Escaping the OpenAI Codex sandbox, twice
https://ift.tt/NOgSmda
Submitted September 15, 2026 at 07:15PM by natcoba
via reddit https://ift.tt/ae8k3oK
https://ift.tt/NOgSmda
Submitted September 15, 2026 at 07:15PM by natcoba
via reddit https://ift.tt/ae8k3oK
Accomplish
Escaping the OpenAI Codex sandbox, twice — Accomplish Blog
Two ways out. One lets a patch write anywhere on the disk with no prompt. The other gets unsandboxed command execution out of read-only, the strictest mode Codex has.
Multiple Vulnerabilities in Frappe LMS Leading to Remote Code Execution
https://ift.tt/KOat7re
Submitted September 15, 2026 at 09:30PM by hackers_and_builders
via reddit https://ift.tt/3AuQr1H
https://ift.tt/KOat7re
Submitted September 15, 2026 at 09:30PM by hackers_and_builders
via reddit https://ift.tt/3AuQr1H
Rhino Security Labs
Multiple Vulnerabilities in Frappe LMS Leading to Remote Code Execution
Frappe LMS is an open-source learning management system built on the Frappe framework. It provides organizations with tools to create and manage online courses, track student progress, post job opportunities, and run learning batches.
Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkit
https://ift.tt/OWkoxve
Submitted September 15, 2026 at 11:35PM by acronis
via reddit https://ift.tt/xFt8zAD
https://ift.tt/OWkoxve
Submitted September 15, 2026 at 11:35PM by acronis
via reddit https://ift.tt/xFt8zAD
Acronis
Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkit
Acronis Threat Research Unit (TRU) uncovered a multinational campaign in which a Chinese-speaking threat actor, tracked as Red Heron, rapidly weaponized CVE-2026-60004 to compromise internet-facing instances of Gitea, a self-hosted source-code management…
Bypassing Referer-Based CSRF with strict-origin-when-cross-origin
https://ift.tt/MB3pYE8
Submitted September 16, 2026 at 07:22PM by bajk
via reddit https://ift.tt/5qEOPhK
https://ift.tt/MB3pYE8
Submitted September 16, 2026 at 07:22PM by bajk
via reddit https://ift.tt/5qEOPhK
Afine
Bypassing Referer-Based CSRF with strict-origin-when-cross-origin
strict-origin-when-cross-origin: A Referer CSRF Bypass
I Missed One TLB Shootdown and Somehow Ended Up Controlling a Page Table
https://ift.tt/yQ3XpuZ
Submitted September 16, 2026 at 07:33PM by unknownhad
via reddit https://ift.tt/7BbK2Ul
https://ift.tt/yQ3XpuZ
Submitted September 16, 2026 at 07:33PM by unknownhad
via reddit https://ift.tt/7BbK2Ul
Himanshu Anand :: Security & Other Notes
I Missed One TLB Shootdown and Somehow Ended Up Controlling a Page Table
How a missed x86 TLB shootdown became page-table control in Google kernelCTF.
Evading Machine Learning Based Detections · MSec Operations Blog
https://ift.tt/4vEiLUr
Submitted September 16, 2026 at 08:51PM by S3cur3Th1sSh1t
via reddit https://ift.tt/p4wCMHE
https://ift.tt/4vEiLUr
Submitted September 16, 2026 at 08:51PM by S3cur3Th1sSh1t
via reddit https://ift.tt/p4wCMHE
SilkParasite Infrastructure Exposed: pivoting from one page hash and a single TLS cert to a 13-server SpiceRAT cluster
https://ift.tt/nH3wDL2
Submitted September 16, 2026 at 10:30PM by Straight-Practice-99
via reddit https://ift.tt/UTHLbDS
https://ift.tt/nH3wDL2
Submitted September 16, 2026 at 10:30PM by Straight-Practice-99
via reddit https://ift.tt/UTHLbDS
hunt.io
SilkParasite Infrastructure: SpiceRAT Servers Tied to Energy and Government Targets Across Central Asia
Hunt.io SpiceRAT detections identified shared infrastructure artifacts across malware families in Bitdefender’s SilkParasite report, connecting servers to Central Asian energy, government, and telecom targets.
The Hacker's Guide to Attacking AI Agents
https://ift.tt/PE2KMyU
Submitted September 17, 2026 at 03:26AM by _clickfix_
via reddit https://ift.tt/D8yml07
https://ift.tt/PE2KMyU
Submitted September 17, 2026 at 03:26AM by _clickfix_
via reddit https://ift.tt/D8yml07
Substack
The Hacker's Guide to Attacking AI Agents
This is a practical guide to assessing the security of an agentic AI system.
Fragnesia primitive via Open vSwitch. Deterministic local privilege escalation.
https://ift.tt/zocvQ7H
Submitted September 17, 2026 at 12:36PM by nibblesec
via reddit https://ift.tt/pTFN70R
https://ift.tt/zocvQ7H
Submitted September 17, 2026 at 12:36PM by nibblesec
via reddit https://ift.tt/pTFN70R
Doyensec
The skb that wasn't freed - the Fragnesia primitive via Open vSwitch
TLDR: Exploit. This is a deterministic local privilege escalation affecting the default install of the latest Arch, Fedora, Debian, Amazon Linux and RHEL distributions, having unprivileged user namespaces enabled, openvswitch auto-loading, and a stock kernel…
I need Help!!
https://ift.tt/13gzZRx
Submitted September 17, 2026 at 01:17PM by Unusual_Worries
via reddit https://ift.tt/dmOrTSw
https://ift.tt/13gzZRx
Submitted September 17, 2026 at 01:17PM by Unusual_Worries
via reddit https://ift.tt/dmOrTSw
Qualtrics
Qualtrics Survey | Qualtrics Experience Management
The most powerful, simple and trusted way to gather experience data. Start your journey to experience management and try a free account today.
Visual Studio Code Vulnerability that Bypasses Workspace Trust
https://ift.tt/ZThbKVR
Submitted September 17, 2026 at 07:15PM by HyprWave
via reddit https://ift.tt/2EkKHC8
https://ift.tt/ZThbKVR
Submitted September 17, 2026 at 07:15PM by HyprWave
via reddit https://ift.tt/2EkKHC8
Remedio
Visual Studio Code Vulnerability that Bypasses Workspace Trust
How a critical Visual Studio Code vulnerability allows unverified extensions to run automatically, and learn how to secure your workstation.
CVE-2026-90999: A fabricated Sentry bug report can make Seer's coding agent run attacker code
https://ift.tt/tlQG3Yg
Submitted September 17, 2026 at 07:41PM by Ok-Pepper-2354
via reddit https://ift.tt/CfAgRcj
https://ift.tt/tlQG3Yg
Submitted September 17, 2026 at 07:41PM by Ok-Pepper-2354
via reddit https://ift.tt/CfAgRcj
agyn.io
PhantomFix: a fabricated bug that hijacks an AI autofix agent (CVE-2026-90999)
PhantomFix (CVE-2026-90999) is a critical vulnerability in Sentry Seer's autonomous autofix: a fabricated error report sent to a public DSN can reach the coding agent and lead to code execution and access to connected repositories. It's a concrete instance…
Working on a claude Skill
https://ift.tt/RxhdS4q
Submitted September 17, 2026 at 10:35PM by Efficient-Web-8065
via reddit https://ift.tt/3bNhMua
https://ift.tt/RxhdS4q
Submitted September 17, 2026 at 10:35PM by Efficient-Web-8065
via reddit https://ift.tt/3bNhMua
The Information Wars: A Retrospective
https://ift.tt/fJOQ1Z2
Submitted September 18, 2026 at 01:34AM by ximsss
via reddit https://ift.tt/CqBJwdz
https://ift.tt/fJOQ1Z2
Submitted September 18, 2026 at 01:34AM by ximsss
via reddit https://ift.tt/CqBJwdz
Substack
The Information Wars: A Retrospective
10 Lessons From an Invisible Conflict
Quantum Computers Are Not a Threat to 128-bit Symmetric Keys
https://ift.tt/rSOeI5U
Submitted September 18, 2026 at 09:57AM by fagnerbrack
via reddit https://ift.tt/nhipUqy
https://ift.tt/rSOeI5U
Submitted September 18, 2026 at 09:57AM by fagnerbrack
via reddit https://ift.tt/nhipUqy
words.filippo.io
Quantum Computers Are Not a Threat to 128-bit Symmetric Keys
There is no need to update symmetric key sizes as part of the post-quantum transition, due to the details of how Grover's algorithm scales. Most authorities agree.
Hacking OpenAI
https://ift.tt/mPtD2lW
Submitted September 18, 2026 at 10:28AM by appsec1337
via reddit https://ift.tt/KIBxvsc
https://ift.tt/mPtD2lW
Submitted September 18, 2026 at 10:28AM by appsec1337
via reddit https://ift.tt/KIBxvsc
Hacktron AI
Hacking OpenAI
A heap overflow and SSO misconfiguration to compromise OpenAI internal repositories
A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, and DiagSpill
https://ift.tt/jHqhZxO
Submitted September 18, 2026 at 01:27PM by ablasionet
via reddit https://ift.tt/vBFle6G
https://ift.tt/jHqhZxO
Submitted September 18, 2026 at 01:27PM by ablasionet
via reddit https://ift.tt/vBFle6G
Hey, it's Asim
A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, and DiagSpill
Squeezing four more LPEs out of Linux with agentic vuln hunting: CVE-2026-80844, CVE-2026-81000, CVE-2026-68121, and CVE-2026-74469
Microsoft Teams Help Desk Impersonation: When IT Support Messages You First
https://ift.tt/ToaIHbh
Submitted September 18, 2026 at 06:25PM by scamdrill
via reddit https://ift.tt/wPzhT6j
https://ift.tt/ToaIHbh
Submitted September 18, 2026 at 06:25PM by scamdrill
via reddit https://ift.tt/wPzhT6j
ScamDrill
The IT Help Desk That Messaged You First on Teams
Teams allows chat from any external domain by default. Lab replication: first message to full endpoint control in 21 minutes. Here is what to change.
CVE-2026-77179: Docker's hypervisor for Mac compromised (Docker Desktop, Docker Sandboxes)
https://ift.tt/qhPuE3W
Submitted September 19, 2026 at 11:55AM by natcoba
via reddit https://ift.tt/hjQZJxX
https://ift.tt/qhPuE3W
Submitted September 19, 2026 at 11:55AM by natcoba
via reddit https://ift.tt/hjQZJxX
Accomplish
Guest to host: escaping Docker's hypervisor — Accomplish Blog
We reported a sandbox escape in Docker's hypervisor for Mac: a container gets complete read and write access to the host filesystem with three lines of bash. Assigned CVE-2026-77179 and fixed in Docker Desktop 4.88.0 and Docker Sandboxes 0.42.0.
Your LLM is prompt injecting you...
https://ift.tt/yakSCmd
Submitted September 19, 2026 at 01:39PM by AImSamy
via reddit https://ift.tt/4VeJg3c
https://ift.tt/yakSCmd
Submitted September 19, 2026 at 01:39PM by AImSamy
via reddit https://ift.tt/4VeJg3c
www.edenai.co
When LLM Routers Turn Malicious: AI Agent Security Risks
Researchers found malicious behavior in LLM routers, revealing new risks for AI agents, tool calls, credentials, and the LLM supply chain.
BragJack - $20K in bounty rewards from Anthropic, Perplexity, Google, Microsoft and Opera Using 1 Extension
https://ift.tt/XMgOl3j
Submitted September 19, 2026 at 10:27PM by Content-Winter5328
via reddit https://ift.tt/UJCQ0Zd
https://ift.tt/XMgOl3j
Submitted September 19, 2026 at 10:27PM by Content-Winter5328
via reddit https://ift.tt/UJCQ0Zd
Forever
BragJack [Technical Overview]: How We Hijacked Top 5 Browsers' Internal Agents With Just One Single Extension · Forever Security
BragJack attack (discovered by Forever Security) allowed ordinary extensions to hijack the internal browser agent of Comet, Chrome, Edge, Opera, and Claude in Chrome