DirtyClone is a new Linux kernel privilege escalation in the DirtyFrag family. JFrog Security Research published a working exploit walkthrough for the flaw on June 25, the first public demonstration ...
On June 22, 2026, Intel's USB4STREAM protocol — a new mechanism for sending raw data directly between two machines over a USB4 or Thunderbolt cable — was merged into the official Linux 7.2 kernel tree ...
This time a bit earlier than usual, the new kernel Linux 7.1 appeared in our regions on Sunday around 5:00 PM, not in the early morning hours of Monday. What might suggest an extremely “smooth” ...
Last year I was looking into a post-mortem from an incident where a container breakout went completely undetected in a production Kubernetes cluster. The security team pulled up dashboards, scrolled ...
Another Linux kernel flaw has handed local unprivileged users a way to peek at files they should never be able to read, including root-only secrets such as SSH keys. The bug affects multiple LTS ...
Kazuar, a sophisticated malware family attributed to the Russian state actor Secret Blizzard, has been under constant development for years and continues to evolve in support of espionage-focused ...
Tracked as CVE-2026-31431 with a CVSS score of 7.8, Copy Fail was uncovered and named by researchers at Xint.io and Theori. The flaw allows an unprivileged local user to write four controlled bytes ...
A set of newly identified vulnerabilities in the Linux security module AppArmor could allow attackers to gain root access, bypass system protections and trigger service outages across millions of ...
Qualys researchers expose ‘CrackArmor’ flaws that allow unprivileged users to escalate privileges to root, break container isolation, and crash systems, with no CVE identifiers yet assigned. Security ...
Linus Torvalds has released Linux 6.19 kernel, moving legacy AMD Radeon GPUs to the modern amdgpu driver and enabling larger block sizes in ext4 for improved storage performance. The AMD driver switch ...
A Linux-based command-and-control (C2) framework capable of long-term intrusion across cloud and enterprise environments has been further analyzed in new research. Known as VoidLink, the malware ...