news
Security Leftovers and Windows TCO
-
Scoop News Group ☛ ‘Watershed 250’ test program in Texas looks to private sector for water cybersecurity help
The six-month program will be overseen by the Office of the National Cyber Director and Texas Cyber Command to “find out what works.”
-
LWN ☛ Security updates for Monday
Security updates have been issued by Debian (kernel, libarchive, libdbi-perl, libnet-dns-perl, librabbitmq, roundcube, starlette, and xrdp), Fedora (bluez, postgresql16-anonymizer, pyOpenSSL, python-cryptography, python-pynitrokey, and rust-h2), Gentoo (Chromium, Surveillance Giant Google Chrome, Abusive Monopolist Microsoft Edge, Opera, Freenet, and Tor), Mageia (golang and python-nltk), Red Hat (nodejs22, nodejs24, nodejs:22, and nodejs:24), SUSE (7zip, apptainer, broot, cadvisor, coredns, coturn, distribution-registry, gh, git-lfs, grafana, gzip, java-25-openjdk, libopenssl-3-devel, libsoup-3_0-0, mozjs102, OpenRGB, openssl-3, openvpn, podman, pyenv, python, python-PyPDF2, python310, python312, python313-Authlib, python36, rekor, rsync, rsyslog, tor, trivy, v2ray-core, vim, wget, and wicked), and Ubuntu (bzip2 and openjdk-26).
-
OpenSSF (Linux Foundation) ☛ OpenSSF Newsletter – August 2026
The August 2026 OpenSSF Newsletter spotlights a wave of CRA readiness content, from a new Ericsson case study to a four-part podcast run on compliance.
-
Security Week ☛ Extortion Group Claims Manchester Airports Group Data Breach
FulcrumSec says it stole over 80 GB of data from Manchester Airports Group and plans to leak it online.
-
Federal News Network ☛ CISA vulnerability directive designed to ‘buy back time’ against hackers
A top CISA official acknowledged the BOD is a major cultural shift, but says it should give security teams more time to focus on work that matters.
-
Security Week ☛ Critical Ruby on Rails Vulnerability in Attackers’ Crosshairs
Named KindaRails2Shell, the arbitrary file read flaw allows attackers to extract secrets and execute arbitrary code remotely.
-
Security Week ☛ Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit
Kaspersky told SecurityWeek that it patched the vulnerability affecting its Endpoint Security product.
-
Security Week ☛ ServiceNow Patches 3 Critical Code Injection Vulnerabilities
Attackers could exploit the security defects to execute arbitrary code and access or tamper with data.
-
SANS ☛ Guildma (Astaroth) malware infection from Brazilian Portuguese email, (Tue, Sep 1st)
-
Kernel Space
-
CISA Adds Linux Kernel + JFrog Artifactory CVEs to KEV After OpenAI Agent Exploitation
The August 27 KEV update marks the first federal acknowledgment that autonomous AI agents have become a primary driver of vulnerability exploitation, creating a new category of federal mandates.
-
-
Windows TCO
-
Security Week ☛ Boston Scientific Still Recovering From Cyberattack
The cyberattack led to a network outage that disrupted global operations, including product manufacturing, customer order processing, and shipping.
Boston Scientific develops and manufactures devices and therapies used in cardiology, neurology, and oncology.
-
The Record ☛ Berlin says it won’t pay ransom after [attackers] steal government data
Berlin disconnected the affected systems from the wider state network on Aug. 14 after discovering the breach. Two ministries — one responsible for urban development, construction and housing and another overseeing mobility, transport, climate protection and the environment — were cut off.
Both remained operational, but employees lost access to their usual IT systems, including email and internet services, forcing some staff to communicate by telephone, text message and fax.
-
Security Week ☛ Berlin Won’t Pay Extortion Group Claiming Data Theft
The incident was discovered on August 14 and impacted the Senate Department for Mobility, Transport, Climate Protection, and Environment.
To contain the attack, the department’s network was shut down on August 14, the same as was the Senate Department for Urban Development, Construction, and Housing’s network.
-
-
Arch Family
-
[Repeat] Understanding Computation ☛ Omarchy: Any User Process Can Escalate to Root
Omarchy configured its default user as a member of the Linux docker group.
That allows users to run commands such as: [...]
-