惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

S
Schneier on Security
Hugging Face - Blog
Hugging Face - Blog
V
Visual Studio Blog
博客园 - Franky
酷 壳 – CoolShell
酷 壳 – CoolShell
Last Week in AI
Last Week in AI
博客园 - 叶小钗
博客园_首页
阮一峰的网络日志
阮一峰的网络日志
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
Application and Cybersecurity Blog
Application and Cybersecurity Blog
TaoSecurity Blog
TaoSecurity Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
J
Java Code Geeks
爱范儿
爱范儿
宝玉的分享
宝玉的分享
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
量子位
N
News and Events Feed by Topic
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Recent Commits to openclaw:main
Recent Commits to openclaw:main
SecWiki News
SecWiki News
MyScale Blog
MyScale Blog
AI
AI
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
博客园 - 【当耐特】
Security Archives - TechRepublic
Security Archives - TechRepublic
F
Fortinet All Blogs
V2EX - 技术
V2EX - 技术
T
Troy Hunt's Blog
有赞技术团队
有赞技术团队
W
WeLiveSecurity
Project Zero
Project Zero
T
Tor Project blog
Help Net Security
Help Net Security
L
LINUX DO - 最新话题
IT之家
IT之家
The Hacker News
The Hacker News
腾讯CDC
Schneier on Security
Schneier on Security
N
News and Events Feed by Topic
C
Cisco Blogs
博客园 - 聂微东
Webroot Blog
Webroot Blog
Forbes - Security
Forbes - Security
M
MIT News - Artificial intelligence
C
Cyber Attacks, Cyber Crime and Cyber Security
雷峰网
雷峰网
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
A
About on SuperTechFans

Phoronix

KDE Linux Prunes Its Insecure & Unused Software Linux 7.1-rc6 To Support The ASUS ROG RAIKIRI II & Nova 2 Lite Controllers Linux Might Finally Disable The Microsoft RNDIS Protocol Drivers In 2026 Wine-Staging 11.10 Fixes 14 Year Old Bug, Also Fixes Issue Of Some Games Being Too Dark Servo 0.2 Released With Revamped Android Browser UI Zrythm 2.0 Alpha Released For Rewriting The Digital Audio Workstation In C++ & Qt/QML Linux 7.1-rc6 To Hide The Documentation On "clearcpuid" Feature AV2 v1.0 Specification Released For Next-Gen Video Coding Various USB Quirks Merged Ahead Of Linux 7.1-rc6 Rust Coreutils 0.9 Released With Additional Security Hardening, Zero-Copy I/O NixOS 26.05 Released With 20,442 New Packages, Stage 1 Now Based On systemd By Default AMD Submits More Graphics Driver Changes For Linux 7.2 AMD Expands The Range Of Zen 6 CPUs Detected By The Linux Kernel G7 Agrees On Shared Language Around Open-Source AI, Open Weights AI GNOME Circle Takes Stand Against AI Slop, Resources App Makes It Into GNOME Incubator Plasma 6.6, 6.7 & 6.8 See Plenty Of Bug Fixing This Week Genode OS 26.05 Released, Finishes Moving From GitHub To Codeberg SteamOS 3.8.6 Beta Released With Initial Native Support For AMD HDMI VRR Ubuntu 26.10 Snapshot 1 Released For Testing Wine 11.10 Released With VKD3D 2.0, Improved VBScript Compatibility Fwupd 2.1.4 Brings Many Fixes For Bugs Spotted By Anthrophic's Mythos, Firmware Update Support For Intel Arc Pro B65/B70 AMD ROCm 7.2.4 Released With Performance & Stability Fixes CachyOS Delivers Lead Over Arch Linux, Pop!_OS & Ubuntu On System76 Thelio Major Linux Networking Still Seeing "Significantly Bigger" Pull Requests Due To AI Btrfs Change Coming For Linux 7.2 Yields Very Healthy Performance Gain Intel To Support DRM Background Color Property With Linux 7.2 Fedora 45 Considering Use Of PURL Metadata For Uniquely Identifying Software Packages Linux 7.2 To Bring Graphics Driver Fix For Old Integrated Graphics On Intel Sandy Bridge Radeon Software For Linux 26.12 Brings Ubuntu 26.04 Support Intel Sends Out Revised Linux Patches For Directed Package Thermal Interrupts Linux 7.2's Open-Source Nouveau Driver To Finally Support The NVIDIA GA100 Intel Arc Pro B70 BMG-G31 Linux Gaming Performance Arm Announces Metis: Agentic AI Security Framework QEMU Shifting On AI Policy To Allow Some AI/LLM-Generated Contributions Qualcomm Snapdragon C Announced For $300+ Laptops Intel Arc G-Series Processors Announced For Handheld Gaming Devices KDE Plasma 6.7 Beta 2 Released With More Bug Fixes 24 Years After The ATI R300 Launched, Open-Source R300 Driver Continues With Big Rework KRAID Being Developed As New Compiler For Modern Arm Mali Graphics O3DE 26.05 Released With New Open Particle System, Other Engine Improvements GTK Introduces Snapping Feature For Better Fractional Scaling Experience Mesa 26.0.8 Released To End Out The Series NVIDIA CUDA 13.3 Rolls Out CUDA Python 1.0, CUDA Tile For C++ Ubuntu 26.10 Planning To Ship With The Linux 7.2 Kernel VKD3D-Proton Merges Vulkan Descriptor Heap Support Cache Aware Scheduling Shows Nice Wins For AMD Zen 5 On PostgreSQL, Valkey, Network Performance Linux Developers Looking At Retiring The x32 ABI Linux Driver To Expose Voltage Inputs For Raspberry Pi SBCs Intel TDX Runtime Updates Looks Like It Will Land For Linux 7.2 Canonical Releases Workshop As New Way Of Launching Development Environments ReactOS Now Running On ARM64 In Experimental Form Google's ANGLE Merges Wayland Support, Unblocking Chromium Embedded Framework On Wayland NVIDIA Vera CPU Benchmarks: Olympus Cores Delivering The Best Performance Ever Seen On ARM AlmaLinux 10.2 Released For Latest Community-Driven RHEL 10.2 Experience Pavona Aims To Provide A Certification-Ready, Open-Source Silicon Ecosystem NVIDIA 610.43.02 Linux Driver Released With Vulkan Improvements, DRM Color Pipeline API Intel Working On pmtctl Tool For Linux In Dealing With Platform Telemetry Data ML-KEM + X-Wing Patches Posted For Linux To Help With Post-Quantum Security Meta's CacheLib Sees New Release After Two Year Hiatus For Helping With High DRAM Prices Labwc 0.20 Wayland Compositor Released With Numerous New Features Sway 1.12 Released With HDR Support On Vulkan Renderer, New Protocols RADV Driver Lands Support For VK_KHR_shader_fma Intel Introducing USB4STREAM Protocol For Linux - Opening Up Some Nifty Uses For USB4 Linux To Drop ARCnet Support For Old ISA & PCMCIA Hardware Redis 8.8 Released With New Array Data Structure, More Performance Optimizations California's Age Verification Law May End Up Exempting Most Linux Distributions Linux 7.1-rc5 Released With Fixes Ramping Up From AI Coding Agents GitHub Copilot & Claude Code Helped With Graphics, WiFi Linux Driver Issues This Week Linux To Remove ISA Speech Synthesizer Driver That Likely Hasn't Been Used In Decades KernelScript: A Programming Language For Kernel Customization & App Optimizations Boot-Time Wizard Aims To Help Reduce Linux Boot Times Rust-Based Wild Linker 0.9 Brings New Platform Coverage, Linker Plugin API Linux Mint Making Improvements To Its File Manager, Theme & Dialogs Intel's Latest Round Of Open-Source Projects Ended: OBS Studio Plugin, CVE Binary Tool & More AV2 Codec Looks Like It Will Be Officially Released Next Week KDE Plasma 6.8 To Support System Monitor With Intel Xe, Plasma 6.7 Sees More Crash Fixes More ASUS & HP Laptops See Platform Driver Support For Linux 7.1-rc5 DreamWorks' Open-Source MoonRay Renderer Now Part Of The Academy Software Foundation FreeBSD 15.1-RC1 Released: Fixes With Now Seeing More AI-Discovered Security Issues GNOME Commander 2.0 Released Following Rewrite In Rust & GTK4 Linux 7.1 Merges AMD Dynamic EPP Fixes, Intel Bartlett Lake Scaling Fix OpenCL 3.1.1 Released To Address A Possible Performance Regression systemd 261-rc1 Released With OS Installer, IMDS Subsystem & New storagectl Linux Provides Better Performance With The AMD Ryzen 9 9950X3D2 Over Windows 11 HP Panther Lake Systems Now Have Intel ISH Firmware For Linux AMD PMC Linux Driver Preps For Zen 6 CPUs Proposed Multi-Thread Parallel Compilation "MTPC" For LLVM Is Great News Expanded Reset Support Coming For AMDGPU To Recover From More GPU Compute Hangs Today's Linux Networking Fixes: "Craziness Continues With No End In Sight" CHUWI's $449 USD Wildcat Lake Laptop Should Work Fine With Linux Linux 7.2 To Enable SR-IOV Support For Intel Nova Lake's Xe3P Graphics SUSE/openSUSE Agama Installer Now Warns For No-Desktop Installs, Supports systemd-boot NVIDIA RTX PRO Blackwell Performance Delivering Excellent Linux Performance KMSCON 10.0 Released With Natural Scrolling Option, Libseat VT Support Ryzen AI AMDXDNA Driver Adding Expandable Heap Support With Linux 7.2 VKD3D 2.0 Released For Wine's Direct3D 12 Implementation Atop Vulkan AlmaLinux To Unveil Media/Entertainment Linux OS Edition More AMDGPU Driver Fixes Prepped For Linux 7.2 chipStar 1.3 Released For Running HIP/CUDA Code On SPIR-V With OpenCL New Patches Allow The Microsoft Surface Pro 9 5G To Be More Useful Under Linux
Linux 7.2 Proceeding To Deprecate AF_ALG Due To "Massive Attack Surface", Drops Offloading
Written by Michael Larabel in Linux Networking on 1 June 2026 at · 2026-06-01 · via Phoronix

LINUX NETWORKING

The Linux kernel's AF_ALG interface for user-space applications to directly access the Linux kernel's built-in cryptographic engine is proceeding with a quick deprecation cycle due to a "massive attack surface" with increased vulnerabilities coming to light due to AI/LLM-based tooling.

With the upcoming Linux 7.2 kernel, AF_ALG is being deprecated in full. Eric Biggers explains in a patch queued to the kernel's cryptographic subsystem "cryptodev" tree:

"AF_ALG is almost completely unnecessary, and it exposes a massive attack surface that hasn't been standing up to modern vulnerability discovery tools. The latest one even has its own website, providing a small Python script that reliably roots most Linux distros: https://copy.fail/

This isn't sustainable, especially as LLMs have accelerated the rate the vulnerabilities are coming in. The effort that is being put into this thing is vastly disproportional to the few programs that actually use it, and those programs would be better served by userspace code anyway.

These issues have been noted in many mailing list discussions already. But until now they haven't been reflected in the documentation or kconfig menu itself, and the vulnerabilities are still coming in.

Let's go ahead and document the deprecation."

In addition to the deprecation, for Linux 7.2 AF_ALG will already be seeing its zero-copy support removed due to the associated security concerns.

buggy offload accelerators

Additionally, as of this past week, this patch is moving ahead and dropping off-CPU cryptography support from AF_ALG. Making use of hardware-accelerated offloading with crypto accelerators for AF_ALG has been deemed too dangerous and thus being removed already for Linux 7.2:

"AF_ALG is deprecated and exposed to unprivileged userspace. Only use the least buggy algorithm implementations: the pure software ones.

This removes one of the main advantages of AF_ALG, which is the ability to use it with off-CPU accelerators. However, using off-CPU accelerators has huge overheads, both in performance and attack surface. I have yet to see real-world, performance-critical workloads where using an accelerator via AF_ALG is actually a win over doing cryptography in userspace.

If using an off-CPU accelerator really does turn out to be a win, a new API should be developed that is actually a good fit for it."

The Linux 7.2 merge window should be kicking off in mid-June with many changes abound: both many new kernel features and also further dealing with the fallout from growing AI/LLM discoveries.