Connect with us

News

US government warns of severe CopyFail bug affecting major versions of Linux

info

Published

on

Lukas NLSXFjl nhc unsplash.jpg

A severe security vulnerability affecting almost every version of the Linux operating system has caught defenders off-guard and scrambling to patch after security researchers publicly released exploit code that allows attackers to take complete control of vulnerable systems.

The U.S. government says the bug, dubbed “CopyFail,” is now being exploited in the wild, meaning it’s being actively used in malicious hacking campaigns.

The bug, officially tracked as CVE-2026-31431 and discovered in Linux kernel versions 7.0 and earlier, was disclosed to the Linux kernel security team in late March, and patched after about a week. But the patches have yet to fully trickle down to the many Linux distributions that rely on the vulnerable kernel, leaving any system running an affected Linux version at risk of compromise.

Linux is widely used in enterprise settings, running the computers that operate much of the world’s datacenters. 

The CopyFail website says that the same short Python script “roots every Linux distribution shipped since 2017.”  According to security firm Theori, which discovered CopyFail, the vulnerability was verified in several widely used versions of Linux including Red Hat Enterprise Linux 10.1, Ubuntu 24.04 (LTS), Amazon Linux 2023, as well as SUSE 16. 

Devops engineer and developer Jorijn Schrijvershof wrote in a blog post that the exploit works on Debian and Fedora versions, as well as Kubernetes, which relies on the Linux kernel. Schrijvershof described the bug as having an “unusually big blast radius” as it works on “nearly every modern distribution” of Linux.

The bug is called CopyFail because the affected component in the Linux kernel, the core of the operating system that has virtually complete access to the entire device, does not copy certain data when it should. This corrupts sensitive data within the kernel, allowing the attacker to piggyback the kernel’s access to the rest of the system, including its data.

If exploited, the bug is particularly problematic because it allows a regular, limited-access user to gain full-administrator access on an affected Linux system. A successful compromise of a server in a datacenter could allow an attacker to gain access to every application, server, and database of numerous corporate customers, and potentially gain access to other systems on the same network or datacenter.

The CopyFail bug cannot be exploited over the internet on its own, but can be weaponized if used in conjunction with an exploit that works over the internet. Per Microsoft, if the CopyFail bug is chained together with another vulnerability that can be delivered over the internet, an attacker could use the flaw to gain root access to an affected server. A user operating a Linux computer with a vulnerable kernel could also be tricked into opening a malicious link or attachment that triggers the vulnerability.

The bug could also be injected by way of supply chain attacks, in which malicious actors hack into an open source developer’s account and plant the malware in their code in order to compromise a large number of devices in one go.

Given the risk to the federal enterprise network, U.S. cybersecurity agency CISA has ordered all civilian federal agencies to patch any affected systems by May 15.

When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Business

Lagos Police to Begin Statewide Clampdown on Vehicles with Covered, Missing Number Plates

info

Published

on

By

IMG 6432.jpeg

BY SUNDAY  SAMUEL—The Lagos State Police Command, in compliance with the directive of the Inspector-General of Police, IGP Olatunji Rilwan Disu, aimed at enhancing public safety, strengthening security, and denying criminal elements the opportunity to conceal their identities and activities, will commence a statewide enforcement exercise against vehicles with covered, obscured, unauthorised, defaced or no registration number plates.

The exercise will commence on Monday, 15th June 2026, and will be led by the Commissioner of Police, Lagos State Command, CP Tijani Fatai, psc, mnips. He has directed all Area Commanders, Divisional Police Officers (DPOs), across the State to commence enforcement of the directive and ensure full compliance within their respective Areas of Responsibility. He further directed that any vehicle found violating the directive be impounded and subjected to thorough investigation in accordance with extant laws and established procedures.

The Command wishes to assure members of the public that this enforcement exercise is not intended to inconvenience law-abiding motorists. Rather, it is a proactive security measure designed to enhance the capacity of Police operatives to identify vehicles, investigate crimes, track criminal suspects, and strengthen the overall security architecture of the State.

Accordingly, motorists, transport operators, fleet owners, and members of the public are advised to ensure that their vehicles carry valid, duly issued, and clearly visible registration number plates at all times. Vehicle owners are also encouraged to ensure that all relevant vehicle documents are up-to-date and readily available for inspection when required.

The Command remains steadfast in its commitment to protecting lives and property and creating a safer environment for all residents and visitors in the State. The success of this initiative, like all policing efforts, depends largely on the cooperation and support of members of the public. The Command appreciates the understanding, cooperation, and continued support of Lagosians as it continues to implement measures aimed at ensuring the safety and security of all.

Security is a shared responsibility. The Command therefore urges residents to remain vigilant and promptly report suspicious persons, vehicles, movements, or activities through the Command’s emergency lines: 07061019374, 08065154338, 08063299264, 08039344870, and 09168630929.

L

The post Lagos Police to Begin Statewide Clampdown on Vehicles with Covered, Missing Number Plates appeared first on Business Today NG.

Continue Reading

News

Startup CEO Charlie Javice is reportedly angling for a Trump pardon

info

Published

on

By

GettyImages 1529787597.jpg

Charlie Javice, the convicted Frank founder, is reportedly seeking a presidential pardon, with her camp quietly courting people close to the Trump administration, according to the WSJ. So far, her name hasn’t turned up on a formal clemency request list at the Justice Department, it adds.

That list is growing fast. As the administration reportedly weighs handing out roughly 250 pardons this summer to mark America’s 250th birthday, a wave of clemency requests is pouring in from white-collar defendants — including Sam Bankman-Fried.

JPMorgan can’t be pleased by any of this. Last September, Javice was found guilty of fabricating millions of customer accounts to inflate her startup’s value before selling it to the bank for $175 million. She’s now serving more than seven years and is appealing, arguing the case against her was unfair.

The bank may have extra cause for concern given its relationship with President Trump. In early 2021, it closed accounts tied to Trump and his businesses shortly after the January 6 Capitol riot, a move that Trump has since called political “debanking,” suing JPMorgan and CEO Jamie Dimon for $5 billion. (JPMorgan denies any political motive.)

Javice has powerful friends, too, including Apollo’s Marc Rowan, an early Frank investor who testified on her behalf at trial. Rowan has donated to Trump’s campaigns and, since his reelection, has given millions more to Republican congressional groups.

Continue Reading

Trending