• irmadlad@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 month ago

    A separate vulnerability in Linux allows users with limited rights to escalate to root. Tracked as CVE-2026-43499, it lurked in the OS for 15 years. Researchers from Nebula Security said they discovered it using Vega, Nebula’s AI-assisted vulnerability scanner. Matt Lucas, a researcher and founder of RedEye Security, explained

    This will become more and more common as we use AI to find vulnerabilities faster (hopefully) than bad actors can use AI to find vulnerabilities.

  • vane@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    1 month ago

    If it was microsoft they would ban github and gitlab account and not give cve.

  • DarkCloud@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    edit-2
    1 month ago

    Linux’s “security through obscurity” was never going to last.

    Edit: it’s a common concept in hacking. Shorthand for a type of security through improbability.

    • atzanteol@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      0
      ·
      1 month ago

      The self-hosted crowd thinks reverse proxies protect you from the Internet. Don’t expect too much of them.