This Week in Security: Android Exposes ADB, ShinyHunters Get Paid, Robot Dogs, and More
This Week in Security: Android Exposes ADB, ShinyHunters Get Paid, Robot Dogs, and More
We are very close to a new OpenBSD release. "You Have Installed OpenBSD. Now For The Daily Tasks." https://nxdomain.no/~peter/openbsd_installed_now_for_the_daily_tasks.html can help you prepare for the upgrade.
If you are using exim as your MTA (or any other non-base system MTA), "OpenSMTPD Is The Mail Server For The Future" https://nxdomain.no/~peter/time_for_opensmtpd.html contains useful pointers for a better mail future.
#openbsd #newrelease #openbsd79 #opensmtpd #email #smtp #rspamd #antispam #spam #exim
Repost for the Sunday crowd:
Migrating mail servers from exim to OpenSMTPD (smtpd) is fun and useful https://www.undeadly.org/cgi?action=article;sid=20260516064650 #openbsd #opensmtpd #smtpd #exim #email #smtp #mail #spam #antispam #greylisting #greytrapping #mailmigration
New critical #Exim mailer flaw allows remote code execution
Another day, another critical Exim vulnerability. CVE-2026-45185 is a use-after-free (UAF) flaw, dubbed "Dead.Letter," that grants unauthenticated remote code execution on affected mail servers. XBOW researcher Federico Kirschbaum uncovered the bug, leading to a swift patch in Exim 4.99.3. Don't delay: update your internet-exposed Exim instances, especially if running GnuTLS on Ubuntu/Debian. Thisβ¦
#cybersecurity #exim #cve202645185
π€ This post was AI-generated.
π‘οΈ Exim corregge una falla critica che esponeva i server email a RCE: aggiornare subito riduce il rischio di compromissioni e downtime. #Cybersecurity #Exim
π https://www.tomshw.it/hardware/exim-cve-2026-45185-rce-gnutls
Exim Flaw Exposes Servers to Remote Code Execution
A critical flaw in Exim, tracked as CVE-2026-45185, leaves servers vulnerable to remote code execution if they're running specific builds, but thankfully, a remediation was published in Exim version 4.99.3. This vulnerability is triggered during TLS shutdown while handling certain SMTP traffic, allowing attackers to exploit it.
#RemoteCodeExecution #Exim #Cve202645185 #GnuTransportLayerSecurity #Starttls