CVE-2026-32740: RCE in a PIE Next.js sharp/libheif Stack
submitted by /u/adrian_rt [link] [comments]β¦
AI tools, cybersecurity and development news aggregated from top sources β saved permanently with unique URLs.
CVE-2026-32740: RCE in a PIE Next.js sharp/libheif Stack
submitted by /u/adrian_rt [link] [comments]β¦
RCE in OpenCode (GHSA-632h-h47v-g4x4)
submitted by /u/thorn42 [link] [comments]β¦
EDR Evasion: Process Injection Without WriteProcessMemory
Unlike traditional approaches, console named-pipe injection does not use VirtualAllocEx and WriteProβ¦
Revealing the details of how OpenAI agents hacked Hugging Face
GET-only egress to full code execution: chaining a URL mirror and a screenshot service submitted β¦
AI on Kubernetes: Default Helm Chart Security Configurations and Lateral Movement Risks
A technical audit evaluating the security defaults of 15 official Helm charts used for AI serving, vβ¦
A header-level look at 4,688 small-business websites: 0.17% passed a header-only script-CSP rule [methods, parser rules, data]
We scanned 7,040 randomly sampled U.S. local-business directory listings and graded the response heaβ¦
EX-ARRR: Sailing the Apple 0-click Seas
submitted by /u/nindustries [link] [comments]β¦
CVE-2025-13032: Entering and Breaking the Avast Antivirus Sandbox Part 2
submitted by /u/si9int [link] [comments]β¦
Argus Monitor Local Denial-of-Service Vulnerability (CVE-2026-79417)
(1) An exposed IOCTL lets unprivileged users disable the x86 MONITOR & MWAIT instructions used by Hyβ¦
CVE-2026-91766: PHP had the redirect credential leak curl fixed in 2018
submitted by /u/AlexandreDaubois [link] [comments]β¦
Uncensored Qwen 3.8 27b helped write a LSASS Dumper which bypassed EDR while I made myself coffee
submitted by /u/ezzzzz [link] [comments]β¦
r/netsec monthly discussion & tool thread
Questions regarding netsec and discussion related directly to netsec are welcome here, as is sharingβ¦