https://security-tracker.debian.org/tracker/DSA-6050-1
How a fast-growing scam is tricking WhatsApp users into revealing their most sensitive financial and other data
* bsc#1248004 Cross-References: * CVE-2025-55159
* bsc#1250413 Cross-References: * CVE-2025-9900
* bsc#1252414 * bsc#1252417 * bsc#1252418 * bsc#1252758
* bsc#1252414 * bsc#1252417 * bsc#1252418 * bsc#1252758
An update that solves three vulnerabilities and has one security fix can now be installed.
* bsc#1251194 Cross-References: * CVE-2025-61962
https://security-tracker.debian.org/tracker/DSA-6049-1
Think you could never fall for an online scam? Think again. Here’s how scammers could exploit psychology to deceive you – and what you can do to stay one step ahead
* bsc#1250413 Cross-References: * CVE-2025-9900
Update to 142.0.7444.59 * High CVE-2025-12428: Type Confusion in V8 * High CVE-2025-12429: Inappropriate implementation in V8 * High CVE-2025-12430: Object lifecycle issue in Media * High CVE-2025-12431: Inappropriate implementation in Extensions
New upstream development version 1.23.10 New upstream development version 1.23.9
add patch to remove dependency upper bound versions remove obsolete patches that updated upper bound versions clean up spec file formatting
uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3
uv / python-uv-build 0.9.5 https://github.com/astral-sh/uv/blob/0.9.5/CHANGELOG.md ruff 0.14.2 https://github.com/astral-sh/ruff/blob/0.14.2/CHANGELOG.md Pydantic 2.12.3
https://security-tracker.debian.org/tracker/DSA-6048-1
When every minute counts, preparation and precision can mean the difference between disruption and disaster
From the end of Windows 10 support to scams on TikTok and state-aligned hackers wielding AI, October’s headlines offer a glimpse of what’s shaping cybersecurity right now
Families that combine open communication with effective behavioral and technical safeguards can cut the risk dramatically
Deepfakes are blurring the line between real and fake and fraudsters are cashing in, using synthetic media for all manner of scams
Here’s what to know about a recent spin on an insider threat – fake North Korean IT workers infiltrating western firms
With cybersecurity talent in short supply and threats evolving fast, managed detection and response is emerging as a strategic necessity for MSPs
Shadow IT leaves organizations exposed to cyberattacks and raises the risk of data loss and compliance failures
ESET research analyzes a recent instance of the Operation DreamJob cyberespionage campaign conducted by Lazarus, a North Korea-aligned APT group
Here’s what to know about the malware with an insatiable appetite for valuable data, so much so that it tops this year’s infostealer detection charts
Ransomware rages on and no organization is too small to be targeted by cyber-extortionists. How can your business protect itself against the threat?
Some Minecraft mods don’t help build worlds – they break them. Here’s how malware can masquerade as a Minecraft mod.
Could a simple call to the helpdesk enable threat actors to bypass your security controls? Here’s how your team can close a growing security gap.
As the number of software vulnerabilities continues to increase, delaying or skipping security updates could cost your business dearly.
Cybercriminals have tricked X’s AI chatbot into promoting phishing scams in a technique that has been nicknamed “Grokking”. Here’s what to know about it.
Is the ride-hailing app secretly tracking you? Not really, but this iOS feature may make it feel that way.
Never rely on just a password, however strong it may be. Multi-factor authentication is essential for anyone who wants to protect their online accounts from intruders.
Company leaders need to recognize the gravity of cyber risk, turn awareness into action, and put security front and center
Looks can be deceiving, so much so that the familiar icon could mask malware designed to steal your data and money.
Manufacturers operate in one of the most unforgiving threat environments and face a unique set of pressures that make attacks particularly damaging
ESET researchers have discovered campaigns distributing spyware disguised as Android Signal and ToTok apps, targeting users in the United Arab Emirates
We’re kicking off the month with a focus on the human element: the first line of defense, but also the path of least resistance for many cybercriminals
The past 30 days have seen no shortage of new threats and incidents that brought into sharp relief the need for well-thought-out cyber-resilience plans
You could be getting more than you bargained for when you download that cheat tool promising quick wins
Malware operators collaborate with covert North Korean IT workers, posing a threat to both headhunters and job seekers
What you see is not always what you get as cybercriminals increasingly weaponize SVG files as delivery vectors for stealthy malware
* bsc#1248631 * bsc#1249207 * bsc#1249208 Cross-References:
An update that solves three vulnerabilities can now be installed.
* bsc#1206051 * bsc#1221829 * bsc#1233551 * bsc#1234480 * bsc#1234863
* bsc#1246019 * bsc#1248631 * bsc#1249207 * bsc#1249208
An update that solves four vulnerabilities can now be installed.
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
