MCP is becoming a major attack surface here's what we built to govern it
https://assury.ai
Submitted March 12, 2026 at 06:50PM by EbbCommon9300
via reddit https://ift.tt/H91QKEF
https://assury.ai
Submitted March 12, 2026 at 06:50PM by EbbCommon9300
via reddit https://ift.tt/H91QKEF
assury.ai
Assury - AI Agent Governance & Compliance
Zero-Trust Autonomy Control for AI Agents. The first control plane that governs entire multi-step agent workflows.
We used GenAI to find 38 vulnerabilities in consumer robots in ~7 hours
https://ift.tt/0xKyBEW
Submitted March 12, 2026 at 08:00PM by Obvious-Language4462
via reddit https://ift.tt/8HJf0E1
https://ift.tt/0xKyBEW
Submitted March 12, 2026 at 08:00PM by Obvious-Language4462
via reddit https://ift.tt/8HJf0E1
Findings Gadgets Like it’s 2026
https://ift.tt/ox4Uiyw
Submitted March 12, 2026 at 10:52PM by breen-machine
via reddit https://ift.tt/aOoSi5u
https://ift.tt/ox4Uiyw
Submitted March 12, 2026 at 10:52PM by breen-machine
via reddit https://ift.tt/aOoSi5u
Atredis Partners
Findings Gadgets Like it’s 2026 — Atredis Partners
Secrets are Rare not Random
https://ift.tt/fWTO2Pz
Submitted March 12, 2026 at 10:29PM by Phorcez
via reddit https://ift.tt/zWCEq7P
https://ift.tt/fWTO2Pz
Submitted March 12, 2026 at 10:29PM by Phorcez
via reddit https://ift.tt/zWCEq7P
Substack
Rare Not Random
Using Token Efficiency for Secrets Scanning
Co-Pilot, Disengage Autophish: The New Phishing Surface Hiding Inside AI Email Summaries
https://ift.tt/dfFgQLC
Submitted March 12, 2026 at 11:30PM by permis0
via reddit https://ift.tt/hvbZYg0
https://ift.tt/dfFgQLC
Submitted March 12, 2026 at 11:30PM by permis0
via reddit https://ift.tt/hvbZYg0
permiso.io
CO-PILOT, DISENGAGE AUTOPHISH: The New Phishing Surface Hiding Inside AI Email Summaries
Our latest research shows how Microsoft Copilot email summaries can be manipulated by attackers, creating new phishing risks through trusted AI-generated interfaces.
I Hacked My Laundry Card. Here's What I Learned.
https://ift.tt/BoGFVsh
Submitted March 13, 2026 at 01:49AM by FunBrilliant5713
via reddit https://ift.tt/JgD1emi
https://ift.tt/BoGFVsh
Submitted March 13, 2026 at 01:49AM by FunBrilliant5713
via reddit https://ift.tt/JgD1emi
hanzilla.co
I Hacked My Laundry Card. Here's What I Learned. | Hanzilla
A CS student's experience using a Flipper Zero and AI to reverse-engineer an NFC laundry card, and some thoughts on what it means for systems like these.
Betterleaks: The Gitleaks Successor Built for Faster Secrets Scanning
https://ift.tt/rPe48qs
Submitted March 13, 2026 at 01:48AM by DebugDucky
via reddit https://ift.tt/NBHtuRp
https://ift.tt/rPe48qs
Submitted March 13, 2026 at 01:48AM by DebugDucky
via reddit https://ift.tt/NBHtuRp
www.aikido.dev
Betterleaks: The Gitleaks Successor Built for Faster Secrets Scanning
Betterleaks is a new open source secrets scanner from the creator of Gitleaks. A drop-in replacement with faster scans, token efficiency detection, configurable validation, and more.
Android Vulnerability Reproduction with OpenClaw
https://ift.tt/U3dAtS2
Submitted March 13, 2026 at 07:41AM by Maleficent_Issue1336
via reddit https://ift.tt/5UgYcfl
https://ift.tt/U3dAtS2
Submitted March 13, 2026 at 07:41AM by Maleficent_Issue1336
via reddit https://ift.tt/5UgYcfl
GlassWorm V2 Analysis
https://gist.github.com/tip-o-deincognito/d0d05e148e87a515f534b5a8e9ed3b36
Submitted March 13, 2026 at 06:35AM by Willing_Monitor5855
via reddit https://ift.tt/qcO7oFS
https://gist.github.com/tip-o-deincognito/d0d05e148e87a515f534b5a8e9ed3b36
Submitted March 13, 2026 at 06:35AM by Willing_Monitor5855
via reddit https://ift.tt/qcO7oFS
Gist
GlassWorm V2 Analysis
GlassWorm V2 Analysis . GitHub Gist: instantly share code, notes, and snippets.
CrackArmor: Critical AppArmor Flaws Enable Local Privilege Escalation to Root
https://ift.tt/B5u8WFH
Submitted March 13, 2026 at 09:12PM by 1esproc
via reddit https://ift.tt/tOiWuVA
https://ift.tt/B5u8WFH
Submitted March 13, 2026 at 09:12PM by 1esproc
via reddit https://ift.tt/tOiWuVA
Alipay (1B+ users) DeepLink vulnerability allows silent GPS extraction via URL - 6 regulators now investigating, vendor says normal functionality
https://ift.tt/w09MokX
Submitted March 13, 2026 at 10:50PM by feng_sg
via reddit https://ift.tt/ZtpTsRD
https://ift.tt/w09MokX
Submitted March 13, 2026 at 10:50PM by feng_sg
via reddit https://ift.tt/ZtpTsRD
packetstorm.news
Packet Storm
Information Security Services, News, Files, Tools, Exploits, Advisories, and Whitepapers
RegPwn - Windows LPE vulnerability (now fixed)
https://ift.tt/TOnHDYE
Submitted March 13, 2026 at 10:42PM by gid0rah
via reddit https://ift.tt/ChREyd2
https://ift.tt/TOnHDYE
Submitted March 13, 2026 at 10:42PM by gid0rah
via reddit https://ift.tt/ChREyd2
MDSec
RIP RegPwn - MDSec
13th March 2026 As part of MDSec’s R&D work, we often discover vulnerabilities and develop exploits to support our red team engagements. When researching widely used software, it is often...
OSS Cartography can now map AI agents to cloud attack paths
https://ift.tt/RnuSbQf
Submitted March 14, 2026 at 12:21AM by alexchantavy
via reddit https://ift.tt/FdaDTlA
https://ift.tt/RnuSbQf
Submitted March 14, 2026 at 12:21AM by alexchantavy
via reddit https://ift.tt/FdaDTlA
Cartography
Mapping production AI agents to IAM roles, tools, and network exposure
Open source Cartography now discovers AI agents in container images and connects them to IAM roles, tools, and network exposure in the infrastructure graph.
Phishing campaign abusing Google Cloud Storage redirectors to multiple scam pages
https://ift.tt/jAFhPtn
Submitted March 14, 2026 at 03:25AM by anuraggawande
via reddit https://ift.tt/gI5GrDY
https://ift.tt/jAFhPtn
Submitted March 14, 2026 at 03:25AM by anuraggawande
via reddit https://ift.tt/gI5GrDY
Malware Analysis, Phishing, and Email Scams
Ongoing Phishing Campaign Abusing Google Cloud Storage to Redirect Users to Multiple Scam Pages
A few days ago, I published a blog analyzing a phishing campaign abusing Google Cloud infrastructure: While continuing to monitor the infrastructure used in that campaign, I discovered several addi…
I Found 39 Algolia Admin Keys Exposed Across Open Source Documentation Sites
https://ift.tt/srjqCXL
Submitted March 14, 2026 at 04:24AM by Grand_Fan_9804
via reddit https://ift.tt/Ap5GgTh
https://ift.tt/srjqCXL
Submitted March 14, 2026 at 04:24AM by Grand_Fan_9804
via reddit https://ift.tt/Ap5GgTh
benzimmermann.dev
I Found 39 Algolia Admin Keys Exposed Across Open Source Documentation Sites - Ben Zimmermann
A systematic audit of Algolia DocSearch found 39 admin API keys exposed across projects like Home Assistant, KEDA, and vcluster.
Technical challenge: Can a blockchain-published account be traced to its IP? (20,000 QORT bounty)
https://ift.tt/I8wurhA
Submitted March 14, 2026 at 03:51AM by George_Qortal
via reddit https://ift.tt/sxX3Qyu
https://ift.tt/I8wurhA
Submitted March 14, 2026 at 03:51AM by George_Qortal
via reddit https://ift.tt/sxX3Qyu
qortal.dev
Learn About Or Install Qortal - The Most User-Friendly Web3 Project!
Discover Qortal, the gateway to Web3 innovation. Explore our easy-to-use platform for seamless access to decentralized applications.
Looking for an arXiv cs.CR endorser
https://ift.tt/KMqkI3n
Submitted March 14, 2026 at 02:06PM by An1m3sh
via reddit https://ift.tt/48YSZUf
https://ift.tt/KMqkI3n
Submitted March 14, 2026 at 02:06PM by An1m3sh
via reddit https://ift.tt/48YSZUf