Menu

Latest articles

SUSE Linux 16.0 Low Govulncheck Fixes 91 Issues 2026-23855-1
SUSE jsoup Important OutOfMemoryError Vulnern 2026-23856-1
SUSE Libsoup Important Heap Use-After-Free Buffer Overflow Vulnerability
SUSE zstd-jni Major Update Addresses DoS Info Leak and Memory Issues
SUSE RabbitMQ Important Multiple Issues Fix Advisory 2026-23859-1
SUSE Exiv2 Important Heap Overflow Issues Patch 2026-23860-1
SUSE Util-Linux Important Local Privilege Escalation Issues 2026-23861-1
SUSE Linux 16.0 Update for Low vulncheck 2026-23863-1 Released Now
SUSE 2026-23864-1 Distribution Important DoS Vulnerabilities
SUSE Alloy Important Security Update CVE-2026-10722 CVE-2026-1229
SUSE libsoup Important Heap Buffer Overflow Vulnern SUSE-2026-23866-1
SUSE 16.0 jsoup Important OutOfMemoryError Vulnern 2026-23867-1
SUSE zstd-jni Important DoS Info Disclosure Fix Advisory 2026-23868-1
SUSE RabbitMQ-Server Important XSS and Access Issues Advisory 2026-23869-1
SUSE util-linux Important Local Privilege Escalation Advisory 2026-23870-1
Fedora 45 Cockpit Advisory 2026-d375ea9e79 Security Update for DoS
Fedora 45 flatpak-builder Update CVE-2026-86320 Code Execution Advisory
Fedora 45 Squid New Version 7.7 Advisory 2026-9e8f1c83d0
Fedora 45 rust-cryptoki New Release Advisory FEDORA-2026-b9e02a8684
Fedora 45 mingw-gdk-pixbuf Critical Out Of Bounds and Buffer Overflow Fixes
Fedora 45 OpenSSL 3.5.8 Security Advisory Rebase 2026-9e18ff28a6
Fedora 45 fixes Denial of Service vulnerability in U-Boot version 2026
Fedora 45 bcm283x Firmware Denial of Service Fix 2026-313e66c007
Fedora 45 389-ds-base Heap Overflow Fix Advisory CVE-2026-11774
Bitget Confirms $351.6 Million Hack, Suspects North Korea’s Lazarus Group
DSA-6514-1 php8.4 – security update
DSA-6513-1 chromium – security update
DSA-6416-2 jq – regression update
Crook used three open source agents to break into a Fortune 500 hospitality company, a major US airline and 25+ other orgs
A crook has been using three open source AI harnesses to target hundreds of online retailers and other companies, swiping more than 600,000 credit card [...]
Debian 12 Redis Critical Use-After-Free and Out-of-Bounds Alerts DLA-4794-1
Slackware PHP Important Buffer Overflow and Memory Fixes SSA-2026-267-01
Linux Cgroup Namespace Race Could Expose a Freed Root Object
A cgroup namespace gives a Linux process a limited view of the control-group hierarchy that organizes workloads and accounts for resources.
Kubernetes Security Fix Blocks Cross-Namespace Pod Creation
Kubernetes released fixes on Sep 23, 2026 for a control-plane flaw that could create a pod outside the namespace where a user’s permissions applied. [...]
Linux Device Driver Race Leaves Open Files Using Freed Memory
A Linux device driver can keep an open file alive while freeing the hardware state that file still needs.
Linux Integrity Checks Could Read Freed dm-verity Policy Data
Linux integrity checks depend on more than a correct policy or a trusted hash. The kernel must also keep that security state alive for the entire decision. [...]
Linux Console Font Bug Could Read Past Its Memory Buffer
A Linux console font change could leave the framebuffer console with a buffer sized for 256 characters even after a 512-character font was installed.
Ubuntu curl USN-8820-1 Important Remote Code Exec Denial of Service
Ubuntu libass Security Notice USN-8815-1 Code Execution Denial of Service
Ubuntu GDAL Critical Code Execution Crash Threat Notice USN-8812-1
DSA-6511-1 znc – security update
OpenAI Agent Breached Australian Medicare Statistics Portal
Salesforce Agentforce vulns allowed 0-click CRM data theft, anonymous phishing
Security flaws in Salesforce Agentforce allowed poisoned leads to hijack its AI agents, silently steal CRM data without requiring a click, and send [...]
Microsoft Password Reset Portal Can Leak Account Verification Details
Decades-old file security flaws found in Android, Linux, macOS, and Windows
Security researchers affiliated with Austria’s Graz University of Technology have found flaws in the implementation of file notification systems on [...]
CVE flood pushes Ubuntu onto weekly kernel release cycle
Canonical is speeding up Ubuntu kernel releases to one a week as AI-assisted bug hunting helps bury defenders under an ever-growing pile of CVEs. The [...]
The Hidden Security Risks of Devices You Forgot Were Connected
Someone went shopping in ASUS’s eShop – for customer data
Asus has warned eShop customers that an intruder got into part of its online store and may have helped themselves to contact details and order records. The [...]
Teradata aims to make agentic execution of multistep data work more efficient
Teradata is adding a context engine, an execution layer, and reusable agent skills to Tera, its AI-powered workspace for enterprise data and AI tasks, in [...]
SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta
Google to critical infra orgs: Our AI scanners won’t be evil, promise
Google has jumped on the AI-defense-for-critical-systems train with its Scan for Good initiative, and says that its threat-hunting models have already [...]
Ukrainian ransomware developer jailed for nearly 13 years
Turning security complexity into useful intelligence: What’s new in Red Hat Lightspeed
In a post-Mythos world, IT teams face a mounting crisis. Many are doing more with the same staff, and security work hasn’t gotten simpler. Alerts still [...]
2026 update: The road to quantum-safe cryptography in Red Hat OpenShift
A year ago, I wrote about the road to quantum-safe cryptography in Red Hat OpenShift. At the time, much of that road was forward-looking: TLS 1.3 was not [...]
AlmaLinux 8 Python 2.7 Major SQL Injection Info Disclosure Vulnerability
AlmaLinux 8 Container-Tools Important Security Fix CVE-2019-5736
AlmaLinux 8 libyang Bug Fix Advisory ALEA-2021-1906 Moderate
AlmaLinux 8 libarchive Moderate Bug Fix Advisory ALEA-2021-1580
New AvisLoader Windows Malware Uses ClickFix Lure and Tox P2P for C2
Managing the life cycle of AI agents at scale
There’s a new reality emerging for development teams: existing software delivery practices don’t translate cleanly to agentic AI systems. Practices built [...]
Government contractor exposed path to immigration records
Welcome back to PWNED, the column where we look at all the ways your security can become self-owned. Today’s scary story involves government contractors [...]
Mageia 10 xdg-dbus-proxy Medium Broadcast Filtering Bypass CVE-2026-93676
Mageia perl-URI Important IDNA Encoding Fix CVE-2026-19953
Mageia KBD Important Local Escalation Vulnerability CVE-2026-72693
Fedora 43 Chromium Critical Race Condition Buffer Overflow Vulnerability
Fedora 43 kernel 7.2.7 Important System Fix Advisory FEDORA-2026-8202400aa0
Fedora 43 mingw-pcre2 Important Information Disclosures – CVE-2026-89162
Fedora 44 Unbound Important Heap Buffer Overflow RCE Vuln 2026-996b326401
Fedora 44 mingw-pcre2 Critical Information Disclosure and Code Exec CVEs
SUSE Apptainer Important DoS Buffer Overflow Fix SUSE-SU-2026-4308-1
SUSE gimp Important Denial of Service and Code Execution Fix 2026-4309-1
openSUSE Kernel Important Security Update CVE-2026-46150 CVE-2026-64423
Fedora 45 libheif Security Advisory 2026-78461b38b3 Denial of Service
Fedora 45 WebKitGTK Update for Eclipse Crash Notice FEDORA-2026-c66009e517
Fedora 45 mingw-pcre2 Out-of-Bounds Disclosure and Code Execution Risk
Fedora 45 evolution-data-server Update Bug Fixes CVE-2026-88859
Fedora 45 evolution-ews Update Addresses Severe JavaScript Execution Bug
Fedora 45 Evolution Important Security Fix Advisory 2026-5debc0de2b
OpenAI agents ‘infiltrated Australian government website’
Australia’s Prime Minister Anthony Albanese has revealed an OpenAI agent “infiltrated an Australian government website” while trying to research medical [...]
DSA-6512-1 libreoffice – security update
Mageia Pipewire Significant RAOP Buffer Overflow Vulnerability 2026-0443
Mageia Libwebsockets Security Update Resource Consumption CVE-2026-10650
Mageia 10 amavisd Service Vulnerability Fix for Bug 2026-0133
Smashing Security podcast #486: Vibe-coded shops, and hackable Flock cameras
Apple touts simpler and clearer code with Swift 6.4
Apple has released Swift 6.4, an upgrade to the programming language that brings improvements across the board including core library APIs, builds, [...]
Ubuntu 26.04 XDG Desktop Portal Local Deletion Vulnerability USN-8287-2
Ubuntu 26.04 LTS libgit2 Important Remote Exec Vulnerability CVE-2026-5917
Rocky Linux 10 perl-DBI Important Heap Overflow Risk RLSA-2026-70753
Rocky Linux 10 RLSA-2026-69609 OpenEXR Important Heap Overflow
Rocky Linux 10 rsyslog Important Denial of Service RLSA-2026-69541
Rocky Linux 10 libarchive Low Heap Overflow Signed Integer Overflow Alert
Rocky Linux PostgreSQL16 Important Arbitrary Code Execution RLSA-2026-70186
Rocky Linux Podman Important Denial of Service Fixes RLSA-2026-70201
Rocky Linux 9 Firefox Gains Key Security Patch for Privilege Escalation
Rocky Linux 9 Podman Important Denial of Service Issues RLSA-2026-69961
Rocky Linux PostgreSQL Important Security Update RLSA-2026-69607
Rocky Linux OpenEXR Important Heap Overflow Vuln RLSA-2026-69608
Rocky Linux 9 RLSA-2026-70391 Key Update for Networking Denial of Service
Rocky Linux 9 RLSA-2026-70191 Runc Important Denial of Service Fix
Rocky Linux 8 RLSA-2026-69924 postgresql Important Arbitrary Code Execution
Debian znc Critical DoS Fix DSA-6511-1 CVE-2026-82373 CVE-2026-82374