September 3, 2026
Oracle Linux 9 libxml2 Moderate Security Issue ELSA-2026-61247-0
September 3, 2026
Oracle 9 pam Moderate Vulnerability Fix ELSA-2026-60224-0
September 3, 2026
Oracle Linux 9 Image Builder Important CVEs ELSA-2026-23228
September 3, 2026
Oracle Linux 9 microcode_ctl Important Fix ELSA-2026-500239
September 3, 2026
Oracle Linux 8 ELSA-2026-62583-0 Node.js Important Security Update
September 3, 2026
Oracle FreeRDP Important Security Update ELSA-2026-62571-0
September 3, 2026
Oracle GIMP Important Security Update ELSA-2026-62507-0
September 3, 2026
Oracle Linux 8 ELSA-2026-62425-0 Critical Fix for CVE-2026-18300
September 3, 2026
Oracle Linux 8 ELSA-2026-62407-0 Grafana Important Remote Access Issues
September 3, 2026
Oracle Linux 8 PHP Important Bug Fixes Advisory ELSA-2026-62334-0
September 3, 2026
Oracle Linux 8 NodeJS Important Security Fix ELSA-2026-62219-0
September 3, 2026
Oracle Linux 8 libssh Moderate Patch Vulnerability ELSA-2026-62218-0
September 3, 2026
Oracle Linux 8 ELSA-2026-62144-0 Wget Moderate Bug Fixes
September 3, 2026
Oracle Linux 8 iperf3 Important CVE-2026-71217 ELSA-2026-61257-0
September 3, 2026
Oracle Linux 8 ELSA-2026-61248-0 libxml2 Moderate CVE-2026-11979
September 3, 2026
Rust 1.98.1 fixes miscompilation bug
Hot on the heels of the Rust 1.98.0 release, the Rust team has published Rust 1.98.1, an update that fixes a miscompilation in vtable generation. Rust [...]
September 3, 2026
Why Tails OS Is Changing How a Linux Distro Ships Security Updates
Tails OS is changing the speed of its entire Linux distribution because one of its most security-sensitive applications is tied to the system image. Tails [...]
September 3, 2026
Linux Security Roundup: Remote Access, PostgreSQL, and Sandbox Fixes to Prioritize Now
The Linux security news from August 27 through September 3 brought serious fixes for remote access software, PostgreSQL, sandboxing tools, local system [...]
September 3, 2026
CISA Flags Exploited Kestra Flaw That Lets Attackers Run Commands in Linux Containers
A newly confirmed Kestra vulnerability is being exploited in the wild. CISA added CVE-2026-49869 to its Known Exploited Vulnerabilities catalog on Sep 2, [...]
September 3, 2026
AI Is Learning to Turn Linux Kernel Vulnerabilities Into Exploit Chains
A kernel crash tells defenders that something went wrong. It does not show whether an attacker can turn that failure into a useful capability, combine [...]
September 3, 2026
What Nvidia’s $13B acquisition of Hugging Face means for AI model choice
When Nvidia said Thursday that it plans to pay $13 billion to acquire Hugging Face, the question arose of whether the open AI platform would remain open [...]
September 3, 2026
DSA-6481-1 firefox-esr – security update
September 3, 2026
Prolific Microsoft 0-day hunter drops CrowdStrike Falcon exploit PoC
The disgruntled security researcher known as Nightmare Eclipse (aka Chaotic Eclipse, Infinite Nightmare, and now also MSNightmare) is moving away from [...]
September 3, 2026
I’ve been deepfaked: What do I do?
Don’t panic if you spot an illegally created image or video of you online – there are ways to request its removal
September 3, 2026
Drowning in CVEs and thirsty for answers? Try CTEM
A decade or two ago, board executives asked “why should I care about cybersecurity?” Five years ago, they were asking “Are you patching [...]
September 3, 2026
Internet Routing Attack Sent Malicious Updates to Linux Servers
Virtualizor has confirmed that a BGP hijack redirected traffic for part of its update infrastructure and allowed an attacker-controlled server to deliver a [...]
September 3, 2026
Why DNS Attacks Can Outrun Linux Security Monitoring
A Linux host intrusion prevention system can fail even when the protected server still has spare CPU. If its logging path cannot record and move events as [...]
September 3, 2026
Linux Patch Addresses Network Code Bug That Reads Past Memory
A Linux kernel patch series submitted on Sep 1, 2026, stops an out-of-service Logical Link Control socket from indexing below two connection-state tables. [...]
September 3, 2026
Cybercrooks trawl Fishbrain to net password hashes
Cybercriminals have reeled in password hashes and corresponding salts belonging to users of popular fishing app Fishbrain, opening the door to cracking [...]
September 3, 2026
Continuous Linux Security: Why a Hardening Checklist Is Not Enough
A Linux server can be carefully hardened before it reaches production and still become less secure over time. Hardening means reducing unnecessary [...]
September 3, 2026
Meta upgrades Muse Spark for long-horizon coding without raising API prices
Meta is upgrading its Muse Spark family with a new model aimed at long-horizon coding tasks and agentic software development while keeping its standard API [...]
September 3, 2026
UK’s Online Safety Act has made ‘absolutely no difference,’ kids say
Children have told England’s Children’s Commissioner, Dame Rachel de Souza, that the UK’s Online Safety Act (OSA) “has made [...]
September 3, 2026
Running AI agents in sandboxes with Microsoft Execution Containers
One of the problems facing those who develop agents today, especially when building agents that run on edge systems with a mix of local and cloud AI, is [...]
September 3, 2026
How to keep your mission-critical cloud workloads running
Entrusting mission-critical workloads in the cloud puts a lot of pressure on IT operations to build resilience into data infrastructure they don’t even own [...]
September 3, 2026
TechCrunch Disrupt: What’s next for AI and software development
First AI gave us code completion, predicting the lines of code, functions, and boilerplate we needed based on what we’d already typed. Then came code [...]
September 3, 2026
Terminated employee cost company hundreds of thousands of dollars because nobody revoked access
PWNED Welcome back to PWNED, where we talk about organizations that are independently self-owned. This week’s tale of toxic tech involves a disgruntled [...]
September 3, 2026
To keep the AI hacking genie bottled up, try one-way networks
To prevent frontier AI models breaking out of test environments and collaborating to hack other companies, we may have to rethink the network architectures [...]
September 3, 2026
Oracle Linux 9 wget Moderate Buffer Overflow Fix ELSA-2026-62143-0
September 3, 2026
Oracle Linux 9 iperf3 Important JSON Value Check Fix ELSA-2026-61389-0
September 3, 2026
Oracle Linux 9 nodejs Important Security Patch ELSA-2026-61386-0
September 3, 2026
Oracle Linux 9 Nodejs Security Advisory ELSA-2026-61383 Critical CVEs
September 3, 2026
Oracle Linux 9 xmlrpc-c Important HTML Injection Fix ELSA-2026-61316-0
September 3, 2026
Oracle Linux 9 Pipewire Moderate Security Advisory ELSA-2026-61240-0
September 3, 2026
Oracle Linux 9 Golang Important Bug Fix Advisory ELSA-2026-60304-0
September 3, 2026
Oracle Nginx Important Denial of Service Fix ELSA-2026-59490
September 3, 2026
Oracle Linux 10 wget Moderate Bug Fixes Advisory ELSA-2026-62142-0
September 3, 2026
Fedora 45 Dracut Essential Root Privilege Correction 2026-5bf73fe397
September 3, 2026
rustup 1.29.1 brings concurrency improvements
The team behind the rustup installer for the Rust programming language has released an update to the command-line utility. Announced September 1, rustup [...]
September 3, 2026
Fedora 44 Syncthing CVE-2026-40898 Denial of Service Advisory
September 3, 2026
Fedora 44 Firefox Important Heap Buffer Overflow Vuln 2026-42a3a95e62
September 3, 2026
Fedora 44 NSS Heap Buffer Overflow Patch Update 2026-42a3a95e62
September 3, 2026
Fedora 44 mingw-expat Denial of Service Fix Update 2026-f5e2a6b9b5
September 3, 2026
Fedora 44 mingw-openexr Update Addresses Integer Overflow Vulnerability
September 3, 2026
Fedora 44 ProFTPD Security Bugfix Advisory 2026-f073efe2f3
September 3, 2026
Fedora 43 Exiv2 Bugfix Denial of Service Issues 2026-2854e48ee4
September 3, 2026
Fedora 43 Firefox Heap Overflow Security Advisory 2026-208add2041
September 3, 2026
Fedora 43 nss Important Heap Buffer Overflow Advisory 2026-208add2041
September 3, 2026
Fedora 43 FreeRDP Update to 3.31.0 Advisory FEDORA-2026-e0f5d28f57
September 3, 2026
Fedora 43 mingw-gstreamer1 Plugins Vulnerability High Risk RCE Alert
September 3, 2026
Fedora 43 mingw-openexr Denial of Service and Overflow Vulnerabilities
September 3, 2026
Fedora 43 mingw-expat Update Denial of Service CVE-2026-72522 Advisory
September 3, 2026
Fedora 43 ProFTPD Update Important FTP Bugfixes FEDORA-2026-0abbe10cdc
September 3, 2026
SUSE Texlive Moderate Heap Use-After-Free CVE-2026-63729 2026-3924-1
September 3, 2026
SUSE Bzip2 Low Off-By-One Error Issue Vulnerability 2026-3925-1
September 3, 2026
DSA-6482-1 chromium – security update
September 3, 2026
Why Patched Linux Servers Still Fail a Penetration Test
A patched Linux server can still fail a penetration test because patch status cannot show whether an attack path remains open.
September 2, 2026
How to Prevent DNS Leaks and Secure Proxy Credentials on Linux Systems
Using a proxy on Linux changes how web traffic reaches its destination, but it does not automatically protect every part of the connection. DNS requests [...]
September 2, 2026
Smashing Security podcast #483: This AI helps thieves steal your iPhone
September 2, 2026
Rocky Linux 10 Kernel Advisory RLSA-2026-61887 Important Security Fixes
September 2, 2026
Rocky Linux GIMP Important Remote Code Exec Advisory RLSA-2026-62507
September 2, 2026
Rocky Linux Nodejs Key Filesystem Access Memory Issues RLSA-2026-62583
September 2, 2026
Ubuntu 18.04 LTS Linux Kernel Important WiFi Injection Threat USN-8715-1
September 2, 2026
Ubuntu 20.04 18.04 Kernel Important Threat Correction USN-8714-1
September 2, 2026
Ubuntu 20.04 Linux Kernel Important WiFi Issue USN-8661-4
September 2, 2026
Claude Mythos only model to complete full cyber kill chain, experts say
Despite what we saw with OpenAI’s models going rogue, creating message boards, and breaking into Hugging Face, only one advanced AI model – [...]
September 2, 2026
Debian Firefox-ESR Critical Issues Execution CVE-2026-16365 DSA-6481-1
September 2, 2026
DSA-6480-1 keystone – security update
September 2, 2026
AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit
A human ransomware crook used frontier AI models to breach an enterprise network in less than 10 hours, an intrusion Unit 42 says would normally take human [...]
September 2, 2026
SUSE libgcrypt Moderate DoS Issue Fix Advisory SUSE-SU-2026-3921-1
September 2, 2026
SUSE Linux Micro 6.2 Gzip Moderate Buffer Overflow Vuln 2026-23392-1
September 2, 2026
SUSE vim Important Security Fixes Advisory 2026-23393-1 CVE-2026-73070
September 2, 2026
SUSE dhcpcd Moderate Memory Leak and DoS Vuln 2026-23400-1
September 2, 2026
SUSE Python Cryptography Moderate PKCS#7 Timing CVE-2026-69247
September 2, 2026
SUSE udisks2 Significant Local Privilege Escalation Patch 2026-23405-1
September 2, 2026
SonicWall’s SMA1000 boxes under active attack again
SonicWall says attackers are actively exploiting two chained zero-days to take over Secure Mobile Access (SMA) Series 1000 boxes. Aimed at midsize and [...]
September 2, 2026
