news
Security Leftovers
-
LWN ☛ Security updates for Wednesday
Security updates have been issued by AlmaLinux (firefox, gstreamer1-plugins-base, kernel, kernel-rt, and sqlite), Debian (freecad, kernel, libvncserver, and openssl), Fedora (apr-util, chromium, nnn, perl-DBI, python-tablib, python3.10, python3.11, python3.12, and sympa), Gentoo (DTrace, GNU screen, UnrealIRCd, and Vinyl Cache), Oracle (389-ds-base, attr, firefox, gegl04, grafana, gstreamer1-plugins-base, gstreamer1-plugins-good, httpd, mod_http2, nginx, pam, python-pyasn1, python-urwid, python3.12, python3.14, sqlite, and xorg-x11-server), SUSE (amazon-ecs-init, containerd, curl, distribution, dracut, ffmpeg-7, fuse-overlayfs, gd, git-lfs, go1.25-openssl, go1.26-openssl, govulncheck-vulndb, hauler, himmelblau, kernel, librest, libssh2_org, open-iscsi, openssh, patch, perl-Date-Manip, podman, postgresql14, postgresql16, python-cryptography, python-Pillow, python311, rmt-server, rootlesskit, rpm, rsync, runc, snpguest, sssd, suseconnect-ng, unbound, and util-linux), and Ubuntu (curl, ffmpeg, linux-aws-6.8, linux-azure-fde, linux-azure-fde-6.8, linux-azure-fips,
linux-nvidia-tegra, linux-azure, linux-azure-fde, linux-azure, linux-azure-fde, linux-nvidia-tegra-igx, linux-azure-5.4, linux-azure-fips, linux-oracle, linux-raspi, linux-raspi-realtime, openjdk-17, openjdk-21, openjdk-25, openjdk-8, openjdk-lts, openssl, perl, and vim).
-
Pen Test Partners ☛ Estate planning of credentials
-
Security Week ☛ Chrome 152 Patches Over 300 Vulnerabilities
Most of the flaws were discovered by Surveillance Giant Google using AI, but researchers are still discovering high-value Chrome vulnerabilities.
-
Scoop News Group ☛ Three 10.0 security flaws fixed across Ubiquiti’s UniFi line
The communications product company disclosed 22 total Wednesday, all but one of which was rated “critical” at 9.0 or higher.
-
OpenSSF (Linux Foundation) ☛ Case Study: Conquering the EU Cyber Resilience Act (CRA) with 1,400 Upstream Security Fixes
Ericsson Software Technology successfully met the stringent obligations of the EU Cyber Resilience Act (CRA) by fundamentally shifting to upstream collaboration. Guided by OpenSSF principles, they eliminated private forks and contributed over 1,400 dependency updates and security fixes directly to open source communities.
-
Security Week ☛ CISA Warns of Exploited Gitea Vulnerability
CVE-2026-60004 is a remote code execution vulnerability patched by Gitea developers in late July with the release of version 1.27.1.
-
Ruby ☛ Security advisories: CVE-2026-80212 and CVE-2026-80213
Two vulnerabilities have been discovered in the
resolvgem bundled with Ruby. They have been assigned the CVE identifiers CVE-2026-80212 and CVE-2026-80213. We recommend upgrading the resolv gem. -
Security Week ☛ Sensitive Information Exposed in Nutex Health Data Breach
Nutex Health has informed the SEC that it recently detected unauthorized access and data exfiltration.
-
Security Week ☛ The MFA Identity Trap: When Authentication Creates a False Sense of Security
Organizations must distinguish identity verification, authentication and threat detection, or risk successfully authenticating the attackers they are trying to stop.
-
Security Week ☛ CISA: Over 100 Internet-Exposed Water Systems Targeted in July Cyberattacks
The agency has released guidance on reducing internet exposure in the wake of the recent Iran-linked hacker attacks.
-
Security Week ☛ Adobe and Nvidia Patch Dozens of Vulnerabilities
Adobe and Nvidia each published several advisories, including ones that address critical vulnerabilities in their products.
-
TechRadar ☛ Proton VPN’s anti-censorship Stealth protocol finally lands on the stable Linux release
If you use one of the best VPN services on a Linux machine, bypassing restrictive firewalls and internet blockades just got significantly easier. After spending months in a rigorous testing phase, Proton VPN has officially moved its custom anti-censorship Stealth protocol into the stable Linux release.
-
Proton VPN’s anti-censorship Stealth protocol finally lands on the stable Linux release
This move marks a major milestone following the initial news of Proton VPN's anti-censorship Stealth protocol finally landing on Linux in beta. Originally launched to help users in highly restrictive regions like Russia and Iran, Stealth works by obfuscating your connection. It wraps your VPN traffic in an extra layer of TLS encryption, making it look like completely standard, secure web browsing (HTTPS).
-
Kapersky ☛ Exploits and vulnerabilities in Q2 2026
The vulnerability landscape shifted significantly in Q2 2026. First, the number of registered CVEs reached an unprecedented level. This is driven primarily by the widespread adoption of AI, both for application development and search for security flaws. This resulted in entire new classes of vulnerabilities emerging, particularly in the Linux networking subsystem.
-
ZDNet ☛ This simple antivirus tool is the easiest way to scan your Linux PC for threats - for free
It's long been debated whether Linux needs antivirus protection. I tend to fall on the side of not needing it, but I rarely share files with Windows users. However, on those rare occasions when I have to share files with Windows users, you can bet I want to make sure that they are free of viruses.
To that end, I depend on ClamAV to ensure I'm not sending malicious files to other people.
ClamAV is one of the more popular AV solutions for Linux. It's open source, free, and can run via the command line or a GUI. The thing is, I'm not a big fan of the default ClamTK GUI. I find that it looks out of date and isn't very intuitive.
There's another option, however, called ClamUI, which is much more modern-looking and easy to use. ClamUI simplifies the process of updating the ClamAV database, gives you quick access to logs, and makes running scans easy.
-
TechRadar ☛ Security expert hijacks Apple's Find My network to share data with a Linux device | TechRadar
A 'trusted' Linux device can impersonate an Apple device and access already-shared Find My locations