⤷ Title: CVE-2026-68138: PoC Exploit Enables Linux Kernel Privilege Escalation
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:43:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_68138 #Linux Kernel #privilege escalation #proof_of_concept #qdisc #use after free
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:43:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_68138 #Linux Kernel #privilege escalation #proof_of_concept #qdisc #use after free
Daily CyberSecurity
CVE-2026-68138: PoC Exploit Enables Linux Kernel Privilege Escalation
TL;DR A researcher released proof-of-concept exploit code for CVE-2026-68138, a race condition in the Linux kernel traffic-control code. The flaw lets a local user escalate to root on affected sys…
⤷ Title: MongoDB Patches 32 Vulnerabilities, Including CVE-2026-19001 Arbitrary Code Execution Flaw (CVSS 9.5)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:30:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #BI Connector ODBC Driver #buffer overflow #CVE_2026_19001 #mongodb #MongoDB Server
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:30:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #BI Connector ODBC Driver #buffer overflow #CVE_2026_19001 #mongodb #MongoDB Server
Daily CyberSecurity
MongoDB Patches 32 Vulnerabilities, Including CVE-2026-19001 Arbitrary Code Execution Flaw (CVSS 9.5)
TL;DR: MongoDB security vulnerabilities now total 32 disclosed flaws across MongoDB Server, the BI Connector ODBC Driver, Atlas SQL ODBC Driver, and Schema Builder CLI. The most severe, CVE-2026-1…
⤷ Title: Kimi Work Silently Uploads Five Recent Agent Sessions With Feedback Reports
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:08:49 +0000
════════════════════════
⌗ Tags: #Data Leak #AI agent #AI Privacy #Data Collection #Data Privacy #Desktop Application #Kimi Work #Moonshot AI
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:08:49 +0000
════════════════════════
⌗ Tags: #Data Leak #AI agent #AI Privacy #Data Collection #Data Privacy #Desktop Application #Kimi Work #Moonshot AI
Daily CyberSecurity
Kimi Work Silently Uploads Five Recent Agent Sessions With Feedback Reports
A developer at RuntimeWire recently identified a privacy issue within Moonshot AI’s Kimi Work desktop client. When a user submits a feedback report inside the application, the client uploads…
⤷ Title: CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1)
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:01:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache HttpClient #CVE_2026_64607 #CVE_2026_71290 #Denial of Service #Man in the Middle #TLS Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:01:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache HttpClient #CVE_2026_64607 #CVE_2026_71290 #Denial of Service #Man in the Middle #TLS Vulnerability
Daily CyberSecurity
CVE-2026-71290: Apache HttpClient Flaw Lets Attackers Intercept and Modify Traffic (CVSS 9.1)
TL;DR: Apache disclosed two Apache HttpClient TLS vulnerabilities in its HttpComponents Client library this month. The more severe, CVE-2026-71290, carries a CVSS score of 9.1 and lets an attacker…
⤷ Title: PoC Discloses for CVE-2026-64849: watchTowr Sees Attacks on MLflow SSRF
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 12:32:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CVE_2026_64849 #MLflow #MLflow vulnerability #proof_of_concept exploit #ssrf #watchTowr
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 12:32:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CVE_2026_64849 #MLflow #MLflow vulnerability #proof_of_concept exploit #ssrf #watchTowr
Daily CyberSecurity
PoC Discloses for CVE-2026-64849: watchTowr Sees Attacks on MLflow SSRF
TL;DR A default MLflow tracking server can be turned into a proxy for reading internal services. Tracked as CVE-2026-64849, the flaw is an unauthenticated full-read SSRF in MLflow’s webhook …
⤷ Title: VPN vs Proxy: Which One Do You Actually Need for Safe Browsing?
════════════════════════
𐀪 Author: Tanveer
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 12:27:22 GMT
════════════════════════
⌗ Tags: #digital #computers #proxy #vpn #hacking
════════════════════════
𐀪 Author: Tanveer
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 12:27:22 GMT
════════════════════════
⌗ Tags: #digital #computers #proxy #vpn #hacking
Medium
VPN vs Proxy: Which One Do You Actually Need for Safe Browsing?
You hit connect on a free browser extension, watch the icon turn green, and instantly feel a sense of relief. You figure your web traffic…
⤷ Title: Master Wireshark for Cybersecurity: From Network Packets to Real-World Threat Detection
════════════════════════
𐀪 Author: CyberBruhArmy
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:27:06 GMT
════════════════════════
⌗ Tags: #infosec #wireshark #ai #security #firewall
════════════════════════
𐀪 Author: CyberBruhArmy
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:27:06 GMT
════════════════════════
⌗ Tags: #infosec #wireshark #ai #security #firewall
Medium
Master Wireshark for Cybersecurity: From Network Packets to Real-World Threat Detection
Master Wireshark for Cybersecurity: From Network Packets to Real-World Threat Detection
⤷ Title: Beyond the Certificate: How Earning the HTB CPTS Changed the Way I Approach Penetration Testing
════════════════════════
𐀪 Author: Samuel Chukwuemeka Onyike
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:52:41 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #career_development #penetration_testing #hackthebox
════════════════════════
𐀪 Author: Samuel Chukwuemeka Onyike
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:52:41 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #career_development #penetration_testing #hackthebox
Medium
Beyond the Certificate: How Earning the HTB CPTS Changed the Way I Approach Penetration Testing
A journey through methodology, persistence, professional reporting, and building a stronger offensive security foundation.
⤷ Title: 90 Days of Web Security Basics : My Journey from Zero to WAPT
════════════════════════
𐀪 Author: cyber.she
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:51:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #cybersecurity
════════════════════════
𐀪 Author: cyber.she
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:51:42 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #cybersecurity
Medium
90 Days of Web Security Basics — My Journey from Zero to WAPT
90 Days of Web Security Basics — My Journey from Zero to WAPT The Beginning A few months ago, I started exploring cybersecurity with a simple question: “How do people actually find security …
⤷ Title: TryHackMe Easy Peasy: From Web Enumeration to Root Access
════════════════════════
𐀪 Author: Harshmcodes
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:45:00 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Harshmcodes
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:45:00 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity
Medium
TryHackMe Easy Peasy: From Web Enumeration to Root Access
Introduction
⤷ Title: TryHackMe Easy Peasy — How I Went from Nmap to Root
════════════════════════
𐀪 Author: Sohamkhaire
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:34:27 GMT
════════════════════════
⌗ Tags: #tryhackme #linux #cybersecurity
════════════════════════
𐀪 Author: Sohamkhaire
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:34:27 GMT
════════════════════════
⌗ Tags: #tryhackme #linux #cybersecurity
Medium
TryHackMe Easy Peasy — How I Went from Nmap to Root
A hands-on journey through reconnaissance, encoding, password cracking, steganography, SSH access, and Linux privilege escalation.
⤷ Title: Invite Only — TryHackMe Walkthrough
════════════════════════
𐀪 Author: Cristi Baltag
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:24:57 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Cristi Baltag
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 13:24:57 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity
Medium
Invite Only — TryHackMe Walkthrough
You are an SOC analyst on the SOC team at Managed Server Provider TrySecureMe. Today, you are supporting an L3 analyst in investigating…
⤷ Title: Afore the Hack: Understanding Networking Fundamentals
════════════════════════
𐀪 Author: Azama.
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 12:06:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #networking #network_security #computer_network
════════════════════════
𐀪 Author: Azama.
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 12:06:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #networking #network_security #computer_network
Medium
Afore the Hack: Understanding Networking Fundamentals
While recently exploring Remote Code Execution (RCE), one of the more serious vulnerability classes in cybersecurity, I got to thinking…
⤷ Title: Threema Deploys New DDoS Defense After August 2026 Outages Disrupted Service
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:51:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #DDOS attack #DDoS protection #Encrypted Messaging #Messaging App Security #Service Outage #Threema #Threema Work
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:51:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #DDOS attack #DDoS protection #Encrypted Messaging #Messaging App Security #Service Outage #Threema #Threema Work
Information Security News
Threema Deploys New DDoS Defense After August 2026 Outages Disrupted Service
Large-scale DDoS attacks on the evening of August 11 cut off user access to the secure messaging app Threema, followed by a fresh wave of disruptions the following morning of August 12. According …
⤷ Title: EUR30M Commerzbank Fraud Traced to Vendor Bug, Four Arrested in Brazil
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:01:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Bank Fraud #BKA #Brazil Federal Police #Commerzbank #cybercrime #Financial Fraud #Money Laundering
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:01:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Bank Fraud #BKA #Brazil Federal Police #Commerzbank #cybercrime #Financial Fraud #Money Laundering
Information Security News
EUR30M Commerzbank Fraud Traced to Vendor Bug, Four Arrested in Brazil
A software flaw at a payment contractor allowed criminals to drain approximately 30 million euros from customer accounts at Germany’s Commerzbank over the course of just four days. The stole…
⤷ Title: macOS Tahoe 26.7 Code Reveals Unreleased Apple Devices
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 15:28:58 +0000
════════════════════════
⌗ Tags: #Technology
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 15:28:58 +0000
════════════════════════
⌗ Tags: #Technology
Daily CyberSecurity
macOS Tahoe 26.7 Code Reveals Unreleased Apple Devices
Apple historically maintains strict secrecy regarding unreleased hardware products. However, the company’s own operating systems occasionally become the biggest source of leaks. Developers r…
⤷ Title: D-Link DWR-M961 Router Hit by Command Injection and Buffer Overflow Flaws
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:01:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #Command Injection #CVE_2026_71955 #CVE_2026_71957 #CVE_2026_71958 #D_Link #DWR_M961 #firmware update #IoT security #Router Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:01:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #Command Injection #CVE_2026_71955 #CVE_2026_71957 #CVE_2026_71958 #D_Link #DWR_M961 #firmware update #IoT security #Router Vulnerability
Daily CyberSecurity
D-Link DWR-M961 Router Hit by Command Injection and Buffer Overflow Flaws
D-Link patched 15 flaws in its DWR-M961 router this month. Most are D-Link router command injection bugs, and two are buffer overflow flaws. Also, the issues sit inside the router’s web mana…
⤷ Title: $12,000 for one GraphQL field: unauthenticated RCE on the servers that build Firefox
════════════════════════
𐀪 Author: Pawan Jaiswal
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 15:49:38 GMT
════════════════════════
⌗ Tags: #infosec #graphql_security #bug_bounty #hacking #cybersecurity
════════════════════════
𐀪 Author: Pawan Jaiswal
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 15:49:38 GMT
════════════════════════
⌗ Tags: #infosec #graphql_security #bug_bounty #hacking #cybersecurity
Medium
$12,000 for one GraphQL field: unauthenticated RCE on the servers that build Firefox
No login. No token. No special header. Just a filter argument nobody validated.
⤷ Title: This Is How a Hacker Hacks: Part 1 — Finding the Door
════════════════════════
𐀪 Author: CypherNova1337
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:54:08 GMT
════════════════════════
⌗ Tags: #infosec #pentesting #bug_bounty #hacking #cybersecurity
════════════════════════
𐀪 Author: CypherNova1337
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:54:08 GMT
════════════════════════
⌗ Tags: #infosec #pentesting #bug_bounty #hacking #cybersecurity
Medium
This Is How a Hacker Hacks: Part 1 — Finding the Door
An authorized pentest series. Everything below is anonymized from a real engagement: a large public university in Southeast Asia, roughly…
⤷ Title: Email Security Testing Explained | Complete Penetration Testing Walkthrough
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:07:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #web_development #artificial_intelligence #hacking
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Tue, 18 Aug 2026 14:07:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #web_development #artificial_intelligence #hacking
Medium
🔥 Email Security Testing Explained | Complete Penetration Testing Walkthrough
Email remains one of the most important communication systems in modern organizations — and one of the most attractive targets for…