Almost Impossible: Java Deserialization Through Broken Crypto in OpenText Directory Services
https://ift.tt/zays2pk
Submitted February 17, 2026 at 06:04AM by Mempodipper
via reddit https://ift.tt/8WE027a
https://ift.tt/zays2pk
Submitted February 17, 2026 at 06:04AM by Mempodipper
via reddit https://ift.tt/8WE027a
Searchlight Cyber
Almost Impossible: Java Deserialization Through Broken Crypto in OpenText Directory Services › Searchlight Cyber
Introduction We recently found ourselves looking into OpenText Directory Services (OTDS). We had seen it present on our customer's attack surface, and it seemed to be an interesting target. OTDS is a Java web application providing authentication and user…
Prompt Injection Standardization: Text Techniques vs Intent
https://ift.tt/ymE6AKF
Submitted February 17, 2026 at 03:20PM by Equivalent_Cover4542
via reddit https://ift.tt/MpBrgUH
https://ift.tt/ymE6AKF
Submitted February 17, 2026 at 03:20PM by Equivalent_Cover4542
via reddit https://ift.tt/MpBrgUH
www.lasso.security
Prompt Injection Standardization: Text Techniques vs Intent
Explore Lasso’s prompt injection taxonomy, distinguishing text-based techniques from attacker intent to standardize AI security defenses.
Prompt Injection Standardization: Text Techniques vs Intent
https://ift.tt/ymE6AKF
Submitted February 17, 2026 at 05:32PM by Equivalent_Cover4542
via reddit https://ift.tt/3DVEAzJ
https://ift.tt/ymE6AKF
Submitted February 17, 2026 at 05:32PM by Equivalent_Cover4542
via reddit https://ift.tt/3DVEAzJ
www.lasso.security
Prompt Injection Standardization: Text Techniques vs Intent
Explore Lasso’s prompt injection taxonomy, distinguishing text-based techniques from attacker intent to standardize AI security defenses.
Log Poisoning in OpenClaw
https://ift.tt/BC1YpNT
Submitted February 17, 2026 at 05:49PM by vaizor
via reddit https://ift.tt/Q71lHev
https://ift.tt/BC1YpNT
Submitted February 17, 2026 at 05:49PM by vaizor
via reddit https://ift.tt/Q71lHev
Eye Research
Log Poisoning in OpenClaw
Eye Security explores an indirect prompt injection risk in OpenClaw’s WebSocket logging, explains what an exploit might look like, and highlights context, impact, responsible disclosure, and practical next steps for secure AI assistant deployments.
Every OpenClaw Security Incident, CVE, and Exploit in 2026 — Complete Timeline
https://ift.tt/I20SYfP
Submitted February 17, 2026 at 11:23PM by LostPrune2143
via reddit https://ift.tt/cLPbaQ4
https://ift.tt/I20SYfP
Submitted February 17, 2026 at 11:23PM by LostPrune2143
via reddit https://ift.tt/cLPbaQ4
blog.barrack.ai
OpenClaw is a Security Nightmare — Here's the Safe Way to Run It | Barrack.ai
Complete timeline of every OpenClaw CVE, the ClawHavoc malware campaign, 42,000+ exposed instances, the Moltbook leak, and how to deploy safely.
Leaking secrets from the claud: AI coding tools are leaking secrets via configuration directories
https://ift.tt/nVcDHti
Submitted February 18, 2026 at 02:46AM by nindustries
via reddit https://ift.tt/HQ7PuhL
https://ift.tt/nVcDHti
Submitted February 18, 2026 at 02:46AM by nindustries
via reddit https://ift.tt/HQ7PuhL
ironpeak.be
Leaking secrets from the claud - ironPeak Blog
How AI coding assistants are causing developers to leak credentials to public GitHub repositories and what you can do about it.
Samsung Weather widget ships hardcoded shared IBM API keys + persistent user ID, sends precise GPS every 15-30 min
https://ift.tt/UskyhNQ
Submitted February 18, 2026 at 02:25AM by AdTemporary2475
via reddit https://ift.tt/VJnXiIB
https://ift.tt/UskyhNQ
Submitted February 18, 2026 at 02:25AM by AdTemporary2475
via reddit https://ift.tt/VJnXiIB
Nytimes
Los Angeles Accuses Weather Channel App of Covertly Mining User Data (Published 2019)
In a lawsuit on Thursday, the city attorney said tracking was used not just for local forecasts but also for commercial purposes like targeted marketing.
AI scams explained: how AI-powered fraud works and how enterprises detect it
https://ift.tt/HrxqoYG
Submitted February 18, 2026 at 12:57PM by No_Adeptness_6716
via reddit https://ift.tt/ALmgqB7
https://ift.tt/HrxqoYG
Submitted February 18, 2026 at 12:57PM by No_Adeptness_6716
via reddit https://ift.tt/ALmgqB7
www.vectra.ai
AI scams in 2026: how they work and how to detect them
Learn how AI-powered scams work, the latest 2026 statistics on deepfake and voice cloning fraud, and how enterprises detect AI-enabled social engineering attacks.
CRESCENTHARVEST: Iranian protestors and dissidents targeted in cyberespionage campaign
https://ift.tt/MHz9b3j
Submitted February 18, 2026 at 11:16PM by bagaudin
via reddit https://ift.tt/RIh630f
https://ift.tt/MHz9b3j
Submitted February 18, 2026 at 11:16PM by bagaudin
via reddit https://ift.tt/RIh630f
Acronis
CRESCENTHARVEST: Iranian protestors and dissidents targeted in cyberespionage campaign
Acronis' Threat Research Unit (TRU) has uncovered a malware campaign, dubbed CRESCENTHARVEST, potentially targeting supporters of Iran's ongoing protests with the goal of information theft and long-term espionage.
DroidGround Demo
https://droidground.com
Submitted February 19, 2026 at 02:26PM by deleee
via reddit https://ift.tt/9GgiVfC
https://droidground.com
Submitted February 19, 2026 at 02:26PM by deleee
via reddit https://ift.tt/9GgiVfC
Droidground
DroidGround - A flexible playground for Android CTF challenges
A platform for hosting realistic Android CTF hacking challenges. DroidGround provides fine-grained control, real-time device interaction, Frida scripting, Team based workflows and customizable exploitation scenarios.
Compromising Cline's Production Releases just by Prompting an Issue Triager
https://ift.tt/C2cpJUb
Submitted February 19, 2026 at 03:35PM by albinowax
via reddit https://ift.tt/jgoyhza
https://ift.tt/C2cpJUb
Submitted February 19, 2026 at 03:35PM by albinowax
via reddit https://ift.tt/jgoyhza
Adnan Khan - Security Research
Clinejection — Compromising Cline's Production Releases just by Prompting an Issue Triager | Adnan Khan - Security Research
Clinejection — Compromising Cline's Production Releases just by Prompting an Issue Triager - Security research by adnanthekhan