Menu

Latest articles

DSA-6422-1 chromium – security update
DSA-6421-1 pdns-recursor – security update
DSA-6420-1 pdns – security update
DSA-6419-1 dnsdist – security update
Why IT security’s future is more than just AI models
Much of the public discussion around AI and its impact on cybersecurity focuses almost exclusively on models, with some arguments calling for a central [...]
Fedora 44 udisks2 Update to Version 2.11.2 Advisory FEDORA-2026-ae4aff6b6f
Fedora 44 p11-kit Important Buffer Overflow Fix CVE-2026-18938
Fedora 44 Kernel 7.1.7 Security Update for CVE-2026-68480
Fedora has released kernel version 7.1.7 addressing CVE-2026-68480. Users can update using the dnf upgrade command, with packages signed by the Fedora [...]
Fedora 44 Erlang Significant Authentication Bypass CVE-2026-55953
Fedora 44 mingw-glib2 DoS Vulnern FEDORA-2026-2dfeac0818
Fedora 43 Polymake Critical Perl Buffer Overflow Vulnerability Update
Fedora 43 Kernel Critical CVE-2026-68480 Patch Advisory
Fedora 43 SeaMonkey Update 2.53.24 Advisory 2026-8d2a3de7da
Fedora 43 Python3.12 CVE-2026-15308 CPU Denial of Service Security Fix
Fedora 43 perl-PAR-Packer Important Heap Overflow Issues 2026-b2e2c26935
Fedora 43 Perl Heap Overflow and Information Disclosure Impact Alert
Fedora 43 perl-Devel-Cover Heap Buffer Overflow and Info Disclosure Risk
Fedora 43 Erlang Authentication Bypass CVE-2026-55953 Severity Medium
Fedora 43 rabbitmq-server Important XSS DoS CVE-2026-44839
Fedora 43 python-nh3 Update for Rust Security Fixes RUSTSEC-2026-0193
Fedora 43 Rust-Ammonia HTML Sanitization Update RUSTSEC-2026-0193
Rocky Linux 10 Kernel Moderate IOAM Heap Overflow RLSA-2026-51295
SUSE Security Update Libssh2_Org Important Issues Fixed 2026-3525-1
SUSE libssh2_org Important Heap Overflow Exec Advisory 2026-3526-1
SUSE gstreamer-plugins-bad Moderate Parser Crash Vulnerability 2026-3527-1
SUSE Azure Storage AzCopy Important Security Update 2026-3528-1
SUSE ffmpeg Important Denial of Service Vulnern 2026-3529-1
SUSE Python310 Important Configuration Injection and DoS Fixes 2026-3530-1
openSUSE gstreamer-plugins-bad Moderate Parser Crash Issue 2026-3527-1
openSUSE Azure Storage AzCopy Important Buffer Overflow Threat 2026-3528-1
openSUSE ffmpeg Important Heap Overflow Denial of Service Vuln 2026-3529-1
openSUSE python310 Important DoS and Code Execution Fix 2026-3530-1
Rocky Linux Kernel Moderate Security Enhancements RLSA-2026-51035
Debian Thunderbird Significant Code Execution Vulnerabilities DSA-6418-1
openSUSE perl-Mojo-JWT Moderate HMAC Signature Vulnerability CVE-2026-9537
Debian libheif Critical Denial of Service and Code Execution DSA-6417-1
Oracle Linux 10 ELSA-2026-30129 Kernel Important Bug Fixes
Oracle Linux 10 Kernel Moderate Bug Fix ELSA-2026-49871
Oracle Linux 9 LibRaw Key Security Update for CVE-2026-51235
Oracle Linux 9 Kernel Releases Moderate Bug Fixes for ELSA-2026-51035
Oracle Linux 8 Kernel Important Update ELSA-2026-50978 CVE-2025-54518
Oracle gnutls Important Security Update CVE-2026-33845 ELSA-2026-34372
openSUSE perl-Mojolicious Moderate CSRF Security Update 2026-0278-1
openSUSE Bouncycastle Critical Security Update CVE-2026-12185 CVE-2026-8763
openSUSE libwireshark Moderate Vulnerabilities Update 2026-11460-1
openSUSE Tumbleweed Security Update 2026-11461-1 for fuse-overlayfs
openSUSE libssh2 Moderate Remote Access Problems 2026-11454-1
SUSE hawk-apiserver Moderate CVE-2022-28948 Security Update 2026-22997-1
SUSE sssd Moderate Use-After-Free Vuln SUSE-SU-2026-22999-1 CVE-2026-12610
Rocky Linux 8 Kernel Important Privilege Escalation Fix RLSA-2026-50978
Rocky Linux 8 RLSA-2026-50979 Kernel-RT Important Privilege Escalation
Rocky Linux gpsd-minimal Important Command Injection Fix RLSA-2026-51153
Rocky Linux gpsd Important Command Injection Security Fix RLSA-2026-51075
Ransomware gangs skip the CEO, head straight for the 40-something IT manager
Turns out the fastest way to get a company to consider paying a ransom isn’t calling the CEO – it’s targeting the 46-year-old IT manager. [...]
DSA-6418-1 thunderbird – security update
DSA-6416-1 jq – security update
Devs to Anthropic, OpenAI, Cursor, and friends: Make security and privacy the default
Despite the popularity of Claude Code, Cursor, GitHub Copilot, and OpenAI Codex, developers have plenty of complaints about AI coding tools. So researchers [...]
Debian 12 linux-6.12 Critical Threats Privilege Escalation DLA-4724-1
Rocky Linux LibRaw Important Buffer Overflow Fix RLSA-2026-51105
Rust preps improved borrow checker for stabilization
The Rust team has announced that it is enabling the Polonius Alpha borrow checker on nightly releases for testing. The team expects to fully stabilize [...]
DSA-6417-1 libheif – security update
OpenAI pledges to add Astra security as Anthropic loosens Fable’s leash
After acknowledging last month that unreleased AI models committed what for human perpetrators would be computer crimes, OpenAI now says it cannot rule out [...]
Water system controllers don’t belong on the internet, says ex-NSA chief after suspected Iran attacks
With at least 12 US states’ water systems having been hacked – most likely by Iran – we have to get better at cyber defense, according to [...]
What we lose when every engineer can do everything
Four months ago, a front-end engineer on my team looking to make upgrades to a product or feature would have filed a ticket and waited for the [...]
Ransomware attacks spike as world distracted by AI
Ransomware attacks jumped nearly 20 percent in July, with UK firm Comparitech counting 799 incidents, up from 668 in June. Of those, 51 had been confirmed [...]
Beware cut-price AI services that read your every word
N-able God mode flaw: Vendor confirms attackers reached customer networks as second hotfix lands
N-able has confirmed attackers exploiting an N-central zero-day made it into customer networks, as the vendor pushes out a second mandatory hotfix just [...]
Moonshot’s Kimi AI model has also escaped from a test environment
Yet another AI model has escaped from a cybersecurity test lab: This time, it’s the Chinese company Moonshot’s Kimi K3 model on the run. Frontier Security [...]
Airtable joins Evernote, Brightcove, WeTransfer and AOL in Bending Spoons portfolio
Bending Spoons has snapped up Airtable to add to its portfolio of software companies, alongside AOL, Evernote, WeTransfer, Brightcove and Vimeo Airtable [...]
MIT boffins’ TONTOU attack slips through Spectre defenses on Intel and AMD CPUs
Two MIT researchers will present a new speculative execution attack at DEF CON 34 that uses precisely timed interrupts to bypass defenses against Spectre [...]
Scot NHS trust probes access to medical records of 9-year-old girl after man arrested on suspicion of murder
A Scottish NHS trust is investigating a data breach concerning the medical records of a nine-year-old girl who died earlier this week and was named [...]
Detecting Persistence on Linux Hosts: A Security Playbook for Cron and systemd
If you manage Linux boxes long enough, you hit this exact wall. You spot a weird process eating CPU, kill it, wipe the script, and reset the user password. [...]
Snowflake attacker pleads guilty to hack of 165 companies’ data
A Canadian hacker has admitted being part of a group responsible for several major cyberattacks. Connor Riley Moucka pleaded guilty to being part of a [...]
DeepMind founder ascends to singular AI role at Google
Demis Hassabis, the driving force behind Google DeepMind, is ascending to the role of chief scientist at Alphabet, Google’s parent company, replacing Jeff [...]
Attacker phished way into US defense supplier’s Microsoft 365 account
US defense and aerospace supplier IEH Corporation ‘fessed up that a criminal managed to break into its Microsoft 365 mailbox in a filing with [...]
Rocky Linux Thunderbird Important Security Update RLSA-2026-49922
Rocky Linux Thunderbird Important Security Update RLSA-2026-49921
Rocky Linux Thunderbird Major Security Update RLSA-2026-49621
‘Asimov was right’ about rules for robots, says ex-US Cyber Director
EXCLUSIVE Don’t waste time worrying about AI models achieving sentience – they’re essentially already there, according to former US National [...]
Three concepts cloud architects overlook
After two decades of cloud architecture consulting, I see an unchanging pattern in enterprise deployments. Organizations approach me with unexpectedly high [...]
Debian bullseye linux-6.1 Security Update DLA-4723-1 Multiple Threats
Mageia Thunderbird Important Security Updates 2026-0326 CVE-2026-14899
Mageia 10 9 Rootcerts Security Update Vuln MGASA-2026-0325
Mageia Python-Django Medium Exposure Issues Vuln 2026-0324
Oracle Linux Kernel Important Update CVE-2026-64531 ELSA-2026-500135
Oracle Linux 10 ELSA-2026-51075 GPSD Important Command Injection Fix
Oracle Linux has released an update for version 10, addressing CVE-2026-58459, which fixes a command injection vulnerability in gpsprof and includes [...]
Oracle Linux 9 Kernel Important Vulnerability Fixes ELSA-2026-500135
Oracle Linux 9 Kernel Security Update ELSA-2026-500137 CVE-2026-64531
Oracle Linux 8 Kernel Important Update ELSA-2026-500137 CVE-2026-64531
Oracle Linux 8 Kernel Important Remote Access Flaws ELSA-2026-500136
Oracle7 Kernel Important Security Advisory ELSA-2026-500136 CVE-2026-68480
China launches mysterious probe into security of Palo Alto Networks’ products
China’s Cyberspace Administration (CAC) has conducted a review of Palo Alto Networks’ products. The regulator’s announcement of its review says it’s needed [...]
Rocky Linux microcode_ctl Significant Bug Resolution Update RLEA-2023-7117
Slackware p11-kit Overflow Fix SSA-2026-218-02 CVE-2026-18938
Slackware libXfont2 Important Buffer Overflow Encoding Fix 2026-218-01
Debian jq Security Advisory DoS and Arbitrary Code Execution DSA-6416-1
Fedora 43 FreeIPA Security Fixes Multiple CVEs 2026-8e7fa96cf3
Fedora 43 Samba 4.23.10 Critical Dos Buffer Overflow Fix 2026-8e7fa96cf3
Fedora 43 libXfont2 Important CVE Patch 2026-4f471dd34a
Fedora 43 curl Critical Auth Leak Fixes & Vulnerabilities 2026-097fb2e7e9