Pretty crazy #openssl #heartbleed #security #patch #inbound that affects pretty much everything, including #tor https://xeiaso.net/blog/openssl-3.x-secv.. Jesus this will be bad. Tonnes of #embedded and #longterm #systems have zero possibility of #upgrading ...
Awesome #playstation #hack that appears to be difficult to #patch in the PS2 #emulator https://arstechnica.com/gaming/2022/09/c.. It looks like #sony don't have any interest in #fixing is either.
A *really* bad #linux #kernel #wifi #exploit #patch inbound, it has 5 #cve 's against it: https://lwn.net/Articles/911062/ No idea what it is, but it must be pretty bad for us to be getting pre- #warnings about it like this.
Interesting #ideas on #http #commands and #requests https://shkspr.mobi/blog/2022/09/some-ne.. #help for sure is required. #undo could theoretically be useful, but could also cause issues. I wasn't aware of #patch and #delete ! I wouldn't add #buy as I believe it would end up a #security #nightmare !
Ouch, an extremely #serious #linux #zeroday #backdoor in #modern #kernels called #dirtypipe https://www.bleepingcomputer.com/news/se.. Don't worry, a #patch is incoming: https://git.kernel.org/pub/scm/linux/ker..
Awesome, a new #linux #patch that #builds the #linux #kernel much #faster https://www.phoronix.com/scan.php?page=n..
@barray on Wed Dec 15 16:17:55 UTC 2021 said: &eInteresting, some people have written a #hotpatch for #apache 's #logger log4j where it purposely #injects a #patch into a #compromised #java #server https://github.com/corretto/hotpatch-for.. Very cool!I wrote a #coffeespace #article about the serious #java #log #bug #rce log4j the other day: https://coffeespace.org.uk/projects/log4.. I've seen people try to actively #exploit my #server ! There are some great #memes that have appeared as a result of this very real #security #issue https://log4jmemes.com/ Have a look through and give yourself a laugh!
8000 #security #vulnerabilities in 1200 #routers - most of which are #difficult to #patch or even #impossible https://modemly.com/m1/pulse This is why we desperately need more #opensource #routers ! I will never #buy a #closedsource #binaryblob #firmware router again. Madness.
Interesting #youtube #video #bug - although it's not entirely clear how it could be #exploited https://realkeyboardwarrior.github.io/se.. I guess it could be used in some kind of #ddos as it massively #multiplies the #effort their end has to do, but pretty easy for them to #patch ...