#CVEs

2026-01-12

New #KDE apps, critical #CVEs, kernel updates, ethical #AI debates, #Linux tips, and seamless Windows apps on Tumbleweed. Don’t miss the latest roundup from Planet #openSUSE. news.opensuse.org/2026/01/09/p

N-gated Hacker Newsngate
2026-01-02

The illustrious Greg KH finally reveals the mystical sorcery behind Linux kernel 🎩✨, because who doesn't love a riveting saga about that nobody asked for 🤷‍♂️? Watch as he valiantly attempts to explain the unknowable to the already uninterested—again. 💤🔐
kroah.com/log/blog/2026/01/02/

2025-12-02

Qualcomm has detailed six high-priority vulnerabilities — including a critical secure boot flaw (CVE-2025-47372). Additional issues affect TZ Firmware, HLOS components, DSP, audio, and camera modules.

OEMs are receiving patches and users may need to check manufacturer timelines for deployment.
Follow us for more non-sensationalized security reporting.

Source: gbhackers.com/qualcomm-alerts-

#Infosec #Qualcomm #SecureBoot #FirmwareSecurity #ThreatIntel #TechNadu #CVEs #DeviceSecurity

Qualcomm Alerts Users to Critical Flaws That Compromise the Secure Boot Process
2025-11-24

#OBS 2.10.29 is out. There are #security updates you shouldn’t skip. Multiple #CVEs were addressed in #RubyGem. If you’re running your own instance, update as soon as possible. openbuildservice.org/download/

2025-10-25

NVD Delays Leave Defenders in the Dark — Early Visibility is Key
Tenable’s recent analysis shows a worrying pattern in vulnerability disclosure timing:
- 63,862 CVEs from 2024–2025
- 56% of PoCs released within 7 days
- NVD lagging by ~15 days
- Exploitation confirmed in as little as 5 days
This gap between CVE assignment, PoC publication, and NVD visibility creates exploitable blind spots for enterprises relying on traditional patch cycles.
💬 Security leaders - how do you bridge these gaps? Do you trust vendor advisories, exploit feeds, or telemetry-driven signals more?

👍 Like and follow @technadu for continuous coverage of emerging vulnerability management insights.

#InfoSec #CyberSecurity #VulnerabilityManagement #ThreatIntel #NVD #Exploit #RiskIntel #Tenable #CVEs #CyberDefense #ZeroDay #CVETracking #VulnDisclosure #TechNadu

risk
2025-10-08

bun.com/docs/install/security- - use #Bun's package scanner to protect against known #CVEs during `bun add` and `bun install`

DROP\ TABLE Hacker of EarthseaChickenPwny@infosec.exchange
2025-10-01

this whole time i could of downloaded all the #cves lol

#memes
me:

2025-09-12

August Tumbleweed includes fixes for several #CVEs. This like #GnuTLS heap overflows, and #PostgreSQL code execution. Roll and stay protected. news.opensuse.org/2025/09/02/t

Eric The IT Guyitguyeric
2025-09-04

Patch-aware and why you should care! Yes, it rhymes, and yes, it matters. Check out my new blog about Radar vulnerability scanning! tuxcare.com/blog/what-is-patch

Hacker Newsh4ckernews
2025-08-27

Regolith – Regex library that prevents ReDoS CVEs in TypeScript

github.com/JakeRoggenbuck/rego

Anupam MishraAnupam002
2025-08-13

Did you know?

The average cost of a data breach in the U.S. hit $9.36 million in 2024. Secure OS or not, no system survives poor patch hygiene.

(Common Vulnerabilities and Exposures) aren’t just random codes floating on the internet.

But the fix is simple — Timely updates. Swift Zero excuses.

Check out the blog to uncover:
Why delayed CVE updates lead to breaches

blog.scalefusion.com/macos-cve

2025-07-30

Palo Alto: “LOL, we fixed 24 vulns in a random Tuesday update with no CVE alert. Why are you panicking?”

security.paloaltonetworks.com/

  • No alerts
  • No heads-up

Just a stealth patch buried in the advisory feed.

The stats:

  • 24 total CVEs
  • 11 High, 11 Medium
  • 100% discovered externally
  • Average patch delay: 4 FUCKING years for high severity

All bundled into one advisory.
Welcome to the Patch Gacha Machine:
Spin once, fix 24 vulnerabilities (maybe).

PAN CVEs age like wine… and compromise like whiskey.

#PANOS #CyberSecurity #CVEs #PatchAndPray #SilentFixes #PSIRTFail #MemeSec #BlueTeamLife #TrustButVerify

Discover the true cost of CVEs & why moving beyond vulnerabilities is a MUST for effective cybersecurity! jpmellojr.blogspot.com/2025/07 #Cybersecurity #CVEs #SecurityPrioritization #DevSecOps #Vulnerabilities

Anonymous 🐈️🐾☕🍵🏴🇵🇸 :af:youranonriots@kolektiva.social
2025-07-03

June’s #Tumbleweed update addresses #CVEs in libsoup, Firefox, #Python, libssh, #ClamAV, GDM, Salt & more. Keeping your system safe. Ensure you update and use snapper for peace-of-mind rollbacks. Stay secure! #opensource #openSUSE #Linux news.opensuse.org/2025/07/03/t

2025-07-03

June’s #Tumbleweed update addresses #CVEs in libsoup, Firefox, #Python, libssh, #ClamAV, GDM, Salt & more. Keeping your system safe. Ensure you update and use snapper for peace-of-mind rollbacks. Stay secure! #opensource #openSUSE #Linux news.opensuse.org/2025/07/03/t

N-gated Hacker Newsngate
2025-06-14

Ah, the eternal struggle of transforming core dumps into a never-ending flow of 😱. LWN.net bravely tackles this "urgent" issue with their subscriber-only content because nothing screams like bug reports 🤦‍♂️. Remember, dear reader, subscribing might just be the key to unlocking the secrets of dump management! 💼✨
lwn.net/SubscriberLink/1024160

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst