July 28, 2026
JFrog’s 0-days let OpenAI’s models hack Hugging Face
UPDATED We now know how OpenAI’s models broke out of their cages to attack Hugging Face. The rogue models found zero-day vulnerabilities in JFrog’s [...]
July 28, 2026
Microsoft and Wiz mind-meld agents catch more than 90% of bugs
Two agentic bug-hunting systems from Microsoft and Google-owned Wiz show that when it comes to finding and remediating software vulnerabilities, at least [...]
July 28, 2026
DEF CON bans Meta-style ‘pervert glasses’
Ahead of DEF CON 2026 opening its doors in Las Vegas next week, conference organizers said they have imposed a ban on “Meta-style glasses with recording [...]
July 28, 2026
AI-found bugs aren’t proving any easier to exploit despite the hype
Anthropic’s Project Glasswing may have uncovered tens of thousands of potential security flaws, but new research suggests AI-assisted vulnerability [...]
July 28, 2026
Mak’s Weekly Security Roundup: Linux Security Priorities This Week
The volume of Linux security advisories remains high across enterprise distributions, but the more difficult task is determining which updates carry the [...]
July 28, 2026
Bank for charities pulls online services over security fears
CAF Bank, which serves 14,000 charities, has suspended online banking as it fixes a vulnerability in how third-party software connects to its portal. The [...]
July 28, 2026
Linux Logs Have Become a Prompt Injection Target
An attacker may no longer need to erase Linux logs to hide an intrusion. They may only need the AI reading them to believe a different story.
July 28, 2026
Uncle Sam needs you to fight for 6G leadership and security, lest Beijing get there first
America wants its allies to come together and help it lead the way in defining 6G communications standards, with security and resilience seen as key goals [...]
July 28, 2026
Anthropic rejects open-weight AI bans, calls for China chip controls and safety tests
Anthropic CEO Dario Amodei has argued that policymakers should keep lower-risk open-weight AI accessible while placing stricter safeguards around frontier [...]
July 28, 2026
Arista patches actively exploited VeloCloud bug as CISA puts admins on the clock
A critical flaw in Arista’s VeloCloud Orchestrator has gone from zero to KEV in short order, with the networking giant confirming attackers are [...]
July 28, 2026
Will open weights make AI more honest?
Last month I asked Claude’s Fable 5 model to read four 18th-century probate wills. It responded by fabricating a family. For more than 20 years, I’ve been [...]
July 28, 2026
Lessons from Tesla’s AI strategy
For years, the public cloud was the default for new workloads because its convenience, elasticity, and breadth of services made sense. However, as AI’s [...]
July 28, 2026
Ubuntu 24.04 AWS Kernel Important Security Issues Fix USN-8595-3
Ubuntu has released security updates addressing vulnerabilities in the Linux kernel for versions 22.04 LTS and 24.04 LTS, requiring immediate user action [...]
July 28, 2026
Kotlin previews support for coroutine stack trace recovery
JetBrains has released Kotlin 2.4.20-Beta2, an update to the company’s multiplatform programming language that has emerged with capabilities ranging from [...]
July 28, 2026
DSA-6401-1 samba – security update
July 28, 2026
DSA-6402-1 hplip – security update
July 28, 2026
Microsoft’s solution to AI security: more AI and more acronyms
AI agents can break through security, but they are also the solution to defending against an increasingly dangerous ecosystem of threats. On Monday, [...]
July 27, 2026
Installed Is Not Remediated: How to Verify Linux Security Patches in Production
There are several reasons why Linux has such a good reputation and has become such a good standard across the world. It is the power behind most internet [...]
July 27, 2026
Tech giants link hands to praise open AI models after OpenAI – Hugging Face attack
In the wake of OpenAI agents attacking Hugging Face, Nvidia has recruited a new posse of partners to promote open source models as the security solution [...]
July 27, 2026
A Practical Linux Log Correlation Playbook for Small Security Teams
An administrator reports unusual outbound traffic from a Linux server after firewall logs show repeated connections to an unfamiliar external IP address. [...]
July 27, 2026
How AI Is Shrinking Linux’s Security Patch Window
For decades, Linux defenders relied on a comfortable assumption: a public security patch did not imply an imminent vulnerability. While open-source [...]
July 27, 2026
Microsoft Defender for Endpoint leaves some Linux boxes defenseless after update
Not content with broken Windows updates, Microsoft has disclosed two problems with Defender for Endpoint on Linux – one that could disable the security [...]
July 27, 2026
Hardening File Uploads on Linux: Sandboxing Parsers and Stopping RCE
Accepting file uploads is basically inviting strangers to throw random objects through your front window and hoping your living room furniture catches [...]
July 27, 2026
Why Dedicated Linux Servers Are Best for Bandwidth-Heavy Applications
Spend enough time around production systems, and you notice something. The workloads that cause friction are not always the ones pushing CPU utilization. [...]
July 27, 2026
Email Spoofing Techniques That Bypass Human Detection
You’ve probably trained your team to look for red flags. Odd sender names, urgent language, mismatched links. But a well-crafted spoofed email [...]
July 27, 2026
