<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Ubuntu on CuraSec</title><link>https://curasec.metacog.co.kr/tags/ubuntu/</link><description>Recent content in Ubuntu on CuraSec</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Thu, 23 Jul 2026 12:47:45 +0000</lastBuildDate><atom:link href="https://curasec.metacog.co.kr/tags/ubuntu/index.xml" rel="self" type="application/rss+xml"/><item><title>Ubuntu snap-confine LPE Flaw Gives Local Users Root (CVE-2026-8933)</title><link>https://curasec.metacog.co.kr/insights/2026-07-23-ubuntu-snap-confine-flaw-could-give-local-users-root-on-defa/</link><pubDate>Thu, 23 Jul 2026 12:47:45 +0000</pubDate><guid>https://curasec.metacog.co.kr/insights/2026-07-23-ubuntu-snap-confine-flaw-could-give-local-users-root-on-defa/</guid><description>&lt;ul>
&lt;li>&lt;strong>Engineer — Act:&lt;/strong> Public PoC on GitHub makes this practical for any attacker with local access on Ubuntu Desktop 24.04, 25.10, or 26.04; patch snap-confine immediately on affected desktop systems and audit cloud VMs or developer workstations running Ubuntu Desktop builds.&lt;/li>
&lt;li>&lt;strong>SOC/IR — Learn:&lt;/strong> No active exploitation campaign or IOCs reported; file as a post-exploitation step an attacker with foothold could use, but there is no detection hunt to run today without observed in-the-wild activity.&lt;/li>
&lt;li>&lt;strong>Leader — Skip&lt;/strong>&lt;/li>
&lt;li>&lt;strong>Signals:&lt;/strong> CVE-2026-8933 — CISA KEV: not listed, EPSS 0.00, public PoC on GitHub&lt;/li>
&lt;/ul></description></item></channel></rss>