaculous client area during the incident window is advised to reset that password immediately, as well as anywhere else it was reused. Customers who entered card details during the same window should also review their statements. Softaculous said it does not process cards on its own servers and instead uses payment gateways, but an affected session may have been diverted before reaching them. More seriously, the vendor confirmed that a malicious Virtualizor update package was delivered to a handful of installations whose update checks passed through the attacker's server. "Our product update clients did not yet cryptographically verify update packages, so a modified package would not have been rejected on that basis." Because those downloads never reached its own logs, Softaculous said it "cannot produce a definitive list" of affected installations. It is therefore telling every Virtualizor operator to treat their server as in scope for checks – not necessarily as compromised. Softaculous did not describe the malware's capabilities, but identified a systemd unit at /etc/systemd/system/java-jre-update.service as an indicator of compromise. Operators that find it are advised not to delete it immediately, but to contact the vendor so evidence can be preserved. The vendor has not identified malicious packages targeting Backuply, Softaculous, SitePad, Webuzo, or its other products, although its investigation continues. Virtualizor operators should rotate and restrict their API credentials, check for unknown SSH keys and accounts, inspect scheduled tasks and outbound connections, and regenerate client-area API keys. Softaculous is also invalidating client-area sessions created during the incident window. Softaculous did not disclose how many customers downloaded the malicious update or may have handed credentials to the attacker. It said only that the confirmed infections amounted to "a handful of servers rather than the general Virtualizor user base." ®

The Guardian

Latest news, sport, business, comment, analysis and reviews from the Guardian, the world's leading liberal voice

‘Demonic oppression’ and ‘girly convos’: the podcast wooing young women back to Christianity

Girls Gone Bible is on tour in the US, touting a regressive ideal of femininity through discussions of abstinence and mental health struggles

At first glance, the crowd gathering outside a music venue in Red Bank, New Jersey, could have passed for a group of sorority rush hopefuls – or Ella Langley fans on their way to the country star’s show. Most of them were under the age of 30. They wore cowboy boots, maxi sundresses and soft, bouncy blowouts, scrolling on their phones outside the doors as they waited for friends to arrive.

But one accessory gave them away: the Bibles they toted. These women were there to pray.

Continue reading...

‘They take the water, the springs dry up’: fear as Guatemalan goldmine plan is revived

After lying dormant for years, the Era Dorada project in Asunción Mita resumed this year and villagers say history is being repeated, despite promises of change

In the community of La Lima in Guatemala, Elda Dinora Ramírez, 58, looks towards a small well at the back of her home. Dusty wooden planks lie across the opening, concealing the faint gleam of water far below. “The well is drying up again,” she says.

Ramírez’s home lies less than a mile from Era Dorada – a goldmining project acquired by the Canadian multinational Aura Minerals in January 2025. After years of inactivity, the project was reactivated this year when the Guatemalan government granted Aura a construction licence.

Continue reading...