

Ilkka Turunen
2.1K posts

@llkkaT
Field CTO @sonatype. Software supply chain management, infosec and devsecops veteran, occasional speaker and dependency hell enthusiast. 🇬🇧 & 🇫🇮







A 9.9 CVE has been announced for Linux 👀 Remote code execution. No details yet. Heartbleed was 7.5, for reference. This is one of the worst in history. All GNU/Linux systems impacted.

#ICYMI: You can stream the webcast on “Exploring the Future of Software Compliance” for an in-depth discussion on recent EU regulations including #NIS2, #DORA, and the #CyberResilienceAct with Jen Ellis, @alexbotting, and @llkkaT. brighttalk.com/webcast/19417/…

Cyber criminals quickly exploit CrowdStrike chaos dlvr.it/T9phPb



Something super weird happening right now: just been called by several totally different media outlets in the last few minutes, all with Windows machines suddenly BSoD’ing (Blue Screen of Death). Anyone else seen this? Seems to be entering recovery mode:

BREAKING… Everything: A massive IT outage has knocked hundreds of critical websites offline, including banks, airports and news sites - the bug has been blamed on a rogue Crowdstrike update that seems to have taken vast chunks of the internet down on Friday morning @TelegraphNews @Telegraph


A threat actor is now advising StackOverflow devs seeking debugging help to install a 'pytoileur' #Python package as a "solution" to their code troubles. 🛑DO NOT fall for this, it's a trap—the package has encoded code hidden on line 17 via whitespaces and infects Windows users with #trojan as soon as it's installed! sonatype.com/blog/pypi-cryp… #opensource #malware

The #SOSS2024 Policy Summit is coming to an end with our last panel, where we will discuss the economic advantage of secure open-source software in Europe. We are joined by: 📌 MEP @karmel80 📌 Martina Goetz, @sapopensource 📌 Per Beming, @ericsson 📌 @llkkaT, @sonatype 📌 @torgo, @Samsung Moderated by Ana Jimenez, @todogroup Learn more 👉 ceps.eu/ceps-events/se…

