Menu

Latest articles

DSA-6399-1 wordpress – security update
Model Context Protocol is going stateless to make scaling simpler
Model Context Protocol (MCP), the emerging standard for connecting AI models to external tools and enterprise data, is undergoing its biggest architectural [...]
Uncle Sam tells overseas cybercrooks their visas are canceled
Marco Rubio says the US will deny visas to foreign nationals involved in cybercrime and may extend the restrictions to their immediate families. The US [...]
Top AIs invent same fake PyPl and npm package names
Enterprise software developers continue to be in danger of falling victim to slopsquatting, where AI coding tools hallucinate the existence of nonexistent [...]
Ubuntu 20.04 Kernel Critical Memory Exposure Flaws USN-8597-1
Ubuntu 22.04 LTS Kernel Significant NTFS Exploit Privilege Escalation Alert
Ubuntu 22.04 LTS Linux Kernel Important Security Flaws USN-8575-2
Ubuntu Linux Kernel Critical Privilege Escalation Issues USN-8596-1
The Microsoft agent framework wars are over. The real architecture decision starts now
Over the past year, I had the same conversation with almost every team starting an AI initiative. Should we build on Semantic Kernel, AutoGen or Foundry? [...]
How to execute queries in parallel using EF Core
EF Core is Microsoft’s flagship ORM (object-relational mapper), the software layer that allows .NET developers to work with relational databases. The [...]
Debian LTS Imagemagick Critical Denial of Service Code Exec Vuln DLA-4696-1
Mageia 10 lrzip Critical Use After Free Null Pointer Vulnerabilities
Security Update 2026-0064 for rpm-mageia-setup addressed in Mageia 10
Mageia 10 – Xonotic Bugfix Advisory for the Year 2026-0063
Fedora 43 Dotnet 8.0.129 Critical CVE Fixes 2026-da44c3870f
Fedora 43 dotnet9.0 Critical Security Issues Advisory 2026-3afd9d89f4
Fedora 43 cryptlib Important Deprecation Security Advisory 2026-47575c76a5
Visual Studio Code 1.130 dresses up Agents window
Microsoft has released Visual Studio Code 1.130, an update to the code editor that brings several improvements to the Agents window, along with [...]
Fedora 44 Firefox Update to Version 153.0 Advisory 2026-7d71f89d7e
Fedora 44 dotnet8.0 Important Threat Fix 2026-9aef53fa96
Fedora 44 dotnet9.0 Important Security Update 2026-d6b061ad69
Fedora 44 cryptlib Critical Update for Obsolete Algorithms 2026-e4349a03b1
Fedora python-lsp-black Important Security Fix Advisory 2026-3805ba3721
Fedora 44 python-black Important CVE Fixes for 2026-3805ba3721
Fedora 44 python-pytokens Important Upgrade ID 2026-3805ba3721
openSUSE Python-aiohttp Important DoS Threat Advisory 2026-3207-1
OpenAI-Hugging Face attack doesn’t mean agents are evil – unless you tell them to be
Open AI’s admission this week that its agents escaped the sandbox and autonomously hacked model repository Hugging Face has spawned more apocalyptic [...]
Researchers replace downloaded macOS apps with evil twins, Apple shrugs
Apple macOS apps that have been downloaded from the internet and run at least once can be swapped with malicious versions, a pair of researchers say, [...]
Debian LTS Squid Important Info Disclosure Denial of Service 4697-1
Slackware Mozilla-Thunderbird Important Security Fix SSA-2026-204-01
Debian WordPress Critical SQL Injection Threat DSA-6399-1 CVE-2026-60137
DSA-6396-1 chromium – security update
DSA-6395-1 bind9 – security update
DSA-6394-1 firefox-esr – security update
Ubuntu 26.04 LTS 8599-1 libhttp-date-perl Critical Denial of Service
Ubuntu 26.04 LTS Advisory 8601-1 PAM High Timing Attack
Ubuntu 26.04 Rsyslog Critical Denial of Service Vuln USN-8598-1
Ubuntu 26.04 LTS libXpm Critical Crash Vulnerability CVE-2026-4367
New pip flag fixes longstanding Python frustration
A new version of Python’s native package management tool, pip, will remove a limitation that has frustrated Python developers for years. If you wanted to [...]
Mageia cifs-utils Important Local Escalation CVE-2026-12505 2026-0291
Mageia socat Critical Heap Buffer Overflow Vuln 2026-0290
Mageia Apache Critical Security Issues Advisory 2026-0289 CVE-2026-29167
Mageia dnsmasq Critical Denial of Service Vulnerabilities 2026-0288
Mageia Krita-AI-Diffusion Critical Plugin Connection Issue 2026-0062
Mageia 10 nut Package Bug Fix Advisory for Issue 2026-0061 Released
Mageia 10 Warpinator Important Bugfix Security Update 2026-0060
Year-long Russian attacks infect users as soon as they look at an email
Kremlin cyber goons have been breaking into government and commercial networks for at least a year by exploiting a Zimbra bug with a novel twist on [...]
Google CEO distracts from Gemini 3.5 Pro delay with talk of Gemini 4 and monthly releases
Google CEO Sundar Pichai has sought to allay concerns over the delayed release of the Gemini 3.5 Pro large language model. He dodged questions about it in [...]
Millions of California-bought cars can be hijacked via Bluetooth
At least 2.2 million vehicles fitted with dealer-installed KARR and SWDS security systems are vulnerable to nearby Bluetooth attacks that can unlock doors [...]
openSUSE Leap 16.0 trivy Important Privilege Escalation Vuln 2026-21395-1
Rocky Linux cifs-utils Important RLSA-2026-39575 Local Privilege Escalation
openSUSE gawk Moderate Buffer Overflow Use-After-Free Vuln 2026-21393-1
openSUSE ImageMagick Critical Policy Bypass Heap Overflow Fix 2026-21391-1
openSUSE Kernel Important Security Vulnerabilities Fix 2026-21388-1
openSUSE Leap 16.0 libgcrypt Moderate Denial of Service Vuln 2026-21387-1
openSUSE Leap 16.0 gpg2 Low CMS Parsing Issue 2026-21385-1
openSUSE Tumbleweed Google-Osconfig-Agent Moderate DoS Vuln 2026-11331-1
openSUSE Tumbleweed firefox-esr Moderate Security Issues 2026-11329-1
openSUSE Tumbleweed apache-sshd Moderate Security Issue 2026-11327-1
openSUSE Tumbleweed afterburn Moderate CVE-2025-55159 Advisory 2026-11324-1
Linux Logging Strategies for Maximizing Security Visibility
A Linux server can be fully patched, hardened, and compliant, yet still leave investigators unable to explain how an attacker got in. Without reliable [...]
Oracle drops 1,449 security patches like it’s the new normal
It’s a bad day to be an Oracle admin: Big Red has just released 1,449 security patches ready to be applied. The patches were released as part of the [...]
Mak’s Weekly Security Roundup: Linux Security Updates, Priorities, and Risk
A large volume of Linux security updates and advisories this week across major distributions once again, but it wasn’t just the volume that was the [...]
Debian webkit2gtk Critical JavaScript Exec Risk DSA-6398-1
Iran-linked crews are probing more flavors of US industrial kit
The US Cybersecurity and Infrastructure Security Agency (CISA) has expanded the scope of its alert on Iranian-affiliated hackers attacking critical [...]
OpenAI’s AI “goes rogue” and hacks Hugging Face: what you need to know
openSUSE Chromium Important 12 Fixes for Web Security 2026-0257-1
One ChatGPT link could smuggle a rogue AI agent into your company
One click on what looked like an ordinary ChatGPT link could plant an attacker-controlled AI agent inside a company’s ChatGPT workspace, according to [...]
Ubuntu 16.04 Apache Commons BeanUtils Critical Regression Fix USN-8322-2
openSUSE Multipath-Tools Moderate Heap OOB Read Vulnerability 2026-3199-1
openSUSE GraphicsMagick Low Memory Leak Advisory 2026-3201-1
If you get knocked on the head and get all your devices stolen and have amnesia, Google will let you back in with a selfie
Tired of worrying about how you might recover all the precious data stored in your Google account if you somehow lose your devices and forget your email [...]
Preparing for Q-day: Four steps to prepare your hybrid cloud today
The arrival of a cryptographically relevant quantum computer, often referred to as Q-day, is moving from a distant theoretical mathematical challenge to an [...]
Swiss train maker tells ransomware crooks to get off at the next stop
Swiss rail manufacturer Stadler Rail says it refused a CHF 10 million ($12.3 million) ransom demand after the Everest ransomware gang compromised one of [...]
Rocky Linux Important .NET 8.0 RLSA-2026-41901 Multiple Threats
Rocky Linux 8 RLSA-2026-41900 .NET 10.0 Important Bug Fixes
Rocky Linux 9 RLSA-2026-42952 glibc Moderate Denial-of-Service Issues
Rocky Linux RLSA-2026-41898 .NET 10.0 Important Security Update
Rocky Linux 9 RLSA-2026-41896 .NET 9.0 Security Important Denial of Service
Rocky Linux .NET 8.0 Important Security Issues RLSA-2026-41894
Rocky Linux 9 Kernel Important Security Update RLSA-2026-43307
Rocky Linux 10 RLSA-2026-41893 .NET 8.0 Important Security Update
Rocky Linux .NET 10.0 Important Denial of Service Issues RLSA-2026-41897
Rocky Linux mariadb-connector-c Important SQL Injection Fix RLSA-2026-43505
Rocky Linux 10 .NET 9.0 Important Security Issues RLSA-2026-41895
Rocky Linux dogtag-pki Important Arbitrary Code Execution RLSA-2026-43400
Rocky Linux 10 Kernel Important Security Update RLSA-2026-42919
Ubuntu 22.04 LTS Linux Kernel Critical Risk Multiple Issues USN-8595-1
Ubuntu 24.04 22.04 Kernel Critical Privilege Escalation Advisory USN-8574-2
Ubuntu 24.04 Kernel Critical Security Flaws Vuln 8594-1
Ubuntu 26.04 LTS Kernel Critical Privilege Escalation Issues USN-8593-1
Debian pdns-recursor Critical Cache Poisoning DNSSEC Bypass DSA-6397-1
Fedora 44 Kernel Important Security Fix 2026-2b94d8d05c
Fedora 44 llvm Severe Buffer Overflow Resolution 2026-597e8f9de1
Fedora 44 Fractal Important Denial Of Service Advisory 2026-600530ae91
Fedora 44 SRT Significant Streaming Improvement 2026-45ce54d51e
Fedora 44 Chromium Important Use After Free Issues 2026-310f620a68
Critical Update Information for Fedora 44 libssh – 2026-0e46c91ccf
Fedora 44 nginx-mod-vts Critical Patch for Code Execution 2026-60fc198d3b
Fedora 44 nginx-mod-fancyindex Critical CVE-2026-42533 Arbitrary Code Exec