Menu

Latest articles

SpaceXAI launches Grok 4.5, touts lower coding-task costs than AI rivals
Three keys to deploying AI agents
Practical challenges in managing Kubernetes at enterprise scale
Revving up Microsoft’s 10x faster TypeScript 7

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For Debian 12 bookworm, this problem has been fixed in version 150.0.7871.100-1~deb12u1.

Thief posed as Wi-Fi fixing hero, then stole priceless trophy

Update to opkssh 0.15.0. This release fixes several CVEs in bundled/vendored dependencies: CVE-2026-39829: golang.org/x/crypto/ssh: Denial of Service via crafted public key with excessive parameters CVE-2026-39835: golang.org/x/crypto/ssh: Denial of Service via crafted SSH

This package contains the Perl module CSS::Minifier::XS. Versions of the module before 0.14 have a memory leak when the entire document is minified away (CVE-2026-13593). This update brings version 0.15 which fixes this issue.

Update rust-jiter to 0.16.0, adding a serde Deserializer implementation; update python-jiter to match. Both packages now use PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Update rust-jiter to 0.16.0, adding a serde Deserializer implementation; update python-jiter to match. Both packages now use PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Improve GSS KEX algorithms documentation CVE-2026-55653: Fix double free in openssh DH-GEX client path during FIPS known- group validation that leads to client-side denial of service CVE-2026-55654: Fix heap out-of-bounds read during GSSAPI indicator cleanup due to missing NULL terminator

upower 1.91.3: Feature: up-device-battery: Prefer “Standard” over “Fast” charging (!316 (merged), #344 (closed)) Fix: Resolve potential leaks (!327 (merged)) Fix: Potential out-of-bound access (!328 (merged))

Update to opkssh 0.15.0. This release fixes several CVEs in bundled/vendored dependencies: CVE-2026-39829: golang.org/x/crypto/ssh: Denial of Service via crafted public key with excessive parameters CVE-2026-39835: golang.org/x/crypto/ssh: Denial of Service via crafted SSH

This package contains the Perl module CSS::Minifier::XS. Versions of the module before 0.14 have a memory leak when the entire document is minified away (CVE-2026-13593). This update brings version 0.15 which fixes this issue.

Update to 3.2.0 (final). Update PyO3 to 0.29, fixing RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Update to 0.3.6; this includes an update to PyO3 0.29, which fixes RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Update rust-jiter to 0.16.0, adding a serde Deserializer implementation; update python-jiter to match. Both packages now use PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Update rust-jiter to 0.16.0, adding a serde Deserializer implementation; update python-jiter to match. Both packages now use PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

An update that solves 168 vulnerabilities, contains three features and has 14 security fixes can now be installed.

An update that solves 105 vulnerabilities, contains three features and has 12 security fixes can now be installed.

Smashing Security podcast #475: JadePuffer – the AI that ran a ransomware attack all by itself
GitHub’s public APIs are becoming an enterprise reconnaissance tool

https://security-tracker.debian.org/tracker/DSA-6383-1

https://security-tracker.debian.org/tracker/DSA-6382-1

New xorg-server packages are available for Slackware 15.0 and -current to fix security issues.

New proftpd packages are available for Slackware 15.0 and -current to fix security issues.

New libXfont2 packages are available for Slackware 15.0 and -current to fix security issues.

Suspected Chinese snoops caught breaking into universities’ Roundcube mailservers

mailcap could allow applications to escape sandbox restrictions

Guillaume Winter discovered that pgextwlist, an extension for PostgreSQL implementing a whitelist mechanism for PostgreSQL extensions, was susceptible to SQL injection via crafted schema and user names. For the stable distribution (trixie), this problem has been fixed in version 1.19-1+deb13u1.

An update that solves one vulnerability and has three security fixes can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves two vulnerabilities can now be installed.

An update that solves one vulnerability can now be installed.

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

GitHub Copilot: Sorry Dave, I can’t do that harmful thing – unless you ask me in code
OpenAI to release delayed models Thursday amidst a sea of regulatory confusion
Jacob Test 3
Jacob Test 2
Jacob Test
Test By
Test By
Test by Jacob
Test by Jacob

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the stable distribution (trixie), this problem has been fixed in version 150.0.7871.100-1~deb13u1.

Test Article

An update that solves two vulnerabilities can now be installed.

Bug in top AI coding agents shows that Unix-era security headaches never really die
China tells devs to ditch Claude Code over ‘backdoor code’ fears

An update that solves 3 vulnerabilities and has 3 bug fixes can now be installed.

An update that solves 6 vulnerabilities and has 2 bug fixes can now be installed.

An update that solves 24 vulnerabilities and has 28 bug fixes can now be installed.

An update that solves 8 vulnerabilities and has 8 bug fixes can now be installed.

An update that solves 26 vulnerabilities and has 10 bug fixes can now be installed.

An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed.

An update that solves 4 vulnerabilities and has 4 bug fixes can now be installed.

An update that solves 20 vulnerabilities and has 2 bug fixes can now be installed.

An update that solves 5 vulnerabilities and has 5 bug fixes can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves one vulnerability and has one bug fix can now be installed.

An update that solves 13 vulnerabilities and has 13 bug fixes can now be installed.

An update that fixes two vulnerabilities is now available.

An update that fixes 6 vulnerabilities is now available.

Anthropic expands Claude Cowork to web and mobile as enterprise use broadens

An update that solves three vulnerabilities can now be installed.

GitHub AI agent leaks private repositories via prompt injection attack
Mak’s Security Roundup: Prioritizing This Week’s Critical Updates
Four agentic AI memory systems for smarter LLMs
The IDE is dead, long live the ADE

A vulnerability have been discovered in dpkg, the Debian package manager (dpkg is the low-level tool that actually installs or removes packages). CVE-2025-6297 It was discovered that dpkg-deb does not properly sanitize directory permissions when extracting a control member into a temporary

Updated to latest upstream (152.0.4) Update to latest upstream version

Update to 1.6.0

Update to 1.3.7, and update PyO3 to 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Update to PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Update to PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

Update to PyO3 0.29, with fixes for RUSTSEC-2026-0176 and RUSTSEC-2026-0177.

0.16 bump – Fix CVE-2026-56017 and CVE-2026-56018

Update to latest upstream release https://forum.torproject.org/t/security- release-0-4-9-11/21786 bz#2483769

perl-Compress-Taw-Bzip2 – Updated to 2.218 perl-IO-Compress – Updated to 2.221 – Fix CVE-2025-15649, CVE-2026-48959, CVE-2026-48961, CVE-2026-48962

perl-Compress-Taw-Bzip2 – Updated to 2.218 perl-IO-Compress – Updated to 2.221 – Fix CVE-2025-15649, CVE-2026-48959, CVE-2026-48961, CVE-2026-48962

Update to release v5.3.0

Update to 4.2.2