⤷ Title: Unpatched SGLang Vulnerabilities (CVE-2026-7301) Expose AI Inference Pipelines to RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 01:25:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #artificial intelligence #CVE_2026_7301 #CVE_2026_7302 #CVE_2026_7304 #DeepSeek #infosec #Path Traversal #Pickle Deserialization #Remote Code Execution #SGLang #ZeroMQ
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 01:25:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #artificial intelligence #CVE_2026_7301 #CVE_2026_7302 #CVE_2026_7304 #DeepSeek #infosec #Path Traversal #Pickle Deserialization #Remote Code Execution #SGLang #ZeroMQ
Daily CyberSecurity
Unpatched SGLang Vulnerabilities (CVE-2026-7301) Expose AI Inference Pipelines to RCE
CERT/CC warns of unpatched critical flaws in SGLang (CVE-2026-7301) exposing AI inference models to unauthenticated RCE. Restrict your ports now!
⤷ Title: Critical RCE Exploits Exposed: Apache OFBiz Patches Severe Authentication Bypass Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 01:01:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache OFBiz #Authentication Bypass #CVE_2026_31378 #CVE_2026_45434 #Cyber Security #infosec #JSON Attribute Manipulation #Patch Alert #Remote Code Execution #Server Side Template Injection #ssti
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 01:01:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache OFBiz #Authentication Bypass #CVE_2026_31378 #CVE_2026_45434 #Cyber Security #infosec #JSON Attribute Manipulation #Patch Alert #Remote Code Execution #Server Side Template Injection #ssti
Daily CyberSecurity
Critical RCE Exploits Exposed: Apache OFBiz Patches Severe Authentication Bypass Flaws
Apache OFBiz releases version 24.09.06 to patch severe RCE flaws, token forgery, and a critical password-reset authentication bypass. Upgrade now!
⤷ Title: Aaj ek aur serious cybersecurity issue samne aayi hai: OpenClaw skills ke through malicious RATs…
════════════════════════
𐀪 Author: Muhammad Hamza
════════════════════════
ⴵ Time: Thu, 21 May 2026 02:06:21 GMT
════════════════════════
⌗ Tags: #ai_agent #openclaw #hacking #ai
════════════════════════
𐀪 Author: Muhammad Hamza
════════════════════════
ⴵ Time: Thu, 21 May 2026 02:06:21 GMT
════════════════════════
⌗ Tags: #ai_agent #openclaw #hacking #ai
Medium
Aaj ek aur serious cybersecurity issue samne aayi hai: OpenClaw skills ke through malicious RATs…
Aaj ek aur serious cybersecurity issue samne aayi hai: OpenClaw skills ke through malicious RATs aur info-stealers deploy kiye ja rahe hain. Masla sirf malware ka nahi, masla trust ka hai. Jab AI …
⤷ Title: HTB Web Attacks - Skill Assessment
════════════════════════
𐀪 Author: ZeroByte
════════════════════════
ⴵ Time: Thu, 21 May 2026 02:58:01 GMT
════════════════════════
⌗ Tags: #hackthebox_walkthrough #xxe #penetration_testing #cybersecurity #idor
════════════════════════
𐀪 Author: ZeroByte
════════════════════════
ⴵ Time: Thu, 21 May 2026 02:58:01 GMT
════════════════════════
⌗ Tags: #hackthebox_walkthrough #xxe #penetration_testing #cybersecurity #idor
Medium
HTB Web Attacks - Skill Assessment
Chaining IDOR, HTTP Verb Tampering, and XXE for Flag Exfiltration
⤷ Title: GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 09:57:01 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 09:57:01 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 09:14:11 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 09:14:11 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Ecosystem Evolution: Google Unveils “Continue On” in Android 17 to Match Apple’s Handoff
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:46:30 +0000
════════════════════════
⌗ Tags: #Android #Android 17 Continue On #Android PC Ecosystem Parity #Android Software Fragmentation #Apple Handoff Android Version #Bidirectional App State Migration #Cross Device App Continuity #Google IO 2026 #Pixel Launcher Taskbar #Progressive Web App Fallback #WebRTC Encoded Intent
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:46:30 +0000
════════════════════════
⌗ Tags: #Android #Android 17 Continue On #Android PC Ecosystem Parity #Android Software Fragmentation #Apple Handoff Android Version #Bidirectional App State Migration #Cross Device App Continuity #Google IO 2026 #Pixel Launcher Taskbar #Progressive Web App Fallback #WebRTC Encoded Intent
Daily CyberSecurity
Ecosystem Evolution: Google Unveils "Continue On" in Android 17 to Match Apple’s Handoff
Google introduces "Continue On" at I/O 2026, an Android 17 cross-device framework providing seamless, bidirectional app handoffs between phones and tablets.
⤷ Title: The Free-for-Life Eviction: Google Triggers Outrage by Forcing Legacy G Suite Family Domains to Paid Plans
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:40:26 +0000
════════════════════════
⌗ Tags: #Technology #Algorithmic False Positive #Commercial Reclassification #Custom Domain Email #Data Backup Drive #Family Domain Eviction #G Suite Legacies 2026 #G Suite Legacy Free #Google Admin Console Appeal #Google Workspace Upgrade #Personal Non_Commercial Use Policy
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:40:26 +0000
════════════════════════
⌗ Tags: #Technology #Algorithmic False Positive #Commercial Reclassification #Custom Domain Email #Data Backup Drive #Family Domain Eviction #G Suite Legacies 2026 #G Suite Legacy Free #Google Admin Console Appeal #Google Workspace Upgrade #Personal Non_Commercial Use Policy
Daily CyberSecurity
The Free-for-Life Eviction: Google Triggers Outrage by Forcing Legacy G Suite Family Domains to Paid Plans
Google sparks widespread dissent by unilaterally reclassifying personal legacy G Suite free accounts as commercial, forcing a paid Workspace upgrade.
⤷ Title: The AI Flood That’s Killing Bug Bounty — And the Hidden Reason Nobody Is Talking About
By Adil Ali
════════════════════════
𐀪 Author: Adil Alee
════════════════════════
ⴵ Time: Thu, 21 May 2026 03:02:07 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #bug_bounty #infosec #cybersecurity #ethical_hacking
By Adil Ali
════════════════════════
𐀪 Author: Adil Alee
════════════════════════
ⴵ Time: Thu, 21 May 2026 03:02:07 GMT
════════════════════════
⌗ Tags: #artificial_intelligence #bug_bounty #infosec #cybersecurity #ethical_hacking
Medium
The AI Flood That’s Killing Bug Bounty — And the Hidden Reason Nobody Is Talking About
By Adil Ali
By Adil Ali
The bug bounty ecosystem is in crisis.
HackerOne paused its Internet Bug Bounty program in March 2026. The cURL project abandoned monetary…
HackerOne paused its Internet Bug Bounty program in March 2026. The cURL project abandoned monetary…
⤷ Title: Linux Capture The Flag Bandit Level 15
════════════════════════
𐀪 Author: Red
════════════════════════
ⴵ Time: Thu, 21 May 2026 03:07:00 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity #infosec #hacking #linux
════════════════════════
𐀪 Author: Red
════════════════════════
ⴵ Time: Thu, 21 May 2026 03:07:00 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity #infosec #hacking #linux
Medium
Linux Capture The Flag Bandit Level 15
SSL/TLS Encryption and OpenSSL
⤷ Title: Silver Fox’s Fangs: ValleyRAT’s Kernel RootKit and the RustSL Phishing Wave Hitting India
════════════════════════
𐀪 Author: dannyDUD
════════════════════════
ⴵ Time: Thu, 21 May 2026 03:36:04 GMT
════════════════════════
⌗ Tags: #malware #cybersecurity #infosec #threat_intelligence #india
════════════════════════
𐀪 Author: dannyDUD
════════════════════════
ⴵ Time: Thu, 21 May 2026 03:36:04 GMT
════════════════════════
⌗ Tags: #malware #cybersecurity #infosec #threat_intelligence #india
Medium
Silver Fox’s Fangs: ValleyRAT’s Kernel RootKit and the RustSL Phishing Wave Hitting India
TL;DR
⤷ Title: BIOHAZARD WALKTHROUGH | TRYHACKME
════════════════════════
𐀪 Author: ANWAR1
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:43:05 GMT
════════════════════════
⌗ Tags: #tryhackme #biohazard #ethical_hacking #cybersecurity #ctf
════════════════════════
𐀪 Author: ANWAR1
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:43:05 GMT
════════════════════════
⌗ Tags: #tryhackme #biohazard #ethical_hacking #cybersecurity #ctf
Medium
BIOHAZARD WALKTHROUGH | TRYHACKME
TASK 1 — INTRODUCTION
⤷ Title: SlingShot Tryhackme Investigation Walkthrough
════════════════════════
𐀪 Author: Dhruv Bhatia
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:00:44 GMT
════════════════════════
⌗ Tags: #ctf_walkthrough #ctf_writeup #elasticsearch #tryhackme
════════════════════════
𐀪 Author: Dhruv Bhatia
════════════════════════
ⴵ Time: Thu, 21 May 2026 04:00:44 GMT
════════════════════════
⌗ Tags: #ctf_walkthrough #ctf_writeup #elasticsearch #tryhackme
Medium
SlingShot Tryhackme Investigation Walkthrough
Slingshot room is a must practice CTF for an Aspiring SOC Analyst who perform log investigations and investigate the security incidents…
⤷ Title: ChromaToast Exploit: Unpatched CVSS 10.0 Flaw Grants Pre-Auth RCE in ChromaDB Python Server
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:59:37 +0000
════════════════════════
⌗ Tags: #Vulnerability #ChromaDB CVE_2026_45829 #HiddenLayer ChromaToast Research #Hugging Face Model Hijacking #Pre_Authentication Code Injection #Python FastAPI Server Vulnerability #Rust Implementation Mitigation #Shodan Internet Exposure #trust_remote_code Parameter #Unpatched Remote Code Execution #Vector Database Exploit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:59:37 +0000
════════════════════════
⌗ Tags: #Vulnerability #ChromaDB CVE_2026_45829 #HiddenLayer ChromaToast Research #Hugging Face Model Hijacking #Pre_Authentication Code Injection #Python FastAPI Server Vulnerability #Rust Implementation Mitigation #Shodan Internet Exposure #trust_remote_code Parameter #Unpatched Remote Code Execution #Vector Database Exploit
Penetration Testing Tools
ChromaToast Exploit: Unpatched CVSS 10.0 Flaw Grants Pre-Auth RCE in ChromaDB Python Server
A critical authentication bypass vulnerability facilitating unauthenticated remote code execution (RCE) has been isolated within the ChromaDB architecture.
⤷ Title: The Silent Blackout: Unpatched Huawei Router Zero-Day Crushed Luxembourg’s Telecom Grid
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:54:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Carrier Grade Networking #Core Switching Fabric #Denial of Service Exploit #European CERT IoCs #Firmware Reboot Loop #Huawei Enterprise Routing Hardware #POST Luxembourg Telecom Collapse #Recorded Future News Threat Intel #Restricted Advisory Portal #zero_day vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:54:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Carrier Grade Networking #Core Switching Fabric #Denial of Service Exploit #European CERT IoCs #Firmware Reboot Loop #Huawei Enterprise Routing Hardware #POST Luxembourg Telecom Collapse #Recorded Future News Threat Intel #Restricted Advisory Portal #zero_day vulnerability
Penetration Testing Tools
The Silent Blackout: Unpatched Huawei Router Zero-Day Crushed Luxembourg’s Telecom Grid
During the previous summer season, the sovereign nation of Luxembourg suffered a catastrophic, near-total collapse of its domestic
⤷ Title: Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
Daily CyberSecurity
Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
Rapid7 Labs exposes how attackers are abusing Microsoft Teams external access and Dumpit memory scrapers to breach corporate networks. Protect your team!
⤷ Title: How an Android App’s Misconfigured Firebase Database Exposed Sensitive Data
════════════════════════
𐀪 Author: Athultpme
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:41:43 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #mobile #web_security
════════════════════════
𐀪 Author: Athultpme
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:41:43 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #mobile #web_security
Medium
How an Android App’s Misconfigured Firebase Database Exposed Sensitive Data
Mobile Security | Android | Firebase | Cybsersecurity
⤷ Title: How a College Website’s REST API Exposed Its Entire Attack Surface — User Enumeration…
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:23:10 GMT
════════════════════════
⌗ Tags: #offensive_security #hunting #wordpress #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:23:10 GMT
════════════════════════
⌗ Tags: #offensive_security #hunting #wordpress #bug_bounty #cybersecurity
Medium
How a College Website’s REST API Exposed Its Entire Attack Surface — User Enumeration…
By Padmesh P S | Cybersecurity Researcher | 6 min read | Severity: High/Critical
⤷ Title: Cryptographic Failures — The #4 Vulnerability on the Web
════════════════════════
𐀪 Author: loopXvedant
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:31:00 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #owasp_top_10 #hacking #cybersecurity
════════════════════════
𐀪 Author: loopXvedant
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:31:00 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #owasp_top_10 #hacking #cybersecurity
Medium
Cryptographic Failures — The #4 Vulnerability on the Web 🔐
When encryption is missing, weak, or just plain wrong — your data is already exposed.
⤷ Title: REASONING vs RULES : Part 2 — The Feedback Engine: How the Colosseum Learns Faster Than Threats…
════════════════════════
𐀪 Author: Vishnu Priya Vangipuram
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:53:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #artificial_intelligence #ai_agent #application_security #distributed_systems
════════════════════════
𐀪 Author: Vishnu Priya Vangipuram
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:53:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #artificial_intelligence #ai_agent #application_security #distributed_systems
Medium
REASONING vs RULES : Part 2 — The Feedback Engine: How the Colosseum Learns Faster Than Threats Evolve
In Part 1 of the blog series, The arena was set. Now we start building the engine that wins.
⤷ Title: ZPHISHER HANDS ON LAB
════════════════════════
𐀪 Author: BlueTeamMal
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:56:45 GMT
════════════════════════
⌗ Tags: #social_engineering #hacking #cybersecurity
════════════════════════
𐀪 Author: BlueTeamMal
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:56:45 GMT
════════════════════════
⌗ Tags: #social_engineering #hacking #cybersecurity
Medium
ZPHISHER HANDS ON LAB
1.I used Zphisher as it’s the one of the simplest tool for social engineering.