New Linux Bridge STP Vulnerability
https://ift.tt/TBSoUtC
Submitted August 5, 2026 at 02:34PM by SSDisclosure
via reddit https://ift.tt/oMbIAV6
https://ift.tt/TBSoUtC
Submitted August 5, 2026 at 02:34PM by SSDisclosure
via reddit https://ift.tt/oMbIAV6
SSD Secure Disclosure
Linux Bridge STP Timer Use-After-Free - SSD Secure Disclosure
Summary A use-after-free vulnerability in the Linux kernel bridge (net/bridge) Spanning Tree Protocol (STP) implementation. A bridge that is administratively down while kernel STP is enabled, together with a port driven into the LEARNING state, arms periodic…
Stored XSS in Django's admin via an unvalidated URLField display path (CVE-2026-15920)
https://ift.tt/OidoRhH
Submitted August 5, 2026 at 08:08PM by Sandwich_1337
via reddit https://ift.tt/L2Ua8F7
https://ift.tt/OidoRhH
Submitted August 5, 2026 at 08:08PM by Sandwich_1337
via reddit https://ift.tt/L2Ua8F7
Syntetisk
Stored XSS in Django's admin via an unvalidated URLField display path (CVE-2026-15920)
Django's admin auto-linked URLField values without validating the scheme — a stored javascript: value rendered as a live link. Fixed in 6.0.8 and 5.2.17.
OpenAI agents rebuilt a secret message board after the company shut it down
https://ift.tt/4xc7lZk
Submitted August 6, 2026 at 02:47AM by ryanmerket
via reddit https://ift.tt/RWcdIU0
https://ift.tt/4xc7lZk
Submitted August 6, 2026 at 02:47AM by ryanmerket
via reddit https://ift.tt/RWcdIU0
RuntimeWire
OpenAI agents rebuilt a secret message board after the company shut it down
OpenAI restarted agent training two days after a model-caused Artifactory outage. The agents then rebuilt their deleted communication channel.
From wallet drains to a 12-year-old CryptoJS entropy bug: the Ill Bloom investigation
https://ift.tt/g0W3yNU
Submitted August 6, 2026 at 07:42AM by coinspect
via reddit https://ift.tt/1eC3Afw
https://ift.tt/g0W3yNU
Submitted August 6, 2026 at 07:42AM by coinspect
via reddit https://ift.tt/1eC3Afw
Coinspect Security
Ill Bloom: Investigating a Wallet Generation Vulnerability During Active Exploitation
How Coinspect traced a wallet-drain investigation back to a twelve-year-old insecure randomness flaw, searched for exposed addresses at scale, and disclosed the findings...
Zbtlink Routers Contain rctl Backdoor
https://ift.tt/OyiRDwC
Submitted August 7, 2026 at 12:27AM by chicksdigthelongrun
via reddit https://ift.tt/wAeSyOX
https://ift.tt/OyiRDwC
Submitted August 7, 2026 at 12:27AM by chicksdigthelongrun
via reddit https://ift.tt/wAeSyOX
VulnCheck
VulnCheck - Outpace Adversaries
Vulnerability intelligence that predicts avenues of attack with speed and accuracy.
Claude Code RCE: How a Malicious PR Triggers Code Execution
https://ift.tt/LrenChA
Submitted August 7, 2026 at 02:52AM by kev-thehermit
via reddit https://ift.tt/Svzn53y
https://ift.tt/LrenChA
Submitted August 7, 2026 at 02:52AM by kev-thehermit
via reddit https://ift.tt/Svzn53y
Immersivelabs
Claude Code RCE: How a Malicious PR Triggers Code Execution
A hidden .mcp.json file lets attackers achieve remote code execution in Claude Code via a malicious pull request — no user action required. See the PoC.
I made a full JWT hacking tutorial + testing suite
https://ift.tt/rDsaXAb
Submitted August 7, 2026 at 05:13AM by hakluke
via reddit https://ift.tt/afvum9K
https://ift.tt/rDsaXAb
Submitted August 7, 2026 at 05:13AM by hakluke
via reddit https://ift.tt/afvum9K
hakluke
JWT Hacking Toolkit — Decode, Edit & Forge JSON Web Tokens
Decode and edit JWTs live, crack weak secrets, and forge tokens with alg:none, algorithm confusion, jwk/jku and kid injection. Free, and everything runs in your browser.
TrustFall: When the Trusted Execution Environment Cannot Be Trusted
https://ift.tt/QmsDFqx
Submitted August 7, 2026 at 08:38PM by Emergency_Stable_923
via reddit https://ift.tt/KJe695c
https://ift.tt/QmsDFqx
Submitted August 7, 2026 at 08:38PM by Emergency_Stable_923
via reddit https://ift.tt/KJe695c
tl;dv (Too Lazy; Didn't Validate): 181,874 Meetings Left Wide Open
https://ift.tt/4HRr68i
Submitted August 7, 2026 at 11:53PM by kochurshak
via reddit https://ift.tt/gQpTGRc
https://ift.tt/4HRr68i
Submitted August 7, 2026 at 11:53PM by kochurshak
via reddit https://ift.tt/gQpTGRc
Bobdahacker
tl;dv (Too Lazy; Didn't Validate): 181,874 Meetings Left Wide Open
How a missing Firestore security rule on tl;dv exposed 181,874 meetings from 84,312 users across 35,003 domains, including live calls I could join uninvited, and how six months of disclosure got me nothing but seen receipts.
SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free · Tencent Zhuque Lab
https://ift.tt/29w7eVr
Submitted August 8, 2026 at 07:50AM by thobiso
via reddit https://ift.tt/gBQZMCK
https://ift.tt/29w7eVr
Submitted August 8, 2026 at 07:50AM by thobiso
via reddit https://ift.tt/gBQZMCK
Tencent Zhuque Lab
SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free · Tencent Zhuque Lab
SCTPhantom is a Linux kernel use-after-free in SCTP's dynamic address reconfiguration code.
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
https://ift.tt/Bdbl6s7
Submitted August 8, 2026 at 09:27AM by lohacker0
via reddit https://ift.tt/OBVxLwz
https://ift.tt/Bdbl6s7
Submitted August 8, 2026 at 09:27AM by lohacker0
via reddit https://ift.tt/OBVxLwz
Varonis
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
With access to Jira, Confluence, Microsoft 365, Google Workspace, Slack, and more, RovoBlast shows how a single link turns AI permissions into a low-friction path for data exposure.
Write Once, Shell Everywhere - Turning Arbitrary File Writes into RCE (DEF CON Bug Bounty Village)
https://ift.tt/fQl2U7h
Submitted August 8, 2026 at 02:40PM by ZealousidealHunter80
via reddit https://ift.tt/mDAWY6e
https://ift.tt/fQl2U7h
Submitted August 8, 2026 at 02:40PM by ZealousidealHunter80
via reddit https://ift.tt/mDAWY6e
Ethiack
Write Once, Shell Everywhere: Turning Arbitrary File Writes into RCE | Ethiack — Autonomous Ethical Hacking for continuous security
DEF CON talk: 8 in 10 Banks in Belgium HATE This One Weird eID RCE
https://ift.tt/vlVdfTD
Submitted August 8, 2026 at 06:06PM by acorn222
via reddit https://ift.tt/U0a8T7F
https://ift.tt/vlVdfTD
Submitted August 8, 2026 at 06:06PM by acorn222
via reddit https://ift.tt/U0a8T7F
Amibeingpwned
8 in 10 Banks in Belgium HATE This One Weird eID RCE
The Connective signing extension, used by 8 of the 10 largest banks in Belgium and 60+ government agencies, let any website read your eID and Maestro cards, recover your eID PIN, and trigger a drive-by RCE. All the victim sees is a file download.
Analyzing a Multi-Stage PowerShell Payload Chain
https://ift.tt/5nm81PK
Submitted August 8, 2026 at 11:25PM by anuraggawande
via reddit https://ift.tt/UYFnO9Z
https://ift.tt/5nm81PK
Submitted August 8, 2026 at 11:25PM by anuraggawande
via reddit https://ift.tt/UYFnO9Z
Malware Analysis, Phishing, and Email Scams
Investigating a Multi-Stage PowerShell Loader
Introduction During recent threat hunting, I identified suspicious PowerShell content being served directly from an IP address and a domain: hxxp://203[.]188[.]171[.]166/hxxps://dorenzaa[.]com/ Bot…
DEFCON: New Red Team Tactic
https://doctoreww.github.io/EvilFontTool/
Submitted August 9, 2026 at 09:29AM by Prize_Region5503
via reddit https://ift.tt/4vujMhf
https://doctoreww.github.io/EvilFontTool/
Submitted August 9, 2026 at 09:29AM by Prize_Region5503
via reddit https://ift.tt/4vujMhf
Reddit
From the netsec community on Reddit: DEFCON: New Red Team Tactic
Posted by Prize_Region5503 - 4 votes and 0 comments
Finally, something useful from Google regarding search hijacking
https://ift.tt/HoXVNc9
Submitted August 9, 2026 at 11:50AM by Huge-Skirt-6990
via reddit https://ift.tt/a1ZRyfe
https://ift.tt/HoXVNc9
Submitted August 9, 2026 at 11:50AM by Huge-Skirt-6990
via reddit https://ift.tt/a1ZRyfe
gHacks
Google Chrome Prepares Default Block for Extensions That Hijack the New Tab Page or Search Engine - gHacks Tech News
Chrome is developing a default protection to block policy-installed extensions that hijack the New Tab page or search engine on consumer PCs.
When terrible disclosure from the vendor results in zero days plus a fun dive in to bypassing full disk encryption
https://ift.tt/aPD95lo
Submitted August 10, 2026 at 12:14AM by kev-thehermit
via reddit https://ift.tt/ub4kno8
https://ift.tt/aPD95lo
Submitted August 10, 2026 at 12:14AM by kev-thehermit
via reddit https://ift.tt/ub4kno8
Amberwolf
HP ThinPro: TPM-Sealed Disk Encryption that only measured half the boot chain
AmberWolf Security Research Blog
HTTP/3 Trailer HEADERS Frame Triggers Unhandled Exception in Google ESF: 60s Hang & QUIC INTERNAL_ERROR 0x0001 | Protocol RE | Netacoding
https://ift.tt/iuB1nW0
Submitted August 10, 2026 at 01:18AM by Pale_Surround_3924
via reddit https://ift.tt/hy14mVo
https://ift.tt/iuB1nW0
Submitted August 10, 2026 at 01:18AM by Pale_Surround_3924
via reddit https://ift.tt/hy14mVo
Netacoding | Cybersecurity, Assembly & Network Research
HTTP/3 Trailer HEADERS Frame Triggers Unhandled Exception in Google ESF: 60s Hang & QUIC INTERNAL_ERROR 0x0001 | Protocol RE
Sending an RFC 9114-compliant trailer HEADERS frame to music.youtube.com causes Google's ESF (Edge Side Frontend) to hang for ~60 seconds before closing the connection with QUIC INTERNAL_ERROR (0x0001) — the RFC-defined signal for implementation errors. 100…
Beyond Prompt Injection: Hacking Apple's Private Cloud Compute
https://ift.tt/3wZvSnp
Submitted August 10, 2026 at 03:03AM by smaury
via reddit https://ift.tt/KI3d7vL
https://ift.tt/3wZvSnp
Submitted August 10, 2026 at 03:03AM by smaury
via reddit https://ift.tt/KI3d7vL
Checkmate
Beyond Prompt Injection: Hacking Apple's Private Cloud Compute
Drinor was awarded $150,000 for CVE-2026-20685 targeting Apple's Private Cloud Compute, the inference backbone of Apple Intelligence capabilities.
This work is my contribution to Sentry's AI Security research initiative, run through SARC, the Sentry Applied…
This work is my contribution to Sentry's AI Security research initiative, run through SARC, the Sentry Applied…
Inside a Russian-speaking operator's toolkit for compromising Ukrainian IP cameras
https://ift.tt/tfeoPMd
Submitted August 11, 2026 at 12:11AM by Straight-Practice-99
via reddit https://ift.tt/0rjL39p
https://ift.tt/tfeoPMd
Submitted August 11, 2026 at 12:11AM by Straight-Practice-99
via reddit https://ift.tt/0rjL39p
hunt.io
Inside a Russian-Speaking Operator's Ukrainian IP Camera Toolkit
A Russian-speaking operator's open directory exposed the tools used to exploit and watch Ukrainian IP cameras, alongside attempts to breach government and military sites.
Mandatory User Profile for Persistence & EDR Evasion
https://ipurple.team/2026/08/11/mandatory-user-profile/
Submitted August 11, 2026 at 01:50PM by netbiosX
via reddit https://ift.tt/PHek4A0
https://ipurple.team/2026/08/11/mandatory-user-profile/
Submitted August 11, 2026 at 01:50PM by netbiosX
via reddit https://ift.tt/PHek4A0
Purple Team
Mandatory User Profile
The file NTUSER.MAN is a Windows user-profile registry hive used with mandatory profiles. It contains pre-defined configuration settings that are loaded into the registry (HKEY_CURRENT_USER) when t…