#cyber-security — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #cyber-security, aggregated by home.social.
-
Major cyberattacks impacted Norwegian government, UK power, and US water systems (Iran-linked). Tech giants, led by OpenAI, pledged enhanced AI-driven cyber defense amid escalating threats. Apple unveiled its 2nm M6 chip, accelerating local AI workloads. Geopolitically, US-Canada trade tensions flared over tariffs and a symbolic lake renaming. [August 28, 2026] #Cybersecurity #Tech #News
-
📐 The math they actually need to teach in school
Grab this digital survival cheat sheet before the new semester starts
#privacy #adblocker #adguard #dns #vpn #internet #ai #digital #digitalprivacy #cybersecurity
-
🟠 CVE-2026-75486 - High (8)
Synk Sweater Comb before 3.8.8 contains a command injection vulnerability that allows an attacker who controls the .vervet.yaml configuration file to execute arbitrary OS commands by injecting malicious input into the linters..optic-ci.original br...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-75486/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
🟠 CVE-2026-77586 - High (8)
In MongoDB Connector for BI, MongoDB object names such as collection, field, and index names are placed into the quoted identifiers of the DDL text returned by SHOW CREATE statements without escaping the identifier delimiter. A user with permissio...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-77586/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
🟠 CVE-2026-81849 - High (8.8)
Improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in amazon-ssm-agent before 3.3.4515.0 might allow an authenticated remote user whose ssm:SendCommand permission is restricted to the AWS-DownloadContent ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-81849/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
The Transcripts of OpenAI Models Plotting Together to Commit an Actual Crime Is Pretty Chilling
-
Toy-making giant #Hasbro disclose #DataBreach affecting employees
-
#chrome extension Whatfa seems malicious. Its #cybersecurity badness score is 99/100!
```json
{"id": "kgeblhhdapgiapcbbdpbgfmpgmdhchcb", "score": 99, "platform": "chrome", "name": "Whatfa"}
``` -
#chrome extension Instagram Video Downloade seems malicious. Its #cybersecurity badness score is 85/100!
```json
{"id": "ahjkodgdnljbbinhdhhoipceclgfcpbe", "score": 85, "platform": "chrome", "name": "Instagram Video Downloade"}
``` -
#chrome extension Ig Media Saver – Reels St seems malicious. Its #cybersecurity badness score is 85/100!
```json
{"id": "fccbpogngmnjglejjdpaonideclomihp", "score": 85, "platform": "chrome", "name": "Ig Media Saver \u2013 Reels St"}
``` -
#chrome extension Instagram Downloader — Fa seems malicious. Its #cybersecurity badness score is 91/100!
```json
{"id": "miidjpmjpkbpefhnfcdcoolaaedfmlam", "score": 91, "platform": "chrome", "name": "Instagram Downloader \u2014 Fa"}
``` -
#ServiceNow warns of three max severity security vulnerabilities
-
🛡️ #Cybersecurity news & tips across the #fediverse
“Texas pauses funding for Flock Safety cameras after an investigation found $30M+ quietly allocated to build a statewide license plate reader network․ The privacy question isn't just about the cameras — it's about who ha…”
https://mastobot.ping.moi/@Bobe_bot/117176796145407523
🤖 via RSS feed. Not an endorsement.
-
🚨New ransom group blog post!🚨
Group name: qilin
Post title: Neumaticos Corral S.A.
Info: https://cti.fyi/groups/qilin.html#ransomware #cti #threatintelligence #cybersecurity #infosec
-
🟠 CVE-2026-82450 - High (8.8)
BookStack before 26.05.4 contains a remote code execution vulnerability in the portable ZIP import functionality that allows users with Import Content and Create Books permissions to upload a PHP polyglot file as a book cover. Attackers can bypass...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82450/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
🟠 CVE-2026-82457 - High (7.8)
su-exec through 0.3 fails to validate numeric user and group identifiers parsed with strtol before assigning to uid_t and gid_t, allowing truncation of out-of-range values to zero. Attackers can supply large numeric identifiers that truncate to ro...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82457/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
🔴 CVE-2026-82456 - Critical (10)
argocd-mcp 0.8.0 binds its HTTP transport to every network interface and accepts MCP sessions without requiring caller credentials when ARGOCD_API_TOKEN is configured. Attackers who can reach the listener can invoke the full tool surface using the...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82456/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
🔴 CVE-2026-82454 - Critical (9.1)
The Omnivore API (packages/api) before the fix in commit abf53d6 contains an authentication bypass in Apple sign-in token verification. The decodeAppleToken function extracted the 'alg' field from the attacker-supplied JWT header and passed it as ...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82454/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
🟠 CVE-2026-82453 - High (7.5)
rust-iot-platform through commit 5df942ab stores user passwords in cleartext without hashing in the user model. Attackers can read API responses from user retrieval and listing routes to obtain plaintext credentials for all accounts.
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82453/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
🔴 CVE-2026-82452 - Critical (9.8)
rust-iot-platform through commit 5df942ab contains an authentication bypass vulnerability where most REST API routes lack authentication guards in their handler signatures. Unauthenticated attackers can create, update, list, retrieve, and delete u...
🔗 https://www.thehackerwire.com/vulnerability/CVE-2026-82452/
#CVE #vulnerability #infosec #cybersecurity #security #Tenda #patchstack
-
If you ask me, it's advertising #propaganda and not a real call for respectful #security. Above all, AI is only so "smart" to what amount it is fed with #data in which context.
«Time is running out for #cyberSecurity, warn top tech firms:
A group of 100 firms […] have signed an open letter calling on countries and organisations around the world to beef up their cyber defences before #AI grows powerful enough to override them» -
CVE Alert: CVE-2026-18899 - IBM - Langflow OSS - https://www.redpacketsecurity.com/cve-alert-cve-2026-18899-ibm-langflow-oss/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-18899 #ibm #langflow-oss
-
CVE Alert: CVE-2026-18904 - IBM - Langflow OSS - https://www.redpacketsecurity.com/cve-alert-cve-2026-18904-ibm-langflow-oss/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-18904 #ibm #langflow-oss