Tails 98 Published by

The Tor Project has shipped Tails 7.14, a security-focused update today, that adds no new features. The main changes raise Tor Browser to 15.0.24, the standalone Tor client to 0.4.9.13, and the Linux kernel to 6.12.111, and it also corrects a Korean keyboard input problem. Existing users on 7.0 or newer can upgrade automatically while keeping their Persistent Storage, while fresh installs erase it entirely.





Tails 7.14 ships as a security-only update

The latest release of the amnesic, Tor-routed operating system bumps three core components and fixes a Korean keyboard glitch. No new features.

Tails 7.14 is out, and it's the kind of update nobody celebrates but everyone should install. The Tor Project shipped the new version on September 30, and unlike the feature-packed releases that came before it, 7.14 brings no new toys. It's a maintenance release: three pieces of software get bumped, plus a small localization fix for Korean keyboard input.

That's honestly the whole point. For a tool used by journalists, activists, and anyone running from a surveillance state, staleness is a vulnerability. A routine bump is what stands between a user and an exploit someone already patched.

Screenshot_from_2026_02_26_13_45_11

What 7.14 actually changes

The version sits in the current 7.x line, which rides on Debian 13 (Trixie) and GNOME 48. In Tails' versioning scheme, the leading 7 marks the major line and the trailing number just increments. So 7.14 isn't a leap forward. It's the maintenance engine humming along.

Tails 7.14 pulls three components up to date. Tor Browser moves to 15.0.24, rebasing on Firefox 140.17.0esr and updating NoScript. That browser is effectively the only way to reach the Internet from a Tails session, since the OS blocks every non-Tor connection. Keeping it current is arguably more important here than on your everyday desktop.

The standalone Tor client goes to 0.4.9.13, riding the same 0.4.9.x maintenance branch that's shipped since around Tails 7.9. This is the software that builds the three-hop circuits carrying all your traffic. The same fixes land in both the browser and the daemon, for what it's worth.

And the Linux kernel climbs to 6.12.111.

Kernel upgrades rarely make headlines, but they close privilege-escalation ladders. A kernel bug almost never gets exploited on its own. More often it's a second stage: an attacker who's already running code inside an app uses it to grab root, then takes full control of the session. That's the Tor Project's warning, repeated across several emergency releases. A strong attacker could deanonymize you that way.

The one bug fix is for Korean keyboard input. When you start a session with the language set to Korean, the default input method was wrong. 7.14 corrects it so Korean typing works out of the box. It's tracked as GitLab work item #21779. Not a security fix, but a broken keyboard is still a broken keyboard.

Why incremental updates are the whole game

Viewing 7.14 from the outside, three bumps and a keyboard fix can look like busywork. But the 7.x history tells a meaningfully different story.

Tails 7.10.1, in August 2026, was an emergency release patching CVE-2026-64560 in the kernel, a flaw that could have let a malicious website grab administrator rights. Tails 7.8.1 and 7.9.1 were also emergency releases, this time closing kernel and Tor-client bugs used for escalation. Same pattern every time: a theoretical exploit chain that only a powerful adversary could use, proactively sealed by an update.

7.14 doesn't carry an emergency label. It just keeps the base current between those emergencies. There's a difference, but only on paper.

Worth mentioning: Tails 7.8 dropped Thunderbird from the default bundle because the bundled copy was almost always behind and shipped known vulnerabilities. Users can still add it as additional software, which auto-updates from Persistent Storage on every boot. 

Head here to grab the Tails 7.14 images.