Insights, tutorials and best practices from the world of Cloud, DevOps and Open Source
All Posts

Cisco ASA, ArcaneDoor & CVE-2025-20362: WireGuard and NetBird as a Modern VPN Stack
A Cisco ASA vulnerability from September 2025 is still being actively exploited in May 2026. Seven months after the patch, CrowdSec counts 292 source IPs...

Vaultwarden 1.36.0 & NIS2: Self-Hosted Password Management for SMBs
On 3 May 2026 the Vaultwarden maintainer team released version 1.36.0 — closing six security advisories, one of which is a server-side request forgery that...

Bleeding Llama (CVE-2026-7482): Why Self-Hosted AI Isn't Automatically Secure AI
Three unauthenticated API calls. No login, no exploit framework, no privilege escalation. Three POST requests to a default port, and the machine's memory is on...

Linux Kernel Vulnerabilities 2026: Why Patch Management Is Now a Board-Level Issue (Dirty Frag, Copy Fail & Co.)
Three critical Local Privilege Escalation vulnerabilities in the Linux kernel within two weeks — all three sitting in the code for nine to twelve years....

Proxmox Backup Server Offsite: Pull Architecture with Asymmetric Retention for Ransomware-Safe Backups
Three core questions decide whether your backups survive a ransomware wave: who has access to what, who initiates the data movement, and how long do...

Proxmox Backup Server 4.2: S3 Storage Exits Tech Preview — What You Need to Know
With Proxmox Backup Server 4.2 (released late April 2026), S3-compatible object storage is officially supported as a backup backend. No more tech preview label, no...
Let's Talk About Your Idea
Whether a specific IT challenge or just an idea - we look forward to the exchange. In a brief conversation, we'll evaluate together if and how your project fits with WZ-IT.


Timo Wevelsiep & Robin Zins
Managing Directors of WZ-IT





