A new vulnerability called Omarchy allows any user-level process to gain root privileges through privilege escalation. The flaw has sparked significant discussion in security circles.
Security researcher discovered Omarchy, a vulnerability that enables unprivileged user processes to escalate to root access on affected systems. The flaw exploits a fundamental weakness in how certain operating systems handle process permissions and access controls.
The vulnerability gained traction after being published on 0xcc.io, accumulating 166 points on Hacker News with 134 comments, indicating widespread interest from the security community. The technical nature of the exploit suggests it could affect multiple system configurations.
Privilege escalation vulnerabilities are considered critical security issues, as they allow attackers to bypass access restrictions and gain complete system control. The broad applicability of Omarchy—affecting any user process—makes it particularly concerning for system administrators and security teams.
Users and organizations should monitor official security advisories for patches and mitigation strategies. The technical details available on the researcher's blog provide insights into the vulnerability's mechanics for those conducting security assessments.
Hacking group FulcrumSec claims to have stolen 86 GB of data from Manchester Airports Group. Security researchers confirmed the breach included detailed customer, booking, and travel records.
Multiple extensions in the Chrome Web Store and Microsoft Edge delivered malware that stole cryptocurrency, browser data, and user history while injecting fraudulent ClickFix lures.
A new survey reveals strong public opposition in the UK to government surveillance of encrypted communications. The findings highlight growing concern over privacy rights as lawmakers continue debating message scanning proposals.
PaperCut has released a second emergency security update for its NG and MF print management software after researchers discovered bypass methods for the initial fixes. The vulnerabilities are currently being exploited in the wild.