InfoSec Planet

A collection of diverse security content from a curated list of sources. This website also serves as a demo for "worker-planet", the software that powers it.

Spyware for Babies

on 26/08/2026

The New York Times has a long article (alt link) on surveillance systems aimed at babies. They are increasingly using AI. Nanit and its rivals want to own 24/7 health tracking for the sub-four-foot set. And their already astonishing levels of baby data collection are just the beginning. Nanit recently raised $50 million from investors to expand its use of A.I. and use its camera to track speech an [...]

See full content

VMs won't contain cyber-capable agents

on 26/08/2026

As part of Patch the Planet, we received preview access to GPT 5.6-Cyber with a simple task: evaluate its cyber capabilities. Recent events inspired me to give it a challenge to work through: escape the VM I’d normally use for sandboxing. The target was a QEMU/KVM VM on my Linux dev machine (Debian Linux 12, AMD Zen3). It escaped the VM three different times. First, it used recently disclosed bugs [...]

See full content

curl_share TOCTOU > RCE via Curl_llist _dtor Function Pointer Hijack

on 26/08/2026

curl disclosed a bug submitted by k4rasu_s4ma: https://hackerone.com/reports/3955945 [...]

See full content

Hidden/restricted tags can be mutated through synonym ID paths without per-tag authorization

on 26/08/2026

Discourse disclosed a bug submitted by ahpuh: https://hackerone.com/reports/3689633 [...]

See full content

Add labels to arbitrary issues/prs via Memex Bulk Update to compromise github actions label gating

on 25/08/2026

GitHub disclosed a bug submitted by ahacker1: https://hackerone.com/reports/3527788 [...]

See full content

TLS session cache case-folds CA paths and bypasses the active trust profile

on 25/08/2026

curl disclosed a bug submitted by 1rhino2: https://hackerone.com/reports/3966955 [...]

See full content

libcurl Digest/NTLM authentication ignores an explicit Authorization header

on 25/08/2026

curl disclosed a bug submitted by subadevan: https://hackerone.com/reports/3963330 [...]

See full content

State divergence enables unauthorized access

on 25/08/2026

We found and reported a bug in Provenance Blockchain, a public proof-of-stake chain built on Cosmos SDK, that lets any user grant themselves admin control over marker accounts without holding a single token. Provenance covers a range of financial services, including on-chain tokenized loans, private equity tokens, bridged assets, and asset registries. Our bug affected 82 markers representing live [...]

See full content

Black Hat State of Security Vendors

on 25/08/2026

Andy Ellis has a roundup of the security vendors at Black Hat this year. Key Takeaways: We have entered into an AI world. While nearly half of booths didn’t directly mention AI or agents in their taglines, the effects of AI are everywhere. Multiple spaces (Identity, SaaS, AppSec, Data) have almost every vendor leading with AI; existing unsolved problem areas just got worse. At the same tim [...]

See full content

@jitsi/docker-jitsi-meet: `/colibri-relay-ws/` unsafe nginx regex (OCTO relay configuration)

on 25/08/2026

8x8 disclosed a bug submitted by a3z4km3: https://hackerone.com/reports/3889473 [...]

See full content

RTSP CRLF injection in libcurl allows CURLOPT_RTSP_* values to inject commands into independent sessions

on 24/08/2026

curl disclosed a bug submitted by subadevan: https://hackerone.com/reports/3963494 [...]

See full content

wolfSSL backend disables hostname verification when CURLOPT_SSL_VERIFYPEER is 0

on 24/08/2026

curl disclosed a bug submitted by subadevan: https://hackerone.com/reports/3963725 [...]

See full content

URI scheme validation bypass in ActionText `to_markdown` via user-supplied `<action-text-markdown>` marker tag

on 24/08/2026

Ruby on Rails disclosed a bug submitted by offsetmd: https://hackerone.com/reports/3727743 [...]

See full content

Criminal Deception in Silicon Valley

on 24/08/2026

Interesting paper: Abstract: With entrepreneurial fraud cases on the rise, we investigate how entrepreneurs carry out criminal deception, employing deceptive means to defraud audiences. Analyzing court data from Silicon Valley ventures and their founders prosecuted for fraud between 2000 and 2023, our findings reveal that entrepreneurs carry out criminal deception through a process of façading: En [...]

See full content

Path Traversal in Nextcloud Talk Android Exposes User Credentials and Private Data via FileProvider

on 24/08/2026

Nextcloud disclosed a bug submitted by mirachael: https://hackerone.com/reports/3696266 [...]

See full content

When fear no longer holds you back. Interview with Ryan Bonner (Roll4CombatUS)

by Eleanor Barlow on 24/08/2026

Ryan Bonner, also known as Roll4CombatUS, is a respected Bug Bounty hunter, consultant, speaker, and Intigriti Hacker Ambassador based in the United States. In today’s interview, we discuss his journey into bug hunting, his recommended tools and techniques, and share advice for hunters just getting started.  Ryan, how did you get started?  To put it frankly, I got fired from my first pentesting jo [...]

See full content

When fear no longer holds you back. Interview with Ryan Bonner (Roll4CombatUS)

by Eleanor Barlow on 24/08/2026

Ryan Bonner, also known as Roll4CombatUS, is a respected Bug Bounty hunter, consultant, speaker, and Intigriti Hacker Ambassador based in the United States. In today’s interview, we discuss his journey into bug hunting, his recommended tools and techniques, and share advice for hunters just getting started.  Ryan, how did you get started?  To put it frankly, I got fired from my first pentesting jo [...]

See full content

Friday Squid Blogging: Neon Flying Squid

on 21/08/2026

The neon flying squid can fly in formation. The shoal of about 100 squid rose unexpectedly from a patch of the Pacific Ocean around 370 miles from Tokyo and glided near the boat for about 30 metres. The astonished researchers were the first to capture photographs of such a thing, which looked like the early stages of an alien invasion. They were probably neon flying squid (Ommastrephes bartramii), [...]

See full content

AI Is Learning to Write Genetic Code

on 21/08/2026

This sort of research is both exciting and terrifying: The two models in question were told to generate complete genomes for a viable bacteriophage—a type of virus able to infect and replicate itself inside bacteria, destroying them from the inside. Using an existing bacteriophage as an example—ΦX174 (pronounced “fie-ex-1-7-4”), known for its ability to infect and destroy E [...]

See full content

More Incidents of AIs Going Rogue in Cybersecurity Challenges

on 21/08/2026

The AI Security Institute has a new report of AI systems engaging in “unsanctioned behavior”—what I have been calling “genie behavior—while being tested on their cybersecurity capabilities. The incident stemmed from a single evaluation where agents were given a task of solving a cyber security challenge. We ran this challenge 122 times across several models. Our inves [...]

See full content

Domainless COOKIEFILE cookie leaks to unrelated IP-literal hosts

on 21/08/2026

curl disclosed a bug submitted by accl: https://hackerone.com/reports/3952619 [...]

See full content

Monero GUI OpenAlias DNSSEC-invalid resolution still writes spoofable address into recipient field

on 20/08/2026

Monero disclosed a bug submitted by lilpeko: https://hackerone.com/reports/3819475 [...]

See full content

View-only offline transaction creation bypasses the long-payment-ID privacy block

on 20/08/2026

Monero disclosed a bug submitted by qttps: https://hackerone.com/reports/3686283 [...]

See full content

HTML Injection in Transaction Confirmation Dialog via Address Book Description Enables UI Spoofing Before Fund Transfer

on 20/08/2026

Monero disclosed a bug submitted by fg0x0: https://hackerone.com/reports/3679471 [...]

See full content

Windows installer grants low-privileged users write access to executable P2Pool directory, enabling local code execution

on 20/08/2026

Monero disclosed a bug submitted by qttps: https://hackerone.com/reports/3619409 [...]

See full content

monero:// deeplink parsing accepts tx_amount=(all) and can trigger send-all transaction mode

on 20/08/2026

Monero disclosed a bug submitted by qttps: https://hackerone.com/reports/3648638 [...]

See full content

Loss of multisig funds through single malicious participant's deliberate deception

on 20/08/2026

Monero disclosed a bug submitted by k-privacy-enjoyer: https://hackerone.com/reports/3515557 [...]

See full content

DDP methods getThreadsList / getThreadMessages leaks private thread content to any authenticated low privilege user (unpatched sibling of #1446767)

on 20/08/2026

Rocket.Chat disclosed a bug submitted by iamaangx028: https://hackerone.com/reports/3852135 [...]

See full content

Stored HTML Injection (CWE-79) via Livechat Visitor Name

on 20/08/2026

Rocket.Chat disclosed a bug submitted by hillng: https://hackerone.com/reports/3872858 [...]

See full content

Detailed Timeline of OpenAI’s Cyberattack on Hugging Face

on 20/08/2026

OpenAI presented details of its AI’s model’s cyberattack on Hugging Face at Black Hat last week. Simon Willison details the timeline. It’s really interesting to read through—and really impressive cyberoffense work. [...]

See full content

Police Are Hiding Their Use of Flock Surveillance Cameras

on 20/08/2026

A usage policy for Flock license plate reader cameras tells police not to talk about the cameras: When cops use Flock to arrest someone in Wapello County, Iowa, they don’t want them to know. A usage policy for the automated license plate reader cameras in the county tells police, in no uncertain terms, to keep them a secret: “DO NOT MENTION ALPR USAGE TO THE OCCUPANTS OF THE VEHICLE,&# [...]

See full content

Web fuzzing for hackers

by Ayoub and Orwa Atyat on 20/08/2026

Fuzzing has been around for as long as web applications have. In fact, the term itself was coined back in 1988, when Barton Miller, a professor at the University of Wisconsin, was working over a dial-up connection during a thunderstorm and noticed that the resulting line noise was consistently crashing the UNIX utilities he was running. Web fuzzing is no different. Despite the rise of automated sc [...]

See full content

N4D Mesh Controller: New infrastructure, a UPX-packed agent labeled "go-titan," and how to hunt for it

on 20/08/2026

Datadog Security Research executed a newer N4D Mesh Controller sample in isolated microVMs, uncovering rotated infrastructure, a UPX-packed go-titan agent, MCP tool abuse in action, and direct runtime evidence of multi-service scanning and persistence. [...]

See full content

ICE Collecting DNA Samples

on 19/08/2026

ICE collected nearly a million DNA samples last year. [...]

See full content

Putting models to the secure coding test: Plan vs default mode

on 19/08/2026

We tested Sonnet 5, Composer 2.5, and GPT 5.5 in plan mode and default mode to see whether plan mode produces measurably more secure code. [...]

See full content

LLMs and Contextual Integrity

on 18/08/2026

I have been thinking a lot about AI and integrity. Part of that is contextual integrity. I recently found two papers on the topic. “CIMemories: A Compositional Benchmark for Contextual Integrity of Persistent Memory in LLMs“: Abstract: Large Language Models (LLMs) increasingly use persistent memory from past interactions to enhance personalization and task performance. However, this me [...]

See full content

Wallet RPC Restricted-Mode Policy Bypass

on 17/08/2026

Monero disclosed a bug submitted by usagirabbit: https://hackerone.com/reports/3620006 [...]

See full content

Restricted RPC Policy Bypass on ZMQ JSON-RPC Allows Unauthenticated Remote Admin Actions

on 17/08/2026

Monero disclosed a bug submitted by usagirabbit: https://hackerone.com/reports/3601469 [...]

See full content

TaskProcessing callback authorization bypass allows ex-members to post as Assistant Talk Bot

on 14/08/2026

Nextcloud disclosed a bug submitted by kuninogu: https://hackerone.com/reports/3799010 [...]

See full content

Windows SSPI connection-pool probe can reuse a connection under the wrong user

on 14/08/2026

curl disclosed a bug submitted by mr4bugs: https://hackerone.com/reports/3938185 [...]

See full content

libcurl cache updates follow symlinks and truncate their targets

on 14/08/2026

curl disclosed a bug submitted by mr4bugs: https://hackerone.com/reports/3938220 [...]

See full content

Who’s Tracking You? Use This New Service to Find Out

by BrianKrebs on 14/08/2026

It can be daunting to determine who’s responsible for showing ads on the websites we visit, or who’s harvesting data from the mobile apps we use every day. That information is already semi-public, but it is not easily parsed and traditionally much of it has remained walled away in the hands of large advertising platforms. Not anymore: A powerful and free new service called DecryptAds s [...]

See full content

Cookie jar load skips public suffix check on PSL builds

on 14/08/2026

curl disclosed a bug submitted by 1rhino2: https://hackerone.com/reports/3920276 [...]

See full content

Debug Deep Link Abuse Allows Repeated Forced Logout and Application Disruption

on 13/08/2026

Yelp disclosed a bug submitted by 0xkarim_dix: https://hackerone.com/reports/3829030 [...]

See full content

JaaS: Unauthenticated, cross-tenant outbound SIP calling via JaaS SIP gateway (toll fraud + caller-ID spoofing)

on 12/08/2026

8x8 disclosed a bug submitted by offseq: https://hackerone.com/reports/3837634 - Bounty: $500 [...]

See full content

Can AI invent new attack techniques? New research from James Kettle and PortSwigger Research

on 12/08/2026

We already know AI can find vulnerabilities. James Kettle, PortSwigger's Director of Research, wanted to answer a harder question: can an autonomous system invent genuinely new attack techniques? To f [...]

See full content

Myndr CORS Misconfiguration

on 12/08/2026

Myndr disclosed a bug submitted by hackwithshubh: https://hackerone.com/reports/3930957 [...]

See full content

Microsoft Plugs Nearly 400 Security Holes

by BrianKrebs on 11/08/2026

Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already being actively exploited and two others that were publicly detailed prior to today. Image: Shutterstock, Mallika Home Studio. August’s overstuffed bundle of patch joy from Microsoft did not eclipse its recording break [...]

See full content

How Trail of Bits helps verify the integrity of your Signal chats

on 11/08/2026

Every Signal chat starts the same way: the client asks the Signal server for the public key associated with your contact’s phone number. But how do you know the server gave you the right key? A compromised server could provide a false public key, allowing the client to encrypt messages to an attacker rather than the intended recipient. Until now, the only way to detect such malfeasance was to veri [...]

See full content

CrowdRecon is coming: turning hacker reconnaissance into security intelligence

by Greg Jenkins on 10/08/2026

At DEF CON 34, our team introduced something exciting. Something the Intigriti team has been building for months, and our Senior Product Manager, Radu Voloaga, took to the stage in the Bug Bounty Village to give everyone the first real look at CrowdRecon. How CrowdRecon closes the gap It started with a question we kept running into: what happens to all the reconnaissance work hackers do before a v [...]

See full content

Adding phone number to profile By OTP brute forcing

on 08/08/2026

CoinMate.io disclosed a bug submitted by ganesh_reddy: https://hackerone.com/reports/3265780 - Bounty: $100 [...]

See full content

URL API: triple-slash parses path segment as hostname

on 07/08/2026

curl disclosed a bug submitted by thinhlx: https://hackerone.com/reports/3923212 [...]

See full content

[Wii U/3DS/Switch] Improper bounds check in StationURL in all NEX clients leading to remote crash/RCE

on 07/08/2026

Nintendo disclosed a bug submitted by jonbarrow: https://hackerone.com/reports/2551512 [...]

See full content

Canadian Man Pleads Guilty in Snowflake Extortions

by BrianKrebs on 06/08/2026

A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud provider Snowflake. Connor Riley Moucka, of Kitchener, Ontario, also admitted to stealing call and text history records of more than 100 million AT&T customers. A survei [...]

See full content

Beyond CVSS: rethinking scoring systems amidst AI Safety and Security

by Eleanor Barlow on 06/08/2026

CVSS open framework, rapid recap   Stands for Common Vulnerability Scoring System. Owned by a US-based non-profit organization, the Forum of Incident Response and Security Teams (FIRST).   The purpose is to help response teams quickly and easily calculate the severity of cybersecurity vulnerabilities based on metrics.   Latest version: (4.0) designed to assess multiple environments and dimensio [...]

See full content

Unauthenticated RCE in Taskcluster web-server via GraphQL filter argument (sift $where)

on 05/08/2026

Mozilla disclosed a bug submitted by griffinf: https://hackerone.com/reports/3782701 - Bounty: $12000 [...]

See full content

curl Missing Sec-WebSocket-Accept Verification Enables MITM WebSocket Session Hijacking

on 05/08/2026

curl disclosed a bug submitted by kiyin: https://hackerone.com/reports/3917775 [...]

See full content

A few notes on AWS Nitro Enclaves: KMS integration

on 05/08/2026

Nitro Enclaves and Key Management Service (KMS) feel like a natural fit: since the KMS can verify attestation documents generated by the enclaves, developers can offload key management tasks from their applications to the AWS-managed service. But integrating an external service with your trusted enclaves comes with new threats, even if that service comes from the same provider. In this blog post—t [...]

See full content

`check_reserve_proof` counts duplicate entries: one output can inflate `total`

on 05/08/2026

Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3699522 [...]

See full content

`check_reserve_proof` sums RingCT ECDH amounts without checking the output commitment

on 05/08/2026

Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3698862 [...]

See full content

wallet-rpc crash via malformed /gettransactions response (empty txs vector::front() in check_tx_key / check_tx_proof)

on 05/08/2026

Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3693636 [...]

See full content

SpendProofV1 txid-substitution: get_spend_proof/check_spend_proof do not verify returned transaction hash

on 05/08/2026

Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3700036 [...]

See full content

wallet-rpc describe_transfer uses real_output_in_tx_index instead of real_output: cold-wallet pre-sign review shows wrong ring member

on 05/08/2026

Monero disclosed a bug submitted by bebensap: https://hackerone.com/reports/3723315 [...]

See full content

`set_daemon` wallet-rpc silently ignores `ssl_allowed_fingerprints` pinning bypassed, walletdaemon MITM

on 05/08/2026

Monero disclosed a bug submitted by benisprlh: https://hackerone.com/reports/3686259 [...]

See full content

`relay_tx` wallet-rpc skips `--restricted-rpc` guard and lets any caller corrupt wallet state via attacker-controlled `pending_tx`

on 05/08/2026

Monero disclosed a bug submitted by benisprlh: https://hackerone.com/reports/3687543 [...]

See full content

Heap use-after-free (write) in mev_forget_socket() via reentrant curl_easy_pause() incomplete fix for CVE-2026-9080

on 04/08/2026

curl disclosed a bug submitted by juthawong: https://hackerone.com/reports/3911968 [...]

See full content

How Burp AT helped expose whistleblower reports via a critical vulnerability that was overlooked for years

on 04/08/2026

"It feels like I get 10X the productivity on an engagement. The difference is night and day." Profile Ray Huygen is a Security Analyst at Orange Cyberdefense, a managed security service provider with [...]

See full content

Intigriti named new provider for Adobe's Bug Bounty Program

by Eleanor Barlow on 04/08/2026

Adobe empowers everyone to create through industry-leading platforms and tools that unleash creativity, productivity, and personalized customer experiences. Starting September 1, 2026, Intigriti will be the new home of the Adobe Bug Bounty Program. Why Intigriti and Adobe? As AI reshapes how organizations build and ship products, security testing needs to keep pace. Intigriti's global community of [...]

See full content

Worm compromises hundreds of popular npm packages

on 04/08/2026

On August 4, 2026, several popular npm packages, including 'keyv', were compromised to deliver malware. [...]

See full content

GitHub Retired UsernameTakeover From [aws/]

on 03/08/2026

AWS VDP disclosed a bug submitted by sh3d0w: https://hackerone.com/reports/3478646 [...]

See full content

Unauthenticated Path Traversal (LFI) via /custom-sounds/ when CustomSounds uses FileSystem storage

on 03/08/2026

Rocket.Chat disclosed a bug submitted by howtoplay: https://hackerone.com/reports/3514640 [...]

See full content

SMTP CRLF injection in custom SMTP recipient operand allows additional SMTP commands after authentication

on 03/08/2026

curl disclosed a bug submitted by dark_river: https://hackerone.com/reports/3911605 [...]

See full content

Before the first prompt: Code execution paths in trusted coding-agent projects

on 03/08/2026

Learn how trusted coding-agent projects can execute repository-controlled code before the first prompt through Codex MCP configuration and Claude Code environment settings. [...]

See full content

Unauthenticated team "income/payments" export ignores donor privacy settings (hide_giving, hide_from_lists) and uses frozen visibility, exposing donat

on 01/08/2026

Liberapay disclosed a bug submitted by its9me: https://hackerone.com/reports/3878586 - Bounty: $100 [...]

See full content

HTTP Request Smuggling via Connection: close<TAB> in Node.js llhttp parser

on 31/07/2026

Node.js disclosed a bug submitted by nadav0077: https://hackerone.com/reports/3723248 [...]

See full content

Stored XSS in nameserver field on account settings page

on 31/07/2026

Tucows (VDP) disclosed a bug submitted by axolot23: https://hackerone.com/reports/3644182 [...]

See full content

Intigriti Bug Bytes #238 - July 2026 🚀

by Ayoub on 31/07/2026

Hello hackers, Welcome to the latest edition of Bug Bytes! In this month's issue, we'll be featuring: Intigriti turns 10! RCE in GitHub.com and GitHub Enterprise Server Burp Suite going agentic with Burp AT Hacking Gemini Enterprise for $15,000 3,708 live credentials found by scanning GitHub Archive And so much more! Let's dive in! Intigriti turns 10! 🚀 Ten years ago, the idea that inviting [...]

See full content

Stored XSS via SVG Upload check_content() Blocklist Bypass & 256-Byte Scan Limit (Self-Propagating Worm)

on 30/07/2026

phpBB disclosed a bug submitted by a7mmr: https://hackerone.com/reports/3606773 [...]

See full content

Read This Before You Buy That TV Streaming Stick

by BrianKrebs on 30/07/2026

Security experts have been sounding the alarm for years about the risks of using generic TV boxes that promise unlimited content streaming for a one-time fee, warning that they secretly rent the user’s Internet connection out to strangers. But a groundbreaking new analysis finds these devices also routinely spoof themselves as mobile phones clicking ads on AI-generated websites as part of a [...]

See full content

Permission Model bypass: process.report writes (and overwrites) files outside --allow-fs-write paths

on 30/07/2026

Node.js disclosed a bug submitted by sinan-polat: https://hackerone.com/reports/3815767 [...]

See full content

From capable AI models to trusted security testing

on 30/07/2026

This week, we launched Burp AT in public beta for Burp Suite Professional users. Next week at Black Hat, PortSwigger Research will reveal more of the work that helped shape our direction. Burp AT is o [...]

See full content

Active Storage Vips Transformer Missing validate_transformation CVE-2025-24293 Incomplete Fix

on 30/07/2026

Ruby on Rails disclosed a bug submitted by friedchicken112211: https://hackerone.com/reports/3553340 [...]

See full content

Building secure Uniswap v4 hooks

on 30/07/2026

Uniswap v4 hooks let developers add custom behavior to pools, including dynamic fees, custom accounting, and external integrations. This flexibility moves some security responsibilities into application and hook code. The Cork and Bunni exploits are two app-level incidents that show what can go wrong in that code. Together, they account for more than $20M in losses. Neither incident stemmed from a [...]

See full content

HTTPS Agent TLS session reuse skips hostname verification across identity policies (incomplete fix of CVE-2026-48934)

on 30/07/2026

Node.js disclosed a bug submitted by vnyuh: https://hackerone.com/reports/3812439 [...]

See full content

How to appeal a bug bounty submission

by Ayoub on 30/07/2026

Bug bounty is a collaborative process that involves multiple parties, including the security researcher, triage team, and the affected organization managing the bug bounty program. While the vast majority of submissions are handled correctly, there are exceptional instances in which reports are mishandled, closed incorrectly, downgraded in severity, or left unresolved for extended periods. When th [...]

See full content

GitHub scoped user to server tokens can escape their installation

on 29/07/2026

GitHub disclosed a bug submitted by ahacker1: https://hackerone.com/reports/3638909 [...]

See full content

Permission Model: --allow-fs-read/--allow-fs-write radix-tree prefix-boundary over-grant

on 29/07/2026

Node.js disclosed a bug submitted by sy2n0: https://hackerone.com/reports/3761342 [...]

See full content

`exportReportPdf` mutation shows internal Activity

on 29/07/2026

HackerOne disclosed a bug submitted by 0v3rw4tch: https://hackerone.com/reports/3577216 [...]

See full content

HTTPS Agent PFX object-array key collision allows mTLS client identity reuse across different per-request certificates

on 29/07/2026

Node.js disclosed a bug submitted by yottt: https://hackerone.com/reports/3816840 [...]

See full content

Permission Model Bypass: `trace_events.createTracing().enable()` Writes Trace Logs Outside `--allow-fs-write`

on 29/07/2026

Node.js disclosed a bug submitted by 0xoroot: https://hackerone.com/reports/3838601 [...]

See full content

Unauthenticated SSRF in Voxtelesys integration ('checkUrlForSsrf' Bypass via DNS rebinding)

on 29/07/2026

Rocket.Chat disclosed a bug submitted by button142857: https://hackerone.com/reports/3473145 [...]

See full content

Sandbox User Can Inject Rogue CA Certificate into OS Trust Store via Sudo-Allowed deploy-certificates.sh

on 28/07/2026

AWS VDP disclosed a bug submitted by mistercloudsec: https://hackerone.com/reports/3633146 [...]

See full content

How we use /goal to find bugs in Patch the Planet

on 28/07/2026

Codex’s /goal feature amplifies bug hunting, but getting good results requires the right prompt, the right scope, and the right number of outcomes per run. For Patch the Planet, our joint initiative with OpenAI to find and fix bugs in open-source software, we pointed Codex at some of the most widely used, heavily audited codebases in the world, like Rust, curl, and zlib. One tool came up again and [...]

See full content

RAG and ruin: why your existing controls may miss AI poisoning attacks

by Eleanor Barlow on 28/07/2026

Key takeaways   RAG systems expand the application’s trust boundary by adding external, mutable content to the model context. If a threat actor can influence what gets indexed and retrieved, they can influence what the model says or does.   In simple QA systems, that may mean misinformation or unsafe recommendations.   In agentic systems with tools and permissions, it can become data leakage, un [...]

See full content

Lessons from the OpenAI and Hugging Face Incident: When Safety Filters Disarm the Defender

by Aleksandr Orekhov on 27/07/2026

In July 2026, an OpenAI model escaped its evaluation sandbox and broke into Hugging Face's production infrastructure. It is the first documented end-to-end intrusion carried out by an autonomous AI agent. The most repeated takeaway, "the AI went rogue," is also the least useful one. The real lessons are about containment engineering, about who is allowed to use powerful models, and about why the [...]

See full content

Non-Production API Endpoints for the Amazon Cloudwatch Fails to Log to CloudTrail Resulting in Silent Permission Enumeration

on 27/07/2026

AWS VDP disclosed a bug submitted by nick_frichette_dd: https://hackerone.com/reports/3775702 [...]

See full content

Authentication Bypass via XML Signature Wrapping in SAML SSO

on 27/07/2026

Rocket.Chat disclosed a bug submitted by 0jayden: https://hackerone.com/reports/3827674 [...]

See full content

Introducing Burp AT: agentic AI, built on two decades of Burp Suite

on 27/07/2026

Burp AT brings agentic AI to human-led pentesting, with Burp Suite’s proven tools, your project context, and purpose-built skills. You decide how much work agents take on. Burp enforces the boundaries [...]

See full content

Detection primitives for eBPF rootkits

on 27/07/2026

We analyze how VoidLink, LinkPro, and Atomic Arch abuse eBPF helpers to hide from defenders, and show how to detect them at load time, before they can act. [...]

See full content

ZMQ RPC Log Injection and Untrusted Payload Persistence

on 24/07/2026

Monero disclosed a bug submitted by redlobsterzzz: https://hackerone.com/reports/3621606 [...]

See full content

Sources

The content of this page is fetched from the following sources:

  1. Datadog Security Labs
  2. The Trail of Bits Blog
  3. Schneier on Security
  4. Krebs on Security
  5. Google Online Security Blog
  6. $BLOG_TITLE
  7. Agarri : Sécurité informatique offensive
  8. Alex Chapman's Blog
  9. www.alphabot.com
  10. ziot
  11. cat ~/footstep.ninja/blog.txt
  12. Ezequiel Pereira
  13. surajdisoja.me
  14. Intigriti
  15. PortSwigger Blog
  16. Richard’s Infosec blog
  17. Ron Chan
  18. ropnop blog
  19. The unofficial HackerOne disclosure timeline
  20. Wallarm