Menu

Monthly Archives: January 2025

Important: thunderbird security update

Important: raptor2 security update

Important: rsync security update

Secure AI? Dream on, says AI red team
FCC to telcos: By law you must secure your networks from foreign spies. Get on it

https://security-tracker.debian.org/tracker/DSA-5843-2

Biden signs sweeping cybersecurity order, just in time for Trump to gut it
Fortinet: FortiGate config leaks are genuine but misleading
Clock ticking for TikTok as US Supreme Court upholds ban
Six vulnerabilities in ubiquitous rsync tool announced and fixed in a day
Migrating from .NET Framework to .NET Core: Security and Open Source Benefits
Medusa ransomware group claims attack on UK’s Gateshead Council
No, Brad Pitt isn’t in love with you
Python eats the world
Federated learning: The killer use case for generative AI
Microsoft eggheads say AI can never be made secure – after testing Redmond’s own products
Here’s how Google is using LLMs for complex internal code migrations
Just as your LLM once again goes off the rails, Cisco, Nvidia are at the door smiling
Google rolls out Vertex AI RAG Engine
GM parks claims that driver location data was given to insurers, pushing up premiums

https://security-tracker.debian.org/tracker/DSA-5845-1

The update for rsync announced in DSA 5843-1 introduced a regression when using the -H option to preserve hard links. Updated packages are now available to correct this issue.

* bsc#1235856 Cross-References: * CVE-2024-56374

* bsc#1220145 * bsc#1221302 * bsc#1222882 * bsc#1223059 * bsc#1223363

USN-7206-1 caused some regression in rsync.

Russia’s Star Blizzard phishing crew caught targeting WhatsApp accounts
Enzo Biochem settles lawsuit over 2023 ransomware attack for $7.5M
Cybersecurity rethink – from reaction to resilience
Snowflake open sources SwiftKV to reduce inference workload costs
Raspberry Pi hands out prizes to all in the RP2350 Hacking Challenge
The AI Fix #33: AI’s deliberate deceptions, and Elon’s “unhinged” mode

* bsc#1228693 Cross-References: * CVE-2024-40779

* bsc#1232637 * bsc#1233712 Cross-References: * CVE-2022-48956

* bsc#1210619 * bsc#1223363 * bsc#1223683 * bsc#1225013 * bsc#1225202

Infoseccer: Private security biz let guard down, exposed 120K+ files
Build API clients with Microsoft Kiota
Digital Transformation in Prisons: How Kazakhstan is Leading the Way
Smashing Security podcast #400: Hacker games, AI travel surveillance, and 25 years of IoT
GoDaddy slapped with wet lettuce for years of lax security and ‘several major breaches’
Red Hat offers OpenShift Virtualization Engine, Kubernetes Connectivity Link
DJI loosens flight restrictions, decides to trust operators to follow FAA rules
China’s Salt Typhoon spies spotted on US govt networks before telcos, CISA boss says
Even modest makeup can thwart facial recognition
Windows Patch Tuesday hits snag with Citrix software, workarounds published
Crypto klepto North Korea stole $659M over just 5 heists last year

* bsc#1235600 * bsc#1235601 Cross-References: * CVE-2024-50349

* bsc#1214954 * bsc#1216813 * bsc#1220773 * bsc#1224095 * bsc#1224726

* bsc#1234100 * bsc#1234101 * bsc#1234102 * bsc#1234103 * bsc#1234104

Why you should use Docker and OCI containers
Intro to Ktor: The server-side stack
Where big piles of mud come from
Microsoft fixes under-attack privilege-escalation holes in Hyper-V
Angular team unveils strategy for 2025

https://security-tracker.debian.org/tracker/DSA-5844-1

FBI wipes Chinese PlugX malware from thousands of Windows PCs in America
Snyk appears to deploy ‘malicious’ packages targeting Cursor for unknown reason
It’s not just Big Tech: The UK’s Online Safety Act applies across the board
UK floats ransomware payout ban for public sector
The journey towards a knowledge graph for generative AI
The cloud cost wake-up call I predicted

* bsc#1233712 Cross-References: * CVE-2024-50264

* bsc#1225819 * bsc#1228349 * bsc#1228786 * bsc#1229273 * bsc#1229553

* bsc#1225819 * bsc#1233712 Cross-References: * CVE-2023-52752

* bsc#1228573 * bsc#1229273 * bsc#1229553 * bsc#1232637 * bsc#1233712

* bsc#1229553 * bsc#1232637 * bsc#1233712 Cross-References:

* bsc#1210619 * bsc#1220537 * bsc#1223363 * bsc#1223683 * bsc#1225011

Miscreants ‘mass exploited’ Fortinet firewalls, ‘highly probable’ zero-day used

https://security-tracker.debian.org/tracker/DSA-5843-1

CISA publishes security goals for software development process, product design
Cryptojacking, backdoors abound as fiends abuse Aviatrix Controller bug

In today’s cyber threat landscape, good enough is no longer good enough. Cyberattacks don’t clock out at 5 PM, and neither can your security strategy. For Managed Service Providers (MSPs), offering customers 24/7 cybersecurity protection and response isn’t just a competitive advantage—it’s an essential service for business continuity, customer trust, and staying ahead of attackers. […]

Microsoft sues ‘foreign-based’ cyber-crooks, seizes sites used to abuse AI
Pastor’s “dream” crypto scheme alleged to be a multi-million dollar scam
Azure, Microsoft 365 MFA outage locks out users across regions
NATO’s newest member comes out swinging following latest Baltic Sea cable attack
Ransomware crew abuses AWS native encryption, sets data-destruct timer for 7 days
An introduction to using tcpdump at the Linux command line

Several security issues were fixed in snapd.

Nominet probes network intrusion linked to Ivanti zero-day exploit
The devops certifications tech companies want
Open source trends for 2025 and beyond
Yes, you should use coding assistants—but not like that
Europe coughs up €400 to punter after breaking its own GDPR data protection rules

Several security issues were fixed in libxmltok.

https://security-tracker.debian.org/tracker/DSA-5842-1

An issue has been found in gnuchess, a tool to play a game of chess, either against the user or against itself. The issue is related to arbitrary code execution via crafted PGN (Portable

Out of Bounds Memory Read/Write in libjxl. (CVE-2024-11403) Resource exhaustion via Stack overflow in libjxl. (CVE-2024-11498) References: – https://bugs.mageia.org/show_bug.cgi?id=33818

Avahi wide-area dns uses constant source port. (CVE-2024-52615) Avahi wide-area dns predictable transaction ids. (CVE-2024-52616) References: – https://bugs.mageia.org/show_bug.cgi?id=33829

Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die function. (CVE-2024-29645) References:

Command injection via RzBinInfo bclass due legacy code. (CVE-2022-1207) References: – https://bugs.mageia.org/show_bug.cgi?id=33895 – https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/YNDCM5TGWRLSMIJ74ZI6LMNSCCH5DBPL/

Various security, performance, accuracy, and stability issues have been fixed.

work around debugedit bug to fix aarch64 builds xen-hypervisor %post doesn’t load all needed grub2 modules update to xen-4.19.1 which includes Deadlock in x86 HVM standard VGA handling [XSA-463, CVE-2024-45818] libxl leaks data to PVH guests via ACPI tables [XSA-464, CVE-2024-45819]