// field_notes

From the Terminal

Operational notes from the field. Security engineering, Linux infrastructure, compliance automation, and cloud — written from production, not documentation.

A 12-Year-Old Flaw, an AI, and Root Access: What CVE-2026-41651 Says About Linux Security
PackageKit shipped vulnerable for 12 years. Here's what the Pack2TheRoot flaw means for Linux sysadmins — and what AI-assisted research signals for the industry.
Read post ▶
Why Your Ansible CIS Playbook Passes on One Host and Fails on Another
Servers built from different base images ship with different default .conf values. Here's why a hardcoded lineinfile task will silently miss on some hosts — and how to fix it.
Read post ▶
Tenable VM: Authentication Successful but Credentialed Scan Shows No
This is one of the most misunderstood results in Tenable VM. Authentication success does not equal credentialed scan success — and the difference matters significantly for compliance.
Read post ▶
Azure VM Sizing and Boot Time: When a Reboot Takes 30 Minutes
You reboot an Azure VM and it takes 20 to 30 minutes to come back. No crash, no error. Here's why VM size is often the cause — and how to fix it.
Read post ▶
Why a Remediated TLS Vulnerability Still Shows Active in Tenable Asset Inventory
You fixed TLS. The credentialed scan agrees. But asset inventory still shows it Active. Here's why scan history causes this and how to clean it up.
Read post ▶
Why Tenable VM Creates PowerShell Transcript Files on Windows Hosts — and What to Do About It
Getting a Dtex alert about a suspicious filename on a Windows host? Before you escalate — here's what's actually happening and how to handle it on both Windows and Linux.
Read post ▶