⤷ Title: CVE-2025-32444 (CVSS 10): Critical RCE Flaw in vLLM’s Mooncake Integration Exposes AI Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 01 May 2025 00:35:37 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Infrastructure #CVE_2025_32444 #LLM Security #Mooncake Integration #Open Source Security #Python Pickle #Remote Code Execution #vLLM #ZeroMQ
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 01 May 2025 00:35:37 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Infrastructure #CVE_2025_32444 #LLM Security #Mooncake Integration #Open Source Security #Python Pickle #Remote Code Execution #vLLM #ZeroMQ
Daily CyberSecurity
CVE-2025-32444 (CVSS 10): Critical RCE Flaw in vLLM’s Mooncake Integration Exposes AI Infrastructure
CVE-2025-32444 exposes vLLM’s Mooncake integration to RCE via insecure pickle deserialization over ZeroMQ. Patch to v0.8.5 now.
⤷ Title: Critical CVSS 9.8 RCE Flaw in vLLM Exposes AI Hosts to Remote Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:43:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI security #CVE_2025_47277 #CVSS 9.8 #LLM infrastructure #PyNcclPipe #Python Pickle #Remote Code Execution #UC Berkeley #unsafe deserialization #vLLM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:43:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI security #CVE_2025_47277 #CVSS 9.8 #LLM infrastructure #PyNcclPipe #Python Pickle #Remote Code Execution #UC Berkeley #unsafe deserialization #vLLM
Daily CyberSecurity
Critical CVSS 9.8 RCE Flaw in vLLM Exposes AI Hosts to Remote Attacks
Critical CVSS 9.8 flaw in vLLM allows remote code execution via PyNcclPipe. Patch to 0.8.5 now to protect your AI infrastructure.
⤷ Title: [TryHackMe] Voyage
════════════════════════
𐀪 Author: digistam
════════════════════════
ⴵ Time: Sat, 20 Sep 2025 14:20:32 GMT
════════════════════════
⌗ Tags: #python_pickle #ctf #tryhackme
════════════════════════
𐀪 Author: digistam
════════════════════════
ⴵ Time: Sat, 20 Sep 2025 14:20:32 GMT
════════════════════════
⌗ Tags: #python_pickle #ctf #tryhackme
Medium
[TryHackMe] Voyage
This writing is to help me solving the challenges in the Voyage room. The room is rated ‘Medium’ in difficulty, though I personally found…
⤷ Title: Double Agents in the Cloud: Unit 42 Unmasks Critical AI Vulnerabilities in Google Vertex AI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 08:16:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #data exfiltration #Double Agents #GCP Security #Google Cloud Platform #infosec #P4SA #Python Pickle #rce #Service Accounts #Unit 42 #Vertex AI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 08:16:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #data exfiltration #Double Agents #GCP Security #Google Cloud Platform #infosec #P4SA #Python Pickle #rce #Service Accounts #Unit 42 #Vertex AI
Daily CyberSecurity
Double Agents in the Cloud: Unit 42 Unmasks Critical AI Vulnerabilities in Google Vertex AI
Unit 42 reveals how GCP Vertex AI agents can become "double agents," exfiltrating data and accessing Google’s internal code. Learn why BYOSA is essential.