Menu

Category Archives: Security

Articles about security

Update mirrorlist-server to version 3.0.8. Update the maxminddb crate to version 0.26.0. Update the prometheus crate to version 0.14.0. Update the protobuf and protobuf-codegen crates to version 3.7.2. Initial packaging of the protobuf-parse and protobuf-support crates.

Update mirrorlist-server to version 3.0.8. Update the maxminddb crate to version 0.26.0. Update the prometheus crate to version 0.14.0. Update the protobuf and protobuf-codegen crates to version 3.7.2. Initial packaging of the protobuf-parse and protobuf-support crates.

The AI Fix #72: The AI hype train, space data centers, and lifelike robot heads
Asahi breach leaves bitter taste as brewer fears personal data slurped
Mozilla is recruiting beta testers for a free, baked-in Firefox VPN
Oracle targets agentic use cases with AI Database 26ai
Oracle debuts Iceberg-compatible Autonomous AI Lakehouse to boost enterprise analytics
Oracle rushes out another emergency E-Business Suite patch as Clop fallout widens

* bsc#1246197 * bsc#1249191 * bsc#1249348 * bsc#1249367 * jsc#PED-13055

* bsc#1243581 * bsc#1248410 * bsc#1248687 * bsc#142461 * bsc#544339

* bsc#1237048 * bsc#1240744 * bsc#1243650 * bsc#1245509 * bsc#1247315

* bsc#1237048 * bsc#1240744 * bsc#1245509 * bsc#1247315

* bsc#1245509 * bsc#1247315 Cross-References: * CVE-2025-38089

* bsc#1245509 * bsc#1247315 Cross-References: * CVE-2025-38089

CVE-2025-11371: Linux Security Must Prepare for Cross-Stack Breach
British govt agents demand action after UK mega-cyberattacks surge 50%
The rise of purpose-built clouds
EU biometric border system launch hits inevitable teething problems
Scattered Lapsus$ Hunters rage-quit the internet (again), promise to return next year
Microsoft ‘illegally’ tracked students via 365 Education, says data watchdog
China probes Qualcomm’s Autotalks deal amid rising US trade tensions
Ofcom fines 4chan £20K and counting for pretending UK’s Online Safety Act doesn’t exist
Dutch government puts Nexperia on a short leash over chip security fears

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information leaks.

How to run RAG projects for better data analytics results
Java or Python for building agents?
OpenAI Codex rivals Claude Code
Know your ops: Why all ops lead back to devops

An update that solves 53 vulnerabilities, contains one feature and has 137 security fixes can now be installed.

* bsc#1001161 * bsc#1004490 * bsc#1007249 * bsc#1009961 * bsc#1012568

* bsc#1250232 Cross-References: * CVE-2025-9230

An update that solves 10 vulnerabilities and has one security fix can now be installed.

Update to release v0.29.1 Upstream fixes Update to release v0.29.0 Resolves: rhbz#2397747, rhbz#2398425, rhbz#2398679, rhbz#2399082, rhbz#2399355

Update to release v0.29.1 Upstream fixes Update to release v0.29.0 Resolves: rhbz#2397747, rhbz#2398425, rhbz#2398679, rhbz#2399082, rhbz#2399355

Update to 1.5.0, fix CVE-2025-54813, CVE-2025-22838

Urgent: How Hackers Use eBPF to Evade Detection

MGASA-2025-0237 – Updated open-vm-tools package fixes security vulnerability

MGAA-2025-0083 – Updated qarte package fixes bug

Update to 141.0.7390.65 * High CVE-2025-11458: Heap buffer overflow in Sync * High CVE-2025-11460: Use after free in Storage * Medium CVE-2025-11211: Out of bounds read in WebCodecs

Update to release 1.32.9 Resolves: rhbz#2333357, rhbz#2398407, rhbz#2398662, rhbz#2399064, rhbz#2399338 Upstream fix

Update to release v1.33.5 Resolves: rhbz#2333357, rhbz#2375096, rhbz#2398408, rhbz#2398663, rhbz#2399065, rhbz#2399339 Upstream fixes

Update to release v1.31.13 Resolves: rhbz#2333357, rhbz#2398406, rhbz#2398661, rhbz#2399063, rhbz#2399337 Upstream fix

https://security-tracker.debian.org/tracker/DSA-6024-1

BreachForums seized, but hackers say they will still leak Salesforce data
Pro-Russia hacktivist group dies of cringe after falling into researchers’ trap
Microsoft warns of ‘payroll pirate’ crew looting US university salaries

* bsc#1244485 * bsc#1249141 * jsc#SLE-18320 Cross-References:

An update that solves one vulnerability, contains one feature and has one security fix can now be installed.

* bsc#1244485 * bsc#1249141 * jsc#SLE-18320 Cross-References:

An update that fixes three vulnerabilities is now available.

Cops nuke BreachForums (again) amid cybercrime supergroup extortion blitz
UK techies’ union warns members after breach exposes sensitive personal details
Lessons from the Salesforce breach

* bsc#1241502 * bsc#1249112 Cross-References: * CVE-2023-26819

* bsc#1225417 * bsc#1227086 * bsc#1250627 Cross-References:

OpenAI Codex adds SDK, admin tools, Slack integration

https://security-tracker.debian.org/tracker/DSA-6023-1

Google’s Jules coding agent adds CLI, API
It’s trivially easy to poison LLMs into spitting out gibberish, says Anthropic
SonicWall breach hits every cloud backup customer after 5% claim goes up in smoke
Starburst pushes lakehouse boundaries with multi-agent AI and unified vector search
Your Red Hat OpenShift AI models are waiting at the door. Who’s knocking?
Mitigating AI’s new risk frontier: Unifying enterprise cybersecurity with AI safety

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Gemini CLI Extensions bring third-party tools into Google’s AI command line
Unpacking the Microsoft Agent Framework
How to use CORS in ASP.NET Core minimal APIs
Oracle Java Management Service adds application analyzer

https://security-tracker.debian.org/tracker/DSA-6021-1

https://security-tracker.debian.org/tracker/DSA-6022-1

Smashing Security podcast #438: When your mouse turns snitch, and hackers grow a conscience
React JS library moving from Meta to the Linux Foundation
Take this rob and shove it! Salesforce issues stern retort to ransomware extort
Salesforce data breach: what you need to know
Germany slams brakes on EU’s Chat Control device-scanning snoopfest

* bsc#1122338 Cross-References: * CVE-2019-6461

* bsc#1250553 Cross-References: * CVE-2025-10911

Google enhances debugging, performance in Opal, its low-code AI-based app builder
With Arduino deal, Qualcomm pushes deeper into open-source and edge AI development

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

How GitHub won software development
PyCrucible: An easy way to redistribute your Python apps
What is JPA? Introduction to Java persistence
JetBrains Amper build tool adds Compose Hot Reload

https://security-tracker.debian.org/tracker/DSA-6020-1

Employees regularly paste company secrets into ChatGPT
IBM integrates Anthropic Claude into AI IDE and other tools
Nearly a year after attack, US medical scanning biz gets clear image of stolen patient data
Police and military radio maker BK Technologies cops to cyber break-in
OpenAI bans suspected Chinese accounts using ChatGPT to plan surveillance
The AI Fix #71: Hacked robots and power-hungry AI