Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

US CISA adds ‘insane’ Linux Copy Fail flaw to watch list

May 4, 2026

Strategy pauses bitcoin buys before Tuesday earnings

May 4, 2026

Aave Deposits on MegaETH Cross $575M as Post-TGE Liquidity Pours In

May 4, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»US CISA adds ‘insane’ Linux Copy Fail flaw to watch list
Security

US CISA adds ‘insane’ Linux Copy Fail flaw to watch list

May 4, 2026No Comments2 Mins Read

A newly discovered vulnerability could affect most open-source major Linux distributions released since 2017, according to security researchers.

The flaw, titled “Copy Fail,” caught the attention of the US Cybersecurity and Infrastructure Agency (CISA), who added it to the Known Exploited Vulnerabilities (KEV) catalog on Saturday, warning it poses “significant risks to the federal enterprise.”

“10 lines of Python” may be all it takes: Researcher

The vulnerability can allow attackers to gain root access across a wide range of Linux systems using a 732-byte Python script, though it requires prior code execution on the system to escalate privileges.

Researcher Miguel Angel Duran said that it only requires “10 lines of Python” to access root permissions on any affected system.

“This Linux vulnerability is insane,” Duran said.

Linux is a widely used operating system by cryptocurrency exchanges, blockchain nodes and custodial services, due to its security and efficiency, meaning the vulnerability could potentially pose risks to the sector if attackers gain initial access.

Exploit was initially reported in March

Xint Code said in an X post on Saturday that the flaw “is a trivially exploitable logic bug in Linux, reachable on all major distros released in the last 9 years.”

“A small, portable python script gets root on all platforms,” Xint Code said.

Cybersecurity firm Theori CEO Brian Pak said in an X post on Saturday that he reported the vulnerability “privately” to the Linux kernel security team on March 23.

“We worked with them on patches, which landed in mainline on April 1. CVE assigned April 22. We disclosed publicly on April 29 with a full write-up and PoC,” Pak said.

See also  Lazarus Group Exploits Google Chrome Flaw in New Campaign

Source link

adds CISA Copy Fail flaw insane Linux List Watch

Related Posts

Grinex to repay 1B ruble in client losses after hack

May 4, 2026

Falcon Finance Adds Tokenized Tesla Stock as USDf Collateral in First Ondo Asset Integration

May 4, 2026

1,000 Victims Hit in $215M Scam—$1.2M in Crypto, Cash Found

May 4, 2026

ZachXBT Exposes Toobit for Listing Alleged BDAG Scam Token – Critical Warning

May 3, 2026
Top Posts

NEAR Price Prediction: Targets $1.38 by End of March 2026

March 14, 2026

Tesla’s Chinese Exports Included In EU Investigation Of Electric Vehicle Subsidies

September 26, 2023

Tredence Named a Market Leader in the Inaugural ISG Provider Lens™ 2026 Databricks Ecosystem Partners Report

April 17, 2026

Type above and press Enter to search. Press Esc to cancel.