Menu

Monthly Archives: July 2025

CitrixBleed 2 exploits are on the loose as security researchers yell and wave their hands

Antonio Morales discovered an out-of-bounds write in the MMRDecoder::scanruns method in djvulibre, a library and set of tools to handle documents in the DjVu format, which may result in the execution of arbitrary code if a specially crafted document is processed.

Employee arrested after Brazil’s central bank service provider hacked for US $140 million
Phishing platforms, infostealers blamed as identity attacks soar
Advanced unit testing with JUnit 5, Mockito, and Hamcrest
OutSystems Mentor: An AI-powered digital assistant for the entire SDLC
Arriving at ‘Hello World’ in enterprise AI

* bsc#1243061 * bsc#1243804 * bsc#1243913 Cross-References:

5.2.0 release

Integer overflow on 32-bit systems has been fixed in the XMedCon toolkit for medical image conversion. For Debian 11 bullseye, this problem has been fixed in version

Stalkerware firm gets scooped by SQL-slinging security snoop

Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the stable distribution (bookworm), these problems have been fixed in

Ingram Micro confirms ransomware behind multi-day outage

Update to 3.6.4 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/mbedtls-3.6.4

https://security-tracker.debian.org/tracker/DSA-5959-1

PGSQL: Fixed GHSA-hrwm-9436-5mv3 (pgsql extension does not check for errors during escaping). (CVE-2025-1735) SOAP: Fixed GHSA-453j-q27h-5p8x (NULL Pointer Dereference in PHP SOAP

A memory corruption vulnerability exists in the Shared String Table Record Parser implementation in the xls2csv utility version 0.95. (CVE-2024-48877) An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. (CVE-2024-52035)

* bsc#1243314 * bsc#1243332 * bsc#1243422 * bsc#1243423

* bsc#1236931 * bsc#1239119 Cross-References: * CVE-2025-30258

How to get into cybersecurity | Unlocked 403 cybersecurity podcast (S2E3)

Cracking the code of a successful cybersecurity career starts here. Hear from ESET’s Robert Lipovsky as he reveals how to break into and thrive in this fast-paced field.

Task scams: Why you should never pay to get paid

Some schemes might sound unbelievable, but they’re easier to fall for than you think. Here’s how to avoid getting played by gamified job scams.

Massive spike in use of .es domains for phishing abuse

Update bundled pbkdf2 library.

* bsc#1245309 * bsc#1245310 * bsc#1245311 * bsc#1245314

* bsc#1238063 * bsc#1244136 Cross-References: * CVE-2025-0620

How government cyber cuts will affect you and your business

Deep cuts in cybersecurity spending risk creating ripple effects that will put many organizations at a higher risk of falling victim to cyberattacks

Technical difficulties or cyber attack? Ingram Micro’s website goes down just in time for the holiday weekend
Catwatchful stalkerware app spills secrets of 62,000 users – including its own admin

* bsc#1244704 Cross-References: * CVE-2025-6196

Hunters International ransomware group shuts down – but will it regroup under a new guise?
Developing JavaScript apps with AI agents
Risk management in the public cloud is your job

Multiple vulnerabilities are discovered in jpeg-xl, the JPEG XL (“JXL”) image coding library, including out of bounds read/write and stack based buffer overflow, which may cause excessive memory usage and denial of service attacks.

Backport fix for CVE-2025-6199.

5.2.0 release

https://security-tracker.debian.org/tracker/DSA-5958-1

Gamaredon in 2024: Cranking out spearphishing campaigns against Ukraine with an evolved toolset

ESET Research analyzes Gamaredon’s updated cyberespionage toolset, new stealth-focused techniques, and aggressive spearphishing operations observed throughout 2024

Microsoft Windows Firewall complains about Microsoft code
Young Consulting finds even more folks affected in breach mess – now over 1 million
Meta calls €200M EU fine over pay-or-consent ad model ‘unlawful’
SSH Under Siege: Hardening Your Linux Server Against Proxy Abuse
AWS adds incremental and distributed training to Clean Rooms for scalable ML collaboration
Ransomware crew Hunters International shuts down, hands out keys to victims
Model Context Protocol (MCP): Understanding security risks and controls
6 techniques to reduce cloud observability cost
What you need to know about Java wrapper classes
AiSuite: An open-source AI gateway for unified LLM access
Working with Microsoft 365’s new Copilot APIs
Let’s Encrypt rolls out free security certs for IP addresses

The embedded copy of pjproject is affected by a buffer overflow vulnerability, which affects applications that use PJSIP DNS resolver. For the stable distribution (bookworm), this problem has been fixed in

ChatGPT creates phisher’s paradise by recommending the wrong URLs for major companies

Several security issues were fixed in pcs.

Several security issues were fixed in Flask-CORS.

Several security issues were fixed in mongo-c-driver.

Several security issues were fixed in logback.

https://security-tracker.debian.org/tracker/DSA-5957-1

https://security-tracker.debian.org/tracker/DSA-5956-1

Smashing Security podcast #424: Surveillance, spyware, and self-driving snafus
Cisco scores a perfect 10 – sadly for a critical flaw in its comms platform

CVE-2025-6424: A use-after-free in FontFaceSet resulted in a potentially exploitable crash. CVE-2025-6425: An attacker who enumerated resources from the WebCompat extension could have obtained a persistent UUID that identified the browser, and persisted between containers and normal/private browsing

CISA warns the Signal clone used by natsec staffers is being attacked, so patch now
23andMe’s new owner says your DNA is safe this time
ESET Threat Report H1 2025: Key findings

ESET Chief Security Evangelist Tony Anscombe reviews some of the report’s standout findings and their implications for organizations in 2025 and beyond

ESET APT Activity Report Q4 2024–Q1 2025: Malware sharing, wipers and exploits

ESET experts discuss Sandworm’s new data wiper, UnsolicitedBooker’s relentless campaigns, attribution challenges amid tool-sharing, and other key findings from the latest APT Activity Report

Swiss government warns attackers have stolen sensitive data, after ransomware attack at Radix
CISA Warns of CVSS 9.3 MICROSENS NMP Web+ Flaws
US imposes sanctions on second Russian bulletproof hosting vehicle this year

* bsc#1230092 Cross-References: * CVE-2024-45310

Cl0p cybercrime gang’s data exfiltration tool found vulnerable to RCE attacks
Meet Zig: The modern alternative to C
How to use editable installs for Python packages
Anonymity should not be free
UK eyes new laws as cable sabotage blurs line between war and peace

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. Google is aware that an exploit for CVE-2025-6554 exists in the wild.

Australian airline Qantas reveals data theft impacting six million customers

New mozilla-thunderbird packages are available for Slackware 15.0 and -current to fix security issues.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

https://security-tracker.debian.org/tracker/DSA-5955-1

Microsoft admits to Intune forgetfulness
International Criminal Court swats away ‘sophisticated and targeted’ cyberattack
The AI Fix #57: AI is the best hacker in the USA, and self-learning AI
The Rise of Rust-Based Malware: Memory Safetys Double-Edged Sword
50 customers of French bank hit after insider helped SIM swap scammers
Download the ‘AI-ready data centers’ spotlight report
Terrible tales of opsec oversights: How cybercrooks get themselves caught
How to shift left on finops, and why you need to
The private cloud comeback
Proton bashes Apple and joins antitrust suit that seeks to throw the App Store wide open

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: