Darrell

25.9K posts

Darrell banner
Darrell

Darrell

@Darrell_VA

Past organizer for @ROALUG, blogger, retired Technology Evangelist, Python 🐍 and Robots 🤖 plus Ham Radio 🍖📻 Yes, I’m old: 111011 & holding. T2D 💉

Charleston, IL Beigetreten Mart 2012
1.6K Folgt1.2K Follower
Darrell retweetet
International Cyber Digest
International Cyber Digest@IntCyberDigest·
‼️🚨 BREAKING: An AI found a Linux kernel zero-day that roots every distribution since 2017. The exploit fits in 732 bytes of Python. Patch your kernel ASAP. The vulnerability is CVE-2026-31431, nicknamed "Copy Fail," disclosed today by Theori. It has been sitting quietly in the Linux kernel for nine years. Most Linux privilege-escalation bugs are picky. They need a precise timing window (a "race"), or specific kernel addresses leaked from somewhere, or careful tuning per distribution. Copy Fail needs none of that. It is a straight-line logic mistake that works on the first try, every time, on every mainstream Linux box. The attacker just needs a normal user account on the machine. From there, the script asks the kernel to do some encryption work, abuses how that work is wired up, and ends up writing 4 bytes into a memory area called the "page cache" (Linux's high-speed copy of files in RAM). Those 4 bytes can be aimed at any program the system trusts, like /usr/bin/su, the shortcut to becoming root. Result: the next time anyone runs that program, it lets the attacker in as root. What should worry most: the corruption never touches the file on disk. It only exists in Linux's in-memory copy of that file. If you imaged the hard drive afterwards, the on-disk file would match the official package hash exactly. Reboot the machine, or just put it under memory pressure (any normal system load that needs the RAM), and the cached copy reloads fresh from disk. Containers do not help either. The page cache is shared across the whole host, so a process inside a container can use this bug to compromise the underlying server and reach into other tenants. The original sin was a 2017 "in-place optimization" in a kernel crypto module called algif_aead. It was meant to make encryption slightly faster. The change broke a critical safety assumption, and nobody noticed for nine years. That bug then rode every kernel update from 2017 to today. This vulnerability affects the following: 🔴 Shared servers (dev boxes, jump hosts, build servers): any user becomes root 🔴 Kubernetes and container clusters: one compromised pod escapes to the host 🔴 CI runners (GitHub Actions, GitLab, Jenkins): a malicious pull request becomes root on the runner 🔴 Cloud platforms running user code (notebooks, agent sandboxes, serverless functions): a tenant becomes host root Timeline: 🔴 March 23, 2026: reported to the Linux kernel security team 🔴 April 1: patch committed to mainline (commit a664bf3d603d) 🔴 April 22: CVE assigned 🔴 April 29: public disclosure Mitigation: update your kernel to a build that includes mainline commit a664bf3d603d. If you cannot patch immediately, turn off the vulnerable module: echo "install algif_aead /bin/false" > /etc/modprobe.d/disable-algif.conf rmmod algif_aead 2>/dev/null || true For environments that run untrusted code (containers, sandboxes, CI runners), block access to the kernel's AF_ALG crypto interface entirely, even after patching. Almost nothing legitimate needs it, and blocking it shuts the door on this whole class of bug...
International Cyber Digest tweet mediaInternational Cyber Digest tweet media
English
158
1.7K
7.5K
1.2M
Darrell
Darrell@Darrell_VA·
@kittytreats LoLz 😆 I’m facing the same dilemma! Reading the fine print, I think the ugly one is only available at a specific location (?)
English
0
0
1
27
Rae
Rae@kittytreats·
Passport update. I hope I don’t get the ugly one…
Rae tweet media
English
15
0
33
1.8K
Darrell retweetet
Meacham
Meacham@MeachamDr·
Federal authorities have finally located Antifa’s highly sophisticated secret messaging center:
Meacham tweet media
English
191
1.2K
4.8K
44.4K
Darrell retweetet
Taylor Lorenz
Taylor Lorenz@TaylorLorenz·
I feel insane. We had the chance to STOP this law but no one cared. Now everyone cares after it went through. It’s terrible, but it’s also a lesson in why we need to actually stop and kill surveillance laws and government overreach on certain tech BEFORE it passes. Call ur reps!
English
4
1.4K
5.6K
225K
Darrell retweetet
Geoff Wacker
Geoff Wacker@GeoffWacker·
Geoff Wacker tweet media
ZXX
73
6.7K
36.7K
222.4K
Darrell
Darrell@Darrell_VA·
ZXX
0
0
1
6
Darrell retweetet
Fred Guttenberg
Fred Guttenberg@fred_guttenberg·
If you were horrified last night watching our elected leaders run and scramble because of gun violence, just imagine how my daughter Jaime felt in school running from an active shooter before she was killed. Now, becomes a part of the solution and only vote for people determined to address gun violence in America.
English
1.3K
10.4K
51.9K
599.4K
Darrell retweetet
Wonder of Science
Wonder of Science@wonderofscience·
How you wash your hair in space: demonstrated by astronaut Karen Nyberg on the International Space Station.
English
240
512
8.2K
911.5K
Darrell
Darrell@Darrell_VA·
@kmcnam1 OMG all the time! Yikes 😱
English
0
0
0
7
sudox
sudox@kmcnam1·
100% my brain...
sudox tweet media
English
14
9
129
3.3K
Meteorologist Sam Kuffel
Meteorologist Sam Kuffel@SamKuffelWx·
Sunny and 75° calls a beer garden birthday beer after a round of disc golf. Cheers to 33 🍻
Meteorologist Sam Kuffel tweet media
English
143
14
1.6K
29.7K
Darrell retweetet
Stefan Moore ★
Stefan Moore ★@2StefanMoore·
A final piece of advice from Holly Butcher - written the day before she passed away from cancer at just 27: “It’s a strange thing knowing you’re going to die young. At 26, I thought I had time… To fall in love. Start a family. Grow old. But cancer doesn’t care about plans. Now, I understand how fragile life really is. Every single day is a gift, not a guarantee. I’m not writing this to scare you. I’m writing to remind you: really live. Stop stressing over little things. Be kind to your body- move it, nourish it, stop criticizing it. One day you’ll wish you had appreciated it. Go outside. Look at the sky. Feel the sun. Just be. Spend less time chasing “stuff” - more time making memories. Don’t skip moments with people you love. Laugh more. Write a note. Tell someone you love them. Complain less. Give more. Helping others brings more joy than anything you can buy. Be present. Put your phone down. Show up - really show up. You don’t need to have it all figured out. You don’t need a perfect body, or a perfect life. Just follow what makes your heart light up. Say no to what drains you. Make changes when you need to. And please - donate blood. I wouldn’t have had that extra year without it. And that year gave me memories I’ll hold close… forever. Thank you for reading this. Live your life well. And maybe… we’ll meet again someday.” Holly 🩷 Repost & share Holly’s important advice. ❤️
Stefan Moore ★ tweet media
English
472
7.5K
31.2K
2.3M
Framework
Framework@FrameworkPuter·
Our biggest breakthrough in efficiency yet, the Framework Laptop 13 Pro with 20 hours of battery life. In Graphite. Linux-first with options for Ubuntu pre-installed. Featuring Intel® Core™ Ultra Series 3 processors, LPCAMM2 Memory, a new haptic touchpad, and a touchscreen display. Pre-orders for the Framework Laptop 13 Pro open now: frame.work
Framework tweet mediaFramework tweet media
English
541
1.2K
16.8K
2.8M
Darrell
Darrell@Darrell_VA·
TACO Tuesday 🌮 #taco
English
0
0
0
25
Tommi
Tommi@tommithetechie·
I could not get to sleep until 3 AM and then had to get up at 6 AM. The coffee is NOT strong enough today. I cannot wait to take a mega nap later this afternoon. I know, this isn't a fun retro photo post but I just wanted to complain to someone 😭
GIF
English
7
0
10
340
Dr. Margot Paez
Dr. Margot Paez@jyn_urso·
Hello. Dr. Paez is in the house.
English
81
12
385
18.5K
Tommi
Tommi@tommithetechie·
Tommi tweet media
ZXX
10
0
41
551
Darrell retweetet
David Sirota
David Sirota@davidsirota·
Destroying the @InternetArchive's @WayBackMachine would be the equivalent of the burning of the Library of Alexandria - one of the worst losses of knowledge in history. Media giants are now threatening to do this. We can't let this happen. Pass it on.
English
438
14.1K
31.8K
948.6K
Darrell retweetet
Fight With Memes
Fight With Memes@FightWithMemes·
😂
Fight With Memes tweet media
QME
148
1.8K
26.7K
186.1K