InfoSec Planet
A collection of diverse security content from a curated list of sources. This website also serves as a demo for "worker-planet", the software that powers it.
Securing AI Workloads at Cloud Scale on 17/08/2026
Wallet RPC Restricted-Mode Policy Bypass on 17/08/2026
Monero disclosed a bug submitted by usagirabbit: https://hackerone.com/reports/3620006 [...]
Restricted RPC Policy Bypass on ZMQ JSON-RPC Allows Unauthenticated Remote Admin Actions on 17/08/2026
Monero disclosed a bug submitted by usagirabbit: https://hackerone.com/reports/3601469 [...]
AI Exploits Vulnerabilities in Just 2 Hours: Cisco's Omar Santos on Defending at Machine Speed on 17/08/2026
AI Finds Vulnerabilities 10x Faster Than Teams Can Patch Them on 17/08/2026
The OpenAI Story Actually Scares Me on 16/08/2026
Friday Squid Blogging: Searching for the Colossal Squid on 14/08/2026
Fascinating video about searching for life undersea. The video basically makes the point that our bright white searchlights are scaring everything away, and that red light is more neutral. That, plus bait to attract sea creatures, is teaching us a lot about what’s going on down there. Lots of footage of giant squid, and speculation about the colossal squid. Worth watching. As usual, you can [...]
Upcoming Speaking Engagements on 14/08/2026
This is a current list of where and when I am scheduled to speak: I’m speaking, signing books, and participating in panel discussions at LAcon V in Anaheim, California, USA. My full schedule is here. I’m speaking online (via Zoom) at a League of Women Voters event on Tuesday, September 22, 2026, at 5 PM ET. I’m speaking at Elevate Festival in Toronto, Canada. The conference runs September 2 [...]
Soft Skills for the Job Market: Standing Out! on 14/08/2026
TaskProcessing callback authorization bypass allows ex-members to post as Assistant Talk Bot on 14/08/2026
Nextcloud disclosed a bug submitted by kuninogu: https://hackerone.com/reports/3799010 [...]
Windows SSPI connection-pool probe can reuse a connection under the wrong user on 14/08/2026
curl disclosed a bug submitted by mr4bugs: https://hackerone.com/reports/3938185 [...]
libcurl cache updates follow symlinks and truncate their targets on 14/08/2026
curl disclosed a bug submitted by mr4bugs: https://hackerone.com/reports/3938220 [...]
Who’s Tracking You? Use This New Service to Find Out by BrianKrebs on 14/08/2026
It can be daunting to determine who’s responsible for showing ads on the websites we visit, or who’s harvesting data from the mobile apps we use every day. That information is already semi-public, but it is not easily parsed and traditionally much of it has remained walled away in the hands of large advertising platforms. Not anymore: A powerful and free new service called DecryptAds s [...]
If the Markets Reject OpenAI and Anthropic, the US Should Nationalize Them on 14/08/2026
This essay was written with Nathan E. Sanders, and originally appeared in The Guardian. OpenAI, and then Anthropic, were each formed by AI developers who feared unrestrained corporate AI development—specifically, that companies like Google and Meta would steer the technology towards deleterious, maybe even catastrophically unsafe, outcomes for society. Their founders proclaimed that their ne [...]
Cookie jar load skips public suffix check on PSL builds on 14/08/2026
curl disclosed a bug submitted by 1rhino2: https://hackerone.com/reports/3920276 [...]
I HATE overpriced cybersecurity education on 13/08/2026
Phishing Gets Personal on 13/08/2026
Debug Deep Link Abuse Allows Repeated Forced Logout and Application Disruption on 13/08/2026
Yelp disclosed a bug submitted by 0xkarim_dix: https://hackerone.com/reports/3829030 [...]
I Made AI Build a Cybersecurity Mod in Minecraft on 13/08/2026
Separating AI’s Technological Problems from Its Capitalism Problems on 13/08/2026
This essay was written with Nathan E. Sanders, and originally appeared in Tech Policy Press. AI represents the first time we humans can do cognitive work outside of our bodies at scale. The only comparable moment is the early years of the industrial revolution, when new technologies like the steam engine provided a quantum leap in our ability to do mechanical work outside of our bodies at scale. I [...]
JaaS: Unauthenticated, cross-tenant outbound SIP calling via JaaS SIP gateway (toll fraud + caller-ID spoofing) on 12/08/2026
8x8 disclosed a bug submitted by offseq: https://hackerone.com/reports/3837634 - Bounty: $500 [...]
I Found an MFA-Bypassing Phishing Kit on the Dark Web on 12/08/2026
I Went to the World's Biggest Hacker Conference (DEFCON VLOG) on 12/08/2026
Prompt Injections for Defense on 12/08/2026
This seems to work: Researchers from Tracebit on Monday said they found that placing prompt injections alongside passwords, cryptographic keys, and other secrets stored on Amazon Web Services was often all that was needed to shut down attacks from AI hacking agents. The prompts direct the attacking LLM to perform an action forbidden by its guardrails, the safety barriers AI developers erect to pre [...]
Can AI invent new attack techniques? New research from James Kettle and PortSwigger Research on 12/08/2026
We already know AI can find vulnerabilities. James Kettle, PortSwigger's Director of Research, wanted to answer a harder question: can an autonomous system invent genuinely new attack techniques? To f [...]
Myndr CORS Misconfiguration on 12/08/2026
Myndr disclosed a bug submitted by hackwithshubh: https://hackerone.com/reports/3930957 [...]
Microsoft Plugs Nearly 400 Security Holes by BrianKrebs on 11/08/2026
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already being actively exploited and two others that were publicly detailed prior to today. Image: Shutterstock, Mallika Home Studio. August’s overstuffed bundle of patch joy from Microsoft did not eclipse its recording break [...]
How Trail of Bits helps verify the integrity of your Signal chats on 11/08/2026
Every Signal chat starts the same way: the client asks the Signal server for the public key associated with your contact’s phone number. But how do you know the server gave you the right key? A compromised server could provide a false public key, allowing the client to encrypt messages to an attacker rather than the intended recipient. Until now, the only way to detect such malfeasance was to veri [...]
AI Genie in the Wild on 11/08/2026
When I give talks about AI genies, I use this sort of example as a hypothetical. It’s happened. The story is from Australia. Someone named Andrew tasked OpenClaw to book gym classes for him. And…. Minutes later, his AI agent reported it had discovered a way to book Andrew into classes several weeks in advance, far beyond what was supposed to be possible. Andrew, who was sitting fourth [...]
This Hacker Trap Was Built by AI on 11/08/2026
Inside H1-030 | HackerOne Live Hacking Event with PayPal in Berlin on 11/08/2026
How To Test Properly For BAC - The OWASP Top 10 Number 1 Exploit on 11/08/2026
AI for Military Support on 11/08/2026
Interesting empirical research: “Black Box Warfare: Human Judgment and Military Decision-Making in the Age of AI.” Abstract: How is AI transforming decision-making in modern conflict? This study provides a unique empirical window into that question by deploying a high-fidelity replica of an AI decision-support system (DSS) used in military targeting. After reconstructing the interface [...]
H1 Remediation Demo | Closing the Discovery-to-Fix Gap on 10/08/2026
Python Now Has a Post-Quantum Encryption Library on 10/08/2026
This is good: Post-quantum cryptography is now one pip-install away for the entire Python ecosystem. With funding from the Sovereign Tech Agency, we implemented support for ML-KEM, the NIST-standard key-establishment primitive, and ML-DSA, the NIST-standard digital-signature primitive, in pyca/cryptography. Remember, the reason to do this now is because there’s no emergency. And because you [...]
CrowdRecon is coming: turning hacker reconnaissance into security intelligence by Greg Jenkins on 10/08/2026
At DEF CON 34, our team introduced something exciting. Something the Intigriti team has been building for months, and our Senior Product Manager, Radu Voloaga, took to the stage in the Bug Bounty Village to give everyone the first real look at CrowdRecon. How CrowdRecon closes the gap It started with a question we kept running into: what happens to all the reconnaissance work hackers do before a v [...]
NEW! [FREE FOR 24H FULL] Postman Course (Music by Nimble) on 09/08/2026
Adding phone number to profile By OTP brute forcing on 08/08/2026
CoinMate.io disclosed a bug submitted by ganesh_reddy: https://hackerone.com/reports/3265780 - Bounty: $100 [...]
Friday Squid Blogging: Arctic Bobtail Squid Video on 07/08/2026
Nice video of the Arctic bobtail squid. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. Blog moderation policy. [...]
URL API: triple-slash parses path segment as hostname on 07/08/2026
curl disclosed a bug submitted by thinhlx: https://hackerone.com/reports/3923212 [...]
Learn Fault Injection at DEF CON 2026 on 07/08/2026
RATS Q5 - How Do I Go From Labs To Real Targets on 07/08/2026
ICE Is Buying Access to Credit Card Records on 07/08/2026
Through data brokers, ICE is buying the information you provided to open a credit card. [...]
[Wii U/3DS/Switch] Improper bounds check in StationURL in all NEX clients leading to remote crash/RCE on 07/08/2026
Nintendo disclosed a bug submitted by jonbarrow: https://hackerone.com/reports/2551512 [...]
Why My 30$ OSCP prep course beats the real deal on 06/08/2026
Canadian Man Pleads Guilty in Snowflake Extortions by BrianKrebs on 06/08/2026
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud provider Snowflake. Connor Riley Moucka, of Kitchener, Ontario, also admitted to stealing call and text history records of more than 100 million AT&T customers. A survei [...]
Beyond CVSS: rethinking scoring systems amidst AI Safety and Security by Eleanor Barlow on 06/08/2026
CVSS open framework, rapid recap Stands for Common Vulnerability Scoring System. Owned by a US-based non-profit organization, the Forum of Incident Response and Security Teams (FIRST). The purpose is to help response teams quickly and easily calculate the severity of cybersecurity vulnerabilities based on metrics. Latest version: (4.0) designed to assess multiple environments and dimensio [...]
Unauthenticated RCE in Taskcluster web-server via GraphQL filter argument (sift $where) on 05/08/2026
Mozilla disclosed a bug submitted by griffinf: https://hackerone.com/reports/3782701 - Bounty: $12000 [...]
I’m headed to DEFCON! on 05/08/2026
curl Missing Sec-WebSocket-Accept Verification Enables MITM WebSocket Session Hijacking on 05/08/2026
curl disclosed a bug submitted by kiyin: https://hackerone.com/reports/3917775 [...]
A few notes on AWS Nitro Enclaves: KMS integration on 05/08/2026
Nitro Enclaves and Key Management Service (KMS) feel like a natural fit: since the KMS can verify attestation documents generated by the enclaves, developers can offload key management tasks from their applications to the AWS-managed service. But integrating an external service with your trusted enclaves comes with new threats, even if that service comes from the same provider. In this blog post—t [...]
`check_reserve_proof` counts duplicate entries: one output can inflate `total` on 05/08/2026
Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3699522 [...]
`check_reserve_proof` sums RingCT ECDH amounts without checking the output commitment on 05/08/2026
Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3698862 [...]
wallet-rpc crash via malformed /gettransactions response (empty txs vector::front() in check_tx_key / check_tx_proof) on 05/08/2026
Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3693636 [...]
SpendProofV1 txid-substitution: get_spend_proof/check_spend_proof do not verify returned transaction hash on 05/08/2026
Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3700036 [...]
wallet-rpc describe_transfer uses real_output_in_tx_index instead of real_output: cold-wallet pre-sign review shows wrong ring member on 05/08/2026
Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3723315 [...]
`set_daemon` wallet-rpc silently ignores `ssl_allowed_fingerprints` pinning bypassed, walletdaemon MITM on 05/08/2026
Monero disclosed a bug submitted by benisprlh: https://hackerone.com/reports/3686259 [...]
`relay_tx` wallet-rpc skips `--restricted-rpc` guard and lets any caller corrupt wallet state via attacker-controlled `pending_tx` on 05/08/2026
Monero disclosed a bug submitted by benisprlh: https://hackerone.com/reports/3687543 [...]
Heap use-after-free (write) in mev_forget_socket() via reentrant curl_easy_pause() incomplete fix for CVE-2026-9080 on 04/08/2026
curl disclosed a bug submitted by juthawong: https://hackerone.com/reports/3911968 [...]
Case study: How Burp AT helped expose whistleblower reports via a critical vulnerability that was overlooked for years on 04/08/2026
"It feels like I get 10X the productivity on an engagement. The difference is night and day." Profile Ray H. is a Security Analyst at a managed security service provider with over 2500 employees world [...]
Intigriti named new provider for Adobe's Bug Bounty Program by Eleanor Barlow on 04/08/2026
Adobe empowers everyone to create through industry-leading platforms and tools that unleash creativity, productivity, and personalized customer experiences. Starting September 1, 2026, Intigriti will be the new home of the Adobe Bug Bounty Program. Why Intigriti and Adobe? As AI reshapes how organizations build and ship products, security testing needs to keep pace. Intigriti's global community of [...]
Worm compromises hundreds of popular npm packages on 04/08/2026
On August 4, 2026, several popular npm packages, including 'keyv', were compromised to deliver malware. [...]
GitHub Retired UsernameTakeover From [aws/] on 03/08/2026
AWS VDP disclosed a bug submitted by sh3d0w: https://hackerone.com/reports/3478646 [...]
Cyber Deception Everywhere on 03/08/2026
Unauthenticated Path Traversal (LFI) via /custom-sounds/ when CustomSounds uses FileSystem storage on 03/08/2026
Rocket.Chat disclosed a bug submitted by howtoplay: https://hackerone.com/reports/3514640 [...]
Free AI Hacking Course: Indirect Prompt Injection (+FREE LABS) on 03/08/2026
SMTP CRLF injection in custom SMTP recipient operand allows additional SMTP commands after authentication on 03/08/2026
curl disclosed a bug submitted by dark_river: https://hackerone.com/reports/3911605 [...]
Are you ready for this year's @BugBountyVillage at @DEFCONConference on 03/08/2026
Before the first prompt: Code execution paths in trusted coding-agent projects on 03/08/2026
Learn how trusted coding-agent projects can execute repository-controlled code before the first prompt through Codex MCP configuration and Claude Code environment settings. [...]
Unauthenticated team "income/payments" export ignores donor privacy settings (hide_giving, hide_from_lists) and uses frozen visibility, exposing donat on 01/08/2026
Liberapay disclosed a bug submitted by its9me: https://hackerone.com/reports/3878586 - Bounty: $100 [...]
JHT Course Launch! Home Labs with Proxmox on 01/08/2026
HTTP Request Smuggling via Connection: close<TAB> in Node.js llhttp parser on 31/07/2026
Node.js disclosed a bug submitted by nadav0077: https://hackerone.com/reports/3723248 [...]
Stored XSS in nameserver field on account settings page on 31/07/2026
Tucows (VDP) disclosed a bug submitted by axolot23: https://hackerone.com/reports/3644182 [...]
Do you guys agree? #hacking #bugbounty on 31/07/2026
AI in bug bounty - let's talk about how to effectively use AI in bug bounty on 31/07/2026
GTA Malware Trap on 31/07/2026
Intigriti Bug Bytes #238 - July 2026 🚀 by Ayoub on 31/07/2026
Hello hackers, Welcome to the latest edition of Bug Bytes! In this month's issue, we'll be featuring: Intigriti turns 10! RCE in GitHub.com and GitHub Enterprise Server Burp Suite going agentic with Burp AT Hacking Gemini Enterprise for $15,000 3,708 live credentials found by scanning GitHub Archive And so much more! Let's dive in! Intigriti turns 10! 🚀 Ten years ago, the idea that inviting [...]
Stored XSS via SVG Upload check_content() Blocklist Bypass & 256-Byte Scan Limit (Self-Propagating Worm) on 30/07/2026
phpBB disclosed a bug submitted by a7mmr: https://hackerone.com/reports/3606773 [...]
Read This Before You Buy That TV Streaming Stick by BrianKrebs on 30/07/2026
Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user’s Internet connection out to strangers. But a groundbreaking new analysis finds these devices also routinely spoof themselves as mobile phones clicking ads on AI-generated websites as part of a [...]
Permission Model bypass: process.report writes (and overwrites) files outside --allow-fs-write paths on 30/07/2026
Node.js disclosed a bug submitted by sinan-polat: https://hackerone.com/reports/3815767 [...]
From capable AI models to trusted security testing on 30/07/2026
This week, we launched Burp AT in public beta for Burp Suite Professional users. Next week at Black Hat, PortSwigger Research will reveal more of the work that helped shape our direction. Burp AT is o [...]
Meet TCM Security at DEF CON 34! on 30/07/2026
Active Storage Vips Transformer Missing validate_transformation CVE-2025-24293 Incomplete Fix on 30/07/2026
Ruby on Rails disclosed a bug submitted by friedchicken112211: https://hackerone.com/reports/3553340 [...]
Building secure Uniswap v4 hooks on 30/07/2026
Uniswap v4 hooks let developers add custom behavior to pools, including dynamic fees, custom accounting, and external integrations. This flexibility moves some security responsibilities into application and hook code. The Cork and Bunni exploits are two app-level incidents that show what can go wrong in that code. Together, they account for more than $20M in losses. Neither incident stemmed from a [...]
Real Folks of Cyber | Andrew Crotty | DITL on 30/07/2026
HTTPS Agent TLS session reuse skips hostname verification across identity policies (incomplete fix of CVE-2026-48934) on 30/07/2026
Node.js disclosed a bug submitted by vnyuh: https://hackerone.com/reports/3812439 [...]
How to appeal a bug bounty submission by Ayoub on 30/07/2026
Bug bounty is a collaborative process that involves multiple parties, including the security researcher, triage team, and the affected organization managing the bug bounty program. While the vast majority of submissions are handled correctly, there are exceptional instances in which reports are mishandled, closed incorrectly, downgraded in severity, or left unresolved for extended periods. When th [...]
GitHub scoped user to server tokens can escape their installation on 29/07/2026
GitHub disclosed a bug submitted by ahacker1: https://hackerone.com/reports/3638909 [...]
Permission Model: --allow-fs-read/--allow-fs-write radix-tree prefix-boundary over-grant on 29/07/2026
Node.js disclosed a bug submitted by sy2n0: https://hackerone.com/reports/3761342 [...]
Minecraft Security Mods on 29/07/2026
`exportReportPdf` mutation shows internal Activity on 29/07/2026
HackerOne disclosed a bug submitted by 0v3rw4tch: https://hackerone.com/reports/3577216 [...]
HTTPS Agent PFX object-array key collision allows mTLS client identity reuse across different per-request certificates on 29/07/2026
Node.js disclosed a bug submitted by yottt: https://hackerone.com/reports/3816840 [...]
Permission Model Bypass: `trace_events.createTracing().enable()` Writes Trace Logs Outside `--allow-fs-write` on 29/07/2026
Node.js disclosed a bug submitted by 0xoroot: https://hackerone.com/reports/3838601 [...]
Payload Podcast 010 - Olaf Hartong on 29/07/2026
Unauthenticated SSRF in Voxtelesys integration ('checkUrlForSsrf' Bypass via DNS rebinding) on 29/07/2026
Rocket.Chat disclosed a bug submitted by button142857: https://hackerone.com/reports/3473145 [...]
RATS Q4 - What hardware and OS do I need to start hacking on 28/07/2026
Sandbox User Can Inject Rogue CA Certificate into OS Trust Store via Sudo-Allowed deploy-certificates.sh on 28/07/2026
AWS VDP disclosed a bug submitted by mistercloudsec: https://hackerone.com/reports/3633146 [...]
How we use /goal to find bugs in Patch the Planet on 28/07/2026
Codex’s /goal feature amplifies bug hunting, but getting good results requires the right prompt, the right scope, and the right number of outcomes per run. For Patch the Planet, our joint initiative with OpenAI to find and fix bugs in open-source software, we pointed Codex at some of the most widely used, heavily audited codebases in the world, like Rust, curl, and zlib. One tool came up again and [...]
RAG and ruin: why your existing controls may miss AI poisoning attacks by Eleanor Barlow on 28/07/2026
Key takeaways RAG systems expand the application’s trust boundary by adding external, mutable content to the model context. If a threat actor can influence what gets indexed and retrieved, they can influence what the model says or does. In simple QA systems, that may mean misinformation or unsafe recommendations. In agentic systems with tools and permissions, it can become data leakage, un [...]