The OpenSSH team released version 10.6 on Oct. 6 and said it will ship releases more often for now to get bugfixes into users’ hands more quickly. The maintainers have received a large number of security reports, many found by AI models or with AI help, and in a number of cases a different researcher independently found the same bug later. Adversaries who do not report bugs to open-source projects, the maintainers wrote, “are likely … More →

The post OpenSSH 10.6 enables a post-quantum signature algorithm, so experimental keys need replacing appeared first on Help Net Security.