August 5, 2026
Prompt injection isn’t the bug, AI agent frameworks are
Nearly a dozen flaws, some critical, in major AI agent frameworks that enterprises use to build apps reveal a security failure that extends beyond prompt [...]
August 5, 2026
Strengthening Linux Cybersecurity in Enterprise Infrastructure
Linux runs cloud platforms, containerized applications, and business-critical servers. It is the engine that powers much of today’s business [...]
August 5, 2026
Visual Studio Code 1.132 advances built-in dictation
Visual Studio Code 1.132, the latest version of Microsoft’s popular, open-source code editor, has been released. The brings improvements to built-in [...]
August 5, 2026
Choosing the Right Secrets Detection Platform
Not every security incident begins with sophisticated malware or a compromised server. Sometimes it is nothing more than a developer pushing code before [...]
August 5, 2026
IBM’s agentic AI platform is under active attack – patch now
A critical vulnerability in IBM-owned, low-code AI builder Langflow lets unauthenticated attackers execute code remotely on vulnerable default deployments, [...]
August 5, 2026
AWS updates DynamoDB with native vector search to ease AI application development
AWS is finally adding native vector search to its managed NoSQL database DynamoDB, which is typically used to store high-volume operational and [...]
August 5, 2026
Reducing Attack Surface Without Breaking Production
When people talk about Linux hardening, the conversation often quickly turns to enterprise security platforms, EDR agents, and complex monitoring stacks.
August 5, 2026
London cops handed victim’s new address and number to her stalker, watchdog says
UPDATED The UK’s data protection regulator has criticized London’s Metropolitan Police Service (MPS) after its officers handed a victim’s [...]
August 5, 2026
UK charities count the cost of Beacon CRM cyberattack
Beacon CRM has confirmed it was hit by a cyberattack that exposed data belonging to a growing list of UK charities. The company, which markets its software [...]
August 5, 2026
Five ways to evaluate AI agent orchestration platforms
AI agent orchestration platforms coordinate role-based and task-based AI agents, along with the tools, data, and people they depend on, into multistep [...]
August 5, 2026
A trip down shareware lane
I hope you’ll indulge me this week as I take a break from my usual rantings about agentic coding and meander down memory lane. I learned to code BASIC in [...]
August 5, 2026
Ruby on Rails critical bug puts every image upload under scrutiny
A new critical vulnerability in the Ruby on Rails (“Rails”) web application framework, CVE-2026-66066, could turn a seemingly innocuous image into a front [...]
August 5, 2026
AI researchers let models off the leash – then watched as they tried to add malware to a FOSS project
The UK’s AI Security Institute has observed AI models performing what it calls “unsanctioned action” 19 times during security tests. The Institute (AISI) [...]
August 5, 2026
DSA-6412-1 botan3 – security update
August 5, 2026
DSA-6411-1 aom – security update
August 5, 2026
SnapLogic introduces agentic assistant for data integration
SnapLogic has introduced its new SnapGPT, an agentic assistant that helps enterprise teams plan, build, understand, and operate integrations through [...]
August 4, 2026
SUSE Kubevirt Important Addressing Four Issues 2026-3480-1
August 4, 2026
openSUSE openssl-3 Moderate DoS Risk Advisory 2026-3486-1
August 4, 2026
SUSE openssl-3 Moderate DoS Security Update 2026-3486-1
August 4, 2026
SUSE OpenSSL Important DoS Threat Fix SUSE-SU-2026-3488-1
August 4, 2026
SUSE wpa_supplicant Low RADIUS Issue Advisory 2026-3490-1
August 4, 2026
Mageia PHP Security Update CVE-2026-7260 CVE-2026-17543
August 4, 2026
Mageia acl attr Critical Buffer Overflow Vuln 2026-0321
August 4, 2026
Bypassing AI guardrails is so easy a script kiddie can do it
If you want to bypass AI guardrails designed to stop models from assisting with cyberattacks, you often just have to ask the right way, according to [...]
August 4, 2026
AWS’s Kiro Crew aims to turn AI coding agents into autonomous engineering teams
AWS on Tuesday released Kiro Crew, an open-source orchestration platform designed to help enterprises move beyond interactive AI coding assistants toward [...]
August 4, 2026
Oracle Linux 10 Thunderbird Major Update ELSA-2026-49621
August 4, 2026
Oracle 8 PHP Low Memory Corruption Vuln ELSA-2026-47750
August 4, 2026
Oracle Linux 8 PHP 8.2 Low Bug Fix Advisory ELSA-2026-47749
August 4, 2026
Oracle Linux 8 ELSA-2026-46396 Libreswan Important Fixes
August 4, 2026
This one time, at Hacker Summer Camp …
As the entire security industry descends on Las Vegas this week for Hacker Summer Camp – not one, but three conferences – attendees can count on two hot [...]
August 4, 2026
Feds get 3 days to patch N-able God mode flaw under active exploit
The US Cybersecurity and Infrastructure Security Agency (CISA) has added an exploited N-able vulnerability to its Known Exploited Vulnerabilities (KEV) [...]
August 4, 2026
AI helps Microsoft bug hunters chase a record $20M payday
Microsoft announced this week that between July 1, 2025, and June 30, 2026, the company had paid more than $20 million in bug bounties to 562 researchers. [...]
August 4, 2026
AI Is Already Performing Linux Security Work. What Happens When It Escapes Containment?
Nearly everyone following technology has heard about the recent security incidents involving OpenAI and Anthropic. The headlines focused on the containment [...]
August 4, 2026
OpenStack IPA Flaws Highlight a Hidden Bare-Metal Security Risk
OpenStack disclosed a flaw in its bare-metal management tool, the Ironic Python Agent (IPA), showing that it could accidentally fall back to local network [...]
August 4, 2026
Tennessee congressional hopeful accused of shooting license plate cameras
An independent congressional candidate in Tennessee faces four felony vandalism charges after allegedly shooting four automated license plate reader (ALPR) [...]
August 4, 2026
Google ADK flaws reveal what happens when AI agents trust the wrong message
Security flaws in automated workflows in the GitHub repository for Google’s Agent Development Kit for Python could allow public-facing AI agents to trigger [...]
August 4, 2026
CAF Bank reopens online service but warns of further outages
CAF Bank has told customers its online banking service is back after being shuttered for more than ten days following what it described as “attempted [...]
August 4, 2026
Fake IRS letters target cryptocurrency holders
August 4, 2026
When you should use AI, and when you shouldn’t
Most folks seem happy to let AI write their LinkedIn posts for them. Others, myself included, have AI draft their work memos or slide decks. And some, [...]
August 4, 2026
When the cloud control plane fails
Not long ago, I worked with an enterprise that believed it had done everything right. The company had spread workloads across multiple regions, replicated [...]
August 4, 2026
Cloudflare has mostly ditched third party security tools, suggests not trying that at home
Cloudflare has used AI to automate processing of incoming reports to its bug bounty program for $58 a month using Anthropic’s Claude Sonnet model and chose [...]
August 4, 2026
GitHub pushes stacked pull requests into public preview
Advancing on software development, GitHub has announced the public preview of stacked pull requests. The public preview was announced July 30. Stacked pull [...]
August 4, 2026
