#Netfilter
Was adding a NAT rule to fix mail deliverability on my home server.
AI suggested a new package netfilter-persistent. I got excited
That's where I lost the game.
Turns out ufw and netfilter-persistent both packages want to own firewall-restore at boot, so apt resolves the conflict by removing one.
Omg Crying Cat
ALT: Omg Crying Cat
static.klipy.com
September 23, 2026 at 12:06 PM
bah oui.
c'est comme netfilter, quand tu sais pas trop où vont les paquets, tu utilises floufilter.
Dites, en cas de pluie, faut-il appeler #IPSec IPMouillé ?
Et tant qu’on y est, en Wi-Fi, faut-il appeler Wireguard Wifiguard ?
/me sort
November 28, 2025 at 8:15 PM
Please crack steam netfilter encryption key it would be so funny
January 13, 2025 at 4:37 PM
How Container Networking Works 🧵

1/6: Network namespaces (netns)

A separate network namespace gives a Linux container its own virtualized (and fully isolated from the host) network "context" - a loopback device, a route table, netfilter/iptables rules, etc.
January 10, 2025 at 12:23 PM
i should probably add support for new netfilter to my Steam MITM tool and then put it up on github
January 11, 2025 at 4:50 PM
hack3ric/flow: BGP flowspec executor (Flowspec implementation for Linux, including the Netfilter part)
github.com/hack3ric/flow
GitHub - hack3ric/flow: BGP flowspec executor
BGP flowspec executor. Contribute to hack3ric/flow development by creating an account on GitHub.
github.com
November 22, 2024 at 8:51 PM
oh does steam not use netfilter anymore by default boooo websockets are wokesockets
January 13, 2025 at 4:43 PM
Linux Kernel netfilter Vulnerability Let Attackers Escalate Privileges
Linux Kernel netfilter Vulnerability Let Attackers Escalate Privileges
cybersecuritynews.com
August 18, 2025 at 2:14 PM
CISA warns ransomware gangs exploit CVE-2024-1086, a Linux kernel flaw in
netfilter: nf_tables, introduced in 2014 and patched in Jan 2024.
securityaffairs.com/184076/secur...
Old Linux Kernel flaw CVE-2024-1086 resurfaces in ransomware attacks
CISA warns ransomware gangs exploit CVE-2024-1086, a Linux kernel flaw in netfilter: nf_tables, introduced in 2014 and patched in Jan 2024.
securityaffairs.com
November 1, 2025 at 1:15 PM
Ubuntu USN-8819-2 fixes Linux kernel CVE-2025-38724, CVE-2026-53131 and CVE-2026-53221 in NFS, IPv6 and Netfilter; affected hosts need the update. #software
September 25, 2026 at 12:13 PM
🟠 CVE-2026-97417 - High (7.5)

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_conntrack: use...

https://www.thehackerwire.com/vulnerability/CVE-2026-97417/

#infosec #cybersecurity #CVE #vulnerability #security #patchstack
September 25, 2026 at 7:33 AM
Well, the NT kernel (derived from the DEC kernel) was far far better than the Linux kernel for many years. It's still not quite as good, though it has caught up in many areas and even surpassed it in a few

For example, Linux only got a decent netfilter (nftables) in 2014
January 18, 2025 at 1:29 AM
🚨 EUVD-2026-86907
📊 n/a
🏢 Linux

📝 In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_conntrack_sip: fix OOB read in sip_skip_whitespace()

sip_skip_whitespace() ...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86907

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 11:03 AM
🚨 EUVD-2026-86030
📊 7.5/10
🏢 Linux

📝 In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack()

The timestamp-only fas...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86030

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 6:01 AM
🚨 EUVD-2026-86740
📊 7.0/10
🏢 Linux

📝 In the Linux kernel, the following vulnerability has been resolved:

netfilter: cttimeout: prevent UAF during module unload

nf_ct_set_timeout() protects th...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86740

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 4:03 PM
"Tracing (filtered) packets in the Linux networking stack, using eBPF probes and interfacing with control and data paths such as OvS or Netfilter"
GitHub - retis-org/retis: Tracing packets in the Linux networking stack & friends
Tracing packets in the Linux networking stack & friends - retis-org/retis
buff.ly
January 2, 2025 at 9:30 AM
you start with “i want to host a website” and somehow end up thinking about socket binding, netfilter hooks, conntrack state, NAT, routing tables, MTU, reverse path filtering and whether your ISP is sticking you behind CGNAT bro
September 24, 2026 at 6:19 AM
🚨 EUVD-2026-86739
📊 7.0/10
🏢 Linux

📝 In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_log: unregister loggers before per-net teardown

nf_log_syslog and nfnetl...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86739

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 4:03 PM
🚨 EUVD-2026-86167
📊 7.8/10
🏢 Linux

📝 In the Linux kernel, the following vulnerability has been resolved:

netfilter: nfnetlink_log: wait for rcu grace period before freeing pernet state

sashik...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86167

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 6:03 AM
🚨 EUVD-2026-87067
📊 n/a
🏢 Linux

📝 In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_nat_sip: rewind offset when NAT shrinks the packet

sashiko says:
If map_ad...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-87067

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 2:02 PM
Discover how Netfilter supports Linux's network security with packet filtering & NAT
#Linux #netfilter
Netfilter | The Backbone of Linux Packet Filtering 🚀🔥💡
Discover how Netfilter supports Linux's network security with packet filtering & NAT
hubandspoke.amastelek.com
March 4, 2025 at 11:31 AM