Google pays $250K for Linux vulnerability allowing guest VM escapes

2026-07-09T08:51:51Zff47ea99f6a3d5d2d209c8375b2c1f4254a8d65d767671c0fe4bd38e9b6f0427
ai-securitybackdoorbotnetcopilotcredential-theftcrypto-clipperhallu-squattinglinux-kernelllm-hallucinationmacOS-infostealermalwaremass-breachnation-stateoperation-endgamepamstealerpeopleSoftpost-quantum-crypto-policy','secure-boot','amd-memory-encryptionprivilege-escalationreward-bountysearchleaksignal-whatsappsupply-chaintwo-factor-bypassvm-escapezero-day

What happened

Feed compiles multiple high-impact security stories from June–July 2026: high-severity Linux kernel vulnerabilities (including a guest-to-host VM escape allowing root), a PeopleSoft 0-day exfiltrating gigabytes, and a Copilot/SearchLeak flaw that exposed 2FA codes. Large-scale credential breaches and supply-chain risks (malicious Microsoft packages, credential-spilling breach affecting Oracle/Lenovo/FedEx/Fortinet/NATO contractor) are reported alongside emergent malware (PamStealer for macOS, Crypto Clipper USB/Tor worm, new lightweight crypto-stealing backdoor). AI-related threats—LLM “HalluS

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
ff47ea99f6a3d5d2d209c8375b2c1f4254a8d65d767671c0fe4bd38e9b6f0427
Enrichment time
2026-07-09T08:51:51Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Google pays $250K for Linux vulnerability allowing guest VM escapes · Baitaphish