Menu

Latest articles

FishMonger’s arsenal upgraded: SprySOCKS for Windows ESET researchers have discovered SprySOCKS for Windows, FishMonger’s backdoor weaponizing a kernel driver for advanced stealthiness
QR Code Phishing Linux Quishing Risks and Mitigation Strategies
FreeRDP 3.27 Raises the Baseline for Secure Remote Access
SimpleHelp Authentication Bypass Exposes Remote Access Security Risk
https://security-tracker.debian.org/tracker/DSA-6347-1
https://security-tracker.debian.org/tracker/DSA-6346-1
https://security-tracker.debian.org/tracker/DSA-6345-1
Three critical Fortinet sandbox bugs splattered by unknown attackers
Several issues have been found in asterisk, an Open Source Private Branch Exchange (PBX). They are related to buffer under- or overflows, either on heap or on stack. Some are related to use-after-free or wrong processing of invalid or untrusted certificates. For Debian 11 bullseye, these problems have been fixed in version
EvilTokens: A phishing attack that doesn’t steal your password A phishing kit subverting Microsoft’s legitimate authentication flow lets attackers break into accounts without stealing passwords or creating fake login pages
An update that solves five vulnerabilities can now be installed.
An update that solves five vulnerabilities can now be installed.
An update that solves five vulnerabilities can now be installed.
An update that solves five vulnerabilities can now be installed.
An update that solves five vulnerabilities can now be installed.
An update that solves three vulnerabilities can now be installed.
# Security update for containerized-data-importer Announcement ID: SUSE-SU-2026:2407-1 Release Date: 2026-06-16T07:47:27Z Rating: important References:
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability and has one security fix can now be installed.
An update that solves one vulnerability and has one security fix can now be installed.
An update that solves one vulnerability and has one security fix can now be installed.
An update that solves one vulnerability and has one security fix can now be installed.
An update that solves four vulnerabilities and has one security fix can now be installed.
An update that solves four vulnerabilities and has one security fix can now be installed.
An update that solves one vulnerability and has one security fix can now be installed.
Several security issues were fixed in rabbitmq-c.
Several security issues were fixed in Squid.
The CA certificates in the ca-certificates package were updated.
An update that solves one vulnerability can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves 3 vulnerabilities can now be installed.
An update that solves one vulnerability can now be installed.
Crooks found a new way to collaborate using Teams – by hiding command-and-control traffic
Cisco SD-WAN Vulnerability: Why Security Starts With the Management Plane
Databricks pitches LTAP as a new foundation for agentic applications
An update that solves one vulnerability can now be installed.
Cardiac monitor maker’s security skips a beat as data thieves go for the jugular
Several security issues were fixed in FreeRDP.
Ruby could allow unintended access to network services.
USN-8349-1 introduced regressions in rsync.
Nvidia PCs don’t need cloud for AI
Develop smarter AI agents with data fabrics
Shipping enterprise-quality code with AI agents
DocLang aims to make documents readable by AI, not humans
Security update
Security update
Security update
Fixes CVE-2026-48092: Information disclosure in 32-bit builds Fixes CVE-2026-48095: Arbitrary code execution in NTFS handler Fixes CVE-2026-48101: Information disclosure in UEFI capsule parser Fixes CVE-2026-48102: Information disclosure and DOS via crafted UDF image
Update to 0.162.1 (rhbz#2455512)
This release of Mojo::JWT Improves the security of decode to prevent timing side-channel attacks in symmetric signatures