Close Menu
AI News TodayAI News Today

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Russia cloaks launch schedule after spaceport falls in Ukraine’s sights

    Rivian downsizes DOE loan to $4.5B, while boosting capacity of Georgia factory

    Congress keeps kicking surveillance reform down the road

    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AI News TodayAI News Today
    • Home
    • Shop
    • AI News
    • AI Reviews
    • AI Tools
    • AI Tutorials
    • Chatbots
    • Free AI Tools
    AI News TodayAI News Today
    Home»AI Reviews»The most severe Linux threat to surface in years catches the world flatfooted
    AI Reviews

    The most severe Linux threat to surface in years catches the world flatfooted

    By No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    The most severe Linux threat to surface in years catches the world flatfooted
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Publicly released exploit code for an effectively unpatched vulnerability that gives root access to virtually all releases of Linux is setting off alarm bells as defenders scramble to ward off severe compromises inside data centers and on personal devices.

    The vulnerability and exploit code that exploits it were released Wednesday evening by researchers from security firm Theori, five weeks after privately disclosing it to the Linux kernel security team. The team patched the vulnerability in versions 7.0, 6.19.12, 6.18.12, 6.12.85, 6.6.137, 6.1.170, 5.15.204, and 5.10.254) but few of the Linux distributions had incorporated those fixes at the time the exploit was released.

    A single script hacks all distros

    The critical flaw, tracked as CVE-2026-31431 and the name CopyFail, is a local privilege escalation, a vulnerability class that allows unprivileged users to elevate themselves to administrators. CopyFail is particularly severe because it can be exploited with a single piece of exploit code—released in Wednesday’s disclosure—that works across all vulnerable distributions with no modification. With that, an attacker can, among other things, hack multi-tenant systems, break out of containers based on Kubernetes or other frameworks, and create malicious pull requests that pipe the exploit code through CI/CD work flows.

    “‘Local privilege escalation’ sounds dry, so let me unpack it,” researcher Jorijn Schrijvershof wrote Thursday. “It means: an attacker who already has some way to run code on the machine, even as the most boring unprivileged user, can promote themselves to root. From there they can read every file, install backdoors, watch every process, and pivot to other systems.”

    Schrijvershof added that the same Python script Theori released works reliably for Ubuntu 22.04, Amazon Linux 2023, SUSE 15.6, and Debian 12. The researcher continued:

    Catches flatfooted Linux severe Surface threat world years
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleHackers are actively exploiting a bug in cPanel, used by millions of websites
    Next Article Legal AI startup Legora hits $5.6 valuation and its battle with Harvey just got hotter
    • Website

    Related Posts

    AI Reviews

    Rivian downsizes DOE loan to $4.5B, while boosting capacity of Georgia factory

    AI Reviews

    Musk v. Altman Kicks Off, DOJ Guts Voting Rights Unit, and Is the AI Job Apocalypse Overhyped?

    Chatbots

    Beijing bans drone sales even as rest of world buys Chinese drones

    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Russia cloaks launch schedule after spaceport falls in Ukraine’s sights

    0 Views

    Rivian downsizes DOE loan to $4.5B, while boosting capacity of Georgia factory

    0 Views

    Congress keeps kicking surveillance reform down the road

    0 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    AI Tutorials

    Quantization from the ground up

    AI Tools

    David Sacks is done as AI czar — here’s what he’s doing instead

    AI Reviews

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Russia cloaks launch schedule after spaceport falls in Ukraine’s sights

    0 Views

    Rivian downsizes DOE loan to $4.5B, while boosting capacity of Georgia factory

    0 Views

    Congress keeps kicking surveillance reform down the road

    0 Views
    Our Picks

    Quantization from the ground up

    David Sacks is done as AI czar — here’s what he’s doing instead

    Judge sides with Anthropic to temporarily block the Pentagon’s ban

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Terms & Conditions
    • Privacy Policy
    • Disclaimer

    © 2026 ainewstoday.co. All rights reserved. Designed by DD.

    Type above and press Enter to search. Press Esc to cancel.