Menu

Latest articles

An update that solves six vulnerabilities can now be installed.

Qt Declarative could be made to use excessive resources if it received specially crafted input.

Evolution Data Server could be made to remove files.

GTA cheat service Atlas Menu hacked as attacker alleges screenshot spying
Linux IDS vs IPS: Operational Differences and Deployment Tradeoffs

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves one vulnerability can now be installed.

An update that solves 68 vulnerabilities, contains one feature and has 10 security fixes can now be installed.

An update that solves 68 vulnerabilities, contains one feature and has 10 security fixes can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves three vulnerabilities can now be installed.

An update that solves three vulnerabilities can now be installed.

Palo Alto VPN bug graduates from advisory to active exploitation
Flowise’s MCP implementation can run ghost commands
Password manager Dashlane suspends customer accounts amid brute-force attacks

Several security issues were fixed in rsync.

Putin sends submarines to survey Britain’s subsea cables. UK deploys Royal Navy, mobilizes parliamentary draftsmen

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the Linux kernel.

Several security issues were fixed in the kernel.

How to succeed with AI-powered devops tools
How to run enterprise GenAI like a production service
AI’s brave new world of technical debt

An update that solves six vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

SUSE Linux 15 SP7 Kernel RT Important Live Patch 13 Local Root Exploit
An update that solves three vulnerabilities can now be installed.

An update that solves four vulnerabilities can now be installed.

An update that solves four vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves four vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves five vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves four vulnerabilities can now be installed.

An update that solves four vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

An update that solves six vulnerabilities can now be installed.

Several vulnerabilities have been found in aiohttp, an asynchronous HTTP client/server framework for asyncio and Python. CVE-2025-53643 Request smuggling vulnerability due to not parsing trailer sections of an HTTP request.

Update to 1.5.4. Fixes a buffer overflow caused by integer promotion rules in OFBMPImageFormatHandler and OFQOIImageFormatHandler. Update to 1.5.3

Update to 1.5.4. Fixes a buffer overflow caused by integer promotion rules in OFBMPImageFormatHandler and OFQOIImageFormatHandler. Update to 1.5.3

Security issues were discovered in Chromium which could result in the execution of arbitrary code, denial of service, or information disclosure. For the oldstable distribution (bookworm), these problems have been fixed in version 148.0.7778.215-1~deb12u1.

https://security-tracker.debian.org/tracker/DSA-6318-1

https://security-tracker.debian.org/tracker/DSA-6317-1

10 essential reads to optimize performance, security, and ROI in the AI era
7 features of Red Hat Identity Management you need to know for the modern enterprise
Advancing post-quantum capabilities of SSH in Red Hat Enterprise Linux

https://security-tracker.debian.org/tracker/DSA-6315-1

https://security-tracker.debian.org/tracker/DSA-6314-1

https://security-tracker.debian.org/tracker/DSA-6313-1

https://security-tracker.debian.org/tracker/DSA-6312-1

This month in security with Tony Anscombe – May 2026 edition

In this roundup, Tony looks at attacks against Polish water treatment facilities, how AI-directed attacks failed in Mexico, and what Google believes is the first AI-generated zero-day exploit

Lone attacker published 14 malicious npm packages mimicking popular OpenSearch, Elasticsearch libraries

https://security-tracker.debian.org/tracker/DSA-6308-1

https://security-tracker.debian.org/tracker/DSA-6307-1

An update that solves 6 vulnerabilities can now be installed.

ICE to keep an eye on your eyes under $25M biometric scanner deal
No fix yet for critical RCE bug in open-source Git service Gogs – exploit module is out
ESET APT Activity Report Q4 2025–Q1 2026

An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q4 2025 and Q1 2026

Amazon deletes devs’ tokenmaxxing leaderboard to minimize costs
23andMe inherits lawsuit over ‘disturbing’ DNA data breach
DNS-AID will make AI agents easier to discover, says Linux Foundation
Certifiably random: Swiss researchers claim perfect random number source
Dutch cops wrest 17M devices from mystery botnet’s clutches
How To Understand Failed Authentication Patterns in Linux Logs
How to Respond After Detecting a Compromised Linux Server
ChatGPT blindly trusts browser content, turning the page into a payload
Russia-linked threat group put ChatGPT to work from lure to payload
ShinyHunters adds Charter to trophy shelf after 4.9M customer records leak
How are enterprises using cloud today?
Police arrest man following hack of Ajax football club
IBM and Red Hat want to become the ‘security clearinghouse’ for open source applications in the enterprise
Lack of response to critical vulnerability in Gogs is a reminder of the limits of open source projects

https://security-tracker.debian.org/tracker/DSA-6311-1

https://security-tracker.debian.org/tracker/DSA-6310-1

https://security-tracker.debian.org/tracker/DSA-6309-1

https://security-tracker.debian.org/tracker/DSA-6304-1

https://security-tracker.debian.org/tracker/DSA-6303-1

https://security-tracker.debian.org/tracker/DSA-6302-1

https://security-tracker.debian.org/tracker/DSA-6301-1

Troops’ phones gave away location data to foreign adversaries
Disgruntled 0-day hunter ‘humiliated’ by Microsoft pledges ‘bone shattering drop’ as Redmond calls cops
Snowflake buys Natoma to help freeze out rogue agents
What to consider before asking an AI chatbot for health advice

Using chatbots for medical advice could elicit hallucinations and even expose you to security and privacy risks. Here’s what’s at stake and how to stay safe.

Microsoft tests the 15-character limit of Windows Server admins’ patience
MyPillow listed on ransomware gang’s leak site, but denies it has been breached
SSH Key Sprawl on Linux Unmanaged Access Threats and Cleanup Guide
How to Diagnose Suspicious Outbound Connections on Linux Servers 
Supply chain battles intensify as takedowns meet AI-driven noise
Carnival confirms ShinyHunters cruised off with 6M customer records after April breach
Developers on H-1B face a tighter job market as AI shifts hiring priorities