Menu

Latest articles

DSA-6516-1 ghostscript – security update
DSA-6515-1 vlc – security update
Is that vibe coded app safe? 5 checks before you download
As AI lets anyone build software, here’s how to vet that shiny new app before it exposes your data
ShinyHunters Bypass WAF Rules to Resume Oracle PeopleSoft Attacks
Fedora 43 libheif Critical Denial of Service Issues 2026-022ff83e3e
Fedora 43 SIPp Critical Denial of Service Issues Advisory 2026-b0077de9df
Fedora 43 libpcap Critical Denial of Service Issues CVE-2026-4401b94ad0
Fedora 44 libheif Major Denial of Service and Information Disclosure Fix
Fedora 44 SIPp Important Denial of Service Vuln 2026-e377b4938d
SUSE gnome-shell Moderate Remote Icon Processing Risk Vuln 2026-4350-1
SUSE python-WebOb Moderate Phishing Risk Patch SUSE-2026-4351-1
Fedora 45 Chromium Critical Security Issues CVE-2026-735231f9e0
Fedora 45 rust-xml5ever Moderate Use-After-Free Issue CVE-2026-96889
Fedora 45 Librsvg Update Fix Use-After-Free CVE-2026-96889
Fedora 45 Librsvg2 Update CVE-2026-96889 Fixes Use-After-Free
Fedora 45 Tesseract Critical Buffer Overflow DoS Vulner 2026-e3bf7f4ecb
Fedora 45 sipp Security Alert Denial of Service CVE Fix 2026-3059115f48
Fedora 45 gssntlmssp Minor Vulnerability Resolution 2026-654bf10275
DSA-6519-1 swift – security update
DSA-6518-1 incus – security update
DSA-6517-1 nodejs – security update
Rocky Linux Unbound Critical Remote Code Execution Vuln RLSA-2026-71487
Rocky Linux libxml2 Important Buffer Overflow Threat RLSA-2026-71585
Rocky Linux 9 perl-DBI Important Heap Overflow Vuln RLSA-2026-71422
Rocky Linux 9 Kernel Important Security Update RLSA-2026-71232
Debian LTS evolution-data-server Critical File Deletion Advisory DLA-4796-1
Debian Ghostscript Security Update Critical Arbitrary Code Exec DSA-6516-1
Why an io_uring Queue Handoff Can Become a Use-After-Free
A Linux io_uring race can let a polling thread release ring state while the CPU that published the work is still using it.
Linux Patch Management For Enterprises: A Complete Guide
Linux is not a standard environment. An enterprise can run many different flavors of Linux on its servers, desktops and specialized systems, each with its [...]
Debian VLC Medium Code Execution Denial of Service Vuln DSA-6515-1
Linux ext4 Patch Blocks an Out-of-Bounds Read From Damaged Metadata
Corrupted ext4 metadata can direct a Linux kernel copy past the inode region that is supposed to contain inline data.
SUSE glib2 Moderate Denial of Service Vulnerability CVE 2026-4348-1
openSUSE Poppler Low Integer Overflow Issues SUSE-2026-4349-1
SUSE OpenSUSE 15.5 Poppler Low Integer Overflow Vuln 2026-4349-1
USB/IP Teardown Race Can Rearm a Freed Linux Kernel Timer
A Linux USB/IP timer can restart after device teardown has begun, leaving the kernel callback able to use a virtual controller that has already been freed.
Why an Unlocked ext4 Buffer Can Restore Stale Directory Data
A Linux ext4 race can corrupt a directory while the filesystem converts it from inline storage to a regular block.
5G-Shark Lures Phones to Rogue 5G Cells Without Network Jamming
A Linux eBPF Trampoline Can Outlive the Program It Calls
A Linux eBPF security race can leave generated kernel code pointing at a BPF program after that program’s memory has been released.
Fake Google Security Team ad says ‘no script reading’ in voice phishing – then prints the script
Yes, criminals have job listings too. A Telegram user recruiting callers to work in an apparent Google Security Team voice-phishing scam told applicants [...]
Debian PHP 8.4 Critical Denial of Service Info Disclosure DSA-6514-1
Debian Chromium Critical Arbitrary Code Execution DSA-6513-1
ShinyHunters tells The Reg: We hacked the FBI to ‘protect our business’
ShinyHunters, the data theft and extortion crew that has stolen sensitive information belonging to millions of cancer patients, university and K-12 [...]
OpenAI wants you to use AI — but not to train its AI
Here’s an interesting concept: an AI company that fires people for using AI. It sounds like a strange way to run a company but there’s a real reason behind [...]
Crooks use fake desktop apps to fool HR staff into giving them remote access
You work in your company’s human resources department and use HR software to check employee information, benefits, and payroll. So, when you see a [...]
Microsoft’s new Copilot unifies enterprise context for code and chat
Microsoft’s Copilot super-app has arrived, two months after CEO Satya Nadella confirmed it was in development. It combines conversational Chat, the [...]
Bitget blames North Korea for $387.5M crypto wallet raid
The CEO of crypto exchange Bitget has confirmed that a cyberattack with all the hallmarks of a North Korean operation resulted in approximately $387.5 [...]
Been told to pay at a Bitcoin ATM? Read this first
Crypto ATM scams often follow a predictable script – here’s how to recognize it and what to do if you’ve already been caught out
Documentation placeholder domain used in ClickFix attacks
The domain name third-party[.]com is being used to serve malware to users — bad news for those following a little too literally online documentation that [...]
Mageia gpsd Important Command Injection Vulnern 2026-0454 CVE-2026-58459
Mageia 10 Security Advisory 2026-0453 udisks2 Important Local Escalation
Mageia 10 libalkimia Bugfix Advisory 2026-0137 Released Today
Rocky Linux 10 libxml2 Security Alert for Heap Overflow CVE-2026-86138
Rocky Linux unbound Critical RCE and Buffer Overflow Vuln RLSA-2026-71419
Rocky Linux 10 cockpit-image-builder Important SSRF Vulnern RLSA-2026-71543
openSUSE GIMP Important Remote Code Execution Vuln 2026-21959-1
openSUSE Haveged Important Local Escalation Vulnerability CVE-2026-41054
openSUSE Perl-Mojolicious Significant Local Escalation Flaw 2026-21956-1
openSUSE Gitoxide Moderate CRLF Injection Correction 2026-21955-1
openSUSE Leap 16.0 Osmo-Iuh Important Buffer Overflow Fix CVE-2026-75894
openSUSE Leap 16.0 2026-21952-1 Moderate Signkey Cert Update
openSUSE MozillaFirefox Important Privilege Escalation Issues 2026-21951-1
openSUSE Leap 16.0 389-ds Remote Code Execution Advisory 2026-21950-1
openSUSE kbd Local Privilege Escalation Vulnerability CVE-2026-72693 Alert
openSUSE sdbootutil Important Memory Leak Buffer Overflow Vuln 2026-21933-1
openSUSE Tumbleweed openAI Codex Moderate Update CVE-2026-63127
openSUSE Tumbleweed Helm Moderate Vulnerability Update 2026-11848-1
openSUSE Tumbleweed google-osconfig-agent Important CVE-2026-41178 Update
openSUSE Tumbleweed Forgejo Security Update Notice openSUSE-SU-2026-11846-1
openSUSE Advisory for flatpak-builder Moderate CVE-2026-86320
Which copy of that file is the real one? Dinner, off the record, in Midtown
EVENT: The Register is hosting a private dinner in New York on Tuesday 27 October for senior technology, infrastructure and data leaders, with LucidLink. [...]
GitLab issue email’s only security is obscurity
It was meant to make life simpler: a secret email address to which developers can send a message and create an issue in their GitLab project. But poor [...]
Oracle Linux 7 abrt Important Fix CVE-2026-54230 ELSA-2026-69121
Oracle Linux 7 yelp Important Fix Advisory ELSA-2026-57417 CVE-2026-13601
Oracle Linux 8 unbound Critical Heap Buffer Overflows ELSA-2026-70754
Only 26% of Detected CISA Known Exploited Vulnerabilities Were Fully Remediated
Google plans Gemini 4 release before year-end
Google’s Gemini 4 AI model is in the early days of post-training, the phase in which a base AI model is refined to behave reliably, and should be released [...]
Salmon Introduces Execution Verification Infrastructure (EVI) for Securing AI Agents and Autonomous Systems
SectopRAT Abuses Legitimate Audio Software Files to Steal PC Data
IBM’s big cloud decision
A recent piece in Academy of Management Today by Daniel Butcher takes a fresh look at IBM’s pivot to cloud computing, and it’s worth your time. The article [...]
Mageia Python-Webob Important Open Redirect Issue Advisory 2026-0452
Mageia Unbound Critical Heap Overflow Remote Code Execution DoS 2026-0451
Mageia Python GitPython Key Denial of Service Vulnerability CVE-2026-87819
Mageia 10 Discover Bugfix Advisory – Important Update 2026-0136
Fedora WebKitGTK Critical Security Issues and Fixes 2026-40db9b80a2
Fedora 44 Squid 7.7 Proxy Update Advisory 2026-56c3705788
Fedora 44 unveils rust-cryptoki with advisory ID 2026-738ce6f6f8
Fedora 44 Pcs Update CVE-2026-84828 Security Notice and Advisory
Fedora 44 mingw-gdk-pixbuf Critical CVE-2026-16768 CVE-2026-81893 Fix
Fedora 44 389-ds-base Serious Heap Overflow Multiple Vulnerabilities FOUND
Fedora 43 Rust-Cryptoki Upstream Release Advisory 2026-c66f1af6a3
Fedora 43 pcs 0.12.3 Update Advisory for CVE-2026-84828
Fedora 43 mingw-gdk-pixbuf Security Advisory CVE-2026-16768 Major Bug Fix
Fedora 43 389-ds-base Critical Heap Buffer Overflow Issues 2026-0b8bc362b1
SUSE perl-DBI Important Arbitrary Code Execution Fix SUSE-SU-2026-4346-1
openSUSE Kernel Important Security Fixes 84 Vulnerabilities 2026-4347-1
SUSE Kernel Security Update Addressing Vulnerability 2026-4347-1
SUSE Linux Enterprise 15 SP7 Kernel Important Security Fix 2026-4344-1
SUSE Corosync Important Heap Overflows Integer Overflow Vuln 2026-23850-1
SUSE Security Update Important Fix for Six Issues 2026-23852-1
SUSE 16.0 Alloy Key Vulnerabilities in Denial of Service and Data Leak