AI is breaking two vulnerability cultures

Killswitch: Per-function short-circuit mitigation primitive

Local privilege escalation via execve()

Mystery Microsoft bug leaker keeps the zero-days coming

Claude Code RCE: Exploiting Deeplink Handlers via Settings Injection

Security Advisory: Local privilege escalation in Lix and Nix

linux 0-day, access root-owned files as an unprivileged user

Dirty Frag: Universal Linux LPE

1000 third parties could have stolen RIPE NCC session tokens - by design

First public macOS kernel memory corruption exploit on Apple M5

Fragnesia Made Public as Latest Linux Local Privilege Escalation Vulnerability

Laptops all have built-in security tokens these days

Let's Encrypt Stopping Issuance for Potential Incident

Fragnesia: New Linux Privilege Escalation Exploit

An ansible playbook to mitigate the copy-fail vulnerability

Popular Go library fsnotify raises supply chain alarms after maintainer access changes

An exploitable integer overflow in Lix (CVE-2026-44028)

CVE-2026-31431: Copy Fail

Sculpt OS release 26.04

Time travel without borders

Podman rootless containers and the Copy Fail exploit

The Canvas Hack Is a New Kind of Ransomware Debacle

CVE-2026-40369: Arbitrary Kernel Address Increment via NtQuerySystemInformation

Stop MitM on the first SSH connection, on any VPS or cloud provider

Where Have All the Complex Windows Malware and Their Analyses Gone?

ClaudeBleed: A Flaw In Claude's Browser Extension Allows Any Extension to Hijack It

minipgp6: A very lean interpretation of modern OpenPGP

Release v0.9.0 ยท Foxboron/ssh-tpm-agent

uutils coreutils CVEs

New Linux 'Dirty Frag' Zero-Day Gives Root On All Major Distros

More →