Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident
https://ift.tt/ufT7Ybi
Submitted July 29, 2026 at 08:19PM by si9int
via reddit https://ift.tt/lYVqDNU
https://ift.tt/ufT7Ybi
Submitted July 29, 2026 at 08:19PM by si9int
via reddit https://ift.tt/lYVqDNU
huggingface.co
Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident
We’re on a journey to advance and democratize artificial intelligence through open source and open science.
Reversing of Eufy Security Video Doorbell sync protocol and wifi creds decryption from flash memory
https://adepts.of0x.cc/eufy-doorbell-hacking/
Submitted July 30, 2026 at 12:27AM by gid0rah
via reddit https://ift.tt/7N4oSci
https://adepts.of0x.cc/eufy-doorbell-hacking/
Submitted July 30, 2026 at 12:27AM by gid0rah
via reddit https://ift.tt/7N4oSci
From your doorbell to your home network |
From your doorbell to your home network | AdeptsOf0xCC
Analyzing Eufy Security Ecosystem and reverse engineering of its doorbell component
Sixteen strangers and a shared obfuscator: mapping the wool scene
https://ift.tt/HUSX1P0
Submitted July 30, 2026 at 01:53AM by TheSilenceOfWinter
via reddit https://ift.tt/0gb4tuv
https://ift.tt/HUSX1P0
Submitted July 30, 2026 at 01:53AM by TheSilenceOfWinter
via reddit https://ift.tt/0gb4tuv
Alex Manson
Sixteen strangers and a shared obfuscator: mapping the wool scene
A 16 actor map of a Chinese reward farming scene, built out from a single GitHub repo over a weekend. The operators know GitHub is dangerous and scrub their history religiously, but they defend the page and forget the graph: the scrub itself is a trace, and…
Detection and Enforcement for Endpoint AI Agents
https://ift.tt/gLwE8WY
Submitted July 30, 2026 at 05:52AM by netw0rm
via reddit https://ift.tt/ynDKomQ
https://ift.tt/gLwE8WY
Submitted July 30, 2026 at 05:52AM by netw0rm
via reddit https://ift.tt/ynDKomQ
research.perplexity.ai
Securing Agents Across Perplexity’s Client Endpoints with Numbat
Numbat is Perplexity’s open-source agent security suite for client endpoints. It detects, prevents, and investigates risky AI agent behavior on macOS, Linux, and Windows.
KindaRails2Shell: arbitrary file read to RCE in Rails Active Storage via libvips (CVE-2026-66066)
https://ift.tt/pj8HOiY
Submitted July 30, 2026 at 07:34PM by ZealousidealHunter80
via reddit https://ift.tt/Hp4iLvZ
https://ift.tt/pj8HOiY
Submitted July 30, 2026 at 07:34PM by ZealousidealHunter80
via reddit https://ift.tt/Hp4iLvZ
Ethiack
KindaRails2Shell - Critical RCE in Rails via Active Storage (CVE-2026-66066) | Ethiack — Autonomous Ethical Hacking for continuous…
Ethiack research team discovered KindaRails2Shell (CVE-2026-66066): a critical RCE in Ruby on Rails via Active Storage. 500,000+ sites affected. Find out if you are and how to mitigate.
What Every Programmer Should Know About Twists of Elliptic Curves
https://ift.tt/P2q8JjR
Submitted July 30, 2026 at 09:10PM by DataBaeBee
via reddit https://ift.tt/xNuHigY
https://ift.tt/P2q8JjR
Submitted July 30, 2026 at 09:10PM by DataBaeBee
via reddit https://ift.tt/xNuHigY
Substack
What Every Programmer Should Know About Twists of Elliptic Curves
Twists Make Elliptic Curves Wildly Insecure. Here'a Cheatsheet Using Bitcoin's Familiar Secp
Deterministic Runtime Bounds for Autonomous AI Agents at the C-ABI Syscall Layer
https://drive.google.com/file/d/1PTXugwbuqKvw1Eo4_pul-Z3v--dCFJrD/view?usp=drive_link
Submitted July 31, 2026 at 07:54AM by Smiling509
via reddit https://ift.tt/O104anp
https://drive.google.com/file/d/1PTXugwbuqKvw1Eo4_pul-Z3v--dCFJrD/view?usp=drive_link
Submitted July 31, 2026 at 07:54AM by Smiling509
via reddit https://ift.tt/O104anp
Reddit
From the netsec community on Reddit: [ Removed by moderator ]
Posted by Smiling509 - 2 votes and 0 comments
Full Rails RCE technical writeup... KindaRails2Shell: How a MATLAB file reads your secrets and pops a shell on Ruby on Rails | Ethiack
https://ift.tt/lIUV9Tt
Submitted July 31, 2026 at 04:38PM by hakluke
via reddit https://ift.tt/MkRQvq6
https://ift.tt/lIUV9Tt
Submitted July 31, 2026 at 04:38PM by hakluke
via reddit https://ift.tt/MkRQvq6
Ethiack
KindaRails2Shell: How a MATLAB file reads your secrets and pops a shell on Ruby on Rails | Ethiack — Autonomous Ethical Hacking…
CVE-2026-66066: how a .mat file declared as image/png chains into arbitrary file read and remote code execution as root on a default Ruby on Rails application.
Predictable RNG Fallback and 32-Bit Reseed in COLDCARD Firmware
https://engineering.block.xyz/blog/predictable-rng-fallback-and-32-bit-reseed-in-coldcard-firmware
Submitted July 31, 2026 at 07:47PM by _vavkamil_
via reddit https://ift.tt/fO3P7Xg
https://engineering.block.xyz/blog/predictable-rng-fallback-and-32-bit-reseed-in-coldcard-firmware
Submitted July 31, 2026 at 07:47PM by _vavkamil_
via reddit https://ift.tt/fO3P7Xg
Block Engineering Blog
Predictable RNG Fallback and 32-Bit Reseed in COLDCARD Firmware
How a disabled hardware-RNG path and 32-bit reseed constrain entropy in affected COLDCARD firmware and expose generated secrets.
Investigating three real-world incidents in Anthropic's evaluations
https://ift.tt/IDaJZE4
Submitted August 1, 2026 at 02:37AM by luckokkkk
via reddit https://ift.tt/3yQrAGK
https://ift.tt/IDaJZE4
Submitted August 1, 2026 at 02:37AM by luckokkkk
via reddit https://ift.tt/3yQrAGK
Anthropic
Investigating three real-world incidents in our cybersecurity evaluations
In a review of our cybersecurity evaluation transcripts, we found three incidents in which a Claude model reached the internet from within or while interacting with a third-party evaluation environment, and then gained unauthorized access to the real systems…
frontier class vulnerabilities: it gets worse before it (maybe) gets better
https://ift.tt/AXsvNYV
Submitted August 1, 2026 at 05:21PM by Mempodipper
via reddit https://ift.tt/wXDJWVc
https://ift.tt/AXsvNYV
Submitted August 1, 2026 at 05:21PM by Mempodipper
via reddit https://ift.tt/wXDJWVc
shubs
frontier class vulnerabilities: it gets worse before it (maybe) gets better
Early in my career as a consultant, I was put on source code review engagements despite not being experienced. This forced me to deliver on projects that, looking back, were of a ludicrous size and scope for my skills at the time.
Those early career opportunities…
Those early career opportunities…
r/netsec monthly discussion & tool thread
Questions regarding netsec and discussion related directly to netsec are welcome here, as is sharing tool links.Rules & GuidelinesAlways maintain civil discourse. Be awesome to one another - moderator intervention will occur if necessary.Avoid NSFW content unless absolutely necessary. If used, mark it as being NSFW. If left unmarked, the comment will be removed entirely.If linking to classified content, mark it as such. If left unmarked, the comment will be removed entirely.Avoid use of memes. If you have something to say, say it with real words.All discussions and questions should directly relate to netsec.No tech support is to be requested or provided on r/netsec.As always, the content & discussion guidelines should also be observed on r/netsec.FeedbackFeedback and suggestions are welcome, but don't post it here. Please send it to the moderator inbox.
Submitted August 1, 2026 at 06:59PM by albinowax
via reddit https://ift.tt/bAcGs8F
Questions regarding netsec and discussion related directly to netsec are welcome here, as is sharing tool links.Rules & GuidelinesAlways maintain civil discourse. Be awesome to one another - moderator intervention will occur if necessary.Avoid NSFW content unless absolutely necessary. If used, mark it as being NSFW. If left unmarked, the comment will be removed entirely.If linking to classified content, mark it as such. If left unmarked, the comment will be removed entirely.Avoid use of memes. If you have something to say, say it with real words.All discussions and questions should directly relate to netsec.No tech support is to be requested or provided on r/netsec.As always, the content & discussion guidelines should also be observed on r/netsec.FeedbackFeedback and suggestions are welcome, but don't post it here. Please send it to the moderator inbox.
Submitted August 1, 2026 at 06:59PM by albinowax
via reddit https://ift.tt/bAcGs8F
Reddit
From the netsec community on Reddit
Explore this post and more from the netsec community
The Risk of Fine-Tuned Open-Weight Models · MSec Operations Blog
https://ift.tt/flHdiSr
Submitted August 3, 2026 at 12:30AM by S3cur3Th1sSh1t
via reddit https://ift.tt/tuNikhP
https://ift.tt/flHdiSr
Submitted August 3, 2026 at 12:30AM by S3cur3Th1sSh1t
via reddit https://ift.tt/tuNikhP
www.msecops.de
The Risk of Fine-Tuned Open-Weight Models · MSec Operations Blog
A proof of concept: fine-tuning small open-weight coding models into silent backdoors that execute code on the machine of anyone who connects to them.
L2 Reduction: LLL Algorithm With Quadratic Complexity in Python
https://ift.tt/eyRd9rm
Submitted August 3, 2026 at 08:45AM by DataBaeBee
via reddit https://ift.tt/1oBOLRQ
https://ift.tt/eyRd9rm
Submitted August 3, 2026 at 08:45AM by DataBaeBee
via reddit https://ift.tt/1oBOLRQ
Substack
L2 Reduction: LLL Algorithm With Quadratic Complexity
[Python] Fast Floating-Point Variant of LLL Reduction with Proven Termination
Cruising for Shells in Flowise - elttam
https://ift.tt/0gCtOFk
Submitted August 3, 2026 at 05:24PM by AnimalStrange
via reddit https://ift.tt/E8sQeUR
https://ift.tt/0gCtOFk
Submitted August 3, 2026 at 05:24PM by AnimalStrange
via reddit https://ift.tt/E8sQeUR
Elttam
Cruising for Shells in Flowise - elttam
After reviewing Flowise, a popular AI agent/workflow platform, and its history of critical security advisories, we uncovered 6 new remote code execution vulnerabilities in v3.1.1/v3.1.2
SQLite Critical CVEs or LLM Slop?
https://ift.tt/AXN68tL
Submitted August 3, 2026 at 07:34PM by si9int
via reddit https://ift.tt/7qxGjen
https://ift.tt/AXN68tL
Submitted August 3, 2026 at 07:34PM by si9int
via reddit https://ift.tt/7qxGjen
Jfrog
SQLite Critical CVEs or LLM Slop? | JFrog
The JFrog security research team recently identified a supply chain attack targeting the `xinference` package on PyPI. Versions 2.6.0, 2.6.1, and 2.6.2 were compromised and yanked by maintainers after users reported suspicious behavior. If you installed or…
Xpsd: decide if a CVE is actually reachable in your tree (SARIF / GitHub code scanning)
https://ift.tt/NFvBjOQ
Submitted August 4, 2026 at 12:34AM by Emergency_Stable_923
via reddit https://ift.tt/UAkDKFy
https://ift.tt/NFvBjOQ
Submitted August 4, 2026 at 12:34AM by Emergency_Stable_923
via reddit https://ift.tt/UAkDKFy
byteray.co.uk
ByteRay | Autonomous Security, From Source to Silicon
ByteRay is the multi-agent security platform that discovers, verifies, and remediates vulnerabilities across source code, binaries, firmware, web services, and live infrastructure - powered by Argus.
Jackpot: a browser lab of 10 deliberately vulnerable LLM apps, one per OWASP LLM Top 10 category
https://hego.red/jackpot
Submitted August 4, 2026 at 04:38AM by callmejackfrost1
via reddit https://ift.tt/KuqMH46
https://hego.red/jackpot
Submitted August 4, 2026 at 04:38AM by callmejackfrost1
via reddit https://ift.tt/KuqMH46
hego.red
Jackpot: hack 10 AIs, one floor at a time
Ten floors, ten broken AIs. Hack your way up a casino using the real OWASP LLM Top 10 techniques. No signup, runs in your browser.
Before the first prompt: Code execution paths in trusted coding-agent projects
https://ift.tt/SRBKJub
Submitted August 4, 2026 at 03:43AM by RedTermSession
via reddit https://ift.tt/l1P7kyD
https://ift.tt/SRBKJub
Submitted August 4, 2026 at 03:43AM by RedTermSession
via reddit https://ift.tt/l1P7kyD
Datadoghq
Before the first prompt: Code execution paths in trusted coding-agent projects
Learn how trusted coding-agent projects can execute repository-controlled code before the first prompt through Codex MCP configuration and Claude Code environment settings.
Code Execution via Provisioning Packages
https://ift.tt/pB4OawH
Submitted August 4, 2026 at 02:08PM by netbiosX
via reddit https://ift.tt/15ISvk9
https://ift.tt/pB4OawH
Submitted August 4, 2026 at 02:08PM by netbiosX
via reddit https://ift.tt/15ISvk9
Purple Team
Provisioning Packages
Windows Provisioning Packages are used by Administrators to deploy configuration scripts on Windows environments by using a container format. Threat actors with elevated privileges could abuse prov…
HEVD: From Stack Overflows to Modern Pool Grooming
https://ift.tt/zNbDjY5
Submitted August 4, 2026 at 03:31PM by Important_Map6928
via reddit https://ift.tt/RmHx47Z
https://ift.tt/zNbDjY5
Submitted August 4, 2026 at 03:31PM by Important_Map6928
via reddit https://ift.tt/RmHx47Z
sibouzitoun.tech
HEVD: From Stack Overflows to Modern Pool Grooming
A four-part deep dive into Windows kernel exploitation, progressing from classic control flow hijacking to modern pool grooming and pure data-only attacks on Windows 11.