An update for kernel is now available for NVIDIA for RHEL 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
In its September 28-October 2 roundup, Google Cloud highlights storage-management guidance, an Apigee X blueprint that routes AI requests by complexity, and a new agent-evaluation session. Google describes pairing standardized traces with model-based judges and deterministic checks to detect quality regressions. The roundup also points to storage operations using Storage Intelligence Advisor and Batch Operations, and advertises an Agentic Data Cloud event for November 4.
Source Google CloudBy Google Cloud Content & Editorial
Google Cloud has made Spanner queues generally available, letting applications commit database changes and queued tasks together in one transaction. Messages support delayed delivery, SQL consumption and transactional acknowledgments for agent handoffs and other asynchronous workflows. Google specifies at-least-once delivery and at-most-once acknowledgment. External calls still need safeguards such as the idempotency key used in Google's example.
Google Cloud is previewing CPU startup boost for GKE, which temporarily increases container CPU requests and lowers them after readiness without restarting the container. It requires GKE 1.36.0-gke.4447000 or later; Standard clusters need Vertical Pod Autoscaling enabled, while Autopilot enables it by default. Boost policies support multipliers or fixed additions, and Autopilot workloads must still satisfy CPU-to-memory ratios.
Source Google CloudBy Abdel Sghiouar; Jakub Pawełczak
Google's September AI roundup pairs new Gemini models with wider app integrations. The company says Gemini 4 Argon has a million-token context window and is rolling out first to trusted cyber defenders through Fairwind, with broader access planned after feedback on safeguards. Other announcements include Gemini on Windows, more Connected Apps, and WeatherNext 3 forecasts integrated into Search, Gemini, Maps and Cloud.
CERT-EU's September threat review highlights stolen AI-service access and hijacked cloud workloads. Its roundup cites Google's reporting on LLM-jacking and Microsoft's account of passkey-themed phishing against Microsoft 365 users. It also covers spyware targeting civil society and alleged unauthorized AI-agent activity. The monthly report separates law-enforcement, espionage, cybercrime and AI developments across Europe and globally, drawing on attributed public reporting.
Source CERT-EUCC BY 4.0 · Source material adapted into an original NexusTechWire brief. Original source license applies.
An update for freerdp is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Critical. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
EFF reports that Ecuador ordered security researcher and free-software developer Ola Bini’s deportation and imposed a ten-year reentry ban. The advocacy group says officials relied on a secret security report that his defense could not inspect, and that his lawyers sought habeas corpus protection. EFF says Bini was held at Quito’s airport awaiting departure for Sweden and urges authorities to explain the accusations.
Source Electronic Frontier FoundationBy Veridiana AlimontiCC BY 4.0 · Source material adapted into an original NexusTechWire brief. Original source license applies.
GitHub has expanded its advisory GraphQL interface with CVE identifiers, affected source-code links, GitHub review dates, NVD publication dates and links to associated repository advisories. New severity and withdrawal filters let integrations narrow results before downloading them. GitHub says the additions reduce the need to switch to REST for advisory data; they are read-only changes that preserve existing queries.
GitHub now lets repository teams discuss vulnerability reports inside security advisories using comments restricted to users who currently have write access. Reporters and invited collaborators lacking that permission cannot read them or receive notifications; losing write access also removes visibility. Comment visibility cannot be changed after posting. GitHub says the feature covers public repositories with private vulnerability reporting enabled across its Free, Pro, Team and Enterprise Cloud plans.
GitHub has introduced a public preview of REST endpoints for reading, adding and editing repository advisory comments on public repositories. Access requires advisory visibility and appropriate repository security advisory permissions or token scopes; non-collaborators cannot read internal comments, and confidential comments are excluded. Comment deletion remains unsupported. Repository advisory responses now report non-confidential comment counts, letting integrations check for discussion before retrieving it.
Web Search API is now available in beta. Web Search API lets your AI agents and applications search the Internet and ground their responses in live information, instead of guessing URLs or relying on a model's training cutoff. At launch, you can choose between three search providers: Ceramic.ai, Exa, and Linkup. All three support Zero Data Retention for requests made through Cloudflare, and all have committed to Cloudflare's verified bot crawling standards. Web Search API runs through AI Gateway, so search requests appear in your gateway logs and are billed to your AI Gateway credits at each provider's list API price, with no additional markup. You can also bring your own provider API key.
Source Cloudflare DevelopersCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for ruby is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for gawk is now available for Red Hat Enterprise Linux 8. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for multiple packages is now available for Red Hat Enterprise Linux 10. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
An update for ghostscript is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
Canonical has released kernel fixes for Ubuntu 14.04 and 16.04 LTS, addressing NFS server, IPv6 and Netfilter flaws that could allow system compromise. USN-8864-1 covers several kernel variants; most listed fixes require Ubuntu Pro's Legacy Support add-on, while FIPS packages have separate Pro availability. Ubuntu says a reboot is required after updating, and the changed kernel interface requires rebuilding and reinstalling third-party modules.
Google Cloud describes an AI-agent memory design that keeps recent conversations in Memorystore for Valkey and durable facts, preferences and events in AlloyDB. The tutorial combines hybrid retrieval with database-managed embeddings, tenant isolation and memory cleanup. Google reports token and latency reductions from an internal simulated developer workload, while cautioning that savings vary with prompt structure, query frequency and data volume.
Source Google CloudBy Itai Rosenblatt; Paul Ramsey
Vercel says its latest AI SDK for Python adds an experimental evaluate() API for Jev, a model that returns structured classification decisions and confidence estimates. The accompanying tutorial explores distinguishing Python from English and constructing code through syntax-tree choices. Its examples still misclassify some inputs and produce mostly incorrect code, so the article urges developers to test whether Jev is accurate enough for their specific tasks.
USN-8816-4, part of Ubuntu's USN-8816 advisory series, supplies fixed GKE kernels for Ubuntu 26.04 LTS. It addresses flaws across networking, filesystems, device drivers and processor architectures that Ubuntu says could compromise systems. The corrected GKE and GKE-64K packages are version 7.0.0-1007.8. A reboot is required, and Ubuntu warns that the kernel interface change requires rebuilding and reinstalling third-party modules.
Canonical has issued kernel fixes for Ubuntu 22.04 LTS systems using the FIPS variant. USN-8818-6 covers several subsystems, including an Arm memory-ordering flaw that could let a local attacker bypass revoked write permissions or gain privileges. The advisory lists linux-image-5.15.0-194-fips version 5.15.0-194.204+fips1 through Ubuntu Pro's FIPS Updates. Applying the update requires a reboot; its ABI change requires rebuilding installed third-party kernel modules.
Canonical's USN-8851-2 supplies fixes for Ubuntu 18.04 LTS systems using the Raspberry Pi 5.4 kernel. It addresses vulnerabilities in NFS server code, IPv6 networking and Netfilter that Canonical says could permit system compromise. The Ubuntu Pro update includes linux-image-5.4.0-1147-raspi version 5.4.0-1147.160~18.04.1. A reboot completes installation, and the changed kernel ABI requires rebuilding installed third-party kernel modules.
Cloudflare has closed a network-performance incident affecting Madrid after reporting a fix on September 30. Its incident timeline records monitoring from 14:06 UTC that day and a resolved update at 05:42 UTC on October 2. The provider classified the incident as minor; its notice does not identify a root cause or quantify customer impact.
An update for kernel is now available for Red Hat Enterprise Linux 9. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Source Red HatCC BY 4.0 · Publisher excerpt shortened and converted to plain text. Original source license applies.
Original briefs are AI-assisted and checked against the linked source. Publisher excerpts are labeled separately; each story keeps its original date and article link.