Previous Episode: 2020-05-01
Next Episode: 2020-05-06

Responsibly disclosed bugs in SaltStack are already leading to breaches, JuiceSSH releases its first major update in 5 years, MediaGoblin rebases to Python 3, TurnKey Linux rolls out a new version based on Debian 10, and Inkscape hits 1.0.

Responsibly disclosed bugs in SaltStack are already leading to breaches, JuiceSSH releases its first major update in 5 years, MediaGoblin rebases to Python 3, TurnKey Linux rolls out a new version based on Debian 10, and Inkscape hits 1.0.

Links:

SaltStack authorization bypass
New SaltStack Release - Critical Vulnerability
SaltStack attack: LineageOS
SaltStack attack: Ghost
Hackers Breach LineageOS, Ghost, DigiCert Servers Using SaltStack Vulnerability
JuiceSSH version 3 staged rollout
MediaGoblin 0.10.0 released
MediaGoblin 0.10.0 release notes
TurnKey Linux: v16.0 Stable Release #1 - 10 x ISOs, Hub & Proxmox/LXC builds
Introducing Inkscape 1.0
Roots and Shoots of the Inkscape Project

Twitter Mentions