security-vulnerability

Tag

Cards List
#security-vulnerability

How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail

Lobsters Hottest ↗ · 2d ago Cached

This article details the discovery and disclosure of CVE-2025-39964, a privilege escalation vulnerability in the Linux kernel's AF_ALG feature, which allowed root access and was found before the Copy Fail vulnerability, earning a $113,337 reward through Google's kernelCTF program.

0 favorites 0 likes
#security-vulnerability

How one Twitch chat message became code execution on a streamer’s PC

Hacker News Top ↗ · 3d ago Cached

A blog post details how a vulnerable Twitch chat overlay in OBS allowed remote code execution on a streamer's PC via an unsandboxed Chromium renderer and a known V8 bug.

0 favorites 0 likes
#security-vulnerability

Radicle: Disclosure of Vulnerability in the Network Protocol

Lobsters Hottest ↗ · 5d ago Cached

Radicle discloses two critical security vulnerabilities in its network protocol, affecting all versions, where traffic is unencrypted and unauthenticated, allowing information leakage and impersonation. Users should stop using private repositories until a fix is released.

0 favorites 0 likes
#security-vulnerability

Meta patches Muse exploit that let attackers control the AI agent

The Verge ↗ · 6d ago Cached

Meta patched a zero-day exploit in its Muse macOS AI agent that could allow attackers to control the agent by redirecting transcription processing, highlighting security challenges for the new product.

0 favorites 0 likes
#security-vulnerability

HEIF Heist

Lobsters Hottest ↗ · 2026-09-20 Cached

HEIF Heist is a class of security vulnerabilities in image parsers like libheif that allow remote code execution and data exposure through crafted HEIF, HEIC, or AVIF images, affecting major services such as OpenAI, Slack, and GitHub Enterprise.

0 favorites 0 likes
#security-vulnerability

We got admin access to Baseten's production GitHub in 25 minutes

Hacker News Top ↗ · 2026-09-15 Cached

Strix, an autonomous hacking agent, discovered and reported a critical security vulnerability in Baseten's GitHub, gaining admin access through an exposed token that was quickly fixed by Baseten's team.

0 favorites 0 likes
#security-vulnerability

Hany Farid (UC Berkeley) says ten seconds of your voice is now enough to beat "voice as password"

Reddit r/artificial ↗ · 2026-09-13

UC Berkeley researcher Hany Farid states that a ten-second voice clip is enough to compromise voice-based password systems, raising concerns about authentication security and fraud.

0 favorites 0 likes
#security-vulnerability

**FYI: malicious actors could likely hijack your grok build sessions during the month of june by simply prompting 'hi'**

Reddit r/ArtificialInteligence ↗ · 2026-09-13

A critical security flaw in Grok's build sessions was discovered, where a simple 'hi' prompt could hijack sessions and access other users' workspaces due to failed session isolation.

0 favorites 0 likes
#security-vulnerability

@x86byte: I found a Local Privilege Escalation (LPE) in adm-zip. Crafted ZIP external attrs carry SUID/SGID bits into fs.chmodSyn…

X AI KOLs Timeline ↗ · 2026-09-13 Cached

A Local Privilege Escalation vulnerability in adm-zip allows crafted ZIP files to set SUID/SGID bits, enabling root access for local users when extracted as root. The issue has been patched in version 0.6.1.

0 favorites 0 likes
#security-vulnerability

WeWorm: Zero-Click WeChat Worm

Hacker News Top ↗ · 2026-09-12 Cached

WeWorm is a zero-click worm exploit that spreads through WeChat calls across iOS and Android, potentially compromising over a billion accounts. Developed with AI assistance, it highlights the growing risk of advanced attacks becoming accessible to less skilled actors.

0 favorites 0 likes
#security-vulnerability

@v12sec: Signal's Contact Discovery automatically sends your contact list information to an SGX enclave in the cloud. V12 broke …

X AI KOLs Timeline ↗ · 2026-08-26 Cached

Signal's Contact Discovery feature was found to send contact lists to an SGX enclave, where a security breach by V12 leaked the key, potentially exposing user data due to critical vulnerabilities like arbitrary read and RCE.

0 favorites 0 likes
#security-vulnerability

A Blackstone real estate company exposed SSN digits, DOBs, addresses and more

Hacker News Top ↗ · 2026-08-24 Cached

A GraphQL authorization flaw in Beam Living, a Blackstone real estate company, exposed sensitive applicant data including Social Security number digits, dates of birth, and addresses.

0 favorites 0 likes
#security-vulnerability

Slovakia finds Russian backdoor in traffic speed cameras

Hacker News Top ↗ · 2026-08-23 Cached

Slovakia's national security service has uncovered a backdoor in Russian-made traffic speed cameras that could allow unauthorized access via SMS, prompting a pause in deployment and raising concerns about cybersecurity and foreign influence.

0 favorites 0 likes
#security-vulnerability

When str.lower() is a security vulnerability in Python

Lobsters Hottest ↗ · 2026-08-18 Cached

The article explains how Python's str.lower() function can introduce a security vulnerability in IDNA encoding due to mismatched Unicode versions, causing non-compliance with RFC standards and leading to inconsistent domain name handling.

0 favorites 0 likes
#security-vulnerability

Microsoft Copilot reveals secret input that allowed it to be hacked

Ars Technica ↗ · 2026-08-18 Cached

Microsoft Copilot was found to have a secret URL parameter that enables prompt injection and data theft, posing security risks. Researchers also demonstrated a prompt injection attack that could poison Copilot's memory store.

0 favorites 0 likes
#security-vulnerability

CVE-2026-33696: From a Schema Name to RCE in n8n

Lobsters Hottest ↗ · 2026-08-16 Cached

This CVE describes a prototype pollution vulnerability in n8n that can be exploited for remote code execution through a Git node gadget chain.

0 favorites 0 likes
#security-vulnerability

KindaRails2Shell - Critical RCE in Rails via Active Storage (CVE-2026-66066)

Lobsters Hottest ↗ · 2026-07-30 Cached

A critical remote code execution vulnerability (CVE-2026-66066) has been discovered in Ruby on Rails' Active Storage when using the default Vips image processor, affecting Rails 7.x and 8.x default configurations. Patches have been released and immediate upgrading is recommended.

0 favorites 0 likes
#security-vulnerability

I Could've Rickrolled the Entire FIFA World Cup. All I Needed Was My ID

Lobsters Hottest ↗ · 2026-06-17 Cached

A security researcher discovered that registering as a FIFA agent granted access to FIFA's Microsoft Entra tenant, allowing them to bypass client-side authentication and access the live production streaming management panel for the 2026 World Cup, including RTMP stream keys for all matches. The researcher had to contact FIFA, MediaKind, HBS, CISA, and the FBI to get the issue fixed.

0 favorites 0 likes
#security-vulnerability

CVE-2026-48710: A Maintainer's Perspective

Lobsters Hottest ↗ · 2026-05-29 Cached

Marcelo Trylesinski shares his perspective on CVE-2026-48710, a security vulnerability in Starlette involving path-based authorization bypass via manipulated Host headers. He argues the vulnerability stems from application patterns and deployment, not the framework itself.

0 favorites 0 likes
#security-vulnerability

CVE-2026-48710 Starlette Host-Header Auth Bypass

Lobsters Hottest ↗ · 2026-05-27 Cached

A critical host-header authentication bypass vulnerability (CVE-2026-48710) in Starlette and FastAPI affects many Python ASGI applications, including AI inference servers (e.g., vLLM), AI proxy servers (e.g., LiteLLM), and MCP gateways, potentially allowing unauthorized access.

0 favorites 0 likes
Next →
← Back to home

Submit Feedback