‘CopyFail’ attackers start cashing in on Linux flaw • The Register


CISA is warning that a newly-disclosed Linux kernel bug dubbed “CopyFail” is already being exploited, just days after researchers dropped a working root-level exploit.

Tracked as CVE-2026-31431, the bug sits in the Linux kernel and gives low-level users a way to take full control of a system by modifying data they should only be able to read, effectively turning limited access into full root privileges on unpatched machines.

The issue was disclosed by cybersecurity consultancy Theori, which said the flaw was discovered by its AI-powered penetration testing platform, Xint, and reported to the Linux kernel security team on March 23. Major Linux distributions pushed out patches ahead of public disclosure, which Theori published alongside a proof-of-concept exploit.

The Python-based code works against Ubuntu 24.04 LTS, Amazon Linux 2023, RHEL 10.1, and SUSE 16, but the researchers warned that every mainstream Linux kernel built since 2017 is in scope of potential exploitation.

“Same script, four distributions, four root shells — in one take. The same exploit binary works unmodified on every Linux distribution,” Theori says.

That level of reliability has not gone unnoticed. The CISA, the US government’s cybersecurity agency, has added the bug to its Known Exploited Vulnerabilities catalog and ordered Federal Civilian Executive Branch agencies to patch within two weeks, setting a May 15 deadline.

Microsoft backed CISA’s findings and said it is already seeing signs of activity following the PoC’s release. “Given the availability of a fully working exploit proof-of-concept (PoC) and the race to patch systems, Microsoft Defender is seeing preliminary testing activity that might result most likely in increased threat actor exploitation over the next few days,” the company warned.

The mechanics help explain the urgency. The attack is local and requires little access, with no user interaction, so anyone who already has a foothold on a vulnerable box can try their luck. It is the kind of bug that turns a small break-in into full control pretty quickly.

As The Register reported last week, the flaw stems from how the kernel handles certain cryptographic operations, opening a path to tamper with cached data in ways that were never meant to be user-controlled. With a reliable exploit now in the wild, that design quirk has effectively turned into a universal privilege-escalation trick. ®



Source link

Hegseth says US ‘hasn’t capitulated on anything’ regarding Iran | US-Israel war on Iran

0

NewsFeed

At a Pentagon briefing, US Defense Secretary Pete Hegseth told a reporter the US had not capitulated on its demands from Iran, and that it still has the “upper hand”.



Source link

Access Denied



Access Denied You don’t have permission to access “http://news.sky.com/story/four-palestine-action-activists-guilty-over-break-in-at-israel-linked-defence-firm-13538825” on this server.

Reference #18.f3680117.1777994503.5e54a886

https://errors.edgesuite.net/18.f3680117.1777994503.5e54a886



Source link

Spurs’ Victor Wembanyama sets NBA playoff record with 12 blocks in loss


NEWYou can now listen to Fox News articles!

Victor Wembanyama showed why he was the NBA’s first-ever unanimous Defensive Player of the Year.

In the San Antonio Spurs’ 104-102 loss to the Minnesota Timberwolves in Game 1 of the Western Conference semifinals on Monday night at Frost Bank Center, Wembanyama recorded 12 blocks, setting an NBA postseason record. He had 11 points, 15 rebounds and 12 blocks, becoming just the third player to get a triple-double in the playoffs including blocks since the league began tracking blocks in 1973-74.

While Wembanyama starred defensively, he struggled offensively, going just 5-for-17 from the field.

CLICK HERE FOR MORE SPORTS COVERAGE ON FOXNEWS.COM

San Antonio Spurs forward Victor Wembanyama pointing during a basketball game.

San Antonio Spurs forward Victor Wembanyama points during the second half of Game 1 of the second round of the NBA playoffs against the Minnesota Timberwolves in San Antonio, Texas, on May 4, 2026. (Eric Gay/AP Photo)

“We have to be better,” Wembanyama said. “It shows up on the stat sheet. We need to figure out before 48 hours what we can do better, and I’ve got no doubt that we will. I trust us.”

The Timberwolves got an unexpected boost in the win, as star guard Anthony Edwards returned from injury sooner than expected. Edwards suffered a bone bruise and hyperextended his left knee during Game 4 of the Timberwolves’ opening-round series against the Denver Nuggets.

The 24-year-old was expected to miss the first two games of the Timberwolves’ series against the Spurs but came back early.

ZERO BS. JUST DAKICH. TAKE THE DON’T @ ME PODCAST ON THE ROAD. DOWNLOAD NOW!

Victor Wembanyama reaching for the ball as Julius Randle defends during basketball game.

San Antonio Spurs forward Victor Wembanyama reaches for the ball as Minnesota Timberwolves forward Julius Randle defends during the second half of Game 1 of the second round of the NBA playoffs in San Antonio, Texas, on May 4, 2026. (Eric Gay/AP Photo)

He scored 11 of his 18 points in the fourth quarter as Minnesota held on to hand San Antonio only its second loss in its last 17 series openers at home. Edwards said he knows his presence helps calm his teammates.

“I know for a fact, just me being out there, it calms everybody down,” Edwards said. “Not saying there’s any pressure on any of my teammates, but it takes pressure off of everybody just knowing that I’m out there, I’m available to play, yeah. And just doing what I do best, just trying to put the ball in the hoop.”

Timberwolves guard Mike Conley said no one expected Edwards back so soon.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Minnesota Timberwolves guard Anthony Edwards dribbling basketball defended by San Antonio Spurs guard Dylan Harper

Minnesota Timberwolves guard Anthony Edwards handles the ball as San Antonio Spurs guard Dylan Harper defends during the first half of Game 1 of the second round of the NBA playoffs in San Antonio, Texas, on May 4, 2026. (Eric Gay/AP Photo)

“Nobody expected him to play,” Timberwolves veteran Mike Conley said. “It was just his level of commitment to the game. Not just to the game, but to his teammates. It showed a lot.”

Edwards’ return helped propel the Timberwolves past the Spurs despite Wembanyama’s superb defensive effort.

The Spurs will look to bounce back in Game 2 when they play the Timberwolves on Wednesday at 9:30 p.m. ET.

The Associated Press contributed to this report.

Follow Fox News Digital’s sports coverage on X, and subscribe to the Fox News Sports Huddle newsletter.



Source link

Access Denied

0

Access Denied You don’t have permission to access “http://hindi.news18.com/cricket/ipl-2026-karun-nair-career-is-on-its-last-legs-unfortunate-indian-cricketer-10448326.html” on this server.

Reference #18.94adc17.1777995549.5fa0fff

https://errors.edgesuite.net/18.94adc17.1777995549.5fa0fff

US-Iran ceasefire holds despite Hormuz standoff: Pentagon chief Hegseth | US-Israel war on Iran News

0

The ceasefire between the United States and Iran is still in place despite bursts of military action around the Strait of Hormuz, Pentagon chief Pete Hegseth tells reporters.

Hegseth said on Tuesday that President Donald Trump will make the decision as to when the truce ends, signalling that Washington may be willing to tolerate some Iranian attacks during the push to reopen Hormuz before renewing the war.

Recommended Stories

list of 3 itemsend of list

The defence secretary stressed that Washington’s campaign to pry open the strategic waterway – dubbed “Project Freedom” – is not part of the broader US-Israeli assault on Iran – codenamed Epic Fury.

“The ceasefire is not over. Ultimately, this is a separate and distinct project, and we expected there would be some churn at the beginning, which happened,” Hegseth told reporters.

“We said we would defend and defend aggressively, and we absolutely have. Iran knows that, and ultimately the president is going to make a decision whether anything were to escalate into a violation of the ceasefire.”

Monday saw the highest level of hostilities in the war since the truce came into effect on April 8.

Iran said it fired at US Navy ships; the US said it shot down seven small Iranian military boats; and Tehran renewed its drone and missile launches against the United Arab Emirates. A South Korean ship near Hormuz was also hit in a suspected Iranian attack.

And there were casualties. Three people were injured in the Iranian strike on the UAE’s Fujairah Petroleum Industries Zone, and Tehran said a US attack on a passenger boat in the Gulf killed five civilians.

More than 24 hours after the start of the US push to break the Iranian blockade in Hormuz, traffic in the strait remains largely at a standstill, ship tracking data shows.

Iran stresses ‘new equation’

Hegseth said on Tuesday that the US has secured the waterway and is communicating with ships, companies and insurers to encourage vessels to pass through.

“We have established a powerful red, white and blue dome over the strait,” the Pentagon chief said.

“American destroyers are on station, supported by hundreds of fighter jets, helicopters, drones and surveillance aircraft, providing 24/7 overwatch for peaceful commercial vessels.”

Hegseth said that as the US safeguards the passage of ships through the strait, Iranian vessels will not be permitted to pass, emphasising that Washington’s naval siege on Iran’s ports continues.

US officials, however, have not shared details about how many vessels the US would be escorting or whether ships have agreed to go through while the threat of attacks remains high.

Top US General Dan Caine referred the question to the Middle East-based Central Command of the US military when asked for specifics.

“I’ll let CENTCOM talk to the number of ships they’re going to take through because they’re the nearest ones to talking to the commercial shippers, and I don’t want to get out in front of them,” Caine said.

Tehran has dismissed the US campaign, stressing that it is still in control of the waterway.

Before the war, about 20 percent of the world’s oil and natural gas flowed through the Strait of Hormuz.

Although parts of the waterway go through Iranian and Omani territorial waters, Hormuz shipping lanes were free and treated as international watters.

But now Iran is making claims to the strait, which it successfully closed shortly after the US-Israeli strikes on February 28. Most of the international community has stressed the need for maintaining free trade through Hormuz.

Iranian Parliament Speaker Mohammad Bagher Ghalibaf said on Tuesday that Tehran is solidifying the “new equation” in Hormuz.

“The security of shipping and energy transit has been jeopardised by the United States and its allies through the violation of the ceasefire and the imposition of a blockade. Of course, their evil will diminish,” Ghalibaf wrote on X.

“We know full well that the continuation of the status quo is intolerable for America, while we have not even begun yet.”

Oil prices

The price of oil has been skyrocketing since the start of the war. In the US, rising petrol costs for US consumers are fuelling inflation, creating a political liability for Trump’s Republican Party in the run-up to

the midterm elections in November.

The average price of a gallon of petrol in the US rose to $4.48 ($1.18 per litre) on Tuesday, according to the American Automobile Association (AAA); it was below $3 ($0.79 per litre) before the war.

Trump and his aides have been arguing that prices will drop rapidly once the war is over.

Global oil prices dipped slightly on Tuesday after a sharp spike the previous day.

The Iranian blockade in Hormuz has left 1,550 ships stranded in Hormuz, according to US officials, but Hegseth claimed on Tuesday that Iran is not in control of the strait.

He said the US managed to secure passage for two US-flagged commercial ships, along with navy destroyers, on Monday.

“We know Iran is embarrassed by the fact that our blockade is holding, and we can run ships through, and we’re going to help the world run ships through,” Hegseth said.

He added that the US operation in Hormuz is “temporary”, and that it would subsequently be taken over by other countries, without identifying them.

So far, US allies have declined calls to join military efforts to reopen the waterway.

“We’re stabilising the situation so commerce can flow again, but we expect the world to step up at the appropriate time, and soon we will hand responsibility back to you,” Hegseth told reporters.



Source link

For the first time, reaction came from US on BJP’s victory in Bengal, know what Trump said to PM Modi

0

US President on BJP’s bumper victory in Bengal donald trump the prime minister Narendra Modi congratulated. According to the report of news agency IANS, White House spokesperson Kush Desai said, ‘Only last month on the phone, President Trump praised PM Modi and said that India is fortunate that it is led by you. The President has congratulated Prime Minister Modi for this recent, historic and decisive election victory.

PM Modi’s reaction on Bengal victory

In West Bengal, BJP made a dent in the traditional strongholds of the ruling Trinamool Congress and increased its support base in both urban and rural areas. With this victory, BJP will form the government for the first time in the state. Addressing supporters in New Delhi after the announcement of victory in Bengal, PM Modi described it as the beginning of a new era for the state.

He said that this mandate is a decisive step towards a fear-free, development and trust-filled Bengal. Referring to the dreams of Dr. Shyama Prasad Mukherjee, PM Modi said, ‘Now the wait of decades is over and the public has given BJP the opportunity to realize that vision.’

Reaction of media around the world on Bengal result

Media from all over the world including Türkiye and Britain have reacted to the historic victory of Bharatiya Janata Party (BJP) in West Bengal. World media described it as a big blow to the political expansion of Prime Minister Narendra Modi and the opposition. BBC called it PM Modi’s toughest victory. Analysts say this result is a result of both the anti-incumbency wave and the BJP’s more effective campaign. According to The Guardian, Rahul Verma of the Center for Policy Research called it the result of a seven-year project by the party leadership.

London-based Reuters described it as a big victory for BJP in many ways. The news agency wrote, ‘Narendra Modi’s party registered a big victory. This can give further impetus to its major policies like civil code and infrastructure creation. This is good news for BJP in terms of 2029 Lok Sabha elections. German broadcaster DW wrote, ‘Prime Minister Narendra Modi’s Hindu nationalist BJP party is moving towards forming the government in the state for the first time.’

Also read: ‘We do not want war, but…’, America gives open threat to Iran regarding Project Freedom

Access Denied



Access Denied You don’t have permission to access “http://news.sky.com/story/culture-of-misogyny-blamed-for-missed-warning-signs-in-murdered-showjumper-probe-in-northern-ireland-13540377” on this server.

Reference #18.f3680117.1777994061.5e391f44

https://errors.edgesuite.net/18.f3680117.1777994061.5e391f44



Source link

Dwayne Johnson at the Met Gala: ‘The most masculine men’ wear skirts


Dwayne “The Rock” Johnson made an appearance at the Met Gala on Monday night, raising eyebrows with a skirt over his pants and making a bold declaration about his outfit.

The WWE legend rocked a multi-million dollar watch around his left wrist as well for the star-studded affair at the Metropolitan Museum of Art in New York City. But it was the skirt that had everyone talking.

ZERO BS. JUST DAKICH. TAKE THE DON’T @ ME PODCAST ON THE ROAD. DOWNLOAD NOW!

Dwayne Johnson and Lauren Hashian arriving at the Metropolitan Museum of Art gala in New York

Dwayne Johnson and Lauren Hashian arrive at the Metropolitan Museum of Art’s Costume Institute benefit gala celebrating the opening of the “Costume Art” exhibition on May 4, 2026, in New York. (Evan Agostini/AP)

The “Moana 2” star talked about his outfit with reporters and explained talking to fashion designer Thom Browne’s team about wearing the skirt.

“I was like, look, in our culture, Polynesian culture, we rock lavalavas, we rock skirts,” he said. “The most masculine men, not that I’m one of them, but the most masculine men wear lavalavas and skirts.”

OUTKICK IS NOW AVAILABLE ON THE FOX NEWS APP: CLICK HERE TO DOWNLOAD

Dwayne Johnson and Lauren Hashian arriving at the Metropolitan Museum of Art gala in New York

Dwayne Johnson and Lauren Hashian arrive at the Metropolitan Museum of Art’s Costume Institute benefit gala celebrating the opening of the “Costume Art” exhibition on May 4, 2026, in New York. (Evan Agostini/AP)

A lavalava is a traditional article of clothing that is usually worn by Polynesians or other Oceanic culture. Men are seen wearing the cloth as part of school attire, business wear and for police uniforms in some countries.

Johnson is a busy man in Hollywood, aside from his duties as a board member of TKO Group Holdings – the parent company of WWE. He was the leading man in “The Smashing Machine,” which received critical acclaim but only received an Oscars nomination for best makeup and hairstyling. Emily Blunt was a Golden Globe nominee for best supporting actress.

Dwayne Johnson arriving at The Metropolitan Museum of Art Costume Institute gala in New York

Dwayne Johnson arrives at The Metropolitan Museum of Art’s Costume Institute benefit gala celebrating the opening of the “Costume Art” exhibition on May 4, 2026, in New York. (Evan Agostini/AP)

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

He’s set to appear in “Jumanji: Open World” later this year and “Fast Forever” in 2028.



Source link

FTC to ban data broker Kochava from selling Americans’ location data


Location tracking

The Federal Trade Commission (FTC) will ban data broker Kochava and its subsidiary Collective Data Solutions (CDS) from selling location data without consumers’ explicit consent to settle charges brought nearly four years ago.

The FTC sued Idaho-based Kochava in August 2022, alleging it collected and sold precise geolocation data from hundreds of millions of mobile devices. This information allowed Kochava’s clients to track the mobile users’ movements to and from sensitive locations, including mental health and addiction recovery facilities, reproductive health clinics, places of worship, and shelters for the homeless and domestic violence survivors.

According to the complaint, the company provided clients who paid a $25,000 subscription fee with access to this data through a user-friendly data feed via the Amazon Web Services (AWS) Marketplace, claiming it delivered “rich geo data spanning billions of devices worldwide.”

Kochava also claimed that its location data feed “delivers raw latitude/longitude data with volumes around 94B+ geo transactions per month, 125 million monthly active users, and 35 million daily active users, on average observing more than 90 daily transactions per device.”

The Commission said at the time that the affected consumers were unaware of and had not consented to the data sharing, leaving them with no means to avoid resulting harms, including stalking, discrimination, and physical violence.

Kochava also sued the FTC for overreaching and said (one day before filing the complaint against the U.S. consumer watchdog) that it would introduce “Privacy Block”, a “privacy-first approach to block health services locations from the Kochava Collective marketplace” to address the privacy issues pointed out by the​ FTC.

Location data sold by Kochava
Location data sold by Kochava (FTC)

Under the proposed order filed in the U.S. District Court for the District of Idaho, Kochava and its subsidiary (which has since taken over Kochava’s data broker business) will be prohibited from selling, licensing, transferring, or disclosing precise location data unless they have affirmative express consent, and the data is used to provide a service that the consumers directly requested.

Beyond the sales prohibition, the companies must also establish a sensitive location data program, implement a supplier assessment program to verify consumer consent, allow consumers to request disclosure of who received their data and withdraw consent, submit incident reports to the FTC when third parties misuse location data, and create a data retention and deletion schedule.

This proposed order will carry the force of law upon approval by the District Court judge.

The FTC also announced in August 2022 that it was exploring new rules to crack down on businesses engaged in mass commercial surveillance, in which consumers’ information is collected, analyzed, and monetized. One month earlier, the Commission warned that it would enforce the law if companies illegally shared or used consumers’ sensitive information.

More recently, in 2024, the agency banned data brokers InMarket Media, Outlogic (formerly X-Mode Social), Gravy Analytics, and Mobilewalla from harvesting and selling Americans’ location tracking data.

article image

AI chained four zero-days into one exploit that bypassed both renderer and OS sandboxes. A wave of new exploits is coming.

At the Autonomous Validation Summit (May 12 & 14), see how autonomous, context-rich validation finds what’s exploitable, proves controls hold, and closes the remediation loop.

Claim Your Spot


Source link