Security Leftovers
-
LWN ☛ Security updates for Monday
Security updates have been issued by Debian (ffmpeg, kernel, linux-6.1, mariadb-10.5, proftpd-dfsg, and xorg-server), Fedora (chromium, cutter-re, iniparser, nodejs22, rizin, webkitgtk, wireshark, xen, and xorg-x11-server), Mageia (binutils and ffmpeg), Oracle (emacs and kernel), Red Hat (emacs and webkit2gtk3), SUSE (azure-cli, bsdtar, gnutls, govulncheck-vulndb, libX11, libxkbfile, libxml2, nodejs-electron, openssh8.4, ovmf, phpMyAdmin, python, python-azure-identity, python311-jupyter-server, tiff, trivy, u-boot, and wireshark), and Ubuntu (opennds and Ruby SAML).
-
Security Week ☛ Black Basta Leak Offers Glimpse Into Group’s Inner Workings
A massive hoard of internal chats has been leaked from Black Basta, rivalling the Conti leaks of late February 2022.
> -
Security Week ☛ Indian Stock Broker Angel One Discloses Data Breach
Angel One says client information was compromised in a data breach involving its proprietary trap AWS account.
-
Security Week ☛ Vulnerable Paragon Driver Exploited in Ransomware Attacks
Ransomware operators exploit a vulnerable Paragon driver in BYOVD attacks to elevate privileges to System.