⤷ Title: How I Made an AI Agent Write Its Own Backdoor (and execute it)
════════════════════════
𐀪 Author: RkVb
════════════════════════
ⴵ Time: Thu, 14 May 2026 21:42:52 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #hacking #ai #cybersecurity
════════════════════════
𐀪 Author: RkVb
════════════════════════
ⴵ Time: Thu, 14 May 2026 21:42:52 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #hacking #ai #cybersecurity
Medium
How I Made an AI Agent Write Its Own Backdoor (and execute it)
GetDot’s Root Context Agent built me a reverse shell and ran it. All I did was text.
⤷ Title: How I Turned a CVSS 10.0 Vulnerability into a Boardroom Business Case
════════════════════════
𐀪 Author: Ibrahim Olaniyi Abiodun
════════════════════════
ⴵ Time: Thu, 14 May 2026 22:39:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #penetration_testing #risk_management
════════════════════════
𐀪 Author: Ibrahim Olaniyi Abiodun
════════════════════════
ⴵ Time: Thu, 14 May 2026 22:39:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #penetration_testing #risk_management
Medium
How I Turned a CVSS 10.0 Vulnerability into a Boardroom Business Case
Why finding a CVSS 10.0 vulnerability is only half the job — and how I translated technical flaws into financial risk during my graduation…
⤷ Title: Agentic CVE Hunting — Part 1: How I Got My First CVEs
════════════════════════
𐀪 Author: Joshua Alwin
════════════════════════
ⴵ Time: Thu, 14 May 2026 22:15:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #open_source #llm #ethical_hacking #artificial_intelligence
════════════════════════
𐀪 Author: Joshua Alwin
════════════════════════
ⴵ Time: Thu, 14 May 2026 22:15:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #open_source #llm #ethical_hacking #artificial_intelligence
Medium
Agentic CVE Hunting — Part 1: How I Got My First CVEs
“Everyone’s talking about AI finding security bugs. Nobody’s showing what it actually looks like. This is what it actually looks like.”
⤷ Title: Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 00:57:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_42897 #Cyber Security #Exchange Server 2019 #Exploit in the Wild #infosec #Microsoft Exchange #Outlook Web Access #OWA #Patch Alert #Remote Code Execution #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 00:57:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_42897 #Cyber Security #Exchange Server 2019 #Exploit in the Wild #infosec #Microsoft Exchange #Outlook Web Access #OWA #Patch Alert #Remote Code Execution #zero_day
Daily CyberSecurity
Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
CVE-2026-42897 exploited in the wild. A 8.1 CVSS OWA flaw allows RCE via malicious emails. Verify your Exchange Emergency Mitigation (EM) status now!
⤷ Title: 79 Security Holes Sealed: Google Issues Urgent Chrome Update to Fix 14 “Critical” Vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 00:23:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #Chrome Update #Critical Vulnerability #CVE_2026_8509 #Cyber Security #google chrome #infosec #Patch Alert #Skia #use after free #WebML
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 00:23:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #Chrome Update #Critical Vulnerability #CVE_2026_8509 #Cyber Security #google chrome #infosec #Patch Alert #Skia #use after free #WebML
Daily CyberSecurity
79 Security Holes Sealed: Google Issues Urgent Chrome Update to Fix 14 "Critical" Vulnerabilities
Google Chrome patches 79 vulnerabilities, including 14 "Critical" RCE threats. Update to version 148.0.7778.167 now to protect your data and browser.
⤷ Title: Exploited in the Wild: Maximum CVSS 10 SD-WAN Flaw (CVE-2026-20182) Grants Admin Control
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 00:07:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Espionage #Cisco Catalyst #Cisco Talos #CVE_2026_20182 #CVSS 10 #Exploit in the Wild #infosec #NETCONF #Patch Alert #SD_WAN #UAT_8616 #XenShell #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 00:07:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Espionage #Cisco Catalyst #Cisco Talos #CVE_2026_20182 #CVSS 10 #Exploit in the Wild #infosec #NETCONF #Patch Alert #SD_WAN #UAT_8616 #XenShell #zero_day
Daily CyberSecurity
Exploited in the Wild: Maximum CVSS 10 SD-WAN Flaw (CVE-2026-20182) Grants Admin Control
Cisco Catalyst SD-WAN CVE-2026-20182 (CVSS 10) exploited in the wild. Attackers bypassing auth to seize admin control. Upgrade your network fabric now!
⤷ Title: The npm Supply Chain Attack That Hit TanStack — And the 4-Step Fix That Protects You
════════════════════════
𐀪 Author: Code Coup
════════════════════════
ⴵ Time: Thu, 14 May 2026 23:41:25 GMT
════════════════════════
⌗ Tags: #npm #hacking #npm_package #npm_supply_chain_attack #tanstack
════════════════════════
𐀪 Author: Code Coup
════════════════════════
ⴵ Time: Thu, 14 May 2026 23:41:25 GMT
════════════════════════
⌗ Tags: #npm #hacking #npm_package #npm_supply_chain_attack #tanstack
Medium
The npm Supply Chain Attack That Hit TanStack — And the 4-Step Fix That Protects You
Supply chain attacks on npm are accelerating. TanStack got hit. More will follow.
⤷ Title: I Opened Terminal on My Mac for the First Time. My Coworker Thought I Was Hacking the Pentagon.
════════════════════════
𐀪 Author: Seema Sabir
════════════════════════
ⴵ Time: Thu, 14 May 2026 23:05:09 GMT
════════════════════════
⌗ Tags: #programming #terminal #macos #hacking #coding
════════════════════════
𐀪 Author: Seema Sabir
════════════════════════
ⴵ Time: Thu, 14 May 2026 23:05:09 GMT
════════════════════════
⌗ Tags: #programming #terminal #macos #hacking #coding
Medium
I Opened Terminal on My Mac for the First Time. My Coworker Thought I Was Hacking the Pentagon.
I wasn’t. But I could have let him believe that. And honestly, for a second, I did.
⤷ Title: Write Up — Soupedecode
════════════════════════
𐀪 Author: Állan Rocha
════════════════════════
ⴵ Time: Thu, 14 May 2026 23:04:08 GMT
════════════════════════
⌗ Tags: #ctf #hacking #tryhackme #tryhackme_writeup #ctf_writeup
════════════════════════
𐀪 Author: Állan Rocha
════════════════════════
ⴵ Time: Thu, 14 May 2026 23:04:08 GMT
════════════════════════
⌗ Tags: #ctf #hacking #tryhackme #tryhackme_writeup #ctf_writeup
Medium
Write Up — Soupedecode
Soupedecode CTF: https://tryhackme.com/room/basicpentestingjt
⤷ Title: Apple Joins Google to Fight EU Mandate on Deep AI System Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:53:47 +0000
════════════════════════
⌗ Tags: #Technology #AI security #android #Apple #Apple Intelligence #Digital Markets Act #DMA #European Commission #Gemini #google #ios #Privacy Risks #Tech Regulation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:53:47 +0000
════════════════════════
⌗ Tags: #Technology #AI security #android #Apple #Apple Intelligence #Digital Markets Act #DMA #European Commission #Gemini #google #ios #Privacy Risks #Tech Regulation
Daily CyberSecurity
Apple Joins Google to Fight EU Mandate on Deep AI System Access
Apple and Google form a rare alliance to block an EU mandate. Discover why Apple is fighting to stop third-party AI from accessing Android’s core architecture.
⤷ Title: cPanel & WHM Patch 5 High-Severity Flaws, Including 8.6 Severity File Read and SQLi
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:22:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Read #CPanel #CVE_2026_29205 #CVE_2026_29206 #Cyber Security #infosec #Patch Alert #Server Security #sql injection #WHM #WP Squared
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:22:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Read #CPanel #CVE_2026_29205 #CVE_2026_29206 #Cyber Security #infosec #Patch Alert #Server Security #sql injection #WHM #WP Squared
Daily CyberSecurity
cPanel & WHM Patch 5 High-Severity Flaws, Including 8.6 Severity File Read and SQLi
cPanel & WHM fix 5 critical vulnerabilities (CVE-2026-29205). Fixes for arbitrary file read, SQLi, and privilege escalation are now live. Update now!
⤷ Title: No Password Required: 9.8 Severity ELECOM Router Flaws Allow Total Network Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:02:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_40621 #CVE_2026_42062 #Cyber Security #ELECOM #infosec #os command injection #Patch Alert #router security #WAB_BE Series #WRC_X Series
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:02:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_40621 #CVE_2026_42062 #Cyber Security #ELECOM #infosec #os command injection #Patch Alert #router security #WAB_BE Series #WRC_X Series
Daily CyberSecurity
No Password Required: 9.8 Severity ELECOM Router Flaws Allow Total Network Takeover
ELECOM routers hit by critical 9.8 CVSS flaws (CVE-2026-42062). Unauthenticated attackers can execute OS commands and bypass auth. Update firmware now!
⤷ Title: Cisco SD-WAN Manager XXE Flaw Grants Unauthenticated Access to Private Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:46:10 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cisco Catalyst #Cisco Security #CVE_2026_20224 #Information Disclosure #infosec #network_security #Patch Alert #privilege escalation #SD_WAN Manager #vManage #XXE Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:46:10 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cisco Catalyst #Cisco Security #CVE_2026_20224 #Information Disclosure #infosec #network_security #Patch Alert #privilege escalation #SD_WAN Manager #vManage #XXE Injection
Daily CyberSecurity
Cisco SD-WAN Manager XXE Flaw Grants Unauthenticated Access to Private Files
Cisco fixes a critical 8.6 CVSS XXE flaw (CVE-2026-20224) in Catalyst SD-WAN Manager. Unauthenticated attackers can read arbitrary files. Patch now!
⤷ Title: Critical 9.2 CVSS RCE Found in Amazon Redshift JDBC Driver
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:36:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Amazon Redshift #aws security #CVE_2026_8178 #Cyber Security #Data Warehouse #database security #infosec #Java security #JDBC Driver #Patch Alert #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:36:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Amazon Redshift #aws security #CVE_2026_8178 #Cyber Security #Data Warehouse #database security #infosec #Java security #JDBC Driver #Patch Alert #rce
Daily CyberSecurity
Critical 9.2 CVSS RCE Found in Amazon Redshift JDBC Driver
CVE-2026-8178 in Amazon Redshift JDBC Driver allows RCE via unsafe class loading. Protect your data warehouse and update to version 2.2.2 now!
⤷ Title: Critical 9.4 CVSS pgAdmin 4 Flaws Enable Full OS Command Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:20:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authorization Bypass #CVE_2026_7813 #Cyber Security #database security #infosec #Patch Alert #pgAdmin 4 #pgAdmin 9.15 #PostgreSQL #rce #sql injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:20:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authorization Bypass #CVE_2026_7813 #Cyber Security #database security #infosec #Patch Alert #pgAdmin 4 #pgAdmin 9.15 #PostgreSQL #rce #sql injection
Daily CyberSecurity
Critical 9.4 CVSS pgAdmin 4 Flaws Enable Full OS Command Execution
pgAdmin 4 v9.15 fixes a 9.4 CVSS auth bypass and multiple RCE flaws. Attackers can execute OS commands via SQL tools. Upgrade your pgAdmin server now!
⤷ Title: Kubernetes Alert: 9.4 Severity RCE in CloudNativePG Enables PostgreSQL Superuser Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:01:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cloud_native #CloudNativePG #CVE_2026_44477 #database security #infosec #Kubernetes Security #Patch Alert #PostgreSQL #privilege escalation #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 01:01:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cloud_native #CloudNativePG #CVE_2026_44477 #database security #infosec #Kubernetes Security #Patch Alert #PostgreSQL #privilege escalation #rce
Daily CyberSecurity
Kubernetes Alert: 9.4 Severity RCE in CloudNativePG Enables PostgreSQL Superuser Takeover
CVE-2026-44477 in CloudNativePG allows low-privilege users to gain root-level RCE via metrics exporters. Update to version 1.29.1 or 1.28.3 now!
⤷ Title: Prompt Injection : Tryhackme Walkthrough
════════════════════════
𐀪 Author: Mukund
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:25:13 GMT
════════════════════════
⌗ Tags: #tryhackme #agentic_ai #cybersecurity #llm #ai_security
════════════════════════
𐀪 Author: Mukund
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:25:13 GMT
════════════════════════
⌗ Tags: #tryhackme #agentic_ai #cybersecurity #llm #ai_security
Medium
Prompt Injection : Tryhackme Walkthrough
If you’ve explored the field of AI security, even at a surface level, before taking on this learning path or room, it’s very likely you…
⤷ Title: BAADTokenBroker Abuses Microsoft Entra ID Device-Bound Keys for PRT Hijacking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:49:46 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Azure AD #BAADTokenBroker #cloud security #Device_Bound Keys #Kerberos #Microsoft Entra ID #NT Hash #post_exploitation #PRT Cookie #red teaming #TGT
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:49:46 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Azure AD #BAADTokenBroker #cloud security #Device_Bound Keys #Kerberos #Microsoft Entra ID #NT Hash #post_exploitation #PRT Cookie #red teaming #TGT
Penetration Testing Tools
BAADTokenBroker Abuses Microsoft Entra ID Device-Bound Keys for PRT Hijacking
Master Microsoft Entra ID post-exploitation with BAADTokenBroker. Learn how to request PRT cookies and abuse Entra Kerberos to acquire TGTs and NT hashes.
⤷ Title: From Lost to Found: How Claude AI Helped a Student Recover $400,000 in Forgotten Bitcoin After 11 Years
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:20:41 +0000
════════════════════════
⌗ Tags: #Technology #5 BTC #Anthropic #Bitcoin Recovery #Blockchain Forensic #BTC Wallet #BTCRecover #Claude AI #cryptocurrency security #Lost Crypto Password #Wallet.dat
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:20:41 +0000
════════════════════════
⌗ Tags: #Technology #5 BTC #Anthropic #Bitcoin Recovery #Blockchain Forensic #BTC Wallet #BTCRecover #Claude AI #cryptocurrency security #Lost Crypto Password #Wallet.dat
Penetration Testing Tools
From Lost to Found: How Claude AI Helped a Student Recover $400,000 in Forgotten Bitcoin After 11 Years
An antiquated laptop from one’s collegiate years may occasionally harbor more than mere vestiges of social gatherings; it
⤷ Title: The $10.5 Billion Shield: How Binance AI Thwarted 22 Million Cyberattacks in a Single Year
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:19:48 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Fraud Prevention #Binance #Binance AI Pro #Blockchain Intelligence #Crypto Security #Cybersecurity 2026 #Deepfake Detection #KYC AI #P2P Fraud #Social Engineering Defense
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:19:48 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Fraud Prevention #Binance #Binance AI Pro #Blockchain Intelligence #Crypto Security #Cybersecurity 2026 #Deepfake Detection #KYC AI #P2P Fraud #Social Engineering Defense
Penetration Testing Tools
The $10.5 Billion Shield: How Binance AI Thwarted 22 Million Cyberattacks in a Single Year
Adversaries are increasingly weaponizing artificial intelligence to orchestrate sophisticated offensives against participants in the cryptocurrency ecosystem. The synthesis
⤷ Title: The Rise of the Oligopoly: How Qilin, LockBit, and The Gentlemen Dominate the 2026 Ransomware Landscape
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:15:59 +0000
════════════════════════
⌗ Tags: #Malware #Akira #Check Point Research #cybercrime trends #FortiGate CVE_2024_55591 #Industrial Manufacturing Security #LockBit 5.0 #Qilin #Ransomware 2026 #The Gentlemen #threat intelligence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 15 May 2026 02:15:59 +0000
════════════════════════
⌗ Tags: #Malware #Akira #Check Point Research #cybercrime trends #FortiGate CVE_2024_55591 #Industrial Manufacturing Security #LockBit 5.0 #Qilin #Ransomware 2026 #The Gentlemen #threat intelligence
Penetration Testing Tools
The Rise of the Oligopoly: How Qilin, LockBit, and The Gentlemen Dominate the 2026 Ransomware Landscape
The ransomware landscape is undergoing a period of significant consolidation as major syndicates reassert their dominance. After two