A roundup of 44 items curated from across the security community.
News
Cyera Research uncovers a critical pre-auth memory disclosure in Ollama. Self-hosted LLM gateways leak adjacent buffer contents to anyone who can hit the API.
More this week (2)
Techniques and Write-ups
Tim Becker walks through the heap-grooming primitive Xint used to turn a character-constrained heap overflow in JSON_SCHEMA_VALID into full RCE. ZeroDay Cloud’s deep dive on the bug behind GHSA-4rj5-2227-9wgc.
LAB52 drops a 142-page open-access report on EasterBunny, an advanced espionage toolset attributed to APT29. Full TTPs, samples, and IOCs in one document.
Johann Rehberger’s DEF CON Singapore talk writeup on CVE-2026-24299. End-to-end exploitation chain against Microsoft Copilot, full slides and PoCs included.
- Recovering AES-128 from a Bluetooth chip via 10-meter RF eavesdrop by Rémi GASCOU (Podalirius).
Crypto-engine switching noise couples into the chip’s 2.4 GHz RF chain and leaks out as radio. Owen Brake’s writeup shows the AES-128 key recovered from 10 meters away with nothing but a listener.
Iceman flags consumer-grade Chinese smartphones that read, crack, and emulate MIFARE Classic cards out of the box. Hotel keys, access control, transit cards: pocket cloning, no extra hardware.
spaceraccoonsec lands a CVE on Crestron’s enterprise touch panels for unauthenticated command injection. Firmware patch shipped; expect a long tail of unpatched conference-room units.
Reco.ai catalogs the novel Salesforce Experience Site attack surface: Apex injection, guest-user privilege confusion, and SOQL primitives that turn a misconfigured site into wide reach.
Bugscale chains five separate bugs in Samsung’s cloud gaming component to install arbitrary APKs on the Galaxy S25 from an app with no install permissions.
- Grok prompt-injected into draining $175K from a crypto wallet by Vincent Yiu.
An attacker fed Grok a prompt that walked the agent into authorizing a 3 billion DRB transfer (about $175,000) on Base. Elegant payload, expensive lesson on AI agents wired to crypto rails.
More this week (27)
- CrystalForge: AdaptixC2 beacon with Crystal Palace loader support by Panos Gkatziroulis.
- net_use: modernized BOF for mapped drives via MPR API by Panos Gkatziroulis.
- morphkatz: polymorphic PE rewriter for Windows x64 by Panos Gkatziroulis.
- Pwning V8CTF with TurboFan type confusion (CVE-2025-2135) by kmkz.
- Wiz launches zeroday.cloud: writeups for PostgreSQL and MariaDB RCEs by kmkz.
- GadgetExplorer: .NET deserialization gadget chain finder by Lefteris Panos.
- Bug bounty writeup repos: HackerOne, Google VRP, Facebook by Spiros Fraganastasis.
- Finding open-source 0-days with an LLM multi-agent workflow by Spiros Fraganastasis.
- The other side of the MCP threat conversation: MCP servers as attack surface by Max.
- Impacket IoCs: 50+ defender indicators in one repo by n00py.
- MS-RPC-Fuzzer escalates to SYSTEM via recursive structures by Rémi GASCOU (Podalirius).
- ShareHound: BloodHound OpenGraph plugin for network shares by Rémi GASCOU (Podalirius).
- EnvWatch: scan for exposed cloud secrets locally by Renos.
- FreeBSD dhclient: rogue DHCP server gets root RCE (FreeBSD-SA-26:12) by Solar Designer.
- Linux Kernel Runtime Guard (LKRG) 1.0.1 released by Solar Designer.
- Discovering vulnerabilities in enterprise AV hardware by spaceraccoon | Eugene Lim.
- Preauth root RCE in Oscar-grade nonlinear editing software.
- Non-determinism of maps in Golang: why, how, and the consequences.
- Anti-DDoS firm heaped attacks on Brazilian ISPs.
- CVE-2026-25654: Siemens SINEC NMS auth bypass priv-esc (ZDI-26-297) by ϻг_ϻε.
- ARP-around and find out: hijacking GPO UNC paths for code exec and NTLM relay by stuk0v.
- VeeamDumper-BOF: credential extraction for Veeam Backup and Replication by Mr.Z.
- zig-bof-template: Cobalt Strike BOFs in Zig by Mr.Z.
- zig-pe: reflective PE loader written in Zig by Mr.Z.
- Oh myAudi: poking at Audi’s connected vehicle APIs by sailay(valen).
- Former govt contractor convicted for wiping federal databases by BleepingComputer.
- JDownloader’s official website delivered a Python RAT by Nicolas Krassas.
Tools and Exploits
Zellic’s security audit of uutils coreutils lands 113 findings across two rounds (7 critical, 11 high, 29 medium, 26 low) and 44 CVEs. The very codebase Canonical wants shipped by default.
More this week (4)
- CodeNeedle: stealthy VS Code plugin for arbitrary JS evaluation by Lefteris Panos.
- maSSO: weaponized IdP for Multi-SSO AWS Cognito testing by Maxence SCHMITT.
- CVE-2026-41163: bubblewrap setuid root priv-esc via ptrace by Solar Designer.
- CVE-2026-41651: PackageKit TOCTOU leads to local root by Solar Designer.
