#root — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #root, aggregated by home.social.
-
Ein #Sicherheitsforscher hat wohl fast zwei Jahre lang unbemerkt die Systeme nordkoreanischer Hackergruppen wie #Lazarus mitgelesen.
Zentrale Erkenntnis: Die Cyberkriminellen attackieren oft nicht die Zielfirmen direkt, sondern kompromittieren IT-#Dienstleister, die in die Systeme mehrerer Kunden eingebunden sind.
Eine einzige erfolgreiche Übernahme öffnet damit oft #Root-Zugänge zu Servern und Cloud-Umgebungen zahlreicher Unternehmen auf einen Schlag:
https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/ #cybersecurity
-
Ein #Sicherheitsforscher hat wohl fast zwei Jahre lang unbemerkt die Systeme nordkoreanischer Hackergruppen wie #Lazarus mitgelesen.
Zentrale Erkenntnis: Die Cyberkriminellen attackieren oft nicht die Zielfirmen direkt, sondern kompromittieren IT-#Dienstleister, die in die Systeme mehrerer Kunden eingebunden sind.
Eine einzige erfolgreiche Übernahme öffnet damit oft #Root-Zugänge zu Servern und Cloud-Umgebungen zahlreicher Unternehmen auf einen Schlag:
https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/ #cybersecurity
-
Garden Gossip: Use year-round watering tactics for healthy trees | To Do https://www.allforgardening.com/1928851/garden-gossip-use-year-round-watering-tactics-for-healthy-trees-to-do/ #botany #deciduous #DiameterAtBreastHeight #GardeningWyoming #laramie #Pine #PinusNigra #PinusPonderosa #PlantLifeForms #plants #rain #Root #snow #soil #Spruce #tree #trees #water #Wind #wyoming
-
Garden Gossip: Use year-round watering tactics for healthy trees | To Do https://www.allforgardening.com/1928851/garden-gossip-use-year-round-watering-tactics-for-healthy-trees-to-do/ #botany #deciduous #DiameterAtBreastHeight #GardeningWyoming #laramie #Pine #PinusNigra #PinusPonderosa #PlantLifeForms #plants #rain #Root #snow #soil #Spruce #tree #trees #water #Wind #wyoming
-
A use-after-free bug in #Linux's #SCTP #networking #code can be turned into full #root on a host, and #Tencent researchers say they used it to escape a #container and reach the machine underneath.
The flaw has existed since 2008. The fix already shipped: stable kernels 7.1.6, 6.18.42, 6.12.101 and 6.6.148, released August 3, close it. Anyone running an older kernel with SCTP reachable should update.
https://thehackernews.com/2026/08/18-year-old-linux-sctp-flaw-could-let.html?m=1 -
A use-after-free bug in #Linux's #SCTP #networking #code can be turned into full #root on a host, and #Tencent researchers say they used it to escape a #container and reach the machine underneath.
The flaw has existed since 2008. The fix already shipped: stable kernels 7.1.6, 6.18.42, 6.12.101 and 6.6.148, released August 3, close it. Anyone running an older kernel with SCTP reachable should update.
https://thehackernews.com/2026/08/18-year-old-linux-sctp-flaw-could-let.html?m=1 -
🚨 Vulnerabilitate critică veche de 18 ani în kernelul Linux permite acces ROOT și evadare din containere!
A fost descoperită o breșă masivă de securitate în kernelul Linux care a rămas nedetectată timp de aproape două decenii. Aceasta le permite atacatorilor să obțină privilegii maxime de sistem (root) și să părăsească mediile izolate precum containerele Docker sau LXC (container escape).
✨ Detaliile vulnerabilității:
⚠️ Impact și vechime:
• Codul vulnerabil este prezent în kernelul Linux de 18 ani, afectând o gamă uriașă de distribuții, de la servere enterprise de producție până la medii de stocare, cloud și dispozitive bazate pe Linux.🔓 Privilege Escalation & Container Escape:
• Exploatarea permite unui utilizator local neautorizat (sau unui atacator care a compromis o aplicație dintr-un container) să treacă peste barierele de securitate ale kernelului, să obțină drepturi de root pe sistemul gazdă (host) și să acceseze datele altor containere sau ale sistemului principal.🛡️ Remediere și patch-uri:
• Echipa de dezvoltare a kernelului Linux și marii furnizori de distribuții (Red Hat, Ubuntu, Debian, SUSE) au lansat în regim de urgență patch-uri de securitate pentru a acoperi această breșă.🛠️ Ce trebuie să faci imediat?
Actualizează sistemul: Rulează o actualizare completă a pachetelor și a kernelului:
• Ubuntu/Debian: sudo apt update && sudo apt dist-upgrade
• RHEL/AlmaLinux/Rocky: sudo dnf updateRepornește serverul / sistemul: Pentru ca noul kernel patch-uit să fie încărcat în memorie, este necesară o repornire (sudo reboot).
O reamintire dură a faptului că chiar și codul matur și intens auditat din lumea open-source poate ascunde vulnerabilități critice pentru o perioadă lungă de timp! 🚀
#Linux #CyberSecurity #KernelVulnerability #Root #Docker #Containers #Linuxiac #TechNews #SysAdmin #OpenSource
-
🚨 Vulnerabilitate critică veche de 18 ani în kernelul Linux permite acces ROOT și evadare din containere!
A fost descoperită o breșă masivă de securitate în kernelul Linux care a rămas nedetectată timp de aproape două decenii. Aceasta le permite atacatorilor să obțină privilegii maxime de sistem (root) și să părăsească mediile izolate precum containerele Docker sau LXC (container escape).
✨ Detaliile vulnerabilității:
⚠️ Impact și vechime:
• Codul vulnerabil este prezent în kernelul Linux de 18 ani, afectând o gamă uriașă de distribuții, de la servere enterprise de producție până la medii de stocare, cloud și dispozitive bazate pe Linux.🔓 Privilege Escalation & Container Escape:
• Exploatarea permite unui utilizator local neautorizat (sau unui atacator care a compromis o aplicație dintr-un container) să treacă peste barierele de securitate ale kernelului, să obțină drepturi de root pe sistemul gazdă (host) și să acceseze datele altor containere sau ale sistemului principal.🛡️ Remediere și patch-uri:
• Echipa de dezvoltare a kernelului Linux și marii furnizori de distribuții (Red Hat, Ubuntu, Debian, SUSE) au lansat în regim de urgență patch-uri de securitate pentru a acoperi această breșă.🛠️ Ce trebuie să faci imediat?
Actualizează sistemul: Rulează o actualizare completă a pachetelor și a kernelului:
• Ubuntu/Debian: sudo apt update && sudo apt dist-upgrade
• RHEL/AlmaLinux/Rocky: sudo dnf updateRepornește serverul / sistemul: Pentru ca noul kernel patch-uit să fie încărcat în memorie, este necesară o repornire (sudo reboot).
O reamintire dură a faptului că chiar și codul matur și intens auditat din lumea open-source poate ascunde vulnerabilități critice pentru o perioadă lungă de timp! 🚀
#Linux #CyberSecurity #KernelVulnerability #Root #Docker #Containers #Linuxiac #TechNews #SysAdmin #OpenSource
-
[help] Kernel panic, unable to find root partition, what to do?
-
#Linux- #Dateisystem & #Root einfach erklärt (inkl. USB-Stick einbinden!)
Du steigst gerade bei #Linux ein und verstehst die #Ordnerstruktur nicht? Welcher Ordner macht was? Wo liegt mein #USB-Stick? Und was bedeutet dieses ominöse / (Root) eigentlich? 🐧
In diesem Video bringen wir endlich Licht ins Dunkel! Wir schauen uns die #Linux- #Ordnerstruktur verständlich an und demonstrieren das Ganze direkt am praktischen Beispiel: Einem USB-Stick.
-
#Linux- #Dateisystem & #Root einfach erklärt (inkl. USB-Stick einbinden!)
Du steigst gerade bei #Linux ein und verstehst die #Ordnerstruktur nicht? Welcher Ordner macht was? Wo liegt mein #USB-Stick? Und was bedeutet dieses ominöse / (Root) eigentlich? 🐧
In diesem Video bringen wir endlich Licht ins Dunkel! Wir schauen uns die #Linux- #Ordnerstruktur verständlich an und demonstrieren das Ganze direkt am praktischen Beispiel: Einem USB-Stick.
-
This is fun. A Chinese company that makes fairly generic WiFi routers and sells them under its own (multiple) brands as well as white-labelling them for many other companies to sell as "theirs", has shipped a backdoor on what appears to be every version of every model they've sold.
https://www.vulncheck.com/blog/zbt-endlessdoors
The backdoor itself is also laughably insecure, easily taken over by anyone who can intercept packets between the router and its command-and-control server, or who can cause the hardcoded domain names it used to resolve to an IP address under their control. TL;DR: this is very easy to exploit.
It is a deliberate remote root backdoor.
The company says "oh no, there's no security issue, you misunderstand" to the researcher that found this. However, they've taken all their downloadable firmware images offline to be updated for the security issue their PR people say doesn't exist.
And it is definitely, 100% deliberate and done in bad faith. The backdoor processes deliberately mislabel themselves as `kworker` processes to try to make anyone who sees them think they are Linux built-in kernel threads.
Worth a read.
#BackDoor #security #exploit #root #Chinesium #trust #network #hardware
-
This is fun. A Chinese company that makes fairly generic WiFi routers and sells them under its own (multiple) brands as well as white-labelling them for many other companies to sell as "theirs", has shipped a backdoor on what appears to be every version of every model they've sold.
https://www.vulncheck.com/blog/zbt-endlessdoors
The backdoor itself is also laughably insecure, easily taken over by anyone who can intercept packets between the router and its command-and-control server, or who can cause the hardcoded domain names it used to resolve to an IP address under their control. TL;DR: this is very easy to exploit.
It is a deliberate remote root backdoor.
The company says "oh no, there's no security issue, you misunderstand" to the researcher that found this. However, they've taken all their downloadable firmware images offline to be updated for the security issue their PR people say doesn't exist.
And it is definitely, 100% deliberate and done in bad faith. The backdoor processes deliberately mislabel themselves as `kworker` processes to try to make anyone who sees them think they are Linux built-in kernel threads.
Worth a read.
#BackDoor #security #exploit #root #Chinesium #trust #network #hardware
-
cPanel corrige falha crítica que permitia executar comandos de base de dados como root. A plataforma de gestão de alojamento cPanel disponibilizou atualizações de segurança para corrigir uma falha grave que permitia a utilizadores autenticados executar comandos na base de dados com privilégios de administrador. 🛡️
-
cPanel corrige falha crítica que permitia executar comandos de base de dados como root. A plataforma de gestão de alojamento cPanel disponibilizou atualizações de segurança para corrigir uma falha grave que permitia a utilizadores autenticados executar comandos na base de dados com privilégios de administrador. 🛡️
-
-
-
Никто не показывает, как стандарты ИБ связаны друг с другом поэтому пришлось собрать самому
OWASP, лаборатории, CVE, инструменты и патчи обычно живут в разных местах. Каждый раз собирать этот маршрут заново утомительно, поэтому и сделал RØØT — автономный полигон, который связывает всё в один процесс: понять → проверить → доказать → исправить → перепроверить
https://habr.com/ru/articles/1065380/
#кибербезопасность #AppSec #OWASP #CTF #API_Security #DevSecOps #CVE #CISA_KEV #open_source #root
-
Falha OVSwrap ameaça servidores Linux com acesso root e já tem exploit público. Uma vulnerabilidade crítica no kernel do Linux, batizada de OVSwrap (CVE-2026-64531), permite que utilizadores locais sem privilégios obtenham acesso total de root. 🚨
-
Falha OVSwrap ameaça servidores Linux com acesso root e já tem exploit público. Uma vulnerabilidade crítica no kernel do Linux, batizada de OVSwrap (CVE-2026-64531), permite que utilizadores locais sem privilégios obtenham acesso total de root. 🚨
-
Raíz de encina hacia flores de clavel rastrero.
https://eu.zonerama.com/bobfisherphoto/Photo/4755382/649153456
#fotografía #photography #flores #flowers #raiz #root #colors
-
Raíz de encina hacia flores de clavel rastrero.
https://eu.zonerama.com/bobfisherphoto/Photo/4755382/649153456
#fotografía #photography #flores #flowers #raiz #root #colors
-
RE: https://mastodon.social/@campuscodi/116985884020420822
Like all engineers I deal with imposter syndrome on occasion… and then I get subtle reminders I’m doing better than I thought.
#cve #sysadmin #root #linux #infosec #ssh #devops #PlatformEngineering #ImposterSyndrome
-
RE: https://mastodon.social/@campuscodi/116985884020420822
Like all engineers I deal with imposter syndrome on occasion… and then I get subtle reminders I’m doing better than I thought.
#cve #sysadmin #root #linux #infosec #ssh #devops #PlatformEngineering #ImposterSyndrome
-
Wondering why Tor Browser refuses to run with sudo? Learn what changes when you run it as root, why it's unsafe, and the correct way to launch it on Linux.
Full story here: https://ostechnix.com/never-run-tor-browser-with-sudo/
-
Wondering why Tor Browser refuses to run with sudo? Learn what changes when you run it as root, why it's unsafe, and the correct way to launch it on Linux.
Full story here: https://ostechnix.com/never-run-tor-browser-with-sudo/
-
Falha crítica no kernel do Linux expõe 16,4 milhões de sistemas a risco. Uma vulnerabilidade no RefluXFS (CVE-2026-64600) permite que um utilizador local sem privilégios obtenha acesso root sem ser detectado. 🚨
-
Falha crítica no kernel do Linux expõe 16,4 milhões de sistemas a risco. Uma vulnerabilidade no RefluXFS (CVE-2026-64600) permite que um utilizador local sem privilégios obtenha acesso root sem ser detectado. 🚨
-
Raíz caída en las corrientes de las claras aguas, del arroyo del Chorro.
https://eu.zonerama.com/bobfisherphoto/Photo/12994074/645221278
#fotografía #photography #paisaje #landscape #río #river #raíz #root #SierraDeGuadarrama #SanMamés #Madrid
-
Raíz caída en las corrientes de las claras aguas, del arroyo del Chorro.
https://eu.zonerama.com/bobfisherphoto/Photo/12994074/645221278
#fotografía #photography #paisaje #landscape #río #river #raíz #root #SierraDeGuadarrama #SanMamés #Madrid
-
Pas d’argent pour augmenter les salaires des fonctionnaires ! Vraiment ? https://solidairesfinancespubliques.org/le-syndicat/actions/7515-pas-dargent-pour-augmenter-les-salaires-des-fonctionnaires-vraiment.html #Lesyndicat #Épinglé #Actions #ROOT
-
Pas d’argent pour augmenter les salaires des fonctionnaires ! Vraiment ? https://solidairesfinancespubliques.org/le-syndicat/actions/7515-pas-dargent-pour-augmenter-les-salaires-des-fonctionnaires-vraiment.html #Lesyndicat #Épinglé #Actions #ROOT
-
Advice on helping gardens survive summer heat | Daily Democrat, Fort Madison, Iowa https://www.allforgardening.com/1877379/advice-on-helping-gardens-survive-summer-heat-daily-democrat-fort-madison-iowa/ #agriculture #archaeplastida #botany #flower #garden #gardening #Heat #horticulture #irrigation #Kingdoms(biology) #moisture #plant #PlantAgriculture #plants #PlantsAndHumans #Root #soil #SoilMoisture #Stress(biology) #temperature #Vegetable #water
-
Advice on helping gardens survive summer heat | Daily Democrat, Fort Madison, Iowa https://www.allforgardening.com/1877379/advice-on-helping-gardens-survive-summer-heat-daily-democrat-fort-madison-iowa/ #agriculture #archaeplastida #botany #flower #garden #gardening #Heat #horticulture #irrigation #Kingdoms(biology) #moisture #plant #PlantAgriculture #plants #PlantsAndHumans #Root #soil #SoilMoisture #Stress(biology) #temperature #Vegetable #water
-
CV et lettre de motivation : des outils de discrimination ? https://solidairesfinancespubliques.org/vie-des-agents/carriere/promotion-selection/7514-cv-et-lettre-de-motivation-des-outils-de-discrimination.html #Promotion-Sélection #Viedesagents #Carrière #Épinglé #ROOT
-
CV et lettre de motivation : des outils de discrimination ? https://solidairesfinancespubliques.org/vie-des-agents/carriere/promotion-selection/7514-cv-et-lettre-de-motivation-des-outils-de-discrimination.html #Promotion-Sélection #Viedesagents #Carrière #Épinglé #ROOT
-
🚨 Oh, look! Another #security bulletin! 🎉 Apparently, #Tailscale is handing out #root #access like candy with their *super secure* #SSH feature. But don't worry, they'll make it all better at #TailscaleUp, where you'll learn to put out fires 🔥 you didn't start. 🙄
https://tailscale.com/security-bulletins #Vulnerability #Cybersecurity #Issues #HackerNews #ngated -
🚨 Oh, look! Another #security bulletin! 🎉 Apparently, #Tailscale is handing out #root #access like candy with their *super secure* #SSH feature. But don't worry, they'll make it all better at #TailscaleUp, where you'll learn to put out fires 🔥 you didn't start. 🙄
https://tailscale.com/security-bulletins #Vulnerability #Cybersecurity #Issues #HackerNews #ngated -
How To Calculate Square or Cube Root Easier? Math Secrets https://www.youtube.com/watch?v=-w6HYp3OvGw 💡👨🏫➕➖🟰✖️➗ #Calculate #Square #Cube #Root #Math
-
How To Calculate Square or Cube Root Easier? Math Secrets https://www.youtube.com/watch?v=-w6HYp3OvGw 💡👨🏫➕➖🟰✖️➗ #Calculate #Square #Cube #Root #Math
-
How To Calculate Square or Cube Root Easier? Math Secrets https://www.youtube.com/watch?v=-w6HYp3OvGw/ 💡👨🏫➕➖🟰✖️➗ #Calculate #Square #Cube #Root #Math
-
How To Calculate Square or Cube Root Easier? Math Secrets https://www.youtube.com/watch?v=-w6HYp3OvGw/ 💡👨🏫➕➖🟰✖️➗ #Calculate #Square #Cube #Root #Math