Zbtlink Routers Contain rctl Backdoor
https://ift.tt/OyiRDwC
Submitted August 7, 2026 at 12:27AM by chicksdigthelongrun
via reddit https://ift.tt/wAeSyOX
https://ift.tt/OyiRDwC
Submitted August 7, 2026 at 12:27AM by chicksdigthelongrun
via reddit https://ift.tt/wAeSyOX
VulnCheck
VulnCheck - Outpace Adversaries
Vulnerability intelligence that predicts avenues of attack with speed and accuracy.
Claude Code RCE: How a Malicious PR Triggers Code Execution
https://ift.tt/LrenChA
Submitted August 7, 2026 at 02:52AM by kev-thehermit
via reddit https://ift.tt/Svzn53y
https://ift.tt/LrenChA
Submitted August 7, 2026 at 02:52AM by kev-thehermit
via reddit https://ift.tt/Svzn53y
Immersivelabs
Claude Code RCE: How a Malicious PR Triggers Code Execution
A hidden .mcp.json file lets attackers achieve remote code execution in Claude Code via a malicious pull request — no user action required. See the PoC.
I made a full JWT hacking tutorial + testing suite
https://ift.tt/rDsaXAb
Submitted August 7, 2026 at 05:13AM by hakluke
via reddit https://ift.tt/afvum9K
https://ift.tt/rDsaXAb
Submitted August 7, 2026 at 05:13AM by hakluke
via reddit https://ift.tt/afvum9K
hakluke
JWT Hacking Toolkit — Decode, Edit & Forge JSON Web Tokens
Decode and edit JWTs live, crack weak secrets, and forge tokens with alg:none, algorithm confusion, jwk/jku and kid injection. Free, and everything runs in your browser.
TrustFall: When the Trusted Execution Environment Cannot Be Trusted
https://ift.tt/QmsDFqx
Submitted August 7, 2026 at 08:38PM by Emergency_Stable_923
via reddit https://ift.tt/KJe695c
https://ift.tt/QmsDFqx
Submitted August 7, 2026 at 08:38PM by Emergency_Stable_923
via reddit https://ift.tt/KJe695c
tl;dv (Too Lazy; Didn't Validate): 181,874 Meetings Left Wide Open
https://ift.tt/4HRr68i
Submitted August 7, 2026 at 11:53PM by kochurshak
via reddit https://ift.tt/gQpTGRc
https://ift.tt/4HRr68i
Submitted August 7, 2026 at 11:53PM by kochurshak
via reddit https://ift.tt/gQpTGRc
Bobdahacker
tl;dv (Too Lazy; Didn't Validate): 181,874 Meetings Left Wide Open
How a missing Firestore security rule on tl;dv exposed 181,874 meetings from 84,312 users across 35,003 domains, including live calls I could join uninvited, and how six months of disclosure got me nothing but seen receipts.
SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free · Tencent Zhuque Lab
https://ift.tt/29w7eVr
Submitted August 8, 2026 at 07:50AM by thobiso
via reddit https://ift.tt/gBQZMCK
https://ift.tt/29w7eVr
Submitted August 8, 2026 at 07:50AM by thobiso
via reddit https://ift.tt/gBQZMCK
Tencent Zhuque Lab
SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free · Tencent Zhuque Lab
SCTPhantom is a Linux kernel use-after-free in SCTP's dynamic address reconfiguration code.
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
https://ift.tt/Bdbl6s7
Submitted August 8, 2026 at 09:27AM by lohacker0
via reddit https://ift.tt/OBVxLwz
https://ift.tt/Bdbl6s7
Submitted August 8, 2026 at 09:27AM by lohacker0
via reddit https://ift.tt/OBVxLwz
Varonis
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
With access to Jira, Confluence, Microsoft 365, Google Workspace, Slack, and more, RovoBlast shows how a single link turns AI permissions into a low-friction path for data exposure.
Write Once, Shell Everywhere - Turning Arbitrary File Writes into RCE (DEF CON Bug Bounty Village)
https://ift.tt/fQl2U7h
Submitted August 8, 2026 at 02:40PM by ZealousidealHunter80
via reddit https://ift.tt/mDAWY6e
https://ift.tt/fQl2U7h
Submitted August 8, 2026 at 02:40PM by ZealousidealHunter80
via reddit https://ift.tt/mDAWY6e
Ethiack
Write Once, Shell Everywhere: Turning Arbitrary File Writes into RCE | Ethiack — Autonomous Ethical Hacking for continuous security
DEF CON talk: 8 in 10 Banks in Belgium HATE This One Weird eID RCE
https://ift.tt/vlVdfTD
Submitted August 8, 2026 at 06:06PM by acorn222
via reddit https://ift.tt/U0a8T7F
https://ift.tt/vlVdfTD
Submitted August 8, 2026 at 06:06PM by acorn222
via reddit https://ift.tt/U0a8T7F
Amibeingpwned
8 in 10 Banks in Belgium HATE This One Weird eID RCE
The Connective signing extension, used by 8 of the 10 largest banks in Belgium and 60+ government agencies, let any website read your eID and Maestro cards, recover your eID PIN, and trigger a drive-by RCE. All the victim sees is a file download.
Analyzing a Multi-Stage PowerShell Payload Chain
https://ift.tt/5nm81PK
Submitted August 8, 2026 at 11:25PM by anuraggawande
via reddit https://ift.tt/UYFnO9Z
https://ift.tt/5nm81PK
Submitted August 8, 2026 at 11:25PM by anuraggawande
via reddit https://ift.tt/UYFnO9Z
Malware Analysis, Phishing, and Email Scams
Investigating a Multi-Stage PowerShell Loader
Introduction During recent threat hunting, I identified suspicious PowerShell content being served directly from an IP address and a domain: hxxp://203[.]188[.]171[.]166/hxxps://dorenzaa[.]com/ Bot…
DEFCON: New Red Team Tactic
https://doctoreww.github.io/EvilFontTool/
Submitted August 9, 2026 at 09:29AM by Prize_Region5503
via reddit https://ift.tt/4vujMhf
https://doctoreww.github.io/EvilFontTool/
Submitted August 9, 2026 at 09:29AM by Prize_Region5503
via reddit https://ift.tt/4vujMhf
Reddit
From the netsec community on Reddit: DEFCON: New Red Team Tactic
Posted by Prize_Region5503 - 4 votes and 0 comments
Finally, something useful from Google regarding search hijacking
https://ift.tt/HoXVNc9
Submitted August 9, 2026 at 11:50AM by Huge-Skirt-6990
via reddit https://ift.tt/a1ZRyfe
https://ift.tt/HoXVNc9
Submitted August 9, 2026 at 11:50AM by Huge-Skirt-6990
via reddit https://ift.tt/a1ZRyfe
gHacks
Google Chrome Prepares Default Block for Extensions That Hijack the New Tab Page or Search Engine - gHacks Tech News
Chrome is developing a default protection to block policy-installed extensions that hijack the New Tab page or search engine on consumer PCs.
When terrible disclosure from the vendor results in zero days plus a fun dive in to bypassing full disk encryption
https://ift.tt/aPD95lo
Submitted August 10, 2026 at 12:14AM by kev-thehermit
via reddit https://ift.tt/ub4kno8
https://ift.tt/aPD95lo
Submitted August 10, 2026 at 12:14AM by kev-thehermit
via reddit https://ift.tt/ub4kno8
Amberwolf
HP ThinPro: TPM-Sealed Disk Encryption that only measured half the boot chain
AmberWolf Security Research Blog
HTTP/3 Trailer HEADERS Frame Triggers Unhandled Exception in Google ESF: 60s Hang & QUIC INTERNAL_ERROR 0x0001 | Protocol RE | Netacoding
https://ift.tt/iuB1nW0
Submitted August 10, 2026 at 01:18AM by Pale_Surround_3924
via reddit https://ift.tt/hy14mVo
https://ift.tt/iuB1nW0
Submitted August 10, 2026 at 01:18AM by Pale_Surround_3924
via reddit https://ift.tt/hy14mVo
Netacoding | Cybersecurity, Assembly & Network Research
HTTP/3 Trailer HEADERS Frame Triggers Unhandled Exception in Google ESF: 60s Hang & QUIC INTERNAL_ERROR 0x0001 | Protocol RE
Sending an RFC 9114-compliant trailer HEADERS frame to music.youtube.com causes Google's ESF (Edge Side Frontend) to hang for ~60 seconds before closing the connection with QUIC INTERNAL_ERROR (0x0001) — the RFC-defined signal for implementation errors. 100…
Beyond Prompt Injection: Hacking Apple's Private Cloud Compute
https://ift.tt/3wZvSnp
Submitted August 10, 2026 at 03:03AM by smaury
via reddit https://ift.tt/KI3d7vL
https://ift.tt/3wZvSnp
Submitted August 10, 2026 at 03:03AM by smaury
via reddit https://ift.tt/KI3d7vL
Checkmate
Beyond Prompt Injection: Hacking Apple's Private Cloud Compute
Drinor was awarded $150,000 for CVE-2026-20685 targeting Apple's Private Cloud Compute, the inference backbone of Apple Intelligence capabilities.
This work is my contribution to Sentry's AI Security research initiative, run through SARC, the Sentry Applied…
This work is my contribution to Sentry's AI Security research initiative, run through SARC, the Sentry Applied…
Inside a Russian-speaking operator's toolkit for compromising Ukrainian IP cameras
https://ift.tt/tfeoPMd
Submitted August 11, 2026 at 12:11AM by Straight-Practice-99
via reddit https://ift.tt/0rjL39p
https://ift.tt/tfeoPMd
Submitted August 11, 2026 at 12:11AM by Straight-Practice-99
via reddit https://ift.tt/0rjL39p
hunt.io
Inside a Russian-Speaking Operator's Ukrainian IP Camera Toolkit
A Russian-speaking operator's open directory exposed the tools used to exploit and watch Ukrainian IP cameras, alongside attempts to breach government and military sites.
Mandatory User Profile for Persistence & EDR Evasion
https://ipurple.team/2026/08/11/mandatory-user-profile/
Submitted August 11, 2026 at 01:50PM by netbiosX
via reddit https://ift.tt/PHek4A0
https://ipurple.team/2026/08/11/mandatory-user-profile/
Submitted August 11, 2026 at 01:50PM by netbiosX
via reddit https://ift.tt/PHek4A0
Purple Team
Mandatory User Profile
The file NTUSER.MAN is a Windows user-profile registry hive used with mandatory profiles. It contains pre-defined configuration settings that are loaded into the registry (HKEY_CURRENT_USER) when t…
SMAP is Pre-Disarmed: How a Stack Pivot That Shouldn't Work Revealed a Kernel-Wide Design Compromise
https://ift.tt/9wJAD7H
Submitted August 11, 2026 at 04:16PM by Important_Map6928
via reddit https://ift.tt/Aeb75tP
https://ift.tt/9wJAD7H
Submitted August 11, 2026 at 04:16PM by Important_Map6928
via reddit https://ift.tt/Aeb75tP
sibouzitoun.tech
SMAP is Pre-Disarmed: How a Stack Pivot That Shouldn't Work Revealed a Kernel-Wide Design Compromise
I built a fake stack in user-mode memory and pivoted the kernel into it. SMAP should have thrown a #PF and blue-screened the box. Instead, I got SYSTEM. This is the three-experiment proof that Windows leaves its own guard down.
ETW for Security Research: Providers, Sessions, and Detection Engineering
https://idov31.github.io/posts/inside-etw-with-etwsuite
Submitted August 11, 2026 at 07:52PM by Idov31
via reddit https://ift.tt/hqyV62S
https://idov31.github.io/posts/inside-etw-with-etwsuite
Submitted August 11, 2026 at 07:52PM by Idov31
via reddit https://ift.tt/hqyV62S
Reddit
From the netsec community on Reddit: ETW for Security Research: Providers, Sessions, and Detection Engineering
Posted by Idov31 - 1 vote and 0 comments
CopyEscape: Container-to-host arbitrary file write via docker cp (CVE-2026-17106)
https://ift.tt/TJsZL5B
Submitted August 11, 2026 at 09:03PM by ronmasas
via reddit https://ift.tt/W45vYeh
https://ift.tt/TJsZL5B
Submitted August 11, 2026 at 09:03PM by ronmasas
via reddit https://ift.tt/W45vYeh
Blog
CopyEscape: Taking Over Docker Hosts with docker cp | Imperva
Imperva Red Team uncovered CVE-2026-17106, a container-to-host arbitrary file-write vulnerability in Docker’s docker cp command. Docker later confirmed that the same CVE also affected sbx cp when copying files out of Docker Sandboxes. A malicious container…
Expired DMARC reporting endpoint exposed a NYSE Fortune 1000's infrastructure for $10
https://ift.tt/orqVKdh
Submitted August 12, 2026 at 01:53AM by PlasmaJam
via reddit https://ift.tt/1JLC8s7
https://ift.tt/orqVKdh
Submitted August 12, 2026 at 01:53AM by PlasmaJam
via reddit https://ift.tt/1JLC8s7
www.sh.consulting
The Abandoned Endpoint: How an Expired DMARC Reporting Domain Exposed 86 Domains
A lapsed DMARC reporting domain, re-registered for $10, collected aggregate reports for 86 domains across 20+ organizations. How it happened, and how to check yours.