Agregátor RSS

Linux From Scratch 13.1

AbcLinuxu [zprávičky] - 2 Září, 2026 - 16:15
Příručka Linux From Scratch pro sestavení základního linuxového systému byla aktualizována v pravidelném půlročním termínu. Vydání 13.1 shrnuje přes 40 nových verzí balíčků a několik patchů. Navazující příručka Beyond Linux From Scratch s recepty pro sestavení dalších knihoven a aplikací zatím vydána nebyla, ačkoliv vývojová verze stále dostává aktualizace. Lze je číst online nebo stáhnout v HTML či PDF.
Kategorie: GNU/Linux & BSD

K Merkuru se blíží BepiColombo. Už brzy se stane jeho teprve druhou umělou oběžnicí v historii. Manévr trval osm let

Živě.cz - 2 Září, 2026 - 16:13
Evropsko-japonská sonda BepiColombo přilétá k Merkuru • Postupně bude navedena na oběžnou dráhu planety • Let trval dlouhých osm let
Kategorie: IT News

Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code

The Hacker News - 2 Září, 2026 - 16:06
Manifold Security has disclosed eight security flaws across seven command-line AI coding agents in which a repository's own Git configuration names a command that the agent runs on the developer's machine, four of them still unpatched at publication. The command executes as the user, outside the agent's sandbox and without an approval prompt, and exploitation requires the repository to arrive
Kategorie: Hacking & Security

Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code

The Hacker News - 2 Září, 2026 - 16:06
Manifold Security has disclosed eight security flaws across seven command-line AI coding agents in which a repository's own Git configuration names a command that the agent runs on the developer's machine, four of them still unpatched at publication. The command executes as the user, outside the agent's sandbox and without an approval prompt, and exploitation requires the repository to arrive Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Ransomware protection for MSPs: A 6-point checklist for faster recovery

Bleeping Computer - 2 Září, 2026 - 16:02
Ransomware resilience requires more than backups or endpoint detection alone. Acronis outlines six capabilities MSPs should test across client environments, from reducing exposure and detecting attacks to preserving recovery points and restoring operations quickly. [...]
Kategorie: Hacking & Security

Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages

The Hacker News - 2 Září, 2026 - 15:44
A Chinese-speaking cybercrime cluster known as Gambling Goblin has been observed installing malicious Apache modules on compromised web servers run by Brazilian government and educational institutions, and using them to divert visitors to attacker-controlled pages promoting online gambling and sports betting. Check Point Research said it has tracked the campaign since mid-2025. The modules
Kategorie: Hacking & Security

Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages

The Hacker News - 2 Září, 2026 - 15:44
A Chinese-speaking cybercrime cluster known as Gambling Goblin has been observed installing malicious Apache modules on compromised web servers run by Brazilian government and educational institutions, and using them to divert visitors to attacker-controlled pages promoting online gambling and sports betting. Check Point Research said it has tracked the campaign since mid-2025. The modules Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Tenhle otočný držák na monitor vám na stole ušetři spoustu místa. Dá se koupit jen za 559 Kč

Živě.cz - 2 Září, 2026 - 15:15
Držák AlzaErgo Arm SE10 Pylon je nyní v akci za 559 Kč, místo běžných 799 Kč. • Ušetří místo na stole a umožňuje monitorem plně polohovat. • Alza má v akci i jiné modely s více rameny a dalšími funkcemi.
Kategorie: IT News

BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access

The Hacker News - 2 Září, 2026 - 15:12
Virtualizor said hackers used a Border Gateway Protocol (BGP) hijack to divert Softaculous traffic. The hackers then used the diverted update traffic to deliver a malicious Virtualizor package to some installations. A hosting-provider account separately said 5 of its 34 checked Virtualizor hypervisors sustained root-level compromise. The incident window ran from approximately August 28 at 20:57
Kategorie: Hacking & Security

BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access

The Hacker News - 2 Září, 2026 - 15:12
Virtualizor said hackers used a Border Gateway Protocol (BGP) hijack to divert Softaculous traffic. The hackers then used the diverted update traffic to deliver a malicious Virtualizor package to some installations. A hosting-provider account separately said 5 of its 34 checked Virtualizor hypervisors sustained root-level compromise. The incident window ran from approximately August 28 at 20:57Swati Khandelwalhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Google smazal z Chrome Web Store řadu rozšíření využívajících Manifest V2. Zmizel i uBlock Origin

Zive.cz - bezpečnost - 2 Září, 2026 - 14:45
** Google z obchodu Chrome vymazal všechna rozšíření staré architektury Manifest V2 ** Odinstalované doplňky již znovu nestáhnete a staré verze brzy přestanou fungovat ** Nová pravidla nejvíce omezují pokročilé blokátory obsahu typu uBlock Origin
Kategorie: Hacking & Security

Google smazal z Chrome Web Store řadu rozšíření využívajících Manifest V2. Zmizel i uBlock Origin

Živě.cz - 2 Září, 2026 - 14:45
Google z obchodu Chrome vymazal všechna rozšíření staré architektury Manifest V2 • Odinstalované doplňky již znovu nestáhnete a staré verze brzy přestanou fungovat • Nová pravidla nejvíce omezují pokročilé blokátory obsahu typu uBlock Origin
Kategorie: IT News

Dropbox accounts breached through Lenovo email verification flaw

Bleeping Computer - 2 Září, 2026 - 14:30
Dropbox is warning some users that an unauthorized party accessed their accounts by exploiting a flaw in Lenovo's email verification process to register fraudulent Lenovo IDs. [...]
Kategorie: Hacking & Security

Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control

The Hacker News - 2 Září, 2026 - 14:22
Cybersecurity researchers have disclosed details of a new Android banking trojan called StreamRat that was promoted to Spanish-speaking users through a fake television-streaming campaign on Meta and can give operators near-complete control of infected devices. ThreatFabric said the campaign's advertisement focused on Spain and reached an estimated 570,950 Meta accounts in the European Union
Kategorie: Hacking & Security

Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control

The Hacker News - 2 Září, 2026 - 14:22
Cybersecurity researchers have disclosed details of a new Android banking trojan called StreamRat that was promoted to Spanish-speaking users through a fake television-streaming campaign on Meta and can give operators near-complete control of infected devices. ThreatFabric said the campaign's advertisement focused on Spain and reached an estimated 570,950 Meta accounts in the European Union [email protected]
Kategorie: Hacking & Security

Žádné nové úřady, žádná plošná pravidla pro AI. USA s podporou Elona Muska tlačí na Evropu

Živě.cz - 2 Září, 2026 - 13:38
V úterý 1. září se v Severní Karolíně sešli ministři zemí G20, aby jednali o inovacích. Zasedání pořádaly Spojené státy jako předsednická země a předložily tam nezávazný dokument Carolina Principles se třemi závazky: Investovat do základního výzkumu Posilovat komerční příležitosti pro umělou ...
Kategorie: IT News

How to Secure Enterprise AI: From Adoption to Incident Readiness

The Hacker News - 2 Září, 2026 - 13:30
The debate about whether AI delivers business value is over. The challenge now is implementing it at scale and securely across every function while meeting board-level pressure to move fast. Organizations must focus on adopting AI at business speed without losing control of cyber risk. Download the full eBook here.  The Business Reality  In Sygnia’s 2026 CISO Survey Report, which
Kategorie: Hacking & Security

How to Secure Enterprise AI: From Adoption to Incident Readiness

The Hacker News - 2 Září, 2026 - 13:30
The debate about whether AI delivers business value is over. The challenge now is implementing it at scale and securely across every function while meeting board-level pressure to move fast. Organizations must focus on adopting AI at business speed without losing control of cyber risk. Download the full eBook here.  The Business Reality  In Sygnia’s 2026 CISO Survey Report, which [email protected]
Kategorie: Hacking & Security

BGP hijack infecting networks caused by a comedy of errors that’s not funny at all

Ars Technica - 2 Září, 2026 - 13:00

Hackers carried out a supply chain attack that installed malware on networks using an unusual technique: hijacking a chunk of Internet space where cloud management software used by hosting providers, data centers, and other large infrastructure companies is updated.

In a well-coordinated operation, the unknown attackers exploited weaknesses in the routing security setup of hosting provider Hetzner Online and the process for attaining valid TLS certificates. The lapses allowed the attackers to successfully perform a BGP (Border Gateway Protocol) hijacking to obtain control over IP addresses assigned to Softaculous. The company, based in the United Arab Emirates, is the maker of a platform for installing and managing Web software and is the developer of Virtualizor, a management platform for virtualized environments.

Softaculous used the IPs to issue updates and host a client and billing site. With control over the hijacked space, the attacker was now using the addresses to push malware masquerading as updates to unsuspecting users.

Read full article

Comments

Syndikovat obsah