Author: Erik Peterson

Changes to the development process and progress in the development of the Ladybird browser.

Andreas Kling, the founder of the Ladybird web browser, announced a change in the project's development process. Ladybird will no longer accept public pull requests and will switch to promoting changes to the codebase only through maintainers. All already opened public pull requests will be closed. The source code of Ladybird will continue to be provided under the BSD license. Reports of issues, vulnerabilities, and testing of website functionality will continue to […]

Release of the T2 SDE 26.6 distribution build platform

The release of the T2 SDE 26.6 meta-distribution has been published, providing an environment for creating custom distributions, cross-compilation, and keeping package versions current. Among popular distributions built on the T2 system, Puppy Linux can be noted. The project offers 10 ready-made bootable ISO images with a graphical environment based on KDE, compiled for the architectures arm64, ia64, ppc64, ppc64le, riscv64, riscv64 rva23, i686 […]

Chrome has fixed 429 vulnerabilities, while Android has resolved 124.

Google has made changes to the release announcement of Chrome 149, revealing information about the resolution of 429 vulnerabilities. 22 vulnerabilities are marked as critical, while 87 are deemed dangerous. Critical issues allow for bypassing all levels of browser protection and executing code on the system outside the sandbox environment. Details have not yet been disclosed, only that most critical issues […]

Microsoft has announced the universal distribution of Azure Linux 4.0

Microsoft has announced the first publicly available experimental build of the Azure Linux 4.0 distribution, prepared for deployment in virtual machines and containers. They promise to publish experimental builds for WSL (Windows Subsystem for Linux) and AKS (Azure Kubernetes Service) in the future. The Azure Linux 4 branch is presented as a universal solution optimized for the Azure platform and suitable for use across all […]

AMD has implemented initial support for HDMI 2.1 FRL in the open-source AMDGPU driver.

AMD has sent initial support for HDMI 2.1 Fixed Rate Link (FRL) to DRM-Next for the open-source AMDGPU driver. The change is being prepared for inclusion in the Linux 7.2 merge window, which is scheduled to open in June. For Radeon users on Linux, this is an important event: the lack of FRL has long hindered the proper functioning of modes like 4K with high refresh rates via HDMI on […]

AMD GAIA 0.20.0

AMD GAIA 0.20.0 has been released — an open framework for running local AI agents on PCs with AMD Ryzen AI hardware acceleration. The project is distributed under the MIT license, supports Windows and Linux, and installation is available via the amd-gaia package. The tag v0.20.0 was released on June 3rd, but the news about the release appeared on June 4–5. The main change in this version is a proper selection […]

Chrome Release 149

Google has released version 149 of the Chrome web browser. At the same time, a stable release of the open-source project Chromium, which forms the basis of Chrome, is also available. Chrome differs from Chromium in its use of Google logos, a system for sending notifications in case of crashes, modules for playing copy-protected video content (DRM), an automatic update installation system, a constant inclusion of Sandbox isolation, the provision of keys to Google API, and the transmission of RLZ parameters […]

HTTP/2 Bomb vulnerability leading to memory exhaustion

In early June 2026, cybersecurity researchers from Calif (with the help of the AI agent Codex) discovered a new variant of the HTTP/2 Bomb attack, which can operate even from a single client device with an internet connection speed of 100 Mbps. The attack consists of two stages: Manipulating HPACK Compression: In the HTTP/2 protocol, headers are compressed using the HPACK table. The attacker sends an almost empty header, […]

libinput 1.31.3 with a fix for a vulnerability that leads to root code execution

A corrective release of libinput 1.31.3 has been published — a library for processing input devices used by modern Linux desktops in conjunction with Wayland compositors and X.Org. libinput is responsible for device detection, event processing, and input abstraction: from mice and touchpads to graphic tablets. The project is distributed under the MIT license. The main change in this release is the fix of a vulnerability in the libinput-device-group udev helper program. The problem was related to […]

An attack on HTTP/2 implementations leading to exhaustion of available memory

Information has been revealed about the 'HTTP/2 Bomb' vulnerability, affecting various implementations of the HTTP/2 protocol and allowing denial of service through exhaustion of all available process memory. The issue has been confirmed in HTTP servers nginx, Apache httpd (CVE-2026-49975), Microsoft IIS, Envoy (CVE-2026-47774), and Cloudflare Pingora in default configuration. The vulnerability exploits a method akin to a zip bomb applied to the header compression functionality in HTTP/2. […]

A vulnerability in libinput, allowing privilege escalation in the system.

A vulnerability (CVE not assigned) has been found in the libinput library, which provides a unified input stack for Wayland and X.Org Server. This vulnerability allows local users to execute code with root privileges by connecting a virtual input device, emulated in user space via uinput or uhid. The issue has been resolved in releases 1.31.3 and 1.30.4. The vulnerability exists in the udev handler of libinput-device-group and is caused by a lack of proper […]

Release of the filtering proxy Privoxy 4.2.0

The release of the Privoxy 4.2.0 proxy server has been published, designed for creating personal web content filters. With Privoxy, users can cut out ads, discard tracking cookies, remove pop-ups, block the loading of third-party JavaScript code, and make arbitrary user-defined modifications to web pages. Privoxy can be installed both on local user systems and on servers to create a centralized content filtering infrastructure […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster