{"type":"rich","version":"1.0","provider_name":"Transistor","provider_url":"https://transistor.fm","author_name":"Autonomous IT","title":"Patch [FIX] Tuesday – [Nothing Weaponized, Everything Exposed], E33","html":"<iframe width=\"100%\" height=\"180\" frameborder=\"no\" scrolling=\"no\" seamless src=\"https://share.transistor.fm/e/ed7c6946\"></iframe>","width":"100%","height":180,"duration":1426,"description":"June 2026 has no headliner. Instead of one critical bug, the release spreads thin across the kernel, the network stack, a code editor, an AI assistant, a bootloader, and a nine-year-old Linux root bug. It's a breadth problem, not a severity one, and it changes how you triage.\nJason Kikta and Landon Miles break down the whole release, then step off the patch list for the breaches that never got a CVE: GitHub's internal repos reached through a poisoned VS Code extension, a TanStack compromise carrying valid SLSA provenance, and a Red Hat npm namespace compromise that fired the moment anyone ran npm install.","thumbnail_url":"https://img.transistorcdn.com/bnBBFVxpC_uwKAZZgNjGUpnpcGhu7VnenOOoLR_IX7o/rs:fill:0:0:1/w:400/h:400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS85Nzdh/MTZlNWY4NTRlYWM0/ZGRlODM1Njc3MDBk/MWUzZi5wbmc.webp","thumbnail_width":300,"thumbnail_height":300}