#vulnerabilities — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #vulnerabilities, aggregated by home.social.
-
How Dangerous Is Anthropic’s Mythos AI?
Last month, Anthropic made a remarkable announcement about its new model, Claude Mythos Preview: it was so good at finding security vulnerabilities in software that the company would not... https://www.schneier.com/blog/archives/2026/05/how-dangerous-is-anthropics-mythos-ai.html
#vulnerabilities #Uncategorized #regulation #patching #hacking #laws #LLM #AI
-
OpenAI’s GPT-5.5 is as Good as Mythos at Finding Security Vulnerabilities
The UK’s AI Security Institute evaluated GPT-5.5’s ability to find security vulnerabilities, and found that it is comparable to Claude Myth... https://www.schneier.com/blog/archives/2026/05/openais-gpt-5-5-is-as-good-as-mythos-at-finding-security-vulnerabilities.html
-
CW: socialmedia
Linux bitten by second severe vulnerability in as many weeks
Production-version patches are coming online and should be installed pronto.
Archive: ia: https://s.faithcollapsing.com/wai9z
#biz-&-it #exploits #linux #security #vulnerabilities
https://arstechnica.com/security/2026/05/linux-bitten-by-second-severe-vulnerability-in-as-many-weeks/ -
CERT is releasing six CVEs for serious security vulnerabilities in dnsmasq
https://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2026q2/018471.html
#HackerNews #CERT #CVEs #dnsmasq #security #vulnerabilities #cybersecurity #patches
-
Mass npm Supply Chain Attack Hits TanStack, Mistral AI, and 170+ Packages (safedep.io)
https://safedep.io/mass-npm-supply-chain-attack-tanstack-mistral/
#security #supplychain #npm #vulnerabilities #attack #programming
-
Mass npm Supply Chain Attack Hits TanStack, Mistral AI, and 170+ Packages (safedep.io)
https://safedep.io/mass-npm-supply-chain-attack-tanstack-mistral/
#security #supplychain #npm #vulnerabilities #attack #programming
-
Copy.Fail Linux Vulnerability
This is the worst Linux vulnerability in years.
TL;DRcopy.fail is a Linux kernel local privilege escala... https://www.schneier.com/blog/archives/2026/05/copy-fail-linux-vulnerability.html
-
#Development #Relaunches
Vulnerability Garden · A living catalog of named vulnerabilities https://ilo.im/16cpnx_____
#Collections #Vulnerabilities #Attacks #Exploits #Security #RSS #DevOps #WebDev #Frontend #Backend -
#Development #Relaunches
Vulnerability Garden · A living catalog of named vulnerabilities https://ilo.im/16cpnx_____
#Collections #Vulnerabilities #Attacks #Exploits #Security #RSS #DevOps #WebDev #Frontend #Backend -
#Development #Relaunches
Vulnerability Garden · A living catalog of named vulnerabilities https://ilo.im/16cpnx_____
#Collections #Vulnerabilities #Attacks #Exploits #Security #RSS #DevOps #WebDev #Frontend #Backend -
#Development #Relaunches
Vulnerability Garden · A living catalog of named vulnerabilities https://ilo.im/16cpnx_____
#Collections #Vulnerabilities #Attacks #Exploits #Security #RSS #DevOps #WebDev #Frontend #Backend -
CPanel's Black Week: 3 New Vulnerabilities Patched After Attack on 44k Servers
#HackerNews #CPanel #Vulnerabilities #BlackWeek #Cybersecurity #Ransomware #ServerSecurity
-
@renardboy A tangential #phrase comes to mind:
"Having too many hammers..." might mean:
1- if you sell more #hammers then they get used more and do more damage
2- if you give #intelligent people lots of hammers it wouldn't make a difference because they just won't use them / leave them alone in storage.
(so coming back to your post - intelligent society wouldn't attack things so much / at all even if #vulnerabilities existed (and having hammers).
Writing in short is hard - I tried !
-
Huawei Cloud and GAPP Forge Strategic Alliance to Accelerate AI-Driven Cloud Solutions in Saudi Arabia Huawei Cloud and GAPP Forge Strategic Alliance to Accelerate AI-Driven Cloud Solutions in Saud...
#Features #Cyber #Warriors #Risk #& #Policy #threat #landscape #Vulnerabilities
Origin | Interest | Match -
I don't use it anyway but #TheHackerNews: [#cPanel, #WHM Release Fixes for Three New #Vulnerabilities — Patch Now]Source: 🔗(https://thehackernews.com/2026/05/cpanel-whm-patch-3-new-vulnerabilities.html) #security #updates #patches
-
I don't use it anyway but #TheHackerNews: [#cPanel, #WHM Release Fixes for Three New #Vulnerabilities — Patch Now]Source: 🔗(https://thehackernews.com/2026/05/cpanel-whm-patch-3-new-vulnerabilities.html) #security #updates #patches
-
New post in #TheHackerNews: [#cPanel, #WHM Release Fixes for Three New #Vulnerabilities — Patch Now]Source: 🔗(https://thehackernews.com/2026/05/cpanel-whm-patch-3-new-vulnerabilities.html)
-
I don't use it anyway but #TheHackerNews: [#cPanel, #WHM Release Fixes for Three New #Vulnerabilities — Patch Now]Source: 🔗(https://thehackernews.com/2026/05/cpanel-whm-patch-3-new-vulnerabilities.html) #security #updates #patches
-
Non-determinism is an issue with patching CVEs
https://flox.dev/blog/achieving-rapid-cve-remediation-in-an-era-of-escalating-vulnerabilities/
#HackerNews #Non-determinism #CVEs #patching #vulnerabilities #security #software #development
-
The Canvas Hack Is a New Kind of Ransomware Debacle
https://fed.brid.gy/r/https://www.wired.com/story/canvas-hack-shinyhunters-ransomware-instructure/
-
The Canvas Hack Is a New Kind of Ransomware Debacle
https://fed.brid.gy/r/https://www.wired.com/story/canvas-hack-shinyhunters-ransomware-instructure/
-
The Canvas Hack Is a New Kind of Ransomware Debacle
https://fed.brid.gy/r/https://www.wired.com/story/canvas-hack-shinyhunters-ransomware-instructure/
-
The Canvas Hack Is a New Kind of Ransomware Debacle
https://fed.brid.gy/r/https://www.wired.com/story/canvas-hack-shinyhunters-ransomware-instructure/
-
DarkSword Malware
DarkSword is a sophisticated piece of malware—probably government designed—that targets iOS.
Google Threat Intelligen... https://www.schneier.com/blog/archives/2026/05/darksword-malware.html#vulnerabilities #Uncategorized #cybercrime #exploits #zero-day #malware #Apple #iOS
-
DarkSword Malware
DarkSword is a sophisticated piece of malware—probably government designed—that targets iOS.
Google Threat Intelligen... https://www.schneier.com/blog/archives/2026/05/darksword-malware.html#vulnerabilities #Uncategorized #cybercrime #exploits #zero-day #malware #Apple #iOS
-
DarkSword Malware
DarkSword is a sophisticated piece of malware—probably government designed—that targets iOS.
Google Threat Intelligen... https://www.schneier.com/blog/archives/2026/05/darksword-malware.html#vulnerabilities #Uncategorized #cybercrime #exploits #zero-day #malware #Apple #iOS
-
DarkSword Malware
DarkSword is a sophisticated piece of malware—probably government designed—that targets iOS.
Google Threat Intelligen... https://www.schneier.com/blog/archives/2026/05/darksword-malware.html#vulnerabilities #Uncategorized #cybercrime #exploits #zero-day #malware #Apple #iOS
-
DarkSword Malware
DarkSword is a sophisticated piece of malware—probably government designed—that targets iOS.
Google Threat Intelligen... https://www.schneier.com/blog/archives/2026/05/darksword-malware.html#vulnerabilities #Uncategorized #cybercrime #exploits #zero-day #malware #Apple #iOS
-
#Disneyland Now Uses #FaceRecognition on Visitors
Plus: The #NSA tests Anthropic’s #Mythos Preview to find #vulnerabilities , a #Finnish teen is charged over the #ScatteredSpider #hacking spree, and more.
#privacy #security #anthropic #biometrics #ai -
Dangerous New #Linux #Exploit Gives Attackers #Root Access to Countless Computers
The exploit, dubbed #CopyFail and tracked as CVE-2026-31431, allows #hackers to take over PCs and data center #servers. The Linux #vulnerabilities have been patched—but many machines remain at risk.
#security #cve202631431 -
Lawmakers open inquiry into cybersecurity risks posed by PRC-origin AI models deployed in critical infrastructure systems The U.S. House Committee on Homeland Security and the House Select Committe...
#AI #Attacks #and #Vulnerabilities #Critical #infrastructure #Malware, #Phishing #& #Ransomware #News
Origin | Interest | Match -
MITRE flags rising cyber risks as medical devices adopt AI, cloud and post-quantum technologies https://www.byteseu.com/1974816/ #AI #Algorithms #cryptography #CyberRisk #cyberattacks #CybersecurityControls #CybersecurityRisk #CybersecurityThreats #HDOs #Healthcare #Medical #MedicalDevice #MedicalDeviceManufacturers #mitre #ML #QuantumComputing #RiskManagement #SBOM #Technology #ThreatLandscape #vulnerabilities
-
OT-ISAC flags rising energy sector cyber risk as OT exposure spreads beyond control rooms into distributed assets
The OT Cybersecurity Information Sharing and Analysis Center…
#Energy #accesspathway #BESS #cyberrisk #DERplatforms #Distributedenergy #energycyber #energycybersecurity #energygrid #energysector #engineeringworkstation #EVSE #industrialransomware #OCPP #OTsystems #OT-ISAC #PLCs #RemoteAccess #renewableenergy #RTUs #threatlandscape #vulnerabilities
https://www.europesays.com/2951314/ -
OT-ISAC flags rising energy sector cyber risk as OT exposure spreads beyond control rooms into distributed assets https://www.byteseu.com/1972028/ #AccessPathway #BESS #CyberRisk #DERPlatforms #DistributedEnergy #Energy #EnergyCyber #EnergyCybersecurity #EnergyGrid #EnergySector #EngineeringWorkstation #EVSE #IndustrialRansomware #OCPP #OTSystems #OTISAC #PLCs #RemoteAccess #RenewableEnergy #RTUs #ThreatLandscape #vulnerabilities
-
Microsoft issues emergency update for macOS and Linux ASP.NET threat
When authentication fails, things can go very, very wrong.
#asp.net #biz-&-it #microsoft #security #vulnerabilities #windows
https://arstechnica.com/security/2026/04/microsoft-issues-emergency-update-for-macos-and-linux-asp-net-threat/ -
🚨 Breaking: #NIST throws in the towel on enriching CVEs! 🎉 Because, why bother making #vulnerabilities understandable when we can just drown 'em in alphabet soup? 🍜💻 Clearly, "keep it simple" is a foreign concept. 🙄
https://risky.biz/risky-bulletin-nist-gives-up-enriching-most-cves/ #CVE #simplification #tech #news #cybersecurity #humor #HackerNews #ngated -
#Cal is moving its flagship #opensource programme to a #proprietary model due to the increasing threat of #AIhacking. The company believes that open-source code, while transparent, is now #vulnerable to #AI tools that can easily find #vulnerabilities. Despite this move, Cal remains committed to open source and has released Cal.diy, a fully open-source version for hobbyists. https://www.zdnet.com/article/ai-security-worries-force-company-to-abandon-open-source/?AIagents.at #AIagent #AI #ML #NLP #LLM #GenAI
-
N-Day-Bench – Can LLMs find real vulnerabilities in real codebases?
#HackerNews #NDayBench #LLM #vulnerabilities #codebases #cybersecurity #machinelearning
-
N-Day-Bench – Can LLMs find real vulnerabilities in real codebases?
#HackerNews #NDayBench #LLM #vulnerabilities #codebases #cybersecurity #machinelearning
-
N-Day-Bench – Can LLMs find real vulnerabilities in real codebases?
#HackerNews #NDayBench #LLM #vulnerabilities #codebases #cybersecurity #machinelearning
-
N-Day-Bench – Can LLMs find real vulnerabilities in real codebases?
#HackerNews #NDayBench #LLM #vulnerabilities #codebases #cybersecurity #machinelearning
-
N-Day-Bench – Can LLMs find real vulnerabilities in real codebases?
#HackerNews #NDayBench #LLM #vulnerabilities #codebases #cybersecurity #machinelearning
-
The pentest professionals at #usdHeroLab identified a vulnerability in #EntraID during a cloud #pentest that allows the circumvention of conditional access policies for privileged identities.
Two additional vulnerabilities were identified during a web application pentest of #Tenable Nessus Manager, which allow low-privileged users to read arbitrary files at the operating system level.
All #vulnerabilities were reported to the vendors as part of our Responsible Disclosure policy.
🔎 You can find detailed information on the #SecurityAdvisories here: https://www.usd.de/en/security-advisories-entra-id-tenable-nessus-manager/
#SecurityResearch #SecurityAdvisory #moresecurity #NessusManager #Pentesting #Hacking #CVE_2026_3493 #AppSec #InfoSec #CyberSecurity
-
DOE allocates $160 million to secure energy systems as cyber threats converge with grid modernization
The U.S. Department of Energy’s FY 2027 budget frames cybersecurity as a core pillar of national energy security,…
#Energy #AI #ceser #cyberattacks #cyberthreats #Cybersecurity #cybersecurityprotocol #Datacenters #DOE #energyinfrastructure #energysystems #FERC #gridmodernization #manufacturing #supplychain #vulnerabilities #zerotrust
https://www.europesays.com/2906733/ -
"The Big Bang: A.I. Has Created a #Code #Overload"
'... The sheer amount of code being delivered, and the increase in #vulnerabilities, is something they can’t keep up with ...'
#AI #VibeCoding #Security #AISlop
http://nytimes.com/2026/04/06/technology/ai-code-overload.html
-
Australia consults industry on reforms that would give authorities faster powers during critical infrastructure attacks https://www.byteseu.com/1910927/ #Australia #CriticalInfrastructureAttacks #CyberResilience #CyberThreats #CyberAttacks #NationalSecurity #SOCIAct #SupplyChain #telecommunications #ThreatLandscape #vulnerabilities
-
https://red.anthropic.com/2026/zero-days/ - #LLMs are good at finding #0Day #security #vulnerabilities. So now what?
-
Booz Allen warns AI‑driven cyberattacks outpace human-driven defenses across critical infrastructure A new report from Booz Allen Hamilton warns that cybersecurity is entering a ‘machine-speed...
#AI #Attacks #and #Vulnerabilities #Control #device #security #Critical #infrastructure #Industrial #Cyber
Origin | Interest | Match -
#Tesla exec tells Congress 'no one has ever' taken control of its vehicles — but that's not true
In 2017, security researcher #JasonHughes (aka #WK057) discovered #vulnerabilities that gave him access to “Mothership”, Tesla’s central server used to communicate with entire fleet.
Hughes was able to authenticate as any vehicle in Tesla’s fleet using just a #VIN. He had access to location data, vehicle info, and critically, the ability to send commands to any Tesla on road.
https://electrek.co/2026/02/06/tesla-exec-tells-congress-no-one-has-ever-taken-control-vehicles-but-thats-not-true/