Menu

Monthly Archives: January 2026

EU looking into Elon Musk’s X after Grok produces deepfake sex images
Data thieves borrow Nike’s ‘Just Do It’ mantra, claim they ran off with 1.4TB
Moscow likely behind wiper attack on Poland’s power grid, experts say
Stop treating force multiplication as a side gig. Make it intentional
Oracle AI sailed the world on Royal Navy flagship via cloud-at-the-edge kit
Why your AI agents need a trust layer before it’s too late
UK digital ID goes in-house, government swears it isn’t an ID card
16 open source projects transforming AI and machine learning
AI makes the database matter again

An update that solves 395 vulnerabilities, contains 29 features and has 43 security fixes can now be installed.

An update that solves seven vulnerabilities and has one security fix can now be installed.

An update that solves seven vulnerabilities and has one security fix can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

Pwn2Own Automotive 2026 uncovers 76 zero-days, pays out more than $1M
Understanding security embargoes at Red Hat
New observability features in Red Hat OpenShift 4.20 and Red Hat Advanced Cluster Management 2.15

Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in incorrect certificate validation, CRLF injection or man-in-the-middle attacks. For the oldstable distribution (bookworm), these problems have been fixed in version 17.0.18+8-1~deb12u1.

An update that solves one vulnerability and has 2 bug fixes can now be installed.

An update that solves 4 vulnerabilities and has 5 bug fixes can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

https://security-tracker.debian.org/tracker/DSA-6110-1

https://security-tracker.debian.org/tracker/DSA-6109-1

ESET Research: Sandworm behind cyberattack on Poland’s power grid in late 2025

The attack involved data-wiping malware that ESET researchers have now analyzed and named DynoWiper

Children and chatbots: What parents should know

As children turn to AI chatbots for answers, advice, and companionship, questions emerge about their safety, privacy, and emotional development

UK border tech budget swells by £100M as Home Office targets small boat crossings

Security fix for CVE-2025-12084

Security fix for CVE-2025-12084

CISA won’t attend infosec industry’s biggest conference this year

https://security-tracker.debian.org/tracker/DSA-6102-2

https://security-tracker.debian.org/tracker/DSA-6108-1

https://security-tracker.debian.org/tracker/DSA-6107-1

GitHub Copilot SDK allows developers to build Copilot agents into apps
Patch or die: VMware vCenter Server bug fixed in 2024 under attack today
Go developers meh on AI coding tools – survey

An update that solves one vulnerability and has one errata is now available.

An update that solves one vulnerability and has one errata is now available.

Surrender as a service: Microsoft unlocks BitLocker for feds

An update that solves two vulnerabilities can now be installed.

An update that solves seven vulnerabilities can now be installed.

Common Apple Pay scams, and how to stay safe

Here’s how the most common scams targeting Apple Pay users work and what you can do to stay one step ahead

ShinyHunters claims Okta customer breaches, leaks data belonging to 3 orgs
AI-powered cyberattack kits are ‘just a matter of time,’ warns Google exec
2025 was a year of transformative customer success with Red Hat Ansible Automation Platform
2025 Red Hat Ansible Automation Platform: A year in review
From manual to agentic: streamlining IT processes with Red Hat OpenShift AI
Event-Driven Ansible: Simplified event routing with Event Streams
Automating Microsoft Endpoint Configuration Manager with Red Hat Ansible Automation Platform
Fortinet admits FortiGate SSO bug still exploitable despite December patch

An update that solves 392 vulnerabilities, contains 16 features and has 47 security fixes can now be installed.

An update that solves 392 vulnerabilities, contains 16 features and has 47 security fixes can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

London boroughs limping back online months after cyberattack

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

Marching orders delayed: Veterans’ Digital ID off to a slow start
Python picks up speed with a new JIT
Agentic AI exposes what we’re doing wrong
JetBrains IDEs integrate OpenAI Codex
Crims hit the easy button for Scattered-Spider style helpdesk scams
Rust 1.93 updates bundled musl library to boost networking

https://security-tracker.debian.org/tracker/DSA-6105-1

Crims compromised energy firms’ Microsoft accounts, sent 600 phishing emails
FortiGate firewalls hit by silent SSO intrusions and config theft
Europe’s GDPR cops dished out €1.2B in fines last year as data breaches piled up
Bank of England: Financial sector failing to implement basic cybersecurity controls
MuleSoft gains Agent Scanners to rein in enterprise AI chaos
Ancient telnet bug happily hands out root to attackers
Another week, another emergency patch as Cisco plugs Unified Comms zero-day
European Space Agency’s cybersecurity in freefall as yet another breach exposes spacecraft and mission data
TypeScript levels up with type stripping
AI agents and IT ops: Cowboy chaos rides again

An update that solves three vulnerabilities can now be installed.

Kyu Neushwaistein discovered that telnetd from inetutils does not sanitize the USER environment variable before passing it on to login. A remote attacker can take advantage of this flaw to login as root, bypassing normal authentication processes. For the oldstable distribution (bookworm), this problem has been fixed

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Evolving Linux Malware Threats: A Guide for Admins in Cloud-Native Contexts
Smashing Security podcast #451: I hacked the government, and your headphones are next
jQuery 4.0.0 JavaScript library features trusted types

https://security-tracker.debian.org/tracker/DSA-6106-1

GitLab 2FA login protection bypass lets attackers take over accounts
Davos discussion mulls how to keep AI agents from running wild

https://security-tracker.debian.org/tracker/DSA-6104-1

Don’t click on the LastPass ‘create backup’ link – it’s a scam
Old habits die hard: 2025’s most common passwords were as predictable as ever

Once again, data shows an uncomfortable truth: the habit of choosing eminently hackable passwords is alive and well

GLib could be made to crash or run programs if it received specially crafted input.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

Everest ransomware gang said to be sitting on mountain of Under Armour data
EU considers whether there’s Huawei of axing Chinese kit from networks within 3 years
Ireland wants to give its cops spyware, ability to crack encrypted messages