Category: Blog

Microsoft has released an Emoji library

Microsoft has published an Emoji library that includes over 1,500 icons available in various styles (3D, multicolor, flat, high-contrast). The library's content corresponds to a new set of Emojis introduced to Windows 11 users last year, now enhanced with 3D versions of the icons. The library is open under an MIT license, allowing for derivative works and use of the icons in products. Source: opennet.ru

Release of Ubuntu 22.04.1 LTS

Canonical has introduced the first maintenance release of the Ubuntu 22.04.1 LTS distribution, which includes updates for several hundred packages related to vulnerability fixes and stability improvements. The new version also addresses installer and bootloader bugs. The release of Ubuntu 22.04.1 marks the completion of the base stabilization for the LTS release — users of Ubuntu 20.04 will now be prompted to upgrade to […]

AEPIC Leak — an attack that leads to key leakage from Intel SGX enclaves

Details have emerged about a new attack on Intel processors — AEPIC Leak (CVE-2022-21233) — which causes sensitive data to leak from isolated Intel SGX (Software Guard eXtensions) enclaves. The issue affects Intel CPUs of the 10th, 11th, and 12th generations (including the new Ice Lake and Alder Lake series) and is due to an architectural flaw that allows access to uninitialized data left in APIC registers […]

Exploitable vulnerabilities identified in the Linux kernel for POSIX CPU timer, cls_route, and nf_tables

Several vulnerabilities have been discovered in the Linux kernel, caused by accessing already freed memory areas, allowing a local user to escalate their privileges in the system. Working prototypes for exploits have been created for all identified issues and will be published one week after the vulnerabilities are disclosed. Patches addressing the issues have been sent to Linux kernel developers. CVE-2022-2588 — a vulnerability in the cls_route filter implementation, […]

Google has expanded its vulnerability discovery incentive program for the Linux kernel

Google has announced an expansion of its initiative to reward payouts for discovering vulnerabilities in the Linux kernel. The maximum payout for a new vulnerability and the creation of a working exploit based on it has been increased from $91,000 to $133,000. In addition to the previously used kCTF (Kubernetes Capture the Flag) environment for hacking attempts, new environments have been offered based on the latest stable […]

The release of the security-focused distribution Kali Linux 2022.3

The Kali Linux 2022.3 distribution release has been announced, intended for testing systems for vulnerabilities, conducting audits, analyzing residual information, and identifying the aftermath of attacks by malicious actors. All original contributions made within the distribution are distributed under the GPL license and available through a public Git repository. Several versions of the iso images have been prepared for download, sized at 432 MB, 2.9 GB, 3.4 GB, and 9.8 […]

Release of nftables batch filter 1.0.5

The release of the nftables 1.0.5 packet filter has been published, unifying the filtering interfaces for IPv4, IPv6, ARP, and network bridges (aiming to replace iptables, ip6tables, arptables, and ebtables). Concurrently, the release of the accompanying library libnftnl 1.2.3 has been published, providing a low-level API for interacting with the nf_tables subsystem. The nftables package includes packet filter components operating in user space, while […]

NPM plans to use Sigstore for package authenticity verification.

GitHub has opened a discussion on a proposal to implement the Sigstore service for verifying packages through digital signatures and maintaining a public log to confirm authenticity when distributing releases. The use of Sigstore will allow for an additional level of protection against attacks targeting the substitution of software components and dependencies (supply chain). For example, the proposed change will protect project source codes in case of account compromise […]

The release of the Ubuntu Sway Remix 22.04 LTS distribution.

The release of Ubuntu Sway Remix 22.04 LTS is now available, providing a pre-configured and ready-to-use desktop based on the mosaic compositor manager Sway. This distribution is an unofficial edition of Ubuntu 22.04 LTS, designed for both experienced GNU/Linux users and newcomers who want to try a tiling window manager environment without the need for extensive setup. Available for download […]

Release of the backup distribution Rescuezilla 2.4

The release of Rescuezilla 2.3, designed for system backup, recovery after failures, and diagnosis of various hardware issues, is now available. The distribution is based on the Ubuntu package base and continues the development of the 'Redo Backup & Rescue' project, which was discontinued in 2012. Live builds for 64-bit x86 systems (1GB) and a deb package for installation on Ubuntu are available for download. Rescuezilla […]

openSUSE developers discuss the cessation of support for ReiserFS.

Jeff Mahoney, the director of SUSE Labs, has submitted a proposal to the community for the discontinuation of support for the ReiserFS file system in openSUSE. The motivation mentions a plan to remove ReiserFS from the main kernel by 2025, stagnation in maintaining this file system, and the lack of reliability features offered by modern file systems to protect against data corruption in case of […]

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster