Menu

Category Archives: Security

Articles about security

Critical Wazuh bug exploited in growing Mirai botnet infection
Winning the war on ransomware with AI: Four real-world use cases
The AI Fix #54: Will AI collapse under its own garbage, and AI charity “Hunger Games”
Trump guts digital ID rules, claims they help ‘illegal aliens’ commit fraud
Not-So-Secure Boot: 2 Secure Boot Exploits Discovered
Cloud brute-force attack cracks Google users’ phone numbers in minutes
M&S online ordering system operational 46 days after cyber shutdown
Peep show: 40K IoT cameras worldwide stream secrets to anyone with a browser
Don’t be a victim of high cloud costs
What the AI coding assistants get right, and where they go wrong
Mastering AI risk: An end-to-end strategy for the modern enterprise

* bsc#1234282 * bsc#1238043 * bsc#1243117 Cross-References:

* bsc#1238324 * bsc#1239077 Cross-References: * CVE-2022-49080

* bsc#1236701 * bsc#1239077 * bsc#1239096 Cross-References:

* bsc#1232900 * bsc#1236701 * bsc#1239077 * bsc#1239096

Several security issues were fixed in tomcat8, tomcat9, tomcat10.

Apple tries to contain itself with lightweight Linux VMs for macOS
SQL slips in language popularity index

https://security-tracker.debian.org/tracker/DSA-5940-1

The AI platform wars will be won on the developer experience
Let them eat junk food: Major organic supplier to Whole Foods, Walmart, hit by cyberattack

DoS with sanitiseArg/sanitizeArg has been fixed in modsecurity-apache, a module for the Apache webserver to tighten Web application security. For Debian 11 bullseye, this problem has been fixed in version

New AI tool targets critical hole in thousands of open source apps
The 2024 Red Hat Product Security Risk Report: CVEs, XZ Backdoor, SSCAs, AI…oh my!
Blocking stolen phones from the cloud can be done, should be done, won’t be done
Chinese spy crew appears to be preparing for conflict by backdooring 75+ critical orgs
9 APIs you’ll love for AI integrations and automated workflows
Building a multi-zone and multi-region SQL Server Failover Cluster Instance in Azure
Are technologists a threat to doing business securely?

Disallowing use of the arcfour-hmac(-md5) encryption type for session keys Add support for the PKINIT paChecksum2 sequence, required for Active Directory interoperability on Windows Server 2025 Fix generation of RADIUS Message-Authenticator in FIPS mode

China’s asteroid-and-comet hunter probe unfurls a ‘solar wing’

Kirill Firsov discovered that Roundcube, a skinnable AJAX based webmail solution for IMAP servers, was performing PHP Object deserialization on unvalidated input, which could lead to remote code execution by an authenticated attacker.

US infrastructure could crumble under cyberattack, ex-NSA advisor warns

Several vulnerabilities were discovered in modsecurity-apache, an Apache module to tighten the Web application security, which may result in denial of service (high memory consumption).

New libvpx packages are available for Slackware 15.0 and -current to fix security issues.

Enterprises are getting stuck in AI pilot hell, say Chatterbox Labs execs

ADOdb is a PHP database class library that provides abstractions for performing queries and managing databases. Prior to version 5.22.9, improper escaping of a query parameter may allow an attacker to execute arbitrary SQL statements when the code using ADOdb connects to a PostgreSQL database and calls pg_insert_id() with user-supplied data.

Systemd-coredump: race condition that allows a local attacker to crash a suid program and gain read access to the resulting core dump. (CVE-2025-4598) References:

Security constraint bypass for CGI scripts. (CVE-2025-46701) References: – https://bugs.mageia.org/show_bug.cgi?id=34332 – https://openwall.com/lists/oss-security/2025/05/29/4

Update to version 4.21.6

Add patch for double free

Fix CVE-2025-23016

Marks & Spencer’s ransomware nightmare – more details emerge
US offers $10 million reward for tips about state-linked RedLine hackers

Update to Samba 4.22.2 – Security fix for CVE-2025-0620

Update to 137.0.7151.68 CVE-2025-5419: Out of bounds read and write in V8 CVE-2025-5068: Use after free in Blink

This update includes mod_security version 2.9.9 which addresses CVE-2025-47947 and includes various bug fixes. See https://github.com/owasp- modsecurity/ModSecurity/releases/tag/v2.9.9 for more information on the changes in this release.

Update to 137.0.7151.68 CVE-2025-5419: Out of bounds read and write in V8 CVE-2025-5068: Use after free in Blink

This update includes mod_security version 2.9.9 which addresses CVE-2025-47947 and includes various bug fixes. See https://github.com/owasp- modsecurity/ModSecurity/releases/tag/v2.9.9 for more information on the changes in this release.

ChatGPT used for evil: Fake IT worker resumes, misinfo, and cyber-op assist
BladedFeline: Whispering in the dark

ESET researchers analyzed a cyberespionage campaign conducted by BladedFeline, an Iran-aligned APT group with likely ties to OilRig

Fresh strain of pro-Russian wiper flushes Ukrainian critical infrastructure
Smashing Security podcast #420: Fake Susies, flawed systems, and fruity fixes for anxiety
Uncle Sam moves to seize $7.7M laundered by North Korean IT worker ring

* bsc#1243268 Cross-References: * CVE-2025-47287

* bsc#1236826 * bsc#1239671 * bsc#1241012 Cross-References:

* bsc#1240392 Cross-References: * CVE-2025-2704

* bsc#1236974 Cross-References: * CVE-2024-12243

Your ransomware nightmare just came true – now what?

Several security issues were fixed in the Linux kernel.

Decentralized mesh cloud: A promising concept
JavaScript innovation and the culture of programming

The following vulnerabilities have been discovered in the WebKitGTK web engine: CVE-2025-24223

https://security-tracker.debian.org/tracker/DSA-5938-1

https://security-tracker.debian.org/tracker/DSA-5939-1

https://security-tracker.debian.org/tracker/DSA-5937-1

Uncle Sam puts $10M bounty on RedLine dev and Russia-backed cronies
AT&T not sure if new customer data dump is déjà vu
Adobe adds Product Support Agent for AI-assisted troubleshooting
Cellebrite buys Corellium to help cops bust phone encryption
Trump’s cyber czar pick grilled over CISA cuts: ‘If we have a cyber 9/11, you’re the guy’
Snowflake: Latest news and insights
BidenCash busted as Feds nuke stolen credit card bazaar
Workday’s new dev tools help enterprises connect with external agents
More than a hundred backdoored malware repos traced to single GitHub user
HMRC: Crooks broke into 100k accounts, stole £43M from British taxpayer in late 2024

Several security issues were fixed in Bootstrap.

How to test your Java applications with JUnit 5
Automating devops with Azure SRE Agent

Several security issues were fixed in the Linux kernel.

* bsc#1243332 * bsc#1243422 * bsc#1243423 Cross-References:

* bsc#1243313 Cross-References: * CVE-2025-47273

* bsc#1241274 * bsc#1241275 * bsc#1241276 Cross-References:

AI kept 15-year-old zombie vuln alive, but its time is drawing near
China accuses Taiwan of running five feeble APT gangs, with US help
IBM Cloud login breaks for second time this week and Big Blue isn’t saying why

https://security-tracker.debian.org/tracker/DSA-5936-1

Play ransomware crims exploit SimpleHelp flaw in double-extortion schemes
AI is powering enterprise development, GitHub says
Ukraine strikes Russian bomber-maker with hack attack
Ransomware scum leak patient data after disrupting chemo treatments at Kettering
Snowflake customers must choose between performance and flexibility
Fake IT support calls hit 20 orgs, end in stolen Salesforce data and extortion, Google warns
The AI Fix #53: An AI uses blackmail to save itself, and threats make AIs work better
Crims stole 40,000 people’s data from our network, admits publisher Lee Enterprises
UK CyberEM Command to spearhead new era of armed conflict
Naming is easy! A guide for developers