Security Leftovers

-
Microsoft's Halo dev site breached using dependency hijacking
-
Open Source Utilization in Email Security Demystified [Ed: Too self-promotional]
-
Regula: Open source policy engine for IaC security
Fugue announced Regula 1.0, an open source policy engine for infrastructure as code (IaC) security.
-
Linux Formerly Affected By An AMD KVM Guest-To-Host Breakout Code Vulnerability
AMD-specific code within Linux's KVM virtualization component previously could allow a KVM guest to breakout into the host. This bug persisted in the Linux kernel from late 2020 to March 2021 before being addressed and is the first known issue of such a guest-to-host breakout that didn't also depend upon bugs within user-space components.
Google's Project Zero initiative today published a case study on this guest-to-host breakout issue. This vulnerability doesn't stem from an issue with the AMD EPYC processors but rather a bug that was within the AMD-specific Kernel-based Virtual Machine code around its SVM nested virtualization handling.
The case study in full can be read on Google's blog and is an interesting technical read for anyone interested in the matter in great detail.
-

- Login or register to post comments
Printer-friendly version- 2230 reads
PDF version
More in Tux Machines
- Highlights
- Front Page
- Latest Headlines
- Archive
- Recent comments
- All-Time Popular Stories
- Hot Topics
- New Members
digiKam 7.7.0 is released
After three months of active maintenance and another bug triage, the digiKam team is proud to present version 7.7.0 of its open source digital photo manager. See below the list of most important features coming with this release.
|
Dilution and Misuse of the "Linux" Brand
|
Samsung, Red Hat to Work on Linux Drivers for Future Tech
The metaverse is expected to uproot system design as we know it, and Samsung is one of many hardware vendors re-imagining data center infrastructure in preparation for a parallel 3D world.
Samsung is working on new memory technologies that provide faster bandwidth inside hardware for data to travel between CPUs, storage and other computing resources. The company also announced it was partnering with Red Hat to ensure these technologies have Linux compatibility.
|
today's howtos
|








.svg_.png)
Content (where original) is available under CC-BY-SA, copyrighted by original author/s.

Recent comments
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 11 weeks ago