<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" encoding="UTF-8" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns:atom="http://www.w3.org/2005/Atom/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:fireside="http://fireside.fm/modules/rss/fireside">
  <channel>
    <fireside:hostname>web02.fireside.fm</fireside:hostname>
    <fireside:genDate>Thu, 09 Apr 2026 12:05:41 -0500</fireside:genDate>
    <generator>Fireside (https://fireside.fm)</generator>
    <title>LINUX Unplugged - Episodes Tagged with “Exploit”</title>
    <link>https://linuxunplugged.com/tags/exploit</link>
    <pubDate>Sun, 07 Jul 2024 17:00:00 -0700</pubDate>
    <description>An open show powered by community LINUX Unplugged takes the best attributes of open collaboration and turns it into a weekly show about Linux.
</description>
    <language>en-us</language>
    <itunes:type>episodic</itunes:type>
    <itunes:subtitle>Weekly Linux talk show with no script, no limits, surprise guests and tons of opinion.</itunes:subtitle>
    <itunes:author>Jupiter Broadcasting</itunes:author>
    <itunes:summary>An open show powered by community LINUX Unplugged takes the best attributes of open collaboration and turns it into a weekly show about Linux.
</itunes:summary>
    <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/f/f31a453c-fa15-491f-8618-3f71f1d565e5/cover.jpg?v=3"/>
    <itunes:explicit>no</itunes:explicit>
    <itunes:owner>
      <itunes:name>Jupiter Broadcasting</itunes:name>
      <itunes:email>chris@jupiterbroadcasting.com</itunes:email>
    </itunes:owner>
<itunes:category text="Technology"/>
<itunes:category text="News">
  <itunes:category text="Tech News"/>
</itunes:category>
<item>
  <title>570: RegreSSHion Strikes</title>
  <link>https://linuxunplugged.com/570</link>
  <guid isPermaLink="false">e0a79ddc-351e-4a10-ab88-2fb436b0e1c2</guid>
  <pubDate>Sun, 07 Jul 2024 17:00:00 -0700</pubDate>
  <author>Jupiter Broadcasting</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/f31a453c-fa15-491f-8618-3f71f1d565e5/e0a79ddc-351e-4a10-ab88-2fb436b0e1c2.mp3" length="39563934" type="audio/mp3"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>Jupiter Broadcasting</itunes:author>
  <itunes:subtitle>We dig into the RegreSSHion bug, debate it's real threat and explore clever tools to build a tasty fried onion around your system.</itunes:subtitle>
  <itunes:duration>47:05</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/f/f31a453c-fa15-491f-8618-3f71f1d565e5/cover.jpg?v=3"/>
  <description>We dig into the RegreSSHion bug, debate it's real threat and explore clever tools to build a tasty fried onion around your system. 
</description>
  <itunes:keywords>Jupiter Broadcasting, Linux Podcast, Linux Unplugged, RegreSSHion, fried onion, autossh, server hardening, Spokane meetup, CVE, openSSH, Qualys, RCE, 32-bit, exploit, vulnerability, regression, exploit, Dan Goodin, Ars, Stan Kaminsky, Kaspersky, malicious payloads, denial-of-service, security advisory, Fail2Ban, port knocking, Tailscale, Letmein, fwknop, FireWall KNock OPerator, firewall, SPA, KDEConnect, krunner, NixOS, atomic clock, JB Time, stu, TUI</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>We dig into the RegreSSHion bug, debate it&#39;s real threat and explore clever tools to build a tasty fried onion around your system.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale</a>: <a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale is a programmable networking software that is private and secure by default - get it free on up to 100 devices!</a></li><li><a rel="nofollow" href="https://1password.com/unplugged">1Password Extended Access Management</a>: <a rel="nofollow" href="https://1password.com/unplugged">Secure every sign-in for every app on every device.</a></li><li><a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Core Contributor Membership</a>: <a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Take $1 a month of your membership for a lifetime! </a> Promo Code: summer</li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="💥 Gets Sats Quick and Easy with Strike" rel="nofollow" href="https://strike.me/">💥 Gets Sats Quick and Easy with Strike</a></li><li><a title="📻 LINUX Unplugged  on Fountain.FM" rel="nofollow" href="https://www.fountain.fm/show/dWiuBeqpDSM86AwXRXov">📻 LINUX Unplugged  on Fountain.FM</a></li><li><a title="Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)" rel="nofollow" href="https://jbevents.hybridsarcasm.xyz/mqsu0M5BiBA_2J9GS5ODK">Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)</a></li><li><a title="Plasma/Krunner Docs" rel="nofollow" href="https://userbase.kde.org/Plasma/Krunner">Plasma/Krunner Docs</a> &mdash; Brent's tip: 'https://search.nixos.org/options?query=\{@}' (the '\{@}' is the magic sauce)</li><li><a title="autossh" rel="nofollow" href="https://www.harding.motd.ca/autossh/">autossh</a> &mdash; Automatically restart SSH sessions and tunnels</li><li><a title="autossh on GitHub" rel="nofollow" href="https://github.com/Autossh/autossh">autossh on GitHub</a></li><li><a title="Spokane Meetup" rel="nofollow" href="https://www.meetup.com/jupiterbroadcasting/events/301471716/">Spokane Meetup</a> &mdash; No-Li Brewhouse, Sat, Jul 13, 2024, 4:00 PM</li><li><a title="RegreSSHion" rel="nofollow" href="https://www.phoronix.com/news/RegreSSHion-CVE-2024-6387">RegreSSHion</a> &mdash; Remote Code Execution Vulnerability In OpenSSH Server</li><li><a title="regreSSHion" rel="nofollow" href="https://blog.qualys.com/vulnerabilities-threat-research/2024/07/01/regresshion-remote-unauthenticated-code-execution-vulnerability-in-openssh-server">regreSSHion</a> &mdash; Remote Unauthenticated Code Execution Vulnerability in OpenSSH server.</li><li><a title="NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP" rel="nofollow" href="https://discourse.nixos.org/t/security-advisory-openssh-cve-2024-6387-regresshion-update-your-servers-asap/48220">NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP</a></li><li><a title="Nasty regreSSHion bug affects around 700K Linux systems" rel="nofollow" href="https://www.theregister.com/2024/07/01/regresshion_openssh/">Nasty regreSSHion bug affects around 700K Linux systems</a></li><li><a title="Qualys CVE-2024-6387 Write-up" rel="nofollow" href="https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt">Qualys CVE-2024-6387 Write-up</a></li><li><a title="Letmein: Authenticating port knocker - Written in Rust" rel="nofollow" href="https://github.com/mbuesch/letmein">Letmein: Authenticating port knocker - Written in Rust</a> &mdash; Letmein is a simple port knocker with a simple and secure authentication mechanism. It can be used to harden against pre-authentication attacks on services like SSH, VPN, IMAP and many more.</li><li><a title="fwknop: Single Packet Authorization &gt; Port Knocking" rel="nofollow" href="https://www.cipherdyne.org/fwknop/">fwknop: Single Packet Authorization &gt; Port Knocking</a> &mdash; fwknop stands for the "FireWall KNock OPerator", and implements an authorization scheme called Single Packet Authorization (SPA). This method of authorization is based around a default-drop packet filter</li><li><a title="Membership Summer Discount" rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Membership Summer Discount</a> &mdash; Take $1 a month of your membership for a lifetime!</li><li><a title="Jeff links: How to run non-nix executables?" rel="nofollow" href="https://nix.dev/guides/faq#how-to-run-non-nix-executables">Jeff links: How to run non-nix executables?</a></li><li><a title="pick: stu" rel="nofollow" href="https://github.com/lusingander/stu">pick: stu</a> &mdash; TUI (Terminal/Text UI) application for AWS S3</li></ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>We dig into the RegreSSHion bug, debate it&#39;s real threat and explore clever tools to build a tasty fried onion around your system.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale</a>: <a rel="nofollow" href="http://tailscale.com/linuxunplugged">Tailscale is a programmable networking software that is private and secure by default - get it free on up to 100 devices!</a></li><li><a rel="nofollow" href="https://1password.com/unplugged">1Password Extended Access Management</a>: <a rel="nofollow" href="https://1password.com/unplugged">Secure every sign-in for every app on every device.</a></li><li><a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Core Contributor Membership</a>: <a rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Take $1 a month of your membership for a lifetime! </a> Promo Code: summer</li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="💥 Gets Sats Quick and Easy with Strike" rel="nofollow" href="https://strike.me/">💥 Gets Sats Quick and Easy with Strike</a></li><li><a title="📻 LINUX Unplugged  on Fountain.FM" rel="nofollow" href="https://www.fountain.fm/show/dWiuBeqpDSM86AwXRXov">📻 LINUX Unplugged  on Fountain.FM</a></li><li><a title="Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)" rel="nofollow" href="https://jbevents.hybridsarcasm.xyz/mqsu0M5BiBA_2J9GS5ODK">Spokane Meetup - No-Li Brewhouse · JB Events (test deployment)</a></li><li><a title="Plasma/Krunner Docs" rel="nofollow" href="https://userbase.kde.org/Plasma/Krunner">Plasma/Krunner Docs</a> &mdash; Brent's tip: 'https://search.nixos.org/options?query=\{@}' (the '\{@}' is the magic sauce)</li><li><a title="autossh" rel="nofollow" href="https://www.harding.motd.ca/autossh/">autossh</a> &mdash; Automatically restart SSH sessions and tunnels</li><li><a title="autossh on GitHub" rel="nofollow" href="https://github.com/Autossh/autossh">autossh on GitHub</a></li><li><a title="Spokane Meetup" rel="nofollow" href="https://www.meetup.com/jupiterbroadcasting/events/301471716/">Spokane Meetup</a> &mdash; No-Li Brewhouse, Sat, Jul 13, 2024, 4:00 PM</li><li><a title="RegreSSHion" rel="nofollow" href="https://www.phoronix.com/news/RegreSSHion-CVE-2024-6387">RegreSSHion</a> &mdash; Remote Code Execution Vulnerability In OpenSSH Server</li><li><a title="regreSSHion" rel="nofollow" href="https://blog.qualys.com/vulnerabilities-threat-research/2024/07/01/regresshion-remote-unauthenticated-code-execution-vulnerability-in-openssh-server">regreSSHion</a> &mdash; Remote Unauthenticated Code Execution Vulnerability in OpenSSH server.</li><li><a title="NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP" rel="nofollow" href="https://discourse.nixos.org/t/security-advisory-openssh-cve-2024-6387-regresshion-update-your-servers-asap/48220">NixOS Security advisory: OpenSSH CVE-2024-6387 “regreSSHion” – update your servers ASAP</a></li><li><a title="Nasty regreSSHion bug affects around 700K Linux systems" rel="nofollow" href="https://www.theregister.com/2024/07/01/regresshion_openssh/">Nasty regreSSHion bug affects around 700K Linux systems</a></li><li><a title="Qualys CVE-2024-6387 Write-up" rel="nofollow" href="https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt">Qualys CVE-2024-6387 Write-up</a></li><li><a title="Letmein: Authenticating port knocker - Written in Rust" rel="nofollow" href="https://github.com/mbuesch/letmein">Letmein: Authenticating port knocker - Written in Rust</a> &mdash; Letmein is a simple port knocker with a simple and secure authentication mechanism. It can be used to harden against pre-authentication attacks on services like SSH, VPN, IMAP and many more.</li><li><a title="fwknop: Single Packet Authorization &gt; Port Knocking" rel="nofollow" href="https://www.cipherdyne.org/fwknop/">fwknop: Single Packet Authorization &gt; Port Knocking</a> &mdash; fwknop stands for the "FireWall KNock OPerator", and implements an authorization scheme called Single Packet Authorization (SPA). This method of authorization is based around a default-drop packet filter</li><li><a title="Membership Summer Discount" rel="nofollow" href="https://jupitersignal.memberful.com/checkout?plan=52946&amp;coupon=summer">Membership Summer Discount</a> &mdash; Take $1 a month of your membership for a lifetime!</li><li><a title="Jeff links: How to run non-nix executables?" rel="nofollow" href="https://nix.dev/guides/faq#how-to-run-non-nix-executables">Jeff links: How to run non-nix executables?</a></li><li><a title="pick: stu" rel="nofollow" href="https://github.com/lusingander/stu">pick: stu</a> &mdash; TUI (Terminal/Text UI) application for AWS S3</li></ul>]]>
  </itunes:summary>
</item>
<item>
  <title>423: What Makes a Linux User?</title>
  <link>https://linuxunplugged.com/423</link>
  <guid isPermaLink="false">de79a78a-d0fa-48d8-908d-253d0e7916a1</guid>
  <pubDate>Tue, 14 Sep 2021 17:30:00 -0700</pubDate>
  <author>Jupiter Broadcasting</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/f31a453c-fa15-491f-8618-3f71f1d565e5/de79a78a-d0fa-48d8-908d-253d0e7916a1.mp3" length="28923425" type="audio/mp3"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>Jupiter Broadcasting</itunes:author>
  <itunes:subtitle>Why it might be time to re-think who is and who is not a Linux user, plus we do a reality check on the state of Linux phones.</itunes:subtitle>
  <itunes:duration>40:10</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/f/f31a453c-fa15-491f-8618-3f71f1d565e5/cover.jpg?v=3"/>
  <description>Why it might be time to re-think who is and who is not a Linux user, plus we do a reality check on the state of Linux phones. Special Guest: Brent Gervais.
</description>
  <itunes:keywords>Jupiter Broadcasting, Linux Podcast, Linux Unplugged, Solaris, Purism, Librem 5, iPhone 13, Apple, Google, Android, Mobile, security, iOS, MAC, sandboxing, apps, exploit, USB, baseband, modem, ARM, firmware updates, firmware, Steam Deck, Valve, Linux gaming, GamingOnLinux, Garry Newman, Facepunch, Easy Anti-Cheat, Rust, Xbox, Phil Spencer, Halo, Age of Empires, Terraria, Re-Logic, Proton, CodeWeavers, Ubuntu Podcast, What Makes a Linux User, free software, FOSS, libre, open-source, OSI, M1, WSL, Microsoft, Flatpak, Flathub, Snap, Flatseal, permissions, Linux on Mobile, Linux phones, PinePhone,</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>Why it might be time to re-think who is and who is not a Linux user, plus we do a reality check on the state of Linux phones.</p><p>Special Guest: Brent Gervais.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="https://linuxacademy.com/cp/modules/view/id/262/?utm_source=jupiter&amp;utm_medium=cpc">A Cloud Guru</a>: <a rel="nofollow" href="https://linuxacademy.com/cp/modules/view/id/262/?utm_source=jupiter&amp;utm_medium=cpc">By the end of this course, you will feel comfortable working with a large variety of networking tools and configurations to manage complex Linux networking implementations.</a></li><li><a rel="nofollow" href="https://linode.com/unplugged">Linode Cloud Hosting</a>: <a rel="nofollow" href="https://linode.com/unplugged">A special offer for all Linux Unplugged Podcast listeners and new Linode customers, visit linode.com/unplugged, and receive $100 towards your new account. </a></li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="Email from Purism" rel="nofollow" href="https://forums.puri.sm/t/email-from-purism-thank-you-purism/14654">Email from Purism</a> &mdash; As previously announced, we will be increasing prices for all new orders of the Librem 5 in stages (the phone will be priced at $1199 from all orders received on or after Nov 1st, 2021 and we expect this price to go upward to $1299 in March 2022) as component prices change and as we deliver greater quantities of product.</li><li><a title="Linux Phones | Madaidan’s Insecurities" rel="nofollow" href="https://madaidans-insecurities.github.io/linux-phones.html">Linux Phones | Madaidan’s Insecurities</a> &mdash; Linux phones lack any significant security model and the points from the Linux article apply to Linux phones fully. There is not yet a single Linux phone with a sane security model.</li><li><a title="Linux kernel needs more phones and tablets, says developer" rel="nofollow" href="https://tuxphones.com/linux-kernel-needs-arm-phones-tablets-mainline/">Linux kernel needs more phones and tablets, says developer</a> &mdash; "Especially for guys even running upstream kernel on RPI CM4 like me, more ARM devices with upstream kernel support will just be more happiness. Not to mention this also means super long time support, way longer than the lifespan of those devices."</li><li><a title="Steam Deck dev-kits are on the move Valve say, as some already have it" rel="nofollow" href="https://www.gamingonlinux.com/2021/09/steam-deck-dev-kits-are-on-the-move-valve-say-as-some-already-have-it">Steam Deck dev-kits are on the move Valve say, as some already have it</a> &mdash; "All packaged up and ready for devs! This is one of the limited batches of Steam Deck dev-kits heading out today for partners to test their games."</li><li><a title="POKE 756,224 on Twitter" rel="nofollow" href="https://twitter.com/feoh/status/1437244448103178244?s=12">POKE 756,224 on Twitter</a> &mdash; @ChrisLAS I admire your quest to get Linux running on your Thinkpad with the same battery life and perf you get on Windows. I've gotta admit, I've given up and just run Windows on mine, and the ugly truth is that Windows 11 is, for my needs anyway, really nice!</li><li><a title="Pick: Flatseal" rel="nofollow" href="https://flathub.org/apps/details/com.github.tchx84.Flatseal">Pick: Flatseal</a> &mdash; Flatseal is a graphical utility to review and modify permissions from your Flatpak applications.</li></ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>Why it might be time to re-think who is and who is not a Linux user, plus we do a reality check on the state of Linux phones.</p><p>Special Guest: Brent Gervais.</p><p>Sponsored By:</p><ul><li><a rel="nofollow" href="https://linuxacademy.com/cp/modules/view/id/262/?utm_source=jupiter&amp;utm_medium=cpc">A Cloud Guru</a>: <a rel="nofollow" href="https://linuxacademy.com/cp/modules/view/id/262/?utm_source=jupiter&amp;utm_medium=cpc">By the end of this course, you will feel comfortable working with a large variety of networking tools and configurations to manage complex Linux networking implementations.</a></li><li><a rel="nofollow" href="https://linode.com/unplugged">Linode Cloud Hosting</a>: <a rel="nofollow" href="https://linode.com/unplugged">A special offer for all Linux Unplugged Podcast listeners and new Linode customers, visit linode.com/unplugged, and receive $100 towards your new account. </a></li></ul><p><a rel="payment" href="https://jupitersignal.memberful.com/checkout?plan=52946">Support LINUX Unplugged</a></p><p>Links:</p><ul><li><a title="Email from Purism" rel="nofollow" href="https://forums.puri.sm/t/email-from-purism-thank-you-purism/14654">Email from Purism</a> &mdash; As previously announced, we will be increasing prices for all new orders of the Librem 5 in stages (the phone will be priced at $1199 from all orders received on or after Nov 1st, 2021 and we expect this price to go upward to $1299 in March 2022) as component prices change and as we deliver greater quantities of product.</li><li><a title="Linux Phones | Madaidan’s Insecurities" rel="nofollow" href="https://madaidans-insecurities.github.io/linux-phones.html">Linux Phones | Madaidan’s Insecurities</a> &mdash; Linux phones lack any significant security model and the points from the Linux article apply to Linux phones fully. There is not yet a single Linux phone with a sane security model.</li><li><a title="Linux kernel needs more phones and tablets, says developer" rel="nofollow" href="https://tuxphones.com/linux-kernel-needs-arm-phones-tablets-mainline/">Linux kernel needs more phones and tablets, says developer</a> &mdash; "Especially for guys even running upstream kernel on RPI CM4 like me, more ARM devices with upstream kernel support will just be more happiness. Not to mention this also means super long time support, way longer than the lifespan of those devices."</li><li><a title="Steam Deck dev-kits are on the move Valve say, as some already have it" rel="nofollow" href="https://www.gamingonlinux.com/2021/09/steam-deck-dev-kits-are-on-the-move-valve-say-as-some-already-have-it">Steam Deck dev-kits are on the move Valve say, as some already have it</a> &mdash; "All packaged up and ready for devs! This is one of the limited batches of Steam Deck dev-kits heading out today for partners to test their games."</li><li><a title="POKE 756,224 on Twitter" rel="nofollow" href="https://twitter.com/feoh/status/1437244448103178244?s=12">POKE 756,224 on Twitter</a> &mdash; @ChrisLAS I admire your quest to get Linux running on your Thinkpad with the same battery life and perf you get on Windows. I've gotta admit, I've given up and just run Windows on mine, and the ugly truth is that Windows 11 is, for my needs anyway, really nice!</li><li><a title="Pick: Flatseal" rel="nofollow" href="https://flathub.org/apps/details/com.github.tchx84.Flatseal">Pick: Flatseal</a> &mdash; Flatseal is a graphical utility to review and modify permissions from your Flatpak applications.</li></ul>]]>
  </itunes:summary>
</item>
  </channel>
</rss>
