Menu

Latest articles

Vim and GNU Emacs: Claude Code helpfully found zero-day exploits for both
This month in security with Tony Anscombe – March 2026 edition The past four weeks have seen a slew of new cybersecurity wake-up calls that showed why every organization needs a well-thought-out cyber-resilience plan
‘People’s Panel’ to check if UK wants controversial Digital ID will cost £630K
Tornado is a scalable, non-blocking Python web framework and asynchronous networking library. CVE-2026-31958 Introduce new limits on the size and complexity of multipart bodies, including a default limit of 100 parts per request to mitigate a
An update that solves three vulnerabilities and has one security fix can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves nine vulnerabilities can now be installed.
An update that solves two vulnerabilities can now be installed.
An update that solves nine vulnerabilities can now be installed.
Meta shows structured prompts can make LLMs more reliable for code review
Alleged RedLine malware developer extradited to United States
What next for junior developers?
PEP 816: How Python is getting serious about Wasm
UK manufacturers under cyber fire with 80% reporting attacks
Don’t open that WhatsApp message, Microsoft warns
Iran targets M365 accounts with password-spraying attacks
CI/CD Pipelines Vulnerabilities in Trusted Execution Paths March 2026
Announcing Red Hat Advanced Cluster Security for Kubernetes 4.10
Several security issues were fixed in Pillow.
Supply chain blast: Top npm package backdoored to drop dirty RAT on dev machines
A GitHub tinkerer teaches Claude to talk less, and that may matter more than it seems
Azure’s new AI modernization tools
Enterprises demand cloud value
What front-end engineers need to know about AWS
How Apache Kafka flexed to support queues
An update that solves 25 vulnerabilities can now be installed.
An update that solves 25 vulnerabilities can now be installed.
Several security issues were fixed in pyasn1.
Several security issues were fixed in ImageMagick.
Iranian hackers breach FBI director’s personal email, and post his CV and photos online
MGAA-2026-0024 – Updated zynaddsubfx packages fix bug
OpenAI patches ChatGPT flaw that smuggled data over DNS
Telnyx joins LiteLLM in latest PyPI package poisoning tied to Trivy breach
Citrix NetScaler bug exploited in days, may be multiple flaws in a trench coat
Multiple vulnerabilities were discovered in asterisk, an Open Source Private Branch Exchange (PBX) and telephony toolkit. CVE-2026-23738 XSS vulnerability in the /httpstatus page. Cookie names/values and GET parameter names/values are rendered without HTML-escaping, allowing
An update that solves 655 vulnerabilities, contains four features and has 57 fixes can now be installed.
An update that solves one vulnerability can now be installed.
An update that solves two vulnerabilities can now be installed.
An update that solves eight vulnerabilities can now be installed.
An update that solves seven vulnerabilities can now be installed.
Leak reveals Anthropic’s ‘Mythos,’ a powerful AI model aimed at cybersecurity use cases
European Commission admits attackers broke into public web systems, but says little else
The starkly uneven reality of enterprise AI adoption
How to build an enterprise-grade MCP registry
Security contractor blew the whistle on support crew’s viral indifference
US foreign router ban criticized for being ‘industrial policy disguised as cybersecurity’
https://security-tracker.debian.org/tracker/DSA-6187-1
https://security-tracker.debian.org/tracker/DSA-6186-1
https://security-tracker.debian.org/tracker/DSA-6185-1
https://security-tracker.debian.org/tracker/DSA-6184-1