Menu

Category Archives: Security

Articles about security

Rocky Linux 10 Pacemaker Important Denial of Service CVE-2026-10649
Rocky Linux 10 glib2 Important Integer Underflow Fix RLSA-2026-42063
Rocky Linux 10 RLSA-2026-41937 sssd Important Access Fix
Rocky Linux python3.14 Important CPU Denial of Service Vuln RLSA-2026-40856
Rocky Linux 10 c-ares Important Use-After-Free Issue RLSA-2026-42096
Rocky Linux Dovecot Important Denial of Service Vulnern RLSA-2026-41988
Rocky Linux glibc Moderate Security Fix Denial Service 2026-42694
Rocky Linux 10 acl Important Symlink Traversal Threat RLSA-2026-42739
Rocky Linux 10 libtiff Important Heap Overflow Update RLSA-2026-41892
Rocky Linux acl Important Symlink Privilege Escalation RLSA-2026-42736
Rocky Linux SSSD Important Security Update RLSA-2026-42122
Rocky Linux 9 glib2 Important Integer Underflow Vuln RLSA-2026-42089
Rocky Linux 9 Important webkit2gtk3 Security Update RLSA-2026-42062
Rocky Linux Dovecot Important Denial Of Service RLSA-2026-41905
Rocky Linux 9 Python 3.14 Important CPU DoS Vulnerability RLSA-2026-41949
Rocky Linux 9 httpd Important Security Issues RLSA-2026-41906
Rocky Linux libtiff Important Buffer Overflow Vuln RLSA-2026-42668
Rocky Linux 8 pki-deps Important Code Execution Threat RLSA-2026-43218
GitLab previews auto-remediation of vulnerable dependencies
GitLab has released GitLab 19.2, an update to the company’s devsecops platform that allows teams to fix vulnerable dependencies automatically, use Security [...]
Ubuntu 26.04 Tar Important Directory Injection Fix USN-8477-3
openSUSE Tumbleweed perl-YAML Moderate Update CVE-2026-63676
openSUSE python313-bleach Moderate Threats Mitigated 2026-11323-1
openSUSE Tumbleweed 7zip Moderate CVE-2026-14266 Advisory 2026-11319-1
Ubuntu 26.04 LTS Kerberos Important DoS Issues USN-8585-1 CVE-2026-11850
Ubuntu 26.04 GIFLIB Critical Denial of Service 2026-23868
Ubuntu libgphoto2 Important Buffer Abuse Denial of Service Vuln 8586-1
Ubuntu GStreamer Good Plugins Important Denial of Service USN-8584-1
Ubuntu 26.04 LTS HTML-Parser Critical Info Exposure USN-8587-1
Sneaky Windows stealer targets 300+ apps, gives crims an AI profiler to maximize profits
EXCLUSIVE A Windows information-stealer targeting more than 300 applications comes equipped with a novel surveillance tool: an AI profiler that ranks [...]
Greedy ransomware crews return for seconds after victims cough up first extortion payments
Authorities have long warned organizations not to pay ransoms, and fresh figures underline why: handing over the money doesn’t mean the crooks leave [...]
Oracle Linux 9 acl Important Symlink Traversal Advisory ELSA-2026-42736
Oracle Linux 9 libtiff Important Heap Overflow ELSA-2026-42668
Oracle Linux 9 glib2 Important Node Validation Fix ELSA-2026-42089
Oracle Linux 9 webkit2gtk3 Important Security Advisory ELSA-2026-42062
Oracle Linux 9 HTTPD Important Buffer Overflow Fix ELSA-2026-41906
Oracle Linux 9 Dovecot Important IMAP Bypass Vulnern ELSA-2026-41905
Oracle Linux 9 .NET 10.0 Important Updates ELSA-2026-41898
Oracle Linux 9 Update Dotnet 9.0 Important Fix Advisory ELSA-2026-41896
Oracle Linux 9 Important .NET 8.0 Bug Fix Advisory ELSA-2026-41894
Oracle Linux 9 plexus-utils Key Directory Traversal Fix ELSA-2026-38796
Oracle Linux 8 glib2 Important Security Patch Advisory ELSA-2026-42090
Oracle Linux 8 Webkit2gtk3 Important Security Advisory ELSA-2026-42088
Oracle Linux 8 ELSA-2026-41901 Dotnet Important Security Update
Oracle Linux 8 ELSA-2026-41900 DotNet 10.0 Important Security Fix
Oracle Linux 8 ELSA-2026-41899 .NET 9.0 Important Update
Oracle Linux 8 Pacemaker Important Integer Overflow Fix ELSA-2026-39322
Oracle Linux 7 Python3 Important DoS CVE-2026-4786 ELSA-2026-35838
Oracle Linux 7 perl-IO-Compress Important CVE-2026-48962 Security Advisory
Harnessing Proxies for Threat Intelligence Using Open Source Tools
Sensitive corporate data can be stolen at this very second; unfortunately, breaches can be invisible. As cyber threats multiply at an exponential rate, [...]
Seven sins of the modern software developer
If you ask us in an official setting, our official position is that software engineering norms still apply. Rigorous CI/CD pipelines, elegant architectural [...]
Agentic coding is everywhere
I use a very cool and relatively new web framework called Astro. The keen insight that the Astro team had was that most websites are made up of static [...]
Reselling unused cloud instances is no longer easy
A client called me last week with a problem I have been hearing about more often lately. They had made significant reserved instance commitments with a [...]
Council worker spared prison after four-day data-snooping spree
A council worker who “abused” his position to unlawfully access “highly sensitive” personal records of family members and other [...]
OpenAI admits it was the source of the agent swarm that attacked Hugging Face
OpenAI has admitted that it was the operator of the autonomous agents that attacked model-mart Hugging Face last week, and that they did so after a [...]
Fedora 43 Kernel Important Security Fix for net/can 2026-f1fc7772c3
Fedora 43 Nuclei Important Cross-site Scripting DoS Threat 2026-d36ca2dd19
Fedora 43 perl-Crypt-OpenSSL-X509 Important Fix CVE-2026-58101
Fedora 43 Routinator Important Security Fixes CVE-2026-49232 to 49235
Fedora 43 Rust RPKI Critical Path Traversal Issues Fix 2026-659cb50390
Update routinator to the latest, pulling in updated dependencies (rpki and syslog), and switch fern to using syslog 7 instead of 6 for this update, and [...]
Fedora 43 rust-syslog Critical Path Traversal DoS Vuln 2026-659cb50390
Fedora 43 rust-fern Important Path Traversal Fix Advisory 2026-659cb50390
Fedora 44 Kernel Important Net CAN Issue Fix Advisory 2026-2dd8b600bb
Fedora 44 btrbk Critical Update Snapshot Tool Fix CVE-2026-62943
Fedora 44 MuPDF Critical Info Disclosure Fix CVE-2026-7233
Fedora 44 Nuclei 3.11.0 Security Update – Cross-Site Scripting CVE Info
Fedora 44 perl-Crypt-OpenSSL-X509 High CVE-2026-58101 CVE-2026-58102
Fedora 44 routinator Important RPKI Application Error Fix 2026-ec9f1ca21a
Fedora 44 rust-syslog Severe Path Traversal Vulnerability 2026-ec9f1ca21a
Fedora 44 rust-ifcfg-devname Important Update CVE-2026-49232 CVE-2026-49233
Fedora 44 rust-rpki Important Security Fixes 2026-ec9f1ca21a
Fedora 44 Rust-Fern Critical Security Fixes for CVE-2026-49232 and Others
Debian DLA-4693-1 Roundcube High Cross-Site Scripting Denial of Service
openSUSE go1.25-openssl Important Security Issues 2026-3151-1
openSUSE aws-nitro-enclaves-cli Important Issues Advisory 2026-3152-1
openSUSE nghttp2 Moderate HTTP Request Smuggling Issue 2026-3153-1
openSUSE python-tornado6 Moderate Credential Leak Vulnerability 2026-3155-1
openSUSE Kernel Important Security Update Vulnerability Fix 2026-3156-1
openSUSE php7 Moderate Buffer Vulnerability Resolution SUSE-SU-2026-3165-1
Slackware Mozilla-Firefox Critical Security Fix SSA-2026-202-02
Slackware libssh Critical Denial Of Service Issues SSA-2026-202-01
Visual Studio Code 1.129 introduces dedicated agent host
Microsoft has released Visual Studio Code 1.129, an update to its free, popular code editor that features a dedicated agent host and an editor panel in the [...]
openSUSE libkrun Important Patch 2026-0255-1 for 8 Issues
Rocky Linux httpd Important Denial of Service Fix RLSA-2026-42828
Ubuntu 20.04 AccountsService Critical Exec Command Threat USN-8580-2
Debian LTS xz-utils Critical Buffer Overflow Vuln DLA-4690-1 CVE-2026-34743
Cisco’s open-weight bug busters take on Google and OpenAI
Who needs expensive frontier models to find software vulns? Cisco has just released two open-weight models that specialize in finding known bugs in [...]
AI’s cheatin’ heart will make you weep
AI models will do just about anything to complete the task you ask, including cheating to get there, according to new cybersecurity evaluations from the UK [...]
China’s trillion-parameter AI models may help enterprises with some applications
Ever since Chinese AI startup DeepSeek launched three years ago, enterprise executives have been nervous about relying on Chinese AI models.  But now that [...]
Ubuntu Imagemagick Critical Denial of Service Vulnerabilities USN-8558-1
Ubuntu jbig2dec Important Denial of Service Vulnerabilities USN-8582-1
Ubuntu 26.04 AccountsService Important Local Exec Threat CVE-2026-61897
Ubuntu OpenSSH Critical Network Access Issue CVE-2026-35414 USN-8577-1
Ubuntu 16.04 CUPS Critical Control Character Injection CVE-2026-34980
Ubuntu 26.04 Snapd Critical Security Issues July 2026 USN-8579-1
Debian rtpengine Critical Origin Validation Issue DLA-4691-1 CVE-2025-53399
Kratos phishing-as-a-service kit loses its battle with international law enforcement
German authorities say they have neutralized the main infrastructure supporting the Kratos phishing-as-a-service (PhaaS) kit following an operation [...]
‘The Java Story’ comes to YouTube
The evolution of Java is the subject of a just-released documentary about the programming language and development platform. “The Java Story: The Official [...]
openSUSE Leap 16.0 Beets Moderate Web Issue Fix SUSE-SU-2026-21383-1
openSUSE Chromium Important Use After Free Issues Fix 2026-21382-1
openSUSE Leap 16.0 opam Important Security Update 2026-21380-1