InfoSec Planet
A collection of diverse security content from a curated list of sources. This website also serves as a demo for "worker-planet", the software that powers it.
Hacking AI for $100,000 Was Harder Than I Expected on 23/09/2026
Vulnerability Prioritization: From Noise to True Risk on 23/09/2026
Research on Models Engaging in Genie-Like Behavior on 23/09/2026
New paper: “Self-Jailbreaking: Language Models Can Reason Themselves Out of Safety Alignment After Benign Reasoning Training.” Abstract: We discover a novel and surprising phenomenon of unintentional misalignment in reasoning language models (RLMs), which we call self-jailbreaking. Specifically, after benign reasoning training on math or code domains, RLMs will use multiple strategies [...]
oh my god on 23/09/2026
Is AppSec a Realistic First Cybersecurity Job? on 22/09/2026
TeamPCP OSINT Investigation on 22/09/2026
Exposure Management Means Breaking Security Silos on 22/09/2026
GPT-6 Astra Breaks an Old Enigma Message on 22/09/2026
This is pretty amazing: However, the most astonishing thing about this break is that the GPT6 Astra did it entirely on its own. Carter Leffer only directed GPT6 Astra to see if it could break any of the unbroken Enigma messages published on the Crypto Cellar Research web page. After analysing the unbroken messages on the website, it decided that the most promising message was Nr. 172, MVUEH and [...]
Wiz and HackerOne: Turning Exposure Management Into Faster Remediation with Eyal Golombek on 22/09/2026
The Skill Gap AI Can't Close in Cybersecurity on 22/09/2026
Superbacked 2 is open source on 21/09/2026
Reverse-Engineering Flock Cameras on 21/09/2026
Hackers captured a Flock camera and got a look (alternate link) at the software: While much of the automatic license plate reader’s (ALPR) most sensitive storage remained encrypted and inaccessible, the joint analysis of the recovered data shows that software running on the device explicitly detects people as well as vehicles, license plates, and bicycles. The camera can produce dozens of im [...]
Anthropic Caught Hackers Doing This So I Rebuilt It in a Few Hours on 21/09/2026
SAML: A fractal of bad design on 21/09/2026
Born out of academia and raised in corporate IT departments, the Security Assertion Markup Language (SAML) authentication protocol continues to be a staple in these organizations. However, it’s time for it to retire. With the rise of software-as-a-service (SaaS) companies in the late aughts, IT departments needed a way for users to authenticate to many new web services. SAML and the burgeoni [...]
From sceptic to supercharged. How AI changed my day as a QA Engineer by Martin Klimovski on 21/09/2026
When the push came to start weaving AI into our everyday work, I had doubts at the start. But I have since come around, and here's why. What I actually do (and why that matters) I'm on the engineering team at Intigriti, but my role is Quality Assurance (QA), so I'm the one writing the tests, running the tests, and then collaborating with the developers when something doesn't work the way it shoul [...]
Where Human Expertise Still Beats AI in Hacking on 20/09/2026
The Scale Advantage: AI vs. Human Security Research on 19/09/2026
Tracking TeamPCP on 19/09/2026
Free Web Hacking Challenge! on 19/09/2026
Payload Podcast 011 - Reunion on 19/09/2026
Why Humans Still Matter in the Age of AI Hacking on 18/09/2026
Friday Squid Blogging: On Squid Egg Sacs on 18/09/2026
Short essay about squid egg sacs. As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered. Blog moderation policy. [...]
Hunt.io Attack Capture on 18/09/2026
Soft Skills for the Job Market: Personal Websites on 18/09/2026
I Built a Portal to the Internet in Minecraft on 18/09/2026
Are AIs Still Struggling with CAPTCHAs? on 18/09/2026
Anthropic’s recent security-incident document contains a bit about how CAPTCHAs are still frustrating Claude. In the transcript, the Claude model that is so powerful that Anthropic is gatekeeping access to it appeared to slam its virtual head against the wall solving a simple image identification test. In a test where the agent was asked to identify a shape that didn’t match the others [...]
Auditing in the age of (good enough) AI on 18/09/2026
Security firms have published numerous blog posts describing how they pointed their agent harness at a codebase and found dozens of bugs (we’re one of them). However, these posts tend to focus on agentic code review, which is just one aspect of how we use AI in our security reviews. We want to give a different perspective: before code review even starts, agents now allow us to build custom tooling [...]
Discourse Vulnerability: Urgent Warning for Self-Hosters! #shorts on 18/09/2026
How OpenAI got hacked with an image on 18/09/2026
Attacker infrastructure, but vibe-coded: tracking the evolution of credential harvesting platforms on 18/09/2026
In this post, we examine two vibe-coded credential harvesting platforms, Loot and UltraVault, and the Amazon Bedrock abuse used to validate stolen secrets. [...]
Can AI Actually Find New Security Vulnerabilities? on 17/09/2026
AI Security Research Is Moving Faster Than Defenders Can Keep Up with James Kettle on 17/09/2026
Hunt.io Meets Minecraft on 17/09/2026
My Browser Cache Got Infected on 17/09/2026
How Candidates Could Use AI for Good on 17/09/2026
This essay was written with Nathan E. Sanders, and originally appeared in The Guardian. There are plenty of signs that AI will make all of our experiences of the US midterm elections worse. Voters have anxiety about AI’s impacts on the country. Politicos are using AI deepfakes to spread lies. The White House is posting slopaganda. Meanwhile, candidates are missing a real opportunity to use A [...]
Data Broker Radaris Loses Domains in Privacy Fight by BrianKrebs on 16/09/2026
The consumer data broker Radaris.com has long had a reputation for ignoring requests to remove personal information from its vast empire of people-search services online. That reputation caught up with the company recently in a lawsuit alleging Radaris violated a New Jersey privacy law that provides for hefty fines against data brokers that publish personal information on state law enforcement off [...]
Fake CAPTCHA Scams on 16/09/2026
New variant of an old scam: Use the framing of a CAPTCHA to get an unsuspecting user to download and run a malicious program. [...]
The XSS Rat - OWASP Software Assurance Maturity Model - Just one of the services we offer! on 16/09/2026
Mapping out your unknown: A threat hunter’s guide to GitHub on 16/09/2026
In this post, we walk through different threats to GitHub and how to detect them. [...]
Minecraft Security Research on 15/09/2026
ZProxy - the minimal proxy browser plugin you didn't know you needed on 15/09/2026
Start Hardware Hacking for Just $20! on 15/09/2026
you can't be serious on 15/09/2026
25 Years of Mass Surveillance Is Enough on 15/09/2026
This essay was written with Cindy Cohn, and originally appeared in Lawfare. One of the many legacies of the terrorist attacks of Sept. 11 is the government-wide shift from targeted surveillance—such as individual wiretaps or pen register/trap and trace orders—to mass surveillance techniques—such as tapping into the internet backbone or mass collection of telephone or internet met [...]
1Password's AI patching benchmark is misleading on 15/09/2026
1Password’s FLAWED report, published on August 6, 2026, gives defenders a misleading picture of AI patching. Its headline says models produced clean fixes only 26% of the time. That figure includes experiments that deliberately instructed agents to apply the wrong fix, along with experiments in which agents could not compile or test their patches. The report risks making defenders less effective b [...]
On the NSA’s Supercomputer from the 1960s on 15/09/2026
Really interesting story about Harvest, a specialized code breaking computer built in the 1960s by IBM for the NSA. [...]
[Nederlands/Dutch] - Het OSCP learning path op RatCTF.com on 14/09/2026
Upcoming Speaking Engagements on 14/09/2026
This is a current list of where and when I am scheduled to speak: I’m speaking online (via Zoom) at a League of Women Voters event on Tuesday, September 22, 2026 at 5 PM ET. I’m speaking at CanSecWest 2026 in Vancouver, Canada. The conference runs September 30–October 1, 2026; the time of my talk is TBD. I’m giving a talk on “Free Speech and the Preservation of Democracy” at Bentley University in [...]
AI Agent Security Readiness: The Federal Standard You Should Get Ahead Of by Tim Erlin on 14/09/2026
Here's the uncomfortable part first: in August 2026, researchers found AI agents connected to Hugging Face running loose inside enterprise networks. No owner, no audit trail, nobody who could tell you they existed until something broke. If that sentence made your stomach drop a little, good, because it should. It's the same blind spot most security teams are sitting on right now. They just haven' [...]
Our Booth at DEF CON! #shorts on 14/09/2026
How PayPal Is Rethinking Security in the Age of AI on 14/09/2026
Builders&Breakers | Building Hackbots: Models, Harnesses and Human Expertise with Hamid Kashfi on 14/09/2026
Met Cosmodium Cybersecurity at DEF CON! #shorts on 13/09/2026
Meeting Laurie Wired at Black Hat #shorts on 12/09/2026
Minecraft Meets Security Research on 12/09/2026
TryHackMe? Nah… HTB? Not even maybe - RatCTF.com - come hack this rat for free right now on 11/09/2026
Google Bug Hunter Event at Caesars Palace! 🕵️♂️ #shorts on 11/09/2026
I am BACK rat pack! on 10/09/2026
Let AI Build Tripwires on 10/09/2026
Exhausted But Thrilled: Teaching Fault Injection at DEF CON! #shorts on 10/09/2026
I Turned the Open Internet Into a Minecraft World on 10/09/2026
Noob Village CTF Walkthrough | DEF CON | Cybersecurity AMA on 10/09/2026
What AI Means For Bug Bounty Report Quality on 09/09/2026
How MercadoLibre Secures A Constantly Moving Platform on 09/09/2026
How AI Changed The Cyber Threat Landscape on 09/09/2026
Black Hat Shows Why Security Teams Need Each Other on 09/09/2026
Why Internal Security Teams Still Need External Researchers on 09/09/2026
Black Hat VIP Party! #shorts on 09/09/2026
A “proof” of Fermat’s Last Theorem that fits the margin on 09/09/2026
Fermat famously claimed to have a “truly marvelous proof” of his Last Theorem, but he never wrote it down, insisting the margin of his page was too narrow to contain it. A few centuries later, Anthropic announced a complete formalization of Fermat’s Last Theorem using 13 million lines of Lean code (clearly not what Fermat intended). Luckily, we found a wonderfully cursed Lean bug, shown belo [...]
Microsoft Plugs Nearly 1,000 Security Holes by BrianKrebs on 08/09/2026
Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest single patch batch ever. Microsoft says artificial intelligence is helping to speed the discovery of vulnerabilities, but security experts warn that many organizations already are struggling to prioritize the more human-intensive endeavor of testing and d [...]
We back. on 08/09/2026
Is the OWASP Top 10 Still Relevant? on 08/09/2026
Defcon Day 1! #shorts on 08/09/2026
22: FTP wildcard matching decodes server-provided filenames, enabling directory traversal on 08/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3973143 [...]
Stack Buffer Overflow in mariadb-dump quote_name() Allows Malicious Server to Execute Arbitrary Code on Client on 08/09/2026
MariaDB disclosed a bug submitted by byteoverride: https://hackerone.com/reports/3788482 [...]
Out-of-bounds read in MariaDB .frm parsing enables RCE via vtable hijacking on 08/09/2026
MariaDB disclosed a bug submitted by pinebudweiser: https://hackerone.com/reports/3897914 [...]
49: Cookie-jar save transfers group access to a different GID on 08/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3973194 [...]
29: CURLOPT_ISSUERCERT accepts a different-key certificate when issuer metadata collides on 08/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3971518 [...]
08: CVE-2026-7009 fix incomplete for AWS-LC: `--cert-status` bypass on SecTrust path on 08/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3973111 [...]
Apple SecTrust fallback ignores CURLOPT_CRLFILE, letting a revoked cert pass on 08/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3993850 [...]
HTTP Digest nonce reused across an httpshttp scheme change on the same handle on 08/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3993973 [...]
How AI has changed the way I think, build, and work. A day in the life of an Intigriti Engineer by Koen Van Hauwe on 08/09/2026
When I wake up in the morning, as a Senior Software Engineer at Intigriti, the first thing I do is make coffee. The second thing I do is pick up exactly where I left off the day before, usually mid-conversation with an AI. That probably sounds a bit strange. And, depending on who you're asking, maybe a little unsettling too. But that's genuinely what my working day looks like now, and I think it' [...]
54: Rejected HTTP/2 push destroys MIME callback state still used by parent (use-after-free) on 07/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3973213 [...]
57: Heap out-of-bounds read in `curl_easy_escape_ccsid()` / `curl_easy_unescape_ccsid()` on 07/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3973219 [...]
43: HTTP proxy CONNECT header chooses the `-OJ` filename after a redirect on 07/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3972293 [...]
36: HTTP upload resume offset consumed twice after early 307/308 redirect on 07/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3971706 [...]
11: `CURLOPT_FORBID_REUSE` silently lost on multiplexed HTTP/2 connection when the forbidding transfer finishes first on 07/09/2026
curl disclosed a bug submitted by giant_anteater: https://hackerone.com/reports/3973121 [...]
MariaDB GRANT PROXY permits unauthorized authentication changes and administrator account takeover on 07/09/2026
MariaDB disclosed a bug submitted by kevin_mizu: https://hackerone.com/reports/3876430 [...]
MariaDB: heap buffer overflow in ha_tina::chain_append() lets a low-privileged user crash the server via CSV row deletion on 07/09/2026
MariaDB disclosed a bug submitted by v3rtical: https://hackerone.com/reports/3909248 [...]
KILL authorization trusts the presented login name instead of the authenticated anonymous account on 07/09/2026
MariaDB disclosed a bug submitted by dogeshark: https://hackerone.com/reports/3897588 [...]
ACL cache collision lets a role inherit privileges from a same-named socket user on 07/09/2026
MariaDB disclosed a bug submitted by dogeshark: https://hackerone.com/reports/3889667 [...]
Glitching Old Trezor Wallets! #shorts on 07/09/2026
I Gave Claude 12 Years of my Bug Bounty Reports - Here's What I Learned on 07/09/2026
Teaching Fault Injection at DEF CON! #shorts on 06/09/2026
Black Hat & DEF CON Vlog #shorts on 05/09/2026
Unauthenticated testing endpoint of notify_push expose internal IP on 05/09/2026
Nextcloud disclosed a bug submitted by chinnuy935336: https://hackerone.com/reports/3513471 - Bounty: $150 [...]
Email Enumeration via Password-Protected Share Identity Verification on 05/09/2026
Nextcloud disclosed a bug submitted by cybershinu90: https://hackerone.com/reports/3507273 - Bounty: $100 [...]
Improper Input Validation and Integer Overflow in timeamount parameter of files_retention app on 05/09/2026
Nextcloud disclosed a bug submitted by nishantbaswal1996: https://hackerone.com/reports/3521639 [...]
Missing Duplicate Check allowing Multiple Retention Rules per System Tag on 05/09/2026
Nextcloud disclosed a bug submitted by charankumar39: https://hackerone.com/reports/3521646 [...]