Chinese hackers infiltrated Microsoft 365 environments, maintaining access for 18 months before detection. The attack exploited vulnerabilities to harvest sensitive data from various organizations. Simultaneously, a new…
Multiple vulnerabilities have been identified in dnsmasq, an open-source DNS and DHCP server, affecting various Linux distributions, including Ubuntu. The vulnerabilities, tracked as CVE-2026-2291, CVE-2026-4890,…
A newly disclosed vulnerability in the Linux kernel, tracked as CVE-2026-31431 and named 'Copy Fail', allows unprivileged local users to gain root access on virtually all major Linux distributions released since 2017.…
A severe Linux kernel vulnerability, CVE-2026-43499, known as GhostLock, has been publicly disclosed by Nebula Security's VEGA team. This flaw, present since 2011, allows any logged-in user to gain full root control of…
A local privilege escalation vulnerability in the Linux kernel's rxgk module, named DirtyDecrypt, has been discovered and a proof-of-concept exploit is now available. The V12 security team reported this flaw on May 9,…
A zero-day vulnerability in the Linux kernel, tracked as CVE-2026-53264, has been disclosed, allowing local privilege escalation (LPE) through a use-after-free condition in the net/sched subsystem. Discovered by Lee Jia…
A newly discovered Linux privilege escalation vulnerability, named PinTheft, allows local attackers to gain root access on Arch Linux systems by exploiting a flaw in the RDS subsystem. The vulnerability, identified by…
A significant supply chain attack has compromised over 400 packages in the Arch User Repository (AUR), with attackers injecting malicious build scripts that deploy credential-stealing malware and rootkits. The campaign,…
A critical vulnerability in ImageMagick, identified by Octagon Networks, allows remote code execution (RCE) through specially crafted image files. This 'magic byte shift' vulnerability affects major Linux distributions,…
Arch Linux has temporarily disabled package adoption in the Arch User Repository (AUR) following a surge in malicious package takeovers. The decision was announced by contributor Robin Candau on July 30, 2026. Attackers…