AI Is Not Replacing Security Researchers
https://ift.tt/Qran5My
Submitted April 16, 2026 at 04:20PM by TradeGold6317
via reddit https://ift.tt/4Sc0sar
https://ift.tt/Qran5My
Submitted April 16, 2026 at 04:20PM by TradeGold6317
via reddit https://ift.tt/4Sc0sar
Simon Koeck
AI Is Not Replacing Security Researchers | Simon Koeck
AI is starting to find real vulnerabilities on its own. But every time it runs without a human in the loop, things go sideways. The future of security research is human-guided AI, not AI alone.
Open dataset: 100k+ multimodal prompt injection samples with per-category academic sourcing
https://ift.tt/er4jMH9
Submitted April 16, 2026 at 06:23PM by BordairAPI
via reddit https://ift.tt/AitVXLW
https://ift.tt/er4jMH9
Submitted April 16, 2026 at 06:23PM by BordairAPI
via reddit https://ift.tt/AitVXLW
huggingface.co
Bordair/bordair-multimodal · Datasets at Hugging Face
We’re on a journey to advance and democratize artificial intelligence through open source and open science.
HAProxy HTTP/3 -> HTTP/1 Desync: Cross-Protocol Smuggling via a Standalone QUIC FIN (CVE-2026-33555)
https://r3verii.github.io/cve/2026/04/14/haproxy-h3-standalone-fin-smuggling.html
Submitted April 17, 2026 at 01:29AM by r3verii
via reddit https://ift.tt/GdDIx0K
https://r3verii.github.io/cve/2026/04/14/haproxy-h3-standalone-fin-smuggling.html
Submitted April 17, 2026 at 01:29AM by r3verii
via reddit https://ift.tt/GdDIx0K
CyberSec Notes
HAProxy HTTP/3 -> HTTP/1 Desync: Cross-Protocol Smuggling via a Standalone QUIC FIN (CVE-2026-33555)
One zero-byte QUIC packet is enough to desynchronize HAProxy’s backend connection pool and smuggle HTTP requests across unrelated users — even users on a completely different frontend protocol.
RedSun: How Windows Defender's Remediation Became a SYSTEM File Write
https://ift.tt/fhmjO2G
Submitted April 17, 2026 at 02:41AM by TakesThisSeriously
via reddit https://ift.tt/z2TWr14
https://ift.tt/fhmjO2G
Submitted April 17, 2026 at 02:41AM by TakesThisSeriously
via reddit https://ift.tt/z2TWr14
Nefariousplan
RedSun: How Windows Defender's Remediation Became a SYSTEM File Write
A technical teardown of the RedSun zero-day — the second Defender escalation in two weeks from the same researcher — grounded in the actual source code.
World Leaks: RDP Access Leads to Custom Exfiltration and Personalized Extortion
https://ift.tt/aHmoJrz
Submitted April 17, 2026 at 02:31AM by BreachCache
via reddit https://ift.tt/lEVkGAC
https://ift.tt/aHmoJrz
Submitted April 17, 2026 at 02:31AM by BreachCache
via reddit https://ift.tt/lEVkGAC
breachcache
World Leaks: RDP Access Leads to Custom Exfiltration and Personalized Extortion
Two phase intrusion: RDP brute force, privacy.sexy defense kill, Cobalt Strike, SoftPerfect Network Scanner, custom Rust exfiltration tool across 6,900+ Cloudflare IPs, personalized ransom notes addressed by name to every employee. Full negotiation chats…
CVE-2026-33825 deep-dive: The researcher commented out the full credential dump. Here's what that means.
https://ift.tt/YvWpuVd
Submitted April 17, 2026 at 09:41PM by TakesThisSeriously
via reddit https://ift.tt/OwsoJU0
https://ift.tt/YvWpuVd
Submitted April 17, 2026 at 09:41PM by TakesThisSeriously
via reddit https://ift.tt/OwsoJU0
nefariousplan.com
BlueHammer: What the Researcher Commented Out — nefariousplan.com
The most important line in CVE-2026-33825's hundred-kilobyte proof of concept is two comment characters. A line-by-line walk of FunnyApp.cpp — the batch oplock, the object namespace redirect, the Cloud Files freeze, and what the author chose not to ship.
UnDefend: Chaotic Eclipse's third Defender zero-day blocks all signature updates from a standard user — no admin required
https://ift.tt/KeuiXsN
Submitted April 17, 2026 at 10:38PM by TakesThisSeriously
via reddit https://ift.tt/ayN10Ri
https://ift.tt/KeuiXsN
Submitted April 17, 2026 at 10:38PM by TakesThisSeriously
via reddit https://ift.tt/ayN10Ri
nefariousplan.com
UnDefend: What Chaotic Eclipse Held Back This Time — nefariousplan.com
The third zero-day from the same researcher makes Defender permanently blind from a standard user account — no elevation required. A line-by-line walk of UnDefend.cpp, and the one mechanism that didn't ship.
Anonymous credentials: an illustrated primer (Part 2)
https://ift.tt/82hUcxY
Submitted April 18, 2026 at 01:30AM by feross
via reddit https://ift.tt/8kpxKNA
https://ift.tt/82hUcxY
Submitted April 18, 2026 at 01:30AM by feross
via reddit https://ift.tt/8kpxKNA
A Few Thoughts on Cryptographic Engineering
Anonymous credentials: an illustrated primer (Part 2)
This is the second in a series of posts about anonymous credentials. You can find this first part here. In the previous post, we introduced the notion of anonymous credentials as a technique that a…
AI uncovered thousands of zero-day vulnerabilities for every major operating system and browser. Including a bug dating back to 1996 in OpenBSD. Patch everything is officially obsolete.
https://ift.tt/BtRgl4i
Submitted April 18, 2026 at 04:29AM by Exciting_Fly_2211
via reddit https://ift.tt/YsPJl19
https://ift.tt/BtRgl4i
Submitted April 18, 2026 at 04:29AM by Exciting_Fly_2211
via reddit https://ift.tt/YsPJl19
www.minimus.io
Defenders in the Age of AI Vulnerability Research - Minimus
AI is changing how vulnerabilities are found, not how they’re fixed. Defenders need a new approach: shrinking the attack surface before vulnerabilities exist.
MAD Bugs: Even "cat readme.txt" is not safe
https://ift.tt/EjTc4q5
Submitted April 18, 2026 at 04:05PM by _vavkamil_
via reddit https://ift.tt/XpSwbKI
https://ift.tt/EjTc4q5
Submitted April 18, 2026 at 04:05PM by _vavkamil_
via reddit https://ift.tt/XpSwbKI
blog.calif.io
MAD Bugs: Even "cat readme.txt" is not safe
Turning "cat readme.txt" into arbitrary code execution in iTerm2.
The Smart TV in Your Living Room Is a Node in the AI Scraping Economy
https://ift.tt/n7IX4cd
Submitted April 18, 2026 at 03:53PM by AdTemporary2475
via reddit https://ift.tt/7nBwaL5
https://ift.tt/n7IX4cd
Submitted April 18, 2026 at 03:53PM by AdTemporary2475
via reddit https://ift.tt/7nBwaL5
Buchodi's Threat Intel
The Smart TV in Your Living Room Is a Node in the AI Scraping Economy
Bright Data's residential proxy SDK ships a public partner manifest listing the publishers it relays traffic through. CTV distributors reaching Comcast, Sky, LG, Samsung, Roku, and 125+ other TV brands are on the list. The SDK's 200 GB/month bandwidth budget…
TPM 2.0 is cool, actually: hardware attestation for bare-metal fleets
https://apas.tel/blog/tpm-is-cool
Submitted April 18, 2026 at 08:14PM by arty049
via reddit https://ift.tt/wLA0fm5
https://apas.tel/blog/tpm-is-cool
Submitted April 18, 2026 at 08:14PM by arty049
via reddit https://ift.tt/wLA0fm5
apas.tel
TPM 2.0 is cool, actually – Arthur Pastel
How I went from dismissing TPM as a Windows 11 annoyance to using it as a hardware trust anchor for CodSpeed's bare-metal runners.
CVE-2026-34621 PoC isn't a scanner, it's a campaign weaponizer with 62 pre-authenticated Brazilian fintech targets
https://ift.tt/QDAbPVH
Submitted April 18, 2026 at 09:13PM by TakesThisSeriously
via reddit https://ift.tt/MjRB89Y
https://ift.tt/QDAbPVH
Submitted April 18, 2026 at 09:13PM by TakesThisSeriously
via reddit https://ift.tt/MjRB89Y
nefariousplan.com
CVE-2026-34621: Adobe Acrobat's Privilege Gate Inherits What It Checks — nefariousplan.com
A prototype pollution attack in Adobe Acrobat ≤26.001.21367 makes every object in the JavaScript engine report that it's trusted. The PoC on GitHub isn't a scanner. It's a cross-platform, lure-merged, environment-keyed, campaign-tracked PDF weaponizer that…
Subject: Inquiry Regarding Localized GEM Induction via High-Frequency Plasma
https://ift.tt/cI7qjCH
Submitted April 19, 2026 at 07:59AM by Silent_Explorer_4839
via reddit https://ift.tt/z58lDM3
https://ift.tt/cI7qjCH
Submitted April 19, 2026 at 07:59AM by Silent_Explorer_4839
via reddit https://ift.tt/z58lDM3
Google
US20180229864A1 - High Frequency Gravitational Wave Generator
- Google Patents
- Google Patents
A high frequency gravitational wave generator including a gas filled shell with an outer shell surface, microwave emitters, sound generators, and acoustic vibration resonant gas-filled cavities. The outer shell surface is electrically charged and vibrated…
Discord Read Receipts: When, How Often, How Long
https://ift.tt/MSvmc2h
Submitted April 19, 2026 at 08:09PM by paul_blinkdisk
via reddit https://ift.tt/6m89TQH
https://ift.tt/MSvmc2h
Submitted April 19, 2026 at 08:09PM by paul_blinkdisk
via reddit https://ift.tt/6m89TQH
Paul Koeck
Discord Read Receipts: When, How Often, How Long | Paul Koeck
Discord does not have read receipts by design. However, a bug in the OG image proxy reveals not only when a message was viewed, but also how often and for how long.
Nasa CFITSIO Fuzzing: Memory Corruptions and a Codex-Assisted Pipeline
https://ift.tt/b3MoJpP
Submitted April 20, 2026 at 03:51PM by nibblesec
via reddit https://ift.tt/LTIAOjJ
https://ift.tt/b3MoJpP
Submitted April 20, 2026 at 03:51PM by nibblesec
via reddit https://ift.tt/LTIAOjJ
Doyensec
CFITSIO Fuzzing: Memory Corruptions and a Codex-Assisted Pipeline
Have you ever wondered how those amazing space photos are taken? Are they exclusive to the big telescopes floating in space or can you take one from your backyard? What does it take to extract hydrogen colors out of a seemingly black sky?
Deterministic Chain Analysis: The Missing Layer in a Mythos-Ready Security Program
https://ift.tt/1GJkn0c
Submitted April 20, 2026 at 11:31PM by Madamin_Z
via reddit https://ift.tt/yZ4Pbs9
https://ift.tt/1GJkn0c
Submitted April 20, 2026 at 11:31PM by Madamin_Z
via reddit https://ift.tt/yZ4Pbs9
DEV Community
Deterministic Chain Analysis: The Missing Layer in a Mythos-Ready Security Program
By Eldor Zufarov, Founder of Auditor Core Based on the CSA/SANS document "The AI Vulnerability...
Vercel Breach Explained: OAuth Risk in AI + SaaS Environment
https://ift.tt/vAHiGVR
Submitted April 20, 2026 at 10:53PM by Grip_Security
via reddit https://ift.tt/Pg8GrsT
https://ift.tt/vAHiGVR
Submitted April 20, 2026 at 10:53PM by Grip_Security
via reddit https://ift.tt/Pg8GrsT
www.grip.security
Vercel Breach Explained: OAuth Risk in AI + SaaS Environment
The Vercel breach shows how OAuth and AI integrations create hidden SaaS risk. Learn how access abuse, shadow AI, and identity threats are reshaping modern secu
Building a LLM honeypot that monitors all 65535 ports
https://ift.tt/Rsg0Dhy
Submitted April 20, 2026 at 10:35PM by moonlightelite
via reddit https://ift.tt/hykiYet
https://ift.tt/Rsg0Dhy
Submitted April 20, 2026 at 10:35PM by moonlightelite
via reddit https://ift.tt/hykiYet
Substack
Fun with IP_TRANSPARENT
I paid for all 65535 ports. I use all 65535 ports. And yes, a LLM is involved.
Analysis of the April 2026 Booking.com Supply Chain Breach and ClickFix Tactics
https://ift.tt/tRYqypm
Submitted April 21, 2026 at 01:59AM by CNRC0
via reddit https://ift.tt/7xEHluO
https://ift.tt/tRYqypm
Submitted April 21, 2026 at 01:59AM by CNRC0
via reddit https://ift.tt/7xEHluO
Medium
Booking.com Got Breached. Your Reservation Was the Weapon.
In april 13th 2026, online travel agency booking.com issued a major notification that echoed back to 2021. There was unauthorized access to…