Your AD password complexity policies are security theater — one RPC call bypasses all of them (PoC scripts + defense included)
https://ift.tt/hovf0Qr
Submitted February 20, 2026 at 02:42PM by Suitable-Baker7584
via reddit https://ift.tt/yqRH1QP
https://ift.tt/hovf0Qr
Submitted February 20, 2026 at 02:42PM by Suitable-Baker7584
via reddit https://ift.tt/yqRH1QP
simpity.eu
Simpity | Built Deep for Security
Engineering security at the undocumented layer of Windows.
Building CrowdStrike workflows with Claude Code skills
https://ift.tt/bnwU1SC
Submitted February 20, 2026 at 04:07PM by eth0izzle
via reddit https://ift.tt/LhPuyb8
https://ift.tt/bnwU1SC
Submitted February 20, 2026 at 04:07PM by eth0izzle
via reddit https://ift.tt/LhPuyb8
darkport.co.uk
Building CrowdStrike workflows with Claude Code skills
Building CrowdStrike Falcon Fusion workflows with Claude Skills. What if you could just describe your security workflows?
Discovery & Analysis of CVE-2025-29969
https://ift.tt/6xKHqZ5
Submitted February 20, 2026 at 05:29PM by AlmondOffSec
via reddit https://ift.tt/DfRBMJZ
https://ift.tt/6xKHqZ5
Submitted February 20, 2026 at 05:29PM by AlmondOffSec
via reddit https://ift.tt/DfRBMJZ
SafeBreach
Discovery & Analysis of CVE-2025-29969 | SafeBreach
Learn more about SafeBreach Labs discovery of CVE-2025-29969, a critical RCE vulnerability in the MS-EVEN RPC protocol in Microsoft Windows.
In Memoriam: Jason Snitker, a.k.a. Parmaster. RIP Legend
https://ift.tt/c8JtSMU
Submitted February 20, 2026 at 07:51PM by Professor_Sigmund
via reddit https://ift.tt/5FkuzrJ
https://ift.tt/c8JtSMU
Submitted February 20, 2026 at 07:51PM by Professor_Sigmund
via reddit https://ift.tt/5FkuzrJ
Professorsigmund
IN MEMORIAM: PARMASTER — R.I.P. Legend
Jason Snitker, AKA Parmaster, has passed away. One of the sharpest and most elusive minds of the early underground hacking scene.
Malicious URLs
https://ift.tt/rZYlR9V
Submitted February 20, 2026 at 10:12PM by shawnster0
via reddit https://ift.tt/28ZIqXv
https://ift.tt/rZYlR9V
Submitted February 20, 2026 at 10:12PM by shawnster0
via reddit https://ift.tt/28ZIqXv
The Readiness Illusion. Why Tabletop Exercises fail without TTP Replays.
https://ift.tt/TSgFHXt
Submitted February 20, 2026 at 09:41PM by lares-hacks
via reddit https://ift.tt/BozaGTI
https://ift.tt/TSgFHXt
Submitted February 20, 2026 at 09:41PM by lares-hacks
via reddit https://ift.tt/BozaGTI
Lares
TTX and TTP Replay: The Win-Win Combo We Undervalue
Most organizations run tabletop exercises and detection tests in isolation, creating blind spots that only show up during real incidents. Pairing a tabletop exercise with a TTP replay exposes the…
Your Samsung Weather App Is a Fingerprint: How saved locations create a persistent cross-session tracking identifier
https://ift.tt/gD3R4bt
Submitted February 20, 2026 at 11:48PM by AdTemporary2475
via reddit https://ift.tt/MPGyu4p
https://ift.tt/gD3R4bt
Submitted February 20, 2026 at 11:48PM by AdTemporary2475
via reddit https://ift.tt/MPGyu4p
Buchodi's Threat Intel
Your Samsung Weather App Is a Fingerprint
How a pre-installed system app turns saved locations into a persistent cross-session tracking identifier
Samsung devices ship with a weather application that issues periodic HTTP requests to The Weather Company's API (api.weather.com) at fixed intervals.…
Samsung devices ship with a weather application that issues periodic HTTP requests to The Weather Company's API (api.weather.com) at fixed intervals.…
Why AI agent containers need a syscall-level observer: the prompt injection blind spot
https://ift.tt/Uxsve5A
Submitted February 21, 2026 at 01:21AM by M4r10_h4ck
via reddit https://ift.tt/NjIMYfP
https://ift.tt/Uxsve5A
Submitted February 21, 2026 at 01:21AM by M4r10_h4ck
via reddit https://ift.tt/NjIMYfP
Medium
Runtime Tracing for AI Agents: What Your OpenClaw Agent Actually Does Inside the Container
Autonomous AI agents run 24/7 with shell access, network connectivity, and full filesystem permissions. We built Azazel, an eBPF-based…
People-search sites + adtech = potential PII leakage vector (reporting option inside)
https://ift.tt/7akJsD6
Submitted February 21, 2026 at 03:44AM by 1pro_complainer
via reddit https://ift.tt/9ry8Xcf
https://ift.tt/7akJsD6
Submitted February 21, 2026 at 03:44AM by 1pro_complainer
via reddit https://ift.tt/9ry8Xcf
How a single typo led to RCE in Firefox
https://ift.tt/iVXxQyH
Submitted February 22, 2026 at 04:49PM by campuscodi
via reddit https://ift.tt/oIglRNv
https://ift.tt/iVXxQyH
Submitted February 22, 2026 at 04:49PM by campuscodi
via reddit https://ift.tt/oIglRNv
kqx.io
How a single typo led to RCE in Firefox – kqx
A technical writeup on a 0day vulnerability I reported inside SpiderMonkey, Firefox's JS engine
Malicious Chrome extension targeting Apple App Store Connect developers through fake ASO service - full analysis
https://ift.tt/AYXqITW
Submitted February 23, 2026 at 03:41AM by Huge-Skirt-6990
via reddit https://ift.tt/QK8lVgo
https://ift.tt/AYXqITW
Submitted February 23, 2026 at 03:41AM by Huge-Skirt-6990
via reddit https://ift.tt/QK8lVgo
Scary datapoints re network visibility in Dragos annual report on OT cyberattacks
https://www.ot.today/red-flags-for-ot-abound-in-dragos-review-2025-a-30809
Submitted February 23, 2026 at 09:10AM by WatermanReports
via reddit https://ift.tt/pWKwMyZ
https://www.ot.today/red-flags-for-ot-abound-in-dragos-review-2025-a-30809
Submitted February 23, 2026 at 09:10AM by WatermanReports
via reddit https://ift.tt/pWKwMyZ
www.ot.today
Red Flags for OT Abound in Dragos Review of 2025
There is a silent epidemic of ransomware attacks on commercial operational technology systems, which are mischaracterized as IT incidents even though they impact
I built a network security analyzer using information geometry (Riemannian manifolds) instead of traditional rule-based detection
https://ift.tt/vykZ7CS
Submitted February 23, 2026 at 11:05AM by Former-Oil-4621
via reddit https://ift.tt/Westwky
https://ift.tt/vykZ7CS
Submitted February 23, 2026 at 11:05AM by Former-Oil-4621
via reddit https://ift.tt/Westwky
consultoria.aivoix.mx
VicK Consultoría en Tecnología | Ciberseguridad Geométrica
VicK Consultoría en Tecnología - Soluciones de ciberseguridad, verificación de firmas, PKI y autenticación biométrica basadas en geometría natural.
Have you tried turning it off and on again? On bricking OT devices (part 2)
https://ift.tt/BERu4q7
Submitted February 23, 2026 at 04:55PM by 2ROT13
via reddit https://ift.tt/AsWcmYj
https://ift.tt/BERu4q7
Submitted February 23, 2026 at 04:55PM by 2ROT13
via reddit https://ift.tt/AsWcmYj
www.midnightblue.nl
Have you tried turning it off and on again? On bricking OT devices (part 2)
A discussion of the recent cyber attacks against a number of targets connected to Polands electric grid.
Another exposed Supabase DB strikes: 20k+ attendees and FULL write access
https://ift.tt/OXfBalj
Submitted February 23, 2026 at 11:29PM by therafort
via reddit https://ift.tt/WBDFs6I
https://ift.tt/OXfBalj
Submitted February 23, 2026 at 11:29PM by therafort
via reddit https://ift.tt/WBDFs6I
obaid’s longer thoughts
The Arts Council of Pakistan has a database of 20k+ attendees and full write access completely exposed. Right now.
And as I click publish on this post, the database is still, publicly exposed and has not been patched.
Form 4 filings are one of the most underused data sources in retail investing. Here's a practical guide to reading them.
https://moneysense.ai
Submitted 2026-02-24T04:56:14+00:00 by arrremayu
via reddit https://ift.tt/pbgDhuQ
https://moneysense.ai
Submitted 2026-02-24T04:56:14+00:00 by arrremayu
via reddit https://ift.tt/pbgDhuQ
MoneySense.ai
Analyze Any Stock Filing in Minutes | MoneySense.ai
AI-powered stock filing analysis across 7 global markets. Upload any filing and get instant insights in plain English.
Using Passkeys for more than just Auth
https://ift.tt/EB5s984
Submitted 2026-02-24T13:26:10+00:00 by seanieb
via reddit https://ift.tt/9kqcv1L
https://ift.tt/EB5s984
Submitted 2026-02-24T13:26:10+00:00 by seanieb
via reddit https://ift.tt/9kqcv1L
conic.al
Passkeys and the Quiet Revolution in Corporate Crypto — Sean Byrne
Passkeys solve the authentication problem corporate IT has been fighting for decades. But the more interesting story is what happens when every employee has a hardware-backed key generation and storage facility in their pocket.
Goodbye innerHTML, Hello setHTML: Stronger XSS Protection in Firefox 148 – Mozilla Hacks - the Web developer blog
https://ift.tt/pJdWTFh
Submitted 2026-02-24T14:50:37+00:00 by evilpies
via reddit https://ift.tt/a8CiFMQ
https://ift.tt/pJdWTFh
Submitted 2026-02-24T14:50:37+00:00 by evilpies
via reddit https://ift.tt/a8CiFMQ
Mozilla Hacks – the Web developer blog
Goodbye innerHTML, Hello setHTML: Stronger XSS Protection in Firefox 148
Cross-site scripting (XSS) remains one of the most prevalent vulnerabilities on the web. The new standardized Sanitizer API provides a straightforward way for web developers to sanitize untrusted HTML before inserting it into the DOM. Firefox 148 is the first…
AI Agent Threat Intel (Feb 2026 month to date): Tool chain escalation displaces instruction override as #1 technique, agent-targeting attacks hit 26.4% - 91K production interactions
https://ift.tt/NHaYnBV
Submitted 2026-02-24T17:30:20+00:00 by cyberamyntas
via reddit https://ift.tt/qTIQ5RU
https://ift.tt/NHaYnBV
Submitted 2026-02-24T17:30:20+00:00 by cyberamyntas
via reddit https://ift.tt/qTIQ5RU
raxe.ai
AI Threat Intelligence Report | RAXE Labs
Monthly AI threat intelligence report with interactive analysis of attack patterns targeting AI agents and LLMs.
ROP the ROM: Exploiting a Stack Buffer Overflow on STM32H5 in Multiple Ways
https://ift.tt/ecKRE8P
Submitted 2026-02-24T17:04:22+00:00 by gquere
via reddit https://ift.tt/PBldMSv
https://ift.tt/ecKRE8P
Submitted 2026-02-24T17:04:22+00:00 by gquere
via reddit https://ift.tt/PBldMSv
Chrome CVE made me go digging and I found a container image in prod that hasn't been updated since 2023
https://ift.tt/glKUuxL
Submitted 2026-02-24T22:32:04+00:00 by proigor1024
via reddit https://ift.tt/l79RWhs
https://ift.tt/glKUuxL
Submitted 2026-02-24T22:32:04+00:00 by proigor1024
via reddit https://ift.tt/l79RWhs