Menu

Latest articles

DSA-6403-1 nss – security update
Jailed Flock vandal wipes out three cameras, racks up thousands in damages
Note to privacy-conscious vandals: If you’re going to destroy Flock license plate readers, make sure you also take out the other CCTV cameras in the [...]
Critical Ruflo flaw lets attackers hijack AI agents through exposed MCP bridge
A critical vulnerability in the open-source AI agent platform Ruflo could allow unauthenticated attackers to take control of enterprise AI environments by [...]
New Databricks tool uses AI agents to rewrite legacy SQL at scale
Databricks is adding an agentic code conversion capability to its Lakebridge toolkit, using Genie Code to provide its new customers another way to move [...]
Debian expat Critical Memory Corruption Denial of Service Vuln DSA-6404-1
Rocky Linux openssh Medium Risk Resolution RLSA-2019-3702
Rocky Linux perl Important Denial of Service Vuln RLSA-2026-48225
Rocky Linux GStreamer Important Buffer Overflow Fix RLSA-2026-47731
SUSE GIMP Important Buffer Overflow Threat Advisory 2026-3399-1
SUSE PackageKit Moderate Improper Authorization Issue Advisory 2026-3405-1
SUSE Python-Dulwich Important SSH Host Key Update CVE-2026-38974
SUSE PackageKit Moderate Authorization Manipulation Vuln 2026-3404-1
SUSE Rsyslog Important Denial of Service Fix Advisory 2026-3398-1
SUSE WebKit2GTK3 Important Memory Corruption Process Crash Fix 2026-3396-1
SUSE Python-urllib3 Moderate Denial of Service Vuln 2026-3397-1
SUSE 15.6 OpenVPN Significant DoS Security Patch 2026-3407-1
SUSE Java 17 Important Security Update CVE-2026-41254 2026-3406-1
SUSE Kernel 2026-3392-1 Important Live Patching CVE-2026-53366
SUSE GraphicsMagick Low Heap Buffer Issue Vuln 2026-3395-1
SUSE OpenSUSE Leap 15.6 Important python-ujson Memory Leak Vuln 2026-3402-1
Russian spies take their half-click email attack from Zimbra to Outlook
The Russian espionage crew that turned simply reading an email into a security risk has expanded beyond Zimbra, with Proofpoint saying it’s now [...]
North Korea’s elite hackers turned on their own government – and got caught
How AI can improve site reliability engineering
One percent of AI-active developers now generate 46 times more AI-written lines of code per day than the median active user, according to the Cursor [...]
Shipping an MCP test agent: The boring parts nobody demos
The demo videos always end at the same moment. A figma frame turns into a passing test in twelve minutes. Someone in the room says the word “productivity.” [...]
AI agents need security regression testing, not another checklist
AI agents are being connected to real systems faster than most organizations are learning how to secure them. That should concern us. The first wave of AI [...]
Headteacher had the most guessable username-password combo you could imagine
PWNED Welcome, once again, to PWNED, the weekly column where we show you how not to use your computer or your network. In this week’s fable of [...]
Excuses like ‘AI did it’ don’t exist in the eyes of the law
The OpenAI rogue agent behind the Hugging Face hack accessed four accounts on four services, according to updated company disclosures about the intrusion. [...]
Fedora 44 libssh 0.12.2 Update Notification FEDORA-2026-c60881e04b
Fedora 44 unbound Critical DoS Issues Fixed in Update 2026-e495bd59ef
Fedora 44 ProFTPD Update Addresses ACL Bypass CVE-2026-35025
Fedora 44 Squid 7.6 Memory Fix Advisory 2026-e6bbab8aa8
Fedora 44 Node.js Updated to 24.18.0 with Denial of Service April 2026
Fedora 44 Fixes Critical SQL Injection and Remote Code Execution Issue
Fedora 43 ProFTPD ACL Bypass Fix CVE-2026-35025 Advisory 2026-d314ce6051
Fedora 43 WordPress Critical SQL Injection RCE Vuln 2026-46346e9637
Fedora 43 Nginx-mod-vts Security Advisory 2026-3b93aae2d6
Fedora 43 nginx-mod-modsecurity Critical CVE Fix 2026-42533
Fedora 43 nginx-mod-naxsi 1.6-21 Security Update CVE-2026-42533
Fedora 43 nginx-mod-fancyindex Security Advisory 2026-3b93aae2d6
Fedora 43 nginx-mod-brotli Security Advisory 2026-3b93aae2d6
Fedora 43 nginx-mod-headers-more Security Advisory 2026-3b93aae2d6
Fedora 43 Nginx Critical Update for Multiple Issues 2026-3b93aae2d6
Fedora 43 perl-HTTP-Date Important DoS Fix FEDORA-2026-b1bdb7c518
Visual Studio Code 1.131 zeroes in on subagents
Microsoft has shipped Visual Code 1.131, an update to its code editor with improvements for monitoring subagents, dictation, and Markdown editing. Released [...]
DSA-6404-1 expat – security update
Smashing Security podcast #478: This job interview could destroy your company
Rocky Linux 10 gstreamer1-plugins-bad-free Heap Overflow Issues RLSA-2026
Rocky Linux PipeWire Important Sandbox Escape CVE-2026-5674 RLSA-2026-47083
Rocky Linux 10 RLSA-2026-47085 Rest Important Weak Random Number Generation
Rocky Linux libXfont2 Heap Buffer Overflow Fix for RLSA-2026-47079
Rocky Linux 10 Kernel Important Bug Fixes Advisory RLSA-2026-47017
Rocky Linux ruby Important Command Injection Vulnerability RLSA-2026-33512
Rocky Linux Nginx Important Heap Overflow Bug Fix RLSA-2026-36331
Rocky Linux plexus-utils Important Directory Traversal Fix RLSA-2026-38796
Rocky Linux 9 PHP Remote Code Execution Denial of Service RLSA-2026-33449
Rocky Linux 9 PostgreSQL Important Security Update RLSA-2026-27741
Rocky Linux Firefox Significant Security Patch RLSA-2026-47105
Rocky Linux python-urllib3 Moderate Info Disclosure RLSA-2026-36732
Rocky Linux perl-IO-Compress Important Code Exec RLSA-2026-30858
Rocky Linux 8 perl-Archive-Tar Path Traversal Vulnerability CVE-2026-42496
Microsoft updates MCP C# SDK for stateless MCP
Microsoft has released MCP C# SDK v2.0, a major update of the company’s official C# SDK for Model Context Protocol (MCP) servers and clients. Unveiled July [...]
openSUSE Leap 15.6 python-ujson Important Memory Leak Fix CVE-2026-44660
openSUSE PackageKit Moderate Improper Authorization Fix 2026-3404-1
openSUSE java-17-openjdk Important Denial of Service Issues Fix 2026-3406-1
openSUSE openvpn Important Denial of Service Issues Fix SUSE-SU-2026-3407-1
openSUSE Xen Important System Exploit Fix Advisory 2026-3409-1
Debian DSA-6403-1 nss Important Arbitrary Code Execution Fix
Closed models refuse to help researcher swat Linux bug
The guardrails that prevent closed-source, frontier models from aiding threat actors have turned into handcuffs that prevent those bots from helping to [...]
Oracle simplifies migrating legacy databases off IBM mainframes with support for EBCDIC
Oracle on Tuesday described new EBCDIC character set compatibility features in Oracle AI Database for customers transitioning from legacy databases on IBM [...]
JDK 27: The new features of Java 27
Java Development Kit 27, an Oracle-driven, planned update to standard Java, is set to reach its initial release candidate (RC) stage on August 6. This [...]
Word worm crawls into Copilot, spreads chaos
UPDATED Watch out for untrusted documents. According to research, an attacker can hide malicious instructions in a Word document that, when included in [...]
openSUSE rsyslog Important Denial of Service Fix SUSE-SU-2026-3398-1
openSUSE GIMP Important Buffer Overflow Patch 2026-3399-1
Detecting Web Shell Activity on Linux Using Behavioral Clues
Although its main website is loading, a production Linux server can host an active command-and-control gateway without any errors that can be seen. If you [...]
Why Automation Breaks When Visual Data Is Treated as an Afterthought
Most automation projects don’t fail with dramatic outages; they fail through a slow erosion of trust.
Ubuntu 24.04 LTS Linux-NVIDIA Kernel Moderate Security Issue USN-8623-1
Ubuntu 26.04 LTS Linux-Nvidia Security Flaws Update USN-8622-1
Iran-linked CyberAv3ngers suspected in attacks on Minnesota water systems
Security researchers at Tenable suspect the Iran-linked faux hacktivist outfit CyberAv3ngers was behind the cyberattack that disrupted more than 30 [...]
Substituting IP address evaluation with hardware-rooted sovereign zero trust
The need for trustworthy networking, reliable cloud access, and compliance with digital sovereignty requirements has increased substantially in recent [...]
Strengthening the open source defense layer: Red Hat joins NVIDIA in the Open Secure AI Alliance
As AI capabilities advance, they transform the security landscape in real time. To address these challenges at scale, no single company can act in [...]
openSUSE nsd Important TLS Denial of Service Vulnern 2026-0265-1
Ubuntu Kernel Update USN-8616-1 Privilege Escalation Risk
Ubuntu Linux Kernel Security Notice USN-8615-1 Multiple Flaws
Ubuntu 20.04 Linux Kernel KVM Critical Escalation Flaws USN-8617-1
Ubuntu 22.04 Linux Kernel Vulnerability Resolutions USN-8547-2
Why open source matters in an AI world
I’m an old Borland guy. I started using Borland tools in the early 1990s, from Turbo Pascal through Delphi. I dabbled in Paradox. I even tried to stick [...]
Soothe your Python frustrations the smart way
For a programming language that is prized for being convenient and easy, Python has some surprising barbs and sharp edges. Find out how a new pip flag can [...]
Debian LTS calibre DLA-4705-1 Critical SSRF and Injection Vulnerabilities
Critical Ubuntu 22.04 LTS Linux Kernel Issues With Patch USN-8620-2
Ubuntu 20.04 LTS Linux Kernel Privilege Escalation Threat USN-8615-2
Rocky Linux nodejs Important Denial of Service Update RLSA-2026-47059
Debian libraw Significant Vulnerability In Application Crash Data Integrity
America bans imported robots due to supply chain and security risks
The US government has decided to effectively ban the sale of advanced robots made in other nations. The decision trickled out over two days with [...]
Slackware Samba Important DoS LDAP Issues Fix SSA-2026-209-03
Slackware Seamonkey Security Fix 2026-209-02 for Version 15.0
Slackware Libarchive Security Update Announcement for 2026-209-01
Fedora 43 Chromium CVE-2026-16807 Out of Bounds Use After Free Issues
Fedora 43 Restic Critical Update Denial of Service Issues 2026-a006788209
Fedora 43 Kronosnet Low Memory Exposure ACL Spoofing Issues Found
Fedora 43 btrbk 0.32.7 CVE-2026-62943 Security Fix Advisory