Back to Browse

Linux Security: Kernel Flaws, SSH Keys & Supply Chain

1.0K views
May 18, 2026
9:26

This week in Linux security, the kernel took a serious hit. We break down CVE-2026-46333 (ssh-keysign-pwn), a critical local privilege escalation flaw that exposes SSH private keys and /etc/shadow via a ptrace race condition — and it's been in the kernel for over six years. We also cover Fragnesia (CVE-2026-46300), another LPE in the XFRM ESP-in-TCP subsystem, and the JDownloader supply chain attack that served a Python RAT as the official Linux installer. In this video: 00:00 — Introduction: A rough week for Linux security 02:00 — CVE-2026-46333 (ssh-keysign-pwn): What it is and how it works 04:00 — The ptrace race condition explained 06:00 — Impact: SSH keys, /etc/shadow, and lateral movement 08:00 — How to patch and what to do if you're compromised 10:00 — Fragnesia (CVE-2026-46300): The Dirty Frag family grows 12:00 — JDownloader website compromised: Python RAT on Linux 14:00 — What the malware does and how to check for infection 16:00 — PamDOORa: The PAM-based SSH credential backdoor 18:00 — AI bug reports flooding Linux kernel development 20:00 — Linus Torvalds pushes back: new documentation in 7.1-rc4 22:00 — Summary and what you need to do right now 🔔 Subscribe for weekly Linux security updates: https://tondoeslinux.com/subscribe 🐦 Twitter/X: https://x.com/tondoeslinux 💬 Community: https://tondoeslinux.com #LinuxSecurity #CVE #KernelVulnerability #TonDoesLinux #OpenSource #CyberSecurity #Linux #SSH #Ubuntu #Debian ======================================================= "Please like, comment, and subscribe to receive more videos of this kind." https://goo.gl/a9JwXB Subscribe to the weekly newsletter: https://tondoeslinux.com/subscribe Use VidIQ for your channel: https://vidiq.com/TonDoesLinux Use the best VPN: https://surfshark.club/friend/FN3Sduq4 Learn Linux: https://www.youtube.com/playlist?list=PL_dJuuPxFr8H2tjU0vwWa4OQk0joraoYl Learn Arch: https://www.youtube.com/playlist?list=PL_dJuuPxFr8GXLBrgfIuqoIZYzEoifreM Website: www.tondoeslinux.com Like my Facebook page: https://www.facebook.com/tondoeslinux See me on Twitter https://twitter.com/tondoes #tondoeslinux #linuxtutorial #linux #apple #tech #shorts

Download

0 formats

No download links available.

Linux Security: Kernel Flaws, SSH Keys & Supply Chain | NatokHD