open-source security

Malware Detected Warning Screen

Open-source malware targets data exfiltration

Supply chain security company Sonatype has released the Q2 2025 edition of its Open Source Malware Index, uncovering 16,279 malicious open source packages across major ecosystem.

This brings the total number of open-source malware packages Sonatype has discovered to 845,204. Compared to the end of the same quarter last year, the total volume of malware logged by Sonatype has surged 188 percent, underscoring the growing sophistication and scale of attacks aimed at developers, software teams, and CI/CD pipelines.

By Ian Barker -
840D8FFE-94E6-466D-97D0-28D3CC1BE027

Kali Linux 2024.2 unleashed: Embracing the t64 transition and welcoming new tools

Kali Linux's latest release, version 2024.2, incorporates crucial updates and new community-contributed packages. Despite a slight delay due to extensive under-the-hood enhancements, the Kali team is excited to announce that version 2024.2 is now available for download or upgrade.

Key Updates in Kali Linux 2024.2

1. The t64 Transition: Securing Future Compatibility
The 2024.2 release introduces the t64 transition, an essential shift to 64-bit time_t types on supported 32-bit ARM architectures, safeguarding against the Year 2038 problem. This change ensures that Kali Linux remains a robust platform for future technologies and challenges.

By Brian Fagioli -
01DCE657-2BD9-47A3-9126-86D9E862C750

Red Hat issues urgent alert for Fedora Linux users due to malicious code

In a recent security announcement, Red Hat’s Information Risk and Security and Product Security teams have identified a critical vulnerability in the latest versions of the “xz” compression tools and libraries. The affected versions, 5.6.0 and 5.6.1, contain malicious code that could potentially allow unauthorized access to systems. Fedora Linux 40 users and those using Fedora Rawhide, the development distribution for future Fedora builds, are at risk.

The vulnerability, designated CVE-2024-3094, impacts users who have updated to the compromised versions of the xz libraries. Red Hat urges all Fedora Rawhide users to immediately cease using the distribution for both work and personal activities until the issue is resolved. Plans are underway to revert Fedora Rawhide to the safer xz-5.4.x version, after which it will be safe to redeploy Fedora Rawhide instances.

By Brian Fagioli -
betanews logo

We don't just report the news: We live it. Our team of tech-savvy writers is dedicated to bringing you breaking news, in-depth analysis, and trustworthy reviews across the digital landscape.

x logo facebook logo linkedin logo rss feed logo

© 1998-2025 BetaNews, Inc. All Rights Reserved.