🎥 Operation CameraSwarm: over 14,000 Dahua cameras compromised across Ukraine and Russia
https://ift.tt/piN2ArG
Submitted 2026-08-18T17:34:14Z by Straight-Practice-99
via reddit https://ift.tt/ezOtnKj
https://ift.tt/piN2ArG
Submitted 2026-08-18T17:34:14Z by Straight-Practice-99
via reddit https://ift.tt/ezOtnKj
hunt.io
Operation CameraSwarm: Over 14,000 Dahua cameras compromised across Ukraine and Russia
Hunt.io recovered a single operator's toolkit from an open directory: 14,530+ Dahua cameras compromised across Ukraine and Russia in 35 days. Inside the campaign
prompt injection containment as a structural property instead of a detector (interactive, real code, no llm)
https://meghavi.me/gate
Submitted 2026-08-18T17:47:11Z by Pretend_Glass_1232
via reddit https://ift.tt/VkJt1g9
https://meghavi.me/gate
Submitted 2026-08-18T17:47:11Z by Pretend_Glass_1232
via reddit https://ift.tt/VkJt1g9
Meghavi Rao
The Front Door — can you make my AI agent obey you?
AI agents take orders from other AI agents. Mine won't. Try to break it.
How a popular Android library silently exposed thousands of apps to Arbitrary File Overwrite (AFO). https://itis911.github.io/writeups/cropper-vulnerability.html
https://itis911.github.io/writeups/cropper-vulnerability.html
Submitted 2026-08-18T16:24:33Z by Fit_Veterinarian4403
via reddit https://ift.tt/cHeKYrL
https://itis911.github.io/writeups/cropper-vulnerability.html
Submitted 2026-08-18T16:24:33Z by Fit_Veterinarian4403
via reddit https://ift.tt/cHeKYrL
Reddit
From the netsec community on Reddit: How a popular Android library silently exposed thousands of apps to Arbitrary File Overwrite…
Posted by Fit_Veterinarian4403 - 0 votes and 0 comments
Kimi Desktop Ships With an Updater That Can Install Unverified Code
https://ift.tt/2oJWuCq
Submitted 2026-08-18T23:27:51Z by ryanmerket
via reddit https://ift.tt/ikcsqCH
https://ift.tt/2oJWuCq
Submitted 2026-08-18T23:27:51Z by ryanmerket
via reddit https://ift.tt/ikcsqCH
RuntimeWire
Kimi Desktop Ships With a Group Chat Updater That Can Install Unverified Code
Kimi Desktop's Windows group-chat updater downloads an executable and agent instructions from mutable locations without enforcing Moonshot's code signature.
When Burp Suite Isn't Enough: Intercepting Thick Client Traffic
https://ift.tt/SPIyJq2
Submitted 2026-08-19T03:45:57Z by Ano_F
via reddit https://ift.tt/QdDapuG
https://ift.tt/SPIyJq2
Submitted 2026-08-19T03:45:57Z by Ano_F
via reddit https://ift.tt/QdDapuG
Interceptsuite
When Burp Suite Isn't Enough: Intercepting Thick Client Traffic | InterceptSuite
Burp Suite is built for HTTP. When you're testing a thick client that speaks raw TCP, TLS, or a custom binary protocol, you need a different tool. Here's how to intercept non-HTTP thick client traffic with InterceptSuite.
The Curious Incidents with DNS in the Sandbox at Escape-Time
https://ift.tt/BM5tkEP
Submitted 2026-08-19T03:58:53Z by lowlevelprog
via reddit https://ift.tt/1odOKbL
https://ift.tt/BM5tkEP
Submitted 2026-08-19T03:58:53Z by lowlevelprog
via reddit https://ift.tt/1odOKbL
Chasersystems
The Curious Incidents with DNS in the Sandbox at Escape-Time | Chaser Systems
What the Agent attempted with DNS in the Hugging Face–OpenAI Intrusion Incident of July 2026
How to break secure boot without touching any cryptography
https://ift.tt/KOpdh8m
Submitted 2026-08-19T12:01:19Z by 0x00rick
via reddit https://ift.tt/WyQkioq
https://ift.tt/KOpdh8m
Submitted 2026-08-19T12:01:19Z by 0x00rick
via reddit https://ift.tt/WyQkioq
Low-level adventures
Breaking secure boot without breaking the crypto
This will be mostly rambling disguised as a technical walkthrough. I will touch on certain topics such as hardware roots of trust, signed image formats, Qualcomm boot stages, Android Verified Boot, UEFI, measured boot, and remote evidence (remote attestation).…
CRLF-Powered Desync Attacks: Beheading HTTP Streams
https://ift.tt/PeLy6BI
Submitted 2026-08-19T12:58:25Z by t0xodile
via reddit https://ift.tt/fsgyJkn
https://ift.tt/PeLy6BI
Submitted 2026-08-19T12:58:25Z by t0xodile
via reddit https://ift.tt/fsgyJkn
PortSwigger Research
CRLF-Powered Desync Attacks: Beheading HTTP Streams
Abstract In this paper we’ll show that HTTP Header Injection is severely underestimated. Forget open redirects or Cross-Site Scripting and instead, embrace the catastrophic potential of the CRLF-Power
ValleyRAT campaign uses fake GSTR-3B overdue notice targeting Indian taxpayers
https://ift.tt/nGIDjOB
Submitted 2026-08-19T13:18:26Z by unknownhad
via reddit https://ift.tt/MYJLkPK
https://ift.tt/nGIDjOB
Submitted 2026-08-19T13:18:26Z by unknownhad
via reddit https://ift.tt/MYJLkPK
Himanshu Anand :: Security & Other Notes
someone is filing your GST return, and it is not your CA
Disclosure: this research was conducted using an ANY.RUN account provided as part of a collaboration. All analysis and conclusions are my own.
TLDR Found an unreported Silver Fox campaign serving ValleyRAT to Indian taxpayers with a fake “GSTR-3B overdue”…
TLDR Found an unreported Silver Fox campaign serving ValleyRAT to Indian taxpayers with a fake “GSTR-3B overdue”…
I escaped the WebAssembly's sandbox and got arbitrary shell execution on the host.
https://ift.tt/UChpW3K
Submitted 2026-08-19T15:54:04Z by trustsigRobert
via reddit https://ift.tt/v7xb8Eh
https://ift.tt/UChpW3K
Submitted 2026-08-19T15:54:04Z by trustsigRobert
via reddit https://ift.tt/v7xb8Eh
trustsig.eu
Table flip: a wasm2c guest runs a shell command on the host, through one unchecked calloc
wasm2c sets a table's size from the element count the guest declared, then ignores whether the allocation succeeded. Make it fail and every table index becomes an absolute address on the host.
Iran's Mabna Institute ran a 3-phase spearphishing campaign against university professors for a decade. The 50-page superseding indictment has more methodological detail than the press coverage suggests.
https://ift.tt/GaNSEQl
Submitted 2026-08-19T16:34:25Z by Robert-Nogacki
via reddit https://ift.tt/nL9bR7p
https://ift.tt/GaNSEQl
Submitted 2026-08-19T16:34:25Z by Robert-Nogacki
via reddit https://ift.tt/nL9bR7p
Kancelaria Prawna Skarbiec
17 Iranians Indicted for $3.4 Billion Academic Hack
Federal indictment charges 17 members of Iran's Mabna Institute with stealing $3.4B in research from 322 universities in 22 countries.
Hacking SAML with Claude Code
https://ift.tt/xbauAhj
Submitted 2026-08-19T18:40:47Z by ericchiang
via reddit https://ift.tt/h3pLY9b
https://ift.tt/xbauAhj
Submitted 2026-08-19T18:40:47Z by ericchiang
via reddit https://ift.tt/h3pLY9b
Oblique
Hacking SAML with Claude Code | Oblique
After many years of complaining about how insecure SAML is, I decided to try to prove it by using Claude Code to hack every SAML implementation I could find.
Graphing AWS Attack Paths in Bloodhound
https://ift.tt/xPshKkw
Submitted 2026-08-19T20:26:22Z by n0pe_sled
via reddit https://ift.tt/yMnjul1
https://ift.tt/xPshKkw
Submitted 2026-08-19T20:26:22Z by n0pe_sled
via reddit https://ift.tt/yMnjul1
n0pe-sled
AWSHound: An Open-Source AWS OpenGraph Collector
A free, read-only collector that turns an AWS account or Organization into a BloodHound OpenGraph dataset, drawing edges only where an offline IAM evaluation resolves to Allow.
GLM-5.3's emergent security capabilities: 1,097 critical/high severity bugs discovered across kernels, browsers, and infrastructure, oldest flaw from 1981
https://ift.tt/63cwNvB
Submitted 2026-08-20T12:48:26Z by Sinver_Nightingale27
via reddit https://ift.tt/DI4chNz
https://ift.tt/63cwNvB
Submitted 2026-08-20T12:48:26Z by Sinver_Nightingale27
via reddit https://ift.tt/DI4chNz