Menu

Monthly Archives: July 2026

Ubuntu GStreamer Good Plugins Important Denial of Service USN-8584-1
Ubuntu 26.04 LTS HTML-Parser Critical Info Exposure USN-8587-1
Sneaky Windows stealer targets 300+ apps, gives crims an AI profiler to maximize profits
EXCLUSIVE A Windows information-stealer targeting more than 300 applications comes equipped with a novel surveillance tool: an AI profiler that ranks [...]
Greedy ransomware crews return for seconds after victims cough up first extortion payments
Authorities have long warned organizations not to pay ransoms, and fresh figures underline why: handing over the money doesn’t mean the crooks leave [...]
Oracle Linux 9 acl Important Symlink Traversal Advisory ELSA-2026-42736
Oracle Linux 9 libtiff Important Heap Overflow ELSA-2026-42668
Oracle Linux 9 glib2 Important Node Validation Fix ELSA-2026-42089
Oracle Linux 9 webkit2gtk3 Important Security Advisory ELSA-2026-42062
Oracle Linux 9 HTTPD Important Buffer Overflow Fix ELSA-2026-41906
Oracle Linux 9 Dovecot Important IMAP Bypass Vulnern ELSA-2026-41905
Oracle Linux 9 .NET 10.0 Important Updates ELSA-2026-41898
Oracle Linux 9 Update Dotnet 9.0 Important Fix Advisory ELSA-2026-41896
Oracle Linux 9 Important .NET 8.0 Bug Fix Advisory ELSA-2026-41894
Oracle Linux 9 plexus-utils Key Directory Traversal Fix ELSA-2026-38796
Oracle Linux 8 glib2 Important Security Patch Advisory ELSA-2026-42090
Oracle Linux 8 Webkit2gtk3 Important Security Advisory ELSA-2026-42088
Oracle Linux 8 ELSA-2026-41901 Dotnet Important Security Update
Oracle Linux 8 ELSA-2026-41900 DotNet 10.0 Important Security Fix
Oracle Linux 8 ELSA-2026-41899 .NET 9.0 Important Update
Oracle Linux 8 Pacemaker Important Integer Overflow Fix ELSA-2026-39322
Oracle Linux 7 Python3 Important DoS CVE-2026-4786 ELSA-2026-35838
Oracle Linux 7 perl-IO-Compress Important CVE-2026-48962 Security Advisory
Harnessing Proxies for Threat Intelligence Using Open Source Tools
Sensitive corporate data can be stolen at this very second; unfortunately, breaches can be invisible. As cyber threats multiply at an exponential rate, [...]
Reselling unused cloud instances is no longer easy
A client called me last week with a problem I have been hearing about more often lately. They had made significant reserved instance commitments with a [...]
Agentic coding is everywhere
I use a very cool and relatively new web framework called Astro. The keen insight that the Astro team had was that most websites are made up of static [...]
Seven sins of the modern software developer
If you ask us in an official setting, our official position is that software engineering norms still apply. Rigorous CI/CD pipelines, elegant architectural [...]
Council worker spared prison after four-day data-snooping spree
A council worker who “abused” his position to unlawfully access “highly sensitive” personal records of family members and other [...]
OpenAI admits it was the source of the agent swarm that attacked Hugging Face
OpenAI has admitted that it was the operator of the autonomous agents that attacked model-mart Hugging Face last week, and that they did so after a [...]
Fedora 43 Kernel Important Security Fix for net/can 2026-f1fc7772c3
Fedora 43 Nuclei Important Cross-site Scripting DoS Threat 2026-d36ca2dd19
Fedora 43 perl-Crypt-OpenSSL-X509 Important Fix CVE-2026-58101
Fedora 43 rust-syslog Critical Path Traversal DoS Vuln 2026-659cb50390
Fedora 43 Rust RPKI Critical Path Traversal Issues Fix 2026-659cb50390
Update routinator to the latest, pulling in updated dependencies (rpki and syslog), and switch fern to using syslog 7 instead of 6 for this update, and [...]
Fedora 43 Routinator Important Security Fixes CVE-2026-49232 to 49235
Fedora 43 rust-fern Important Path Traversal Fix Advisory 2026-659cb50390
Fedora 44 Kernel Important Net CAN Issue Fix Advisory 2026-2dd8b600bb
Fedora 44 btrbk Critical Update Snapshot Tool Fix CVE-2026-62943
Fedora 44 MuPDF Critical Info Disclosure Fix CVE-2026-7233
Fedora 44 Nuclei 3.11.0 Security Update – Cross-Site Scripting CVE Info
Fedora 44 perl-Crypt-OpenSSL-X509 High CVE-2026-58101 CVE-2026-58102
Fedora 44 rust-rpki Important Security Fixes 2026-ec9f1ca21a
Fedora 44 rust-ifcfg-devname Important Update CVE-2026-49232 CVE-2026-49233
Fedora 44 rust-syslog Severe Path Traversal Vulnerability 2026-ec9f1ca21a
Fedora 44 routinator Important RPKI Application Error Fix 2026-ec9f1ca21a
Fedora 44 Rust-Fern Critical Security Fixes for CVE-2026-49232 and Others
Debian DLA-4693-1 Roundcube High Cross-Site Scripting Denial of Service
openSUSE go1.25-openssl Important Security Issues 2026-3151-1
openSUSE aws-nitro-enclaves-cli Important Issues Advisory 2026-3152-1
openSUSE nghttp2 Moderate HTTP Request Smuggling Issue 2026-3153-1
openSUSE python-tornado6 Moderate Credential Leak Vulnerability 2026-3155-1
openSUSE Kernel Important Security Update Vulnerability Fix 2026-3156-1
openSUSE php7 Moderate Buffer Vulnerability Resolution SUSE-SU-2026-3165-1
Slackware Mozilla-Firefox Critical Security Fix SSA-2026-202-02
Slackware libssh Critical Denial Of Service Issues SSA-2026-202-01
Visual Studio Code 1.129 introduces dedicated agent host
Microsoft has released Visual Studio Code 1.129, an update to its free, popular code editor that features a dedicated agent host and an editor panel in the [...]
openSUSE libkrun Important Patch 2026-0255-1 for 8 Issues
Rocky Linux httpd Important Denial of Service Fix RLSA-2026-42828
Ubuntu 20.04 AccountsService Critical Exec Command Threat USN-8580-2
Debian LTS xz-utils Critical Buffer Overflow Vuln DLA-4690-1 CVE-2026-34743
Cisco’s open-weight bug busters take on Google and OpenAI
Who needs expensive frontier models to find software vulns? Cisco has just released two open-weight models that specialize in finding known bugs in [...]
AI’s cheatin’ heart will make you weep
AI models will do just about anything to complete the task you ask, including cheating to get there, according to new cybersecurity evaluations from the UK [...]
China’s trillion-parameter AI models may help enterprises with some applications
Ever since Chinese AI startup DeepSeek launched three years ago, enterprise executives have been nervous about relying on Chinese AI models.  But now that [...]
Ubuntu Imagemagick Critical Denial of Service Vulnerabilities USN-8558-1
Ubuntu jbig2dec Important Denial of Service Vulnerabilities USN-8582-1
Ubuntu 26.04 AccountsService Important Local Exec Threat CVE-2026-61897
Ubuntu OpenSSH Critical Network Access Issue CVE-2026-35414 USN-8577-1
Ubuntu 16.04 CUPS Critical Control Character Injection CVE-2026-34980
Ubuntu 26.04 Snapd Critical Security Issues July 2026 USN-8579-1
Debian rtpengine Critical Origin Validation Issue DLA-4691-1 CVE-2025-53399
Kratos phishing-as-a-service kit loses its battle with international law enforcement
German authorities say they have neutralized the main infrastructure supporting the Kratos phishing-as-a-service (PhaaS) kit following an operation [...]
‘The Java Story’ comes to YouTube
The evolution of Java is the subject of a just-released documentary about the programming language and development platform. “The Java Story: The Official [...]
openSUSE Leap 16.0 Beets Moderate Web Issue Fix SUSE-SU-2026-21383-1
openSUSE Chromium Important Use After Free Issues Fix 2026-21382-1
openSUSE Leap 16.0 opam Important Security Update 2026-21380-1
openSUSE Leap 16.0 ID 21374 Vim Important Code Execution Issues
openSUSE Python-Aiohttp Important Resource Issues Vuln 2026-21372-1
openSUSE Tumbleweed iscsiuio Moderate CVE-2026-44943 Advisory 2026-11317-1
openSUSE Tumbleweed libsoup Moderate CVE-2026-12478 Advisory 2026-11316-1
openSUSE libgit2 Moderate Security Update for 5 Issues 2026-11315-1
openSUSE MozillaFirefox Moderate Security Threats Fixed 2026-11311-1
openSUSE Tumbleweed avahi Moderate Remote Access Threat ID 2026-11313-1
openSUSE kubevirt1.8-container-disk Moderate Security Update 2026-11314-1
openSUSE acl Moderate Update CVE-2026-54369 CVE-2026-54370 CVE-2026-54371
openSUSE Tumbleweed ImageMagick Moderate Security Fix 2026-11310-1
GNOME Cuts Vulnerability Disclosure Window to 30 Days
GNOME is officially shortening its standard vulnerability disclosure window from 90 days to 30 days, a change that impacts upstream maintainers, downstream [...]
How to Investigate Unexpected Outbound Connections on Linux
Imagine logging into a production Linux server for routine maintenance and noticing background network activity connecting to an unfamiliar external IP [...]
AWS standardizes more AI billing data to simplify cost analysis
AWS has updated AWS Data Exports, its service for generating and managing cost and usage Reports (CURs), to include standardized Amazon Bedrock product [...]
AI music platform Suno hits bum note as 55M users exposed in data breach, claims infosec expert
A data breach at AI music generator platform Suno exposed more than 55 million user accounts, according to Troy Hunt’s Have I Been Pwned service, [...]
Intel fortifies Foundry with an actual customer: Fortinet
Fortinet on Tuesday revealed it will use Intel Foundry to fab its sixth-gen Security Processor (SP6), a nice win for Chipzilla’s sputtering [...]
Rocky Linux webkit2gtk3 Important Security Issues RLSA-2026-42088
Rocky Linux glib2 Important Integer Underflow Threat RLSA-2026-42090
Ukraine warns fake CAPTCHAs are being used to make you hack yourself
SaaS will survive, but lazy SaaS is dead
Something interesting happened during an internal evaluation of AI meeting transcription tools at Tungsten Automation. The products worked. They weren’t [...]
How AI impacts site reliability engineering
Site reliability engineers (SREs) have the tough assignment of resolving thorny performance and reliability issues. But their primary mission is to provide [...]
Debian LTS Samba Important Access Bypass Denial of Service DLA-4692-1
Mageia 10 serd Important Security Bugfix Advisory 2026-0058
OVH reveals semi-secret plan to fix critical Januscape hypervisor bug with mass reboots – and an Australian crash-test dummy
French cloud operator OVH has revealed it used its Sydney, Australia, datacenter as the crash test dummy to test a rapid rollout of a fix for the critical [...]
Fedora 43 python-pillow Critical Denial of Service CVEs 2026-fc2ded926e
Fedora 43 libseccomp Critical Security Fixes 2026-9afc6b6bb3
Fedora 43 dnsx Update Addresses Critical DoS Cross-Site Scripting Issues