home groups about login help
OpenAI GPT-5.6 Sol Breached Hugging Face: Attack Chain and Technical Analysis (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 22 Jul 07:17
comments (0)
Inside the Attack Chain: PAN-OS Exploitation and Qilin Ransomware (wp.me)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 21 Jul 17:35
comments (0)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 20 Jul 15:10
comments (0)
Inside HollowByte: Understanding OpenSSL's latest DoS vulnerability (wp.me)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 19 Jul 09:03
comments (0)
'Half a Second' — a book on the XZ backdoor (lwn.net)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 19 Jul 04:42
comments (1)
Tesla Digital Fleet Command / Remote FSD Live-Tracking (www.teslaacessories.com)
in cybersecurity@infosec.pub from sheeple@infosec.pub on 18 Jul 21:23
comments (1)
LG monitors silently install software through Windows Update without user consent (videocardz.com)
in cybersecurity@infosec.pub from cm0002@literature.cafe on 18 Jul 19:26
comments (12)
EY discloses third-party support platform breach exposing client tax information (wp.me)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 17 Jul 20:20
comments (2)
No Shark is Safe: Millions of Shark Vacuums are Vulnerable to RCE (tokay0.com)
in cybersecurity@infosec.pub from cm0002@suppo.fi on 17 Jul 15:48
comments (0)
Chrome Extension Used by 1.6 Million Users Silently Adds Data Exfiltration Capabilities (cybersecuritynews.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 16 Jul 05:04
comments (4)
Grok Build Uploaded Entire Git Repositories to xAI Storage, Not Just Files It Read (thehackernews.com)
in cybersecurity@infosec.pub from Deebster@infosec.pub on 15 Jul 14:01
comments (0)
Nightmare-Eclipse just dropped "LegacyHive," a new Windows privilege-escalation zero-day PoC that targets the Windows User Profile Service, the component that loads a user's settings during sign-in (git.projectnightcrawler.dev)
in cybersecurity@infosec.pub from beep@piefed.world on 15 Jul 10:55
comments (0)
jscrambler npm v8.14.0: attack chain, IOCs and mitigation (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 13 Jul 18:42
comments (0)
RedHook Android malware now uses Wireless ADB for shell access (www.bleepingcomputer.com)
in cybersecurity@infosec.pub from tonytins@pawb.social on 12 Jul 23:05
comments (0)
GigaWiper Merges Three Malware Families Into One Destructive Backdoor (securityaffairs.com)
in cybersecurity@infosec.pub from tonytins@pawb.social on 10 Jul 22:00
comments (0)
Injective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages (thehackernews.com)
in cybersecurity@infosec.pub from tonytins@pawb.social on 10 Jul 20:16
comments (0)
Off-Topic Friday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 10 Jul 17:12
comments (0)
Stegano 2.5.0: reversible data hiding technique based on histogram shifting (github.com)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 10 Jul 16:44
comments (0)
Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes (thehackernews.com)
in cybersecurity@infosec.pub from tonytins@pawb.social on 09 Jul 16:57
comments (0)
GhostLock (CVE-2026-43499): 15-year-old Linux kernel flaw enables root and container escape (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 09 Jul 07:04
comments (1)
GhostLock: 15-Year-Old Linux Kernel Flaw Gives Any Local User Root in 5 Seconds (threat-intelligence.redeyesecurity.com)
in cybersecurity@infosec.pub from schnurrito@discuss.tchncs.de on 08 Jul 21:09
comments (0)
GitLost: How We Tricked GitHub’s AI Agent into Leaking Private Repos (noma.security)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 08 Jul 17:44
comments (1)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 08 Jul 16:04
comments (0)
Be careful: The Fixupxer App on F-droid edit your URL to make it redirect to adware/malware. (github.com)
in cybersecurity@infosec.pub from beep@piefed.world on 08 Jul 12:32
comments (1)
Accenture investigating breach after threat actor claims Azure DevOps data theft (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 08 Jul 10:43
comments (0)
Januscape: Guest-to-Host Escape in KVM/x86 (github.com)
in cybersecurity@infosec.pub from SirHaxalot@nord.pub on 08 Jul 08:36
comments (1)
Researchers warn Gitea CVE-2026-20896 is now being actively exploited (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 08 Jul 08:15
comments (0)
Two GitHub "Verified" commit vulnerabilities could undermine software supply chain trust (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 08 Jul 07:03
comments (0)
Any signed GitHub commit can be copied, without the author's secret key, creating a distinct commit with an identical tree, metadata, a valid signature, and a "Verified" badge (www.internationalcyberdigest.com)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 08 Jul 00:11
comments (1)
GitHub’s AI Agent Tricked Into Leaking Private Repository Data (hackread.com)
in cybersecurity@infosec.pub from tonytins@pawb.social on 07 Jul 17:13
comments (4)
Wormable RCE vulnerability in many Bluetooth headphones (www.youtube.com)
in cybersecurity@infosec.pub from floofloof@lemmy.ca on 07 Jul 17:11
comments (1)
Suspected Chinese espionage group used a Roundcube exploit chain to burrow into universities in Canada and the U.S. (cyberscoop.com)
in cybersecurity@infosec.pub from Sepia@mander.xyz on 07 Jul 16:03
comments (0)
Vulnerability-Lookup 5.3.0 released (www.vulnerability-lookup.org)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 07 Jul 15:45
comments (0)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 06 Jul 14:39
comments (0)
CVE-2026-43456 Explained: 19-Year Linux Kernel Zero-Day Deep Dive (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 05 Jul 07:53
comments (3)
Disclosure of serious cyber vulnerabilities spiked around the release of Claude Mythos Preview
in cybersecurity@infosec.pub from beep@piefed.world on 04 Jul 22:42
comments (0)
Huntress CEO says threat hunter used 'poor judgment' in alerting ransomware crim about law enforcement probe (www.theregister.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 04 Jul 05:31
comments (1)
Politician who investigated spyware abuses had his phone hacked with Pegasus spyware (techcrunch.com)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 03 Jul 23:47
comments (2)
A Third Party Breached The Intercept’s Signal Tip Line and Has Been Soliciting Whistleblowers (www.dropsitenews.com)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 03 Jul 17:05
comments (2)
DHS confirms breach of HSIN and connected SharePoint environment (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 03 Jul 11:34
comments (2)
Vulnerability Report - June 2026
in cybersecurity@infosec.pub from cm0002@lemdro.id on 03 Jul 07:49
comments (0)
Medtronic notifies customers impacted by ShinyHunters data breach (www.bleepingcomputer.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 03 Jul 05:21
comments (0)
RustDuck: An In-Depth Analysis of a Two-Stage Botnet (blog.xlab.qianxin.com)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 02 Jul 21:07
comments (0)
Cyber Criminal Group TeamPCP (www.ic3.gov)
in cybersecurity@infosec.pub from digicat@infosec.pub on 02 Jul 20:44
comments (0)
NSA's SIGINT Enabling Project includes sabotaging cryptographic standards. (nsa.2026.action.cr.yp.to)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 02 Jul 19:45
comments (4)
A new KEV Catalog built from real-world exploitation data ! (vulnerability.circl.lu)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 30 Jun 18:26
comments (0)
How a cannabis club management platform left 1,082,680 member records, 985,841 passport scans (include mine), and the private messages of every member it ever served on a server with no authentication (github.com)
in cybersecurity@infosec.pub from beep@piefed.world on 30 Jun 12:34
comments (0)
Bruce Schneier: Once, cyber-attacks required great skill. AI is changing that (www.theguardian.com)
in cybersecurity@infosec.pub from Wudi@feddit.uk on 29 Jun 18:52
comments (0)
GitHub user Bikini has decided to drop a bunch of POCs for unreported exploits (github.com)
in cybersecurity@infosec.pub from slazer2au@lemmy.world on 29 Jun 09:45
comments (2)
Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia Campaign (thehackernews.com)
in cybersecurity@infosec.pub from Sepia@mander.xyz on 27 Jun 15:55
comments (0)
FFmpeg PixelSmash Flaw Allows RCE on Video Players, Media Servers, NAS Appliances (www.securityweek.com)
in cybersecurity@infosec.pub from cm0002@toast.ooo on 25 Jun 18:25
comments (2)
I made an extension that bypasses online age verification (furries.club)
in privacy@lemmy.ml from helloyanis@furries.club on 23 Jun 16:49
comments (48)
Tata Electronics Breach Leaks Apple & Tesla Secrets (thecybersecguru.com)
in cybersecurity@infosec.pub from LividZampa@lemmy.world on 23 Jun 09:10
comments (1)
Klue Salesforce Breach Explained: Inside the Icarus OAuth Attack (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 20 Jun 2026 07:58
comments (1)
You can’t trust task manager… how malware hides (3 ways) (www.youtube.com)
in cybersecurity@infosec.pub from Amoxtli@thelemmy.club on 20 Jun 2026 04:12
comments (2)
Geo-KYC: Qué Hace Tu Banco En Secreto Con Tu WiFi (telegra.ph)
in cybersecurity@infosec.pub from SamuelEllis@lemmy.world on 19 Jun 2026 17:02
comments (0)
CVE-2026-42530 & CVE-2026-42055: NGINX RCE Flaws Explained. Patches Released (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 19 Jun 2026 08:37
comments (5)
10,000 GitHub repositories distributing Trojan malware found (orchidfiles.com)
in cybersecurity@infosec.pub from cm0002@mander.xyz on 18 Jun 2026 16:08
comments (3)
Hidden KYC: How Banks Silently Track Your WiFi Network (telegra.ph)
in cybersecurity@infosec.pub from monniele@lemmy.world on 17 Jun 2026 21:37
comments (0)
BSSID Collection: How Banks Map Your Home WiFi (telegra.ph)
in cybersecurity@infosec.pub from monniele@lemmy.world on 17 Jun 2026 21:37
comments (0)
From IP Geolocation to WiFi Positioning: The KYC Evolution (telegra.ph)
in cybersecurity@infosec.pub from monniele@lemmy.world on 17 Jun 2026 21:37
comments (0)
Proof of Presence: Why Your WiFi Router Is Now a KYC Witness (telegra.ph)
in cybersecurity@infosec.pub from monniele@lemmy.world on 17 Jun 2026 21:36
comments (0)
Geo-KYC: Qué Hace Tu Banco En Secreto Con Tu WiFi (telegra.ph)
in cybersecurity@infosec.pub from monniele@lemmy.world on 17 Jun 2026 21:36
comments (0)
Shadow KYC Vendors: The $4B Industry You Never See (telegra.ph)
in cybersecurity@infosec.pub from monniele@lemmy.world on 17 Jun 2026 21:35
comments (0)
While Everyone Was Watching IP & KYC: The Invisible Revolution of Digital Trust (telegra.ph)
in cybersecurity@infosec.pub from monniele@lemmy.world on 17 Jun 2026 21:35
comments (0)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 17 Jun 2026 20:10
comments (1)
FortiBleed: How 75,000 Fortinet Firewalls Were Silently Compromised in 2026 (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 17 Jun 2026 18:11
comments (2)
Stop using JWTs as a session mechanism (gist.github.com)
in cybersecurity@infosec.pub from cm0002@mander.xyz on 17 Jun 2026 03:13
comments (1)
A backdoor in a LinkedIn job offer (roman.pt)
in cybersecurity@infosec.pub from cm0002@mander.xyz on 16 Jun 2026 16:09
comments (1)
Technical breakdown: stored XSS, session abuse, CSP failures behind the Massive Instructure Canvas Data Breach (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 15 Jun 2026 20:43
comments (1)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 15 Jun 2026 15:25
comments (2)
CVE-2026-53435: Jenkins Deserialization Chain, PoC & Patch (thecybersecguru.com)
in cybersecurity@infosec.pub from UnLocoPoco@lemmy.world on 15 Jun 2026 14:58
comments (1)
New wave of malware in the aur (lists.archlinux.org)
in cybersecurity@infosec.pub from cm0002@europe.pub on 14 Jun 2026 17:27
comments (2)
CVE-2026-20253: Splunk Pre-Auth RCE via PostgreSQL Sidecar (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 14 Jun 2026 08:26
comments (2)
ShinyHunters linked to exploitation of critical flaw in Oracle PeopleSoft (www.cybersecuritydive.com)
in cybersecurity@infosec.pub from monica_b1998@lemmy.world on 13 Jun 2026 20:36
comments (1)
Marcus Ranum: The Six Dumbest Ideas in Computer Security [2005] (old, but still applies) (www.ranum.com)
in cybersecurity@infosec.pub from cm0002@europe.pub on 13 Jun 2026 17:44
comments (2)
Arch Linux's AUR Sees More Than 400 Packages Compromised With Malware (www.phoronix.com)
in cybersecurity@infosec.pub from cm0002@europe.pub on 13 Jun 2026 17:27
comments (1)
21 Zero-Days in FFmpeg (depthfirst.com)
in cybersecurity@infosec.pub from cm0002@europe.pub on 13 Jun 2026 17:25
comments (0)
Atomic Arch: 900+ AUR Packages Backdoored with eBPF RootkitCopy (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 13 Jun 2026 14:48
comments (2)
AMD changes rules, denies researcher $10,000 bounty after taking 124 days to patch security flaw (www.techspot.com)
in cybersecurity@infosec.pub from floofloof@lemmy.ca on 13 Jun 2026 08:50
comments (6)
Off-Topic Friday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 12 Jun 2026 16:48
comments (2)
🔥 New in Vulnerability-Lookup: KEV Catalog Coverage!
in cybersecurity@infosec.pub from cm0002@literature.cafe on 12 Jun 2026 10:18
comments (0)
Researchers have just unveiled a technique called FROST that lets a website work out which other websites and apps you have open, without you clicking a single thing (protonprivacy.substack.com)
in cybersecurity@infosec.pub from Innerworld@lemmy.world on 11 Jun 2026 04:56
comments (1)
Russian satellites linked to mysterious GPS disruptions across several countries (techxplore.com)
in cybersecurity@infosec.pub from cm0002@literature.cafe on 11 Jun 2026 19:47
comments (1)
Russian satellites linked to mysterious GPS disruptions across several countries (techxplore.com)
in cybersecurity@infosec.pub from Innerworld@lemmy.world on 11 Jun 2026 19:00
comments (0)
University of Nottingham Data Breach: 454,600 Students affected by the ShinyHunters Breach (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 11 Jun 2026 17:43
comments (0)
Vulnerability-Lookup 5.1.0 (www.vulnerability-lookup.org)
in cybersecurity@infosec.pub from cm0002@literature.cafe on 11 Jun 2026 15:36
comments (0)
GreatXML: GreatXML bitlocker bypass vulnerability (github.com)
in cybersecurity@infosec.pub from digicat@infosec.pub on 11 Jun 2026 10:15
comments (0)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 10 Jun 2026 17:32
comments (6)
Miasma Worm Goes Open Source: What's Actually Inside It. Complete Analysis (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 09 Jun 2026 19:56
comments (1)
Microsoft's open source tools were hacked to steal passwords of AI developers (techcrunch.com)
in cybersecurity@infosec.pub from cm0002@literature.cafe on 09 Jun 2026 17:37
comments (1)
CVE-2026-23111: One Bad Character Gives Attackers Linux Root (thecybersecguru.com)
in cybersecurity@infosec.pub from WPSteam@lemmy.world on 09 Jun 2026 07:00
comments (2)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 08 Jun 2026 16:00
comments (1)
Yoti Reported GrapheneOS User to Authorities - Sony PlayStation Age Verification. In-depth Technical Breakdown (thecybersecguru.com)
in cybersecurity@infosec.pub from LandoLuma@lemmy.zip on 07 Jun 2026 19:31
comments (2)
Meta confirms thousands of Instagram accounts were hacked by abusing its AI chatbot (this.weekinsecurity.com)
in cybersecurity@infosec.pub from cm0002@suppo.fi on 06 Jun 2026 22:33
comments (6)
Magecart skimmer turns Stripe into a malware command server (sansec.io)
in cybersecurity@infosec.pub from cm0002@suppo.fi on 06 Jun 2026 17:44
comments (1)
How a USB-connected speaker can infect a PC without ever being touched (arstechnica.com)
in cybersecurity@infosec.pub from schnurrito@discuss.tchncs.de on 06 Jun 2026 01:58
comments (4)
New IronWorm malware hits 36 packages in npm supply-chain attack (www.bleepingcomputer.com)
in cybersecurity@infosec.pub from cm0002@suppo.fi on 05 Jun 2026 17:14
comments (0)
Ammaraskar: 1-Click GitHub Token Stealing via a VSCode Bug (blog.ammaraskar.com)
in cybersecurity@infosec.pub from cm0002@suppo.fi on 05 Jun 2026 16:45
comments (0)
Ammaraskar: 1-Click GitHub Token Stealing via a VSCode Bug (blog.ammaraskar.com)
in cybersecurity@infosec.pub from exu@feditown.com on 05 Jun 2026 10:49
comments (0)
New HTTP/2 Bomb DoS Attack Hits Nginx, Apache, IIS, Envoy, and Pingora (linuxiac.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 05 Jun 2026 05:04
comments (1)
"Patches are available to sophisticated attackers as soon as Google discloses them to OEMs. A partial embargo for months makes no sense." (grapheneos.social)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 03 Jun 2026 15:38
comments (0)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 03 Jun 2026 15:03
comments (1)
1-Click GitHub Token Stealing via a VSCode Bug (blog.ammaraskar.com)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 03 Jun 2026 07:49
comments (0)
Red Hat npm Packages Compromised in Supply Chain Attack (linuxiac.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 02 Jun 2026 19:53
comments (1)
Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks – Krebs on Security (krebsonsecurity.com)
in cybersecurity@infosec.pub from Kissaki@programming.dev on 02 Jun 2026 18:26
comments (0)
Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and Canada – Krebs on Security (krebsonsecurity.com)
in cybersecurity@infosec.pub from Kissaki@programming.dev on 02 Jun 2026 18:25
comments (0)
Hackers Simply Asked Meta AI to Give Them Access to High-Profile Instagram Accounts. It Worked (www.404media.co)
in cybersecurity@infosec.pub from not_IO@lemmy.blahaj.zone on 02 Jun 2026 05:39
comments (3)
Dozens of Red Hat packages backdoored through its official NPM channel (arstechnica.com)
in cybersecurity@infosec.pub from schnurrito@discuss.tchncs.de on 02 Jun 2026 00:58
comments (0)
The Newest Instagram "Exploit" is the Goofiest I've Seen (www.0xsid.com)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 02 Jun 2026 00:03
comments (4)
Hackers Simply Asked Meta AI to Give Them Access to High-Profile Instagram Accounts. It Worked (www.404media.co)
in cybersecurity@infosec.pub from floofloof@lemmy.ca on 01 Jun 2026 21:57
comments (8)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 01 Jun 2026 16:23
comments (0)
No fix yet for critical RCE bug in open-source Git service Gogs - exploit module is out (www.theregister.com)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 30 May 2026 22:32
comments (1)
Vulnerability-Lookup 5.0.0 released (www.vulnerability-lookup.org)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 29 May 2026 16:17
comments (0)
Websites have a new way to spy on visitors: Analyzing their SSD activity (arstechnica.com)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 28 May 2026 17:13
comments (3)
FuzzingBrain V2: A Multi-Agent LLM System for Automated Vulnerability Discovery and Reproduction (arxiv.org)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 28 May 2026 02:10
comments (0)
Microsoft's GitHub bans security researcher who posted zero-day Windows exploits because company 'ruined their life' — expert claims action is vindictive and promises further retaliation (www.tomshardware.com)
in cybersecurity@infosec.pub from floofloof@lemmy.ca on 27 May 2026 14:50
comments (9)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 27 May 2026 14:31
comments (3)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 25 May 2026 13:40
comments (3)
Netherlands Cracks Down on Russian-Linked Cybercrime with Major Server Seizure (www.news4hackers.com)
in cybersecurity@infosec.pub from Hotznplotzn@lemmy.sdf.org on 24 May 2026 18:13
comments (0)
Megalodon chums the waters in 5.5K+ GitHub repo poisonings (www.theregister.com)
in cybersecurity@infosec.pub from cm0002@lemmings.world on 23 May 2026 17:42
comments (0)
The GitHub Breach Through VS Code Is the One I Warned About (mazinahmed.net)
in cybersecurity@infosec.pub from cm0002@lemmings.world on 22 May 2026 23:32
comments (0)
Off-Topic Friday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 22 May 2026 16:47
comments (5)
Work wifi access
in cybersecurity@infosec.pub from Psycho84@lemmy.world on 21 May 2026 20:02
comments (18)
Chinese hackers target telcos with new Linux, Windows malware (www.bleepingcomputer.com)
in cybersecurity@infosec.pub from tonytins@pawb.social on 21 May 2026 17:51
comments (0)
Vulnerability-Lookup 4.6.0 (www.vulnerability-lookup.org)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 21 May 2026 15:47
comments (0)
Google publishes exploit code threatening millions of Chromium users (arstechnica.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 20 May 2026 23:37
comments (1)
ESA and Spain strengthen ties for secure connectivity (www.esa.int)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 20 May 2026 22:38
comments (0)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 20 May 2026 15:09
comments (2)
Table-Top Security Exercises [OC] (infosec.press)
in cybersecurity@infosec.pub from hex_m_hell@slrpnk.net on 20 May 2026 14:28
comments (0)
Hidden Voice Glitches Could Hijack Audio AI Tools (spectrum.ieee.org)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 20 May 2026 00:59
comments (0)
CISA Admin Leaked AWS GovCloud Keys on Github – Krebs on Security (krebsonsecurity.com)
in cybersecurity@infosec.pub from Hirom@beehaw.org on 19 May 2026 08:58
comments (1)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 18 May 2026 14:41
comments (0)
Fabricked: Misconfiguring Infinity Fabric to Break AMD SEV-SNP (software-based compromise of "Confidential Virtual Machines") (xca-attacks.github.io)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 18 May 2026 01:54
comments (0)
A security researcher says Microsoft secretly built a backdoor into BitLocker, releases an exploit to prove it (www.techspot.com)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 17 May 2026 20:34
comments (5)
A 0-click exploit chain for the Pixel 10: When a Door Closes, a Window Opens (projectzero.google)
in cybersecurity@infosec.pub from cm0002@toast.ooo on 16 May 2026 18:55
comments (0)
Hecate - Vulnerability management platform and SCA (hecate.pw)
in cybersecurity@infosec.pub from 0x3e4@feddit.org on 16 May 2026 09:54
comments (5)
Windows BitLocker 0-Day Vulnerability Enables Access to Encrypted Drives (cybersecuritynews.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 16 May 2026 05:47
comments (5)
Off-Topic Friday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 15 May 2026 06:12
comments (0)
Anthropic’s Mythos AI Reportedly Found macOS Vulnerabilities that could bypass Apple security (cybersecuritynews.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 15 May 2026 01:21
comments (0)
A worm just ate its way through the NPM registry... (www.youtube.com)
in cybersecurity@infosec.pub from cm0002@toast.ooo on 14 May 2026 21:04
comments (0)
Backdoored Cemu release linked to TanStack and Mistral supply chain campaign | Datadog Security Labs (securitylabs.datadoghq.com)
in cybersecurity@infosec.pub from Kissaki@programming.dev on 14 May 2026 12:20
comments (0)
France investigates 15-year-old over alleged hack of national ID agency (therecord.media)
in cybersecurity@infosec.pub from cm0002@toast.ooo on 14 May 2026 03:00
comments (0)
YellowKey - a (potential) backdoor in MS Bitlocker (github.com)
in cybersecurity@infosec.pub from floofloof@lemmy.ca on 13 May 2026 16:11
comments (0)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 13 May 2026 14:51
comments (1)
fast16 | Mystery Shadow Brokers Reference Reveals High-Precision Software Sabotage 5 Years Before Stuxnet (www.sentinelone.com)
in cybersecurity@infosec.pub from InternetCitizen2@lemmy.world on 12 May 2026 18:21
comments (0)
Linux bitten by second severe vulnerability in as many weeks (arstechnica.com)
in cybersecurity@infosec.pub from floofloof@lemmy.ca on 12 May 2026 07:50
comments (0)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 11 May 2026 19:47
comments (0)
Linux Dirtyfrag vulnerability (github.com)
in cybersecurity@infosec.pub from cm0002@mander.xyz on 08 May 2026 15:51
comments (0)
Ivanti EPMM CVE-2026-6973 RCE Under Active Exploitation Grants Admin-Level Access (thehackernews.com)
in cybersecurity@infosec.pub from cm0002@lemy.lol on 08 May 2026 05:20
comments (0)
Pro-Russian Hacker Group Gamifies Cyberattacks on Europe With Crypto Rewards (www.themoscowtimes.com)
in cybersecurity@infosec.pub from Sepia@mander.xyz on 06 May 2026 19:23
comments (0)
DAEMON Tools software infected – supply chain attack ongoing since April 8, 2026 (securelist.com)
in cybersecurity@infosec.pub from cm0002@europe.pub on 06 May 2026 15:49
comments (0)
Vulnerability Garden (vulnerability.garden)
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 06 May 2026 14:59
comments (5)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 06 May 2026 14:55
comments (1)
Microsoft Edge: Passwords end up in memory as plaintext (www.heise.de)
in cybersecurity@infosec.pub from cm0002@europe.pub on 05 May 2026 16:46
comments (0)
Thoughts on Darktrace or MS Sentinel?
in cybersecurity@infosec.pub from Lemmert@reddthat.com on 05 May 2026 00:25
comments (5)
Microsoft Edge loads all your saved passwords into memory in cleartext — even when you’re not using them; Microsoft will not fix, says the behavior is "by design" (video.twimg.com)
in cybersecurity@infosec.pub from Deep@mander.xyz on 04 May 2026 22:17
comments (43)
Vulnerability Report - April 2026 (www.vulnerability-lookup.org)
in cybersecurity@infosec.pub from cm0002@literature.cafe on 04 May 2026 16:37
comments (0)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 04 May 2026 14:57
comments (1)
Celebrity Stalkerware Data Breach: 86K+ Private Images Leaked (www.expressvpn.com)
in cybersecurity@infosec.pub from Deep@mander.xyz on 01 May 2026 23:59
comments (0)
Off-Topic Friday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 01 May 2026 20:58
comments (0)
The most severe Linux threat to surface in years catches the world flat-footed (arstechnica.com)
in cybersecurity@infosec.pub from schnurrito@discuss.tchncs.de on 01 May 2026 06:03
comments (7)
Hackers are actively exploiting a bug in cPanel, used by millions of websites (techcrunch.com)
in cybersecurity@infosec.pub from cm0002@literature.cafe on 01 May 2026 04:57
comments (1)
Copy Fail — 732 Bytes to Root (copy.fail)
in cybersecurity@infosec.pub from cm0002@literature.cafe on 30 Apr 2026 15:34
comments (0)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 29 Apr 2026 14:52
comments (1)
Vimeo suffers 3rd-party breach exposing user data, hackers threaten leak (cyberinsider.com)
in cybersecurity@infosec.pub from Deep@mander.xyz on 29 Apr 2026 11:56
comments (0)
GTFOBins- curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems (gtfobins.org)
in cybersecurity@infosec.pub from Deep@mander.xyz on 28 Apr 2026 13:58
comments (0)
Mentorship Monday - Discussions for career and learning!
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 27 Apr 2026 20:30
comments (0)
Off-Topic Friday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 24 Apr 2026 14:16
comments (2)
Chinese attackers are pwning your infrastructure to use in attacks, 10 countries warn (www.theregister.com)
in cybersecurity@infosec.pub from Sepia@mander.xyz on 24 Apr 2026 07:18
comments (1)
PLC Cybersecurity — Securing Industrial Control Systems (slicker.me)
in cybersecurity@infosec.pub from monica_b1998@lemmy.world on 24 Apr 2026 06:44
comments (0)
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Attack (socket.dev)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 24 Apr 2026 03:19
comments (0)
What are You Working on Wednesday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 22 Apr 2026 16:33
comments (1)
Iran claims US exploited networking equipment backdoors during strikes (www.tomshardware.com)
in cybersecurity@infosec.pub from floofloof@lemmy.ca on 22 Apr 2026 14:39
comments (1)
Iran, Russia and China behind most major cyberattacks on UK, security chief warns (www.the-independent.com)
in cybersecurity@infosec.pub from randomname@scribe.disroot.org on 22 Apr 2026 13:58
comments (0)
Wireshark tutorial: Capture vs. Display Filters (slicker.me)
in cybersecurity@infosec.pub from monica_b1998@lemmy.world on 22 Apr 2026 05:22
comments (1)
Quantum Computers Are Not a Threat to 128-bit Symmetric Keys (words.filippo.io)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 21 Apr 2026 20:19
comments (1)
FakeWallet cryptostealer propagating via iOS App Store applications (securelist.com)
in cybersecurity@infosec.pub from beep@piefed.world on 21 Apr 2026 11:29
comments (0)
Microsoft's Silent Lockout: Why WireGuard, VeraCrypt & Windscribe Can No Longer Update Windows Users (techlore.tech)
in cybersecurity@infosec.pub from cm0002@libretechni.ca on 19 Apr 2026 23:04
comments (8)
The EU's age verification app can be hacked in 2 minutes. (Found by Paul Moore)
in privacy@lemmy.ml from helloyanis@furries.club on 19 Apr 2026 10:52
comments (10)
HTTP desync in Discord's media proxy: Spying on a whole platform (tmctmt.com)
in cybersecurity@infosec.pub from beep@piefed.world on 18 Apr 2026 19:52
comments (0)
NIST gives up enriching most CVEs (risky.biz)
in cybersecurity@infosec.pub from beep@piefed.world on 18 Apr 2026 19:50
comments (0)
Claude Opus wrote a Chrome exploit for $2,283 (www.theregister.com)
in cybersecurity@infosec.pub from cm0002@lemdro.id on 18 Apr 2026 05:26
comments (1)
Three Microsoft Defender Zero-Days Actively Exploited; Two Still Unpatched (thehackernews.com)
in cybersecurity@infosec.pub from monica_b1998@lemmy.world on 17 Apr 2026 19:30
comments (0)
Off-Topic Friday
in cybersecurity@infosec.pub from shellsharks@infosec.pub on 17 Apr 2026 16:29
comments (0)
108 Chrome extensions caught stealing user data and hijacking sessions (socket.dev)
in cybersecurity@infosec.pub from beep@piefed.world on 17 Apr 2026 11:04
comments (0)
Fiverr left customer files public and searchable on Google (news.ycombinator.com)
in cybersecurity@infosec.pub from beep@piefed.world on 17 Apr 2026 11:01
comments (0)
EU’s official age verification app found exposing sensitive user data; also EU Age Verification can be bypassed using their own infrastructure (video.twimg.com)
in cybersecurity@infosec.pub from beep@piefed.world on 16 Apr 2026 20:05
comments (3)
Someone Bought 30 WordPress Plugins and Planted a Backdoor in All of Them. (anchor.host)
in cybersecurity@infosec.pub from cm0002@lemmings.world on 14 Apr 2026 04:17
comments (2)
AI Cybersecurity After Mythos: The Jagged Frontier (aisle.com)
in cybersecurity@infosec.pub from cm0002@lemmings.world on 11 Apr 2026 21:56
comments (0)
Two different attackers poisoned popular open source tools - and showed us the future of supply chain compromise (www.theregister.com)
in cybersecurity@infosec.pub from cm0002@lemmings.world on 11 Apr 2026 21:48
comments (2)
HWMonitor & CPU-Z users were exposed to malware through fake downloads after CPUID breach (alternativeto.net)
in cybersecurity@infosec.pub from cm0002@lemmings.world on 11 Apr 2026 17:29
comments (0)
Supply chain nightmare: How Rust will be attacked and what we can do to mitigate the inevitable (kerkour.com)
in cybersecurity@infosec.pub from cm0002@lemmings.world on 11 Apr 2026 17:22
comments (0)
Google rolls out end-to-end encryption for Gmail on Android and iOS devices for enterprise users, letting them read and compose emails without additional tools (www.bleepingcomputer.com)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 11 Apr 2026 07:34
comments (3)
CPUID site hijacked to serve malware instead of HWMonitor downloads (www.theregister.com)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 11 Apr 2026 05:58
comments (28)
Google rolls out end-to-end encryption for Gmail on Android and iOS devices for enterprise users, letting them read and compose emails without additional tools (www.bleepingcomputer.com)
in cybersecurity@infosec.pub from Innerworld@lemmy.world on 11 Apr 2026 05:50
comments (0)
ur best techno-babble to bypass clueless auditors? (dev.to)
in cybersecurity@infosec.pub from astrobird@thelemmy.club on 10 Apr 2026 23:27
comments (0)
CPUID hijacked to serve malware as HWMonitor downloads (www.theregister.com)
in cybersecurity@infosec.pub from Deebster@infosec.pub on 10 Apr 2026 18:19
comments (0)
FBI Extracts Suspect’s Deleted Signal Messages Saved in iPhone Notification Database (www.404media.co)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 10 Apr 2026 15:41
comments (9)
Microsoft BANNED WireGuard, VeraCrypt & Windscribe With Zero Warning (www.youtube.com)
in cybersecurity@infosec.pub from cm0002@infosec.pub on 09 Apr 2026 16:34
comments (5)