Throwing a spark into FuelCMS (0-click RCE)
https://ift.tt/N9Jxrnm
Submitted March 11, 2026 at 05:34PM by AdAccording4827
via reddit https://ift.tt/1i4m7Q9
https://ift.tt/N9Jxrnm
Submitted March 11, 2026 at 05:34PM by AdAccording4827
via reddit https://ift.tt/1i4m7Q9
Sigma rules engine inside the Linux kernel
https://cybereason-public.github.io/owLSM/
Submitted March 11, 2026 at 05:17PM by Sea_Warthog_4431
via reddit https://ift.tt/1QNA9Lp
https://cybereason-public.github.io/owLSM/
Submitted March 11, 2026 at 05:17PM by Sea_Warthog_4431
via reddit https://ift.tt/1QNA9Lp
Reddit
From the netsec community on Reddit: [ Removed by moderator ]
Posted by Sea_Warthog_4431 - 1 vote and 0 comments
Red-Run - Claude CTF Automation
https://ift.tt/PENpUa7
Submitted March 11, 2026 at 07:53PM by aconite33
via reddit https://ift.tt/WF1KOVx
https://ift.tt/PENpUa7
Submitted March 11, 2026 at 07:53PM by aconite33
via reddit https://ift.tt/WF1KOVx
Blacklanternsecurity
red-run
All work and no tokens makes Claude a dull boy...
PromptSonar — open source static analyzer for LLM prompt injection, jailbreaks, and OWASP LLM Top 10 vulnerabilities in source code
https://ift.tt/twa9SkM
Submitted March 11, 2026 at 07:49PM by meghal86
via reddit https://ift.tt/6uXa01s
https://ift.tt/twa9SkM
Submitted March 11, 2026 at 07:49PM by meghal86
via reddit https://ift.tt/6uXa01s
Visualstudio
PromptSonar - Visual Studio Marketplace
Extension for Visual Studio Code - Static scanner for prompt injection (OWASP LLM01), API key leaks & jailbreaks in code. Local, fast, no LLM calls.
Common architectural pattern across four Q1 2026 AI assistant vulnerabilities (CVE-2026-26144, CVE-2026-0628, CVE-2026-24307, PleaseFix)
https://ift.tt/wvnMt1i
Submitted March 11, 2026 at 07:36PM by LostPrune2143
via reddit https://ift.tt/Unik295
https://ift.tt/wvnMt1i
Submitted March 11, 2026 at 07:36PM by LostPrune2143
via reddit https://ift.tt/Unik295
blog.barrack.ai
Your AI Copilot Is the Newest Attack Surface | Barrack AI
Four AI assistant vulnerabilities in Q1 2026 prove that Copilot, Gemini, and Perplexity Comet have become weaponizable attack vectors. Technical analysis of CVE-2026-26144, CVE-2026-0628, CVE-2026-24307, and PleaseFix.
CFP: NaClCON 2026 – Conference on the History of Hacking (May 31 – June 2, Carolina Beach, NC)
https://naclcon.com/cfp
Submitted March 12, 2026 at 12:47AM by count_zero_moustafa
via reddit https://ift.tt/lFkX07M
https://naclcon.com/cfp
Submitted March 12, 2026 at 12:47AM by count_zero_moustafa
via reddit https://ift.tt/lFkX07M
NaCICON
NaClCON - The History of Hacking/Cybersecurity Conference - CFP | NaCICON
Call for Papers - What we are looking for, What you get, and Submission Guidelines for NaClCON.
Forensic analysis of LummaC2 infection unmasks DPRK operative behind Polyfill.io supply chain attack and Gate.us infiltration
https://ift.tt/ZE9lvNa
Submitted March 12, 2026 at 07:49AM by Malwarebeasts
via reddit https://ift.tt/GQ52vod
https://ift.tt/ZE9lvNa
Submitted March 12, 2026 at 07:49AM by Malwarebeasts
via reddit https://ift.tt/GQ52vod
Hudson Rock
Hudson Rock - Infostealer Intelligence Solutions
Powered by Hudson Rock's continuously augmented cybercrime database, composed of millions of machines compromised by Infostealers in global malware spreading campaigns.
Netsec mods unnecessarily blocking security News posted by US
https://ift.tt/6fUVKpX
Submitted March 12, 2026 at 11:06AM by Think-Inspection-291
via reddit https://ift.tt/Bh9aL2i
https://ift.tt/6fUVKpX
Submitted March 12, 2026 at 11:06AM by Think-Inspection-291
via reddit https://ift.tt/Bh9aL2i
Alipay (1B+ users) DeepLink+JSBridge Attack Chain: Silent GPS Exfiltration, 6 CVEs (CVSS 9.3)
https://innora.ai/zfb/
Submitted March 12, 2026 at 01:56PM by feng_sg
via reddit https://ift.tt/v27prnA
https://innora.ai/zfb/
Submitted March 12, 2026 at 01:56PM by feng_sg
via reddit https://ift.tt/v27prnA
innora.ai
Alipay DeepLink Attack Surface: One Link to Rule Them All
17 verified security issues. 3 devices. 308 exfiltration logs. Full responsible disclosure.
MicroStealer Analysis: A Fast-Spreading Infostealer with Limited Detection
https://any.run/cybersecurity-blog/microstealer-technical-analysis/?utm_source=reddit
Submitted March 12, 2026 at 03:46PM by malwaredetector
via reddit https://ift.tt/MewF1tZ
https://any.run/cybersecurity-blog/microstealer-technical-analysis/?utm_source=reddit
Submitted March 12, 2026 at 03:46PM by malwaredetector
via reddit https://ift.tt/MewF1tZ
ANY.RUN's Cybersecurity Blog
MicroStealer: Emerging Infostealer Targeting Corporate Credentials
Explore how MicroStealer operates, what risks it creates for enterprises, and how ANY.RUN helps security teams detect it faster.
CVE-2026-21509: Actively Exploited Microsoft Office Security Feature Bypass — PoC Public, CISA KEV Listed
https://ift.tt/FLMsDGi
Submitted March 12, 2026 at 05:10PM by Sarah_Cross
via reddit https://ift.tt/CZSuTWL
https://ift.tt/FLMsDGi
Submitted March 12, 2026 at 05:10PM by Sarah_Cross
via reddit https://ift.tt/CZSuTWL
Fidelis Security
CVE-2026-21509: Microsoft Office Security Flaw | Fidelis Security
Learn how CVE-2026-21509 exploits untrusted inputs to bypass Microsoft Office security protections and what mitigation steps to take...
MCP is becoming a major attack surface here's what we built to govern it
https://assury.ai
Submitted March 12, 2026 at 06:50PM by EbbCommon9300
via reddit https://ift.tt/H91QKEF
https://assury.ai
Submitted March 12, 2026 at 06:50PM by EbbCommon9300
via reddit https://ift.tt/H91QKEF
assury.ai
Assury - AI Agent Governance & Compliance
Zero-Trust Autonomy Control for AI Agents. The first control plane that governs entire multi-step agent workflows.
We used GenAI to find 38 vulnerabilities in consumer robots in ~7 hours
https://ift.tt/0xKyBEW
Submitted March 12, 2026 at 08:00PM by Obvious-Language4462
via reddit https://ift.tt/8HJf0E1
https://ift.tt/0xKyBEW
Submitted March 12, 2026 at 08:00PM by Obvious-Language4462
via reddit https://ift.tt/8HJf0E1
Findings Gadgets Like it’s 2026
https://ift.tt/ox4Uiyw
Submitted March 12, 2026 at 10:52PM by breen-machine
via reddit https://ift.tt/aOoSi5u
https://ift.tt/ox4Uiyw
Submitted March 12, 2026 at 10:52PM by breen-machine
via reddit https://ift.tt/aOoSi5u
Atredis Partners
Findings Gadgets Like it’s 2026 — Atredis Partners
Secrets are Rare not Random
https://ift.tt/fWTO2Pz
Submitted March 12, 2026 at 10:29PM by Phorcez
via reddit https://ift.tt/zWCEq7P
https://ift.tt/fWTO2Pz
Submitted March 12, 2026 at 10:29PM by Phorcez
via reddit https://ift.tt/zWCEq7P
Substack
Rare Not Random
Using Token Efficiency for Secrets Scanning
Co-Pilot, Disengage Autophish: The New Phishing Surface Hiding Inside AI Email Summaries
https://ift.tt/dfFgQLC
Submitted March 12, 2026 at 11:30PM by permis0
via reddit https://ift.tt/hvbZYg0
https://ift.tt/dfFgQLC
Submitted March 12, 2026 at 11:30PM by permis0
via reddit https://ift.tt/hvbZYg0
permiso.io
CO-PILOT, DISENGAGE AUTOPHISH: The New Phishing Surface Hiding Inside AI Email Summaries
Our latest research shows how Microsoft Copilot email summaries can be manipulated by attackers, creating new phishing risks through trusted AI-generated interfaces.
I Hacked My Laundry Card. Here's What I Learned.
https://ift.tt/BoGFVsh
Submitted March 13, 2026 at 01:49AM by FunBrilliant5713
via reddit https://ift.tt/JgD1emi
https://ift.tt/BoGFVsh
Submitted March 13, 2026 at 01:49AM by FunBrilliant5713
via reddit https://ift.tt/JgD1emi
hanzilla.co
I Hacked My Laundry Card. Here's What I Learned. | Hanzilla
A CS student's experience using a Flipper Zero and AI to reverse-engineer an NFC laundry card, and some thoughts on what it means for systems like these.
Betterleaks: The Gitleaks Successor Built for Faster Secrets Scanning
https://ift.tt/rPe48qs
Submitted March 13, 2026 at 01:48AM by DebugDucky
via reddit https://ift.tt/NBHtuRp
https://ift.tt/rPe48qs
Submitted March 13, 2026 at 01:48AM by DebugDucky
via reddit https://ift.tt/NBHtuRp
www.aikido.dev
Betterleaks: The Gitleaks Successor Built for Faster Secrets Scanning
Betterleaks is a new open source secrets scanner from the creator of Gitleaks. A drop-in replacement with faster scans, token efficiency detection, configurable validation, and more.