WordPress CVE-2026-87902 Exploited the Same Day It Was Patched: pearcmd.php Turned Into a Web Shell Dropper
TL;DR what: CVE-2026-87902 lets an unauthenticated attacker make WordPress get_page_template() i…
AI tools, cybersecurity and development news aggregated from top sources — saved permanently with unique URLs.
WordPress CVE-2026-87902 Exploited the Same Day It Was Patched: pearcmd.php Turned Into a Web Shell Dropper
TL;DR what: CVE-2026-87902 lets an unauthenticated attacker make WordPress get_page_template() i…
How to Use AI for Smart Contract Audits in 2026
In the rapidly evolving landscape of decentralized finance, manual code review is no longer sufficie…
Jango launches a Mac app for testing multi-user flows with AI agents
Jango launched a Mac app that gives each AI participant its own browser, account, goal, and memory s…
I tried to break my own AI audit trail 75 times. 17 attacks worked.
On September 12, Dario Amodei published an essay urging companies and governments to "pace the front…
Flash Loan Attack Vector Analysis: Binance CEX
Flash Loan Attack Vector Analysis: Binance CEX Target Protocol: Binance CEX (TVL: $179577.9M) …
Startup Logistics Transactional Email API vs SMTP — Owning Password Reset Templates
A logistics startup choosing a transactional email API for welcome emails and password resets should…
System One models in an agent loop: classify first, authorise in code
An agent needs a boundary between proposing an action and taking it. I would put that boundary in or…
We need Universal Basic Income before losing your job to AI becomes your financial emergency
If you’re reading this, your job could be replaced by AI within the next two years or sooner. Before…
ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks
The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rul…
[P] A small MLP from scratch in NumPy with a GUI to look inside it while it trains (weight distributions, t-SNE per layer, neuron ablation...) [P]
Hi everyone, I built an educational tool that shows what happens inside a small MLP while it trains,…
Publication potential [D]
Hi all, I may be being silly but I have just finished my masters thesis which benchmarked three deep…
Lunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials
The Psychedelic Stealer malware distributed via compromised Ukrainian websites using ClickFix-style …