10th Jul 2026
Infrastructure fully patched against Januscape and Bad Epoll kernel vulnerabilities
On 9 July 2026, two high-severity Linux kernel vulnerabilities were publicly disclosed: Januscape (CVE-2026-53359), a KVM guest-to-host escape affecting both Intel and AMD systems, and Bad Epoll (CVE-2026-46242), a local privilege escalation with a public proof-of-concept exploit.
We treated both with the highest priority. Our entire ...
25th May 2026
Retirement of Managed Nextcloud Service
MMITech will be retiring its managed Nextcloud service on 01.10.2026. After this date, the platform will be taken offline and stored data will be permanently removed.
Why we are doing this
Hardware and energy prices have risen sharply over the past two years, driven by AI demand, and software licensing terms continue to shift. Refreshing our ...
19th May 2026
Security Advisory: Two Linux Kernel Vulnerabilities — Fragnesia (CVE-2026-46300) and ssh-keysign-pwn (CVE-2026-46333)
In May 2026 two further high-severity Linux kernel vulnerabilities were publicly disclosed, just weeks after Copy Fail:
Fragnesia (CVE-2026-46300, CVSS 7.8), disclosed on 13 May 2026, is a local privilege escalation flaw in the XFRM ESP-in-TCP subsystem. It lets an unprivileged local user write arbitrary bytes into the page cache of read-only ...
10th May 2026
Security Advisory: Linux Kernel "Dirty Frag" Vulnerability (CVE-2026-43284, CVE-2026-43500)
On 7 May 2026 a high-severity Linux kernel vulnerability chain, known as Dirty Frag (CVE-2026-43284 and CVE-2026-43500, CVSS 7.8), was publicly disclosed. The flaw chains a page-cache write primitive in the IPsec ESP subsystem (esp4 / esp6) with a second one in the rxrpc module, allowing any unprivileged local user to escalate privileges to ...