How a “Dirty Frag” Bug Gives Hackers Root Access

How a “Dirty Frag” Bug Gives Hackers Root Access

Video by TWiT Tech Podcast Network via YouTube
How a “Dirty Frag” Bug Gives Hackers Root Access

A new Linux kernel bug called Dirty Frag lets attackers easily go from user to root! Here’s why it matters and what you should do right now. More handy Linux tips on the Untitled Linux Show!

You can find more about TWiT and subscribe to our full shows at https://podcasts.twit.tv
Subscribe: https://twit.tv/subscribe

Products we recommend: https://www.amazon.com/shop/twitnetcastnetwork
TWiT may earn commissions on certain products.

Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free shows, a members-only Discord, and behind-the-scenes access.
Join today: https://twit.tv/clubtwit

Join our TWiT Community on Discourse: https://www.twit.community/

Follow us:
– Bluesky: https://bsky.app/profile/twit.tv
– X: https://x.com/twit
– Mastodon: https://mastodon.social/@twit
– Facebook: https://www.facebook.com/TWiTNetwork
– Instagram: https://www.instagram.com/twit.tv
– TikTok: https://www.tiktok.com/@twittok
– LinkedIn: https://www.linkedin.com/company/twit-llc
#security #linux #cybersecurity
About us:
TWiT.tv is a technology podcasting network located in the San Francisco Bay Area with the #1 ranked technology podcast This Week in Tech hosted by Leo Laporte. Every week we produce over 30 hours of content on a variety of programs including Tech News Weekly, MacBreak Weekly, Windows Weekly, Security Now, Intelligent Machines, and more.

Source

FlexAI: Bridging Open Source AI & Enterprise on AWS, Ian Choi, Hantzley Tauckoor #FOSSASIASummit2026

FlexAI: Bridging Open Source AI & Enterprise on AWS, Ian Choi, Hantzley Tauckoor #FOSSASIASummit2026

Video by FOSSASIA via YouTube
FlexAI: Bridging Open Source AI & Enterprise on AWS, Ian Choi, Hantzley Tauckoor #FOSSASIASummit2026

Many organizations want to use open source AI tools like Kubernetes, Kubeflow, and PyTorch—but struggle with scaling and operational complexity. This lightning talk introduces AWS FlexAI, a practical approach to running open source AI workloads on AWS while maintaining flexibility and avoiding vendor lock-in.

Learn how enterprises in Asia deploy production-ready AI platforms using Kubernetes and open source tools, optimize infrastructure costs, and scale efficiently. We’ll also explore hybrid AI architectures that combine self-managed models with AWS services like Amazon Bedrock and SageMaker.

Perfect for teams adopting or scaling open source AI, this session provides real-world insights and a clear roadmap for building flexible, cost-effective AI systems in the cloud.

FOSSASIA Summit 2026 held in Bangkok, is Asia’s leading Open Source tech conference featuring sessions on #AI, #Cloud, #DevOps, #Open Hardware, #Security, #Web #Mobile Technologies, #Web3, and #Databases. Learn more: http://summit.fossasia.org

Session slides: https://eventyay.com/e/88882f3e/session/10397

#FOSSASIA #FOSSASIASummit #opensource #FOSS

Source

CNCF: Uniting the cloud native ecosystem

CNCF: Uniting the cloud native ecosystem

Video by CNCF [Cloud Native Computing Foundation] via YouTube
CNCF: Uniting the cloud native ecosystem

Building a cloud native stack used to start and end with Kubernetes. But as the ecosystem grew, so did the complexity of managing all the moving parts. 🛠️

The CNCF was built to bring it all together. Here’s how the community is actually helping teams collaborate:
* Governance & Policies: Providing a neutral home for open source projects so they can scale sustainably.
* Mentorship Programs: Programs like LFX and GSoC bridge the gap between maintainers and new contributors.
* Cross-Project Collaboration: Breaking down silos so different teams can build cohesive architectures.

Whether you’re a maintainer or just starting your cloud native journey, there’s a seat at the table. 🤝

Source

When AI is the Bleeding Cut Technology in XR – James Ashley, Steelblue

When AI is the Bleeding Cut Technology in XR - James Ashley, Steelblue

Video by FINOS via YouTube
When AI is the Bleeding Cut Technology in XR - James Ashley, Steelblue

On the APS30F Zenith Call, James Ashley shares his XR background from Kinect and HoloLens through Magic Leap, Walmart, CVS, Fidelity, and SteelBlue, with recent work focused on Apple Vision Pro since late 2023. The discussion argues XR momentum is shifting from feature-heavy headsets back toward lighter glasses, influenced by devices like Ray-Ban glasses and a growing focus on comfort. They explore how AI coding could accelerate XR by making difficult mixed reality development easier, enabling faster iteration and reducing barriers to building apps, though market economics and small device adoption still limit investment. James suggests killer apps must deliver unique value beyond porting phone experiences, highlights Apple’s SharePlay infrastructure while noting shared experiences are complex, and proposes education-focused 3D learning (e.g., making quaternions intuitive) as promising. They debate isomorphic vs infographic-style UI, discuss VR’s focus benefits for training, and describe Blender MCP as a powerful AI-to-app integration that can rapidly generate and refine 3D scenes and even update tooling.

Learn more about Zenith: https://zenith.finos.org

🌐 More about FINOS: https://www.finos.org/
📧 Join our newsletter: https://www.finos.org/sign-up
📥 Download the State of Open Source in Financial Services report: https://www.finos.org/state-of-open-source-in-financial-services
🎙️ Listen to our Open Source in Finance Podcast: https://www.youtube.com/@FINOS/podcasts
🗣️ Attend the next Open Source in Finance Forum: https://hubs.ly/Q03z9D9D0
LinkedIn: https://www.linkedin.com/company/finosfoundation

00:00 Welcome and Guest Intro
00:20 James Ashley XR Journey
02:53 Back to Smart Glasses
05:14 AI Accelerates XR Apps
08:05 Hunting the Killer App
10:24 SharePlay and Learning in XR
13:33 Design Philosophy in MR
16:26 Focus and VR Training
18:27 Star Wars vs Star Trek AI Lens
21:21 Will Developers Still Matter
23:38 AI Lowers the XR Barrier
26:40 Fragments and MR Storytelling
27:52 Blender MCP Breakthrough
32:26 Parting Advice and Closing

Source

Linux After Dark – Episode 121

Linux After Dark – Episode 121

Video by The Late Night Linux Family via YouTube
Linux After Dark – Episode 121

Support us on Patreon and get an ad-free RSS feed with some early episodes. https://www.patreon.com/LateNightLinux

How we get back to our home LANs when we are away travelling etc. It mostly involves WireGuard and Tailscale. We also get into blocking ads, mostly with Pi-hole.

https://linuxafterdark.net/linux-after-dark-episode-121/

Source

SAP Analytics Cloud: Top 5 New Features | Q2 2026 Release Highlights

SAP Analytics Cloud: Top 5 New Features | Q2 2026 Release Highlights

Video by SAP via YouTube
SAP Analytics Cloud: Top 5 New Features | Q2 2026 Release Highlights

Discover the top 5 new SAP Analytics Cloud features in the Q2 2026 release and what they mean for analytics, planning, and financial reporting teams who need faster insight, cleaner workflows, and more flexible reporting.

In this short expert overview, Orla Cullen (Product Marketing Manager – Data & Analytics) walks through the biggest innovations in the quarterly release cycle, starting with a powerful new capability for real-world planning scenarios, asymmetric reporting. You’ll see how teams can create more meaningful comparisons and multi-level views in one place, for example rolling forecasts that combine monthly actuals, forecast horizons, quarterly budgets, and deltas.

Here’s what’s new this quarter:
• Asymmetric Reporting: Build dynamic rolling forecast tables with flexible views, meaningful comparisons, and multiple levels of detail in one place.
• Composite Versioning: Save, manage, and restore up to 10 versions of a composite to support iterative design and governance.
• Job Monitor Enhancements: Track data export API jobs and delta calculation jobs, including status, details, and record counts.
• Decoupled Data Panel: Access the data panel independently for a simplified right-hand toolbar, guided data add, and faster navigation to Modeler and Data Analyzer.
• Recents and Favorites in Open and Save Dialogs: Quickly access frequently used stories, models, folders, and assets without digging through the repository.

Chapters:
00:00 Intro
00:45 Asymmetric Reporting
04:07 Composite Versioning
05:21 Job Monitor: inclusion of Data Export API jobs
07:52 Data Panel
10:12 Recent and favorites in open and save dialogs
10:45 Outro

For more on SAP Analytics Cloud visit https://www.sap.com/products/technology-platform/cloud-analytics/features/release-highlights.html Read more on the blog: https://community.sap.com/t5/technology-blog-posts-by-sap/sneak-peek-in-to-sap-analytics-cloud-relea…

Follow us on social:
LinkedIn: https://www.linkedin.com/company/sap/
Instagram: https://www.instagram.com/sap
Facebook: https://www.facebook.com/SAP/
Threads: https://www.threads.com/@sap

About SAP:
As a global leader in enterprise applications and business AI, SAP stands at the nexus of business and technology. For over 50 years, organizations have trusted SAP to bring out their best by uniting business-critical operations spanning finance, procurement, HR, supply chain, and customer experience. For more information, visit: https://www.sap.com/index.html

#SAPAnalyticsCloud #Analytics #Planning

Source

Copy Fail & Dirty Frag, Bazzite 44, CachyOS, Arch Linux & more Linux news

Copy Fail & Dirty Frag, Bazzite 44, CachyOS, Arch Linux & more Linux news

Video by Michael Tunnell via YouTube
Copy Fail & Dirty Frag, Bazzite 44, CachyOS, Arch Linux & more Linux news

Support the show by becoming a patron at https://tuxdigital.com/membership or get some swag at https://store.tuxdigital.com/

This week in Linux, we’ve got a new release from Bazzite 44 based on the new Fedora 44. Then we’ve got some Arch Linux related releases with a new CachyOS and a new ISO from Arch itself. Plus we’re going to take a look at an upcoming event called the Linux App Summit as well as the recent vulnerability news that is making waves with Copy Fail & Dirty Frag. All of this and more on This Week in Linux, the weekly news show that keeps you up to date with what’s going on in the Linux and Open Source world. Now let’s jump right into Your Source for Linux GNews!

### SHOW NOTES ►► https://thisweekinlinux.com/344

### Chapters:
00:00 Intro
00:41 Bazzite 44 Released
04:49 CachyOS April 2026 Release
08:21 Arch Linux with 7.0
11:46 Copy Fail & Dirty Frag Vulnerabilities
20:51 Linux App Summit from GNOME & KDE
23:42 Mesa 26.1 Released
26:49 GhostBSD 26.1 Released
29:41 Outro

SHOW NOTES ►► https://thisweekinlinux.com/344

———————————————————————————–

### Links:
– Bazzite 44 Released
– https://universal-blue.discourse.group/t/bazzite-44-update/12092
– https://fedoramagazine.org/whats-new-fedora-atomic-desktops-in-fedora-linux-44/
– https://www.gamingonlinux.com/2026/04/bazzite-linux-44-lands-for-desktop-gamers-and-its-a-big-release/
– CachyOS April 2026 Release
– https://cachyos.org/blog/2604-april-release/
– https://www.phoronix.com/news/CachyOS-April-2026
– https://www.gamingonlinux.com/2026/04/cachyos-april-2026-release-brings-a-new-package-manager-and-even-more-optimizations/
– https://www.phoronix.com/news/CachyOS-Super-Charged-Linux-7.0
– https://9to5linux.com/cachyos-iso-release-for-april-2026-brings-shelly-as-default-gui-package-manager
– Arch Linux with 7.0
– https://archlinux.org/releng/releases/2026.05.01/
– https://9to5linux.com/first-arch-linux-iso-powered-by-linux-kernel-7-0-is-now-available-for-download
– https://linuxiac.com/arch-linux-may-iso-is-out-with-linux-kernel-7-0/
– https://9to5linux.com/archinstall-4-3-arch-linux-installer-adds-support-for-installing-additional-fonts
– Copy Fail & Dirty Frag Vulnerabilities
– Copy Fail:
– https://copy.fail/
– https://itsfoss.com/news/copy-fail-linux-exploit/
– https://9to5linux.com/copy-fail-linux-kernel-vulnerability-now-patched-in-debian-ubuntu-and-others
– https://www.theregister.com/security/2026/05/05/copyfail-attackers-start-cashing-in-on-linux-flaw/5226930
– https://xint.io/blog/copy-fail-linux-distributions
– https://www.microsoft.com/en-us/security/blog/2026/05/01/cve-2026-31431-copy-fail-vulnerability-enables-linux-root-privilege-escalation/
– Dirty Frag:
– https://github.com/V4bel/dirtyfrag
– https://almalinux.org/blog/2026-05-07-dirty-frag/
– https://ubuntu.com//blog/dirty-frag-linux-vulnerability-fixes-available
– https://lwn.net/Articles/1071719/
– https://www.phoronix.com/news/Dirty-Frag-Linux
– Linux App Summit from GNOME & KDE
– https://linuxappsummit.org/
– https://kde.org/community/calendar/2026/las-2026/
– https://blogs.gnome.org/aday/2026/02/19/gnome-foundation-update-2026-02-19/
– Mesa 26.1 Released
– https://mesa3d.org/
– https://lists.freedesktop.org/archives/mesa-dev/2026-May/226637.html
– https://www.phoronix.com/news/Mesa-26.1-Released
– https://9to5linux.com/mesa-26-1-open-source-graphics-stack-officially-released-heres-whats-new
– https://www.gamingonlinux.com/2026/05/mesa-26-1-0-released-bringing-lots-of-linux-graphics-driver-enhancements/
– GhostBSD 26.1 Released
– https://www.ghostbsd.org/
– https://ghostbsd.org/news/GhostBSD_26.1-R15.0p2_Is_Now_Available
– https://www.phoronix.com/news/GhostBSD-26.1-R15.0p2
– https://www.theregister.com/2026/02/24/ghostbsd_plans_to_adopt_xlibre/
– Support the show
– https://tuxdigital.com/membership
– https://store.tuxdigital.com/

———————————————————————————–

Thanks For Watching!

#Linux #News #Podcast

Source