Menu

Latest articles

Silk Road’s Dread Pirate Roberts walks free as Trump pardons dark web kingpin
Infosec was literally the last item in Trump’s policy plan, yet major changes are likely on his watch
A Sysadmin’s Guide to Securing the Linux Kernel
EMEA blog [DUTCH] | Red Hat closes Master Agreement with SLM Rijk to strengthen digital autonomy within Dutch government
Introducing confidential containers on bare metal
Half a million hotel guests at risk after hackers accessed sensitive data
Perplexity launches Sonar API, enabling enterprise AI search integration
Ransomware scum make it personal for Reg readers by impersonating tech support
3 Python web frameworks for beautiful front ends
State of JavaScript: Highlights of the JavaScript developer survey
How to deal with a Big Pile of Mud

Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5

* bsc#1232762 * jsc#PED-10545 Affected Products: * Containers Module 15-SP6

Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5

Software bill-of-materials docs eyed for Python packages
PowerSchool theft latest: Decades of Canadian student records, data from 40-plus US states feared stolen
Patch procrastination leaves 50,000 Fortinet firewalls vulnerable to zero-day
The AI Fix #34: Fake Brad Pitt and why AI means we will lose our jobs

Cybercriminals are becoming increasingly sophisticated, agile, and fast. For managed service providers (MSPs) supporting small and medium-sized businesses (SMBs) with cybersecurity services, staying ahead of these adversaries is crucial. One of the most effective ways to do so is through round-the-clock threat hunting. In this blog, we’ll explore why constant threat hunting is essential, the […]

HPE probes IntelBroker’s bold data theft boasts
Medusa ransomware: what you need to know
The bitter lesson for generative AI adoption
The AI security tsunami
Breaking free from reactive security
Banks must keep ahead of risks and reap AI rewards

https://security-tracker.debian.org/tracker/DSA-5846-1

Hackers game out infowar against China with the US Navy
How to leave the submarine cable cutters all at sea – go Swedish
A Linux Admin’s Guide to Ensuring Data Privacy in 2025
Ransomware attack forces Brit high school to shut doors
Passwords: a thin line between love and hate
From devops to CTO: 5 things to start doing now
5 new features in EDB Postgres AI
Are 10% of your software engineers lazy?
Sage Copilot grounded briefly to fix AI misbehavior
Datacus extractus: Harry Potter publisher breached without resorting to magic
When food delivery apps reached Indonesia, everyone put on weight
Donald Trump proposes US government acquire half of TikTok, which thanks him and restores service
OpenAI’s ChatGPT crawler can be tricked into DDoSing sites, answering your queries
Node.js set to stabilize type stripping

Important: thunderbird security update

Important: raptor2 security update

Important: rsync security update

Secure AI? Dream on, says AI red team
FCC to telcos: By law you must secure your networks from foreign spies. Get on it

https://security-tracker.debian.org/tracker/DSA-5843-2

Biden signs sweeping cybersecurity order, just in time for Trump to gut it
Fortinet: FortiGate config leaks are genuine but misleading
Clock ticking for TikTok as US Supreme Court upholds ban
Six vulnerabilities in ubiquitous rsync tool announced and fixed in a day
Migrating from .NET Framework to .NET Core: Security and Open Source Benefits
Medusa ransomware group claims attack on UK’s Gateshead Council
No, Brad Pitt isn’t in love with you
Python eats the world
Federated learning: The killer use case for generative AI
Microsoft eggheads say AI can never be made secure – after testing Redmond’s own products
Here’s how Google is using LLMs for complex internal code migrations
Just as your LLM once again goes off the rails, Cisco, Nvidia are at the door smiling
Google rolls out Vertex AI RAG Engine
GM parks claims that driver location data was given to insurers, pushing up premiums

https://security-tracker.debian.org/tracker/DSA-5845-1

The update for rsync announced in DSA 5843-1 introduced a regression when using the -H option to preserve hard links. Updated packages are now available to correct this issue.

* bsc#1235856 Cross-References: * CVE-2024-56374

* bsc#1220145 * bsc#1221302 * bsc#1222882 * bsc#1223059 * bsc#1223363

USN-7206-1 caused some regression in rsync.

Russia’s Star Blizzard phishing crew caught targeting WhatsApp accounts
Enzo Biochem settles lawsuit over 2023 ransomware attack for $7.5M
Cybersecurity rethink – from reaction to resilience
Snowflake open sources SwiftKV to reduce inference workload costs
Raspberry Pi hands out prizes to all in the RP2350 Hacking Challenge
The AI Fix #33: AI’s deliberate deceptions, and Elon’s “unhinged” mode

* bsc#1228693 Cross-References: * CVE-2024-40779

* bsc#1232637 * bsc#1233712 Cross-References: * CVE-2022-48956

* bsc#1210619 * bsc#1223363 * bsc#1223683 * bsc#1225013 * bsc#1225202

Infoseccer: Private security biz let guard down, exposed 120K+ files
Build API clients with Microsoft Kiota
Digital Transformation in Prisons: How Kazakhstan is Leading the Way
Smashing Security podcast #400: Hacker games, AI travel surveillance, and 25 years of IoT
GoDaddy slapped with wet lettuce for years of lax security and ‘several major breaches’
Red Hat offers OpenShift Virtualization Engine, Kubernetes Connectivity Link
DJI loosens flight restrictions, decides to trust operators to follow FAA rules
China’s Salt Typhoon spies spotted on US govt networks before telcos, CISA boss says
Even modest makeup can thwart facial recognition
Windows Patch Tuesday hits snag with Citrix software, workarounds published
Crypto klepto North Korea stole $659M over just 5 heists last year

* bsc#1235600 * bsc#1235601 Cross-References: * CVE-2024-50349

* bsc#1214954 * bsc#1216813 * bsc#1220773 * bsc#1224095 * bsc#1224726

* bsc#1234100 * bsc#1234101 * bsc#1234102 * bsc#1234103 * bsc#1234104

Why you should use Docker and OCI containers