-

DinodasRAT Malware Targets Servers in Spy Campaign
Security researchers have observed Red Hat and Ubuntu systems being attacked by a Linux version of the DinodasRAT (also known as XDealer) that may have been operating since 2022. The Linux variant of the malware has not been described publicly, although the first version has been tracked to 2021. Cybersecurity company ESET has previously seen Read more
-

Timeline of the xz Open Source attack
Editor’s Note: Linking this very important post-mortem of how a malicious group of hackers created a backdoor on an important OS repository. Full source is at the bottom. Thanks to Kevin G. for sending this to us. Over a period of over two years, an attacker using the name “Jia Tan” worked as a diligent, Read more
-

Red Hat alerts Fedora on Malicious Code
Red Hat issues urgent alert for Fedora Linux users due to malicious code. In a recent security announcement, Red Hat’s Information Risk and Security and Product Security teams have identified a critical vulnerability in the latest versions of the “xz” compression tools and libraries. The affected versions, 5.6.0 and 5.6.1, contain malicious code that could Read more
-

Tails 6.1 Fixes More Bugs
Tails 6.1 Is Out to Mitigate the RFDS Intel CPU Vulnerabilities, Fix More Bugs.This release ships with Tor Browser 13.0.13 anonymous web browser and Mozilla Thunderbird 115.9.0 email and calendar client. The Tails 6.1 amnesic incognito live system, a portable operating system that protects you against surveillance and censorship, is now available for download as Read more
-

Huge Backdoor Could Compromise SSH logins
Updates required for Debian sid, Fedora 40, Fedora Rawhide, openSUSE Tumbleweed, and openSUSE MicroOS. Microsoft employee Andres Freund has shared finding odd symptoms in the xz package on Debian installations. Freund noticed that ssh login was requiring a lot of CPU and decided to investigate leading to the discovery. The vulnerability has received the maximum Read more
