Writing an Evasive .NET Shellcode Loader
https://ift.tt/SiDM8BL
Submitted July 14, 2026 at 12:48PM by slashcrypto
via reddit https://ift.tt/avjKmEg
https://ift.tt/SiDM8BL
Submitted July 14, 2026 at 12:48PM by slashcrypto
via reddit https://ift.tt/avjKmEg
slashsec
Writing an Evasive .NET Shellcode Loader | slashsec
A technical overview of how to load malicious code into .NET assemblies
Smashing the ServiceNow Sandbox – Pre Authentication RCE
https://ift.tt/d0yIYv4
Submitted July 14, 2026 at 04:40PM by Mempodipper
via reddit https://ift.tt/gJlAu8P
https://ift.tt/d0yIYv4
Submitted July 14, 2026 at 04:40PM by Mempodipper
via reddit https://ift.tt/gJlAu8P
Searchlight Cyber
Smashing the ServiceNow Sandbox – Pre Authentication RCE › Searchlight Cyber
Stay current: Get research alerts for newly disclosed vulnerabilities and exposures Smashing the ServiceNow Sandbox: Pre Authentication RCE This blog post is our second exploring pre-auth script execution security vulnerabilities in ServiceNow. If you haven't…
When LLMs do more than they have to
https://ift.tt/CGKYq1D
Submitted July 14, 2026 at 04:34PM by poyovl
via reddit https://ift.tt/2XIZdKl
https://ift.tt/CGKYq1D
Submitted July 14, 2026 at 04:34PM by poyovl
via reddit https://ift.tt/2XIZdKl
Nytro Security
When LLMs do more than they have to
There is a lot of hype with LLMs and their capabilities. Models such as “Mythos” are praised like the modern era Gods. Developers fully rely on basic prompts for their work, quickly for…
How an Infostealer Infection Led to a Sophisticated ClickFix Campaign at Artlist
https://ift.tt/R6vHyXM
Submitted July 14, 2026 at 04:46PM by Malwarebeasts
via reddit https://ift.tt/N5U8slw
https://ift.tt/R6vHyXM
Submitted July 14, 2026 at 04:46PM by Malwarebeasts
via reddit https://ift.tt/N5U8slw
Hudson Rock
How an Infostealer Infection Led to a Sophisticated ClickFix Campaign at Artlist | Hudson Rock
How an Infostealer Infection Led to a Sophisticated ClickFix Campaign at Artlist How an Infostealer Infection Led to a Sophisticated ClickFix Campaign at Artlist A shared research investigation…
Source-reviewing 200+ self-hosted multi-tenant AI/SaaS apps for tenant isolation: 78 leaked across tenants (the "un-retrofitted read sibling")
https://ift.tt/ra2RYiI
Submitted July 14, 2026 at 07:44PM by rutoca
via reddit https://ift.tt/QIoDal5
https://ift.tt/ra2RYiI
Submitted July 14, 2026 at 07:44PM by rutoca
via reddit https://ift.tt/QIoDal5
sectum.ai
I source-reviewed 200+ self-hosted AI tools for tenant isolation. 78 leaked. | Sectum AI
The same isolation flaw (the un-retrofitted read sibling) in 78 of 200+ multi-tenant AI and SaaS products. The pattern, the fixes that shipped, and how to check your own.
The Memory Heist - How I tricked Claude into leaking your deepest, darkest secrets
https://ift.tt/jSbDAVa
Submitted July 15, 2026 at 02:08PM by _vavkamil_
via reddit https://ift.tt/eTBQaFS
https://ift.tt/jSbDAVa
Submitted July 15, 2026 at 02:08PM by _vavkamil_
via reddit https://ift.tt/eTBQaFS
Ayush Paul
The Memory Heist
How I tricked Claude into leaking your deepest, darkest secrets
(More) Unauthenticated Arbitrary Code Execution in ServiceNow
https://ift.tt/RKAQxYC
Submitted July 15, 2026 at 01:55PM by ahhhpipipi
via reddit https://ift.tt/gptw80m
https://ift.tt/RKAQxYC
Submitted July 15, 2026 at 01:55PM by ahhhpipipi
via reddit https://ift.tt/gptw80m
palk.sh
Unauthenticated Arbitrary Code Execution in ServiceNow
Escaping the ServiceNow sandbox to obtain RCE
HN Security - My Semgrep C/C++ ruleset is ready for prime time again
https://ift.tt/2Lt3ieW
Submitted July 15, 2026 at 02:54PM by 0xdea
via reddit https://ift.tt/uKqXZC6
https://ift.tt/2Lt3ieW
Submitted July 15, 2026 at 02:54PM by 0xdea
via reddit https://ift.tt/uKqXZC6
HN Security
HN Security - My Semgrep C/C++ ruleset is ready for prime time again - Tools
Our ruleset for C/C++ vulnerability research has been upgraded for improved accuracy and performance, and published in the Semgrep register.
ASUS bsitf.sys (CVE-2026-13585): Arbitrary Physical Memory Mapping via Unvalidated IOCTL
https://ift.tt/35rJvPn
Submitted July 16, 2026 at 11:56AM by watchdogsrox
via reddit https://ift.tt/8WoUEHm
https://ift.tt/35rJvPn
Submitted July 16, 2026 at 11:56AM by watchdogsrox
via reddit https://ift.tt/8WoUEHm
Rehman's Blog
ASUS bsitf.sys (CVE-2026-13585): Arbitrary Physical Memory Mapping
This was discoved with DeepZero
Tracked as CVE-2026-13585. ASUS has published a vendor advisory with countermeasures.
ASUS ships a kernel driver called bsitf.sys with their Business Manager and Software Manager. It creates a device at \\.\bsitf that requires…
Tracked as CVE-2026-13585. ASUS has published a vendor advisory with countermeasures.
ASUS ships a kernel driver called bsitf.sys with their Business Manager and Software Manager. It creates a device at \\.\bsitf that requires…
AI Agent for reconaissasion
https://ift.tt/FtyqmZa
Submitted July 16, 2026 at 12:55PM by h4niz
via reddit https://ift.tt/ySsTclv
https://ift.tt/FtyqmZa
Submitted July 16, 2026 at 12:55PM by h4niz
via reddit https://ift.tt/ySsTclv
productx-mvp.cyeyes.io
Product X — Offensive AI Red Team
Autonomous blackbox penetration testing by CyEyes.
No Shark is Safe: Millions of Shark Vacuums are Vulnerable to RCE
https://ift.tt/8ndSexc
Submitted July 16, 2026 at 08:00PM by an0n9021O
via reddit https://ift.tt/W14KBfX
https://ift.tt/8ndSexc
Submitted July 16, 2026 at 08:00PM by an0n9021O
via reddit https://ift.tt/W14KBfX
[$13337] Confused Deputy: Google IdP Universal Account Takeover via Device Code Flow Hijacking
https://weirdmachine64.github.io/research/google-oauth-device-code-hijacking.html
Submitted July 16, 2026 at 07:45PM by swinglr
via reddit https://ift.tt/iIXZKkf
https://weirdmachine64.github.io/research/google-oauth-device-code-hijacking.html
Submitted July 16, 2026 at 07:45PM by swinglr
via reddit https://ift.tt/iIXZKkf
weirdmachine64.github.io
Confused Deputy: Google IdP Universal Account Takeover via Device Code Flow Hijacking // weirdmachine64
RFC 8628's device authorization grant lets a TV or CLI
New Exploitable BOLA Found in Immich (self-hosted media platform)
https://ift.tt/rA93gJd
Submitted July 16, 2026 at 10:58PM by EscapeSecurity
via reddit https://ift.tt/THlS0Z1
https://ift.tt/rA93gJd
Submitted July 16, 2026 at 10:58PM by EscapeSecurity
via reddit https://ift.tt/THlS0Z1
Escape - Application Security & Offensive Security Blog
How Escape Bypassed Immich's Locked Folders And Found a BOLA
How the Escape DAST uncovered a missing default that lets any Immich user read locked-folder photos without the PIN.
Windows AppResolver LPE: From AppContainer to SYSTEM. PoC linked to CVE-2026-50454
https://davidcarliez.github.io/blog/windows-appresolver-lpe-to-system/
Submitted July 17, 2026 at 06:48PM by ShufflinMuffin
via reddit https://ift.tt/By6Od2o
https://davidcarliez.github.io/blog/windows-appresolver-lpe-to-system/
Submitted July 17, 2026 at 06:48PM by ShufflinMuffin
via reddit https://ift.tt/By6Od2o
David Carliez
Windows AppResolver LPE: From AppContainer to SYSTEM
Exploit development for a Windows AppResolver authorization issue fixed in July 2026, from a zero-capability AppContainer to an interactive SYSTEM shell.
Openwrt pre-auth remote root exploit
https://ift.tt/njcWN6u
Submitted July 18, 2026 at 12:26AM by supernetworks
via reddit https://ift.tt/w5eOkLB
https://ift.tt/njcWN6u
Submitted July 18, 2026 at 12:26AM by supernetworks
via reddit https://ift.tt/w5eOkLB
Nitter
hacker.house (@hackerfantastic)
Don't believe that this is real? OpenWRT pre-auth remote root exploit 0day (CVSS 9.6, CRITICAL). Submitted this morning to the project. Technical details with-held for future publication. I have so far ran against OpenWRT, Horde, Django, WordPress, Gitlab…
wp2shell: Pre Authentication RCE in WordPress Core
https://wp2shell.com/
Submitted July 18, 2026 at 06:43AM by Mempodipper
via reddit https://ift.tt/YITui8X
https://wp2shell.com/
Submitted July 18, 2026 at 06:43AM by Mempodipper
via reddit https://ift.tt/YITui8X
wp2shell
wp2shell: Pre Authentication RCE in WordPress Core
Check whether your WordPress site is affected by the pre-authentication RCE in WordPress Core. A free checker from Searchlight Cyber.
Keeping private namespaces private - Quad9 blog
https://ift.tt/f7PY6yo
Submitted July 18, 2026 at 06:30AM by nicholashairs
via reddit https://ift.tt/Pz9KsMr
https://ift.tt/f7PY6yo
Submitted July 18, 2026 at 06:30AM by nicholashairs
via reddit https://ift.tt/Pz9KsMr
Quad9
Quad9 | A public and free DNS service for a better security and privacy
White House launches AI-driven "Gold Eagle" clearinghouse to centralize public-private vulnerability coordination
https://ift.tt/7aPSkQ5
Submitted July 18, 2026 at 09:40AM by Emergency_Stable_923
via reddit https://ift.tt/5UkZQoh
https://ift.tt/7aPSkQ5
Submitted July 18, 2026 at 09:40AM by Emergency_Stable_923
via reddit https://ift.tt/5UkZQoh
The White House
White House Launches Gold Eagle Initiative for Unprecedented Cybersecurity Vulnerability Coordination
President Trump’s bold vision to secure and accelerate American artificial intelligence (AI) innovation is being actioned through the creation of “GOLD
Source Code Analysis: A Pentester's Guide
https://ift.tt/y24OfQr
Submitted July 18, 2026 at 01:10PM by Ok_Host1989
via reddit https://ift.tt/pCGWq2j
https://ift.tt/y24OfQr
Submitted July 18, 2026 at 01:10PM by Ok_Host1989
via reddit https://ift.tt/pCGWq2j
Vulnsy
Source Code Analysis A Pentester's Guide
A practical guide to source code analysis for pentesters. Learn SAST, manual review, tooling, and how to integrate code review into your pentest reports.
Pixels to Payload: Dissecting a Four-Stage Bitmap-Steganography Dropper Delivering AsyncRAT :: Rhys Downing
https://ift.tt/xZu4TS3
Submitted July 18, 2026 at 10:56PM by SpectreTv
via reddit https://ift.tt/O7HZvkd
https://ift.tt/xZu4TS3
Submitted July 18, 2026 at 10:56PM by SpectreTv
via reddit https://ift.tt/O7HZvkd
Rhys Downing
Pixels to Payload: Dissecting a Four-Stage Bitmap-Steganography Dropper Delivering AsyncRAT
A technical teardown of a multi-stage .NET dropper chain that hides its loaders inside bitmap pixel channels, wraps an Eazfuscator crypter around an academic epidemiology simulator, and delivers AsyncRAT 0.5.8. Includes pixelchain, a keyless end-to-end chain…
wp2shell (CVE-2026-63030): Pre-Auth RCE Chain in WordPress Core - Analysis and Open-Source Scanner
https://ift.tt/zD3KEOe
Submitted July 19, 2026 at 02:47AM by mazen160
via reddit https://ift.tt/2x5WumZ
https://ift.tt/zD3KEOe
Submitted July 19, 2026 at 02:47AM by mazen160
via reddit https://ift.tt/2x5WumZ
FullHunt Blog
wp2shell (CVE-2026-63030): Pre-Auth RCE Chain in WordPress Core
How three small bugs in WordPress Core chain into CVE-2026-63030 (wp2shell), a pre-auth RCE reachable with a single anonymous POST to the REST API batch endpoint.