Tag
This article details the discovery and disclosure of CVE-2025-39964, a privilege escalation vulnerability in the Linux kernel's AF_ALG feature, which allowed root access and was found before the Copy Fail vulnerability, earning a $113,337 reward through Google's kernelCTF program.
A blog post details how a vulnerable Twitch chat overlay in OBS allowed remote code execution on a streamer's PC via an unsandboxed Chromium renderer and a known V8 bug.
Radicle discloses two critical security vulnerabilities in its network protocol, affecting all versions, where traffic is unencrypted and unauthenticated, allowing information leakage and impersonation. Users should stop using private repositories until a fix is released.
Meta patched a zero-day exploit in its Muse macOS AI agent that could allow attackers to control the agent by redirecting transcription processing, highlighting security challenges for the new product.
HEIF Heist is a class of security vulnerabilities in image parsers like libheif that allow remote code execution and data exposure through crafted HEIF, HEIC, or AVIF images, affecting major services such as OpenAI, Slack, and GitHub Enterprise.
Strix, an autonomous hacking agent, discovered and reported a critical security vulnerability in Baseten's GitHub, gaining admin access through an exposed token that was quickly fixed by Baseten's team.
UC Berkeley researcher Hany Farid states that a ten-second voice clip is enough to compromise voice-based password systems, raising concerns about authentication security and fraud.
A critical security flaw in Grok's build sessions was discovered, where a simple 'hi' prompt could hijack sessions and access other users' workspaces due to failed session isolation.
A Local Privilege Escalation vulnerability in adm-zip allows crafted ZIP files to set SUID/SGID bits, enabling root access for local users when extracted as root. The issue has been patched in version 0.6.1.
WeWorm is a zero-click worm exploit that spreads through WeChat calls across iOS and Android, potentially compromising over a billion accounts. Developed with AI assistance, it highlights the growing risk of advanced attacks becoming accessible to less skilled actors.
Signal's Contact Discovery feature was found to send contact lists to an SGX enclave, where a security breach by V12 leaked the key, potentially exposing user data due to critical vulnerabilities like arbitrary read and RCE.
A GraphQL authorization flaw in Beam Living, a Blackstone real estate company, exposed sensitive applicant data including Social Security number digits, dates of birth, and addresses.
Slovakia's national security service has uncovered a backdoor in Russian-made traffic speed cameras that could allow unauthorized access via SMS, prompting a pause in deployment and raising concerns about cybersecurity and foreign influence.
The article explains how Python's str.lower() function can introduce a security vulnerability in IDNA encoding due to mismatched Unicode versions, causing non-compliance with RFC standards and leading to inconsistent domain name handling.
Microsoft Copilot was found to have a secret URL parameter that enables prompt injection and data theft, posing security risks. Researchers also demonstrated a prompt injection attack that could poison Copilot's memory store.
This CVE describes a prototype pollution vulnerability in n8n that can be exploited for remote code execution through a Git node gadget chain.
A critical remote code execution vulnerability (CVE-2026-66066) has been discovered in Ruby on Rails' Active Storage when using the default Vips image processor, affecting Rails 7.x and 8.x default configurations. Patches have been released and immediate upgrading is recommended.
A security researcher discovered that registering as a FIFA agent granted access to FIFA's Microsoft Entra tenant, allowing them to bypass client-side authentication and access the live production streaming management panel for the 2026 World Cup, including RTMP stream keys for all matches. The researcher had to contact FIFA, MediaKind, HBS, CISA, and the FBI to get the issue fixed.
Marcelo Trylesinski shares his perspective on CVE-2026-48710, a security vulnerability in Starlette involving path-based authorization bypass via manipulated Host headers. He argues the vulnerability stems from application patterns and deployment, not the framework itself.
A critical host-header authentication bypass vulnerability (CVE-2026-48710) in Starlette and FastAPI affects many Python ASGI applications, including AI inference servers (e.g., vLLM), AI proxy servers (e.g., LiteLLM), and MCP gateways, potentially allowing unauthorized access.