The central voice for Linux and Open Source security news.
Përditësimi: 1 ditë 18 orë më parë
Mër, 23/09/2026 - 3:25pd
Seccomp limits which Linux system calls a process can make.
Mër, 23/09/2026 - 3:15pd
Privilege escalation in a container does not always begin with a new exploit.
Mër, 23/09/2026 - 3:15pd
Linux containers can be paused, checkpointed, and rebuilt later with CRIU.
Mër, 23/09/2026 - 2:59pd
A container normally starts under the security rules of the system receiving it.
Mër, 23/09/2026 - 2:45pd
Kubernetes groups one or more containers into a pod, the basic unit it deploys.
Mër, 23/09/2026 - 2:25pd
A live Linux distribution runs from removable media, usually a USB drive, without requiring a permanent installation.
Mar, 22/09/2026 - 7:30pd
CISA has added CVE-2025-39964, a flaw in the Linux kernel’s built-in cryptography interface, to its list of vulnerabilities being used in real attacks.
Mar, 22/09/2026 - 7:15pd
Security researchers have shown how hidden instructions in an AWS AgentCore support ticket could push an AI agent into running commands as root and exposing a service credential.
Mar, 22/09/2026 - 7:15pd
The crun container runtime has changed how GPU-enabled workloads launch a key graphics helper.
Mar, 22/09/2026 - 6:45pd
Linux developers have fixed two memory-safety bugs in the subsystem that lets hardware move data without constant help from the CPU.
Mar, 22/09/2026 - 6:35pd
Linux developers have fixed two input-system bugs that could expose small pieces of leftover kernel memory to a local program.
Mar, 22/09/2026 - 1:00pd
Linux developers have fixed an SELinux flaw that could allow a program to make a mapped file executable after SELinux had blocked direct execution.
Mar, 22/09/2026 - 12:45pd
CISA has added CVE-2026-53266, a Linux kernel flaw in the ebtables bridge firewall, to its list of vulnerabilities known to be exploited.
Pre, 18/09/2026 - 11:00md
Most administrators do not think about BIND, browser engines, or cloud kernels until one of them fails.
Pre, 18/09/2026 - 10:15md
Linux packet metadata could keep pointing to network headers after the underlying packet had been rebuilt without them.
Pre, 18/09/2026 - 10:00md
A Linux eBPF security flaw could cause the kernel to approve a program using an incorrect understanding of the values it would process.
Enj, 17/09/2026 - 11:15md
Security researcher Sai Teja Erukude disclosed four alarming Python security flaws between June and August 2026 after combining specialized AI models with automated scanning and manual code review.
Enj, 17/09/2026 - 11:00md
Attackers are exploiting a critical Cisco ISE flaw that can open the product’s web management interface without a valid login. Cisco disclosed CVE-2026-76460 on September 16 and traced the problem to the way an ISE API handles authentication. A remote attacker does not need credentials or help from a user. A crafted request is enough to reach the vulnerable interface.
Enj, 17/09/2026 - 10:45md
A PowerPC KVM use-after-free could leave the Linux host kernel accessing a nested-guest object after another virtual CPU caused that object to be removed and freed. The upstream Linux correction adds a missing reference that keeps the object alive while KVM invalidates cached address translations.
Enj, 17/09/2026 - 10:00md
As of September 17, Red Hat had documented a flaw in a Red Hat Quay build workflow that could expose container registry credentials to code retrieved from a mutable GitHub Action branch. Tracked as CVE-2026-85469, the issue created a software supply chain risk in the workflow used to publish Quay builder images.
Faqet