Curl will end its bug bounty program by the end of January due to excessive AI generated reports ~comp security.cyber open source Link 63 votes
Adversaries leverage AI for vulnerability exploitation, augmented operations, and initial access ~comp security.cyber Article 3999 words 5 votes
Behind the scenes hardening Firefox with Claude Mythos Preview ~comp security.cyber Article 2157 words 20 votes
Dirty Frag, an exploit which can obtain root privileges on major Linux distributions ~tech security.cyber linux Link 31 votes
Linux privilege escalation (CVE-2026-31431) ~comp linux security.cyber Article 220 words, published Mar 23 2026 49 votes
The zero-days are numbered — Firefox team uses AI to find and fix vulnerabilities ~tech browsers Article 790 words 38 votes
Goodbye innerHTML, Hello setHTML: Stronger XSS Protection in Firefox 148 ~comp web development Article 587 words 19 votes
AI will compromise your cybersecurity posture ~tech security.cyber security.info Article 3515 words, published Jan 7 2026 8 votes
Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking ~tech android security.cyber google Article 275 words 62 votes
Unseeable prompt injections in screenshots: more vulnerabilities in Comet and other AI browsers ~tech browsers.ai internet security Article 847 words 35 votes
Copilot broke your audit log, but Microsoft won’t tell you ~comp security Article 1191 words 38 votes
WinRAR zero-day under active exploitation – update to latest version immediately ~tech security.cyber Article 1148 words 40 votes
Global hack on Microsoft SharePoint hits US, state agencies, researchers say ~tech microsoft Article 37 votes
Next.js and the corrupt middleware: the authorizing artifact ~comp security programming Article 2349 words, published Mar 18 2025 20 votes
Find my hacker: How Apple's network can be a potential tracking tool ~tech apple Article 746 words 16 votes
Too many people don’t value the time of security researchers ~comp security security.cyber open source Article 1595 words 22 votes
Project Zero: Using large language models to catch vulnerabilities in real-world code ~tech security google Article 1866 words 7 votes
SS7: A mobile network operator protocol with scary vulnerabilities ~tech privacy security Video 31:55 29 votes
Maximum-severity Cisco vulnerability allows attackers to change admin passwords ~tech Article 516 words 26 votes
Cyber security: A pre-war reality check ~tech security.cyber microsoft amazon google Article 6976 words, published May 14 2024 34 votes
‘TunnelVision’ attack leaves nearly all VPNs vulnerable to spying ~tech security.cyber privacy Article 918 words, published May 6 2024 40 votes
Critical vulnerability in Rust's Command library allows for command injection when using its API to invoke batch scripts with arguments on Windows systems (CVE-2024-24576) ~comp security.cyber programming languages Article 450 words 18 votes
Hackers can infect network-connected wrenches to install ransomware, researchers say ~tech security.cyber Article 493 words 28 votes
All cops are broadcasting. TETRA unlocked after decades in the shadows. ~tech security Article 340 words 26 votes
Incomplete disclosures by Apple and Google create “huge blindspot” for 0-day hunters ~tech apple google security Article 630 words 13 votes
WinRAR zero-day exploited since April to hack trading accounts ~tech security.cyber Article 622 words 31 votes
A data breach at Christie’s revealed exact GPS coordinates of collectors’ artworks ~tech Article 882 words, published Aug 21 2023 25 votes
Hackers exploited a zero-day flaw in Ivanti's software undetected for at least three months, US and Norwegian cybersecurity agencies warn ~tech security.cyber Article 456 words 14 votes
Apple fixes zero-days used to deploy Triangulation spyware via iMessage ~tech apple ios security.cyber Article 681 words 8 votes
Hertzbleed - a new family of frequency side channel attacks on x86 processors ~comp security hardware Article 1049 words 13 votes
The lead developer of curl analyzed its known security vulnerabilities and determined that half of them are related to it being written in C ~comp programming languages programming security.cyber Article 1528 words 12 votes
Finding vulnerabilities in the calling state machines of video/audio messaging platforms ~comp security Article 2921 words 3 votes
SolarWinds: New findings from our investigation of SUNBURST ~tech security.cyber Article 1695 words 6 votes
Achilles: Over 400 vulnerabilities found in Qualcomm’s Snapdragon DSP chip, threatening the security of hundreds of millions of Android devices ~tech android security Article 1010 words, published Aug 6 2020 17 votes
Edison Mail vulnerability allowing unauthorized access to email accounts of other users ~tech ios security Article 695 words 4 votes
Analysis of Voatz mobile voting app by MIT researchers finds elementary security flaws ~tech security Article 1644 words 11 votes
Firefox zero-day was used in attack against Coinbase employees, not its users ~tech browsers security Article 494 words 11 votes
'RAMBleed' Rowhammer attack can now steal data, not just alter it ~tech security Article 649 words 7 votes