Menu

Latest articles

DSA-6534-2 webkit2gtk – regression update
Anthropic’s super bug-hunting model Mythos is hardcore good at math, as latest vuln under attack shows
The second Anthropic-linked vulnerability known to have been exploited in the wild saw initial activity from an IP address in China targeting vulnerable [...]
Dutch Institute for Vulnerability Disclosure Breached via Zammad 0-Days
What enterprises need to know about the software they depend on
Knowing an application contains open source components is not the same as understanding the software and communities behind them.For many organizations, [...]
What enterprises need to know about the Cyber Resilience Act and software supply chain risk
In part 1 of this series, we examined why enterprises need more than an inventory of the open source components in their software. Understanding where [...]
Debian Redis High Severity Denial of Service Code Execution DSA-6538-1
Rocky Linux 9 libpcap Important Memory Access Threat CVE-2026-0799
Rocky Linux gvfs Security Notice Important Buffer Overflow and Local Root
Debian LTS firefox-esr Important Code Execution Risks DLA-4814-1
Ubuntu 26.04 Linux Kernel Security Advisory USN-8816-4 Released Today
Ubuntu Linux Kernel Critical Network Issues Advisory USN-8851-2
Ubuntu 22.04 LTS Linux Kernel Critical Memory Protection Issues USN-8818-6
Ubuntu Linux Kernel Update Security Advisory USN-8864-1 CVE-2025-38724
Debian open-iscsi Significant ICMP Vulnerabilities Resolution DLA-4813-1
Mageia Wireshark Critical Buffer Overflow Loop Issues 2026-0465
Mageia python-urwid Security Issue Revealed CVE-2026-9323 MGASA-2026-0466
Mageia 10 Libgcrypt Critical Marvin Attack CVE-2024-2236
Mageia 10 Python-Tornado Vital Access Management Memory Flaw 2026-0467
N0n ransomware: what you need to know
DSA-6537-1 libpng1.6 – security update
DSA-6536-1 thunderbird – security update
DSA-6535-1 chromium – security update
DSA-6534-1 webkit2gtk – security update
Debian radsecproxy Important Denial of Service Code Issue DSA-6540-1
Debian php-mongodb Severe Injection Denial of Service Problems DSA-6539-1
OpenAI alerts 100+ orgs that its ‘misaligned models’ attempted to break in – or worse
OpenAI’s agents have repeatedly strayed beyond their intended scope. Two separate reports detail the activity, including one from Sam Altman’s [...]
openSUSE openssl-3 Important Six Issues Fix Advisory 2026-4412-1
SUSE openssl-3 Important Fix for Six Vulnerabilities 2026-4412-1
openSUSE openssl-3 Important CVE-2026-35189 DoS Security Patch 2026-4413-1
SUSE OpenSSL-3 Important Updates Fix Critical Memory Issues 2026-4413-1
SUSE openssl-3 Important Security Fix Advisory 2026-4414-1
Rocky Linux 10 RLSA-2026-74442 libpcap Important Memory Access Issue
Rocky Linux Ruby Important Denial of Service Fix RLSA-2026-72785
Rocky Linux 10 Ghostscript Moderate Buffer Overflow RLSA-2026-74464
Rocky Linux gawk Moderate Memory Corruption DoS Vulnern RLSA-2026-73511
Mageia 10 PHP 8.5 Bugfix Advisory Updated for 2026-0145 Release
openSUSE libvlc Moderate CVE-2026-56711 Security Update 2026-11910-1
openSUSE Python313 Django Allauth Moderate Security Update CVE-2026-97764
Californian accused of shipping $300M worth of Nvidia chips to China without Uncle Sam’s approval
A California business owner was arrested on Thursday after being charged with allegedly smuggling Nvidia hardware to China without the proper export [...]
OpenAI’s wandering AI agents earn it a California subpoena
California’s attorney general has subpoenaed OpenAI as the state investigates what happens when the AI lab’s models escape their testing [...]
IBM’s Bob wants to move in: Agent available for on-prem deployment
Bob, IBM’s agentic software development platform is now available to run on premises and in private clouds, sovereign clouds, and air-gapped environments [...]
367,000-Ship Study Finds Global GPS Spoofing, Red Sea Activity Before Grounding
Fortinet sounds the alarm over actively exploited FortiMail zero-day
Fortinet is warning customers to lock down FortiMail after attackers started exploiting a critical bug that lets them write files to vulnerable systems [...]
AI is less dangerous than humans
Over the past few weeks, people have been pushing a stack of reports at me as evidence that AI is dangerous to humanity. The OpenAI incident disclosures, [...]
AI could boost software engineer productivity by 32.6%
Tools such as Anthropic Claude Code or OpenAI Codex have changed the face of software development, and all the signs are that this investment is set to [...]
Debian libio-compress-perl Critical CPU Exhaustion and Code Exec DLA-4812-1
Fedora 44 sos CVE-2026-79655 Path Traversal Security Fix
SUSE libX11 Important Buffer Overflow and Out-of-Bounds Issues 2026-4410-1
SUSE Python Moderate Denial of Service Security Patch 2026-4411-1
Proposed Linux IPsec Fix Addresses IP-TFS Packet Cleanup Race
Linux developers have proposed an IPsec fix after reproducing a memory error in IP-TFS, a mode that groups and pads encrypted traffic to make traffic [...]
DSA-6540-1 radsecproxy – security update
DSA-6539-1 php-mongodb – security update
DSA-6538-1 redis – security update
Proposed Linux FastRPC Fix Addresses Shared-Buffer Cleanup Race
Linux developers have proposed a FastRPC fix for a race that can leave the kernel using memory after it has been released.
Proposed Linux QNX6 Fixes Address Filesystem Memory Errors
Linux developers have proposed six fixes for the driver that reads QNX6 filesystems, a disk format associated with the QNX operating system.
LightLLM Profiling Flaw Allows Code Execution Without a Login
LightLLM, software used to serve AI models, can expose Linux AI servers to remote code execution when operators enable its profiling mode, a tool for [...]
Debian Bookworm Chromium Security Vulnerability Poses Code Execution Risk
Debian LTS DLA-4810-1 Thunderbird Security Vulnerabilities Addressed
ModSecurity Updates Fix WAF Bypasses on Linux Web Servers
ModSecurity has released fixes for a group of web application firewall (WAF) weaknesses that can let dangerous input reach Linux-hosted applications [...]
Rocky Linux 8 Kernel-rt Moderate Security Updates RLSA-2026-74132
Rocky Linux Thunderbird Significant Security Patch RLSA-2026-73971
Rocky Linux 8 Rsync Important Command Injection Issues RLSA-2026-74095
Rocky Linux 8 Kernel Moderate Security Update RLSA-2026-74133
AI agents hacked the hackers, stealing email addresses from security research org
AI agents hacked the hackers – the Dutch Institute for Vulnerability Disclosure (DIVD) – via two zero-day bugs in its Zammad support platform, [...]
SUSE glibc Important Security Update for Nine Issues 2026-23929-1
SUSE Important glibc Security Update Vulnerabilities 2026-23934-1
SUSE Linux Enterprise 16 Kernel Important Security Update 2026-23936-1
SUSE Linux Enterprise 16.0 Kernel Important Security Patch 2026-23937-1
SUSE Linux Enterprise 16 Important Kernel Security Update 2026-23938-1
SUSE Kernel Important Update 2 for Six Vulnerabilities 2026-23939-1
SUSE Kernel Security Update Addressing Important Fault Fixes 2026-23940-1
SUSE Linux Kernel Important Patch for Multiple Vulnerabilities 2026-23941-1
SUSE Kernel Important Security Update 2026-23942-1 Fixes Multiple Threats
SUSE php-composer2 Moderate Path Traversal Threat Vuln 2026-23943-1
SUSE Linux Enterprise Kernel Important Security Update 2026-23944-1
SUSE perl-Protocol-HTTP2 Important DoS Memory Exhaustion Vuln 2026-23945-1
SUSE rpcbind Important Denial of Service Vuln 2026-23946-1
SUSE ImageMagick Important Denial of Service Issues Fix 2026-23948-1
SUSE Emacs Important Arbitrary Code Execution Vuln 2026-23949-1
SUSE gnome-shell Moderate CVE-2026-91786 Vulnerability Fix 2026-23950-1
SUSE Kernel Important Security Fix 2026-23951-1 for Multiple Issues
SUSE perl-DBI Important Arbitrary Module Loading Fix 2026-23952-1
SUSE glibc Important Buffer Overflow Threat Fix 2026-23957-1
SUSE Important rpcbind Denial of Service Vulnerability Fix 2026-23959-1
SUSE Linux Enterprise 16 Kernel Important Security Update 2026-23960-1
SUSE Linux Enterprise 16 Important Kernel Security Update 2026-23961-1
SUSE Kernel Important Security Update Live Patch 9 CVE-2026-46150
SUSE Kernel Important Security Update CVE-2026-46150, 2026-23963-1
SUSE Enterprise 16 Kernel Important Security Update SUSE-2026-23964-1
SUSE Kernel Important Security Issues Fix Advisory 2026-23965-1
SUSE Kernel Important Security Update 2026-23966-1 Includes CVE-2026-46150
SUSE Kernel Important Security Fix Advisory 2026-23967-1
SUSE Linux Kernel Important Security Update 2026-23968-1
Microsoft, Google back Apache Ossie to make enterprise data and AI platforms more interoperable
Microsoft and Google are joining a project to create an open specification for exchanging semantic models across data, analytics, and AI platforms. The [...]
KillSec Ransomware Group Dismantled, 16-Year-Old Suspected Admin Arrested
openSUSE Chromium Important Buffer Overflow Patch 2026-0343-1
Debian libpng Use-After-Free Denial of Service Vulnerability DSA-6537-1
Debian Thunderbird Critical Arbitrary Code Exec Advisory DSA-6536-1
Debian Chromium High Remote Code Execution Service Disruption DSA-6535-1
EU’s hodgepodge tech policy exposes members to Chinese vendor risks, says think tank
Depending on Chinese technology for European infrastructure poses risks that not every country takes seriously. So says the Royal United Services Institute [...]