Security Leftovers
-
LWN ☛ Security updates for Thursday
Security updates have been issued by Debian (python-cryptography), Fedora (dnsdist and python-virtualenv), Red Hat (java-1.8.0-openjdk, java-11-openjdk, java-17-openjdk, and java-21-openjdk), Slackware (libssh2 and mozilla), SUSE (haproxy, keepalived, libarchive, libnss_slurm2, php8, and python310-pytest-html), and Ubuntu (linux, linux-aws, linux-aws-5.15, linux-gcp, linux-gcp-5.15, linux-gkeop,
linux-raspi, linux-xilinx-zynqmp, linux, linux-aws, linux-aws-5.4, linux-bluefield, linux-gcp,
linux-xilinx-zynqmp, and linux, linux-aws, linux-aws-6.8, linux-gcp, linux-gcp-6.8, linux-hwe-6.8,
linux-ibm, linux-lowlatency, linux-lowlatency-hwe-6.8, linux-nvidia,
linux-nvidia-6.8, linux-nvidia-lowlatency, linux-oem-6.8, linux-oracle,
linux-oracle-6.8, linux-raspi).
-
QSB-105: Missing enforced decorations for stubdomain windows under KDE
Missing enforced decorations for stubdomain windows under KDE
Qubes OS enforces the drawing of specific window decorations (e.g.,
colored borders around windows) in order to assist the user in
recognizing which window belongs to which qube. This applies both to
normal windows with title bars as well as other windows like menus
(which, behind the scenes, are separate windows). For normal windows,
the color of the title bar and border matches the qube's color
label, and the text in the title bar is prefixed with the qube's
name in brackets. backdoored Windows without title bars have only colored
borders.
-
Medevel ☛ Vuls - An Open-source Fast Agentless Vulnerability Scanner for Linux/ FreeBSD Written with Go for Cybersecurity Experts and Pentesters
Vuls is an open-source, agentless vulnerability scanner designed to help administrators and security professionals, like pentesters, keep their systems secure. It’s written in Go, known for its lightweight and high-performance capabilities.
-
OpenSSF (Linux Foundation) ☛ Developer Relations: The Human Connection Driving Open Source Security
Open source security isn’t just about technology—it’s about the people behind it. Developer Relations (DevRel) connects developers, maintainers, and contributors, ensuring that they have the tools and support to make open source software more secure and resilient.
-
Scoop News Group ☛ Alabama man arrested for role in SEC Ex-Twitter account hijacking
Eric Council Jr. was charged with aggravated identity theft and access device fraud in connection with the January 2024 incident.
-
European Commission ☛ New rules to boost cybersecurity of EU's critical entities and networks
European Commission Press release Brussels, 17 Oct 2024 The Commission has adopted today the first implementing rules on cybersecurity of critical entities and networks under the Directive on measures for high common level of cybersecurity across the Union (NIS2 Directive).
-
Cyber Security News ☛ Multihomed Linux Devices Flaw Allows Spoof of Internal Communication
A critical vulnerability has been discovered in multihomed Linux devices. It allows attackers to spoof and inject packets into internal communication streams via an external or public interface.
-
Cyber Security News ☛ New Linux Malware That Steal Money From ATMs [Ed: The issue here is not "Linux"]
Hackers are increasingly targeting ATMs through various illicit methods. They exploit physical and software vulnerabilities to force machines to dispense cash.