Menu

Latest articles

Update to 128.12.0 https://www.thunderbird.net/en-US/thunderbird/128.12.0esr/releasenotes/ https://www.mozilla.org/en-US/security/advisories/mfsa2025-55/

Lovestruck US Air Force worker admits leaking secrets on dating app

USN-7626-1 introduced a regression in Git

Now everybody but Citrix agrees that CitrixBleed 2 is under exploit
Ada, other older languages vie for top spots in Tiobe language index

* bsc#1245309 * bsc#1245310 * bsc#1245311 * bsc#1245314

Ex-ASML engineer who stole chip tech for Russia gets three years in Dutch prison
Russia, hotbed of cybercrime, says nyet to ethical hacking bill
AiLock ransomware: What you need to know

* bsc#1065729 * bsc#1156395 * bsc#1193629 * bsc#1194869 * bsc#1198410

* bsc#1244081 Cross-References: * CVE-2025-5601

* bsc#1244081 Cross-References: * CVE-2025-5601

* bsc#1243902 Cross-References: * CVE-2025-40908

How AI is quietly saving enterprises thousands on Azure costs
NCA arrests four in connection with UK retail ransomware attacks
Now available: Red Hat Enterprise Linux Security Select Add-On
Sovereign-ish: Google Cloud keeps AI data in UK, but not the support
How to inline methods using MethodImplAttribute in C#
NLWeb: Tapping MCP for natural language web search
Review: How Passwork 7 helps tame business passwords
At last, a use case for AI agents with sky-high ROI: Stealing crypto
Google releases Gemma 3n models for on-device AI
Smashing Security podcast #425: Call of Duty: From pew-pew to pwned
How to trick ChatGPT into revealing Windows keys? I give up
US sanctions alleged North Korean IT sweatshop leader
AMD warns of new Meltdown, Spectre-like bugs affecting CPUs
As Texas floods, so does the internet – with dangerous lies
Breaking Down BERT Ransomware: Lessons for Linux & ESXi Defenders

The following updated rpms for have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Oracle Database@AWS goes GA: Exadata and Autonomous DB now live in the US
Get started with Google Agent Development Kit
Artificial intelligence is a commodity, but understanding is a superpower
The ultimate software engineering abstraction
Clarifai AI Runners connect local models to cloud

https://security-tracker.debian.org/tracker/DSA-5960-1

ECMAScript 2025 JavaScript standard approved

Several security issues were fixed in libssh.

InfoWorld Technology of the Year Awards 2025 nominations now open
The cloud-native imperative for effective cyber resilience
The AI Fix #58: An AI runs a shop into the ground, and AI’s obsession with the number 27
SUSE launching region-locked support for the sovereignty-conscious
Metadata: Your ticket to the AI party
Exploring Parrot OS 6.4: A Vital Release for Security-Centric Workflows
Suspected Chinese cybersnoop grounded in Italy after US tipoff
Microsoft brings OpenAI-powered Deep Research to Azure AI Foundry agents

USN-7010-1 introduced a regression in DCMTK

Nvidia doubles down on GPUs as a service
What you absolutely cannot vibe code right now
How Deutsche Telekom designed AI agents for scale

Sekou Diakite from HPE discovered a mistake with permission handling for Coordinators within the accounting system of Slurm Workload Manager, a cluster resource management and job scheduling system, that it could allow a Coordinator to promote a user to Administrator.

* bsc#1227270 * bsc#1227271 * bsc#1227353 * bsc#1228097 * bsc#1233165

Is your password ecosystem ready for the regulators?
Suspected Scattered Spider domains target everyone from manufacturers to Chipotle

Several security issues were fixed in jQuery.

https://security-tracker.debian.org/tracker/DSA-5961-1

Deno 2.4 restores JavaScript bundling subcommand
CitrixBleed 2 exploits are on the loose as security researchers yell and wave their hands

Antonio Morales discovered an out-of-bounds write in the MMRDecoder::scanruns method in djvulibre, a library and set of tools to handle documents in the DjVu format, which may result in the execution of arbitrary code if a specially crafted document is processed.

Employee arrested after Brazil’s central bank service provider hacked for US $140 million
Phishing platforms, infostealers blamed as identity attacks soar
Advanced unit testing with JUnit 5, Mockito, and Hamcrest
OutSystems Mentor: An AI-powered digital assistant for the entire SDLC
Arriving at ‘Hello World’ in enterprise AI

* bsc#1243061 * bsc#1243804 * bsc#1243913 Cross-References:

5.2.0 release

Integer overflow on 32-bit systems has been fixed in the XMedCon toolkit for medical image conversion. For Debian 11 bullseye, this problem has been fixed in version

Stalkerware firm gets scooped by SQL-slinging security snoop

Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code. For the stable distribution (bookworm), these problems have been fixed in

Ingram Micro confirms ransomware behind multi-day outage

Update to 3.6.4 Release notes: https://github.com/Mbed-TLS/mbedtls/releases/tag/mbedtls-3.6.4

https://security-tracker.debian.org/tracker/DSA-5959-1

PGSQL: Fixed GHSA-hrwm-9436-5mv3 (pgsql extension does not check for errors during escaping). (CVE-2025-1735) SOAP: Fixed GHSA-453j-q27h-5p8x (NULL Pointer Dereference in PHP SOAP

A memory corruption vulnerability exists in the Shared String Table Record Parser implementation in the xls2csv utility version 0.95. (CVE-2024-48877) An integer overflow vulnerability exists in the OLE Document File Allocation Table Parser functionality of catdoc 0.95. (CVE-2024-52035)

* bsc#1243314 * bsc#1243332 * bsc#1243422 * bsc#1243423

* bsc#1236931 * bsc#1239119 Cross-References: * CVE-2025-30258

How to get into cybersecurity | Unlocked 403 cybersecurity podcast (S2E3)

Cracking the code of a successful cybersecurity career starts here. Hear from ESET’s Robert Lipovsky as he reveals how to break into and thrive in this fast-paced field.

Task scams: Why you should never pay to get paid

Some schemes might sound unbelievable, but they’re easier to fall for than you think. Here’s how to avoid getting played by gamified job scams.

Massive spike in use of .es domains for phishing abuse

Update bundled pbkdf2 library.

* bsc#1245309 * bsc#1245310 * bsc#1245311 * bsc#1245314

* bsc#1238063 * bsc#1244136 Cross-References: * CVE-2025-0620

How government cyber cuts will affect you and your business

Deep cuts in cybersecurity spending risk creating ripple effects that will put many organizations at a higher risk of falling victim to cyberattacks

Technical difficulties or cyber attack? Ingram Micro’s website goes down just in time for the holiday weekend
Catwatchful stalkerware app spills secrets of 62,000 users – including its own admin