Menu

Category Archives: All

Everything

https://security-tracker.debian.org/tracker/DSA-6059-1

New xpdf packages are available for Slackware 15.0 and -current to fix security issues.

Keylogging in Linux (Part 3): Kernel Techniques for the Keyboard Driver Path

MGASA-2025-0298 – Updated stardict packages fix security vulnerability

MGASA-2025-0297 – Updated yelp & yelp-xsl packages fix security vulnerability

MGASA-2025-0296 – Updated apache-commons-fileupload packages fix security vulnerability

MGASA-2025-0295 – Updated botan2 packages fix security vulnerabilitiy

MGASA-2025-0294 – Updated spdlog packages fix security vulnerability

MGASA-2025-0293 – Updated apache-commons-lang3 & apache-commons-lang packages fix security vulnerability

Worm flooding npm registry with token stealers still isn’t under control
Red Hat Linux bolsters AI assistance

https://security-tracker.debian.org/tracker/DSA-6057-1

https://security-tracker.debian.org/tracker/DSA-6056-1

Fortinet finally cops to critical make-me-admin bug under active exploitation
How password managers can be hacked – and how to stay safe

Look no further to learn how cybercriminals could try to crack your vault and how you can keep your logins safe

Crims poison 150K+ npm packages with token-farming malware
FBI flags scam targeting Chinese speakers with bogus surgery bills
CISA flags imminent threat as Akira ransomware starts hitting Nutanix AHV
Improving modern software supply chain security: From AI models to container images
Prepare for a post-quantum future with RHEL 9.7
A deeper look at post-quantum cryptography support in Red Hat OpenShift 4.20 control plane
Keylogging in Linux (Part 2): Advanced Techniques in the Linux GUI and X Server
Copy-paste vulnerability hits AI inference frameworks at Meta, Nvidia, and Microsoft
Clop claims it hacked ‘the NHS.’ Which bit? Your guess is as good as theirs
Tech mega-deals are a distraction, not a breakthrough
Python vs. Mojo (and Java, Go, Rust, and .NET)

* bsc#1253092 * bsc#1253093 * bsc#1253094 * bsc#1253095

Google BigQuery gets managed AI functions to simplify unstructured data analysis
Visual Studio Code unifies UI for managing coding agents
Baidu launches new generation of Ernie AI

Update to 2.53.22

Update to v0.25.2 CVE-2025-58183; Resolves: rhbz#2412529 CVE-2025-58188; Resolves: rhbz#2412380, rhbz#2411476, rhbz#2410945 CVE-2025-58185; Resolves: rhbz#2410578, rhbz#2410299, rhbz#2410013 CVE-2025-61723; Resolves: rhbz#2409627, rhbz#2409349, rhbz#2409065

Update to release v1.3.3

Update to 2.83.0

Kubernetes overlords decide Ingress NGINX isn’t worth saving

Update to 2.9.0 Fixes CVE-2025-46705

Chinese spies told Claude to break into about 30 critical orgs. Some attacks succeeded

https://security-tracker.debian.org/tracker/DSA-6054-1

Google Agent Development Kit adds Go language support
Ransomed CTO falls on sword, refuses to pay extortion demand
Ubuntu 25.10’s Rusty sudo holes quickly welded shut
Extra, extra, read all about it: Washington Post clobbered in Clop caper
Rhadamanthys malware admin rattled as cops seize a thousand-plus servers
Databricks fires back at Snowflake with SQL-based AI document parsing
NHS supplier ends probe into ransomware attack that contributed to patient death
OpenAI rolls out GPT-5.1 to refine ChatGPT with adaptive reasoning and personalization

A security issue was discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure.

Running managed Ray on Azure Kubernetes Service
When will browser agents do real work?
Java Stream API tutorial: How to create and use Java streams
Red Hat OpenShift 4.20 boosts AI workloads, security

Update to Rack 2.2.21

Update to WebKitGTK 2.50.1: Improve text rendering performance. Fix audio playback broken on instagram. Fix rendering of layers with fractional transforms. Fix several crashes and rendering issues.

Update to Rack 2.2.21

Security fix for CVE-2025-58189 and CVE-2025-61725

Updated to latest upstream (145.0)

Smashing Security podcast #443: Tinder’s camera roll and the Buffett deepfake

https://security-tracker.debian.org/tracker/DSA-6055-1

Microsoft releases ‘AI-native’ Visual Studio 2026
Google sues 25 China-based scammers behind Lighthouse ‘phishing for dummies’ kit

https://security-tracker.debian.org/tracker/DSA-6053-1

https://security-tracker.debian.org/tracker/DSA-6052-1

Attackers turned Citrix, Cisco 0-day exploits into custom-malware hellscape
Why shadow AI could be your biggest security blind spot

From unintentional data leakage to buggy code, here’s why you should care about unsanctioned AI use in your company

Leading AI companies accidentally leak their passwords and digital keys on GitHub – what you need to know
Keylogging in Linux (Part 1): Understanding Attacks and Defenses

* bsc#1229825 * bsc#1241880 * bsc#1243331 * bsc#1243486 * bsc#1243611

An update that solves two vulnerabilities can now be installed.

* bsc#1251198 * bsc#1251199 Cross-References: * CVE-2025-61984

An update that solves three vulnerabilities can now be installed.

* bsc#1253092 * bsc#1253093 * bsc#1253095 Cross-References:

* bsc#1253126 * bsc#1253132 Cross-References: * CVE-2024-25621

Malicious npm package sneaks into GitHub Actions builds
Kernel Panic in Linux: Causes, Diagnosis & Fixes (2025 Guide)
Meta’s SPICE framework pushes AI toward self-learning without human supervision
Bitcoin bandit’s £5B bubble bursts as cops wrap seven-year chase
UK’s Cyber Security and Resilience Bill makes Parliamentary debut
Russian hacker admits helping Yanluowang ransomware infect companies
Aviation watchdog says organized drone attacks will shut UK airports ‘sooner or later’
The economics of the software development business
Revisiting Mojo: A faster Python?
Node.js tutorial: Get started with Node
China hates crypto and scams, but is now outraged USA acquired bitcoin from a scammer
Australia’s spy boss says authoritarian nations ready to commit ‘high-impact sabotage’
Snowflake to acquire Datometry to bolster its automated migration tools
North Korean spies turn Google’s Find Hub into remote-wipe weapon
The AI Fix #76: AI self-awareness, and the death of comedy
Microsoft’s .NET 10 arrives with AI, runtime, and language improvements
EU’s reforms of GDPR, AI slated by privacy activists for ‘playing into Big Tech’s hands’
OWASP Top 10: Broken access control still tops app security list
Hitachi-owned GlobalLogic admits data stolen on 10k current and former staff
UK asks cyberspies to probe whether Chinese buses can be switched off remotely
Cyber insurers paid out over twice as much for UK ransomware attacks last year
UK’s Ajax fighting vehicle arrives – years late and still sending crew to hospital
Breaking Europe’s cloud deadlock
Agentic coding with Google Jules
The dawn of the AI-native database

An update that solves five vulnerabilities and has one security fix can now be installed.

* bsc#1246019 * bsc#1248631 * bsc#1249207 * bsc#1249208 * bsc#1249847

An update that solves four vulnerabilities and has one security fix can now be installed.