by George Whittaker Artificial intelligence has helped uncover one of the most significant Linux kernel security flaws in recent years. Security researchers at Nebula Security announced the discovery of GhostLock (CVE-2026-43499), a critical local privilege escalation vulnerability that remained hidden in the Linux kernel for approximately 15 years before being identified by the company's AI-powered vulnerability research platform, VEGA. The vulnerability affects Linux kernels dating back to version 2.6.39 (2011) and allows an unprivileged local user to obtain full root privileges on vulnerable systems. Its discovery not only highlights the importance of timely kernel updates but also demonstrates how AI is beginning to transform vulnerability research. What Is GhostLock? GhostLock is a use-after-free (UAF) vulnerability located in the Linux kernel's futex (fast userspace mutex) implementation. Futexes are synchronization primitives that allow user-space applications to efficiently coo
Blender 5.2 LTS open-source 3D graphics software is now available for download with new Fill tool, new Thin Wall mode, new Sample Sound node, a new Bevel node, and many other changes.
For those that were intrigued by the recent launch of the AMD Ryzen AI Halo developer platform with a very capable mini PC but looking for something more affordable and not needing quite as much horsepower or AI focus, BOSGAME recently launched their VTA-439 mini PC. The BOSGAME VTA-439 is powered by the AMD Ryzen AI 9 HX 470 with Radeon 890M graphics for those wanting still quite a capable mini PC that retails for around $1,049 USD while sporting 32GB of RAM and 1TB NVMe SSD storage.
The Maintainers Summit is an annual, invitation-only gathering of kernel developers and maintainers to discuss development-process issues; see LWN's 2025 Maintainers Summit coverage for an example. The call for topics for the 2026 gathering (Prague, October 8) has gone out. One of the best ways to obtain an invitation to the Summit is with a good topic proposal. For best consideration, topics should be submitted before July 24.
Tetragon, the BPF-based security monitoring tool, uses BPF to monitor different aspects of a running kernel and enforce user-specified policies. It sends its data to a user-space process, which forwards the data to a central monitoring service elsewhere in the network, however. This presents a point of vulnerability: if an attacker can kill Tetragon's user-space agent, it won't be able to properly report on the situation. Song Liu, Mahรฉ Tardy, and Liam Wiseheart spoke about their work removing the need for the user-space agent at the 2026 Linux Storage, Filesystem, Memory-Management, and BPF Summit.
System76 today announced their new Adder Pro laptop that they are promoting as the "gamer's dream machine" with its NVIDIA graphics, 2K OLED 500 nit display, up to 96GB RAM, and 3.37 lb weight...
Europeโs drive for digital sovereignty is reshaping how public agencies and regulated organizations choose, host, and govern open source platformsโfrom Drupal to Nextcloud. The post What Europeโs Digital Sovereignty Push Means for Open Source Platforms appeared first on FOSS Force.
There is yet-another-foundation being stewarded by the Linux Foundation that further broadens its scope outside of the typical Linux/open-source umbrella. Today the Linux Foundation announced the launch of the x402 Foundation for aiming to standardize Internet-native payments for AI agents and applications...