Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

Linux

20 articles

SC Media general Linux Sep 3

Linux Threat Hunting - PSW #942

SC Media → Details

GBHackers general Linux Sep 3

Earth Berberoka-Linked Hackers Target Brazil With Linux Malware and SEO Poisoning

A Chinese-speaking cybercrime cluster linked to the Earth Berberoka threat actor has compromised Brazilian government and educational web servers to conduct ...

GBHackers → Details

GBHackers general Linux Sep 2

Singularity Rootkit Bypasses Elastic Defend eBPF Module Load Detection

Security researcher has disclosed a technique used by the Singularity Linux rootkit to evade Elastic Defend by suppressing module-load telemetry to avoid det...

T1598

GBHackers → Details

Elastic Security Labs research Linux Sep 1

Linux Detection Engineering - Fileless Execution

We reproduced five Linux fileless execution patterns with FENIX, including memfd_create staging, interpreter one-liners, deleted binaries, and in-memory kern...

Elastic Security Labs → Details

SC Media general Linux Aug 31

AI agent repeatedly escapes virtual machine in security test

During a test conducted by Trail of Bits researcher Artem Dinaburg, a preview version of GPT 5.6-Cyber was tasked with breaking out of a Debian 12 virtual ma...

SC Media → Details

Help Net Security general Linux Aug 31

Debian developers rejected an LLM ban and left disclosure voluntary

A maintainer reading a merge request can’t tell whether a person or a model wrote the diff, and nobody has to say. Debian developers voted on that through Au...

Help Net Security → Details

SecurityWeek general Linux Aug 28

OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems

CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exp...

1 IOC

SecurityWeek → Details

CISA Advisories advisories Linux Aug 27

CISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2023-49105 ownCl...

3 IOCs

CISA Advisories → Details

Trail of Bits research Linux AMD Aug 26

VMs won't contain cyber-capable agents

As part of Patch the Planet, we received preview access to GPT 5.6-Cyber with a simple task: evaluate its cyber capabilities.

Trail of Bits → Details

Infosecurity Magazine general Linux Aug 26

Linux Foundation Introduces TRACE Standard for AI Runtime Evidence

This new open standard offers hardware-attested runtime and compliance evidence for AI agents

Infosecurity Magazine → Details

GBHackers general Linux Aug 26

Linux Turns 35 as Open-Source Kernel Powers Global Critical Infrastructure

Linux has now reached 35 years old, serving as a reminder of the modern world’s reliance on an open-source kernel. On August 25, 1991, a 21-year-old student ...

GBHackers → Details

GBHackers general Linux NVIDIA Aug 25

AI-Assisted ToxNetV2 Linux Botnet Uses LLM to Generate Shell and SSH Commands

ToxNetV2, an AArch64 Linux peer-to-peer botnet, integrates a large language model into its controller workflow to turn botnet and host telemetry into propose...

GBHackers → Details

GBHackers general Linux Aug 24

RedC2 Turns Compromised Linux Machines Into SOCKS5 Proxies for Internal Network Pivoting

A cluster of trojanized npm packages is delivering the RedC2 4.0 Linux implant, providing operators with a pathway from a seemingly harmless dependency impor...

GBHackers → Details

Zero Day Initiative advisories Linux Aug 24

ZDI-26-609: Linux Kernel Net Scheduler Packet Classifier Use-After-Free Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

Zero Day Initiative advisories Linux Aug 24

ZDI-26-608: Linux Kernel KVM IOAPIC Use-After-Free Local Privilege Escalation Vulnerability

This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel. An attacker must first obtain the ability to exec...

T1548 T1068

Zero Day Initiative → Details

Security Affairs general Linux Aug 21

Your Shredded Visa Card May Still Work at the Checkout

UMass Amherst researchers showed expired Visa contactless cards can make real purchases by exploiting an unsigned expiry field in Visa’s EMV kernel.

Security Affairs → Details

GBHackers general Linux Aug 20

New Zombie Card Attack Lets Expired Visa Cards Make Contactless Payments

Security researchers have demonstrated a “Zombie Card” attack that can reactivate certain expired Visa contactless cards, allowing them to be used for NFC pa...

GBHackers → Details

Infosecurity Magazine general Linux Aug 19

Exclusive: Linux Foundation's Akrites to Go Live in September

The Linux Foundation's Akrites initiative will become operational in September, when it will begin accepting AI-powered vulnerability reports for open-source...

T1598

Infosecurity Magazine → Details

Exploit Database advisories Linux Aug 18

[webapps] Linuxfabrik monitoring_plugins_6.0.0 - SSRF

Linuxfabrik monitoring_plugins_6.0.

Exploit Database → Details

Infosecurity Magazine general Linux Aug 17

UNISOC Modem Flaw Enables Remote Code Execution via Video Calls

UNISOC modem flaw enabled kernel-level code execution through video calls

T1190

Infosecurity Magazine → Details

«Previous page 1 2 3 4 5 6 ... 9 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA