[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> TODAY'S SUMMARY (14 articles)

|

// AI-powered summary generated at 16:00

> Oracle Linux 9 grafana Important Security Advisory ELSA-2026-11711
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
> Oracle Linux 10 Grafana Security Advisory ELSA-2026-11712 CVEs Explained
The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:
> Iran-linked Handala hackers leak US Marines data, send chilling WhatsApp threats
US Marines stationed around the Persian Gulf have been receiving WhatsApp messages from strangers suggesting they call home and make their final goodbyes. Read more in my article on the Hot for Security blog.
> CVE-2026-41603 Apache Thrift: Java TSSLTransportFactory hostname verification
Information published.
> CVE-2026-41607 Apache Thrift: C++ JSON OOB read
Information published.
> Approaching zero bugs?
In this era of powerful tools to find software bugs, we now see tools find a lot of problems at a high speed. This causes problems for developers, as dealing with the growing list of issues is hard. It may take a longer time to address the problems than to find them – not to … Continue reading Appro...
> CVE-2026-41636 Apache Thrift: Node.js skip() recursion
Information published.
> CVE-2026-41602 Apache Thrift: Go TFramedTransport uint32 overflow
Information published.
> Finance company stores DB credentials in helpfully labeled spreadsheet
Great idea, guys. Let's keep all of the data in an Excel file with weak password protection
> CVE-2026-41604 Apache Thrift: Swift Range crash in skip()
Information published.
> CVE-2026-41605 Apache Thrift: Swift Compact Protocol integer overflow
Information published.
> Finance company stores DB credentials in helpfully labeled spreadsheet
Great idea, guys. Let's keep all of the data in an Excel file with weak password protection PWNED  Welcome, once again, to PWNED, the weekly column where we recount the adventures of IT explorers who found their own pile of quicksand and then jumped right into it. This week's story involves keeping...
> CVE-2026-41606 Apache Thrift: c_glib dispatch stack overflow
Information published.
> CVE-2026-31545 NFC: nxp-nci: allow GPIOs to sleep
Information published.
> Digital Hopes, Real Power: From Connection to Collective Action
This is the fifth and final installment of a blog series reflecting on the global digital legacy of the 2011 Arab uprisings. You can read the rest of the series here. If the Arab Spring was defined by optimism about what the internet could do, the years since have been marked by a more sober underst...
> CVE-2026-31546 net: bonding: fix NULL deref in bond_debug_rlb_hash_show
Information published.
> CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation
Information published.
> Bad Bots in the Agentic Age: What the 2026 Thales Bad Bot Report Reveals
Bad Bots in the Agentic Age: What the 2026 Thales Bad Bot Report Reveals josh.pearson@t… Thu, 04/30/2026 - 07:31 The modern internet is becoming less human by the day. Bot traffic is increasing, and human traffic is shrinking. Malicious automated traffic is getting harder to spot. The Thales 2026...
> CVE-2026-31540 drm/i915/gt: Check set_default_submission() before deferencing
Information published.
> CVE-2026-6238 Buffer overread in ns_printrrf with corrupted RDATA field
Information published.