Menu

Monthly Archives: May 2025

* bsc#1243313 Cross-References: * CVE-2025-47273

* bsc#1242931 Cross-References: * CVE-2025-4207

New updates for Red Hat Enterprise Linux on confidential virtual machines
The tough task of making AI code production-ready
InfluxDB’s new model for time series workloads
TeleMessage security SNAFU worsens as 60 government staffers exposed
China approves rules for national ‘online number’ ID scheme
Danabot under the microscope

ESET Research has been tracking Danabot’s activity since 2018 as part of a global effort that resulted in a major disruption of the malware’s infrastructure

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

Data Security Best Practices for Strengthening Linux Networks

A few fixes

This is the May 2025 update for .NET 8 for Fedora. Release Notes: SDK: https://github.com/dotnet/core/blob/main/release- notes/8.0/8.0.16/8.0.116.md Runtime: https://github.com/dotnet/core/blob/main/release-

Update to version 12.5.2. Fixes CVE-2025-22247

Update to 128.10.2 https://www.thunderbird.net/en-US/thunderbird/128.10.2esr/releasenotes/

A few fixes

Cybercrime is ‘orders of magnitude’ larger than state-backed ops, says ex-White House advisor
Danabot: Analyzing a fallen empire

ESET Research shares its findings on the workings of Danabot, an infostealer recently disrupted in a multinational law enforcement operation

Lumma Stealer: Down for the count

The bustling cybercrime enterprise has been dealt a significant blow in a global operation that relied on the expertise of ESET and other technology companies

Remembering John Young, co-founder of web archive Cryptome

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

Kotlin gets a new AI agent framework

Update to 128.10.2 https://www.thunderbird.net/en-US/thunderbird/128.10.2esr/releasenotes/ Update to 128.10.1 https://www.mozilla.org/en-US/security/advisories/mfsa2025-34/ https://www.thunderbird.net/en-US/thunderbird/128.10.1esr/releasenotes/

CVE-2025-46646 ghostscript: Mishandling of Overlong UTF-8 Encoding in decode_utf8() (fedora#2362639, fedora#2362446)

Fix for CVE-2025-47268

https://security-tracker.debian.org/tracker/DSA-5925-1

Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel’® Processors may allow an authenticated user to potentially enable information disclosure via local access. (CVE-2024-28956) Insufficient resource pool in the core management mechanism for some

Heap buffer overflow in HTML. (CVE-2025-4096) Out of bounds memory access in DevTools. (CVE-2025-4050) Insufficient data validation in DevTools. (CVE-2025-4051) Inappropriate implementation in DevTools. (CVE-2025-4052) Use after free in WebAudio. (CVE-2025-4372)

Ransomware scum leaked Nova Scotia Power customers’ info
ESET takes part in global operation to disrupt Lumma Stealer

Our intense monitoring of tens of thousands of malicious samples helped this global disruption operation

CISA says SaaS providers in firing line after Commvault zero-day Azure attack
Understanding Security Threats In Open-Source Software Supply Chains
RHEL 10 Enhances Security Across Hybrid Environments
Grandpa-conning crook jailed over sugar-coated drug scam
3AM ransomware attack poses as a call from IT support to compromise networks

* bsc#1229504 * bsc#1233019 * bsc#1234847 Cross-References:

* bsc#1233019 * bsc#1234847 Cross-References: * CVE-2024-50115

* bsc#1233019 * bsc#1233678 * bsc#1234847 Cross-References:

Suspected creeps behind DanaBot malware that hit 300K+ computers revealed
Ivanti makes dedicated fans of Chinese spies who just can’t resist attacking its buggy kit
US Navy sailor charged in horrific child sextortion case

https://security-tracker.debian.org/tracker/DSA-5924-1

How lean security teams can build resilient defenses
Feds finger Russian ‘behind Qakbot malware’ that hit 700K computers
Chinese snoops tried to break into US city utilities, says Talos
Irish privacy watchdog OKs Meta to train AI on EU folks’ posts
Russia expected to pass experimental law that tracks foreigners in Moscow via smartphones
Signal shuts the blinds on Microsoft Recall with the power of DRM
Understanding Malicious .desktop Files: A Persistent Threat to Linux Systems
Tails 6.15.1 Fixes Critical Tor Browser Flaws
The road to quantum-safe cryptography in Red Hat OpenShift
Unleashing innovation in Red Hat Enterprise Linux with extensions repository
Post-quantum cryptography in Red Hat Enterprise Linux 10
Zero trust workload identity manager now available in tech preview
EMEA blog | Dutch | Red Hat OpenShift Comes Out Exceptionally Strong in Data Security Survey Results
How HashiCorp Vault and Red Hat OpenShift can work together
Scottish council admits ransomware crooks stole school data
Evolving the Windows AI platform
How to add user context to request traces in ASP.NET Core
How to use method references in Java

libfcgi-perl could be made to crash or execute arbitrary code.

* bsc#1243268 Cross-References: * CVE-2025-47287

DOJ charges 12 more in $263 million crypto fraud takedown where money was hidden in squishmallow stuffed animals
Red Hat readies Advanced Developer Suite

Update to version 0.2.6.

Latest upstream release. Changelog: https://github.com/gorhill/uBlock/releases/tag/1.64.0 . Fixes CVE-2025-4215 .

Update to version 0.2.6.

Smashing Security podcast #418: Grid failures, Instagram scams, and Legal Aid leaks
US teen to plead guilty to extortion attack against PowerSchool
Russia’s Fancy Bear swipes a paw at logistics, transport orgs’ email servers
FBI, Microsoft, international cops bust Lumma infostealer service
CloudBees unveils AI-enhanced devops platform
Coinbase confirms insiders handed over data of 70K users
Google releases agent development kits for Python and Java
The who, where, and how of APT attacks in Q4 2024–Q1 2025

ESET Chief Security Evangelist Tony Anscombe highlights key findings from the latest issue of the ESET APT Activity Report

ESET APT Activity Report Q4 2024–Q1 2025

An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2024 and Q1 2025

Microsoft beefs up SQL Server 2025 for AI-driven applications
Red Hat Enterprise Linux 10 adds AI-powered management
Judge allows Delta’s lawsuit against CrowdStrike to proceed with millions in damages on the line
Google carves out cloudy safe spaces for nations nervous about America’s reach
The AI Fix #51: Divorce by coffee grounds, and why AI robots need your brain

PostgreSQL could be made to crash if it received specially crafted network traffic.

Trump announces $175B for Golden Dome defense shield over America

* bsc#1215199 * bsc#1223809 * bsc#1224013 * bsc#1224597 * bsc#1224757

* bsc#1235958 * bsc#1235971 * bsc#1239651 * bsc#1242971 * jsc#PED-12028

* bsc#1242622 * jsc#PED-12028 Cross-References: * CVE-2025-3416

M&S warns of £300M dent in profits from cyberattack
UK ‘extremely dependent’ on US for space security
Scattered Spider snared financial orgs before targeting shops in Britain, America
‘Ongoing’ Ivanti hijack bug exploitation reaches clouds
GitHub unveils coding agent for GitHub Copilot
Freshly discovered bug in OpenPGP.js undermines whole point of encrypted comms
Microsoft Open-Sources WSL Years After Its Debut

* bsc#1240897 Cross-References: * CVE-2025-3360