Lunex Unmasked: A New Information Stealer Deployed Through BYOVD
https://ift.tt/ACX1q9n
Submitted September 25, 2026 at 02:26AM by SpectreTv
via reddit https://ift.tt/GHz7Byu
https://ift.tt/ACX1q9n
Submitted September 25, 2026 at 02:26AM by SpectreTv
via reddit https://ift.tt/GHz7Byu
Ontinue
Lunex Unmasked: A New Information Stealer Deployed Through BYOVD
Ontinue researchers uncover the Lunex malware platform, revealing a sophisticated attack chain, BYOVD techniques, and previously unreported capabilities.
The 2026 State of AI Security Report has three numbers that really stuck with me: 81%, 50.1%, 99.9%
https://ift.tt/hUDYLmO
Submitted September 25, 2026 at 03:24AM by Aayushman_Shopbell
via reddit https://ift.tt/XtGsuvA
https://ift.tt/hUDYLmO
Submitted September 25, 2026 at 03:24AM by Aayushman_Shopbell
via reddit https://ift.tt/XtGsuvA
Orca Security
2026 State of AI Security Report
Download the 2026 State of AI Security Report. Real-world telemetry from 1,200+ organizations reveals AI vulnerability, agent, and encryption gaps.
Argus Monitor Local Denial-of-Service Vulnerability (CVE-2026-79417)
https://connorjaydunn.github.io/blog/posts/argus-monitor-ldos-cve-2026-79417/
Submitted September 25, 2026 at 07:43AM by p0xq
via reddit https://ift.tt/tmw1q3z
https://connorjaydunn.github.io/blog/posts/argus-monitor-ldos-cve-2026-79417/
Submitted September 25, 2026 at 07:43AM by p0xq
via reddit https://ift.tt/tmw1q3z
CDC-ACM Serial Interface Bypasses TCC on macOS
https://ift.tt/c8juXNe
Submitted September 25, 2026 at 08:53AM by NoRequirement8551
via reddit https://ift.tt/6hoORkf
https://ift.tt/c8juXNe
Submitted September 25, 2026 at 08:53AM by NoRequirement8551
via reddit https://ift.tt/6hoORkf
glyph.sh
CDC-ACM Serial Interface Bypasses TCC on macOS: A Disclosure After Apple Declined
macOS creates a fully read/write CDC-ACM serial device node with no TCC gate. Chained with a HID keyboard interface on the same USB composite device, this exfiltrates SSH keys, cloud credentials, and secrets in 24 seconds through a channel that shows no consent…
How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail
https://ift.tt/aprxnFv
Submitted September 24, 2026 at 08:14PM by idnsec
via reddit https://ift.tt/TwPxk8b
https://ift.tt/aprxnFv
Submitted September 24, 2026 at 08:14PM by idnsec
via reddit https://ift.tt/TwPxk8b
IDNSEC
How I Found a $113,337 AF_ALG Linux Local Privilege Escalation Before Copy Fail
A retrospective on CVE-2025-39964, an AF_ALG race condition I found in 2025 before Copy Fail drew attention to the same subsystem. I explain the out-of-bounds scatterlist access, the usercopy oracle, and the exploit that achieved root and a Docker container…
Compromising OBS Studio with a Twitch chat message.
https://ift.tt/r7fAbFy
Submitted September 24, 2026 at 02:18AM by 2daii
via reddit https://ift.tt/KIZV1zu
https://ift.tt/r7fAbFy
Submitted September 24, 2026 at 02:18AM by 2daii
via reddit https://ift.tt/KIZV1zu
Fake Journalist phishing scam targeting tech founders
https://ift.tt/1B2oSyh
Submitted September 24, 2026 at 09:31PM by french_toast_fiend
via reddit https://ift.tt/N7sycAu
https://ift.tt/1B2oSyh
Submitted September 24, 2026 at 09:31PM by french_toast_fiend
via reddit https://ift.tt/N7sycAu
Casco
How My Unicorn Founder Friend Was Phished
A fake WIRED interview routed through Calendly gave attackers access to Peter Reinhardt’s X account for a few minutes. I traced the campaign, filed abuse reports, and documented the offline status and provider receipts.
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
https://ift.tt/gKitPGU
Submitted September 25, 2026 at 08:24PM by si9int
via reddit https://ift.tt/lIL5Pk8
https://ift.tt/gKitPGU
Submitted September 25, 2026 at 08:24PM by si9int
via reddit https://ift.tt/lIL5Pk8
SAFA
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
SAFA details the full exploitation of CVE-2025-13032, turning a double-fetch vulnerability in Avast's kernel driver into a local privilege escalation to SYSTEM on Windows 11.
EX-ARRR: Sailing the Apple 0-click Seas
https://ift.tt/PO63hv8
Submitted September 26, 2026 at 03:05PM by nindustries
via reddit https://ift.tt/oF0t2ya
https://ift.tt/PO63hv8
Submitted September 26, 2026 at 03:05PM by nindustries
via reddit https://ift.tt/oF0t2ya
ironpeak.be
EX-ARRR: Sailing the 0-click Seas - ironPeak Blog
How an LLM-guided fuzzing lead turned into a zero-click iMessage trigger that fires before you ever open the message. Apple shipped the fix as CVE-2026-86869 across iOS, iPadOS, and macOS 27. Enjoy my full voyage.
A header-level look at 4,688 small-business websites: 0.17% passed a header-only script-CSP rule [methods, parser rules, data]
https://ift.tt/lD1WZSg
Submitted September 27, 2026 at 02:56AM by Plastic-Falcon9147
via reddit https://ift.tt/H1hTyqx
https://ift.tt/lD1WZSg
Submitted September 27, 2026 at 02:56AM by Plastic-Falcon9147
via reddit https://ift.tt/H1hTyqx
RACKCRUNCH
Security Headers Study 2026: Local Businesses | RACKCRUNCH
We scanned 7,040 directory-listed U.S. local-business websites for security headers. Half met none of seven criteria. Full report, data and code.
AI on Kubernetes: Default Helm Chart Security Configurations and Lateral Movement Risks
https://ift.tt/VeFt0da
Submitted September 27, 2026 at 06:41AM by No-Peanut-6988
via reddit https://ift.tt/iz3mQyO
https://ift.tt/VeFt0da
Submitted September 27, 2026 at 06:41AM by No-Peanut-6988
via reddit https://ift.tt/iz3mQyO
Sorami
AI on Kubernetes: Default Helm Chart Security
Default Helm security audit across 15 AI serving, vector database and MCP charts. Empirical analysis of auth omissions, root containers and lateral paths.
EDR Evasion: Process Injection Without WriteProcessMemory
https://ift.tt/Rm8FucI
Submitted September 27, 2026 at 09:09AM by Cold-Dinosaur
via reddit https://ift.tt/bOH1zcs
https://ift.tt/Rm8FucI
Submitted September 27, 2026 at 09:09AM by Cold-Dinosaur
via reddit https://ift.tt/bOH1zcs
Zerosalarium
EDR Evasion: Process Injection Without WriteProcessMemory
Technique performs Windows process code injection by leveraging a Windows named pipe, it does not use VirtualAllocEx and WriteProcessMemory
Revealing the details of how OpenAI agents hacked Hugging Face
https://ift.tt/YtVsd7D
Submitted September 27, 2026 at 06:45AM by NOTHING_gets_by_me
via reddit https://ift.tt/gFNLm18
https://ift.tt/YtVsd7D
Submitted September 27, 2026 at 06:45AM by NOTHING_gets_by_me
via reddit https://ift.tt/gFNLm18
Swarm traces
Revealing the details of how OpenAI agents hacked Hugging Face
When a swarm of 700 OpenAI agents hacked Hugging Face in July, they left behind a public trail of evidence.