Menu

Monthly Archives: July 2025

Alaska Airlines grounded itself due to mysterious IT problem
Japan discovers object out beyond Pluto that rewrites the Planet 9 theory
Microsoft patches failed to fix on-prem SharePoint, which is now under zero-day attack
UK uncovers novel Microsoft snooping malware, blames and sanctions GRU cyberspies

Update to 7.3.20 Security fixes for CVE-2025-47273, CVE-2024-47081 and CVE-2025-50181 (in pip and setuptools wheels)

Update to 7.3.20 Security fixes for CVE-2025-47273, CVE-2024-47081 and CVE-2025-50181 (in pip and setuptools wheels)

angular.js a popular JavaScript framework was affected by multiple vulnerabilities. CVE-2022-25844

Update to 138.0.7204.157 * CVE-2025-7656: Integer overflow in V8 * CVE-2025-7657: Use after free in WebRTC * CVE-2025-6558: Incorrect validation of untrusted input in ANGLE and GPU

Update to 1.23.1 (rhbz#2380450)

Ex-IDF cyber chief on Iran, Scattered Spider, and why social engineering worries him more than 0-days
GitLab introduces AI agent-enabled devsecops platform

* bsc#1229008 * bsc#1241865 * bsc#1245087 Cross-References:

* bsc#1243450 Cross-References: * CVE-2024-23337

* bsc#1238912 * bsc#1241579 * bsc#1244337 Cross-References:

* bsc#1234854 * bsc#1234885 * bsc#1234892 * bsc#1235005 * bsc#1235769

As companies race to add AI, terms of service changes are going to freak a lot of people out
Cryptomining Meets AI: H2Miners Multi-Platform Assault Unveiled

* bsc#1243767 Cross-References: * CVE-2025-5278

Oracle launches MCP server to power context-aware AI agents for enterprise data
Reduce risk in Kubernetes: How to separate admin roles for safer, compliant operations
Loaf and order: Belgian police launch bread-based cybersecurity campaign

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Alternative clouds are on the rise
AI’s not-so-secret agents
Google sues 25 alleged BadBox 2.0 botnet operators, all of whom are in China
Watch out, another max-severity, make-me-root Cisco bug on the loose
MCP server announced for JFrog supply chain management platform
Smashing Security podcast #426: Choo Choo Choose to ignore the vulnerability
Quantum code breaking? You’d get further with an 8-bit computer, an abacus, and a dog
Orchestrating AI-driven data pipelines with Azure ADF and Databricks: An architectural evolution
From prompts to specs: AWS’s Kiro signals the next phase of AI coding tools
How to create your own RAG applications in R
It is time to shift data left
Taking .NET Aspire for a spin
Microsoft offers vintage Exchange and Skype server users six more months of security updates

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. Google is aware that an exploit for CVE-2025-6558 exists in the wild.

The newest upstream commit Security fixes for CVE-2025-53906, CVE-2025-53905

.NET 10 Preview 6 brings JIT improvements, one-shot tool execution

https://security-tracker.debian.org/tracker/DSA-5963-1

Qdrant Cloud adds service for generating text and image embeddings

New bind packages are available for Slackware 15.0 and -current to fix a security issue.

Several security issues were fixed in Apache HTTP Server.

Bind could be made to crash if it received specially crafted network traffic.

Ukrainian hackers claim to have destroyed major Russian drone maker’s entire network
Perforce unveils agentic AI test tool for web and mobile apps

Multiple security issues were discovered in GNU TLS, which could result in denial of service. For the stable distribution (bookworm), these problems have been fixed in

Operation Eastwood shutters 100+ servers used to DDoS websites supporting Ukraine
Unmasking AsyncRAT: Navigating the labyrinth of forks

ESET researchers map out the labyrinthine relationships among the vast hierarchy of AsyncRAT variants

AWS looks to cut storage costs for LLM embeddings with Amazon S3 Vectors
Police dismantle DiskStation ransomware gang targeting NAS devices, arrest suspected ringleader
SIM scammer’s sentence increased to 12 years, after failing to pay back victim $20 million
Quelle surprise! Twitter faces criminal probe in France
Crims hijacking fully patched SonicWall VPNs to deploy stealthy backdoor and rootkit

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The Linux Kernel in 2025: Security Enhancements, Emerging Threats & Best Practices
Retailer Co-op: Attackers snatched all 6.5M member records
Turbulence at Air Serbia, the latest airline under cyber siege
4 tips for getting started with free-threaded Python
ECMAScript 2025: The best new features in JavaScript
Database design tips for developers
Oracle’s Java licensing shift sparks mass migration to open source
Security shop Adarma ceases trading, confirms it will enter administration
Cognition agrees to buy what’s left of Windsurf

https://security-tracker.debian.org/tracker/DSA-5962-1

Curl creator mulls nixing bug bounty awards to stop AI slop
Firebase Studio adds autonomous Agent mode, MCP support, Gemini CLI
Ex-US soldier who Googled ‘can hacking be treason’ pleads guilty to extortion
Akka releases platform for agentic AI
JavaScript, MacOS lead usage in worldwide developer survey
The AI Fix #59: Grok thinks it’s Mecha Hitler, and AIs can think strategically

Several security issues were fixed in libjxl.

* bsc#1244663 Cross-References: * CVE-2025-4565

* bsc#1244663 Cross-References: * CVE-2025-4565

* bsc#1244663 Cross-References: * CVE-2025-4565

Ransomwares New Frontier: Linux Systems Face Intensifying Attacks
How agentic AI will transform mobile apps and field operations
Does public cloud AI cost too much?
Britain’s billion-pound F-35s not quite ready for, well, anything
Someone hijacked Elmo’s X account to post antisemitic rants
Nvidia A6000 GPUs flip memory bits if beaten by GPUHammer
A software-defined radio can derail a US train by slamming the brakes on remotely
Active Wing FTP Exploits Demand Immediate Action from Linux Admins
GPS on the fritz? Britain and France plot a backup plan
Elmo has been hacked, claims Trump is in Epstein files, calls for Jews to be exterminated
Can System Initiative fix devops?
Why zero CVEs makes zero sense