Linuxgram 🐧
72.8K subscribers
1.02K photos
5 files
18.5K links
News and info from the Linux world 🐧
πŸ“¨ linuxgr4m@gmail.com πŸ“¨

πŸ’Έ If you want to support Linuxgram❀️ 🐧
- BTC: 15aVLQeNY18VAaoBXPgLFA4wfwJnecbjC1
Download Telegram
πŸ“° Nginx Proxy Manager 2.15 Brings Debian 13 Base and Security Fixes

Nginx Proxy Manager 2.15 updates Debian, OpenResty, Certbot, Python, and Node dependencies, with caution advised before upgrading.

πŸ”— Source: https://linuxiac.com/nginx-proxy-manager-2-15-brings-debian-13-base-and-security-fixes/

#debian #nginx #python
πŸ‘21❀5
πŸ“° Hades PyPI Attack: 19 Packages Poisoned to Auto-Run Bun Credential Stealer

The Miasma supply chain campaign has sparked a fresh attack wave called Hades, this time involving 37 malicious wheel artifacts across 19 packages in the Python Package Index (PyPI) registry, as the Mini Shai-Hulud-style attacks continue to be refined and splintered to target specific ecosystems."The compromised releases shipped a *-setup.pth file that attempts to execute automatically.

πŸ”— Source: https://thehackernews.com/2026/06/hades-pypi-attack-19-packages-poisoned.html

#python
😱17😒2
πŸ“° GraalVM CE 25.1.3 Gets Native Image "Hello World" Program Down To <em>Just</em> 6.5MB

GraalVM, the advanced JDK focused on ahead-of-time (AOT) Native Image compilation and since last year began shifting focus to more non-Java languages like Python and JavaScript, is out with its newest community feature release. GraalVM Community Edition 25.1.3 is now available with some interesting changes in tow...

πŸ”— Source: https://www.phoronix.com/news/GraalVM-Community-25.1.3

#python
πŸ‘14πŸ’©5❀1
πŸ“° New ChocoPoC RAT Targets Vulnerability Researchers via Fake PoC Exploit Repos

Attackers are hiding a data-stealing trojan inside fake exploit code aimed at the people who hunt bugs for a living. The malware, called ChocoPoC, travels in Python proof-of-concept (PoC) repositories on GitHub that claim to exploit hot new CVEs.Run one, and it quietly lifts your saved passwords, browser cookies, and files, then hands the attacker a shell on your machine. YesWeHack and.

πŸ”— Source: https://thehackernews.com/2026/07/new-chocopoc-rat-targets-vulnerability.html

#python
πŸ”₯12πŸ‘5
πŸ“° Home Assistant quietly rewrote its Matter server from Python to TypeScript β€” here's what changed

The biggest Matter upgrade in years doesn't add a single feature.

πŸ”— Source: https://www.xda-developers.com/home-assistant-quietly-rewrote-its-matter-server-from-python-to-typescript-heres-what-changed/

#python
😱15πŸ’©10πŸ‘8πŸ”₯5❀1
πŸ“° Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent

Google deleted three AI agent workflows from its Agent Development Kit (ADK) Python repository. Pillar Security showed that a public GitHub issue could manipulate a triage agent into triggering a privileged code-fixing agent.The researchers said the public agent could be prompt-injected into posting /adk-issue-fix as adk-bot. They identified the bot as a collaborator, so that comment satisfied.

πŸ”— Source: https://thehackernews.com/2026/08/google-deletes-3-adk-ai-workflows-after.html

#python
πŸ‘18πŸ’©6
πŸ“° Mojo 1.0 Programming Language Officially Released

Modular releases Mojo 1.0, delivering a stable foundation, Python-style lambdas, improved LSP support, and stronger memory-safety diagnostics.

πŸ”— Source: https://linuxiac.com/mojo-1-0-programming-language-officially-released/

#python
πŸ’©26πŸ‘19
πŸ“° CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.Ray is an open-source, Python-native distributed computing framework designed to scale artificial intelligence and machine learning workloads. As of writing, the GitHub project has more than.

πŸ”— Source: https://thehackernews.com/2026/08/cisa-flags-actively-exploited-ray-flaw.html

#opensource #python
😱10πŸ”₯4❀2πŸ‘Ž1πŸ’©1
πŸ“° Postcard is a new email client for GNOME, built with AI

Postcard is a new email client for GNOME that has echoes of Geary The app is the work of a solo developer, gxanshu on GitHub, who is upfront about using AI coding tools to bring this β€œmodern mail client” to life. Postcard is written in Python with GTK4/libadwaita. It uses imaplib and smtplib for networking, a local SQLite index for searching, WebKitGTK for rendering HTML and libsecret for keeping passwords safe.

πŸ”— Source: https://www.omgubuntu.co.uk/2026/08/postcard-gnome-email-client

#gnome #python
πŸ’©61❀5πŸ‘2πŸ”₯1