home.social

#exploit — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #exploit, aggregated by home.social.

  1. Researchers disclosed CVE-2026-46333, a Linux kernel flaw present since 2016 that enables local users to access sensitive files and execute commands as root. 🐧
    Qualys said Debian, Fedora and Ubuntu default installs are affected, while admins are urged to patch kernels and rotate exposed SSH keys. 🔑

    🔗 thehackernews.com/2026/05/9-ye

    #TechNews #Linux #Kernel #CVE202646333 #CVE #Cybersecurity #Qualys #Ubuntu #Debian #Fedora #OpenSource #FOSS #Security #Exploit #Infosec #SysAdmin #Privacy #SSH #Admin

  2. Researchers disclosed CVE-2026-46333, a Linux kernel flaw present since 2016 that enables local users to access sensitive files and execute commands as root. 🐧
    Qualys said Debian, Fedora and Ubuntu default installs are affected, while admins are urged to patch kernels and rotate exposed SSH keys. 🔑

    🔗 thehackernews.com/2026/05/9-ye

    #TechNews #Linux #Kernel #CVE202646333 #CVE #Cybersecurity #Qualys #Ubuntu #Debian #Fedora #OpenSource #FOSS #Security #Exploit #Infosec #SysAdmin #Privacy #SSH #Admin

  3. Researchers disclosed CVE-2026-46333, a Linux kernel flaw present since 2016 that enables local users to access sensitive files and execute commands as root. 🐧
    Qualys said Debian, Fedora and Ubuntu default installs are affected, while admins are urged to patch kernels and rotate exposed SSH keys. 🔑

    🔗 thehackernews.com/2026/05/9-ye

    #TechNews #Linux #Kernel #CVE202646333 #CVE #Cybersecurity #Qualys #Ubuntu #Debian #Fedora #OpenSource #FOSS #Security #Exploit #Infosec #SysAdmin #Privacy #SSH #Admin

  4. Researchers disclosed CVE-2026-46333, a Linux kernel flaw present since 2016 that enables local users to access sensitive files and execute commands as root. 🐧
    Qualys said Debian, Fedora and Ubuntu default installs are affected, while admins are urged to patch kernels and rotate exposed SSH keys. 🔑

    🔗 thehackernews.com/2026/05/9-ye

    #TechNews #Linux #Kernel #CVE202646333 #CVE #Cybersecurity #Qualys #Ubuntu #Debian #Fedora #OpenSource #FOSS #Security #Exploit #Infosec #SysAdmin #Privacy #SSH #Admin

  5. Researchers disclosed CVE-2026-46333, a Linux kernel flaw present since 2016 that enables local users to access sensitive files and execute commands as root. 🐧
    Qualys said Debian, Fedora and Ubuntu default installs are affected, while admins are urged to patch kernels and rotate exposed SSH keys. 🔑

    🔗 thehackernews.com/2026/05/9-ye

    #TechNews #Linux #Kernel #CVE202646333 #CVE #Cybersecurity #Qualys #Ubuntu #Debian #Fedora #OpenSource #FOSS #Security #Exploit #Infosec #SysAdmin #Privacy #SSH #Admin

  6. #Microsoft #BitLocker-protected drives can now be opened with just some files on a #USB stick — YellowKey #zeroday #exploit demonstrates an apparent backdoor #YellowKey is kind of crazy because now, any device that was stolen but protected by BitLocker is now super-compromised, with no recourse

    #computersecurity #security #cybersec

  7. #Microsoft #BitLocker-protected drives can now be opened with just some files on a #USB stick — YellowKey #zeroday #exploit demonstrates an apparent backdoor #YellowKey is kind of crazy because now, any device that was stolen but protected by BitLocker is now super-compromised, with no recourse

    #computersecurity #security #cybersec

  8. #Microsoft #BitLocker-protected drives can now be opened with just some files on a #USB stick — YellowKey #zeroday #exploit demonstrates an apparent backdoor #YellowKey is kind of crazy because now, any device that was stolen but protected by BitLocker is now super-compromised, with no recourse

    #computersecurity #security #cybersec

  9. #Microsoft #BitLocker-protected drives can now be opened with just some files on a #USB stick — YellowKey #zeroday #exploit demonstrates an apparent backdoor #YellowKey is kind of crazy because now, any device that was stolen but protected by BitLocker is now super-compromised, with no recourse

    #computersecurity #security #cybersec

  10. YellowKey: BitLocker Bypass or Backdoor

    YellowKey, tracked as CVE-2026-45585, is a public BitLocker bypass that abuses WinRE/recovery-path behavior to expose a protected volume without the Windows password, recovery key, or AES cracking.

    At the time of this post, the author’s GitHub and original YellowKey repo appear to be down.

    Read more: forum.hashpwn.net/post/13339

    #BitLocker #YellowKey #CVE202645585 #CyberSecurity #InfoSec #WindowsSecurity #TPM #FullDiskEncryption #hack #exploit #news #hashpwn

  11. YellowKey: BitLocker Bypass or Backdoor

    YellowKey, tracked as CVE-2026-45585, is a public BitLocker bypass that abuses WinRE/recovery-path behavior to expose a protected volume without the Windows password, recovery key, or AES cracking.

    At the time of this post, the author’s GitHub and original YellowKey repo appear to be down.

    Read more: forum.hashpwn.net/post/13339

    #BitLocker #YellowKey #CVE202645585 #CyberSecurity #InfoSec #WindowsSecurity #TPM #FullDiskEncryption #hack #exploit #news #hashpwn

  12. YellowKey: BitLocker Bypass or Backdoor

    YellowKey, tracked as CVE-2026-45585, is a public BitLocker bypass that abuses WinRE/recovery-path behavior to expose a protected volume without the Windows password, recovery key, or AES cracking.

    At the time of this post, the author’s GitHub and original YellowKey repo appear to be down.

    Read more: forum.hashpwn.net/post/13339

    #BitLocker #YellowKey #CVE202645585 #CyberSecurity #InfoSec #WindowsSecurity #TPM #FullDiskEncryption #hack #exploit #news #hashpwn

  13. YellowKey: BitLocker Bypass or Backdoor

    YellowKey, tracked as CVE-2026-45585, is a public BitLocker bypass that abuses WinRE/recovery-path behavior to expose a protected volume without the Windows password, recovery key, or AES cracking.

    At the time of this post, the author’s GitHub and original YellowKey repo appear to be down.

    Read more: forum.hashpwn.net/post/13339

    #BitLocker #YellowKey #CVE202645585 #CyberSecurity #InfoSec #WindowsSecurity #TPM #FullDiskEncryption #hack #exploit #news #hashpwn

  14. 🚔🔍 #FBI says "Peek-a-Boo!" to everyone's car-tag habits, because #privacy is sooooo 2020. Meanwhile, Google's got a "whoopsie" #exploit and #deepfake artists are getting a free trip to Club Fed. 🤦‍♂️🤷‍♀️
    wired.com/story/security-news- #Google #ClubFed #HackerNews #ngated

  15. 🚔🔍 #FBI says "Peek-a-Boo!" to everyone's car-tag habits, because #privacy is sooooo 2020. Meanwhile, Google's got a "whoopsie" #exploit and #deepfake artists are getting a free trip to Club Fed. 🤦‍♂️🤷‍♀️
    wired.com/story/security-news- #Google #ClubFed #HackerNews #ngated

  16. 🚔🔍 #FBI says "Peek-a-Boo!" to everyone's car-tag habits, because #privacy is sooooo 2020. Meanwhile, Google's got a "whoopsie" #exploit and #deepfake artists are getting a free trip to Club Fed. 🤦‍♂️🤷‍♀️
    wired.com/story/security-news- #Google #ClubFed #HackerNews #ngated

  17. 🚔🔍 #FBI says "Peek-a-Boo!" to everyone's car-tag habits, because #privacy is sooooo 2020. Meanwhile, Google's got a "whoopsie" #exploit and #deepfake artists are getting a free trip to Club Fed. 🤦‍♂️🤷‍♀️
    wired.com/story/security-news- #Google #ClubFed #HackerNews #ngated

  18. 🚔🔍 #FBI says "Peek-a-Boo!" to everyone's car-tag habits, because #privacy is sooooo 2020. Meanwhile, Google's got a "whoopsie" #exploit and #deepfake artists are getting a free trip to Club Fed. 🤦‍♂️🤷‍♀️
    wired.com/story/security-news- #Google #ClubFed #HackerNews #ngated

  19. has accidentally leaked details about an unfixed issue in that keeps running in the background even when the browser is closed, allowing on the device.
    An attacker could the problem to create a malicious webpage with a Service Worker, such as a download task, that never terminates. Rebane says that this could allow an attacker to execute JavaScript code on the visitors' devices.
    bleepingcomputer.com/news/secu

  20. #Google has accidentally leaked details about an unfixed issue in #Chromium that keeps #JavaScript running in the background even when the browser is closed, allowing #remotecodeexecution on the device.
    An attacker could #exploit the problem to create a malicious webpage with a Service Worker, such as a download task, that never terminates. Rebane says that this could allow an attacker to execute JavaScript code on the visitors' devices.
    bleepingcomputer.com/news/secu #RCE

  21. #Google has accidentally leaked details about an unfixed issue in #Chromium that keeps #JavaScript running in the background even when the browser is closed, allowing #remotecodeexecution on the device.
    An attacker could #exploit the problem to create a malicious webpage with a Service Worker, such as a download task, that never terminates. Rebane says that this could allow an attacker to execute JavaScript code on the visitors' devices.
    bleepingcomputer.com/news/secu #RCE

  22. #Google has accidentally leaked details about an unfixed issue in #Chromium that keeps #JavaScript running in the background even when the browser is closed, allowing #remotecodeexecution on the device.
    An attacker could #exploit the problem to create a malicious webpage with a Service Worker, such as a download task, that never terminates. Rebane says that this could allow an attacker to execute JavaScript code on the visitors' devices.
    bleepingcomputer.com/news/secu #RCE

  23. #Google has accidentally leaked details about an unfixed issue in #Chromium that keeps #JavaScript running in the background even when the browser is closed, allowing #remotecodeexecution on the device.
    An attacker could #exploit the problem to create a malicious webpage with a Service Worker, such as a download task, that never terminates. Rebane says that this could allow an attacker to execute JavaScript code on the visitors' devices.
    bleepingcomputer.com/news/secu #RCE