privilege-escalation

Tag

Cards List
#privilege-escalation

ipv6_frag_escape: Linux LPE - Reliable Jail/Container Escape

Lobsters Hottest · 8h ago Cached

Proof of concept for a Linux local privilege escalation and container/jail escape via an IPv6 fragmentation bug in the kernel, targeting CentOS/RHEL 10.

0 favorites 0 likes
#privilege-escalation

High-severity vulnerability in Linux caused by a single faulty character

Ars Technica · 2026-06-09 Cached

A single faulty character in the Linux kernel introduced a use-after-free vulnerability (CVE-2026-53111) allowing unprivileged users to escalate privileges to root on Debian and Ubuntu systems; the bug has been fixed and backported.

0 favorites 0 likes
#privilege-escalation

AI eyes scanning for bugs create a worrisome Linux security trend

Reddit r/ArtificialInteligence · 2026-05-26 Cached

AI tools are accelerating the discovery and public disclosure of Linux kernel bugs, creating a worrisome trend of frequent privilege-escalation vulnerabilities that may require weekly server reboots. Linus Torvalds has changed how the Linux security community handles AI-discovered bugs, treating them as public by default.

0 favorites 0 likes
#privilege-escalation

Logic bug in the Linux kernel's __ptrace_may_access() function (CVE-2026-46333)

Lobsters Hottest · 2026-05-20 Cached

Qualys discloses a logic bug in the Linux kernel's __ptrace_may_access() function (CVE-2026-46333), allowing local privilege escalation and information disclosure. The vulnerability, present since 2016, affects multiple distributions with four proof-of-concept exploits developed by Qualys.

0 favorites 0 likes
#privilege-escalation

CopyFail: From Pod to Host

Hacker News Top · 2026-05-19 Cached

Copy Fail is a new Linux local privilege escalation vulnerability that exploits a kernel memory corruption flaw to rewrite the page cache, enabling cross-container attacks and container escape.

0 favorites 0 likes
#privilege-escalation

Gentoo News: Copy Fail, Dirty Frag, and Fragnesia Kernel Vulnerabilities

Hacker News Top · 2026-05-19 Cached

Gentoo Linux reports on the Copy Fail, Dirty Frag, and Fragnesia kernel vulnerabilities, noting that they have patched supported kernels and advising users to upgrade.

0 favorites 0 likes
#privilege-escalation

Anthropic's Mythos Just Helped Find macOS vulnerability That Could Break Apple's Security Protections

Reddit r/ArtificialInteligence · 2026-05-16 Cached

Anthropic's Mythos AI model helped cybersecurity firm Calif discover two previously undocumented macOS vulnerabilities that could bypass Apple's memory integrity enforcement, demonstrating the model's offensive capabilities under controlled access via Project Glasswing.

0 favorites 0 likes
#privilege-escalation

CVE-2026-40369: Arbitrary Kernel Address Increment via NtQuerySystemInformation

Lobsters Hottest · 2026-05-16 Cached

CVE-2026-40369 describes a vulnerability in Windows kernel's NtQuerySystemInformation function that allows arbitrary kernel address increment, enabling privilege escalation from unprivileged processes including Chrome sandbox. The exploit is deterministic on Windows 11 24H2-25H2.

0 favorites 0 likes
#privilege-escalation

linux 0-day, access root-owned files as an unprivileged user

Lobsters Hottest · 2026-05-15 Cached

A Linux 0-day vulnerability in __ptrace_may_access() allows unprivileged users to read root-owned files like SSH host keys and /etc/shadow. Affects many distros and kernels, with exploits available for ssh-keysign and chage.

0 favorites 0 likes
#privilege-escalation

Linux Compromises, Broken Embargoes, and the Shrinking Patch Window

Lobsters Hottest · 2026-05-14 Cached

A report on three serious Linux local privilege escalation vulnerabilities discovered in May 2026, highlighting breakdowns in the disclosure model and implications for production environments.

0 favorites 0 likes
#privilege-escalation

Mystery Microsoft bug leaker keeps the zero-days coming

Hacker News Top · 2026-05-14 Cached

An anonymous researcher released two Microsoft zero-day exploits, YellowKey (BitLocker bypass) and GreenPlasma (privilege escalation), after Patch Tuesday, posing serious security risks for organizations.

0 favorites 0 likes
#privilege-escalation

Fragnesia: New Linux Privilege Escalation Exploit

Lobsters Hottest · 2026-05-13 Cached

A new Linux privilege escalation exploit called Fragnesia has been released with proof-of-concept code on GitHub.

0 favorites 0 likes
#privilege-escalation

Microsoft patched 137 bugs, but the Azure AI Foundry one is what caught my eye

Reddit r/AI_Agents · 2026-05-13

Microsoft patched 137 vulnerabilities, with a notable high-severity privilege escalation fix in Azure AI Foundry highlighting security risks in the infrastructure layer of AI applications.

0 favorites 0 likes
#privilege-escalation

FORTIS: Benchmarking Over-Privilege in Agent Skills

Hugging Face Daily Papers · 2026-05-09 Cached

FORTIS benchmarks how LLM agents frequently exceed necessary privileges when selecting skills, showing over-privilege is the norm across ten frontier models and failing under realistic user interactions.

0 favorites 0 likes
#privilege-escalation

CVE-2026-31431: Copy Fail

Lobsters Hottest · 2026-05-08 Cached

CVE-2026-31431 (Copy Fail) is a local privilege escalation vulnerability in the Linux kernel affecting all major distributions since 2017, allowing unprivileged users to gain root shell access through a deterministic 4-byte write to any readable file's page cache via the AF_ALG crypto subsystem.

0 favorites 0 likes
#privilege-escalation

You gave me a u32. I gave you root. (io_uring ZCRX freelist LPE)

Hacker News Top · 2026-05-08

A local privilege escalation exploit in the Linux kernel's io_uring subsystem via a zero-copy receive freelist bug.

0 favorites 0 likes
#privilege-escalation

Dirtyfrag: Universal Linux LPE

Hacker News Top · 2026-05-07 Cached

A report titled 'Dirty Frag' details a universal Linux Local Privilege Escalation (LPE) vulnerability that allows root access on major distributions by chaining two kernel bugs. The disclosure notes that due to a broken embargo, no patches currently exist for this critical security issue.

0 favorites 0 likes
← Back to home

Submit Feedback