Archives
99 posts
Canonical announces live kernel patching for Arm64
By Rajan Patel, 23 June 2026
Canonical Livepatch now officially supports Arm64, further expanding its security patching automation capabilities. For the first time, Ubuntu on an Arm64...
Finding the blind spot: How Canonical hunts logic flaws with AI
By Miha Purg, 15 May 2026
AI is accelerating and improving how security engineers find and fix vulnerabilities. A new tool developed and used at Canonical, called Redhound, has already...
What’s new in security for Ubuntu 26.04 LTS?
By Ijlal Loutfi, 10 April 2026
Here’s a concise excerpt you can use:> Ubuntu 26.04 LTS significantly raises the security baseline by strengthening defaults across every layer of the system...
The “scanner report has to be green” trapÂ
By Lech Sandecki, 27 March 2026
Stability, backports, and hidden risks of the bleeding edge In the modern DevSecOps world, CISOs are constantly looking for signals in the noise, and the...
Canonical collaborates with Microsoft to strengthen enterprise-grade Linux protection
By Canonical, 18 March 2026
Canonical is working with Microsoft Defender to improve the security of organizations’ mission-critical Linux workloads (March 18, 2026) Today Canonical, the...
Building quantum-safe telecom infrastructure for 5G and beyond
By Benjamin Ryzman, 24 February 2026
coRAN Labs and Canonical at MWC Barcelona 2026 At MWC Barcelona 2026, coRAN Labs and Canonical are presenting a working demonstration of a cloud-native,...
Mythbusting the scope of Livepatch protection
By Rajan Patel, 24 September 2025
The purpose of this article is to share the technical realities of security patching for the Linux kernel, and the intended scope of the Linux kernel’s...
Canonical achieves IEC 62443-4-1 compliance in Industrial Automation and Control Systems
By Canonical, 18 September 2025
Canonical is proud to announce it has achieved compliance with IEC 62443-4-1 for cybersecurity in Industrial Automation and Control Systems (IACS). Building...
What are dependencies, and how do you secure them?
By Matthew de Klerk, 10 September 2025
There are thousands of free-to-use, ready-built programs and code repositories that solve problems you’d otherwise need to spend weeks building the solutions...
Generating allow-lists with DNS monitoring on LXD
By Nicholas Morris, 26 August 2025
Allow-listing web traffic – blocking all web traffic that has not been pre-approved – is a common practice in highly sensitive environments. It is also a...
A complete security view for every Ubuntu LTS VM on Azure
By Jehudi, 22 August 2025
Azure’s Update Manager now provides a complete security view for all Ubuntu LTS VMs—18.04, 20.04, 22.04, and 24.04—by showing available updates from Ubuntu...
A CISO’s guide to Application Security best practicesÂ
By Stephanie Domas, 11 August 2025
Effective AppSec is not a one-time fix but a continuous journey across every facet of your application’s lifecycle. By embracing a Secure Software Development...
Is Linux secure?
By Ijlal Loutfi, 6 August 2025
Does operating system (OS) security matter? Meet Pal. Pal is a senior developer working at PalBank. For the next 6 months, Pal will be responsible for leading...
Live Linux kernel patching with progressive timestamped rollouts
By Rajan Patel, 2 July 2025
In internet connected environments, where Ubuntu instances can reach livepatch.canonical.com, Livepatch Client supports timestamp-based rollout...
Update Livepatch Client for the newest kernel module signing certificate
By Rajan Patel, 1 July 2025
The kernel engineering team at Canonical has generated a new module signing certificate on May 16, 2025, and it is embedded in all Ubuntu kernels published...
How is Livepatch safeguarded against bad actors?
By Rajan Patel, 27 June 2025
What safeguards the Livepatch security patching solution against bad actors and malicious code masquerading as an update? Learn about Secure Boot and module signing.