» Tag
linux
134 postsFour Long-Standing Linux Kernel Local Root Flaws Disclosed
Four decade-old Linux kernel local root flaws — DirtyAH6, TUNderflow, PPPoEject, DiagSpill — are now public, with PoCs and stable-tree fixes released.
Linux Page Cache Vulnerability via TC Pedit: A New Exploit
Discover the Linux TC Pedit page cache exploit enabling root access. Learn about the vulnerability and its fix.
The Hidden Risk of Giving LLM Agents Terminal Access
Giving autonomous AI agents shell access can wreck your filesystem. Open-source rewind-sdk uses OverlayFS to enable millisecond-fast checkpoints and rollbacks.
CommitBrief — AI code reviews, right in your terminal
A provider-agnostic, local-first CLI that reviews your staged changes, a historic range, or a whole GitHub pull request. Zero telemetry, no server. Free and open source.
commitbrief.comFake Express Packages on NPM Spread Linux Worm
Fake Express packages on NPM spread a Linux worm, posing a significant security risk for engineers.
Engineers Reverse-Engineer a Linux GPU Driver for Apple's M4 in One Month
Two engineers built a clean-room Linux GPU driver for Apple's M4 chip in about a month using AI-assisted reverse engineering, hitting 200fps in Minecraft.
Meta Cuts Ads Latency With Open-Source sched_ext Kernel Scheduler
Meta used the open-source sched_ext BPF scheduler to fix a kernel-upgrade latency regression, cutting p99 latency 28% and saving 3.28MW fleet-wide.
New Linux benchmark tests corruption, snapshots, rebuilds on 26 layouts
Open-source Linux benchmark tests btrfs, ZFS, bcachefs, ext4 and XFS across 26 configs for corruption, snapshots, rebuilds and ENOSPC handling.
LLM-Assisted Formal Verification Uncovers Two Critical nftables Bugs
Basis used LLM-guided formal verification in Rocq to audit Linux's nftables optimizer, uncovering two critical bugs since 2022.
File-Notification APIs Leak User Activity Across Linux, Android, Windows, macOS
CCS 2026 research shows file-notification APIs on Linux, Android, Windows, and macOS leak user activity by bypassing intended permission boundaries.
NixOS Study Extends Trusting-Trust Backdoor Attack Beyond Compilers
New research shows Thompson's trusting-trust attack works via GNU strip, not just compilers, silently backdooring NixOS package builds.